[email protected]
  • Pricing
  • Checkout
  • My Account
0 Items
WPFore
  • Home
  • Pricing
  • Need Support?
  • Blog
Select Page

W3 Total Cache Vulnerability (Critical) – CVE-2026-27384

by Ivan Sorkin | Mar 5, 2026 | Plugins

Attack Vectors W3 Total Cache (WordPress plugin, slug w3-total-cache) has a Critical vulnerability (CVE-2026-27384) that can allow unauthenticated arbitrary code execution in versions 2.9.1 and earlier. In practical business terms, this means an attacker may be able...

NextScripts: Social Networks Auto-Poster Vulnerability (High) – CVE…

by Ivan Sorkin | Mar 5, 2026 | Plugins

Attack Vectors The vulnerability CVE-2026-27379 affects the WordPress plugin NextScripts: Social Networks Auto-Poster (slug: social-networks-auto-poster-facebook-twitter-g) in versions up to and including 4.4.7. It is rated High severity (CVSS 7.5). The primary attack...

woocommerce-order-details Vulnerability (Medium) – CVE-2026-27374

by Ivan Sorkin | Mar 5, 2026 | Plugins

Attack Vectors CVE-2026-27374 affects the WooCommerce Order Details plugin (woocommerce-order-details) for WordPress, with a Medium severity rating (CVSS 5.3). The reported issue is a missing authorization (capability) check in versions up to and including 3.1. From a...

Floating Chat Widget: Contact Chat Icons, Telegram Chat, Line Messe…

by Ivan Sorkin | Mar 5, 2026 | Plugins

Attack Vectors Medium severity (CVSS 5.3) information exposure issues are often exploited quietly because they do not require malware or complex steps—just the ability to reach a vulnerable site. In Floating Chat Widget: Contact Chat Icons, Telegram Chat, Line...

Bakery Autoresponder Addon Vulnerability (High) – CVE-2026-27363

by Ivan Sorkin | Mar 5, 2026 | Plugins

Attack Vectors Bakery Autoresponder Addon (WordPress plugin slug: vc-autoresponder-addon) has a High severity vulnerability (CVSS 7.2, CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:C/C:L/I:L/A:N) identified as CVE-2026-27363. The issue is an unauthenticated stored cross-site...

vc-autoresponder-addon Vulnerability (Medium) – CVE-2026-27362

by Ivan Sorkin | Mar 5, 2026 | Plugins

Attack Vectors The Bakery Autoresponder Addon plugin (product slug: vc-autoresponder-addon) has a missing authorization (capability) check in versions up to and including 1.0.6. With a Medium severity rating (CVSS 5.3), this issue can allow an unauthenticated attacker...
« Older Entries
Next Entries »

Recent Posts

  • RestroPress – Online Food Ordering System Vulnerability (Medium) – …
  • RestroPress – Online Food Ordering System Vulnerability (Medium) – …
  • Kraken.io Image Optimizer Vulnerability (Medium) – CVE-2023-0619
  • Vantage Vulnerability (Medium) – CVE-2026-5070
  • WP Docs Vulnerability (Medium) – CVE-2026-3878

Recent Comments

    Archives

    • April 2026
    • March 2026
    • February 2026
    • January 2026
    • November 2025
    • October 2025
    • September 2025
    • August 2025
    • July 2025
    • June 2025
    • May 2025
    • April 2025
    • March 2025
    • February 2025
    • January 2025
    • December 2024

    Categories

    • Core
    • Plugins
    • Themes
    • Uncategorized
    • WooCommerce
    • WordPress Customization
    • WordPress Maintenance
    • WordPress Performance
    • WordPress Security
    • WordPress Support

    Meta

    • Log in
    • Entries feed
    • Comments feed
    • WordPress.org

    Location

    Vrasida 5, Nicosia, Cyprus.

    (+357) 96384131

    [email protected]

    Follow Us

    • Follow
    • Follow
    • Follow
    • Follow
    • Follow
    • Follow

    Subscription

    Stay in touch and follow our latest developments.

    Success!

    Subscribe