সর্বশেষ ওয়ার্ডপ্রেস প্লাগইন দুর্বলতা

2025 08 12file manager procve20250818 1

WordPress File Manager Pro Arbitrary Deletion Vulnerability//Published on 2025-08-12//CVE-2025-0818

Critical CVE-2025-0818 in Filester File Manager Pro unauthenticated file deletion mitigation and recovery guide

2025 08 12tutor lms procve20256184

Authenticated SQL Injection in Tutor LMS Pro//Published on 2025-08-12//CVE-2025-6184

Tutor LMS Pro CVE-2025-6184 SQLi: urgent patch to 3.7.1, WAF protection, and incident response

2025 08 12easy pdf restaurant menu uploadcve20258491

CSRF Flaw in WordPress Menu Upload//Published on 2025-08-12//CVE-2025-8491

CSRF vulnerability in Easy PDF Restaurant Menu Upload (<=2.0.2); patch 2.0.3 with WP‑Firewall.

2025 08 12oceanwpcve20258891

OceanWP CSRF Flaw Exposes Ocean Extra Install//Published on 2025-08-12//CVE-2025-8891

OceanWP CSRF CVE-2025-8891 explained with detection mitigation and patch guidance for WordPress

2025 08 11b blockscve20258059

Unauthenticated Privilege Escalation in WordPress B Blocks//Published on 2025-08-11//CVE-2025-8059

Critical WordPress B Blocks CVE-2025-8059 privilege escalation patch and mitigations

2025 08 11wp chart generatorcve20258685

Authenticated Stored XSS in WordPress Chart Plugin//Published on 2025-08-11//CVE-2025-8685

CVE-2025-8685 stored XSS in WP Chart Generator shortcode wpchart with mitigation.

2025 08 11anwp football leaguescve20258767

Authenticated CSV Injection in AnWP Football Leagues//Published on 2025-08-11//CVE-2025-8767

CSV injection risk in AnWP Football Leagues <=0.16.17 with remediation steps and WP-Firewall guidance

2025 08 11simple local avatarscve20258482

Avatar Migration Authorization Bypass in Local Avatars//Published on 2025-08-11//CVE-2025-8482

Simple Local Avatars CVE-2025-8482 fix: upgrade to 2.8.5 and recommended mitigations

2025 08 11uicore elementscve20256253

WordPress UiCore Elements Unauthenticated File Read//Published on 2025-08-11//CVE-2025-6253

Urgent WordPress UiCore Elements CVE-2025-6253 unauthenticated file read advisory and WAF guidance