| CVE ID | Title | Vendor | Product | Severity | CVSS Score | Published At | AI Analysis |
|---|---|---|---|---|---|---|---|
| CVE-2026-22359 | WordPress Wordpress Movies Bulk Importer plugin <= 1.0 - Cross Site Request Forgery (CSRF) vulnerability | AA-Team | Wordpress Movies Bulk Importer | - | - | 2026-01-22 16:56:49 | Deep Dive |
| CVE-2026-22360 | WordPress SearchAzon plugin <= 1.4 - Cross Site Request Forgery (CSRF) vulnerability | AA-Team | SearchAzon | - | - | 2026-01-22 16:52:35 | Deep Dive |
| CVE-2025-68073 | WordPress GDPR CCPA Compliance Support plugin <= 2.7.4 - Broken Access Control vulnerability | Ninja Team | GDPR CCPA Compliance Support | Medium | 6.5 | 2026-01-22 16:52:07 | Deep Dive |
| CVE-2025-67953 | WordPress Booking Activities plugin <= 1.16.44 - Privilege Escalation vulnerability | Booking Activities Team | Booking Activities | - | - | 2026-01-22 16:51:56 | Deep Dive |
| CVE-2026-0833 | Team Section Block <= 2.0.0 - Authenticated (Contributor+) Stored Cross-Site Scripting via Social Network Link | bplugins | Team Section Block – Showcase Team Members with Layout Options | Medium | 6.4 | 2026-01-17 06:42:19 | Deep Dive |
| CVE-2025-30631 | WordPress Amazon Affiliates Addon for WPBakery Page Builder (formerly Visual Composer) <= 1.2 - Cross Site Scripting (XSS) Vulnerability | AA-Team | Amazon Affiliates Addon for WPBakery Page Builder (formerly Visual Composer) | High | 7.1 | 2026-01-06 20:30:34 | Deep Dive |
| CVE-2025-29004 | WordPress Responsive Coming Soon Landing Page / Holding Page for WordPress plugin <= 3.0 - Privilege Escalation Vulnerability | AA-Team | Responsive Coming Soon Landing Page / Holding Page for WordPress | High | 8.8 | 2026-01-06 20:25:59 | Deep Dive |
| CVE-2025-69335 | WordPress Team Showcase plugin <= 2.9 - Cross Site Scripting (XSS) vulnerability | Themepoints | Team Showcase | Medium | 6.5 | 2026-01-06 16:36:39 | Deep Dive |
| CVE-2025-31044 | WordPress Premium SEO Pack <= 3.3.2 - SQL Injection Vulnerability | AA-Team | Premium SEO Pack | High | 8.5 | 2026-01-05 10:23:18 | Deep Dive |
| CVE-2025-30633 | WordPress Amazon Native Shopping Recommendations Plugin <= 1.3 - SQL Injection Vulnerability | AA-Team | Amazon Native Shopping Recommendations | Critical | 9.3 | 2026-01-05 10:21:09 | Deep Dive |
| CVE-2025-14124 | Team < 5.0.11 - Unauthenticated SQLi | Unknown | Team | 中危 | - | 2026-01-05 06:00:07 | Deep Dive |
| CVE-2025-30628 | WordPress Amazon Affiliates Addon for WPBakery Page Builder (formerly Visual Composer) plugin <= 1.2 - SQL Injection Vulnerability | AA-Team | Amazon Affiliates Addon for WPBakery Page Builder (formerly Visual Composer) | High | 8.5 | 2025-12-31 20:03:50 | Deep Dive |
| CVE-2025-28973 | WordPress Pro Bulk Watermark Plugin for WordPress <= 2.0 - Path Traversal Vulnerability | AA-Team | Pro Bulk Watermark Plugin for WordPress | 中危 | - | 2025-12-31 20:02:11 | Deep Dive |
| CVE-2025-62131 | WordPress Tasty Recipes Lite plugin <= 1.1.5 - Broken Access Control vulnerability | Strategy11 Team | Tasty Recipes Lite | Medium | 4.3 | 2025-12-31 16:04:31 | Deep Dive |
| CVE-2025-62132 | WordPress Tasty Recipes Lite plugin <= 1.1.5 - Broken Access Control vulnerability | Strategy11 Team | Tasty Recipes Lite | Medium | 4.3 | 2025-12-31 16:03:41 | Deep Dive |
| CVE-2025-62080 | WordPress Live Shopping & Shoppable Videos For WooCommerce plugin <= 2.2.0 - Cross Site Request Forgery (CSRF) vulnerability | Channelize.io Team | Live Shopping & Shoppable Videos For WooCommerce | Medium | 4.3 | 2025-12-31 15:44:46 | Deep Dive |
| CVE-2025-62081 | WordPress Live Shopping & Shoppable Videos For WooCommerce plugin <= 2.2.0 - Broken Access Control vulnerability | Channelize.io Team | Live Shopping & Shoppable Videos For WooCommerce | Medium | 5.3 | 2025-12-31 15:00:19 | Deep Dive |
| CVE-2025-68575 | WordPress Wappointment plugin <= 2.7.6 - Broken Access Control vulnerability | Wappointment team | Wappointment | Medium | 5.3 | 2025-12-24 13:10:38 | Deep Dive |
| CVE-2025-60088 | WordPress WebinarIgnition plugin <= 4.06.04 - Broken Access Control vulnerability | Saleswonder Team: Tobias | WebinarIgnition | - | - | 2025-12-18 07:22:08 | Deep Dive |
| CVE-2025-67962 | WordPress Broken Link Checker plugin <= 1.2.6 - SQL Injection vulnerability | AIOSEO Plugin Team | Broken Link Checker | High | 7.6 | 2025-12-16 08:12:58 | Deep Dive |