Medium - CVE-2025-6986 - The FileBird – WordPress Media Library Folders...
The FileBird – WordPress Media Library Folders & File Manager plugin for WordPress is vulnerable to SQL Injection via the 'search' parameter in all versions up to, and including, 6.4.8...
High - CVE-2025-7036 - The CleverReach® WP plugin for WordPress is...
The CleverReach® WP plugin for WordPress is vulnerable to time-based SQL Injection via the ‘title’ parameter in all versions up to, and including, 1.5.20 due to insufficient escaping on the user...
Medium - CVE-2025-7502 - The WPBakery Page Builder for WordPress plugin...
The WPBakery Page Builder for WordPress plugin for WordPress is vulnerable to Stored Cross-Site Scripting via several shortcodes in all versions up to, and including, 8.5 due to insufficient input...