漏洞列表 359408
CVE ID 标题 严重程度 CVSS 发布时间 受影响产品 数据源 操作
CVE-2025-67997
WordPress Travelicious theme < 1.6.7 - PHP Object Injection vulnerability
CRITICAL 9.8 2026-02-20
BoldThemes Travelicious
CVE NVD
CVE-2025-67996
WordPress Nestin theme < 1.2.6 - PHP Object Injection vulnerability
CRITICAL 9.8 2026-02-20
BoldThemes Nestin
CVE NVD
CVE-2025-67995
WordPress PatioTime theme < 2.1 - PHP Object Injection vulnerability
CRITICAL 9.8 2026-02-20
LoftOcean PatioTime
CVE NVD
CVE-2025-67994
WordPress YayCurrency plugin <= 3.3 - Arbitrary Content Deletion vulnerability
HIGH 7.5 2026-02-20
YayCommerce YayCurrency
CVE NVD
CVE-2025-67993
WordPress Atarim plugin <= 4.2.1 - Broken Access Control vulnerability
MEDIUM 6.5 2026-02-20
Vito Peleg Atarim
CVE NVD
CVE-2025-67992
WordPress PatioTime theme < 2.1 - Local File Inclusion vulnerability
HIGH 8.1 2026-02-20
LoftOcean PatioTime
CVE NVD
CVE-2025-67991
WordPress User Extra Fields plugin <= 16.8 - Cross Site Scripting (XSS) vulnerability
HIGH 7.1 2026-02-20
vanquish User Extra Fields
CVE NVD
CVE-2025-67990
WordPress GMap Targeting plugin <= 1.1.7 - Cross Site Scripting (XSS) vulnerability
HIGH 7.1 2026-02-20
RealMag777 GMap Targeting
CVE NVD
CVE-2025-67988
WordPress CozyStay theme < 1.9.1 - Local File Inclusion vulnerability
HIGH 8.1 2026-02-20
LoftOcean CozyStay
CVE NVD
CVE-2025-67987
WordPress Quiz And Survey Master plugin <= 10.3.1 - SQL Injection vulnerability
HIGH 8.5 2026-02-20
ExpressTech Systems Quiz And Survey Master
CVE NVD
CVE-2025-67984
WordPress NPS computy plugin <= 2.8.2 - Cross Site Scripting (XSS) vulnerability
HIGH 7.1 2026-02-20
calliko NPS computy
CVE NVD
CVE-2025-67982
WordPress Urna theme <= 2.5.12 - Local File Inclusion vulnerability
HIGH 8.1 2026-02-20
thembay Urna
CVE NVD
CVE-2025-67981
WordPress Besa theme <= 2.3.15 - Local File Inclusion vulnerability
HIGH 8.1 2026-02-20
thembay Besa
CVE NVD
CVE-2025-67980
WordPress Hara theme <= 1.2.17 - Local File Inclusion vulnerability
HIGH 8.1 2026-02-20
thembay Hara
CVE NVD
CVE-2025-67979
WordPress WPForms Google Sheet Connector plugin <= 4.0.1 - Remote Code Execution (RCE) vulnerability
CRITICAL 9.9 2026-02-20
WesternDeal WPForms Google Sheet Connector
CVE NVD
CVE-2025-67978
WordPress Educare plugin <= 1.6.1 - Cross Site Scripting (XSS) vulnerability
HIGH 7.1 2026-02-20
FixBD Educare
CVE NVD
CVE-2025-67977
WordPress HAPPY plugin <= 1.0.8 - Broken Access Control vulnerability
HIGH 8.2 2026-02-20
VillaTheme HAPPY
CVE NVD
CVE-2025-67975
WordPress aDirectory plugin <= 3.0.3 - Broken Access Control vulnerability
MEDIUM 6.5 2026-02-20
aDirectory aDirectory
CVE NVD
CVE-2025-67974
WordPress WPLegalPages plugin <= 3.5.4 - Broken Access Control vulnerability
HIGH 7.5 2026-02-20
WP Legal Pages WPLegalPages
CVE NVD
CVE-2025-67973
WordPress Sunshine Photo Cart plugin <= 3.5.6.2 - Broken Access Control vulnerability
MEDIUM 6.5 2026-02-20
sunshinephotocart Sunshine Photo Cart
CVE NVD