সর্বশেষ ওয়ার্ডপ্রেস প্লাগইন দুর্বলতা

2025 09 06smart table buildercve20259126

Authenticated Stored XSS in Smart Table Builder//Published on 2025-09-06//CVE-2025-9126

WordPress security alert: stored XSS in Smart Table Builder up to 1.0.1 and remediation

2025 09 05new simple gallerycve202558881

Critical SQL Injection in Simple Gallery Plugin//Published on 2025-09-05//CVE-2025-58881

CVE-2025-58881 SQL injection in WordPress New Simple Gallery and practical mitigations

2025 09 05media authorcve202558841

Critical WordPress Media Author Plugin Access Control//Published on 2025-09-05//CVE-2025-58841

Security guide for CVE-2025-58841 Media Author plugin and WP-Firewall protections

2025 09 05eds responsive menucve202558839

Critical PHP Object Injection in eDS Plugin//Published on 2025-09-05//CVE-2025-58839

CVE-2025-58839 POI in eDS Responsive Menu: risks, detection, and immediate WordPress mitigations

2025 09 03atec debugcve20259518

Critical Atec Debug Authenticated File Deletion//Published on 2025-09-03//CVE-2025-9518

Technical breakdown, risk, detection, and remediation for atec Debug CVE-2025-9518 in WordPress.

2025 09 03make connectorcve20256085

Authenticated Arbitrary File Upload in Make Connector//Published on 2025-09-03//CVE-2025-6085

CVE-2025-6085 analysis, risk and practical mitigations for WordPress Make plugin.

2025 08 30skyword api plugincve202411907

Authenticated Contributor Stored XSS in Skyword API//Published on 2025-08-30//CVE-2024-11907

Comprehensive guide to Skyword API Plugin stored XSS, rapid patching, and WAF defense

2025 08 30ocean extracve20259499

Security Advisory Ocean Extra Stored XSS//Published on 2025-08-30//CVE-2025-9499

WordPress Ocean Extra stored XSS CVE-2025-9499 guide: patch, WAF, and incident response.

2025 08 29slider revolutioncve20259217

Authenticated Arbitrary File Read in Slider Revolution//Published on 2025-08-29//CVE-2025-9217

Slider Revolution CVE-2025-9217 authenticated contributor file read; update to 6.7.37 and WAF.