WWordPress 漏洞数据库 HK Security Alerts Elementor Image Import Flaw(CVE20258081)2025年8月11日 WordPress Elementor plugin <= 3.30.2 - Authenticated (Administrator+) Arbitrary File Read via Image Import vulnerability
WWordPress 漏洞数据库 Hong Kong security NGO flags CBX CSRF(CVE20257965)2025年8月11日 WordPress CBX Restaurant Booking plugin <= 1.2.1 - Plugin Reset via CSRF vulnerability
WWordPress 漏洞数据库 Hong Kong WordPress The7 Stored XSS Alert(CVE20257726)2025年8月11日 WordPress The7 plugin <= 12.6.0 - Authenticated (Contributor+) Stored Cross-Site Scripting via title and data-dt-img-description Attributes vulnerability
WWordPress 漏洞数据库 Hong Kong Security Unauthenticated SQL Injection CleverReach(CVE20257036)2025年8月11日 WordPress CleverReach WP plugin <= 1.5.20 - Unauthenticated SQL Injection via title Parameter vulnerability
WWordPress 漏洞数据库 Hong Kong Security NGO Warns FundEngine LFI(CVE202548302)8 月 10, 2025 WordPress FundEngine Plugin <= 1.7.4 - Local File Inclusion Vulnerability
WWordPress 漏洞数据库 Hong Kong Security Alerts GravityWP LFI(CVE202549271)8 月 10, 2025 WordPress GravityWP - Merge Tags <= 1.4.4 - Local File Inclusion Vulnerability
WWordPress 漏洞数据库 Urgent MapSVG WordPress SQL Injection Risk(CVE202554669)8 月 10, 2025 WordPress MapSVG Plugin < 8.7.4 - SQL Injection Vulnerability
WWordPress 漏洞数据库 Hong Kong Security Advisory WordPress IDonatePro Flaw(CVE202530639)8 月 10, 2025 WordPress IDonatePro Plugin <= 2.1.9 - Broken Access Control Vulnerability
WWordPress 漏洞数据库 Hong Kong Security Advisory Eventin Email Change(CVE20254796)2025年8月8日 WordPress Eventin plugin <= 4.0.34 - Authenticated (Contributor+) Privilege Escalation via User Email Change/Account Takeover vulnerability
WWordPress 漏洞数据库 香港安全咨询 OpenStreetMap WordPress XSS (CVE20256572)2025年8月8日 WordPress OpenStreetMap for Gutenberg 和 WPBakery Page Builder 插件 <= 1.2.0 - 贡献者+ 存储型 XSS 漏洞