漏洞列表 359799
CVE ID 标题 严重程度 CVSS 发布时间 受影响产品 数据源 操作
CVE-2026-27074
WordPress Shortcoder plugin <= 6.5.1 - Cross Site Scripting (XSS) vulnerability
MEDIUM 6.5 2026-02-19
vaakash Shortcoder
CVE NVD
CVE-2026-27069
WordPress Soledad theme <= 8.7.2 - Cross Site Scripting (XSS) vulnerability
MEDIUM 6.5 2026-02-19
PenciDesign Soledad
CVE NVD
CVE-2026-27066
WordPress Live sales notification for WooCommerce plugin <= 2.3.46 - Broken Access Control vulnerability
MEDIUM 5.3 2026-02-19
PI Web Solution Live sales notification for WooCommerce
CVE NVD
CVE-2026-27059
WordPress Penci Recipe plugin <= 4.1 - Cross Site Scripting (XSS) vulnerability
MEDIUM 6.5 2026-02-19
PenciDesign Penci Recipe
CVE NVD
CVE-2026-27058
WordPress Penci Podcast plugin <= 1.7 - Cross Site Scripting (XSS) vulnerability
MEDIUM 6.5 2026-02-19
PenciDesign Penci Podcast
CVE NVD
CVE-2026-27057
WordPress Penci Filter Everything plugin <= 1.7 - Cross Site Scripting (XSS) vulnerability
MEDIUM 6.5 2026-02-19
PenciDesign Penci Filter Everything
CVE NVD
CVE-2026-27055
WordPress Penci AI SmartContent Creator plugin <= 2.0 - Broken Access Control vulnerability
MEDIUM 4.3 2026-02-19
PenciDesign Penci AI SmartContent Creator
CVE NVD
CVE-2026-27052
WordPress Sales Countdown Timer for WooCommerce and WordPress plugin <= 1.1.8.1 - Local File Inclusion vulnerability
HIGH 7.5 2026-02-19
villatheme Sales Countdown Timer for WooCommerce and WordPress
CVE NVD
CVE-2026-27050
WordPress RealPress plugin <= 1.1.0 - Cross Site Request Forgery (CSRF) vulnerability
MEDIUM 5.4 2026-02-19
ThimPress RealPress
CVE NVD
CVE-2026-27042
WordPress NotificationX plugin <= 3.2.1 - Broken Access Control vulnerability
MEDIUM 5.3 2026-02-19
WPDeveloper NotificationX
CVE NVD
CVE-2026-25473
WordPress WZone plugin <= 14.0.31 - Broken Access Control vulnerability
MEDIUM 5.4 2026-02-19
AA-Team WZone
CVE NVD
CVE-2026-25472
WordPress Fusion Builder plugin <= 3.14.3 - Cross Site Scripting (XSS) vulnerability
MEDIUM 6.5 2026-02-19
ThemeFusion Fusion Builder
CVE NVD
CVE-2026-25463
WordPress Wpresidence Core plugin <= 5.4.0 - Cross Site Scripting (XSS) vulnerability
MEDIUM 6.5 2026-02-19
WpEstate Wpresidence Core
CVE NVD
CVE-2026-25459
WordPress Sober theme <= 3.5.12 - Broken Access Control vulnerability
MEDIUM 4.3 2026-02-19
uixthemes Sober
CVE NVD
CVE-2026-25453
WordPress Advanced iFrame plugin <= 2025.10 - Cross Site Scripting (XSS) vulnerability
MEDIUM 6.5 2026-02-19
mdempfle Advanced iFrame
CVE NVD
CVE-2026-25451
WordPress Bold Page Builder plugin <= 5.6.4 - Cross Site Scripting (XSS) vulnerability
MEDIUM 6.5 2026-02-19
boldthemes Bold Page Builder
CVE NVD
CVE-2026-25441
WordPress LeadConnector plugin <= 3.0.21 - Broken Access Control vulnerability
MEDIUM 5.3 2026-02-19
LeadConnector LeadConnector
CVE NVD
CVE-2026-25432
WordPress Omnipress plugin <= 1.6.7 - Cross Site Scripting (XSS) vulnerability
MEDIUM 6.5 2026-02-19
omnipressteam Omnipress
CVE NVD
CVE-2026-25428
WordPress TS Poll plugin <= 2.5.5 - Server Side Request Forgery (SSRF) vulnerability
MEDIUM 4.4 2026-02-19
totalsoft TS Poll
CVE NVD
CVE-2026-25423
WordPress Real 3D FlipBook plugin <= 4.16.4 - Broken Access Control vulnerability
LOW 3.8 2026-02-19
creativeinteractivemedia Real 3D FlipBook
CVE NVD