Cubewp Framework

WordPress plugin · cubewp-framework · WordPress.org ↗
0
Critical
1
High
2
Known total
1
Unfixed
Running Cubewp Framework on your site? WP Alerts checks your installed version against every entry below and emails you only when one affects you. Free, no tracking.
Scan a site Monitor my sites →
SeverityVulnerabilityAffectedFixed inCVEPublished
HIGH
CVSS 8.1
CubeWP Framework < 1.1.31 - Subscriber+ SQL Injection via cubewp_remove_relation
CVE.org
>=0, <1.1.31 v1.1.31 CVE-2026-17017 Aug 9, 2026
MEDIUM
CVSS 4.9
CubeWP Framework <= 1.1.30 - Contributor+ Arbitrary Post and User Meta Disclosure via IDOR
CVE.org
<=1.1.30 unfixed CVE-2026-17018 Aug 10, 2026

Data aggregated from WPVulnerability, NVD/NIST, ENISA EUVD, CVE.org and WordPress.org. Provided as-is; verify with the plugin author before acting. Disclaimer.