9.8

CVSS3.1

CVE-2025-22728 - WordPress Workreap (theme's plugin) plugin <= 3.3.6 - SQL Injection vulnerability

Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in AmentoTech Workreap (theme's plugin) workreap allows SQL Injection.This issue affects Workreap (theme's plugin): from n/a through <= 3.3.6.

πŸ“… Published: Jan. 8, 2026, 9:17 a.m. πŸ”„ Last Modified: Jan. 9, 2026, 1:25 p.m.

9.1

CVSS3.1

CVE-2025-22726 - WordPress nK Themes Helper plugin <= 1.7.9 - Server Side Request Forgery (SSRF) vulnerability

Server-Side Request Forgery (SSRF) vulnerability in _nK nK Themes Helper nk-themes-helper allows Server Side Request Forgery.This issue affects nK Themes Helper: from n/a through <= 1.7.9.

πŸ“… Published: Jan. 8, 2026, 9:17 a.m. πŸ”„ Last Modified: Jan. 9, 2026, 1:25 p.m.

5.4

CVSS3.1

CVE-2025-22725 - WordPress WP Virtual Assistant plugin <= 3.0 - Cross Site Scripting (XSS) vulnerability

Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in loopus WP Virtual Assistant VirtualAssistant allows Stored XSS.This issue affects WP Virtual Assistant: from n/a through <= 3.0.

πŸ“… Published: Jan. 8, 2026, 9:17 a.m. πŸ”„ Last Modified: Jan. 9, 2026, 1:25 p.m.

8.1

CVSS3.1

CVE-2025-22715 - WordPress WP Attractive Donations System - Easy Stripe & Paypal donations plugin <= 1.25 - Arbitrar…

Missing Authorization vulnerability in loopus WP Attractive Donations System - Easy Stripe & Paypal donations WP_AttractiveDonationsSystem allows Exploiting Incorrectly Configured Access Control Security Levels.This issue affects WP Attractive Donations System - Easy Stripe & Paypal donations: from…

πŸ“… Published: Jan. 8, 2026, 9:17 a.m. πŸ”„ Last Modified: Jan. 9, 2026, 1:25 p.m.

9.8

CVSS3.1

CVE-2025-22713 - WordPress WooCommerce Orders & Customers Exporter plugin <= 5.4 - SQL Injection vulnerability

Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in vanquish WooCommerce Orders & Customers Exporter woocommerce-orders-ei allows SQL Injection.This issue affects WooCommerce Orders & Customers Exporter: from n/a through <= 5.4.

πŸ“… Published: Jan. 8, 2026, 9:17 a.m. πŸ”„ Last Modified: Jan. 9, 2026, 1:25 p.m.

9.8

CVSS3.1

CVE-2025-22712 - WordPress Typify theme <= 3.0.2 - Local File Inclusion vulnerability

Improper Control of Filename for Include/Require Statement in PHP Program ('PHP Remote File Inclusion') vulnerability in QantumThemes Typify typify allows PHP Local File Inclusion.This issue affects Typify: from n/a through <= 3.0.2.

πŸ“… Published: Jan. 8, 2026, 9:17 a.m. πŸ”„ Last Modified: Jan. 9, 2026, 1:25 p.m.

9.8

CVSS3.1

CVE-2025-22708 - WordPress Mitech theme <= 2.3.4 - Local File Inclusion vulnerability

Improper Control of Filename for Include/Require Statement in PHP Program ('PHP Remote File Inclusion') vulnerability in ThemeMove Mitech mitech allows PHP Local File Inclusion.This issue affects Mitech: from n/a through <= 2.3.4.

πŸ“… Published: Jan. 8, 2026, 9:17 a.m. πŸ”„ Last Modified: Jan. 9, 2026, 1:25 p.m.

9.8

CVSS3.1

CVE-2025-22707 - WordPress Moody theme <= 2.7.3 - Local File Inclusion vulnerability

Improper Control of Filename for Include/Require Statement in PHP Program ('PHP Remote File Inclusion') vulnerability in ThemeMove Moody tm-moody allows PHP Local File Inclusion.This issue affects Moody: from n/a through <= 2.7.3.

πŸ“… Published: Jan. 8, 2026, 9:17 a.m. πŸ”„ Last Modified: Jan. 9, 2026, 1:25 p.m.

9.8

CVSS3.1

CVE-2025-22509 - WordPress Atlas theme <= 2.1.0 - Local File Inclusion vulnerability

Improper Control of Filename for Include/Require Statement in PHP Program ('PHP Remote File Inclusion') vulnerability in TMRW-studio Atlas atlas allows PHP Local File Inclusion.This issue affects Atlas: from n/a through <= 2.1.0.

πŸ“… Published: Jan. 8, 2026, 9:17 a.m. πŸ”„ Last Modified: Jan. 9, 2026, 1:25 p.m.

9.8

CVSS3.1

CVE-2025-14431 - WordPress Navian theme <= 1.5.4 - Local File Inclusion vulnerability

Improper Control of Filename for Include/Require Statement in PHP Program ('PHP Remote File Inclusion') vulnerability in THEMELOGI Navian navian allows PHP Local File Inclusion.This issue affects Navian: from n/a through <= 1.5.4.

πŸ“… Published: Jan. 8, 2026, 9:17 a.m. πŸ”„ Last Modified: Jan. 9, 2026, 1:25 p.m.
Total resulsts: 327160
Page 50 of 32,716
Β« previous page Β» next page
Filters