[email protected]
  • Pricing
  • Checkout
  • My Account
0 Items
WPFore
  • Home
  • Pricing
  • Need Support?
  • Blog
Select Page

Mailchimp List Subscribe Form Vulnerability (Medium) – CVE-2025-12172

by Ivan Sorkin | Feb 18, 2026 | Plugins

Attack Vectors Mailchimp List Subscribe Form (slug: mailchimp) versions 2.0.0 and below contain a Medium-severity issue (CVSS 4.3, CVE-2025-12172) that can be exploited through Cross-Site Request Forgery (CSRF). In practical terms, an attacker can send a crafted link...

Aruba HiSpeed Cache Vulnerability (Medium) – CVE-2025-11706

by Ivan Sorkin | Feb 18, 2026 | Plugins

Attack Vectors Aruba HiSpeed Cache (WordPress plugin) versions 3.0.2 and earlier are affected by a Medium-severity vulnerability (CVSS 6.1) tracked as CVE-2025-11706. The issue is a Reflected Cross-Site Scripting (XSS) flaw that can be triggered through the dbstatus...

Cookie Banner for GDPR / CCPA – WPLP Cookie Consent Vulnerability (…

by Ivan Sorkin | Feb 18, 2026 | Plugins

Attack Vectors High severity (CVSS 7.5) vulnerability tracked as CVE-2025-11754 affects the WordPress plugin Cookie Banner for GDPR / CCPA – WPLP Cookie Consent (slug: gdpr-cookie-consent) in versions up to and including 4.1.2. The primary attack path is remote and...

Booking Calendar Vulnerability (Medium) – CVE-2026-2230

by Ivan Sorkin | Feb 18, 2026 | Plugins

Attack Vectors Booking Calendar (WordPress plugin slug: booking) is affected by a Medium-severity issue (CVSS 4.3) identified as CVE-2026-2230. The vulnerability is an Insecure Direct Object Reference (IDOR) in versions up to and including 10.14.14. An attacker must...

Ultimate Member – User Profile, Registration, Login, Member Directo…

by Ivan Sorkin | Feb 18, 2026 | Plugins

Attack Vectors CVE-2026-1404 affects the WordPress plugin Ultimate Member – User Profile, Registration, Login, Member Directory, Content Restriction & Membership Plugin (slug: ultimate-member) and is rated Medium severity (CVSS 6.1). The issue is a reflected...
« Older Entries
Next Entries »

Recent Posts

  • RestroPress – Online Food Ordering System Vulnerability (Medium) – …
  • RestroPress – Online Food Ordering System Vulnerability (Medium) – …
  • Kraken.io Image Optimizer Vulnerability (Medium) – CVE-2023-0619
  • Vantage Vulnerability (Medium) – CVE-2026-5070
  • WP Docs Vulnerability (Medium) – CVE-2026-3878

Recent Comments

    Archives

    • April 2026
    • March 2026
    • February 2026
    • January 2026
    • November 2025
    • October 2025
    • September 2025
    • August 2025
    • July 2025
    • June 2025
    • May 2025
    • April 2025
    • March 2025
    • February 2025
    • January 2025
    • December 2024

    Categories

    • Core
    • Plugins
    • Themes
    • Uncategorized
    • WooCommerce
    • WordPress Customization
    • WordPress Maintenance
    • WordPress Performance
    • WordPress Security
    • WordPress Support

    Meta

    • Log in
    • Entries feed
    • Comments feed
    • WordPress.org

    Location

    Vrasida 5, Nicosia, Cyprus.

    (+357) 96384131

    [email protected]

    Follow Us

    • Follow
    • Follow
    • Follow
    • Follow
    • Follow
    • Follow

    Subscription

    Stay in touch and follow our latest developments.

    Success!

    Subscribe