A Path Traversal vulnerability was discovered in the Forminator plugin, affecting versions up to and including 1.55.0.2. This issue allows attackers to download arbitrary files, potentially leading to sensitive information disclosure. The vulnerability has a CVSS score of 7.5 and is considered high severity. Administrators and users of WordPress sites utilizing the Forminator plugin should be aware of thi [truncated]
HIGHWPMU DEV - Your All-in-One WordPress PlatformCVE published 2026-07-13
CVE-2026-57814 is a HIGH severity vulnerability in the Forminator plugin for WordPress, allowing DOM-Based XSS attacks. The issue affects Forminator versions from n/a through <= 1.55.0.1. This type of vulnerability can lead to unauthorized JavaScript execution in the context of a user's browser, potentially resulting in account takeovers, data theft, or other malicious activities. WordPress site administr [truncated]
HIGHWPMU DEV - Your All-in-One WordPress PlatformCVE published 2026-04-08
A Blind SQL Injection vulnerability was discovered in the Broken Link Checker plugin for WordPress, affecting versions up to and including 2.4.7. This issue arises from improper neutralization of special elements used in an SQL command, which could allow attackers to inject malicious SQL code. The vulnerability has been assigned a CVSS score of 7.6, indicating a high severity level. Users of the Broken Li [truncated]