[email protected]
  • Pricing
  • Checkout
  • My Account
0 Items
WPFore
  • Home
  • Pricing
  • Need Support?
  • Blog
Select Page

Broken Link Notifier Vulnerability (Medium) – CVE-2026-25408

by Ivan Sorkin | Feb 26, 2026 | Plugins

Attack Vectors CVE-2026-25408 is a Medium severity (CVSS 5.3) vulnerability affecting the Broken Link Notifier WordPress plugin (slug: broken-link-notifier) in versions <= 1.3.5. Because the issue can be triggered over the network and does not require a logged-in...

Cookiebot by Usercentrics – Automatic Cookie Banner for GDPR/CCPA &…

by Ivan Sorkin | Feb 26, 2026 | Plugins

Attack Vectors CVE-2026-25407 affects the WordPress plugin Cookiebot by Usercentrics – Automatic Cookie Banner for GDPR/CCPA & Google Consent Mode (slug: cookiebot) in versions up to and including 4.6.4. This is a Medium severity issue (CVSS 4.3). The primary risk...

Serious Slider Vulnerability (Medium) – CVE-2026-25399

by Ivan Sorkin | Feb 26, 2026 | Plugins

Attack Vectors CVE-2026-25399 affects the Serious Slider WordPress plugin (slug: cryout-serious-slider) versions <= 1.2.7. This is a Medium-severity issue (CVSS 4.3, vector: CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:N/I:L/A:N) that can be exploited remotely over the...

WP Wand – Unlimited Content Generation using AI – for OpenAI, Claud…

by Ivan Sorkin | Feb 26, 2026 | Plugins

Attack Vectors CVE-2026-25391 affects the WordPress plugin WP Wand – Unlimited Content Generation using AI – for OpenAI, Claude, Openrouter and Deepseek (slug: ai-content-generation) in versions <= 1.3.07. The issue is rated Medium severity (CVSS 4.3, vector:...

WSMS (formerly WP SMS) – SMS & MMS Notifications with OTP and 2FA f…

by Ivan Sorkin | Feb 26, 2026 | Plugins

Attack Vectors CVE-2026-25343 is a medium-severity Stored Cross-Site Scripting (XSS) vulnerability (CVSS 4.4) affecting the WSMS (formerly WP SMS) – SMS & MMS Notifications with OTP and 2FA for WooCommerce WordPress plugin (slug: wp-sms) in versions <= 7.1. The...

CM Business Directory – Optimise and showcase local business Vulner…

by Ivan Sorkin | Feb 26, 2026 | Plugins

Attack Vectors CVE-2026-25004 is a Medium-severity Stored Cross-Site Scripting (XSS) vulnerability (CVSS 6.4) affecting the CM Business Directory – Optimise and showcase local business WordPress plugin (cm-business-directory) in versions up to and including 1.5.3. The...
« Older Entries
Next Entries »

Recent Posts

  • RestroPress – Online Food Ordering System Vulnerability (Medium) – …
  • RestroPress – Online Food Ordering System Vulnerability (Medium) – …
  • Kraken.io Image Optimizer Vulnerability (Medium) – CVE-2023-0619
  • Vantage Vulnerability (Medium) – CVE-2026-5070
  • WP Docs Vulnerability (Medium) – CVE-2026-3878

Recent Comments

    Archives

    • April 2026
    • March 2026
    • February 2026
    • January 2026
    • November 2025
    • October 2025
    • September 2025
    • August 2025
    • July 2025
    • June 2025
    • May 2025
    • April 2025
    • March 2025
    • February 2025
    • January 2025
    • December 2024

    Categories

    • Core
    • Plugins
    • Themes
    • Uncategorized
    • WooCommerce
    • WordPress Customization
    • WordPress Maintenance
    • WordPress Performance
    • WordPress Security
    • WordPress Support

    Meta

    • Log in
    • Entries feed
    • Comments feed
    • WordPress.org

    Location

    Vrasida 5, Nicosia, Cyprus.

    (+357) 96384131

    [email protected]

    Follow Us

    • Follow
    • Follow
    • Follow
    • Follow
    • Follow
    • Follow

    Subscription

    Stay in touch and follow our latest developments.

    Success!

    Subscribe