WP Security

Browsing Tag

WordPress Security

263 posts
WWordPress Vulnerability Database

Hong Kong WordPress UiCore Unauthorised File Read(CVE20256253)

  • August 11, 2025
WordPress UiCore Elements plugin <= 1.3.0 - Missing Authorization to Unauthenticated Arbitrary File Read vulnerability
WWordPress Vulnerability Database

Authenticated CSV Injection in AnWP Football Leagues(CVE20258767)

  • August 11, 2025
WordPress AnWP Football Leagues plugin <= 0.16.17 - Authenticated (Administrator+) CSV Injection vulnerability
WWordPress Vulnerability Database

HK Security Alerts Elementor Image Import Flaw(CVE20258081)

  • August 11, 2025
WordPress Elementor plugin <= 3.30.2 - Authenticated (Administrator+) Arbitrary File Read via Image Import vulnerability
WWordPress Vulnerability Database

Hong Kong security NGO flags CBX CSRF(CVE20257965)

  • August 11, 2025
WordPress CBX Restaurant Booking plugin <= 1.2.1 - Plugin Reset via CSRF vulnerability
WWordPress Vulnerability Database

Hong Kong WordPress The7 Stored XSS Alert(CVE20257726)

  • August 11, 2025
WordPress The7 plugin <= 12.6.0 - Authenticated (Contributor+) Stored Cross-Site Scripting via title and data-dt-img-description Attributes vulnerability
WWordPress Vulnerability Database

Hong Kong Security Unauthenticated SQL Injection CleverReach(CVE20257036)

  • August 11, 2025
WordPress CleverReach WP plugin <= 1.5.20 - Unauthenticated SQL Injection via title Parameter vulnerability
WWordPress Vulnerability Database

Hong Kong Security NGO Warns FundEngine LFI(CVE202548302)

  • August 10, 2025
WordPress FundEngine Plugin <= 1.7.4 - Local File Inclusion Vulnerability
WWordPress Vulnerability Database

Hong Kong Security Alerts GravityWP LFI(CVE202549271)

  • August 10, 2025
WordPress GravityWP - Merge Tags <= 1.4.4 - Local File Inclusion Vulnerability
WWordPress Vulnerability Database

Urgent MapSVG WordPress SQL Injection Risk(CVE202554669)

  • August 10, 2025
WordPress MapSVG Plugin < 8.7.4 - SQL Injection Vulnerability
WWordPress Vulnerability Database

Hong Kong Security Advisory WordPress IDonatePro Flaw(CVE202530639)

  • August 10, 2025
WordPress IDonatePro Plugin <= 2.1.9 - Broken Access Control Vulnerability
WP Security
© 2025 WP-Security.org Disclaimer: WP-Security.org is an independent, non-profit NGO community committed to sharing WordPress security news and information. We are not affiliated with WordPress, its parent company, or any related entities. All trademarks are the property of their respective owners.

Review My Order

0

Subtotal

Taxes & shipping calculated at checkout

Checkout

 
0