Skip to content

Every change, newest first

What a record said when it was published, what it says now, and the commit that changed it.

783 record changes · 3 advisory changes · newest first · grouped by dayCSVJSONRSS

SinceClear all

Showing changes seen on 2026-04-08. Every day

Counted changes changed on 2026-04-08, newest first, one line per change to a CVE record or a GHSA advisory, or per run of identical changes collapsed into one line.
Changed on, The day the change first became visible in the catalog's public history. Not the day the record was amended, which is earlier by an unknown margin.KindRecord or advisory, Which record was edited: a CVE id where the change was to the CVE catalog or the CISA KEV list, a GHSA id where it was to a GitHub advisory. The two are different units and are never counted together.Vendor or package, The vendor and product a CVE record names, with the organisation that publishes the record under them; or the package an advisory names and its registry.What changedDays to revision, The earlier stated value's interval. For a version boundary, it ends at the first replacement of that value; the reported current value may appear later. Starting points differ by kind: record publication, advisory publication, or the observed introduction of a KEV field value. Intervals are not directly comparable across kinds. Missing dates mean unknown, never zero. This does not date when a value became wrong.
Wed 8 Apr 2026· 162 record changes
2026-04-082 commitsProduct addedWordfencenot named as affected at publication, now names optimole – optimize images in real timeBranches and original-value intervals are stated on each row.Days to revision 694 to 797
2026-04-08same kind of change as the line aboveCVE-2024-4636same vendor as the line abovesame change as the line aboveDays to revision 694
2026-04-08same kind of change as the line aboveCVE-2024-1047same vendor as the line abovesame change as the line aboveDays to revision 797
2026-04-082 commitsProduct addedWordfencenot named as affected at publication, now names ajax load more – infinite scroll, load more, & lazy loadBranches and original-value intervals are stated on each row.Days to revision 553 to 729
2026-04-08same kind of change as the line aboveCVE-2024-4711same vendor as the line abovesame change as the line aboveDays to revision 677
2026-04-08same kind of change as the line aboveCVE-2024-8505same vendor as the line abovesame change as the line aboveDays to revision 553
2026-04-08same kind of change as the line aboveCVE-2024-1790same vendor as the line abovesame change as the line aboveDays to revision 729
2026-04-08Product addedWordfencenot named as affected at publication, now names nexter blocks – gutenberg blocks, page builder & ai website builderDays to revision 232 to 490
2026-04-08same kind of change as the line aboveCVE-2024-5020same vendor as the line abovesame change as the line aboveDays to revision 490
2026-04-08same kind of change as the line aboveCVE-2025-8567same vendor as the line abovesame change as the line aboveDays to revision 232
2026-04-08Product addedCVE-2024-5162Wordfencenot named as affected at publication, now names prettyphoto – simple lightbox pluginDays to revision 672
2026-04-08Product addedCVE-2024-5425Wordfencenot named as affected at publication, now names lightpress lightboxDays to revision 671
2026-04-08Product addedCVE-2024-5485Wordfencenot named as affected at publication, now names ottokit: all-in-one automation platformDays to revision 674
2026-04-08Product addedCVE-2024-5654Wordfencenot named as affected at publication, now names gsheetconnector for cf7 – connect contact form 7 to google sheets and send form submissions in real timeDays to revision 669
2026-04-082 commitsProduct addedWordfencenot named as affected at publication, now names happy woocommerce faqs – ultimate product faq pluginBranches and original-value intervals are stated on each row.Days to revision 638
2026-04-08same kind of change as the line aboveCVE-2024-5669same vendor as the line abovesame change as the line aboveDays to revision 638
2026-04-08same kind of change as the line aboveCVE-2024-5704same vendor as the line abovesame change as the line aboveDays to revision 638
2026-04-083 commitsProduct addedWordfencenot named as affected at publication, now names tickera – sell tickets & manage eventsBranches and original-value intervals are stated on each row.Days to revision 481 to 660
2026-04-08same kind of change as the line aboveCVE-2024-5860same vendor as the line abovesame change as the line aboveDays to revision 660
2026-04-08same kind of change as the line aboveCVE-2024-10263same vendor as the line abovesame change as the line aboveDays to revision 519
2026-04-08same kind of change as the line aboveCVE-2024-12578same vendor as the line abovesame change as the line aboveDays to revision 481
2026-04-08Product addedCVE-2024-6590Wordfencenot named as affected at publication, now names wpgsi: spreadsheet integrationDays to revision 561
2026-04-08Product addedCVE-2024-8757Wordfencenot named as affected at publication, now names wp post author – author box, multiple authors, guest authors & custom avatarsDays to revision 543
2026-04-082 commitsProduct addedWordfencenot named as affected at publication, now names stars testimonials — responsive reviews & star ratingsBranches and original-value intervals are stated on each row.Days to revision 490 to 554
2026-04-08same kind of change as the line aboveCVE-2024-8989same vendor as the line abovesame change as the line aboveDays to revision 554
2026-04-08same kind of change as the line aboveCVE-2024-11429same vendor as the line abovesame change as the line aboveDays to revision 490
2026-04-082 commitsProduct addedWordfencenot named as affected at publication, now names eu/uk vat validation manager for woocommerceBranches and original-value intervals are stated on each row.Days to revision 558
2026-04-08same kind of change as the line aboveCVE-2024-9189same vendor as the line abovesame change as the line aboveDays to revision 558
2026-04-08same kind of change as the line aboveCVE-2024-8788same vendor as the line abovesame change as the line aboveDays to revision 558
2026-04-08Product addedCVE-2024-9384Wordfencenot named as affected at publication, now names price by quantity & bulk quantity discounts for woocommerceDays to revision 552
2026-04-08Product addedCVE-2024-9609Wordfencenot named as affected at publication, now names learnpress – backup & migration toolDays to revision 510
2026-04-082 commitsProduct addedWordfencenot named as affected at publication, now names authpressBranches and original-value intervals are stated on each row.Days to revision 541
2026-04-08same kind of change as the line aboveCVE-2024-9820same vendor as the line abovesame change as the line aboveDays to revision 541
2026-04-08same kind of change as the line aboveCVE-2024-9687same vendor as the line abovesame change as the line aboveDays to revision 541
2026-04-08Product addedCVE-2024-9896Wordfencenot named as affected at publication, now names forumax – ai powered advanced community forum pluginDays to revision 522
2026-04-082 commitsProduct addedWordfencenot named as affected at publication, now names chat widget: floating customer support button for 30+ channels, supporting sms, calls, and chat – bit assistBranches and original-value intervals are stated on each row.Days to revision 417 to 418
2026-04-08same kind of change as the line aboveCVE-2025-0821same vendor as the line abovesame change as the line aboveDays to revision 418
2026-04-08same kind of change as the line aboveCVE-2025-0822same vendor as the line abovesame change as the line aboveDays to revision 417
2026-04-08same kind of change as the line aboveCVE-2024-13791same vendor as the line abovesame change as the line aboveDays to revision 418
2026-04-08Product addedCVE-2025-10289Wordfencenot named as affected at publication, now names ymc filterDays to revision 117
2026-04-08Product addedCVE-2025-11999Wordfencenot named as affected at publication, now names multi location markerDays to revision 149
2026-04-08Product addedCVE-2025-12189Wordfencenot named as affected at publication, now names bread & butter: ai-powered lead intelligenceDays to revision 125
2026-04-08Product addedCVE-2025-13314Wordfencenot named as affected at publication, now names filter plus – product filter & wordpress filterDays to revision 118
2026-04-08Product addedCVE-2025-14446Wordfencenot named as affected at publication, now names easy notify liteDays to revision 117
2026-04-08Product addedCVE-2025-14846Wordfencenot named as affected at publication, now names auto post to social media from social champDays to revision 85
2026-04-083 commitsProduct addedWordfencenot named as affected at publication, now names ultimate blocks – 25+ gutenberg blocks for block editorBranches and original-value intervals are stated on each row.Days to revision 302 to 659
2026-04-08same kind of change as the line aboveCVE-2025-1312same vendor as the line abovesame change as the line aboveDays to revision 378
2026-04-08same kind of change as the line aboveCVE-2025-1703same vendor as the line abovesame change as the line aboveDays to revision 378
2026-04-08same kind of change as the line aboveCVE-2023-6692same vendor as the line abovesame change as the line aboveDays to revision 659
2026-04-08same kind of change as the line aboveCVE-2024-3513same vendor as the line abovesame change as the line aboveDays to revision 645
2026-04-08same kind of change as the line aboveCVE-2025-2918same vendor as the line abovesame change as the line aboveDays to revision 302
2026-04-08same kind of change as the line aboveCVE-2024-4268same vendor as the line abovesame change as the line aboveDays to revision 645
2026-04-08Product addedCVE-2025-1450Wordfencenot named as affected at publication, now names floating chat widget: contact chat icons, telegram chat, line messenger, wechat, email, sms, call button – chatyDays to revision 405
2026-04-08Product addedCVE-2025-1717Wordfencenot named as affected at publication, now names login me now – passwordless, magic link, otp & social login for wordpressDays to revision 406
2026-04-083 commitsProduct addedWordfencenot named as affected at publication, now names eventin – event calendar, event registration, tickets & booking (ai powered)Branches and original-value intervals are stated on each row.Days to revision 336 to 790
2026-04-08same kind of change as the line aboveCVE-2025-1766same vendor as the line abovesame change as the line aboveDays to revision 385
2026-04-08same kind of change as the line aboveCVE-2024-7149same vendor as the line abovesame change as the line aboveDays to revision 558
2026-04-08same kind of change as the line aboveCVE-2025-1770same vendor as the line abovesame change as the line aboveDays to revision 385
2026-04-08same kind of change as the line aboveCVE-2024-1122same vendor as the line abovesame change as the line aboveDays to revision 790
2026-04-08same kind of change as the line aboveCVE-2024-6033same vendor as the line abovesame change as the line aboveDays to revision 630
2026-04-08same kind of change as the line aboveCVE-2025-3419same vendor as the line abovesame change as the line aboveDays to revision 336
2026-04-08Product addedCVE-2025-2168Wordfencenot named as affected at publication, now names ultimate store kit – addon for woocommerce, edd and elementorDays to revision 343
2026-04-082 commitsProduct addedWordfencenot named as affected at publication, now names stop spammers classicBranches and original-value intervals are stated on each row.Days to revision 307 to 704
2026-04-08same kind of change as the line aboveCVE-2025-2935same vendor as the line abovesame change as the line aboveDays to revision 307
2026-04-08same kind of change as the line aboveCVE-2023-7065same vendor as the line abovesame change as the line aboveDays to revision 704
2026-04-082 commitsProduct addedWordfencenot named as affected at publication, now names login, registration and lost password blocksBranches and original-value intervals are stated on each row.Days to revision 334 to 349
2026-04-08same kind of change as the line aboveCVE-2025-3607same vendor as the line abovesame change as the line aboveDays to revision 349
2026-04-08same kind of change as the line aboveCVE-2025-3605same vendor as the line abovesame change as the line aboveDays to revision 334
2026-04-083 commitsProduct addedWordfencenot named as affected at publication, now names elementskit elementor addons – advanced widgets & templates addons for elementorBranches and original-value intervals are stated on each row.Days to revision 258 to 706
2026-04-08same kind of change as the line aboveCVE-2025-4479same vendor as the line abovesame change as the line aboveDays to revision 294
2026-04-08same kind of change as the line aboveCVE-2024-11180same vendor as the line abovesame change as the line aboveDays to revision 375
2026-04-08same kind of change as the line aboveCVE-2024-3499same vendor as the line abovesame change as the line aboveDays to revision 706
2026-04-08same kind of change as the line aboveCVE-2025-3614same vendor as the line abovesame change as the line aboveDays to revision 258
2026-04-082 commitsProduct addedWordfencenot named as affected at publication, now names malcure malware shield — removal, repair, monitorBranches and original-value intervals are stated on each row.Days to revision 264 to 267
2026-04-08same kind of change as the line aboveCVE-2025-6043same vendor as the line abovesame change as the line aboveDays to revision 267
2026-04-08same kind of change as the line aboveCVE-2025-7772same vendor as the line abovesame change as the line aboveDays to revision 264
2026-04-082 commitsProduct addedWordfencenot named as affected at publication, now names site.pro for woocommerceBranches and original-value intervals are stated on each row.Days to revision 265
2026-04-08same kind of change as the line aboveCVE-2025-6717same vendor as the line abovesame change as the line aboveDays to revision 265
2026-04-08same kind of change as the line aboveCVE-2025-6718same vendor as the line abovesame change as the line aboveDays to revision 265
2026-04-08Product addedCVE-2025-8215Wordfencenot named as affected at publication, now names responsive addons for elementor – free elementor addons, kits and elementor templatesDays to revision 210
2026-04-08Product addedCVE-2023-2833Wordfencenot named as affected at publication, now names reviewx – multi-criteria reviews for woocommerce with google reviews & schemaDays to revision 1,037
2026-04-08Product addedCVE-2023-3093Wordfencenot named as affected at publication, now names yaysmtp and email logs: amazon ses, sendgrid, outlook, mailgun, brevo, google and any smtp serviceDays to revision 1,002
2026-04-082 commitsProduct addedWordfencenot named as affected at publication, now names payment gateway of stripe for woocommerceBranches and original-value intervals are stated on each row.Days to revision 810 to 952
2026-04-08same kind of change as the line aboveCVE-2023-3162same vendor as the line abovesame change as the line aboveDays to revision 952
2026-04-08same kind of change as the line aboveCVE-2024-0705same vendor as the line abovesame change as the line aboveDays to revision 810
2026-04-08Product addedCVE-2023-4961Wordfencenot named as affected at publication, now names poptin – exit pop ups & email popupsDays to revision 901
2026-04-08Product addedCVE-2023-4968Wordfencenot named as affected at publication, now names privacy policy generator – wplp legal pagesDays to revision 902
2026-04-082 commitsProduct addedWordfencenot named as affected at publication, now names super testimonial – testimonial & customer review slider plugin for wordpressBranches and original-value intervals are stated on each row.Days to revision 414 to 902
2026-04-08same kind of change as the line aboveCVE-2023-5613same vendor as the line abovesame change as the line aboveDays to revision 902
2026-04-08same kind of change as the line aboveCVE-2024-13704same vendor as the line abovesame change as the line aboveDays to revision 414
2026-04-08Product addedCVE-2023-6325Wordfencenot named as affected at publication, now names rtmform builderDays to revision 686
2026-04-08Product addedWordfencenot named as affected at publication, now names ecommerce fabrickDays to revision 770
2026-04-08same kind of change as the line aboveCVE-2024-0431same vendor as the line abovesame change as the line aboveDays to revision 770
2026-04-08same kind of change as the line aboveCVE-2024-0432same vendor as the line abovesame change as the line aboveDays to revision 770
2026-04-08same kind of change as the line aboveCVE-2024-0433same vendor as the line abovesame change as the line aboveDays to revision 770
2026-04-08Product addedCVE-2024-0908Wordfencenot named as affected at publication, now names advanced post block – showcase posts with grid, list, card layouts and filtersDays to revision 706
2026-04-08Product addedWordfencenot named as affected at publication, now names mixed media gallery blocksDays to revision 117 to 649
2026-04-08same kind of change as the line aboveCVE-2024-10034same vendor as the line abovesame change as the line aboveDays to revision 503
2026-04-08same kind of change as the line aboveCVE-2024-5424same vendor as the line abovesame change as the line aboveDays to revision 649
2026-04-08same kind of change as the line aboveCVE-2025-14288same vendor as the line abovesame change as the line aboveDays to revision 117
2026-04-08Product addedWordfencenot named as affected at publication, now names borderless – addons and templates for elementorDays to revision 433
2026-04-08same kind of change as the line aboveCVE-2024-10867same vendor as the line abovesame change as the line aboveDays to revision 433
2026-04-08same kind of change as the line aboveCVE-2024-11600same vendor as the line abovesame change as the line aboveDays to revision 433
2026-04-08Product addedCVE-2024-11009Wordfencenot named as affected at publication, now names automatic internal links for seo by pagupDays to revision 497
2026-04-08Product addedCVE-2024-11337Wordfencenot named as affected at publication, now names divine astroDays to revision 457
2026-04-08Product addedCVE-2024-11410Wordfencenot named as affected at publication, now names yoo bar – floating notification & promo bar for websiteDays to revision 483
2026-04-08Product addedCVE-2024-11462Wordfencenot named as affected at publication, now names filestack wp uploadDays to revision 481
2026-04-08Product addedCVE-2024-11907Wordfencenot named as affected at publication, now names skyword xmlrpc publishingDays to revision 454
2026-04-08Product addedCVE-2024-12419Wordfencenot named as affected at publication, now names wow styler for cf7 – visual styler for contact form 7 formsDays to revision 457
2026-04-08Product addedWordfencenot named as affected at publication, now names opace ai scribe: seo content creator & humaizer for openai & anthropicDays to revision 454
2026-04-08same kind of change as the line aboveCVE-2024-12473same vendor as the line abovesame change as the line aboveDays to revision 454
2026-04-08same kind of change as the line aboveCVE-2024-12605same vendor as the line abovesame change as the line aboveDays to revision 454
2026-04-08same kind of change as the line aboveCVE-2024-12606same vendor as the line abovesame change as the line aboveDays to revision 454
2026-04-08Product addedCVE-2024-12504Wordfencenot named as affected at publication, now names broadcast live video – live streaming : webrtc, hls, rtsp, rtmpDays to revision 440
2026-04-08Product addedWordfencenot named as affected at publication, now names pinpoint booking system – version 2Days to revision 412 to 578
2026-04-08same kind of change as the line aboveCVE-2024-13235same vendor as the line abovesame change as the line aboveDays to revision 412
2026-04-08same kind of change as the line aboveCVE-2024-7112same vendor as the line abovesame change as the line aboveDays to revision 578
2026-04-08Product addedCVE-2024-13509Wordfencenot named as affected at publication, now names ws form proDays to revision 436
2026-04-08Product addedCVE-2024-13750Wordfencenot named as affected at publication, now names multilevel referral plugin for woocommerceDays to revision 404
2026-04-08Product addedCVE-2024-13818Wordfencenot named as affected at publication, now names pie register – user registration, profiles & content restrictionDays to revision 412
2026-04-08Product addedCVE-2024-1047Wordfencenot named as affected at publication, now names super page cacheDays to revision 797
2026-04-08Product addedCVE-2024-1047Wordfencenot named as affected at publication, now names revive social – social media auto post and scheduling automation pluginDays to revision 797
2026-04-08Product addedCVE-2024-1047Wordfencenot named as affected at publication, now names lightstart – maintenance mode, coming soon and landing page builder and 7 moreDays to revision 797
2026-04-08same kind of change as the line aboveCVE-2024-1047same vendor as the line abovenot named as affected at publication, now names lightstart – maintenance mode, coming soon and landing page builderDays to revision 797
2026-04-08same kind of change as the line aboveCVE-2024-1047same vendor as the line abovenot named as affected at publication, now names menu icons by themeisleDays to revision 797
2026-04-08same kind of change as the line aboveCVE-2024-1047same vendor as the line abovenot named as affected at publication, now names multiple page generator plugin – mpgDays to revision 797
2026-04-08same kind of change as the line aboveCVE-2024-1047same vendor as the line abovenot named as affected at publication, now names otter blocks – gutenberg blocks, page builder for gutenberg editor & fseDays to revision 797
2026-04-08same kind of change as the line aboveCVE-2024-1047same vendor as the line abovenot named as affected at publication, now names ppom – product addons & custom fields for woocommerceDays to revision 797
2026-04-08same kind of change as the line aboveCVE-2024-1047same vendor as the line abovenot named as affected at publication, now names rss aggregator by feedzy – feed to post, autoblogging, news & youtube video feeds aggregatorDays to revision 797
2026-04-08same kind of change as the line aboveCVE-2024-1047same vendor as the line abovenot named as affected at publication, now names starter sites & templates by neveDays to revision 797
2026-04-08same kind of change as the line aboveCVE-2024-1047same vendor as the line abovenot named as affected at publication, now names visualizer: tables and charts manager for wordpressDays to revision 797
2026-04-08Product addedWordfencenot named as affected at publication, now names wpcafe – restaurant menu, online food ordering & table booking systemDays to revision 653 to 686
2026-04-08same kind of change as the line aboveCVE-2024-1855same vendor as the line abovesame change as the line aboveDays to revision 686
2026-04-08same kind of change as the line aboveCVE-2024-5427same vendor as the line abovesame change as the line aboveDays to revision 678
2026-04-08same kind of change as the line aboveCVE-2024-5431same vendor as the line abovesame change as the line aboveDays to revision 653
2026-04-08Product addedCVE-2024-1862Wordfencenot named as affected at publication, now names add to cart custom redirect for woocommerceDays to revision 756
2026-04-08Product addedCVE-2024-1895Wordfencenot named as affected at publication, now names event monster – manager & ticket bookingDays to revision 708
2026-04-08Product addedCVE-2024-2387Wordfencenot named as affected at publication, now names afi – the easiest integration pluginDays to revision 750
2026-04-08Product addedCVE-2024-2967Wordfencenot named as affected at publication, now names guest posting / frontend posting / front editor – wp front user submitDays to revision 706
2026-04-08Product addedCVE-2024-3275Wordfencenot named as affected at publication, now names eroom – webinar & meeting plugin for zoom, google meet, microsoft teamsDays to revision 706
2026-04-08Product addedWordfencenot named as affected at publication, now names cookie banner for gdpr / ccpa – wplp cookie consentDays to revision 652 to 706
2026-04-08same kind of change as the line aboveCVE-2024-3599same vendor as the line abovesame change as the line aboveDays to revision 706
2026-04-08same kind of change as the line aboveCVE-2024-4869same vendor as the line abovesame change as the line aboveDays to revision 652
2026-04-082 commitsProduct addedWordfencenot named as affected at publication, now names livemesh addons by elementorBranches and original-value intervals are stated on each row.Days to revision 644
2026-04-08same kind of change as the line aboveCVE-2024-3638same vendor as the line abovesame change as the line aboveDays to revision 644
2026-04-08same kind of change as the line aboveCVE-2024-2385same vendor as the line abovesame change as the line aboveDays to revision 644
2026-04-08Product addedCVE-2024-4014Wordfencenot named as affected at publication, now names hcaptcha for wpDays to revision 718
2026-04-082 commitsProduct addedWordfencenot named as affected at publication, now names element pack – widgets, templates & addons for elementorBranches and original-value intervals are stated on each row.Days to revision 608 to 665
2026-04-08same kind of change as the line aboveCVE-2024-4360same vendor as the line abovesame change as the line aboveDays to revision 608
2026-04-08same kind of change as the line aboveCVE-2024-3925same vendor as the line abovesame change as the line aboveDays to revision 665
2026-04-08same kind of change as the line aboveCVE-2024-4643same vendor as the line abovesame change as the line aboveDays to revision 614
2026-04-08Product addedCVE-2024-4706Wordfencenot named as affected at publication, now names wpo365 | seamless wordpress + microsoft integration (wpo365 | login)Days to revision 685
2026-04-08Product addedCVE-2024-6123Wordfencenot named as affected at publication, now names bit form – custom contact form, multi step, conversational form & payment form builderDays to revision 638
2026-04-08Product addedCVE-2024-6571Wordfencenot named as affected at publication, now names image seo – ai-driven image seo optimizerDays to revision 624
2026-04-08Product addedCVE-2024-6872Wordfencenot named as affected at publication, now names templatespare – 1000+ wordpress starter templates & full site migration tool | 1-click import/export & no-code builderDays to revision 613
2026-04-08Product addedWordfencenot named as affected at publication, now names kb support – customer support ticket & helpdesk plugin, knowledge base pluginDays to revision 554
2026-04-08same kind of change as the line aboveCVE-2024-8548same vendor as the line abovesame change as the line aboveDays to revision 554
2026-04-08same kind of change as the line aboveCVE-2024-8632same vendor as the line abovesame change as the line aboveDays to revision 554
2026-04-08Product addedCVE-2024-8628Wordfencenot named as affected at publication, now names mailoptin – popup, optin forms & email newsletters for mailchimp, hubspot, aweber etc.Days to revision 562
2026-04-08Product addedCVE-2024-8672Wordfencenot named as affected at publication, now names widget options – advanced conditional visibility for gutenberg blocks & classic widgetsDays to revision 496
2026-04-08Product addedCVE-2024-9109Wordfencenot named as affected at publication, now names shipping live rates and access points for ups for woocommerceDays to revision 531
2026-04-08Product addedCVE-2024-9377Wordfencenot named as affected at publication, now names export products, orders & customers for woocommerceDays to revision 546
2026-04-08Product addedCVE-2024-9935Wordfencenot named as affected at publication, now names pdf generator for wordpress elementorDays to revision 509
2026-04-08Product addedCVE-2025-0350Wordfencenot named as affected at publication, now names divi carousel free (divi5 support)Days to revision 438
2026-04-08Product addedCVE-2025-11457Wordfencenot named as affected at publication, now names easycommerce – ai-powered wordpress ecommerce plugin to sell digital products, subscriptions & physical goodsDays to revision 149
2026-04-08Product addedCVE-2025-11828Wordfencenot named as affected at publication, now names post blocks & toolsDays to revision 149
2026-04-082 commitsProduct addedWordfencenot named as affected at publication, now names pixel manager for woocommerce – conversion tracking, google ads, ga4, tiktok, dynamic remarketingBranches and original-value intervals are stated on each row.Days to revision 141 to 294
2026-04-08same kind of change as the line aboveCVE-2025-12545same vendor as the line abovesame change as the line aboveDays to revision 141
2026-04-08same kind of change as the line aboveCVE-2025-6201same vendor as the line abovesame change as the line aboveDays to revision 294
2026-04-08Product addedCVE-2025-13887Wordfencenot named as affected at publication, now names ai chatbot for wordpress by ai botkit – live in 2 minutes, no codeDays to revision 91
2026-04-08Product addedWordfencenot named as affected at publication, now names wp ultimate csv importer – import csv, xml & excel into wordpressDays to revision 373
2026-04-08same kind of change as the line aboveCVE-2025-2007same vendor as the line abovesame change as the line aboveDays to revision 373
2026-04-08same kind of change as the line aboveCVE-2025-2008same vendor as the line abovesame change as the line aboveDays to revision 373
2026-04-08Product addedCVE-2025-3521Wordfencenot named as affected at publication, now names team members showcaseDays to revision 343
2026-04-08Product addedWordfencenot named as affected at publication, now names hive support | ai-powered help desk, live chat and chatbotDays to revision 307
2026-04-08same kind of change as the line aboveCVE-2025-5018same vendor as the line abovesame change as the line aboveDays to revision 307
2026-04-08same kind of change as the line aboveCVE-2025-5019same vendor as the line abovesame change as the line aboveDays to revision 307
2026-04-082 commitsProduct addedWordfencenot named as affected at publication, now names featured image plus – bulk edit featured images, unsplash & alt text managerBranches and original-value intervals are stated on each row.Days to revision 260 to 313
2026-04-08same kind of change as the line aboveCVE-2025-5818same vendor as the line abovesame change as the line aboveDays to revision 260
2026-04-08same kind of change as the line aboveCVE-2025-4431same vendor as the line abovesame change as the line aboveDays to revision 313
2026-04-08Product addedCVE-2025-6441Wordfencenot named as affected at publication, now names webinarignition – live, automated & evergreen webinars for woocommerceDays to revision 258
2026-04-08Product addedCVE-2025-7960Wordfencenot named as affected at publication, now names king addons for elementor – 80+ elementor widgets, 4 000+ elementor templates, woocommerce, mega menu, popup builderDays to revision 116
2026-04-08Product addedCVE-2025-8420Wordfencenot named as affected at publication, now names employee directory – staff directory and listingDays to revision 246
2026-04-08Product addedCVE-2025-8420Wordfencenot named as affected at publication, now names campus directory – faculty, staff & student directory plugin for wordpress and 5 moreDays to revision 246
2026-04-08same kind of change as the line aboveCVE-2025-8420same vendor as the line abovenot named as affected at publication, now names campus directory – faculty, staff & student directory plugin for wordpressDays to revision 246
2026-04-08same kind of change as the line aboveCVE-2025-8420same vendor as the line abovenot named as affected at publication, now names customer support ticket system & helpdesk plugin for wordpressDays to revision 246
2026-04-08same kind of change as the line aboveCVE-2025-8420same vendor as the line abovenot named as affected at publication, now names event rsvp and simple event management pluginDays to revision 246
2026-04-08same kind of change as the line aboveCVE-2025-8420same vendor as the line abovenot named as affected at publication, now names project management, bug and issue tracking plugin – software issue managerDays to revision 246
2026-04-08same kind of change as the line aboveCVE-2025-8420same vendor as the line abovenot named as affected at publication, now names simple contact form plugin for wordpress – wp easy contactDays to revision 246
2026-04-08same kind of change as the line aboveCVE-2025-8420same vendor as the line abovenot named as affected at publication, now names video gallery – youtube gallery & responsive video playlistDays to revision 246
2026-04-08Product addedCVE-2025-8492Wordfencenot named as affected at publication, now names salon booking system – free versionDays to revision 209
2026-04-08Product addedCVE-2023-5756Wordfencenot named as affected at publication, now names wordpress flipbook by supsysticDays to revision 851
2026-04-08Product addedCVE-2024-0699Wordfencenot named as affected at publication, now names ai engine – the chatbot, ai framework & mcp for wordpressDays to revision 793
2026-04-08Product addedCVE-2024-10669Wordfencenot named as affected at publication, now names countdown timer block – animated countdown for events or launchesDays to revision 516
2026-04-08Product addedCVE-2024-11882Wordfencenot named as affected at publication, now names awesome faq – modern accordion, tabs,responsive & super fast faq builder.Days to revision 483
2026-04-08Product addedCVE-2024-1896Wordfencenot named as affected at publication, now names photo gallery for imagesDays to revision 706

Two units, never added: changes to a CVE record or KEV entry, and changes to a GitHub advisory. Rows, not records: a moved fix version or an extended range counts once per record, product and release branch; an added product once per record and product; every other kind once per record or advisory. Days to revision is how long the value first stated stood: from the record's or advisory's publication, or from the day a KEV field value was first seen, to the first commit that replaced it. An addition to KEV has no earlier value and shows none. A collapsed line is one publisher's run of identical changes on one day; it says how many, and opens to all of them.

Data sources and quality

Not checked: A CVE record published before 2023, and a KEV listing added before 2025-01-27, were never seen changing. An absence here is not evidence that a record held.

A change shown here is a change to a public record, evidenced by a commit anyone can read in the publisher's own history. It is not an assertion of wrongdoing, negligence or bad faith by any publisher or vendor, not evidence that any fix was incomplete, and not a statement about anyone's systems.

The units, the refusals, the cut-offs and every source, in full →

Check my CVEs against these changes →