Total
6931 CVE
| CVE | Vendors | Products | Updated | CVSS v2 | CVSS v3 |
|---|---|---|---|---|---|
| CVE-2025-62888 | 2026-01-20 | N/A | 5.4 MEDIUM | ||
|
Missing Authorization vulnerability in Marco Milesi WP Attachments allows Exploiting Incorrectly Configured Access Control Security Levels.This issue affects WP Attachments: from n/a through 5.2.
|
|||||
| CVE-2025-62884 | 2026-01-20 | N/A | 5.3 MEDIUM | ||
|
Missing Authorization vulnerability in Elliot Sowersby / RelyWP Coupon Affiliates woo-coupon-usage allows Accessing Functionality Not Properly Constrained by ACLs.This issue affects Coupon Affiliates: from n/a through <= 7.0.3.
|
|||||
| CVE-2025-62883 | 2026-01-20 | N/A | 4.3 MEDIUM | ||
|
Missing Authorization vulnerability in Premmerce Premmerce User Roles premmerce-user-roles allows Exploiting Incorrectly Configured Access Control Security Levels.This issue affects Premmerce User Roles: from n/a through <= 1.0.13.
|
|||||
| CVE-2025-62882 | 1 Castos | 1 Seriously Simple Podcasting | 2026-01-20 | N/A | 4.3 MEDIUM |
|
Missing Authorization vulnerability in Craig Hewitt Seriously Simple Podcasting seriously-simple-podcasting allows Exploiting Incorrectly Configured Access Control Security Levels.This issue affects Seriously Simple Podcasting: from n/a through <= 3.13.0.
|
|||||
| CVE-2025-62881 | 2026-01-20 | N/A | 4.3 MEDIUM | ||
|
Missing Authorization vulnerability in WP Lab WP-Lister Lite for eBay wp-lister-for-ebay allows Exploiting Incorrectly Configured Access Control Security Levels.This issue affects WP-Lister Lite for eBay: from n/a through <= 3.8.3.
|
|||||
| CVE-2025-62874 | 2026-01-20 | N/A | 4.3 MEDIUM | ||
|
Missing Authorization vulnerability in Alexander AnyComment allows Exploiting Incorrectly Configured Access Control Security Levels.This issue affects AnyComment: from n/a through 0.3.6.
|
|||||
| CVE-2025-62870 | 2026-01-20 | N/A | 5.3 MEDIUM | ||
|
Missing Authorization vulnerability in Eupago Eupago Gateway For Woocommerce eupago-gateway-for-woocommerce allows Exploiting Incorrectly Configured Access Control Security Levels.This issue affects Eupago Gateway For Woocommerce: from n/a through <= 4.6.3.
|
|||||
| CVE-2025-62869 | 2026-01-20 | N/A | 4.3 MEDIUM | ||
|
Missing Authorization vulnerability in Gravitec.net - Web Push Notifications Gravitec.net – Web Push Notifications gravitec-net-web-push-notifications allows Exploiting Incorrectly Configured Access Control Security Levels.This issue affects Gravitec.net – Web Push Notifications: from n/a through <= 2.9.17.
|
|||||
| CVE-2025-62867 | 2026-01-20 | N/A | 4.3 MEDIUM | ||
|
Missing Authorization vulnerability in ergonet Ergonet Cache ergonet-varnish-cache allows Exploiting Incorrectly Configured Access Control Security Levels.This issue affects Ergonet Cache: from n/a through <= 1.0.11.
|
|||||
| CVE-2025-62865 | 2026-01-20 | N/A | 5.3 MEDIUM | ||
|
Missing Authorization vulnerability in Evan Herman Post Cloner post-cloner allows Exploiting Incorrectly Configured Access Control Security Levels.This issue affects Post Cloner: from n/a through <= 1.0.0.
|
|||||
| CVE-2025-62755 | 2026-01-20 | N/A | 5.3 MEDIUM | ||
|
Unauthenticated Broken Access Control in GS Portfolio for Envato <= 1.4.2 versions.
|
|||||
| CVE-2025-62751 | 1 Extendthemes | 1 Vireo | 2026-01-20 | N/A | 4.3 MEDIUM |
|
Missing Authorization vulnerability in Extend Themes Vireo allows Exploiting Incorrectly Configured Access Control Security Levels.This issue affects Vireo: from n/a through 1.0.24.
|
|||||
| CVE-2025-62747 | 2026-01-20 | N/A | 5.3 MEDIUM | ||
|
Missing Authorization vulnerability in Aum Watcharapon Featured Image Generator allows Exploiting Incorrectly Configured Access Control Security Levels.This issue affects Featured Image Generator: from n/a through 1.3.3.
|
|||||
| CVE-2025-62740 | 2026-01-20 | N/A | 5.3 MEDIUM | ||
|
Missing Authorization vulnerability in Mario Peshev WP-CRM System wp-crm-system allows Exploiting Incorrectly Configured Access Control Security Levels.This issue affects WP-CRM System: from n/a through <= 3.4.5.
|
|||||
| CVE-2025-62738 | 2026-01-20 | N/A | 5.3 MEDIUM | ||
|
Missing Authorization vulnerability in mmattax Formstack Online Forms formstack allows Exploiting Incorrectly Configured Access Control Security Levels.This issue affects Formstack Online Forms: from n/a through <= 2.0.2.
|
|||||
| CVE-2025-62736 | 2026-01-20 | N/A | 4.3 MEDIUM | ||
|
Missing Authorization vulnerability in opicron Image Cleanup image-cleanup allows Exploiting Incorrectly Configured Access Control Security Levels.This issue affects Image Cleanup: from n/a through <= 1.9.2.
|
|||||
| CVE-2025-62154 | 2026-01-20 | N/A | 4.3 MEDIUM | ||
|
Missing Authorization vulnerability in Recorp AI Content Writing Assistant (Content Writer, ChatGPT, Image Generator) All in One allows Exploiting Incorrectly Configured Access Control Security Levels.This issue affects AI Content Writing Assistant (Content Writer, ChatGPT, Image Generator) All in One: from n/a through 1.1.7.
|
|||||
| CVE-2025-62153 | 2026-01-20 | N/A | 8.8 HIGH | ||
|
Missing Authorization vulnerability in Graham Quick Interest Slider quick-interest-slider allows Exploiting Incorrectly Configured Access Control Security Levels.This issue affects Quick Interest Slider: from n/a through <= 3.1.5.
|
|||||
| CVE-2025-62152 | 2026-01-20 | N/A | 8.8 HIGH | ||
|
Missing Authorization vulnerability in ConveyThis ConveyThis conveythis-translate allows Exploiting Incorrectly Configured Access Control Security Levels.This issue affects ConveyThis: from n/a through <= 268.10.
|
|||||
| CVE-2025-62151 | 2026-01-20 | N/A | 8.8 HIGH | ||
|
Missing Authorization vulnerability in Virtuaria Virtuaria PagBank / PagSeguro para Woocommerce virtuaria-pagseguro allows Exploiting Incorrectly Configured Access Control Security Levels.This issue affects Virtuaria PagBank / PagSeguro para Woocommerce: from n/a through <= 3.6.3.
|
|||||
| CVE-2025-62150 | 2026-01-20 | N/A | 4.3 MEDIUM | ||
|
Missing Authorization vulnerability in Themesawesome History Timeline allows Exploiting Incorrectly Configured Access Control Security Levels.This issue affects History Timeline: from n/a through 1.0.6.
|
|||||
| CVE-2025-62147 | 2026-01-20 | N/A | 5.3 MEDIUM | ||
|
Missing Authorization vulnerability in Nik Melnik Realbig allows Exploiting Incorrectly Configured Access Control Security Levels.This issue affects Realbig: from n/a through 1.1.3.
|
|||||
| CVE-2025-62145 | 2026-01-20 | N/A | 5.3 MEDIUM | ||
|
Missing Authorization vulnerability in NewClarity DMCA Protection Badge allows Exploiting Incorrectly Configured Access Control Security Levels.This issue affects DMCA Protection Badge: from n/a through 2.2.0.
|
|||||
| CVE-2025-62144 | 2026-01-20 | N/A | 5.4 MEDIUM | ||
|
Missing Authorization vulnerability in Mohammed Kaludi Core Web Vitals & PageSpeed Booster allows Exploiting Incorrectly Configured Access Control Security Levels.This issue affects Core Web Vitals & PageSpeed Booster: from n/a through 1.0.27.
|
|||||
| CVE-2025-62141 | 2026-01-20 | N/A | 5.3 MEDIUM | ||
|
Missing Authorization vulnerability in 101gen Wawp allows Exploiting Incorrectly Configured Access Control Security Levels.This issue affects Wawp: from n/a through 4.0.5.
|
|||||
| CVE-2025-62138 | 2026-01-20 | N/A | 5.3 MEDIUM | ||
|
Missing Authorization vulnerability in CedCommerce WP Advanced PDF allows Exploiting Incorrectly Configured Access Control Security Levels.This issue affects WP Advanced PDF: from n/a through 1.1.7.
|
|||||
| CVE-2025-62132 | 2026-01-20 | N/A | 4.3 MEDIUM | ||
|
Missing Authorization vulnerability in Strategy11 Team Tasty Recipes Lite allows Exploiting Incorrectly Configured Access Control Security Levels.This issue affects Tasty Recipes Lite: from n/a through 1.1.5.
|
|||||
| CVE-2025-62131 | 2026-01-20 | N/A | 4.3 MEDIUM | ||
|
Missing Authorization vulnerability in Strategy11 Team Tasty Recipes Lite allows Exploiting Incorrectly Configured Access Control Security Levels.This issue affects Tasty Recipes Lite: from n/a through 1.1.5.
|
|||||
| CVE-2025-62130 | 2026-01-20 | N/A | 4.3 MEDIUM | ||
|
Missing Authorization vulnerability in WPdiscover Accordion Slider Gallery allows Exploiting Incorrectly Configured Access Control Security Levels.This issue affects Accordion Slider Gallery: from n/a through 2.7.
|
|||||
| CVE-2025-62129 | 2026-01-20 | N/A | 5.3 MEDIUM | ||
|
Missing Authorization vulnerability in Magnigenie RestroPress allows Exploiting Incorrectly Configured Access Control Security Levels.This issue affects RestroPress: from n/a through 3.2.4.2.
|
|||||
| CVE-2025-62128 | 2026-01-20 | N/A | 4.3 MEDIUM | ||
|
Missing Authorization vulnerability in SiteLock SiteLock Security allows Exploiting Incorrectly Configured Access Control Security Levels.This issue affects SiteLock Security: from n/a through 5.0.1.
|
|||||
| CVE-2025-62122 | 2026-01-20 | N/A | 5.3 MEDIUM | ||
|
Missing Authorization vulnerability in Solwininfotech Trash Duplicate and 301 Redirect allows Exploiting Incorrectly Configured Access Control Security Levels.This issue affects Trash Duplicate and 301 Redirect: from n/a through 1.9.1.
|
|||||
| CVE-2025-62116 | 2026-01-20 | N/A | 5.3 MEDIUM | ||
|
Missing Authorization vulnerability in Quadlayers AI Copilot allows Exploiting Incorrectly Configured Access Control Security Levels.This issue affects AI Copilot: from n/a through 1.4.7.
|
|||||
| CVE-2025-62115 | 2026-01-20 | N/A | 4.3 MEDIUM | ||
|
Missing Authorization vulnerability in ThemeBoy Hide Plugins allows Exploiting Incorrectly Configured Access Control Security Levels.This issue affects Hide Plugins: from n/a through 1.0.4.
|
|||||
| CVE-2025-62108 | 2026-01-20 | N/A | 5.4 MEDIUM | ||
|
Missing Authorization vulnerability in SaifuMak Add Custom Codes allows Exploiting Incorrectly Configured Access Control Security Levels.This issue affects Add Custom Codes: from n/a through 4.80.
|
|||||
| CVE-2025-62100 | 2026-01-20 | N/A | 5.3 MEDIUM | ||
|
Missing Authorization vulnerability in themerain ThemeRain Core themerain-core allows Exploiting Incorrectly Configured Access Control Security Levels.This issue affects ThemeRain Core: from n/a through <= 1.1.9.
|
|||||
| CVE-2025-62099 | 2026-01-20 | N/A | 4.3 MEDIUM | ||
|
Missing Authorization vulnerability in Approveme Signature Add-On for Gravity Forms allows Exploiting Incorrectly Configured Access Control Security Levels.This issue affects Signature Add-On for Gravity Forms: from n/a through 1.8.6.
|
|||||
| CVE-2025-62098 | 2026-01-20 | N/A | 5.4 MEDIUM | ||
|
Missing Authorization vulnerability in Totalsoft Portfolio Gallery allows Exploiting Incorrectly Configured Access Control Security Levels.This issue affects Portfolio Gallery: from n/a through 1.4.8.
|
|||||
| CVE-2025-62092 | 2026-01-20 | N/A | 5.3 MEDIUM | ||
|
Missing Authorization vulnerability in Wiremo allows Exploiting Incorrectly Configured Access Control Security Levels.This issue affects Wiremo: from n/a through 1.4.99.
|
|||||
| CVE-2025-62091 | 2026-01-20 | N/A | 5.4 MEDIUM | ||
|
Missing Authorization vulnerability in Vollstart Serial Codes Generator and Validator with WooCommerce Support allows Exploiting Incorrectly Configured Access Control Security Levels.This issue affects Serial Codes Generator and Validator with WooCommerce Support: from n/a through 2.8.2.
|
|||||