WWordPress Vulnerability Database Community Alert Baidu Share Button Stored XSS(CVE202548320)August 25, 2025 WordPress 百度分享按钮 plugin <= 1.0.6 - CSRF to Stored XSS vulnerability
WWordPress Vulnerability Database Hong Kong Security Advisory Mesa Widget XSS(CVE202548319)August 25, 2025 WordPress Mesa Mesa Reservation Widget plugin <= 1.0.0 - Cross Site Scripting (XSS) vulnerability
WWordPress Vulnerability Database Hong Kong Advisory CSRF Enables Stored XSS(CVE202548321)August 25, 2025 WordPress Ultimate twitter profile widget plugin <= 1.0 - CSRF to Stored XSS vulnerability
WWordPress Vulnerability Database Community Alert Bravis Plugin Account Takeover(CVE20255060)August 22, 2025 Plugin Name Bravis User Type of Vulnerability Account takeover vulnerability CVE Number CVE-2025-5060 Urgency High CVE Publish Date…
WWordPress Vulnerability Database HK NGO Alert Social Login Authentication Bypass(CVE20255821)August 22, 2025 WordPress Case Theme User plugin <= 1.0.3 - Authentication Bypass via Social Login vulnerability
WWordPress Vulnerability Database Hong Kong Security Advisory Ogulo 360 XSS(CVE20259131)August 22, 2025 Plugin Name Ogulo – 360° Tour Type of Vulnerability Authenticated Stored XSS CVE Number CVE-2025-9131 Urgency Low CVE…
WWordPress Vulnerability Database Hong Kong Security Advisory Ni WooCommerce Vulnerability(CVE20257827)August 22, 2025 WordPress Ni WooCommerce Customer Product Report plugin <= 1.2.4 - Missing Authorization to Authenticated (Subscriber+) Settings Update vulnerability
WWordPress Vulnerability Database Hong Kong Security Alert ShortcodeHub Stored XSS(CVE20257957)August 22, 2025 WordPress ShortcodeHub plugin <= 1.7.1 - Authenticated (Contributor+) Stored Cross-Site Scripting via author_link_target Parameter vulnerability
WWordPress Vulnerability Database Community Alert Authenticated XSS in WS Addons(CVE20258062)August 22, 2025 WordPress WS Theme Addons plugin <= 2.0.0 - Authenticated (Contributor+) Stored Cross-Site Scripting via ws_weather Shortcode vulnerability
WWordPress Vulnerability Database Advisory Cross Site Request Forgery Restore Plugin(CVE20257839)August 22, 2025 WordPress Restore Permanently delete Post or Page Data plugin <= 1.0 - Cross-Site Request Forgery vulnerability