[email protected]
  • Pricing
  • Checkout
  • My Account
0 Items
WPFore
  • Home
  • Pricing
  • Need Support?
  • Blog
Select Page

HurryTimer – An Scarcity and Urgency Countdown Timer for WordPress …

by Ivan Sorkin | Feb 26, 2026 | Plugins

Attack Vectors CVE-2026-24392 is a medium-severity Stored Cross-Site Scripting (XSS) issue (CVSS 6.4) affecting HurryTimer – An Scarcity and Urgency Countdown Timer for WordPress & WooCommerce (slug: hurrytimer) in versions <= 2.14.2. The vulnerability can be...

Media Search Enhanced Vulnerability (Medium) – CVE-2026-23805

by Ivan Sorkin | Feb 26, 2026 | Plugins

Attack Vectors CVE-2026-23805 is a Medium severity (CVSS 6.5) SQL Injection vulnerability affecting the Media Search Enhanced WordPress plugin (media-search-enhanced) in versions up to and including 0.9.1. The attack requires an authenticated WordPress account with...

WP Wizard Cloak Vulnerability (Medium) – CVE-2025-53237

by Ivan Sorkin | Feb 26, 2026 | Plugins

Attack Vectors Wizard Cloak (WordPress plugin slug: wp-wizard-cloak) is affected by a Medium-severity vulnerability (CVE-2025-53237, CVSS 6.1) that can be triggered over the internet by an unauthenticated attacker. The issue is a reflected cross-site scripting (XSS)...

Easy Taxonomy Images Vulnerability (High) – CVE-2025-53231

by Ivan Sorkin | Feb 26, 2026 | Plugins

Attack Vectors Easy Taxonomy Images (slug: easy-taxonomy-images) has a High-severity vulnerability (CVSS 7.2; vector CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:C/C:L/I:L/A:N) that allows unauthenticated attackers to inject malicious code into your WordPress site. Because this...

Page Builder – AIO WP Builder: #1 Website Builder for WordPress Vul…

by Ivan Sorkin | Feb 26, 2026 | Plugins

Attack Vectors Page Builder – AIO WP Builder: #1 Website Builder for WordPress (slug: all-in-one-wp-builder) is affected by CVE-2025-53217, rated Medium severity (CVSS 4.3). The issue can be exploited remotely over the network by an authenticated user who has at least...

bbpress Simple Advert Units Vulnerability (Medium) – CVE-2025-53228

by Ivan Sorkin | Feb 26, 2026 | Plugins

Attack Vectors CVE-2025-53228 is a Medium-severity (CVSS 6.1) Reflected Cross-Site Scripting (XSS) vulnerability affecting the bbpress Simple Advert Units WordPress plugin (bbpress-simple-advert-units) in versions <= 0.41. The primary risk scenario is link-based...
« Older Entries
Next Entries »

Recent Posts

  • RestroPress – Online Food Ordering System Vulnerability (Medium) – …
  • RestroPress – Online Food Ordering System Vulnerability (Medium) – …
  • Kraken.io Image Optimizer Vulnerability (Medium) – CVE-2023-0619
  • Vantage Vulnerability (Medium) – CVE-2026-5070
  • WP Docs Vulnerability (Medium) – CVE-2026-3878

Recent Comments

    Archives

    • April 2026
    • March 2026
    • February 2026
    • January 2026
    • November 2025
    • October 2025
    • September 2025
    • August 2025
    • July 2025
    • June 2025
    • May 2025
    • April 2025
    • March 2025
    • February 2025
    • January 2025
    • December 2024

    Categories

    • Core
    • Plugins
    • Themes
    • Uncategorized
    • WooCommerce
    • WordPress Customization
    • WordPress Maintenance
    • WordPress Performance
    • WordPress Security
    • WordPress Support

    Meta

    • Log in
    • Entries feed
    • Comments feed
    • WordPress.org

    Location

    Vrasida 5, Nicosia, Cyprus.

    (+357) 96384131

    [email protected]

    Follow Us

    • Follow
    • Follow
    • Follow
    • Follow
    • Follow
    • Follow

    Subscription

    Stay in touch and follow our latest developments.

    Success!

    Subscribe