[email protected]
  • Pricing
  • Checkout
  • My Account
0 Items
WPFore
  • Home
  • Pricing
  • Need Support?
  • Blog
Select Page

LatePoint – Calendar Booking Plugin for Appointments and Events Vul…

by Ivan Sorkin | Feb 13, 2026 | Plugins

Attack Vectors The LatePoint – Calendar Booking Plugin for Appointments and Events (slug: latepoint-2) is affected by a Medium-severity Cross-Site Request Forgery (CSRF) vulnerability (CVE-2025-14873, CVSS 4.3). In practical terms, an attacker can attempt to make...

MasterStudy LMS WordPress Plugin – for Online Courses and Education…

by Ivan Sorkin | Feb 13, 2026 | Plugins

Attack Vectors CVE-2026-0559 (Medium severity, CVSS 6.4) affects the MasterStudy LMS WordPress Plugin – for Online Courses and Education (slug: masterstudy-lms-learning-management-system) in versions up to and including 3.7.11. The issue is an authenticated Stored...

Flexi Product Slider and Grid for WooCommerce Vulnerability (High) …

by Ivan Sorkin | Feb 13, 2026 | Plugins

Attack Vectors Flexi Product Slider and Grid for WooCommerce (slug: flexi-product-slider-grid) has a High-severity vulnerability (CVSS 7.5, CVSS:3.1/AV:N/AC:H/PR:L/UI:N/S:U/C:H/I:H/A:H) affecting versions up to and including 1.0.5. It is tracked as CVE-2026-1988. The...

Accordion and Accordion Slider Vulnerability (Medium) – CVE-2026-0727

by Ivan Sorkin | Feb 13, 2026 | Plugins

Attack Vectors Accordion and Accordion Slider (slug: accordion-and-accordion-slider) is affected by a medium-severity authorization issue (CVE-2026-0727, CVSS 5.4). The risk comes from what an authenticated user can do after they already have a valid account. An...

WP Data Access – No-Code App Builder with Tables, Forms, Charts & M…

by Ivan Sorkin | Feb 13, 2026 | Plugins

Attack Vectors CVE-2026-0557 affects the WordPress plugin WP Data Access – No-Code App Builder with Tables, Forms, Charts & Maps (slug: wp-data-access) in versions up to and including 5.5.63. It is a Medium severity issue (CVSS 6.4) involving Stored Cross-Site...

Allow HTML in Category Descriptions Vulnerability (Medium) – CVE-20…

by Ivan Sorkin | Feb 13, 2026 | Plugins

Attack Vectors Allow HTML in Category Descriptions (slug: allow-html-in-category-descriptions) has a Medium severity vulnerability (CVSS 4.4; CVE: CVE-2026-0693) that can be triggered by an authenticated user with Administrator (or higher) access. The attack involves...
« Older Entries
Next Entries »

Recent Posts

  • RestroPress – Online Food Ordering System Vulnerability (Medium) – …
  • RestroPress – Online Food Ordering System Vulnerability (Medium) – …
  • Kraken.io Image Optimizer Vulnerability (Medium) – CVE-2023-0619
  • Vantage Vulnerability (Medium) – CVE-2026-5070
  • WP Docs Vulnerability (Medium) – CVE-2026-3878

Recent Comments

    Archives

    • April 2026
    • March 2026
    • February 2026
    • January 2026
    • November 2025
    • October 2025
    • September 2025
    • August 2025
    • July 2025
    • June 2025
    • May 2025
    • April 2025
    • March 2025
    • February 2025
    • January 2025
    • December 2024

    Categories

    • Core
    • Plugins
    • Themes
    • Uncategorized
    • WooCommerce
    • WordPress Customization
    • WordPress Maintenance
    • WordPress Performance
    • WordPress Security
    • WordPress Support

    Meta

    • Log in
    • Entries feed
    • Comments feed
    • WordPress.org

    Location

    Vrasida 5, Nicosia, Cyprus.

    (+357) 96384131

    [email protected]

    Follow Us

    • Follow
    • Follow
    • Follow
    • Follow
    • Follow
    • Follow

    Subscription

    Stay in touch and follow our latest developments.

    Success!

    Subscribe