漏洞列表 359408
CVE ID 标题 严重程度 CVSS 发布时间 受影响产品 数据源 操作
CVE-2025-69384
WordPress Timeline Event History plugin <= 3.2 - Reflected Cross Site Scripting (XSS) vulnerability
HIGH 7.1 2026-02-20
wpdiscover Timeline Event History
CVE NVD
CVE-2025-69383
WordPress WP shop plugin <= 2.6.1 - Local File Inclusion vulnerability
HIGH 7.5 2026-02-20
Agence web Eoxia - Montpellier WP shop
CVE NVD
CVE-2025-69382
WordPress Themesflat Elementor plugin <= 1.0.1 - PHP Object Injection vulnerability
CRITICAL 9.8 2026-02-20
themesflat Themesflat Elementor
CVE NVD
CVE-2025-69381
WordPress WooCommerce Bulk Product Editor plugin <= 3.0 - Broken Access Control vulnerability
HIGH 7.1 2026-02-20
vanquish WooCommerce Bulk Product Editor
CVE NVD
CVE-2025-69380
WordPress Upload Files Anywhere plugin <= 2.8 - Arbitrary File Download vulnerability
HIGH 7.5 2026-02-20
vanquish Upload Files Anywhere
CVE NVD
CVE-2025-69379
WordPress Upload Files Anywhere plugin <= 2.8 - Arbitrary File Deletion vulnerability
HIGH 8.6 2026-02-20
vanquish Upload Files Anywhere
CVE NVD
CVE-2025-69378
WordPress Product Filter for WooCommerce plugin <= 9.1.2 - Privilege Escalation vulnerability
HIGH 7.3 2026-02-20
XforWooCommerce Product Filter for WooCommerce
CVE NVD
CVE-2025-69377
WordPress User Extra Fields plugin <= 17.0 - Arbitrary File Deletion vulnerability
HIGH 7.7 2026-02-20
vanquish User Extra Fields
CVE NVD
CVE-2025-69376
WordPress User Extra Fields plugin <= 17.0 - Arbitrary File Deletion vulnerability
HIGH 8.6 2026-02-20
vanquish User Extra Fields
CVE NVD
CVE-2025-69375
WordPress Portfolio Builder plugin <= 1.2.5 - Local File Inclusion vulnerability
HIGH 8.1 2026-02-20
SolverWp Portfolio Builder
CVE NVD
CVE-2025-69374
WordPress Eleblog – Elementor Blog And Magazine Addons plugin <= 2.0.3 - Local File Inclusion vulnerability
HIGH 8.1 2026-02-20
SolverWp Eleblog – Elementor Blog And Magazine Addons
CVE NVD
CVE-2025-69373
WordPress VidoRev theme <= 2.9.9.9.9.9.7 - Local File Inclusion vulnerability
HIGH 7.5 2026-02-20
beeteam368 VidoRev
CVE NVD
CVE-2025-69372
WordPress SevenHills theme <= 1.6.2 - PHP Object Injection vulnerability
CRITICAL 9.8 2026-02-20
AncoraThemes SevenHills
CVE NVD
CVE-2025-69371
WordPress KindlyCare theme <= 1.6.1 - PHP Object Injection vulnerability
CRITICAL 9.8 2026-02-20
AncoraThemes KindlyCare
CVE NVD
CVE-2025-69370
WordPress Capella theme <= 2.5.5 - PHP Object Injection vulnerability
CRITICAL 9.8 2026-02-20
ThemeGoods Capella
CVE NVD
CVE-2025-69368
WordPress SOHO - Photography WordPress Theme theme <= 3.0.3 - Cross Site Scripting (XSS) vulnerability
HIGH 7.1 2026-02-20
GT3themes SOHO - Photography WordPress Theme
CVE NVD
CVE-2025-69367
WordPress Oyster - Photography WordPress Theme theme <= 4.4.3 - Cross Site Scripting (XSS) vulnerability
HIGH 7.1 2026-02-20
GT3themes Oyster - Photography WordPress Theme
CVE NVD
CVE-2025-69366
WordPress Emerce Core plugin <= 1.8 - SQL Injection vulnerability
CRITICAL 9.3 2026-02-20
TeconceTheme Emerce Core
CVE NVD
CVE-2025-69365
WordPress Uroan Core plugin <= 1.4.4 - SQL Injection vulnerability
CRITICAL 9.3 2026-02-20
TeconceTheme Uroan Core
CVE NVD
CVE-2025-69337
WordPress Wolmart Core plugin <= 1.9.6 - SQL Injection vulnerability
CRITICAL 9.3 2026-02-20
don-themes Wolmart Core
CVE NVD