[email protected]
  • Pricing
  • Checkout
  • My Account
0 Items
WPFore
  • Home
  • Pricing
  • Need Support?
  • Blog
Select Page

Community Events Vulnerability (Medium) – CVE-2026-2429

by Ivan Sorkin | Mar 6, 2026 | Plugins

Attack Vectors The Community Events WordPress plugin (slug: community-events) has a Medium-severity SQL Injection vulnerability (CVE-2026-2429) affecting versions up to and including 1.5.8. The vulnerable entry point is a venue-related CSV import workflow, where the...

JS Archive List Vulnerability (High) – CVE-2026-2020

by Ivan Sorkin | Mar 6, 2026 | Plugins

Attack Vectors High severity (CVSS 7.5) vulnerability CVE-2026-2020 affects the JS Archive List WordPress plugin (slug: jquery-archive-list-widget) in versions 6.1.7 and below. The issue can be exploited by an authenticated user with Contributor-level access or...

ProfileGrid – User Profiles, Groups and Communities Vulnerability (…

by Ivan Sorkin | Mar 6, 2026 | Plugins

Attack Vectors In ProfileGrid – User Profiles, Groups and Communities (slug: profilegrid-user-profiles-groups-and-communities), versions up to and including 5.9.8.1 contain a Medium-severity authorization gap (CVE-2026-2488, CVSS 4.3). This weakness can be abused by...

ProfileGrid – User Profiles, Groups and Communities Vulnerability (…

by Ivan Sorkin | Mar 6, 2026 | Plugins

Attack Vectors CVE-2026-2494 is a Medium-severity Cross-Site Request Forgery (CSRF) vulnerability in the WordPress plugin ProfileGrid – User Profiles, Groups and Communities (slug: profilegrid-user-profiles-groups-and-communities) affecting versions up to and...

CM Custom Reports – Flexible reporting to track what matters most V…

by Ivan Sorkin | Mar 6, 2026 | Plugins

Attack Vectors CM Custom Reports – Flexible reporting to track what matters most (slug: cm-custom-reports) has a Medium-severity vulnerability (CVSS 6.1, CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N) identified as CVE-2026-2431. It is a Reflected Cross-Site Scripting...
« Older Entries
Next Entries »

Recent Posts

  • RestroPress – Online Food Ordering System Vulnerability (Medium) – …
  • RestroPress – Online Food Ordering System Vulnerability (Medium) – …
  • Kraken.io Image Optimizer Vulnerability (Medium) – CVE-2023-0619
  • Vantage Vulnerability (Medium) – CVE-2026-5070
  • WP Docs Vulnerability (Medium) – CVE-2026-3878

Recent Comments

    Archives

    • April 2026
    • March 2026
    • February 2026
    • January 2026
    • November 2025
    • October 2025
    • September 2025
    • August 2025
    • July 2025
    • June 2025
    • May 2025
    • April 2025
    • March 2025
    • February 2025
    • January 2025
    • December 2024

    Categories

    • Core
    • Plugins
    • Themes
    • Uncategorized
    • WooCommerce
    • WordPress Customization
    • WordPress Maintenance
    • WordPress Performance
    • WordPress Security
    • WordPress Support

    Meta

    • Log in
    • Entries feed
    • Comments feed
    • WordPress.org

    Location

    Vrasida 5, Nicosia, Cyprus.

    (+357) 96384131

    [email protected]

    Follow Us

    • Follow
    • Follow
    • Follow
    • Follow
    • Follow
    • Follow

    Subscription

    Stay in touch and follow our latest developments.

    Success!

    Subscribe