[email protected]
  • Pricing
  • Checkout
  • My Account
0 Items
WPFore
  • Home
  • Pricing
  • Need Support?
  • Blog
Select Page

Add Custom Codes – Insert Header, Footer, Custom PHP Snippets, CSS,…

by Ivan Sorkin | Mar 18, 2026 | Plugins

Attack Vectors Add Custom Codes – Insert Header, Footer, Custom PHP Snippets, CSS, Javascript (slug: add-custom-codes) versions 4.80 and below contain a medium-severity Cross-Site Request Forgery (CSRF) issue tracked as CVE-2025-62739 (CVSS 4.3). This attack does not...

Compact Archives Vulnerability (Medium) – CVE-2025-58001

by Ivan Sorkin | Mar 18, 2026 | Plugins

Attack Vectors CVE-2025-58001 is a Medium severity vulnerability (CVSS 6.4) affecting the Compact Archives WordPress plugin (compact-archives) in versions 4.1.0 and below. It is an authenticated Stored Cross-Site Scripting (XSS) issue, meaning an attacker must have a...

Bonus for Woo Vulnerability (Medium) – CVE-2025-58835

by Ivan Sorkin | Mar 18, 2026 | Plugins

Attack Vectors Bonus for Woo (slug: bonus-for-woo) versions up to and including 7.6.6 are affected by an insufficient input validation issue (CVE-2025-58835) with a Medium severity rating (CVSS 5.3). Based on the published scoring vector (AV:N/AC:L/PR:N/UI:N), the...

Rankie – WordPress Rank Tracker Plugin Vulnerability (Medium) – CVE…

by Ivan Sorkin | Mar 18, 2026 | Plugins

Attack Vectors CVE-2025-39493 affects the Rankie – WordPress Rank Tracker Plugin (slug: valvepress-rankie) in versions prior to 1.8.2. The issue is a missing authorization (capability) check on a plugin function, which means an attacker who can log in as a...

ValidateCertify Free Vulnerability (Medium) – CVE-2025-48115

by Ivan Sorkin | Mar 18, 2026 | Plugins

Attack Vectors ValidateCertify Free (slug: validar-certificados-de-cursos) versions up to and including 1.6.4 are affected by a Cross-Site Request Forgery (CSRF) vulnerability (Medium severity; CVSS 4.3, vector: CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:N/I:L/A:N;...

Starfish Review Generation & Marketing for WordPress Vulnerability …

by Ivan Sorkin | Mar 18, 2026 | Plugins

Attack Vectors Starfish Review Generation & Marketing for WordPress (slug: starfish-reviews) versions up to and including 3.1.19 contain a High severity vulnerability (CVSS 8.8) tracked as CVE-2025-39533. The primary attack path is straightforward for an...
« Older Entries
Next Entries »

Recent Posts

  • RestroPress – Online Food Ordering System Vulnerability (Medium) – …
  • RestroPress – Online Food Ordering System Vulnerability (Medium) – …
  • Kraken.io Image Optimizer Vulnerability (Medium) – CVE-2023-0619
  • Vantage Vulnerability (Medium) – CVE-2026-5070
  • WP Docs Vulnerability (Medium) – CVE-2026-3878

Recent Comments

    Archives

    • April 2026
    • March 2026
    • February 2026
    • January 2026
    • November 2025
    • October 2025
    • September 2025
    • August 2025
    • July 2025
    • June 2025
    • May 2025
    • April 2025
    • March 2025
    • February 2025
    • January 2025
    • December 2024

    Categories

    • Core
    • Plugins
    • Themes
    • Uncategorized
    • WooCommerce
    • WordPress Customization
    • WordPress Maintenance
    • WordPress Performance
    • WordPress Security
    • WordPress Support

    Meta

    • Log in
    • Entries feed
    • Comments feed
    • WordPress.org

    Location

    Vrasida 5, Nicosia, Cyprus.

    (+357) 96384131

    [email protected]

    Follow Us

    • Follow
    • Follow
    • Follow
    • Follow
    • Follow
    • Follow

    Subscription

    Stay in touch and follow our latest developments.

    Success!

    Subscribe