Known Vulnerabilities for Jd-wordpress by Joomla
Listed below are 1 of the newest known vulnerabilities associated with "Jd-wordpress" by "Joomla".
These CVEs are retrieved based on exact matches on listed software, hardware, and vendor information (CPE data) as well as a keyword search to ensure the newest vulnerabilities with no officially listed software information are still displayed.
Data on known vulnerable versions is also displayed based on information from known CPEs
Known Vulnerabilities
| CVE | Shortened Description | Severity | Publish Date | Last Modified |
|---|---|---|---|---|
| CVE-2026-105397 json | LearnPress plugin for WordPress through 4.4.9.1 contains a stored cross-site scripting vulnerability that allows authenticate... | Not Provided | 2026-10-05 | 2026-10-05 |
| CVE-2026-104313 json | The WPC Estimated Delivery Date for WooCommerce plugin for WordPress is vulnerable to Reflected Cross-Site Scripting via the ... | Not Provided | 2026-10-03 | 2026-10-03 |
| CVE-2026-104119 json | The Simple Shopping Cart WordPress plugin before 5.2.6 does not escape some of its settings field values before outputting th... | Not Provided | 2026-10-04 | 2026-10-05 |
| CVE-2026-104118 json | The Razorpay for WooCommerce WordPress plugin before 4.8.8 does not perform ownership or authorization checks on a REST API r... | Not Provided | 2026-10-04 | 2026-10-05 |
| CVE-2026-103913 json | The GeoDirectory plugin for WordPress is vulnerable to SQL Injection via the stored latitude/longitude coordinates of a listi... | Not Provided | 2026-10-03 | 2026-10-03 |
| CVE-2026-103909 json | The Calculated Fields Form – AI Form Builder for WordPress – Contact, Payment, Quote, Quiz & More plugin for WordPress is... | Not Provided | 2026-10-03 | 2026-10-03 |
| CVE-2026-103888 json | The WPC Smart Quick View for WooCommerce plugin for WordPress is vulnerable to Reflected Cross-Site Scripting via the 'woosq-... | Not Provided | 2026-10-03 | 2026-10-03 |
| CVE-2026-103519 json | The The WP Ultimate Review plugin for WordPress is vulnerable to arbitrary shortcode execution in all versions up to, and inc... | Not Provided | 2026-10-03 | 2026-10-03 |
| CVE-2026-103514 json | The WP 2FA WordPress plugin before 4.1.0 does not invalidate a time-based one-time passcode once it has been used, allowing ... | Not Provided | 2026-10-03 | 2026-10-03 |
| CVE-2026-103426 json | The Relevanssi Premium plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the '_rt' parameter in all versi... | Not Provided | 2026-10-02 | 2026-10-02 |