漏洞列表 355639
CVE ID 标题 严重程度 CVSS 发布时间 受影响产品 数据源 操作
CVE-2025-66099
WordPress Chat Help plugin <= 3.1.3 - Broken Access Control vulnerability
MEDIUM 5.3 2025-11-21
ThemeAtelier Chat Help
CVE NVD
CVE-2025-66098
WordPress Travelers' Map plugin <= 2.3.2 - Cross Site Scripting (XSS) vulnerability
MEDIUM 6.5 2025-11-21
Camille V Travelers' Map
CVE NVD
CVE-2025-66097
WordPress I Order Terms plugin <= 1.5.0 - Cross Site Request Forgery (CSRF) vulnerability
MEDIUM 4.3 2025-11-21
Igor Jerosimić I Order Terms
CVE NVD
CVE-2025-66096
WordPress Table Block by Tableberg plugin <= 0.6.9 - Broken Access Control vulnerability
MEDIUM 4.3 2025-11-21
Imtiaz Rayhan Table Block by Tableberg
CVE NVD
CVE-2025-66095
WordPress KiviCare plugin <= 3.6.13 - SQL Injection vulnerability
MEDIUM 4.3 2025-11-21
Iqonic Design KiviCare
CVE NVD
CVE-2025-66093
WordPress Extensions for Leaflet Map plugin <= 4.8 - Cross Site Scripting (XSS) vulnerability
MEDIUM 6.5 2025-11-21
hupe13 Extensions for Leaflet Map
CVE NVD
CVE-2025-66092
WordPress Accordion Slider plugin <= 1.9.13 - Cross Site Scripting (XSS) vulnerability
MEDIUM 6.5 2025-11-21
bqworks Accordion Slider
CVE NVD
CVE-2025-66091
WordPress Stylish Cost Calculator plugin <= 8.1.5 - Cross Site Scripting (XSS) vulnerability
MEDIUM 6.5 2025-11-21
Design Stylish Cost Calculator
CVE NVD
CVE-2025-66090
WordPress SKT Skill Bar plugin <= 2.5 - Cross Site Scripting (XSS) vulnerability
MEDIUM 6.5 2025-11-21
sonalsinha21 SKT Skill Bar
CVE NVD
CVE-2025-66089
WordPress Product Feed for WooCommerce plugin <= 2.3.1 - Broken Access Control vulnerability
MEDIUM 4.3 2025-11-21
WebToffee Product Feed for WooCommerce
CVE NVD
CVE-2025-66087
WordPress PropertyHive plugin <= 2.1.12 - Broken Access Control vulnerability
MEDIUM 5.3 2025-11-21
Property Hive PropertyHive
CVE NVD
CVE-2025-66086
WordPress SMS Alert Order Notifications plugin <= 3.8.8 - Broken Access Control vulnerability
MEDIUM 5.3 2025-11-21
Cozy Vision SMS Alert Order Notifications
CVE NVD
CVE-2025-66085
WordPress Arconix Shortcodes plugin <= 2.1.18 - Broken Access Control vulnerability
MEDIUM 4.3 2025-11-21
tychesoftwares Arconix Shortcodes
CVE NVD
CVE-2025-66084
WordPress FluentCommunity plugin <= 2.0.0 - Broken Access Control vulnerability
MEDIUM 4.3 2025-11-21
Shahjahan Jewel FluentCommunity
CVE NVD
CVE-2025-66083
WordPress WpEvently plugin <= 5.0.4 - Broken Access Control vulnerability
MEDIUM 4.3 2025-11-21
magepeopleteam WpEvently
CVE NVD
CVE-2025-66082
WordPress WpEvently plugin <= 5.0.4 - Broken Access Control vulnerability
MEDIUM 4.3 2025-11-21
magepeopleteam WpEvently
CVE NVD
CVE-2025-66081
WordPress Head Meta Data plugin <= 20250327 - Cross Site Scripting (XSS) vulnerability
MEDIUM 5.4 2025-11-21
Jeff Starr Head Meta Data
CVE NVD
CVE-2025-66079
WordPress Gutenverse Form plugin <= 2.2.0 - Broken Access Control vulnerability
HIGH 7.3 2025-11-21
Jegstudio Gutenverse Form
CVE NVD
CVE-2025-66077
WordPress Legal Pages plugin <= 1.4.6 - Broken Access Control vulnerability
MEDIUM 4.3 2025-11-21
wpWax Legal Pages
CVE NVD
CVE-2025-66075
WordPress WP Cookie Notice for GDPR, CCPA & ePrivacy Consent plugin <= 4.0.3 - Broken Access Control vulnerability
MEDIUM 4.2 2025-11-21
WP Legal Pages WP Cookie Notice for GDPR, CCPA & ePrivacy Consent
CVE NVD