সর্বশেষ ওয়ার্ডপ্রেস প্লাগইন দুর্বলতা

2025 08 20themify iconscve202549395

Critical Themify Icons Plugin XSS Advisory//Published on 2025-08-20//CVE-2025-49395

Urgent XSS vulnerability in Themify Icons up to 2.0.3; patch and protection guidance.

2025 08 20notice barcve202549389

Critical XSS Vulnerability in Notice Bar Plugin//Published on 2025-08-20//CVE-2025-49389

Urgent WordPress Notice Bar XSS CVE-2025-49389 vulnerability explained and patched with 3.1.4, WAF

2025 08 20ads.txt guru connectcve202549381

WordPress Ads Txt Guru Connect CSRF Vulnerability//Published on 2025-08-20//CVE-2025-49381

Immediate CSRF guide for ads.txt Guru Connect CVE-2025-49381 with patch and mitigations for WordPress

2025 08 20templatelycve202549408

Templately Plugin Sensitive Data Exposure Vulnerability//Published on 2025-08-20//CVE-2025-49408

Urgent guide to patch Templately CVE-2025-49408 data exposure in WordPress

2025 08 20colorbox lightboxcve202549397

Critical XSS Vulnerability in Colorbox Lightbox Plugin//Published on 2025-08-20//CVE-2025-49397

Colorbox Lightbox XSS CVE-2025-49397: upgrade to 1.1.6 and apply mitigations.

2025 08 20themify audio dockcve202549392

Critical XSS in Themify Audio Dock Plugin//Published on 2025-08-20//CVE-2025-49392

WordPress Themify Audio Dock XSS CVE-2025-49392 analysis and mitigation by WP-Firewall

2025 08 19redirection for contact form 7cve20258289

Unauthenticated PHAR Deserialization in Contact Form 7//Published on 2025-08-19//CVE-2025-8289

Urgent: Patch Redirection for Contact Form 7 to 3.2.5 to stop PHP Object Injection