WP Security

浏览标签

WordPress安全

566 帖子
WWordPress 漏洞数据库

Urgent Alert ERI File Library Unauthenticated Access(CVE202512041)

  • 11 月 1, 2025
WordPress ERI File Library plugin <= 1.1.0 - Missing Authorization to Unauthenticated Protected File Download vulnerability
WWordPress 漏洞数据库

Hong Kong Cybersecurity Alert Analytify Information Exposure(CVE202512521)

  • 11 月 1, 2025
WordPress Analytify Pro plugin <= 7.0.3 - Unauthenticated Information Exposure vulnerability
WWordPress 漏洞数据库

Hong Kong Security Advisory Jobmonster Authentication Bypass(CVE20255397)

  • 11 月 1, 2025
WordPress Jobmonster theme <= 4.8.1 - Authentication Bypass vulnerability
WWordPress 漏洞数据库

Protect Hong Kong Sites From ERI Exploit(CVE202512041)

  • 11 月 1, 2025
WordPress ERI File Library plugin <= 1.1.0 - Missing Authorization to Unauthenticated Protected File Download vulnerability
WWordPress 漏洞数据库

Community Security Advisory Unauthenticated Log Poisoning(CVE202511627)

  • 10 月 31, 2025
WordPress Site Checkup AI Troubleshooting with Wizard and Tips for Each Issue plugin <= 1.47 - Unauthenticated Log File Poisoning vulnerability
WWordPress 漏洞数据库

Hong Kong Security Alert Authenticated File Deletion(CVE20257846)

  • 10 月 31, 2025
WordPress User Extra Fields plugin <= 16.7 - Authenticated (Subscriber+) Arbitrary File Deletion via save_fields Function vulnerability
WWordPress 漏洞数据库

Hong Kong Security Alert WooCommerce Data Exposure(CVE20237320)

  • 10 月 29, 2025
WordPress WooCommerce plugin <= 7.8.2 - Sensitive Information Exposure vulnerability
WWordPress 漏洞数据库

社区警报 WordPress Sync 中的 CSRF 风险 (CVE202511976)

  • 2025 年 10 月 28 日
WordPress FuseWP – WordPress 用户同步到电子邮件列表和营销自动化 (Mailchimp, Constant Contact, ActiveCampaign 等) 插件 <= 1.1.23.0 - 跨站请求伪造以同步规则创建漏洞
WWordPress 漏洞数据库

香港警报 Listeo 存储型 XSS 威胁(CVE20258413)

  • 2025 年 10 月 28 日
WordPress Listeo plugin <= 2.0.8 - Authenticated (Contributor+) Stored Cross-Site Scripting via soundcloud Shortcode vulnerability
WWordPress 漏洞数据库

香港安全警报 GenerateBlocks 选项暴露 (CVE202511879)

  • 2025年10月25日
WordPress GenerateBlocks plugin <= 2.1.1 - Improper Authorization to Authenticated (Contributor+) Arbitrary Options Disclosure vulnerability
WP Security
© 2025 WP-Security.org 免责声明:WP-Security.org 是一个独立的非营利 NGO 社区,致力于分享 WordPress 安全新闻和信息。我们与 WordPress、其母公司或任何相关实体没有关联。所有商标均为其各自所有者的财产。.
zh_CNChinese (China)
en_USEnglish zh_HKChinese (Hong Kong) zh_CNChinese (China)

查看我的订单

0

小计

税费和运费在结账时计算

结账

 
0