[email protected]
  • Pricing
  • Checkout
  • My Account
0 Items
WPFore
  • Home
  • Pricing
  • Need Support?
  • Blog
Select Page

Gallery by FooGallery Vulnerability (Medium) – CVE-2026-25362

by Ivan Sorkin | Feb 24, 2026 | Plugins

Attack Vectors CVE-2026-25362 is a Medium-severity (CVSS 6.4) stored cross-site scripting (XSS) issue affecting Gallery by FooGallery (plugin slug: foogallery) versions <= 3.1.11. The attacker must already have an authenticated WordPress account with Author-level...

Client Invoicing by Sprout Invoices – Easy Estimates and Invoices f…

by Ivan Sorkin | Feb 24, 2026 | Plugins

Attack Vectors CVE-2026-25364 is a Medium-severity (CVSS 5.3) missing authorization issue affecting Client Invoicing by Sprout Invoices – Easy Estimates and Invoices for WordPress (slug: sprout-invoices) in versions up to and including 20.8.8. Because the weakness can...

SureForms – Contact Form, Payment Form & Other Custom Form Builder …

by Ivan Sorkin | Feb 24, 2026 | Plugins

Attack Vectors The issue affects the WordPress plugin SureForms – Contact Form, Payment Form & Other Custom Form Builder (slug: sureforms) in versions up to and including 2.2.1. It is rated Medium severity with a CVSS 5.3 score...

Calculated Fields Form Vulnerability (Medium) – CVE-2026-25368

by Ivan Sorkin | Feb 24, 2026 | Plugins

Attack Vectors CVE-2026-25368 is a Medium-severity missing authorization issue (CVSS 4.3) affecting the Calculated Fields Form WordPress plugin (slug: calculated-fields-form) in versions up to and including 5.4.4.1. The primary attack vector is an authenticated user...

PixelYourSite – Your smart PIXEL (TAG) & API Manager Vulnerability …

by Ivan Sorkin | Feb 24, 2026 | Plugins

Attack Vectors CVE-2026-27072 is a High severity vulnerability (CVSS 7.2) affecting the PixelYourSite – Your smart PIXEL (TAG) & API Manager WordPress plugin (pixelyoursite) in versions <= 11.2.0.1. It is an unauthenticated Stored Cross-Site Scripting (XSS)...
« Older Entries
Next Entries »

Recent Posts

  • RestroPress – Online Food Ordering System Vulnerability (Medium) – …
  • RestroPress – Online Food Ordering System Vulnerability (Medium) – …
  • Kraken.io Image Optimizer Vulnerability (Medium) – CVE-2023-0619
  • Vantage Vulnerability (Medium) – CVE-2026-5070
  • WP Docs Vulnerability (Medium) – CVE-2026-3878

Recent Comments

    Archives

    • April 2026
    • March 2026
    • February 2026
    • January 2026
    • November 2025
    • October 2025
    • September 2025
    • August 2025
    • July 2025
    • June 2025
    • May 2025
    • April 2025
    • March 2025
    • February 2025
    • January 2025
    • December 2024

    Categories

    • Core
    • Plugins
    • Themes
    • Uncategorized
    • WooCommerce
    • WordPress Customization
    • WordPress Maintenance
    • WordPress Performance
    • WordPress Security
    • WordPress Support

    Meta

    • Log in
    • Entries feed
    • Comments feed
    • WordPress.org

    Location

    Vrasida 5, Nicosia, Cyprus.

    (+357) 96384131

    [email protected]

    Follow Us

    • Follow
    • Follow
    • Follow
    • Follow
    • Follow
    • Follow

    Subscription

    Stay in touch and follow our latest developments.

    Success!

    Subscribe