WordPress security by component
Adminify
Plugin description
Adminify is a WordPress component with 7 published CVE records in this archive. The latest tracked vulnerability was published Jul 02, 2026; the highest CVE/CNA score is 7.6.
Plugin slug:
adminifyLatest vulnerability
CVE-2026-11781: Adminify: A security weakness
Adminify is affected by a security weakness. Exposure depends on how the affected operation is made reachable by the site. The resulting impact depends on how the affected component exposes the vulnerable operation. The published affected range is < 4.2.10.
| Safe version |
|
||
|---|---|---|---|
| Jul 02, 2026 |
CVE-2026-11781
Adminify: A security weakness
Adminify is affected by a security weakness. Exposure depends on how the affected operation is made reachable by the site. The resulting impact depends on how the affected component exposes the vulnerable operation. The published affected range is < 4.2.10.
|
4.2.10 |
CVE2.7
NVDPending
|
| Jan 28, 2026 |
CVE-2026-1060
WP Adminify: Sensitive information exposure
WP Adminify is affected by sensitive information exposure. The vulnerable path is reachable without authentication. Successful exploitation can disclose data that should not be available to the caller.
|
See mitigation notes |
CVE5.3
NVDPending
|
| Dec 24, 2025 |
CVE-2025-68593
WP Adminify: A security weakness
WP Adminify is affected by a security weakness. Exposure depends on how the affected operation is made reachable by the site. The resulting impact depends on how the affected component exposes the vulnerable operation.
|
See mitigation notes |
CVE5.4
NVDPending
|
| Dec 24, 2025 |
CVE-2025-68592
WP Adminify: A security weakness
WP Adminify is affected by a security weakness. Exposure depends on how the affected operation is made reachable by the site. The resulting impact depends on how the affected component exposes the vulnerable operation.
|
See mitigation notes |
CVE4.3
NVDPending
|
| Oct 24, 2024 |
CVE-2024-8959
WP Adminify – Custom WordPress Dashboard, Login and Admin Customizer: Cross-site scripting
WP Adminify – Custom WordPress Dashboard, Login and Admin Customizer is affected by cross-site scripting. Exploitation requires at least author-level access. Injected script can execute in the affected site's origin when the vulnerable output is viewed.
|
See mitigation notes |
CVE6.4
NVDPending
|
| Dec 31, 2023 |
CVE-2023-52132
WP Adminify: SQL injection
WP Adminify is affected by SQL injection. Exposure depends on how the affected operation is made reachable by the site. A successful request can alter database queries and expose or modify WordPress data.
|
See mitigation notes |
CVE7.6
NVD7.2
|
| Oct 02, 2023 |
CVE-2023-44266
Adminify: Cross-site scripting
Adminify is affected by cross-site scripting. Exposure depends on how the affected operation is made reachable by the site. Injected script can execute in the affected site's origin when the vulnerable output is viewed.
|
See mitigation notes |
CVE5.9
NVD4.8
|