WWordPress Vulnerability Database Hong Kong NGO Warns WordPress PPWP Flaw(CVE20255998)August 14, 2025 WordPress PPWP plugin < 1.9.11 - Subscriber+ Access Bypass via REST API vulnerability
WWordPress Vulnerability Database Hong Kong Security QSM CSRF Template Creation(CVE20256790)August 14, 2025 WordPress QSM plugin < 10.2.3 - Template Creation via CSRF vulnerability
WWordPress Vulnerability Database Hong Kong Security Warns WooCommerce Tip Manipulation(CVE20256025)August 14, 2025 WordPress Order Tip for WooCommerce plugin <= 1.5.4 - Unauthenticated Tip Manipulation to Negative Value Leading to Unauthorized Discounts vulnerability
WWordPress Vulnerability Database Hong Kong NGO warns WordPress QSM CSRF(CVE20256790)August 14, 2025 WordPress QSM plugin < 10.2.3 - Template Creation via CSRF vulnerability
WWordPress Vulnerability Database Hong Kong Security Advisory WordPress Slider SSRF(CVE20258680)August 14, 2025 WordPress B Slider - Gutenberg Slider Block for WP plugin <= 2.0.0 - Authenticated (Subscriber+) Server-Side Request Forgery vulnerability
WWordPress Vulnerability Database Hong Kong Security NGO alerts WordPress XSS(CVE20253414)August 14, 2025 WordPress Structured Content plugin < 1.7.0 - Contributor Stored XSS vulnerability
WWordPress Vulnerability Database Hong Kong NGO warns WordPress Shopify XSS(CVE20257808)August 14, 2025 WordPress WP Shopify plugin < 1.5.4 - Reflected XSS vulnerability
WWordPress Vulnerability Database Here are some options under seven words: – HK Security NGO Alerts Elementor Addons XSS – Hong Kong Security NGO Alerts Elementor XSS – HK Security NGO Warns Elementor XSS(CVE20258451)August 14, 2025 WordPress Essential Addons for Elementor plugin <= 6.2.2 - Authenticated (Contributor+) DOM-Based Stored Cross-Site Scripting via 'data-gallery-items' vulnerability
WWordPress Vulnerability Database Hong Kong Security NGO WordPress Reflected XSS(CVE20258046)August 14, 2025 WordPress Injection Guard plugin < 1.2.8 - Reflected XSS via $_SERVER['REQUEST_URI'] vulnerability
WWordPress Vulnerability Database Hong Kong Security Alerts WordPress Graphina XSS(CVE20258867)August 14, 2025 WordPress Graphina - Elementor Charts and Graphs plugin <= 3.1.3 - Authenticated (Contributor+) Stored Cross-Site Scripting vulnerability