WWordPress 漏洞数据库 Hong Kong Security Alert Survey Maker Flaw(CVE202564276)11 月 16, 2025 WordPress Survey Maker plugin <= 5.1.9.4 - Broken Access Control vulnerability
WWordPress 漏洞数据库 Hong Kong Security Advisory Envira Gallery Bypass(CVE202512377)11 月 16, 2025 WordPress Gallery Plugin for WordPress – Envira Photo Gallery plugin <= 1.12.0 - Missing Authorization to Authenticated (Author+) Multiple Gallery Actions vulnerability
WWordPress 漏洞数据库 香港安全警报 Theater 插件风险 (CVE202564259)2025年11月15日 WordPress Theater for WordPress 插件 <= 0.18.8 - 访问控制失效漏洞
WWordPress 漏洞数据库 Contest Gallery Plugin Missing Authorization Vulnerability(CVE202512849)11 月 14, 2025 WordPress Contest Gallery plugin <= 28.0.2 - Missing Authorization vulnerability
WWordPress 漏洞数据库 HK Security Advisory SEO Plugin Media Deletion(CVE202512847)11 月 14, 2025 WordPress All in One SEO plugin <= 4.8.9 - Missing Authorization to Authenticated (Contributor+) Arbitrary Media Deletion vulnerability
WWordPress 漏洞数据库 Hong Kong Security Advisory Arbitrary Image Move(CVE202512494)11 月 14, 2025 WordPress Image Gallery – Photo Grid & Video Gallery plugin <= 2.12.28 - Improper Authorization to Authenticated (Author+) Arbitrary Image File Move vulnerability
WWordPress 漏洞数据库 Community Security Alert Wishlist Plugin Deletion Flaw(CVE202512087)11 月 12, 2025 WordPress Wishlist and Save for later for Woocommerce plugin <= 1.1.22 - Insecure Direct Object Reference to Authenticated (Subscriber+) Wishlist Item Deletion vulnerability
WWordPress 漏洞数据库 Add Multiple Marker 插件未经授权的设置风险 (CVE202511999)2025年11月11日 WordPress Add Multiple Marker 插件 <= 1.2 - 缺少对未经身份验证的设置更新的授权漏洞
WWordPress 漏洞数据库 香港安全警报未认证信息泄露(CVE202511997)2025年11月10日 WordPress Document Pro Elementor – 文档与知识库插件 <= 1.0.9 - 未认证信息泄露漏洞
WWordPress 漏洞数据库 Hong Kong Security Alert FunnelKit Vulnerability(CVE202510567)2025年11月10日 WordPress FunnelKit plugin < 3.12.0.1 - Reflected XSS vulnerability