[email protected]
  • Pricing
  • Checkout
  • My Account
0 Items
WPFore
  • Home
  • Pricing
  • Need Support?
  • Blog
Select Page

My auctions allegro Vulnerability (Medium) – CVE-2025-27009

by Ivan Sorkin | Feb 26, 2026 | Plugins

Attack Vectors CVE-2025-27009 is a Medium-severity Cross-Site Request Forgery (CSRF) vulnerability (CVSS 4.3) affecting the My auctions allegro WordPress plugin (slug: my-auctions-allegro-free-edition) in versions up to and including 3.6.33. The most likely attack...

Inline Related Posts Vulnerability (Medium) – CVE-2025-47604

by Ivan Sorkin | Feb 26, 2026 | Plugins

Attack Vectors CVE-2025-47604 is a Medium severity (CVSS 6.4) Stored Cross-Site Scripting (XSS) vulnerability affecting the Inline Related Posts WordPress plugin (intelly-related-posts) in versions up to and including 3.8.0. The primary attack path is through a user...

connectDaily Events Calendar Plugin Vulnerability (Medium) – CVE-20…

by Ivan Sorkin | Feb 26, 2026 | Plugins

Attack Vectors The WordPress Events Calendar Plugin – connectDaily (slug: connect-daily-web-calendar) has a Medium-severity vulnerability (CVSS 6.1, CVE-2025-32597) affecting all versions up to and including 1.5.4. This issue can be exploited when an attacker...

Embeds for YouTube Vulnerability (Medium) – CVE-2025-31008

by Ivan Sorkin | Feb 26, 2026 | Plugins

Attack Vectors CVE-2025-31008 is a Medium-severity stored cross-site scripting (XSS) issue (CVSS 4.4) affecting the Embeds for YouTube plugin (slug: youtube-embed) in versions up to and including 5.3.1. An attacker must already be authenticated with...

teachPress Vulnerability (Medium) – CVE-2025-32149

by Ivan Sorkin | Feb 26, 2026 | Plugins

Attack Vectors Product: teachPress (WordPress plugin, slug: teachpress) Vulnerability: Authenticated SQL Injection affecting teachPress versions up to and including 9.0.11. This is rated Medium severity (CVSS 3.1 score 6.5, vector:...

Picture Gallery – Frontend Image Uploads, AJAX Photo List Vulnerabi…

by Ivan Sorkin | Feb 26, 2026 | Plugins

Attack Vectors CVE-2025-26581 is a medium-severity Stored Cross-Site Scripting (XSS) issue affecting the WordPress plugin Picture Gallery – Frontend Image Uploads, AJAX Photo List (slug: picture-gallery) in versions up to and including 1.6.3. Because the vulnerability...
« Older Entries
Next Entries »

Recent Posts

  • RestroPress – Online Food Ordering System Vulnerability (Medium) – …
  • RestroPress – Online Food Ordering System Vulnerability (Medium) – …
  • Kraken.io Image Optimizer Vulnerability (Medium) – CVE-2023-0619
  • Vantage Vulnerability (Medium) – CVE-2026-5070
  • WP Docs Vulnerability (Medium) – CVE-2026-3878

Recent Comments

    Archives

    • April 2026
    • March 2026
    • February 2026
    • January 2026
    • November 2025
    • October 2025
    • September 2025
    • August 2025
    • July 2025
    • June 2025
    • May 2025
    • April 2025
    • March 2025
    • February 2025
    • January 2025
    • December 2024

    Categories

    • Core
    • Plugins
    • Themes
    • Uncategorized
    • WooCommerce
    • WordPress Customization
    • WordPress Maintenance
    • WordPress Performance
    • WordPress Security
    • WordPress Support

    Meta

    • Log in
    • Entries feed
    • Comments feed
    • WordPress.org

    Location

    Vrasida 5, Nicosia, Cyprus.

    (+357) 96384131

    [email protected]

    Follow Us

    • Follow
    • Follow
    • Follow
    • Follow
    • Follow
    • Follow

    Subscription

    Stay in touch and follow our latest developments.

    Success!

    Subscribe