[email protected]
  • Pricing
  • Checkout
  • My Account
0 Items
WPFore
  • Home
  • Pricing
  • Need Support?
  • Blog
Select Page

WPFAQBlock– FAQ & Accordion Plugin For Gutenberg Vulnerability (Med…

by Ivan Sorkin | Mar 20, 2026 | Plugins

Attack Vectors WPFAQBlock– FAQ & Accordion Plugin For Gutenberg (slug: wpfaqblock) is affected by CVE-2026-1093, a Medium-severity Stored Cross-Site Scripting (XSS) issue (CVSS 6.4, CVE record). The vulnerability can be exploited by an authenticated WordPress user...

Add Google Social Profiles to Knowledge Graph Box Vulnerability (Me…

by Ivan Sorkin | Mar 20, 2026 | Plugins

Attack Vectors CVE-2026-1393 is a Medium severity Cross-Site Request Forgery (CSRF) issue (CVSS 4.3, CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:N/I:L/A:N) affecting the WordPress plugin Add Google Social Profiles to Knowledge Graph Box (slug:...

PQ Addons – Creative Elementor Widgets Vulnerability (Medium) – CVE…

by Ivan Sorkin | Mar 20, 2026 | Plugins

Attack Vectors PQ Addons – Creative Elementor Widgets (slug: peacefulqode-elementzplus-widgets) has a Medium-severity stored cross-site scripting (XSS) vulnerability (CVE-2026-1397, CVSS 6.4) affecting versions up to and including 1.0.0. An attacker must be...

Redirect countdown Vulnerability (Medium) – CVE-2026-1390

by Ivan Sorkin | Mar 20, 2026 | Plugins

Attack Vectors CVE-2026-1390 is a Medium severity (CVSS 4.3) Cross-Site Request Forgery (CSRF) issue affecting the Redirect countdown WordPress plugin (slug: redirect-countdown) in all versions up to and including 1.0. In practical terms, an attacker doesn’t need to...

Schema Shortcode Vulnerability (Medium) – CVE-2026-1575

by Ivan Sorkin | Mar 20, 2026 | Plugins

Attack Vectors CVE-2026-1575 is a Medium-severity Stored Cross-Site Scripting (XSS) issue (CVSS 6.4) affecting the Schema Shortcode WordPress plugin (slug: schema-shortcode) in versions up to and including 1.0. The attack requires an authenticated WordPress account...

SR WP Minify HTML Vulnerability (Medium) – CVE-2026-1392

by Ivan Sorkin | Mar 20, 2026 | Plugins

Attack Vectors SR WP Minify HTML (slug: sr-wp-minify-html) is affected by a Medium-severity Cross-Site Request Forgery (CSRF) vulnerability (CVE-2026-1392, CVSS 4.3; CVE record). In practical terms, an external attacker does not need a login to your WordPress site to...
« Older Entries
Next Entries »

Recent Posts

  • RestroPress – Online Food Ordering System Vulnerability (Medium) – …
  • RestroPress – Online Food Ordering System Vulnerability (Medium) – …
  • Kraken.io Image Optimizer Vulnerability (Medium) – CVE-2023-0619
  • Vantage Vulnerability (Medium) – CVE-2026-5070
  • WP Docs Vulnerability (Medium) – CVE-2026-3878

Recent Comments

    Archives

    • April 2026
    • March 2026
    • February 2026
    • January 2026
    • November 2025
    • October 2025
    • September 2025
    • August 2025
    • July 2025
    • June 2025
    • May 2025
    • April 2025
    • March 2025
    • February 2025
    • January 2025
    • December 2024

    Categories

    • Core
    • Plugins
    • Themes
    • Uncategorized
    • WooCommerce
    • WordPress Customization
    • WordPress Maintenance
    • WordPress Performance
    • WordPress Security
    • WordPress Support

    Meta

    • Log in
    • Entries feed
    • Comments feed
    • WordPress.org

    Location

    Vrasida 5, Nicosia, Cyprus.

    (+357) 96384131

    [email protected]

    Follow Us

    • Follow
    • Follow
    • Follow
    • Follow
    • Follow
    • Follow

    Subscription

    Stay in touch and follow our latest developments.

    Success!

    Subscribe