In this report, 164 vulnerabilities have been publicly disclosed. Security patches for 89 of these plugins and themes are now available. Please run these updates as soon as possible. If you’re a Solid Security Pro user, the version management tool may have already warned you and updated these plugins, depending on your settings.
Currently, 75 plugin and theme vulnerabilities remain unpatched. If you’re a Solid Security Pro user, those vulnerabilities are already protected by the Solid Security firewall. Virtual patches from Patchstack will be applied when a vulnerability is considered high or medium risk. If no patch is forthcoming from the vendor or the vulnerable software has been marked “closed” and dropped from the official WordPress repositories, you should deactivate it soon and look for alternative solutions.
WordPress Core
WordPress 6.8.3 was released on September 30, 2025. This is a security release that features two fixes. As this is a security release, we recommend updating your sites immediately. For more information on WordPress 6.8.3, please visit the version page on the HelpHub site.
WordPress 6.9 Release Candidate 3 (RC3) is now available for testing. This version is still under development and should not be installed on production or mission-critical websites. Instead, test RC2 on a staging or test site. You can read more on the WordPress Core blog for details on how to download and test this release.
The final release of WordPress 6.9 is scheduled for December 2, 2025. For updates, testing information, and release announcements, visit the Make WordPress Core blog.
WordPress Plugins — 89 Patched / 74 Unpatched
Image Hover Effects Ultimate
- Plugin:
- Image Hover Effects Ultimate
- Plugin Slug:
- image-hover-effects-ultimate
- Installations
- 20,000+
- Vulnerability:
- Cross Site Scripting (XSS)
- Patched in Version:
- No Fix
- Severity Score:
- Medium
- CVE:
- 2025-5092
Enable SVG, WebP, and ICO Upload
- Plugin:
- Enable SVG, WebP, and ICO Upload
- Plugin Slug:
- enable-svg-webp-ico-upload
- Installations
- 10,000+
- Vulnerability:
- Arbitrary File Upload
- Patched in Version:
- No Fix
- Severity Score:
- Critical
- CVE:
- 2025-13069
Enable SVG, WebP, and ICO Upload
- Plugin:
- Enable SVG, WebP, and ICO Upload
- Plugin Slug:
- enable-svg-webp-ico-upload
- Installations
- 10,000+
- Vulnerability:
- Cross Site Scripting (XSS)
- Patched in Version:
- No Fix
- Severity Score:
- Medium
- CVE:
- 2025-12457
UiPress lite | Effortless custom dashboards, admin themes and pages
- Plugin Slug:
- uipress-lite
- Installations
- 10,000+
- Vulnerability:
- Sensitive Data Exposure
- Patched in Version:
- No Fix
- Severity Score:
- Medium
- CVE:
- 2025-10938
UiPress lite | Effortless custom dashboards, admin themes and pages
- Plugin Slug:
- uipress-lite
- Installations
- 10,000+
- Vulnerability:
- Cross Site Scripting (XSS)
- Patched in Version:
- No Fix
- Severity Score:
- Medium
- CVE:
- 2025-11003
Gutenify – Visual Site Builder Blocks & Site Templates.
- Plugin Slug:
- gutenify
- Installations
- 6,000+
- Vulnerability:
- Cross Site Scripting (XSS)
- Patched in Version:
- No Fix
- Severity Score:
- Medium
- CVE:
- 2025-8605
Gallery with thumbnail slider
- Plugin:
- Gallery with thumbnail slider
- Plugin Slug:
- gallery-with-thumbnail-slider
- Installations
- 3,000+
- Vulnerability:
- Cross Site Scripting (XSS)
- Patched in Version:
- No Fix
- Severity Score:
- Medium
- CVE:
- 2025-5092
?????
- Plugin:
- ?????
- Plugin Slug:
- keydatas
- Installations
- 2,000+
- Vulnerability:
- Arbitrary File Download
- Patched in Version:
- No Fix
- Severity Score:
- Medium
- CVE:
- 2025-11973
Simple User Import Export
- Plugin:
- Simple User Import Export
- Plugin Slug:
- a3-user-importer
- Vulnerability:
- CSV Injection
- Patched in Version:
- No Fix
- Severity Score:
- Medium
- CVE:
- 2025-13133
Ace Post Type Builder
- Plugin:
- Ace Post Type Builder
- Plugin Slug:
- ace-post-type-builder
- Vulnerability:
- Broken Access Control
- Patched in Version:
- No Fix
- Severity Score:
- Medium
- CVE:
- 2025-13405
ACF Flexible Layouts Manager
- Plugin:
- ACF Flexible Layouts Manager
- Plugin Slug:
- acf-flexible-layouts-manager
- Vulnerability:
- Broken Access Control
- Patched in Version:
- No Fix
- Severity Score:
- Medium
- CVE:
- 2025-12937
OrderConvo
- Plugin:
- OrderConvo
- Plugin Slug:
- admin-and-client-message-after-order-for-woocommerce
- Vulnerability:
- Broken Access Control
- Patched in Version:
- No Fix
- Severity Score:
- Medium
- CVE:
- 2025-13389
OrderConvo
- Plugin:
- OrderConvo
- Plugin Slug:
- admin-and-client-message-after-order-for-woocommerce
- Vulnerability:
- Broken Access Control
- Patched in Version:
- No Fix
- Severity Score:
- Medium
- CVE:
- 2025-13452
ArtiBot
- Plugin:
- ArtiBot
- Plugin Slug:
- artibot
- Vulnerability:
- Cross Site Scripting (XSS)
- Patched in Version:
- No Fix
- Severity Score:
- High
- CVE:
- 2025-12078
Attention Bar
- Plugin:
- Attention Bar
- Plugin Slug:
- attention-bar
- Vulnerability:
- SQL Injection
- Patched in Version:
- No Fix
- Severity Score:
- High
- CVE:
- 2025-12502
AudioTube
- Plugin:
- AudioTube
- Plugin Slug:
- audiotube
- Vulnerability:
- Cross Site Scripting (XSS)
- Patched in Version:
- No Fix
- Severity Score:
- Medium
- CVE:
- 2025-11801
AuthorSure
- Plugin:
- AuthorSure
- Plugin Slug:
- authorsure
- Vulnerability:
- Cross Site Request Forgery (CSRF)
- Patched in Version:
- No Fix
- Severity Score:
- High
- CVE:
- 2025-13134
Autochat Automatic Conversation
- Plugin:
- Autochat Automatic Conversation
- Plugin Slug:
- auyautochat-for-wp
- Vulnerability:
- Broken Access Control
- Patched in Version:
- No Fix
- Severity Score:
- Medium
- CVE:
- 2025-12043
BigBuy Dropshipping Connector for WooCommerce
- Plugin:
- BigBuy Dropshipping Connector for WooCommerce
- Plugin Slug:
- bigbuy-wc-dropshipping-connector
- Vulnerability:
- Sensitive Data Exposure
- Patched in Version:
- No Fix
- Severity Score:
- Medium
- CVE:
- 2025-12039
Bookme – Free Online Appointment Booking and Scheduling Plugin
- Plugin:
- Bookme – Free Online Appointment Booking and Scheduling Plugin
- Plugin Slug:
- bookme-free-appointment-booking-system
- Vulnerability:
- SQL Injection
- Patched in Version:
- No Fix
- Severity Score:
- High
- CVE:
- 2025-13385
Restrictions for BuddyPress
- Plugin:
- Restrictions for BuddyPress
- Plugin Slug:
- bp-restrict
- Vulnerability:
- Broken Access Control
- Patched in Version:
- No Fix
- Severity Score:
- Medium
- CVE:
- 2025-12391
BrightTALK WordPress Shortcode
- Plugin:
- BrightTALK WordPress Shortcode
- Plugin Slug:
- brighttalk-wp-shortcode
- Vulnerability:
- Cross Site Scripting (XSS)
- Patched in Version:
- No Fix
- Severity Score:
- Medium
- CVE:
- 2025-11770
Bulma Shortcodes
- Plugin:
- Bulma Shortcodes
- Plugin Slug:
- bulma-shortcodes
- Vulnerability:
- Cross Site Scripting (XSS)
- Patched in Version:
- No Fix
- Severity Score:
- Medium
- CVE:
- 2025-11802
Category and Product Woocommerce Tabs
- Plugin:
- Category and Product Woocommerce Tabs
- Plugin Slug:
- category-and-product-woocommerce-tabs
- Vulnerability:
- Local File Inclusion
- Patched in Version:
- No Fix
- Severity Score:
- High
- CVE:
- 2025-13088
Chamber Dashboard Business Directory
- Plugin:
- Chamber Dashboard Business Directory
- Plugin Slug:
- chamber-dashboard-business-directory
- Vulnerability:
- Broken Access Control
- Patched in Version:
- No Fix
- Severity Score:
- Medium
- CVE:
- 2025-13414
Coil Web Monetization
- Plugin:
- Coil Web Monetization
- Plugin Slug:
- coil-web-monetization
- Vulnerability:
- Cross Site Request Forgery (CSRF)
- Patched in Version:
- No Fix
- Severity Score:
- Medium
- CVE:
- 2025-9625
CSV to SortTable
- Plugin:
- CSV to SortTable
- Plugin Slug:
- csv-to-sorttable
- Vulnerability:
- Cross Site Scripting (XSS)
- Patched in Version:
- No Fix
- Severity Score:
- Medium
- CVE:
- 2025-12823
Custom Post Type
- Plugin:
- Custom Post Type
- Plugin Slug:
- custom-post-type
- Vulnerability:
- Cross Site Request Forgery (CSRF)
- Patched in Version:
- No Fix
- Severity Score:
- Medium
- CVE:
- 2025-13142
Display Pages Shortcode
- Plugin:
- Display Pages Shortcode
- Plugin Slug:
- display-pages-shortcode
- Vulnerability:
- Cross Site Scripting (XSS)
- Patched in Version:
- No Fix
- Severity Score:
- Medium
- CVE:
- 2025-11763
Download Panel (Biggiko Team)
- Plugin:
- Download Panel (Biggiko Team)
- Plugin Slug:
- download-panel
- Vulnerability:
- Broken Access Control
- Patched in Version:
- No Fix
- Severity Score:
- Medium
- CVE:
- 2025-12961
YouTube Subscribe
- Plugin:
- YouTube Subscribe
- Plugin Slug:
- easy-youtube-subscribe
- Vulnerability:
- Cross Site Scripting (XSS)
- Patched in Version:
- No Fix
- Severity Score:
- Medium
- CVE:
- 2025-12025
everviz
- Plugin:
- everviz
- Plugin Slug:
- everviz
- Vulnerability:
- Cross Site Scripting (XSS)
- Patched in Version:
- No Fix
- Severity Score:
- Medium
- CVE:
- 2025-11868
Flo Forms
- Plugin:
- Flo Forms
- Plugin Slug:
- flo-forms
- Vulnerability:
- Cross Site Scripting (XSS)
- Patched in Version:
- No Fix
- Severity Score:
- High
- CVE:
- 2025-13159
HotelRunner Booking Widget
- Plugin:
- HotelRunner Booking Widget
- Plugin Slug:
- hotelrunner
- Vulnerability:
- Cross Site Scripting (XSS)
- Patched in Version:
- No Fix
- Severity Score:
- Medium
- CVE:
- 2025-13135
Inline frame – Iframe
- Plugin:
- Inline frame – Iframe
- Plugin Slug:
- inline-frame-iframe
- Vulnerability:
- Cross Site Scripting (XSS)
- Patched in Version:
- No Fix
- Severity Score:
- Medium
- CVE:
- 2025-12645
Islamic Phrases
- Plugin:
- Islamic Phrases
- Plugin Slug:
- islamic-phrases
- Vulnerability:
- Cross Site Scripting (XSS)
- Patched in Version:
- No Fix
- Severity Score:
- Medium
- CVE:
- 2025-11768
Just Highlight
- Plugin:
- Just Highlight
- Plugin Slug:
- just-highlight
- Vulnerability:
- Cross Site Scripting (XSS)
- Patched in Version:
- No Fix
- Severity Score:
- Medium
- CVE:
- 2025-13311
LightGallery WP
- Plugin:
- LightGallery WP
- Plugin Slug:
- lightgallerywp
- Vulnerability:
- Cross Site Scripting (XSS)
- Patched in Version:
- No Fix
- Severity Score:
- Medium
- CVE:
- 2025-5092
Like-it
- Plugin:
- Like-it
- Plugin Slug:
- like-it
- Vulnerability:
- Cross Site Scripting (XSS)
- Patched in Version:
- No Fix
- Severity Score:
- High
- CVE:
- 2025-12404
Local Syndication
- Plugin:
- Local Syndication
- Plugin Slug:
- local-syndication
- Vulnerability:
- Server Side Request Forgery (SSRF)
- Patched in Version:
- No Fix
- Severity Score:
- Medium
- CVE:
- 2025-12962
Locker Content
- Plugin:
- Locker Content
- Plugin Slug:
- locker-content
- Vulnerability:
- Sensitive Data Exposure
- Patched in Version:
- No Fix
- Severity Score:
- Medium
- CVE:
- 2025-12525
Conditionnal Maintenance Mode for WordPress
- Plugin:
- Conditionnal Maintenance Mode for WordPress
- Plugin Slug:
- maintenance-mode-based-on-user-roles
- Vulnerability:
- Cross Site Request Forgery (CSRF)
- Patched in Version:
- No Fix
- Severity Score:
- Medium
- CVE:
- 2025-12586
Make Email Customizer for WooCommerce
- Plugin:
- Make Email Customizer for WooCommerce
- Plugin Slug:
- make-email-customizer-for-woocommerce
- Vulnerability:
- Settings Change
- Patched in Version:
- No Fix
- Severity Score:
- High
- CVE:
- 2025-11237
Meta Display Block
- Plugin:
- Meta Display Block
- Plugin Slug:
- meta-display-block
- Vulnerability:
- Cross Site Scripting (XSS)
- Patched in Version:
- No Fix
- Severity Score:
- Medium
- CVE:
- 2025-12088
Mstore Mobile App
- Plugin:
- Mstore Mobile App
- Plugin Slug:
- mstoreapp-mobile-app
- Vulnerability:
- Privilege Escalation
- Patched in Version:
- No Fix
- Severity Score:
- Critical
- CVE:
- 2025-11127
Multiple Roles per User
- Plugin:
- Multiple Roles per User
- Plugin Slug:
- multiple-roles-per-user
- Vulnerability:
- Broken Access Control
- Patched in Version:
- No Fix
- Severity Score:
- High
- CVE:
- 2025-11620
Frontend File Manager
- Plugin:
- Frontend File Manager
- Plugin Slug:
- nmedia-user-file-uploader
- Vulnerability:
- Insecure Direct Object References (IDOR)
- Patched in Version:
- No Fix
- Severity Score:
- Medium
- CVE:
- 2025-13382
Peer Publish
- Plugin:
- Peer Publish
- Plugin Slug:
- peer-publish
- Vulnerability:
- Cross Site Request Forgery (CSRF)
- Patched in Version:
- No Fix
- Severity Score:
- Medium
- CVE:
- 2025-12587
Drag & Drop Builder
- Plugin:
- Drag & Drop Builder
- Plugin Slug:
- pie-forms-for-wp
- Vulnerability:
- Arbitrary File Upload
- Patched in Version:
- No Fix
- Severity Score:
- Critical
- CVE:
- 2025-12528
Pollcaster Shortcode Plugin
- Plugin:
- Pollcaster Shortcode Plugin
- Plugin Slug:
- pollcaster-shortcode
- Vulnerability:
- Cross Site Scripting (XSS)
- Patched in Version:
- No Fix
- Severity Score:
- Medium
- CVE:
- 2025-12661
Premmerce Wholesale Pricing for WooCommerce
- Plugin:
- Premmerce Wholesale Pricing for WooCommerce
- Plugin Slug:
- premmerce-woocommerce-wholesale-pricing
- Vulnerability:
- SQL Injection
- Patched in Version:
- No Fix
- Severity Score:
- High
- CVE:
- 2025-12411
Project Honey Pot Spam Trap
- Plugin:
- Project Honey Pot Spam Trap
- Plugin Slug:
- project-honey-pot-spam-trap
- Vulnerability:
- Cross Site Scripting (XSS)
- Patched in Version:
- No Fix
- Severity Score:
- High
- CVE:
- 2025-12406
ProjectList
- Plugin:
- ProjectList
- Plugin Slug:
- projectlist
- Vulnerability:
- SQL Injection
- Patched in Version:
- No Fix
- Severity Score:
- High
- CVE:
- 2025-13370
Realty Portal
- Plugin:
- Realty Portal
- Plugin Slug:
- realty-portal
- Vulnerability:
- Broken Access Control
- Patched in Version:
- No Fix
- Severity Score:
- High
- CVE:
- 2025-11985
Refund Request for WooCommerce
- Plugin:
- Refund Request for WooCommerce
- Plugin Slug:
- refund-request-for-woocommerce
- Vulnerability:
- Broken Access Control
- Patched in Version:
- No Fix
- Severity Score:
- Medium
- CVE:
- 2025-12634
Shortcodes Bootstrap
- Plugin:
- Shortcodes Bootstrap
- Plugin Slug:
- shortcodes-bootstrap
- Vulnerability:
- Cross Site Scripting (XSS)
- Patched in Version:
- No Fix
- Severity Score:
- Medium
- CVE:
- 2025-11764
Social Images Widget
- Plugin:
- Social Images Widget
- Plugin Slug:
- social-images-widget
- Vulnerability:
- Broken Access Control
- Patched in Version:
- No Fix
- Severity Score:
- Medium
- CVE:
- 2025-13386
Stock Tools
- Plugin:
- Stock Tools
- Plugin Slug:
- stock-tools
- Vulnerability:
- Cross Site Scripting (XSS)
- Patched in Version:
- No Fix
- Severity Score:
- Medium
- CVE:
- 2025-11765
Surbma | MiniCRM Shortcode
- Plugin:
- Surbma | MiniCRM Shortcode
- Plugin Slug:
- surbma-minicrm-shortcode
- Vulnerability:
- Cross Site Scripting (XSS)
- Patched in Version:
- No Fix
- Severity Score:
- Medium
- CVE:
- 2025-11800
The Permalinks Cascade
- Plugin:
- The Permalinks Cascade
- Plugin Slug:
- the-permalinks-cascade
- Vulnerability:
- Broken Access Control
- Patched in Version:
- No Fix
- Severity Score:
- Medium
- CVE:
- 2025-12372
Tips Shortcode
- Plugin:
- Tips Shortcode
- Plugin Slug:
- tips-shortcode
- Vulnerability:
- Cross Site Scripting (XSS)
- Patched in Version:
- No Fix
- Severity Score:
- Medium
- CVE:
- 2025-11767
Cryptocurrency (Token), Launchpad (Presale), ICO & IDO, Airdrop by TokenICO
- Plugin:
- Cryptocurrency (Token), Launchpad (Presale), ICO & IDO, Airdrop by TokenICO
- Plugin Slug:
- tokenico-cryptocurrency-token-launchpad-presale-ico-ido-airdrop
- Vulnerability:
- Broken Access Control
- Patched in Version:
- No Fix
- Severity Score:
- Medium
- CVE:
- 2025-11771
Cryptocurrency (Token), Launchpad (Presale), ICO & IDO, Airdrop by TokenICO
- Plugin:
- Cryptocurrency (Token), Launchpad (Presale), ICO & IDO, Airdrop by TokenICO
- Plugin Slug:
- tokenico-cryptocurrency-token-launchpad-presale-ico-ido-airdrop
- Vulnerability:
- Broken Access Control
- Patched in Version:
- No Fix
- Severity Score:
- Medium
- CVE:
- 2025-11773
Top Friends
- Plugin:
- Top Friends
- Plugin Slug:
- top-friends
- Vulnerability:
- Cross Site Request Forgery (CSRF)
- Patched in Version:
- No Fix
- Severity Score:
- Medium
- CVE:
- 2025-12827
Cryptocurrency Payment Gateway for WooCommerce
- Plugin:
- Cryptocurrency Payment Gateway for WooCommerce
- Plugin Slug:
- triplea-cryptocurrency-payment-gateway-for-woocommerce
- Vulnerability:
- Broken Access Control
- Patched in Version:
- No Fix
- Severity Score:
- Medium
- CVE:
- 2025-12392
WP Twitter Auto Publish
- Plugin:
- WP Twitter Auto Publish
- Plugin Slug:
- twitter-auto-publish
- Vulnerability:
- Cross Site Scripting (XSS)
- Patched in Version:
- No Fix
- Severity Score:
- High
- CVE:
- 2025-12079
Padlet Shortcode
- Plugin:
- Padlet Shortcode
- Plugin Slug:
- wallwisher-shortcode
- Vulnerability:
- Cross Site Scripting (XSS)
- Patched in Version:
- No Fix
- Severity Score:
- Medium
- CVE:
- 2025-12660
Mstore Mobile App
- Plugin:
- Mstore Mobile App
- Plugin Slug:
- woo-mstoreapp-mobile-app
- Vulnerability:
- Privilege Escalation
- Patched in Version:
- No Fix
- Severity Score:
- Critical
- CVE:
- 2025-11127
WP Admin Microblog
- Plugin:
- WP Admin Microblog
- Plugin Slug:
- wp-admin-microblog
- Vulnerability:
- Cross Site Request Forgery (CSRF)
- Patched in Version:
- No Fix
- Severity Score:
- Medium
- CVE:
- 2025-12173
WP AUDIO GALLERY
- Plugin:
- WP AUDIO GALLERY
- Plugin Slug:
- wp-audio-gallery
- Vulnerability:
- Arbitrary File Deletion
- Patched in Version:
- No Fix
- Severity Score:
- High
- CVE:
- 2025-13322
WP Company Info
- Plugin:
- WP Company Info
- Plugin Slug:
- wp-company-info
- Vulnerability:
- Cross Site Scripting (XSS)
- Patched in Version:
- No Fix
- Severity Score:
- Medium
- CVE:
- 2025-11826
Shortcode for Google Street View
- Plugin:
- Shortcode for Google Street View
- Plugin Slug:
- wp-google-street-view-shortcode
- Vulnerability:
- Cross Site Scripting (XSS)
- Patched in Version:
- No Fix
- Severity Score:
- Medium
- CVE:
- 2025-11808
WPSite Shortcode
- Plugin:
- WPSite Shortcode
- Plugin Slug:
- wpsite-shortcode
- Vulnerability:
- Cross Site Scripting (XSS)
- Patched in Version:
- No Fix
- Severity Score:
- Medium
- CVE:
- 2025-11803
Zweb Social Mobile
- Plugin:
- Zweb Social Mobile
- Plugin Slug:
- zweb-social-mobile
- Vulnerability:
- Cross Site Scripting (XSS)
- Patched in Version:
- No Fix
- Severity Score:
- Medium
- CVE:
- 2025-12032
Code Snippets
- Plugin:
- Code Snippets
- Plugin Slug:
- code-snippets
- Installations
- 1,000,000+
- Vulnerability:
- Remote Code Execution (RCE)
- Patched in Version:
- 3.9.2
- Severity Score:
- High
- CVE:
- 2025-13035
W3 Total Cache
- Plugin:
- W3 Total Cache
- Plugin Slug:
- w3-total-cache
- Installations
- 1,000,000+
- Vulnerability:
- Remote Code Execution (RCE)
- Patched in Version:
- 2.8.13
- Severity Score:
- Critical
- CVE:
- 2025-9501
Royal Addons for Elementor – Addons and Templates Kit for Elementor
- Plugin Slug:
- royal-elementor-addons
- Installations
- 600,000+
- Vulnerability:
- Cross Site Scripting (XSS)
- Patched in Version:
- 1.7.1032
- Severity Score:
- Medium
- CVE:
- 2025-5092
Royal Addons for Elementor – Addons and Templates Kit for Elementor
- Plugin Slug:
- royal-elementor-addons
- Installations
- 600,000+
- Vulnerability:
- Cross Site Scripting (XSS)
- Patched in Version:
- 1.7.1037
- Severity Score:
- Medium
- CVE:
- 2025-6251
YITH WooCommerce Wishlist
- Plugin:
- YITH WooCommerce Wishlist
- Plugin Slug:
- yith-woocommerce-wishlist
- Installations
- 500,000+
- Vulnerability:
- Broken Access Control
- Patched in Version:
- 4.10.1
- Severity Score:
- Medium
- CVE:
- 2025-12777
YITH WooCommerce Wishlist
- Plugin:
- YITH WooCommerce Wishlist
- Plugin Slug:
- yith-woocommerce-wishlist
- Installations
- 500,000+
- Vulnerability:
- Insecure Direct Object References (IDOR)
- Patched in Version:
- 4.10.1
- Severity Score:
- Medium
- CVE:
- 2025-12427
SiteSEO – SEO Simplified
- Plugin:
- SiteSEO – SEO Simplified
- Plugin Slug:
- siteseo
- Installations
- 400,000+
- Vulnerability:
- Insecure Direct Object References (IDOR)
- Patched in Version:
- 1.3.3
- Severity Score:
- Medium
- CVE:
- 2025-13085
SiteSEO – SEO Simplified
- Plugin:
- SiteSEO – SEO Simplified
- Plugin Slug:
- siteseo
- Installations
- 400,000+
- Vulnerability:
- Broken Authentication
- Patched in Version:
- 1.3.3
- Severity Score:
- Medium
- CVE:
- 2025-12814
Broken Link Checker by AIOSEO – Easily Fix/Monitor Internal and External links
- Plugin Slug:
- broken-link-checker-seo
- Installations
- 300,000+
- Vulnerability:
- Broken Access Control
- Patched in Version:
- 1.2.6
- Severity Score:
- Medium
- CVE:
- 2025-11734
SureForms – Contact Form, Payment Form & Other Custom Form Builder
- Plugin Slug:
- sureforms
- Installations
- 300,000+
- Vulnerability:
- Cross Site Request Forgery (CSRF)
- Patched in Version:
- 1.13.2
- Severity Score:
- Medium
- CVE:
- 2025-12535
WP Go Maps (formerly WP Google Maps)
- Plugin Slug:
- wp-google-maps
- Installations
- 300,000+
- Vulnerability:
- Cross Site Scripting (XSS)
- Patched in Version:
- 9.0.48
- Severity Score:
- High
- CVE:
- 2025-11307
Post Type Switcher
- Plugin:
- Post Type Switcher
- Plugin Slug:
- post-type-switcher
- Installations
- 200,000+
- Vulnerability:
- Insecure Direct Object References (IDOR)
- Patched in Version:
- 4.0.1
- Severity Score:
- Medium
- CVE:
- 2025-12524
WP Migrate Lite – WordPress Migration Made Easy
- Plugin Slug:
- wp-migrate-db
- Installations
- 200,000+
- Vulnerability:
- Server Side Request Forgery (SSRF)
- Patched in Version:
- 2.7.7
- Severity Score:
- High
- CVE:
- 2025-11427
AI Engine
Element Pack Addons for Elementor
- Plugin Slug:
- bdthemes-element-pack-lite
- Installations
- 100,000+
- Vulnerability:
- Cross Site Scripting (XSS)
- Patched in Version:
- 8.3.5
- Severity Score:
- Medium
- CVE:
- 2025-13196
GiveWP – Donation Plugin and Fundraising Platform
- Plugin Slug:
- give
- Installations
- 100,000+
- Vulnerability:
- Cross Site Scripting (XSS)
- Patched in Version:
- 4.13.1
- Severity Score:
- High
- CVE:
- 2025-13206
Schedule Post Changes With PublishPress Future: Unpublish, Delete, Change Status, Trash, Change Categories
- Plugin Slug:
- post-expirator
- Installations
- 100,000+
- Vulnerability:
- Broken Access Control
- Patched in Version:
- 4.9.2
- Severity Score:
- Low
- CVE:
- 2025-13149
Responsive Lightbox & Gallery
- Plugin:
- Responsive Lightbox & Gallery
- Plugin Slug:
- responsive-lightbox
- Installations
- 100,000+
- Vulnerability:
- Server Side Request Forgery (SSRF)
- Patched in Version:
- 2.5.4
- Severity Score:
- Medium
- CVE:
- 2025-12359
VK All in One Expansion Unit
- Plugin:
- VK All in One Expansion Unit
- Plugin Slug:
- vk-all-in-one-expansion-unit
- Installations
- 100,000+
- Vulnerability:
- Cross Site Scripting (XSS)
- Patched in Version:
- 9.112.2
- Severity Score:
- Medium
- CVE:
- 2025-11265
Booking for Appointments and Events Calendar – Amelia
- Plugin Slug:
- ameliabooking
- Installations
- 90,000+
- Vulnerability:
- Sensitive Data Exposure
- Patched in Version:
- 1.2.37
- Severity Score:
- Medium
- CVE:
- 2023-49282
Booking for Appointments and Events Calendar – Amelia
- Plugin Slug:
- ameliabooking
- Installations
- 90,000+
- Vulnerability:
- SQL Injection
- Patched in Version:
- 1.2.36
- Severity Score:
- Critical
- CVE:
- 2025-12482
HT Mega – Absolute Addons For Elementor
- Plugin Slug:
- ht-mega-for-elementor
- Installations
- 80,000+
- Vulnerability:
- Cross Site Scripting (XSS)
- Patched in Version:
- 3.0.1
- Severity Score:
- Medium
- CVE:
- 2025-13141
LearnPress – WordPress LMS Plugin
- Plugin Slug:
- learnpress
- Installations
- 80,000+
- Vulnerability:
- Broken Access Control
- Patched in Version:
- 4.3.0
- Severity Score:
- Medium
- CVE:
- 2025-11368
Email Subscribers & Newsletters – Powerful Email Marketing, Post Notification & Newsletter Plugin for WordPress & WooCommerce
- Plugin Slug:
- email-subscribers
- Installations
- 70,000+
- Vulnerability:
- Broken Access Control
- Patched in Version:
- 5.9.11
- Severity Score:
- Medium
- CVE:
- 2025-12349
FluentCRM – Email Newsletter, Automation, Email Marketing, Email Campaigns, Optins, Leads, and CRM Solution
- Plugin Slug:
- fluent-crm
- Installations
- 70,000+
- Vulnerability:
- Cross Site Scripting (XSS)
- Patched in Version:
- 2.9.85
- Severity Score:
- Medium
- CVE:
- 2025-12935
Live sales notification for WooCommerce
- Plugin Slug:
- live-sales-notifications-for-woocommerce
- Installations
- 60,000+
- Vulnerability:
- Broken Access Control
- Patched in Version:
- 2.3.40
- Severity Score:
- High
- CVE:
- 2025-12955
Blog2Social: Social Media Auto Post & Scheduler
- Plugin Slug:
- blog2social
- Installations
- 50,000+
- Vulnerability:
- Broken Access Control
- Patched in Version:
- 8.7.1
- Severity Score:
- Medium
- CVE:
- 2025-13558
User Profile Builder – Beautiful User Registration Forms, User Profiles & User Role Editor
- Plugin Slug:
- profile-builder
- Installations
- 50,000+
- Vulnerability:
- Cross Site Scripting (XSS)
- Patched in Version:
- 3.14.9
- Severity Score:
- Medium
- CVE:
- 2025-13054
Pixel Manager for WooCommerce – Track Conversions and Analytics, Google Ads, TikTok and more
- Plugin:
- Pixel Manager for WooCommerce – Track Conversions and Analytics, Google Ads, TikTok and more
- Plugin Slug:
- woocommerce-google-adwords-conversion-tracking-tag
- Installations
- 50,000+
- Vulnerability:
- Sensitive Data Exposure
- Patched in Version:
- 1.49.3
- Severity Score:
- Medium
- CVE:
- 2025-12545
WP Duplicate Page
- Plugin:
- WP Duplicate Page
- Plugin Slug:
- wp-duplicate-page
- Installations
- 50,000+
- Vulnerability:
- Broken Access Control
- Patched in Version:
- 1.8
- Severity Score:
- Medium
- CVE:
- 2025-12481
OneClick Chat to Order
- Plugin:
- OneClick Chat to Order
- Plugin Slug:
- oneclick-whatsapp-order
- Installations
- 40,000+
- Vulnerability:
- Sensitive Data Exposure
- Patched in Version:
- 1.0.9
- Severity Score:
- High
- CVE:
- 2025-13526
RTMKit
Giveaways and Contests by RafflePress – Get More Website Traffic, Email Subscribers, and Social Followers
- Plugin Slug:
- rafflepress
- Installations
- 30,000+
- Vulnerability:
- Cross Site Request Forgery (CSRF)
- Patched in Version:
- 1.12.21
- Severity Score:
- Medium
- CVE:
- 2025-66064
Giveaways and Contests by RafflePress – Get More Website Traffic, Email Subscribers, and Social Followers
- Plugin Slug:
- rafflepress
- Installations
- 30,000+
- Vulnerability:
- Cross Site Scripting (XSS)
- Patched in Version:
- 1.12.21
- Severity Score:
- High
- CVE:
- 2025-12484
Custom Order Numbers for WooCommerce
- Plugin Slug:
- custom-order-numbers-for-woocommerce
- Installations
- 20,000+
- Vulnerability:
- Broken Access Control
- Patched in Version:
- 1.11.1
- Severity Score:
- Medium
- CVE:
- 2025-66071
Directorist: AI-Powered Business Directory Plugin with Classified Ads Listings
- Plugin Slug:
- directorist
- Installations
- 20,000+
- Vulnerability:
- Broken Access Control
- Patched in Version:
- 8.5.3
- Severity Score:
- Medium
- CVE:
- 2025-12174
New User Approve
- Plugin:
- New User Approve
- Plugin Slug:
- new-user-approve
- Installations
- 20,000+
- Vulnerability:
- Sensitive Data Exposure
- Patched in Version:
- 3.1.0
- Severity Score:
- Medium
- CVE:
- 2025-12770
Quiz Maker
- Plugin:
- Quiz Maker
- Plugin Slug:
- quiz-maker
- Installations
- 20,000+
- Vulnerability:
- Sensitive Data Exposure
- Patched in Version:
- 6.7.0.81
- Severity Score:
- Medium
- CVE:
- 2025-12426
PPOM – Product Addons & Custom Fields for WooCommerce
- Plugin Slug:
- woocommerce-product-addon
- Installations
- 20,000+
- Vulnerability:
- Broken Access Control
- Patched in Version:
- 33.0.17
- Severity Score:
- Medium
- CVE:
- 2025-66069
WP Import – Ultimate CSV XML Importer for WordPress
- Plugin Slug:
- wp-ultimate-csv-importer
- Installations
- 20,000+
- Vulnerability:
- PHP Object Injection
- Patched in Version:
- 7.34
- Severity Score:
- High
- CVE:
- 2025-13145
Classified Listing – AI-Powered Classified ads & Business Directory Plugin
- Plugin Slug:
- classified-listing
- Installations
- 10,000+
- Vulnerability:
- Content Spoofing
- Patched in Version:
- 5.0.4
- Severity Score:
- Medium
- CVE:
- 2025-7711
Legal Pages – Privacy Policy, Terms & Conditions, GDPR, CCPA, and Cookie Notice Generator
- Plugin Slug:
- legal-pages
- Installations
- 10,000+
- Vulnerability:
- Broken Access Control
- Patched in Version:
- 1.4.7
- Severity Score:
- Medium
- CVE:
- 2025-66077
Photonic Gallery & Lightbox for Flickr, SmugMug & Others
- Plugin Slug:
- photonic
- Installations
- 10,000+
- Vulnerability:
- Cross Site Scripting (XSS)
- Patched in Version:
- 3.22
- Severity Score:
- Medium
- CVE:
- 2025-12691
UiPress lite | Effortless custom dashboards, admin themes and pages
- Plugin Slug:
- uipress-lite
- Installations
- 10,000+
- Vulnerability:
- Broken Access Control
- Patched in Version:
- 3.5.09
- Severity Score:
- Medium
- CVE:
- 2025-11815
Checkout Files Upload for WooCommerce
- Plugin Slug:
- checkout-files-upload-woocommerce
- Installations
- 7,000+
- Vulnerability:
- Cross Site Scripting (XSS)
- Patched in Version:
- 2.2.2
- Severity Score:
- High
- CVE:
- 2025-4212
Portfolio, Gallery, Product Catalog – Grid KIT Portfolio
- Plugin Slug:
- portfolio-wp
- Installations
- 7,000+
- Vulnerability:
- Cross Site Scripting (XSS)
- Patched in Version:
- 2.2.2
- Severity Score:
- Medium
- CVE:
- 2025-5092
Icon List Block – Add Icon-Based Lists with Custom Styles
- Plugin Slug:
- icon-list-block
- Installations
- 5,000+
- Vulnerability:
- Server Side Request Forgery (SSRF)
- Patched in Version:
- 1.2.2
- Severity Score:
- Medium
- CVE:
- 2025-12376
Import WP – Export and Import CSV and XML files to WordPress
- Plugin Slug:
- jc-importer
- Installations
- 5,000+
- Vulnerability:
- Sensitive Data Exposure
- Patched in Version:
- 2.14.18
- Severity Score:
- Medium
- CVE:
- 2025-12894
Return Refund and Exchange For WooCommerce
- Plugin Slug:
- woo-refund-and-exchange-lite
- Installations
- 5,000+
- Vulnerability:
- Insecure Direct Object References (IDOR)
- Patched in Version:
- 4.5.6
- Severity Score:
- Medium
- CVE:
- 2025-12881
Team Members Showcase
- Plugin:
- Team Members Showcase
- Plugin Slug:
- wps-team
- Installations
- 4,000+
- Vulnerability:
- Cross Site Scripting (XSS)
- Patched in Version:
- 3.5.0
- Severity Score:
- High
- CVE:
- 2025-11560
Magical Products Display – Elementor WooCommerce Widgets | Product Sliders, Grids & AJAX Search
- Plugin:
- Magical Products Display – Elementor WooCommerce Widgets | Product Sliders, Grids & AJAX Search
- Plugin Slug:
- magical-products-display
- Installations
- 3,000+
- Vulnerability:
- Cross Site Scripting (XSS)
- Patched in Version:
- 1.1.30
- Severity Score:
- Medium
- CVE:
- 2025-12964
Property Hive
- Plugin:
- Property Hive
- Plugin Slug:
- propertyhive
- Installations
- 3,000+
- Vulnerability:
- Broken Access Control
- Patched in Version:
- 2.1.13
- Severity Score:
- Medium
- CVE:
- 2025-66087
WP Directory Kit
- Plugin:
- WP Directory Kit
- Plugin Slug:
- wpdirectorykit
- Installations
- 3,000+
- Vulnerability:
- SQL Injection
- Patched in Version:
- 1.4.4
- Severity Score:
- Critical
- CVE:
- 2025-13138
Accordion Slider
- Plugin:
- Accordion Slider
- Plugin Slug:
- accordion-slider
- Installations
- 2,000+
- Vulnerability:
- Cross Site Scripting (XSS)
- Patched in Version:
- 1.9.14
- Severity Score:
- Medium
- CVE:
- 2025-66092
Extensions for Leaflet Map
- Plugin:
- Extensions for Leaflet Map
- Plugin Slug:
- extensions-leaflet-map
- Installations
- 2,000+
- Vulnerability:
- Cross Site Scripting (XSS)
- Patched in Version:
- 4.9
- Severity Score:
- Medium
- CVE:
- 2025-66093
Groundhogg — CRM, Newsletters, and Marketing Automation
- Plugin Slug:
- groundhogg
- Installations
- 2,000+
- Vulnerability:
- SQL Injection
- Patched in Version:
- 4.2.7
- Severity Score:
- High
- CVE:
- 2025-12750
Groundhogg — CRM, Newsletters, and Marketing Automation
- Plugin Slug:
- groundhogg
- Installations
- 2,000+
- Vulnerability:
- Cross Site Scripting (XSS)
- Patched in Version:
- 4.2.6.1
- Severity Score:
- Medium
- CVE:
- 2025-64367
Vitepos – Point of Sale (POS) for WooCommerce
- Plugin Slug:
- vitepos-lite
- Installations
- 2,000+
- Vulnerability:
- Arbitrary File Upload
- Patched in Version:
- 3.3.1
- Severity Score:
- Critical
- CVE:
- 2025-13156
Appointment Booking Calendar
- Plugin:
- Appointment Booking Calendar
- Plugin Slug:
- appointment-booking-calendar
- Installations
- 1,000+
- Vulnerability:
- Broken Access Control
- Patched in Version:
- 1.3.97
- Severity Score:
- Medium
- CVE:
- 2025-13317
wModes – Catalog Mode, Product Pricing, Enquiry Forms & Promotions | for WooCommerce
- Plugin Slug:
- catalog-mode-pricing-enquiry-forms-promotions
- Installations
- 1,000+
- Vulnerability:
- Broken Access Control
- Patched in Version:
- 1.3
- Severity Score:
- Medium
- CVE:
- 2025-12639
CBX Bookmark & Favorite
- Plugin:
- CBX Bookmark & Favorite
- Plugin Slug:
- cbxwpbookmark
- Installations
- 1,000+
- Vulnerability:
- Broken Access Control
- Patched in Version:
- 2.0.2
- Severity Score:
- Medium
- CVE:
- 2025-66101
CP Contact Form with PayPal
- Plugin:
- CP Contact Form with PayPal
- Plugin Slug:
- cp-contact-form-with-paypal
- Installations
- 1,000+
- Vulnerability:
- Broken Access Control
- Patched in Version:
- 1.3.57
- Severity Score:
- High
- CVE:
- 2025-13384
GSheetConnector For Ninja Forms
- Plugin:
- GSheetConnector For Ninja Forms
- Plugin Slug:
- gsheetconnector-ninja-forms
- Installations
- 1,000+
- Vulnerability:
- Broken Access Control
- Patched in Version:
- 2.0.2
- Severity Score:
- Medium
- CVE:
- 2025-13136
Tainacan
- Plugin:
- Tainacan
- Plugin Slug:
- tainacan
- Installations
- 1,000+
- Vulnerability:
- Sensitive Data Exposure
- Patched in Version:
- 1.0.1
- Severity Score:
- Medium
- CVE:
- 2025-12747
Tainacan
- Plugin:
- Tainacan
- Plugin Slug:
- tainacan
- Installations
- 1,000+
- Vulnerability:
- Cross Site Scripting (XSS)
- Patched in Version:
- 1.0.1
- Severity Score:
- High
- CVE:
- 2025-12746
TP WooCommerce Product Gallery
- Plugin:
- TP WooCommerce Product Gallery
- Plugin Slug:
- tp-woocommerce-product-gallery
- Installations
- 1,000+
- Vulnerability:
- Cross Site Scripting (XSS)
- Patched in Version:
- 2.0.0
- Severity Score:
- Medium
- CVE:
- 2025-5092
Better Chat Support for Messenger
- Plugin Slug:
- better-chat-support
- Installations
- 800+
- Vulnerability:
- Broken Access Control
- Patched in Version:
- 1.2.19
- Severity Score:
- Medium
- CVE:
- 2025-66113
Booking Calendar Contact Form
- Plugin:
- Booking Calendar Contact Form
- Plugin Slug:
- booking-calendar-contact-form
- Installations
- 600+
- Vulnerability:
- Broken Access Control
- Patched in Version:
- 1.2.61
- Severity Score:
- Medium
- CVE:
- 2025-13318
Show Variations as Single Products Woocommerce
- Plugin Slug:
- woo-show-single-variations-shop-category
- Installations
- 500+
- Vulnerability:
- Broken Access Control
- Patched in Version:
- 3.0
- Severity Score:
- Medium
- CVE:
- 2025-66114
Checkbox
- Plugin:
- Checkbox
- Plugin Slug:
- checkbox
- Installations
- 400+
- Vulnerability:
- Broken Access Control
- Patched in Version:
- 2.8.11
- Severity Score:
- Medium
- CVE:
- 2025-12170
ELEX WordPress HelpDesk & Customer Ticketing System
- Plugin Slug:
- elex-helpdesk-customer-support-ticket-system
- Installations
- 300+
- Vulnerability:
- Broken Access Control
- Patched in Version:
- 3.3.2
- Severity Score:
- Medium
- CVE:
- 2025-10054
ELEX WordPress HelpDesk & Customer Ticketing System
- Plugin Slug:
- elex-helpdesk-customer-support-ticket-system
- Installations
- 300+
- Vulnerability:
- Insecure Direct Object References (IDOR)
- Patched in Version:
- 3.3.0
- Severity Score:
- Medium
- CVE:
- 2025-10039
ELEX WordPress HelpDesk & Customer Ticketing System
- Plugin Slug:
- elex-helpdesk-customer-support-ticket-system
- Installations
- 300+
- Vulnerability:
- Arbitrary File Upload
- Patched in Version:
- 3.3.2
- Severity Score:
- Critical
- CVE:
- 2025-11456
ELEX WordPress HelpDesk & Customer Ticketing System
- Plugin Slug:
- elex-helpdesk-customer-support-ticket-system
- Installations
- 300+
- Vulnerability:
- Broken Access Control
- Patched in Version:
- 3.3.1
- Severity Score:
- Medium
- CVE:
- 2025-12169
Simple User Registration
- Plugin:
- Simple User Registration
- Plugin Slug:
- wp-registration
- Installations
- 300+
- Vulnerability:
- Cross Site Scripting (XSS)
- Patched in Version:
- 6.7
- Severity Score:
- High
- CVE:
- 2025-12160
WP Delete Post Copies
- Plugin:
- WP Delete Post Copies
- Plugin Slug:
- etruel-del-post-copies
- Installations
- 200+
- Vulnerability:
- Cross Site Scripting (XSS)
- Patched in Version:
- 6.0.3
- Severity Score:
- Medium
- CVE:
- 2025-12066
WP Login and Register using JWT
- Plugin:
- WP Login and Register using JWT
- Plugin Slug:
- login-register-using-jwt
- Installations
- 200+
- Vulnerability:
- Broken Access Control
- Patched in Version:
- 3.1.0
- Severity Score:
- Medium
- CVE:
- 2025-12822
Time Slot – Booking and Appointment Scheduling
- Plugin Slug:
- timeslot
- Installations
- 200+
- Vulnerability:
- Broken Access Control
- Patched in Version:
- 1.4.8
- Severity Score:
- Medium
- CVE:
- 2025-12842
EchBay Admin Security
- Plugin:
- EchBay Admin Security
- Plugin Slug:
- echbay-admin-security
- Installations
- 100+
- Vulnerability:
- Cross Site Scripting (XSS)
- Patched in Version:
- 1.3.1
- Severity Score:
- High
- CVE:
- 2025-11885
WP Dropzone
- Plugin:
- WP Dropzone
- Plugin Slug:
- wp-dropzone
- Installations
- 100+
- Vulnerability:
- Arbitrary File Upload
- Patched in Version:
- 1.1.1
- Severity Score:
- Critical
- CVE:
- 2025-12775
S2B AI Assistant – ChatBot, ChatGPT, OpenAI, Content & Image Generator
- Plugin Slug:
- s2b-ai-assistant
- Installations
- 70+
- Vulnerability:
- Arbitrary File Upload
- Patched in Version:
- 1.7.9
- Severity Score:
- Critical
- CVE:
- 2025-12973
Affiliate AI Lite
- Plugin:
- Affiliate AI Lite
- Plugin Slug:
- affiliate-ai-lite
- Installations
- 40+
- Vulnerability:
- Cross Site Scripting (XSS)
- Patched in Version:
- 1.0.2
- Severity Score:
- Medium
- CVE:
- 2025-11799
WSChat – WordPress Live Chat
- Plugin:
- WSChat – WordPress Live Chat
- Plugin Slug:
- wschat-live-chat
- Installations
- 40+
- Vulnerability:
- Broken Access Control
- Patched in Version:
- 3.1.7
- Severity Score:
- Medium
- CVE:
- 2025-12751
Community Events
- Plugin:
- Community Events
- Plugin Slug:
- community-events
- Installations
- 30+
- Vulnerability:
- SQL Injection
- Patched in Version:
- 1.5.5
- Severity Score:
- Critical
- CVE:
- 2025-12646
Pet-Manager – Petfinder
- Plugin:
- Pet-Manager – Petfinder
- Plugin Slug:
- tier-management-petfinder
- Installations
- 20+
- Vulnerability:
- Cross Site Scripting (XSS)
- Patched in Version:
- 3.6.2
- Severity Score:
- Medium
- CVE:
- 2025-12710
WPBookit
- Plugin:
- WPBookit
- Plugin Slug:
- wpbookit
- Installations
- 20+
- Vulnerability:
- Cross Site Scripting (XSS)
- Patched in Version:
- 1.0.7
- Severity Score:
- High
- CVE:
- 2025-12135
atec Duplicate Page & Post
- Plugin:
- atec Duplicate Page & Post
- Plugin Slug:
- atec-duplicate-page-post
- Vulnerability:
- Broken Access Control
- Patched in Version:
- 1.2.21
- Severity Score:
- Medium
- CVE:
- 2025-13404
Gravity Forms
- Plugin:
- Gravity Forms
- Plugin Slug:
- gravityforms
- Vulnerability:
- Arbitrary File Upload
- Patched in Version:
- 2.9.22
- Severity Score:
- Critical
- CVE:
- 2025-12974
Zegen Core
- Plugin:
- Zegen Core
- Plugin Slug:
- zegen-core
- Vulnerability:
- Cross Site Request Forgery (CSRF)
- Patched in Version:
- 2.0.2
- Severity Score:
- Critical
- CVE:
- 2025-11087
WordPress Themes — 0 Patched / 1 Unpatched
OnePress
Solid Security is part of Solid Suite — The best foundation for WordPress websites.
Every WordPress site needs security, backups, and management tools. That’s Solid Suite — an integrated bundle of three plugins: Solid Security, Solid Backups, and Solid Central. You also get access to Solid Academy’s learning resources for WordPress professionals. Build your next WordPress website on a solid foundation with Solid Suite!
Sign up now — Get SolidWP updates and valuable content straight to your inbox
Sign up
Get started with confidence — risk free, guaranteed
