slug: wordpress

解説

WordPressは世界中のWebサイトの約4割で使われているCMS (コンテンツ管理システム) です。 ブログ、企業サイト、ECサイトなど、プログラミング知識なしでサイトを作れるため非常に普及しています。 だからこそ攻撃者の標的にもなりやすく、プラグインの脆弱性経由で乗っ取られるケースが頻繁に報告されています。
📌 具体例
2024年に LiteSpeed Cache プラグインの脆弱性 (CVE-2024-50550) が悪用され、数百万のWordPressサイトで管理者権限が奪取される事件が発生した。

🔖 関連タグ

🛡 このタグに関連する脆弱性 2,692

ID タイトル
CVE-2026-13154 wordpress に 情報漏洩 (CVE-2026-13154)
CVE-2026-13703 wordpress の脆弱性 (CVE-2026-13703)
CVE-2026-14204 wordpress に CSRF (CVE-2026-14204)
CVE-2026-14240 wordpress に 情報漏洩 (CVE-2026-14240)
CVE-2026-14313 wordpress に CSRF (CVE-2026-14313)
CVE-2026-14314 wordpress に 情報漏洩 (CVE-2026-14314)
CVE-2026-14547 wordpress に 認証バイパス (CVE-2026-14547)
CVE-2026-14829 wordpress の脆弱性 (CVE-2026-14829)
CVE-2025-15678 wordpress に クロスサイトスクリプティング (CVE-2025-15678)
CVE-2026-11588 wordpress に クロスサイトスクリプティング (CVE-2026-11588)
CVE-2026-12713 wordpress に SQLインジェクション (CVE-2026-12713)
CVE-2026-15459 wordpress に 認証バイパス (CVE-2026-15459)
CVE-2026-18325 The Forminator Forms – Contact Form, Payment Form & Custom Form Builder plugin for WordPress is...
CVE-2026-16636 The FluentSMTP – WP SMTP Plugin with Amazon SES, SendGrid, MailGun, Postmark, Google and Any SMTP...
CVE-2026-15991 The File Manager plugin for WordPress is vulnerable to arbitrary file deletion due to insufficient file path validation in the connector function in all versions from 6.0 - 6.9. This makes it possible...
CVE-2026-7529 wordpress の脆弱性 (CVE-2026-7529)
CVE-2026-7456 wordpress の脆弱性 (CVE-2026-7456)
CVE-2026-17506 wordpress に クロスサイトスクリプティング (CVE-2026-17506)
CVE-2026-15979 wordpress に パストラバーサル (CVE-2026-15979)
CVE-2026-18933 wordpress に 危険なファイルアップロード (CVE-2026-18933)
CVE-2026-15452 wordpress に クロスサイトスクリプティング (CVE-2026-15452)
CVE-2026-7726 wordpress の脆弱性 (CVE-2026-7726)
CVE-2026-7693 wordpress に コマンドインジェクション (CVE-2026-7693)
CVE-2026-7520 The MailChimp Forms by MailMunch plugin for WordPress is vulnerable to unauthorized modification...
CVE-2026-7444 The Search Analytics for WP plugin for WordPress is vulnerable to Cross-Site Request Forgery in...
CVE-2026-7441 wordpress に クロスサイトスクリプティング (CVE-2026-7441)
CVE-2026-7105 wordpress の脆弱性 (CVE-2026-7105)
CVE-2026-6639 wordpress の脆弱性 (CVE-2026-6639)
CVE-2026-6147 The LightSync Pro plugin for WordPress is vulnerable to arbitrary file uploads due to missing...
CVE-2026-6627 The WPFormify – Stripe Payments with Form and Checkout plugin for WordPress is vulnerable to...

🍪 Cookie について

当サイトはログイン状態の保持・言語設定・サービス改善のために Cookie を使用します。詳細は下記リンクをご確認ください。

詳細 →