یادآوری: اطلاعات این سامانه از منابع معرفی‌شده گردآوری می‌شود. پیش از هر اقدام فنی، جزئیات را در منبع اصلی بررسی کنید.
پایگاه اطلاعات امنیتی

آسیب‌پذیری‌ها

آسیب‌پذیری‌ها را بر اساس دسته‌بندی، سازنده، محصول، CVE، شدت، EPSS، اولویت و منبع پیدا کنید.

فیلترهابا انتخاب دسته‌بندی، فهرست سازنده‌ها و محصولات مرتبط هم محدود می‌شود. راهنمای فیلترها

برای محدودکردن نتایج یک یا چند فیلتر را انتخاب کنید و سپس دکمه اعمال فیلتر را بزنید.

پاک کردن همه 52 نتیجه
فیلترهای فعال دسته: wordpress پاک کردن همه
نمای سریع

فیلترهای آماده و نماهای ذخیره‌شده

نامشخص اولویت 11

The State of WordPress Agencies in 2026 210 agencies surveyed. One report.Download free — no registration required. Read the Report

New Hosting Revenue — Unlocked! Launch your own professional WordPress services without upfront investment or headcount. Powered by Seahawk — Branded as you. Spring Offer Your WordPress services. Under your brand. Earn up to 70% margin — offer closes April 30. CLAIM THE OFFER WordPress Pro Services. Extra 30% on your margins. Zero Upfront Investment. Live…

CloudLinux / Imunify360
2026-08-1511:43
1 منبع · 1 رسمی اعتماد متوسط · 48/100 کیفیت محدود · 45/100 داده قدیمی جزئیات و راهکار رفع
نامشخص اولویت 9

Security

LiteSpeed Technologies / LiteSpeed Web Server
2026-08-1302:05
1 منبع · 1 رسمی اعتماد متوسط · 57/100 نیازمند توجه · 61/100 داده تازه جزئیات و راهکار رفع
نامشخص اولویت 9

Go to repository

LiteSpeed Documentation GitHub Get Started Get Started Welcome LiteSpeed Web Server LiteSpeed Web Server Overview Trial License Installation Installation Standalone Installation One-Click Installation Updates Changelog Changelog Table of contents Version 6.4 Release Candidates RC1 Build 1 Build 0 Version 6.3.6 Build 6 Build 5 Build 4 Build 3 Build 2 Build 1…

LiteSpeed Technologies / LiteSpeed Web Server
2026-08-1302:05
1 منبع · 1 رسمی اعتماد متوسط · 57/100 نیازمند توجه · 61/100 داده تازه جزئیات و راهکار رفع
نامشخص اولویت 9

WordPress 7.0.4 Release

WordPress 7.0.4 is now available which features a security fix. Because this is a security release, it is recommended that you update your sites immediately. You can update to WordPress 7.0.4 by downloading it from WordPress.org, or visiting your site’s Dashboard → Updates and clicking Update Now. Sites that support […]

WordPress / WordPress Core
2026-08-1214:45
1 منبع · 1 رسمی اعتماد خوب · 61/100 کیفیت خوب · 71/100 داده تازه جزئیات و راهکار رفع
نامشخص اولویت 9

WordPress 7.0.3 release

WordPress 7.0.3 is now available which features several security fixes. Because this is a security release, it is recommended that you update your sites immediately. You can update to WordPress 7.0.3 by downloading it from WordPress.org, or visiting your site’s Dashboard → Updates and clicking Update Now. Sites that support […]

WordPress / WordPress Core
2026-08-0618:55
1 منبع · 1 رسمی اعتماد خوب · 61/100 کیفیت خوب · 71/100 داده تازه جزئیات و راهکار رفع
نامشخص CISA KEV EPSS 10.1% اولویت 29

CVE-2026-63030 — WordPress Core Interpretation Conflict Vulnerability

WordPress Core contains an interpretation conflict vulnerability that could allow an attacker to perform SQL Injection and achieve Remote Code Execution. This vulnerability can be chained with CVE-2026-60137.

WordPress / Core
2026-07-2100:00
2 منبع · 2 رسمی اعتماد خوب · 64/100 نیازمند توجه · 60/100 داده قدیمی جزئیات و راهکار رفع
نامشخص CISA KEV EPSS 5.9% اولویت 27

CVE-2026-60137 — WordPress Core SQL Injection Vulnerability

WordPress Core contains a SQL injection vulnerability when a plugin or theme passes untrusted input to the parameter. This vulnerability can be chained with CVE-2026-63030 to allow an unauthenticated attacker to gain remote code execution on default WordPress installations.

WordPress / Core
2026-07-2100:00
2 منبع · 2 رسمی اعتماد خوب · 64/100 نیازمند توجه · 60/100 داده قدیمی جزئیات و راهکار رفع
بحرانی اولویت 47

WordPress 7.0.2 Release

WordPress 7.0.2 is now available. The 7.0.2 security release addresses one critical and one high severity security issue. Because this is a security release, it is recommended that you update your sites immediately. Due to the severity, the WordPress.org team have enabled forced updates via the auto-update system for sites running affected versions. To…

WordPress / WordPress Core
2026-07-1718:45
1 منبع · 1 رسمی اعتماد خوب · 64/100 کیفیت خوب · 77/100 داده تازه جزئیات و راهکار رفع
زیاد CISA KEV EPSS 0.8% اولویت 55

CVE-2026-54420 — LiteSpeed cPanel Plugin UNIX Symbolic Link (Symlink) Following Vulnerability

A vulnerability in the LiteSpeed cPanel plugin allows a user with FTP or web shell access to escalate privileges to root on shared hosting servers running CloudLinux/CageFS. This vulnerability is being actively exploited, and poses a risk for all user-end plugin versions prior to 2.4.8.

LiteSpeed Technologies / LiteSpeed Products LiteSpeed / cPanel Plugin
2026-05-3100:00
3 منبع · 3 رسمی اعتماد خوب · 69/100 نیازمند توجه · 67/100 در حال قدیمی‌شدن جزئیات و راهکار رفع
زیاد اولویت 38

Security¶

Security

LiteSpeed Technologies / LiteSpeed Web Server
2026-05-1900:00
1 منبع · 1 رسمی اعتماد متوسط · 59/100 نیازمند توجه · 67/100 داده تازه جزئیات و راهکار رفع
زیاد CISA KEV EPSS 1.0% اولویت 55

CVE-2026-48172 — LiteSpeed cPanel Plugin Privilege Escalation Vulnerability

Any cPanel user (including an attacker or a compromised account) may exploit the lsws.redisAble function to execute arbitrary scripts as root. This vulnerability is being actively exploited, and poses a risk for all user-end plugin versions between v2.3 and v2.4.4.

LiteSpeed Technologies / LiteSpeed Products LiteSpeed / cPanel Plugin
2026-05-1900:00
3 منبع · 3 رسمی اعتماد خوب · 69/100 نیازمند توجه · 67/100 در حال قدیمی‌شدن جزئیات و راهکار رفع
زیاد اولویت 38

ec9762281cbfc9406f9e0e656f693d64107e2632

LiteSpeed Documentation GitHub Get Started Get Started Welcome LiteSpeed Web Server LiteSpeed Web Server Overview Trial License Installation Installation Standalone Installation One-Click Installation Updates Changelog Changelog Table of contents Version 6.4 Release Candidates RC1 Build 1 Build 0 Version 6.3.6 Build 6 Build 5 Build 4 Build 3 Build 2 Build 1…

LiteSpeed Technologies / LiteSpeed Web Server
2026-05-0100:00
1 منبع · 1 رسمی اعتماد متوسط · 59/100 نیازمند توجه · 67/100 داده تازه جزئیات و راهکار رفع
بحرانی CISA KEV EPSS 98.5% اولویت 93

CVE-2026-41940 — WebPros cPanel & WHM and WP2 (WordPress Squared) Missing Authentication for Critical Function Vulnerability

We have pushed out a patch for the following cPanel & WHM versions: 11.86.0.41 and higher 11.94.0.28 and higher 11.102.0.39 and higher 11.110.0.97 and higher 11.118.0.63 and higher 11.124.0.35 and higher 11.126.0.54 and higher 11.130.0.19 and higher 11.132.0.29 and higher 11.134.0.20 and higher 11.136.0.5 and higher

cPanel / cPanel & WHM WebPros / cPanel & WHM and WP2 (WordPress Squared)
2026-04-2816:19
3 منبع · 3 رسمی اعتماد خوب · 66/100 نیازمند توجه · 61/100 داده قدیمی جزئیات و راهکار رفع
کم اولویت 15

How to hide the SecurityRisk score label in Wordpress Toolkit for Plesk?

Applicable to: Plesk for Linux Plesk for Windows Question How to hide the SecurityRisk score label in WP Toolkit for Plesk? Answer For Linux Log in to Plesk. Install the Panel.ini Editor from the Extensions menu (if not already installed). Open Panel.ini Editor at Extensions > My Extensions. In Panel.ini Editor, switch to the Editor tab. If…

Plesk / Plesk
2026-04-2322:23
1 منبع · 1 رسمی اعتماد متوسط · 54/100 نیازمند توجه · 56/100 در حال قدیمی‌شدن جزئیات و راهکار رفع
نامشخص اولویت 8

WordPress 6.9.2 Release

WordPress 6.9.2 is now available This is a security release that features several fixes. Because this is a security release, it is recommended that you update your sites immediately. You can download WordPress 6.9.2 from WordPress.org, or visit your WordPress Dashboard, click “Updates”, and then click “Update Now”. If you have sites that support automatic…

WordPress / WordPress Core
2026-03-1015:43
1 منبع · 1 رسمی اعتماد خوب · 61/100 کیفیت خوب · 71/100 داده تازه جزئیات و راهکار رفع
بحرانی CVSS 9.8 اولویت 54

CVE-2025-4334 — CVE-2025-4334 — memberhero

The Simple User Registration plugin for WordPress is vulnerable to Privilege Escalation in all versions up to, and including, 6.3. This is due to insufficient restrictions on user meta values that can be supplied during registration. This makes it possible for unauthenticated attackers to register as an administrator.

najeebmedia / memberhero
2025-06-2602:15
2 منبع · 2 رسمی اعتماد خوب · 68/100 نیازمند توجه · 61/100 داده قدیمی جزئیات و راهکار رفع
نامشخص اولویت 8

Dropping security updates for WordPress versions 4.1 through 4.6

As of July 2025, the WordPress Security Team will no longer provide security updates for WordPress versions 4.1 through 4.6. These versions were first released nine or more years ago and over 99% of WordPress installations run a more recent version. The chances this will affect your site, or sites, is very small. If you […]

WordPress / WordPress Core
2025-06-1915:26
1 منبع · 1 رسمی اعتماد خوب · 61/100 کیفیت خوب · 71/100 داده تازه جزئیات و راهکار رفع