[email protected]
  • Pricing
  • Checkout
  • My Account
0 Items
WPFore
  • Home
  • Pricing
  • Need Support?
  • Blog
Select Page

Contest Gallery – Upload & Vote Photos, Media, Sell with PayPal & S…

by Ivan Sorkin | Feb 10, 2026 | Plugins

Attack Vectors CVE-2026-24965 is a Medium-severity authorization issue affecting the WordPress plugin Contest Gallery – Upload & Vote Photos, Media, Sell with PayPal & Stripe (slug: contest-gallery) in versions up to and including 28.1.1. The key risk is that...

Strong Testimonials Vulnerability (Medium) – CVE-2026-24957

by Ivan Sorkin | Feb 10, 2026 | Plugins

Attack Vectors Strong Testimonials (slug: strong-testimonials) versions up to 3.2.20 are affected by a Medium-severity missing authorization issue (CVSS 4.3) tracked as CVE-2026-24957. The primary attack path is through an authenticated user account with...

Event Booking Manager for WooCommerce Vulnerability (High) – CVE-20…

by Ivan Sorkin | Feb 10, 2026 | Plugins

Attack Vectors High severity vulnerability (CVSS 7.5) identified as CVE-2026-24954 affects Event Booking Manager for WooCommerce (WordPress plugin slug: mage-eventpress) in versions up to and including 5.0.8. The issue is described as an Authenticated (Contributor+)...

myCred – Points Management System For Gamification, Ranks, Badges, …

by Ivan Sorkin | Feb 10, 2026 | Plugins

Attack Vectors myCred – Points Management System For Gamification, Ranks, Badges, and Loyalty Program (slug: mycred) is affected by a Medium-severity vulnerability (CVSS 4.3, CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:N/I:L/A:N) tracked as CVE-2026-24951. The issue enables...

LA-Studio Element Kit for Elementor Vulnerability (Medium) – CVE-20…

by Ivan Sorkin | Feb 10, 2026 | Plugins

Attack Vectors CVE-2026-24947 is a Medium severity issue affecting the WordPress plugin LA-Studio Element Kit for Elementor (slug: lastudio-element-kit) in versions earlier than 1.5.6.3. The vulnerability is described as a missing authorization (capability) check on a...

Ultra Addons for Contact Form 7 Vulnerability (Medium) – CVE-2026-2…

by Ivan Sorkin | Feb 10, 2026 | Plugins

Attack Vectors CVE-2026-24945 affects the WordPress plugin Ultra Addons for Contact Form 7 (slug: ultimate-addons-for-contact-form-7) in versions up to and including 3.5.34. The issue is categorized as a missing authorization (“missing capability check”), which means...
« Older Entries
Next Entries »

Recent Posts

  • RestroPress – Online Food Ordering System Vulnerability (Medium) – …
  • RestroPress – Online Food Ordering System Vulnerability (Medium) – …
  • Kraken.io Image Optimizer Vulnerability (Medium) – CVE-2023-0619
  • Vantage Vulnerability (Medium) – CVE-2026-5070
  • WP Docs Vulnerability (Medium) – CVE-2026-3878

Recent Comments

    Archives

    • April 2026
    • March 2026
    • February 2026
    • January 2026
    • November 2025
    • October 2025
    • September 2025
    • August 2025
    • July 2025
    • June 2025
    • May 2025
    • April 2025
    • March 2025
    • February 2025
    • January 2025
    • December 2024

    Categories

    • Core
    • Plugins
    • Themes
    • Uncategorized
    • WooCommerce
    • WordPress Customization
    • WordPress Maintenance
    • WordPress Performance
    • WordPress Security
    • WordPress Support

    Meta

    • Log in
    • Entries feed
    • Comments feed
    • WordPress.org

    Location

    Vrasida 5, Nicosia, Cyprus.

    (+357) 96384131

    [email protected]

    Follow Us

    • Follow
    • Follow
    • Follow
    • Follow
    • Follow
    • Follow

    Subscription

    Stay in touch and follow our latest developments.

    Success!

    Subscribe