Known Vulnerabilities for Custom Meta by Louis Jimenez
Listed below are 1 of the newest known vulnerabilities associated with "Custom Meta" by "Louis Jimenez".
These CVEs are retrieved based on exact matches on listed software, hardware, and vendor information (CPE data) as well as a keyword search to ensure the newest vulnerabilities with no officially listed software information are still displayed.
Data on known vulnerable versions is also displayed based on information from known CPEs
Known Vulnerabilities
| CVE | Shortened Description | Severity | Publish Date | Last Modified |
|---|---|---|---|---|
| CVE-2026-39468 json | Contributor Arbitrary File Deletion in Meta Box – WordPress Custom Fields Framework <= 5.11.1 versions. | Not Provided | 2026-06-15 | 2026-06-15 |
| CVE-2026-15647 json | The Brands for WooCommerce plugin for WordPress is vulnerable to Stored Cross-Site Scripting via 'br_brand_tooltip' Term Meta... | Not Provided | 2026-07-23 | 2026-07-23 |
| CVE-2026-12525 json | The Redux Framework WordPress plugin before 4.5.13 does not restrict which user meta keys can be written when saving custom p... | Not Provided | 2026-07-16 | 2026-07-16 |
| CVE-2026-10749 json | The Post Duplicator WordPress plugin before 3.0.15 does not safely handle custom meta-data during post duplication, storing a... | Not Provided | 2026-06-24 | 2026-06-24 |
| CVE-2026-10089 json | The Insert Pages plugin for WordPress is vulnerable to Stored Cross-Site Scripting via post custom field keys (meta key names... | Not Provided | 2026-07-02 | 2026-07-02 |
| CVE-2026-9701 json | The Eventer plugin for WordPress is vulnerable to an insecure password reset mechanism in all versions up to, and including, ... | Not Provided | 2026-07-08 | 2026-07-08 |
| CVE-2026-7654 json | The Admin Columns plugin for WordPress is vulnerable to PHP Object Injection leading to Remote Code Execution in versions up ... | Not Provided | 2026-06-05 | 2026-06-06 |
| CVE-2026-7475 json | The Sky Addons plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the `sky-custom-scripts` custom post typ... | Not Provided | 2026-05-08 | 2026-05-08 |
| CVE-2026-5821 json | The Image Optimizer plugin for WordPress is vulnerable to arbitrary file deletion in versions up to and including 1.7.4. This... | Not Provided | 2026-07-02 | 2026-07-02 |
| CVE-2026-5076 json | The ARMember Premium plugin for WordPress is vulnerable to an insecure password reset mechanism in all versions up to, and in... | Not Provided | 2026-06-02 | 2026-06-02 |
Known Affected Configurations (CPE V2.3)
| Type | Vendor | Product | Version | Update | Edition | Language |
|---|---|---|---|---|---|---|
| Application | Louis Jimenez | Custom Meta | 7.x-1.3 | |||
| Application | Louis Jimenez | Custom Meta | 7.x-1.2 | |||
| Application | Louis Jimenez | Custom Meta | 7.x-1.1 | |||
| Application | Louis Jimenez | Custom Meta | 7.x-1.0 | |||
| Application | Louis Jimenez | Custom Meta | 6.x-1.2 | |||
| Application | Louis Jimenez | Custom Meta | 6.x-1.1 | |||
| Application | Louis Jimenez | Custom Meta | 6.x-1.0 |