High 8.5
2026-03-13< 1.16.11
CVE-2026-31917
Minimum safe version
1.30.0
Update to 1.30.0 or later to address 24 fixable vulnerabilities
CVE-2026-31917
CVE-2025-67546
CVE-2025-63008
CVE-2024-12808
CVE-2024-12812
CVE-2025-30896
CVE-2024-47640
CVE-2024-6666
WordPress WP ERP Plugin <= 1.13.1 is vulnerable to SQL Injection
CVE-2024-0609
CVE-2024-0952
CVE-2024-0913
CVE-2024-0956
CVE-2024-0608
CVE-2024-21747
CVE-2023-45765
CVE-2020-36735
CVE-2023-2743
CVE-2021-4342
CVE-2023-34008
Various Affected Software (Various Versions) - Cross-Site Request Forgery Bypass
WP ERP <=1.10.5 - Sensitive Data Exposure
WordPress WP ERP plugin <= 1.6.3 - Cross-Site Request Forgery (CSRF) vulnerability
WordPress WP ERP plugin <= 1.7.4 - Cross-Site Request Forgery (CSRF) vulnerability