WordPress Core Vulnerabilities — Patched
- No new WordPress core vulnerabilities were disclosed this week.
WordPress Plugin Vulnerabilities — Patched
In this section, you’ll find the most recently disclosed WordPress plugin vulnerabilities that have been fixed with a new release from their authors and maintainers. Please apply the updates if you are affected!
These vulnerabilities have been disclosed and scored for their severity, thanks to our friends at Patchstack. Each plugin listing includes the type of vulnerability with its CVE number and CVSS severity rating with links to more technical details. You’ll also see the number of active sites using the plugin and the plugin version release that patches the vulnerability. We start with the most popular plugins, which represent the largest target for attackers.
WooCommerce Stripe Payment Gateway

WooCommerce Stripe Payment Gateway

Password Protected

Photo Gallery by 10Web

Unlimited Elements For Elementor

Download Monitor

WooCommerce Square

Conditional Menus
Dokan

WordPress Plugin Vulnerabilities — Unpatched
This section contains plugin vulnerabilities with no known fix. Until a patch is available, you are advised to deactivate the plugin, at minimum, immediately. If there is a high risk of active exploits or the plugin remains unpatched for weeks, you are advised to delete the plugin. You should also delete persistently unpatched plugins the WordPress.org repository has locked and marked “Closed” so they can no longer be downloaded and installed.
Seed Fonts

Flo Forms

MasterStudy LMS

MasterStudy LMS

Form Builder

Google Map Shortcode
WP Matterport Shortcode

Sermon’e – Sermons Online

Template Debugger

Recent Posts Slider

Recent Posts Slider

Securimage-WP

breadcrumb simple

Fat Rat Collect

Galleria

Who Hit The Page – Hit Counter

WordPress NextGen GalleryView
WP Affiliate Links
WP Backup Manager

MojoPlug Slide Panel

Smoothscroller

wpView


