by Ivan Sorkin | Feb 17, 2026 | Plugins
Attack Vectors The WordPress plugin URL Shortify – Simple and Easy URL Shortener (slug: url-shortify) has a Medium severity issue (CVSS 4.7) identified as CVE-2026-1277. The vulnerability affects all versions up to and including 1.12.1. An unauthenticated attacker can...
by Ivan Sorkin | Feb 17, 2026 | Plugins
Attack Vectors Frontend Post Submission Manager Lite – Frontend Posting WordPress Plugin (slug: frontend-post-submission-manager-lite) has a Medium severity vulnerability (CVSS 6.1) tracked as CVE-2026-1296. The issue is an unauthenticated open redirect affecting...
by Ivan Sorkin | Feb 17, 2026 | Plugins
Attack Vectors CVE-2026-1714 affects the WordPress plugin ShopLentor – All-in-One WooCommerce Growth & Store Enhancement Plugin (slug: woolentor-addons) in versions up to and including 3.3.2. The vulnerability is rated High severity (CVSS 8.6). The primary attack...
by Ivan Sorkin | Feb 17, 2026 | Plugins
Attack Vectors Business Directory Plugin – Easy Listing Directories for WordPress (slug: business-directory-plugin) is affected by a High-severity vulnerability (CVSS 7.5, CVE-2026-2576) that can be exploited remotely over the internet with no login required....
by Ivan Sorkin | Feb 17, 2026 | Plugins
Attack Vectors Display During Conditional Shortcode (slug: display-during-conditional-shortcode) has a Medium-severity vulnerability (CVSS 6.4; CVE-2025-6460) that can be exploited by an authenticated user with Contributor-level access or higher. An attacker can place...
Recent Comments