PatchSiren

Shapedsmart CVE debriefs

These pages are published after PatchSiren validates generated defensive summaries against stored public CVE and source evidence.

HIGH Shapedsmart CVE published 2026-06-24

CVE-2026-10735

CVE-2026-10735 is a high-severity vulnerability (CVSS Score: 7.5) affecting multiple WordPress plugins, including Shapedsmart-post-show-pro, Real Testimonials Pro, and Product Slider for WooCommerce Pro. These plugins were compromised through a supply-chain attack, where malicious code was distributed via the vendor's compromised update server. This allows unauthenticated attackers to deploy a second-stag [truncated]