[email protected]
  • Pricing
  • Checkout
  • My Account
0 Items
WPFore
  • Home
  • Pricing
  • Need Support?
  • Blog
Select Page

Kali Forms — Contact Form & Drag-and-Drop Builder Vulnerability (Me…

by Ivan Sorkin | Feb 17, 2026 | Plugins

Attack Vectors Medium severity vulnerability (CVSS 4.3) in Kali Forms — Contact Form & Drag-and-Drop Builder (slug: kali-forms) affects all versions up to 2.4.8. It can be exploited remotely over the internet without user interaction. The primary attack path is an...

YayMail – WooCommerce Email Customizer Vulnerability (Low) – CVE-20…

by Ivan Sorkin | Feb 17, 2026 | Plugins

Attack Vectors CVE-2026-1831 affects the YayMail – WooCommerce Email Customizer plugin (slug: yaymail) up to version 4.3.2 and is rated Low severity (CVSS 2.7). The issue can be exploited by an already authenticated WordPress user with Shop Manager-level access or...

YayMail – WooCommerce Email Customizer Vulnerability (Medium) – CVE…

by Ivan Sorkin | Feb 17, 2026 | Plugins

Attack Vectors CVE-2026-1943 is a Medium-severity Stored Cross-Site Scripting (XSS) issue affecting the YayMail – WooCommerce Email Customizer plugin (slug: yaymail) in versions up to and including 4.3.2. The attack requires an authenticated user with Shop...

YayMail – WooCommerce Email Customizer Vulnerability (Critical) – C…

by Ivan Sorkin | Feb 17, 2026 | Plugins

Attack Vectors Marketing and operations teams often grant “Shop Manager” access to handle orders, refunds, and customer communications. In YayMail – WooCommerce Email Customizer (plugin slug: yaymail) versions up to 4.3.2, that level of access (and above) can be...

Product Addons for Woocommerce – Product Options with Custom Fields…

by Ivan Sorkin | Feb 17, 2026 | Plugins

Attack Vectors CVE-2026-2296 is a High severity vulnerability (CVSS 7.2) affecting the WordPress plugin Product Addons for Woocommerce – Product Options with Custom Fields (slug: woo-custom-product-addons) in versions up to and including 3.1.0. The primary attack...
« Older Entries
Next Entries »

Recent Posts

  • RestroPress – Online Food Ordering System Vulnerability (Medium) – …
  • RestroPress – Online Food Ordering System Vulnerability (Medium) – …
  • Kraken.io Image Optimizer Vulnerability (Medium) – CVE-2023-0619
  • Vantage Vulnerability (Medium) – CVE-2026-5070
  • WP Docs Vulnerability (Medium) – CVE-2026-3878

Recent Comments

    Archives

    • April 2026
    • March 2026
    • February 2026
    • January 2026
    • November 2025
    • October 2025
    • September 2025
    • August 2025
    • July 2025
    • June 2025
    • May 2025
    • April 2025
    • March 2025
    • February 2025
    • January 2025
    • December 2024

    Categories

    • Core
    • Plugins
    • Themes
    • Uncategorized
    • WooCommerce
    • WordPress Customization
    • WordPress Maintenance
    • WordPress Performance
    • WordPress Security
    • WordPress Support

    Meta

    • Log in
    • Entries feed
    • Comments feed
    • WordPress.org

    Location

    Vrasida 5, Nicosia, Cyprus.

    (+357) 96384131

    [email protected]

    Follow Us

    • Follow
    • Follow
    • Follow
    • Follow
    • Follow
    • Follow

    Subscription

    Stay in touch and follow our latest developments.

    Success!

    Subscribe