WWordPress Vulnerability Database Security Advisory Dynamically Display Posts SQL Injection(CVE202511501)October 15, 2025 WordPress Dynamically Display Posts plugin <= 1.1 - Unauthenticated SQL Injection vulnerability
WWordPress Vulnerability Database Community Advisory Shortcode Button Stored XSS(CVE202510194)October 15, 2025 WordPress Shortcode Button plugin <= 1.1.9 - Authenticated (Contributor+) Stored Cross-Site Scripting vulnerability
WWordPress Vulnerability Database Community Security Alert Demo Import Kit Vulnerability(CVE202510051)October 15, 2025 WordPress Demo Import Kit plugin <= 1.1.0 - Authenticated (Admin+) Arbitrary File Upload vulnerability
WWordPress Vulnerability Database Community Alert NEX Forms SQL Injection(CVE202510185)October 11, 2025 WordPress NEX-Forms – Ultimate Forms Plugin for WordPress plugin <= 9.1.6 - Authenticated (Admin+) SQL Injection vulnerability
WWordPress Vulnerability Database Community Advisory Ovatheme Events Arbitrary Upload(CVE20256553)October 11, 2025 WordPress Ovatheme Events Manager plugin <= 1.8.5 - Unauthenticated Arbitrary File Upload vulnerability
WWordPress Vulnerability Database Security Advisory Everest Backup Exposes User Data(CVE202511380)October 11, 2025 WordPress Everest Backup plugin <= 2.3.5 - Missing Authorization to Unauthenticated Information Exposure vulnerability
WWordPress Vulnerability Database HK Security Alert NEX Forms SQL Injection(CVE202510185)October 11, 2025 WordPress NEX-Forms – Ultimate Forms Plugin for WordPress plugin <= 9.1.6 - Authenticated (Admin+) SQL Injection vulnerability
WWordPress Vulnerability Database Community Alert Trinity Audio Information Exposure(CVE20259196)October 11, 2025 WordPress Trinity Audio plugin <= 5.21.0 - Unauthenticated Information Exposure vulnerability
WWordPress Vulnerability Database Hong Kong Security Advisory Allegro SQL Injection(CVE202510048)October 11, 2025 WordPress My Auctions Allegro Plugin plugin <= 3.6.31 - Authenticated (Admin+) SQL Injection vulnerability
WWordPress Vulnerability Database NEXForms Authenticated Admin SQL Injection Alert(CVE202510185)October 11, 2025 WordPress NEX-Forms – Ultimate Forms Plugin for WordPress plugin <= 9.1.6 - Authenticated (Admin+) SQL Injection vulnerability