Hong Kong Security Notice Event List Escalation(CVE20256366)
WordPress Event List plugin <= 2.0.4 - Authenticated (Subscriber+) Privilege Escalation vulnerability
Hong Kong Security Alert Plugin CSRF XSS(CVE20256247)
WordPress WordPress Automatic plugin <= 3.118.0 - Cross-Site Request Forgery to Stored Cross-Site Scripting vulnerability
Community Advisory Vibes Plugin SQL Injection Vulnerability(CVE20259172)
WordPress Vibes plugin <= 2.2.0 - Unauthenticated SQL Injection via `resource` Parameter vulnerability
Community Security Alert CSRF in WordPress Plugin(CVE202548303)
WordPress Post Type Converter plugin <= 0.6 - Cross Site Request Forgery (CSRF) vulnerability
Duoshuo Comment Box CSRF Security Alert(CVE202548318)
WordPress 多说社会化评论框 plugin <= 1.2 - Cross Site Request Forgery (CSRF) to Settings Change vulnerability
Community Alert Baidu Share Button Stored XSS(CVE202548320)
WordPress 百度分享按钮 plugin <= 1.0.6 - CSRF to Stored XSS vulnerability
Hong Kong Security Advisory Mesa Widget XSS(CVE202548319)
WordPress Mesa Mesa Reservation Widget plugin <= 1.0.0 - Cross Site Scripting (XSS) vulnerability
Hong Kong Advisory CSRF Enables Stored XSS(CVE202548321)
WordPress Ultimate twitter profile widget plugin <= 1.0 - CSRF to Stored XSS vulnerability
Community Alert Bravis Plugin Account Takeover(CVE20255060)
Plugin Name Bravis User Type of Vulnerability Account takeover vulnerability CVE Number CVE-2025-5060 Urgency High CVE Publish Date…