by Ivan Sorkin | Mar 6, 2026 | Plugins
Attack Vectors The WordPress plugin Easy Voice Mail (slug: easy-voice-mail) is affected by a Medium-severity Stored Cross-Site Scripting (XSS) issue (CVE-2026-1164, CVSS 6.1). The vulnerability is tied to the message parameter and impacts all versions up to and...
by Ivan Sorkin | Mar 6, 2026 | Plugins
Attack Vectors CVE-2026-0692 is a High-severity vulnerability (CVSS 7.5) affecting the BlueSnap Payment Gateway for WooCommerce plugin (slug: bluesnap-payment-gateway-for-woocommerce) in versions 3.4.0 and earlier. It enables unauthenticated attackers to submit forged...
by Ivan Sorkin | Mar 6, 2026 | Plugins
Attack Vectors High severity vulnerability (CVSS 7.5) has been identified in the WordPress plugin Image Gallery – Lightbox Gallery, Responsive Photo Gallery, Masonry Gallery (slug: new-image-gallery) affecting versions up to and including 1.6.0 (CVE: CVE-2026-22345)....
by Ivan Sorkin | Mar 6, 2026 | Plugins
Attack Vectors The vulnerability CVE-2026-27541 affects the WordPress plugin Wholesale Suite – B2B, Dynamic Pricing & WooCommerce Wholesale Prices (slug: woocommerce-wholesale-prices) in versions up to and including 2.2.6, and is rated High severity (CVSS 7.2)....
by Ivan Sorkin | Mar 6, 2026 | Plugins
Attack Vectors CVE-2025-63052 is a Medium-severity (CVSS 6.4) Stored Cross-Site Scripting (XSS) issue affecting the SimpLy Gallery plugin for WordPress (Mixed Media Gallery Blocks, slug: simply-gallery-block) in versions up to and including 3.3.2.1. The primary attack...
Recent Comments