Latest Stories
Mobile Site Redirect Plugin CSRF Enables Stored XSS | CVE20259884 | 2025-10-03
Security guide for CSRF-driven stored XSS in Mobile Site Redirect (<=1.2.1) CVE-2025-9884
Unauthenticated JoomSport Directory Traversal Enables LFI | CVE20257721 | 2025-10-03
Urgent CVE-2025-7721 LFI in JoomSport <=5.7.3; patch to 5.7.4 now.
Critical CSRF Advisory Notification Bar Plugin | CVE20259895 | 2025-10-03
Urgent CSRF advisory for Notification Bar plugin CVE-2025-9895 with immediate mitigations and WAF guidance
Critical Meks Easy Maps Contributor Stored XSS | CVE20259206 | 2025-10-03
Auth stored XSS in Meks Easy Maps <=2.1.4: risk, detection, mitigation, and WP-Firewall protection






















