WWordPress 漏洞数据库 Hong Kong Cybersecurity Alert Analytify Information Exposure(CVE202512521)11 月 1, 2025 WordPress Analytify Pro plugin <= 7.0.3 - Unauthenticated Information Exposure vulnerability 了解更多
WWordPress 漏洞数据库 Hong Kong Security Advisory Jobmonster Authentication Bypass(CVE20255397)11 月 1, 2025 WordPress Jobmonster theme <= 4.8.1 - Authentication Bypass vulnerability 了解更多
WWordPress 漏洞数据库 Protect Hong Kong Sites From ERI Exploit(CVE202512041)11 月 1, 2025 WordPress ERI File Library plugin <= 1.1.0 - Missing Authorization to Unauthenticated Protected File Download vulnerability 了解更多
WWordPress 漏洞数据库 Community Security Advisory Unauthenticated Log Poisoning(CVE202511627)10 月 31, 2025 WordPress Site Checkup AI Troubleshooting with Wizard and Tips for Each Issue plugin <= 1.47 - Unauthenticated Log File Poisoning vulnerability 了解更多
WWordPress 漏洞数据库 Hong Kong Security Alert Authenticated File Deletion(CVE20257846)10 月 31, 2025 WordPress User Extra Fields plugin <= 16.7 - Authenticated (Subscriber+) Arbitrary File Deletion via save_fields Function vulnerability 了解更多
WWordPress 漏洞数据库 Hong Kong Security Alert WooCommerce Data Exposure(CVE20237320)10 月 29, 2025 WordPress WooCommerce plugin <= 7.8.2 - Sensitive Information Exposure vulnerability 了解更多
WWordPress 漏洞数据库 社区警报 WordPress Sync 中的 CSRF 风险 (CVE202511976)2025 年 10 月 28 日 WordPress FuseWP – WordPress 用户同步到电子邮件列表和营销自动化 (Mailchimp, Constant Contact, ActiveCampaign 等) 插件 <= 1.1.23.0 - 跨站请求伪造以同步规则创建漏洞 了解更多
WWordPress 漏洞数据库 香港警报 Listeo 存储型 XSS 威胁(CVE20258413)2025 年 10 月 28 日 WordPress Listeo plugin <= 2.0.8 - Authenticated (Contributor+) Stored Cross-Site Scripting via soundcloud Shortcode vulnerability 了解更多
WWordPress 漏洞数据库 香港安全警报 GenerateBlocks 选项暴露 (CVE202511879)2025年10月25日 WordPress GenerateBlocks plugin <= 2.1.1 - Improper Authorization to Authenticated (Contributor+) Arbitrary Options Disclosure vulnerability 了解更多
WWordPress 漏洞数据库 社区建议 PixelYourSite 插件 LFI 风险(CVE202510723)2025年10月25日 WordPress PixelYourSite插件 < 11.1.2 - 管理员+ LFI漏洞 了解更多