[email protected]
  • Pricing
  • Checkout
  • My Account
0 Items
WPFore
  • Home
  • Pricing
  • Need Support?
  • Blog
Select Page

Activity Log for WordPress Vulnerability (Medium) – CVE-2026-1671

by Ivan Sorkin | Feb 12, 2026 | Plugins

Attack Vectors Activity Log for WordPress (slug: winterlock) versions 1.2.8 and earlier have a Medium-severity vulnerability (CVE-2026-1671, CVSS 6.5) that can be abused by an attacker who already has a basic, legitimate login (for example, a Subscriber account)....

Converter for Media – Optimize images | Convert WebP & AVIF Vulnera…

by Ivan Sorkin | Feb 12, 2026 | Plugins

Attack Vectors The WordPress plugin Converter for Media – Optimize images | Convert WebP & AVIF (slug: webp-converter-for-media) is affected by a Medium-severity Server-Side Request Forgery (SSRF) vulnerability (CVE-2026-1356) in versions up to and including...

Fioxen – Directory Listing WordPress Theme Vulnerability (Medium) -…

by Ivan Sorkin | Feb 11, 2026 | Themes

Attack Vectors CVE-2024-43334 affects multiple WordPress themes by gavias, including the Fioxen – Directory Listing WordPress Theme (slug: fioxen). This is a Medium severity issue (CVSS 6.1) involving reflected cross-site scripting (XSS), which typically relies...

Welowe – Nonprofit Charity WordPress Theme Vulnerability (Medium) -…

by Ivan Sorkin | Feb 11, 2026 | Themes

Attack Vectors The Welowe – Nonprofit Charity WordPress Theme (slug: welowe) is affected by a Medium-severity vulnerability (CVE-2024-43334, CVSS 6.1) involving Reflected Cross-Site Scripting (XSS). In practical terms, an attacker may try to deliver a specially...

Welowe – Nonprofit Charity WordPress Theme Vulnerability (Medium) -…

by Ivan Sorkin | Feb 11, 2026 | Themes

Attack Vectors CVE-2024-43334 is a Medium-severity Reflected Cross-Site Scripting (XSS) vulnerability (CVSS 6.1) affecting the Welowe – Nonprofit Charity WordPress Theme (slug: welowe) and other “gavias” WordPress themes across various versions. The most common attack...
« Older Entries
Next Entries »

Recent Posts

  • RestroPress – Online Food Ordering System Vulnerability (Medium) – …
  • RestroPress – Online Food Ordering System Vulnerability (Medium) – …
  • Kraken.io Image Optimizer Vulnerability (Medium) – CVE-2023-0619
  • Vantage Vulnerability (Medium) – CVE-2026-5070
  • WP Docs Vulnerability (Medium) – CVE-2026-3878

Recent Comments

    Archives

    • April 2026
    • March 2026
    • February 2026
    • January 2026
    • November 2025
    • October 2025
    • September 2025
    • August 2025
    • July 2025
    • June 2025
    • May 2025
    • April 2025
    • March 2025
    • February 2025
    • January 2025
    • December 2024

    Categories

    • Core
    • Plugins
    • Themes
    • Uncategorized
    • WooCommerce
    • WordPress Customization
    • WordPress Maintenance
    • WordPress Performance
    • WordPress Security
    • WordPress Support

    Meta

    • Log in
    • Entries feed
    • Comments feed
    • WordPress.org

    Location

    Vrasida 5, Nicosia, Cyprus.

    (+357) 96384131

    [email protected]

    Follow Us

    • Follow
    • Follow
    • Follow
    • Follow
    • Follow
    • Follow

    Subscription

    Stay in touch and follow our latest developments.

    Success!

    Subscribe