Habla con un experto

DIRECTORIO CVE · 2026

Vulnerabilidades de WordPress

4.697 registros, ordenados por fecha oficial de publicación descendente.

Mostrando 100 registros · Página 33 de 47

Alta

WordPress · Linux

CVE-2026-23395: vulnerabilidad de seguridad en Linux

El registro oficial identifica la vulnerabilidad «vulnerabilidad de seguridad» en Linux. Linux: 15f02b91056253e8cdc592888f431da0731337b8 hasta 10a7a702542240d5edb2b39450ac951c59ccd009, 15f02b91056253e8cdc592888f431da0731337b8 hasta 46e5b71666fb7652082e4e214a3365f4b14f1dc3, 15f02b91056253e8cdc592888f431da0731337b8 hasta fb4a3a26483f3ea2cd21c7a2f7c45d5670600465, 15f02b91056253e8cdc592888f431da0731337b8 hasta 2124d82fd25e1671bb3ceb37998af5aae5903e06, 15f02b91056253e8cdc592888f431da0731337b8 hasta 6b949a6b33cbdf621d9fc6f0c48ac00915dbf514, 15f02b91056253e8cdc592888f431da0731337b8 hasta 8d0d94f8ba5b3a0beec3b0da558b9bea48018117; Linux: 5.7, 0 hasta 5.7, 5.10.253 hasta 5.10.*, 5.15.203 hasta 5.15.*, 6.1.167 hasta 6.1.*, 6.6.130 hasta 6.6.*

Leer análisis →
Alta

WordPress · WP Job Portal – AI-Powered Recruitment System for Company or Job Board website

CVE-2026-4306: CWE-89: Neutralización incorrecta de elementos especiales en una consulta (SQL Injection) en WP Job Portal – AI-Powered Recruitment System for Company or Job Board website

El registro oficial identifica la vulnerabilidad «CWE-89: Neutralización incorrecta de elementos especiales en una consulta (SQL Injection)» en WP Job Portal – AI-Powered Recruitment System for Company or Job Board website. WP Job Portal – AI-Powered Recruitment System for Company or Job Board website: 0 hasta 2.4.8

Leer análisis →
Media

WordPress · User Registration & Membership – Free & Paid Memberships, Subscriptions, Content Restriction, User Profile, Custom User Registration & Login Builder

CVE-2026-4056: CWE-862: Falta de autorización en User Registration & Membership – Free & Paid Memberships, Subscriptions, Content Restriction, User Profile, Custom User Registration & Login Builder

El registro oficial identifica la vulnerabilidad «CWE-862: Falta de autorización» en User Registration & Membership – Free & Paid Memberships, Subscriptions, Content Restriction, User Profile, Custom User Registration & Login Builder. User Registration & Membership – Free & Paid Memberships, Subscriptions, Content Restriction, User Profile, Custom User Registration & Login Builder: 0 hasta 5.1.4

Leer análisis →
Alta

WordPress · Contest Gallery – Upload & Vote Photos, Media, Sell with PayPal & Stripe

CVE-2026-4021: CWE-287: Autenticación incorrecta en Contest Gallery – Upload & Vote Photos, Media, Sell with PayPal & Stripe

El registro oficial identifica la vulnerabilidad «CWE-287: Autenticación incorrecta» en Contest Gallery – Upload & Vote Photos, Media, Sell with PayPal & Stripe. Contest Gallery – Upload & Vote Photos, Media, Sell with PayPal & Stripe: 0 hasta 28.1.5

Leer análisis →
Media

WordPress · Quiz and Survey Master (QSM) – Easy Quiz and Survey Maker

CVE-2026-2412: CWE-89: Neutralización incorrecta de elementos especiales en una consulta (SQL Injection) en Quiz and Survey Master (QSM) – Easy Quiz and Survey Maker

El registro oficial identifica la vulnerabilidad «CWE-89: Neutralización incorrecta de elementos especiales en una consulta (SQL Injection)» en Quiz and Survey Master (QSM) – Easy Quiz and Survey Maker. Quiz and Survey Master (QSM) – Easy Quiz and Survey Maker: 0 hasta 10.3.5

Leer análisis →
Media

WordPress · Yoast SEO – Advanced SEO with real-time guidance and built-in AI

CVE-2026-3427: CWE-79: Neutralización incorrecta de entrada durante la generación de páginas web (Cross-Site Scripting) en Yoast SEO – Advanced SEO with real-time guidance and built-in AI

El registro oficial identifica la vulnerabilidad «CWE-79: Neutralización incorrecta de entrada durante la generación de páginas web (Cross-Site Scripting)» en Yoast SEO – Advanced SEO with real-time guidance and built-in AI. Yoast SEO – Advanced SEO with real-time guidance and built-in AI: 0 hasta 27.1.1

Leer análisis →
Alta

WordPress · WP Maps – Store Locator,Google Maps,OpenStreetMap,Mapbox,Listing,Directory & Filters

CVE-2026-2580: CWE-89: Neutralización incorrecta de elementos especiales en una consulta (SQL Injection) en WP Maps – Store Locator,Google Maps,OpenStreetMap,Mapbox,Listing,Directory & Filters

El registro oficial identifica la vulnerabilidad «CWE-89: Neutralización incorrecta de elementos especiales en una consulta (SQL Injection)» en WP Maps – Store Locator,Google Maps,OpenStreetMap,Mapbox,Listing,Directory & Filters. WP Maps – Store Locator,Google Maps,OpenStreetMap,Mapbox,Listing,Directory & Filters: 0 hasta 4.9.1

Leer análisis →
Alta

WordPress · WowOptin: Next-Gen Popup Maker – Create Stunning Popups and Optins for Lead Generation

CVE-2026-4302: CWE-918: vulnerabilidad de seguridad en WowOptin: Next-Gen Popup Maker – Create Stunning Popups and Optins for Lead Generation

El registro oficial identifica la vulnerabilidad «CWE-918: vulnerabilidad de seguridad» en WowOptin: Next-Gen Popup Maker – Create Stunning Popups and Optins for Lead Generation. WowOptin: Next-Gen Popup Maker – Create Stunning Popups and Optins for Lead Generation: 0 hasta 1.4.29

Leer análisis →
Media

WordPress · Show Posts list – Easy designs, filters and more

CVE-2026-4022: CWE-79: Neutralización incorrecta de entrada durante la generación de páginas web (Cross-Site Scripting) en Show Posts list – Easy designs, filters and more

El registro oficial identifica la vulnerabilidad «CWE-79: Neutralización incorrecta de entrada durante la generación de páginas web (Cross-Site Scripting)» en Show Posts list – Easy designs, filters and more. Show Posts list – Easy designs, filters and more: 0 hasta 1.1.0

Leer análisis →