[email protected]
  • Pricing
  • Checkout
  • My Account
0 Items
WPFore
  • Home
  • Pricing
  • Need Support?
  • Blog
Select Page

Alfie – Feed Plugin Vulnerability (Medium) – CVE-2026-4069

by Ivan Sorkin | Mar 20, 2026 | Plugins

Attack Vectors CVE-2026-4069 is a Medium-severity vulnerability (CVSS 6.1) affecting Alfie – Feed Plugin (slug: alfie-the-productfeedtool-wp-plugin) in versions up to and including 1.2.1. It combines Cross-Site Request Forgery (CSRF) with Stored Cross-Site Scripting...

WordPress PayPal Donation Vulnerability (Medium) – CVE-2026-4072

by Ivan Sorkin | Mar 20, 2026 | Plugins

Attack Vectors WordPress PayPal Donation (slug: wordpress-paypal-donation) has a Medium-severity stored cross-site scripting (XSS) vulnerability (CVSS 6.4) tracked as CVE-2026-4072. The issue affects all versions up to and including 1.01. The attack requires an...

Paypal Shortcodes Vulnerability (Medium) – CVE-2026-3617

by Ivan Sorkin | Mar 20, 2026 | Plugins

Attack Vectors CVE-2026-3617 affects the WordPress plugin Paypal Shortcodes (slug: paypal-shortcodes) in versions up to and including 0.3. The issue is a Medium-severity stored cross-site scripting (XSS) vulnerability (CVSS 6.4) that requires an attacker to be an...

WP Games Embed Vulnerability (Medium) – CVE-2026-3996

by Ivan Sorkin | Mar 20, 2026 | Plugins

Attack Vectors WP Games Embed (slug: wp-games-embed) versions up to and including 0.1beta contain a Medium severity vulnerability (CVE-2026-3996, CVSS 6.4) that can be exploited by an authenticated user with at least Contributor permissions. The attack path is...

fyyd podcast shortcodes Vulnerability (Medium) – CVE-2026-4084

by Ivan Sorkin | Mar 20, 2026 | Plugins

Attack Vectors CVE-2026-4084 is a Medium severity vulnerability (CVSS 6.4) affecting the WordPress plugin fyyd podcast shortcodes (slug: fyyd-podcast-shortcodes) in all versions up to and including 0.3.1. The issue is an authenticated Stored Cross-Site Scripting...
« Older Entries
Next Entries »

Recent Posts

  • RestroPress – Online Food Ordering System Vulnerability (Medium) – …
  • RestroPress – Online Food Ordering System Vulnerability (Medium) – …
  • Kraken.io Image Optimizer Vulnerability (Medium) – CVE-2023-0619
  • Vantage Vulnerability (Medium) – CVE-2026-5070
  • WP Docs Vulnerability (Medium) – CVE-2026-3878

Recent Comments

    Archives

    • April 2026
    • March 2026
    • February 2026
    • January 2026
    • November 2025
    • October 2025
    • September 2025
    • August 2025
    • July 2025
    • June 2025
    • May 2025
    • April 2025
    • March 2025
    • February 2025
    • January 2025
    • December 2024

    Categories

    • Core
    • Plugins
    • Themes
    • Uncategorized
    • WooCommerce
    • WordPress Customization
    • WordPress Maintenance
    • WordPress Performance
    • WordPress Security
    • WordPress Support

    Meta

    • Log in
    • Entries feed
    • Comments feed
    • WordPress.org

    Location

    Vrasida 5, Nicosia, Cyprus.

    (+357) 96384131

    [email protected]

    Follow Us

    • Follow
    • Follow
    • Follow
    • Follow
    • Follow
    • Follow

    Subscription

    Stay in touch and follow our latest developments.

    Success!

    Subscribe