漏洞列表 353262
CVE ID 标题 严重程度 CVSS 发布时间 受影响产品 数据源 操作
CVE-2025-66114
WordPress Show Variations as Single Products Woocommerce plugin <= 2.0 - Broken Access Control vulnerability
MEDIUM 5.3 2025-11-21
theme funda Show Variations as Single Products Woocommerce
CVE NVD
CVE-2025-66113
WordPress Better Chat Support for Messenger plugin <= 1.2.18 - Broken Access Control vulnerability
MEDIUM 5.4 2025-11-21
ThemeAtelier Better Chat Support for Messenger
CVE NVD
CVE-2025-66112
WordPress Accessibility Toolkit by WebYes plugin <= 2.0.4 - Broken Access Control vulnerability
MEDIUM 4.3 2025-11-21
WebToffee Accessibility Toolkit by WebYes
CVE NVD
CVE-2025-66111
WordPress Nelio Popups plugin <= 1.3.0 - Cross Site Scripting (XSS) vulnerability
MEDIUM 6.1 2025-11-21
Nelio Software Nelio Popups
CVE NVD
CVE-2025-66110
WordPress Tiktok Feed plugin <= 1.0.22 - Broken Access Control vulnerability
MEDIUM 5.3 2025-11-21
bPlugins Tiktok Feed
CVE NVD
CVE-2025-66109
WordPress Cart Weight for WooCommerce plugin <= 1.9.11 - Broken Access Control vulnerability
MEDIUM 5.3 2025-11-21
octolize Cart Weight for WooCommerce
CVE NVD
CVE-2025-66108
WordPress TNC Toolbox: Web Performance plugin <= 2.0.4 - Broken Access Control vulnerability
MEDIUM 4.3 2025-11-21
Merlot Digital (by TNC) TNC Toolbox: Web Performance
CVE NVD
CVE-2025-66107
WordPress Subscriptions & Memberships for PayPal plugin <= 1.1.7 - Broken Access Control vulnerability
MEDIUM 5.3 2025-11-21
Scott Paterson Subscriptions & Memberships for PayPal
CVE NVD
CVE-2025-66106
WordPress Featured Post Creative plugin <= 1.5.5 - Broken Access Control vulnerability
MEDIUM 4.3 2025-11-21
Essential Plugin Featured Post Creative
CVE NVD
CVE-2025-66101
WordPress CBX Bookmark & Favorite plugin <= 2.0.1 - Broken Access Control vulnerability
MEDIUM 4.3 2025-11-21
Sabuj Kundu CBX Bookmark & Favorite
CVE NVD
CVE-2025-66099
WordPress Chat Help plugin <= 3.1.3 - Broken Access Control vulnerability
MEDIUM 5.3 2025-11-21
ThemeAtelier Chat Help
CVE NVD
CVE-2025-66098
WordPress Travelers' Map plugin <= 2.3.2 - Cross Site Scripting (XSS) vulnerability
MEDIUM 6.5 2025-11-21
Camille V Travelers' Map
CVE NVD
CVE-2025-66097
WordPress I Order Terms plugin <= 1.5.0 - Cross Site Request Forgery (CSRF) vulnerability
MEDIUM 4.3 2025-11-21
Igor Jerosimić I Order Terms
CVE NVD
CVE-2025-66096
WordPress Table Block by Tableberg plugin <= 0.6.9 - Broken Access Control vulnerability
MEDIUM 4.3 2025-11-21
Imtiaz Rayhan Table Block by Tableberg
CVE NVD
CVE-2025-66095
WordPress KiviCare plugin <= 3.6.13 - SQL Injection vulnerability
MEDIUM 4.3 2025-11-21
Iqonic Design KiviCare
CVE NVD
CVE-2025-66093
WordPress Extensions for Leaflet Map plugin <= 4.8 - Cross Site Scripting (XSS) vulnerability
MEDIUM 6.5 2025-11-21
hupe13 Extensions for Leaflet Map
CVE NVD
CVE-2025-66092
WordPress Accordion Slider plugin <= 1.9.13 - Cross Site Scripting (XSS) vulnerability
MEDIUM 6.5 2025-11-21
bqworks Accordion Slider
CVE NVD
CVE-2025-66091
WordPress Stylish Cost Calculator plugin <= 8.1.5 - Cross Site Scripting (XSS) vulnerability
MEDIUM 6.5 2025-11-21
Design Stylish Cost Calculator
CVE NVD
CVE-2025-66090
WordPress SKT Skill Bar plugin <= 2.5 - Cross Site Scripting (XSS) vulnerability
MEDIUM 6.5 2025-11-21
sonalsinha21 SKT Skill Bar
CVE NVD
CVE-2025-66089
WordPress Product Feed for WooCommerce plugin <= 2.3.1 - Broken Access Control vulnerability
MEDIUM 4.3 2025-11-21
WebToffee Product Feed for WooCommerce
CVE NVD