Forumwp
This hub aggregates every CVE we track for Forumwp, a product in the web cms plugins space. Use it to gauge the current risk picture and drill into individual advisories.
5
CVEs tracked
1
Critical
1
High
0
In CISA KEV
Severity distribution
MEDIUM3HIGH1CRITICAL1
Monthly trend
0
0
3
0
0
0
0
0
0
0
0
0
0
0
1
0
0
0
0
0
0
0
0
0
2024-102026-09
Latest CVEs
The 5 most recently published vulnerabilities affecting Forumwp.
- CVE-2025-67474WordPress ForumWP plugin <= 2.1.4 - Broken Access Control vulnerability4.3
- CVE-2024-54367WordPress ForumWP plugin <= 2.1.0 - PHP Object Injection vulnerability9.8
- CVE-2024-11204ForumWP – Forum & Discussion Board <= 2.1.2 - Reflected Cross-Site Scripting via url Parameter6.1
- CVE-2024-10879ForumWP – Forum & Discussion Board <= 2.1.2 - Reflected Cross-Site Scripting6.1
- CVE-2024-8428ForumWP – Forum & Discussion Board Plugin <= 2.0.2 - Insecure Direct Object Reference to Authenticated (Subscriber+) Privilege Escalation via Account Takeover8.8
Product normalization is registry-driven with AI assist and human review. How it works