漏洞列表 359408
CVE ID 标题 严重程度 CVSS 发布时间 受影响产品 数据源 操作
CVE-2025-69404
WordPress Extreme Store theme <= 1.5.7 - PHP Object Injection vulnerability
CRITICAL 9.8 2026-02-20
ThemeREX Extreme Store
CVE NVD
CVE-2025-69403
WordPress Bravis Addons plugin <= 1.1.9 - Arbitrary File Upload vulnerability
CRITICAL 9.9 2026-02-20
Bravis-Themes Bravis Addons
CVE NVD
CVE-2025-69402
WordPress R&F theme <= 1.5 - Local File Inclusion vulnerability
HIGH 8.1 2026-02-20
ThemeREX R&F
CVE NVD
CVE-2025-69401
WordPress WooODT Lite plugin <= 2.5.2 - Payment Bypass Vulnerability vulnerability
HIGH 7.5 2026-02-20
mdalabar WooODT Lite
CVE NVD
CVE-2025-69400
WordPress Yokoo theme <= 1.1.11 - Local File Inclusion vulnerability
HIGH 8.1 2026-02-20
ThemeREX Yokoo
CVE NVD
CVE-2025-69399
WordPress Cobble theme <= 1.7 - Local File Inclusion vulnerability
HIGH 8.1 2026-02-20
ThemeREX Cobble
CVE NVD
CVE-2025-69398
WordPress Plank theme <= 1.7 - Local File Inclusion vulnerability
HIGH 8.1 2026-02-20
ThemeREX Plank
CVE NVD
CVE-2025-69397
WordPress Tint theme <= 1.7 - Local File Inclusion vulnerability
HIGH 8.1 2026-02-20
ThemeREX Tint
CVE NVD
CVE-2025-69396
WordPress Splendour theme <= 1.23 - Local File Inclusion vulnerability
HIGH 8.1 2026-02-20
ThemeREX Splendour
CVE NVD
CVE-2025-69395
WordPress Gable theme <= 1.5 - Local File Inclusion vulnerability
HIGH 8.1 2026-02-20
ThemeREX Gable
CVE NVD
CVE-2025-69394
WordPress Cnvrse plugin <= 026.02.10.20 - Insecure Direct Object References (IDOR) vulnerability
HIGH 7.5 2026-02-20
cnvrse Cnvrse
CVE NVD
CVE-2025-69393
WordPress Exzo theme <= 1.2.4 - Broken Access Control vulnerability
HIGH 7.5 2026-02-20
Jthemes Exzo
CVE NVD
CVE-2025-69392
WordPress iMoney plugin <= 0.36 - Reflected Cross Site Scripting (XSS) vulnerability
HIGH 7.1 2026-02-20
itex iMoney
CVE NVD
CVE-2025-69391
WordPress Diamond theme <= 2.4.8 - Reflected Cross Site Scripting (XSS) vulnerability
HIGH 7.1 2026-02-20
GT3themes Diamond
CVE NVD
CVE-2025-69390
WordPress Business Template Blocks for WPBakery (Visual Composer) Page Builder plugin <= 1.3.2 - Reflected Cross Site Scripting (XSS) vulnerability
HIGH 7.1 2026-02-20
themebon Business Template Blocks for WPBakery (Visual Composer) Page Builder
CVE NVD
CVE-2025-69389
WordPress Visitor Maps Extended Referer Field plugin <= 1.2.6 - Reflected Cross Site Scripting (XSS) vulnerability
HIGH 7.1 2026-02-20
Hugh Mungus Visitor Maps Extended Referer Field
CVE NVD
CVE-2025-69388
WordPress Cliengo – Chatbot plugin <= 3.0.4 - Broken Access Control vulnerability
MEDIUM 6.5 2026-02-20
cliengo Cliengo – Chatbot
CVE NVD
CVE-2025-69387
WordPress Simple Retail Menus plugin <= 4.2.1 - Local File Inclusion vulnerability
HIGH 7.5 2026-02-20
whatwouldjessedo Simple Retail Menus
CVE NVD
CVE-2025-69386
WordPress RVCFDI para Woocommerce plugin <= 8.1.8 - Reflected Cross Site Scripting (XSS) vulnerability
HIGH 7.1 2026-02-20
realvirtualmx RVCFDI para Woocommerce
CVE NVD
CVE-2025-69385
WordPress Cartify - WooCommerce Gutenberg WordPress Theme theme <= 1.3 - Arbitrary Content Deletion vulnerability
MEDIUM 6.5 2026-02-20
AgniHD Cartify - WooCommerce Gutenberg WordPress Theme
CVE NVD