The Welcomizer

WordPress plugin · the-welcomizer · WordPress.org ↗
0
Critical
1
High
1
Known total
1
Unfixed
Running The Welcomizer on your site? WP Alerts checks your installed version against every entry below and emails you only when one affects you. Free, no tracking.
Scan a site Monitor my sites →
SeverityVulnerabilityAffectedFixed inCVEPublished
HIGH
CVSS 8.8
The Welcomizer <= 2.8.1 - Missing Authorization to Authenticated (Subscriber+) Remote Code Execution via 'twiz_custom_logic' Parameter
CVE.org
<=2.8.1 unfixed CVE-2026-4327 Sep 19, 2026

Data aggregated from WPVulnerability, NVD/NIST, ENISA EUVD, CVE.org and WordPress.org. Provided as-is; verify with the plugin author before acting. Disclaimer.