Recent news in security

  

CVE-2025-49891 | riotweb Contact Info Widget Plugin up to 2.6.2 on WordPress cross site scripting

A vulnerability was found in riotweb Contact Info Widget Plugin up to 2.6.2 on WordPress and classified as problematic. The

  

CVE-2025-53226 | digitalzoomstudio Comments Capcha Box Plugin up to 1.1 on WordPress cross site scripting

A vulnerability marked as problematic has been reported in digitalzoomstudio Comments Capcha Box Plugin up to 1.1 on WordPress. This

  

CVE-2025-49892 | badasswp Pending Order Bot Plugin up to 1.0.2 on WordPress cross site scripting

A vulnerability labeled as problematic has been found in badasswp Pending Order Bot Plugin up to 1.0.2 on WordPress. Affected

Vendor

CERTs

Vulnerabilities