vismfgprd.wpenginepowered.com · WordPress 7.1 · theme infinite-child · wpengine
| Priority | Plugin | Version | Advisory | Breaking risk | Recommendation |
|---|---|---|---|---|---|
| High CVE | goodlayers-core active | 1.7.6 → no fix available | CVE-2025-59580 CVSS 8.8 HIGH +3 more advisories | N/A no update available — nothing to upgrade to | NO FIX AVAILABLE — vulnerable and the vendor has no newer version installed//licensed here. Options: confirm the licence is active (premium plugins stop offering updates when a key lapses), replace the plugin, or accept the risk deliberately. Do NOT ignore silently. |
| Med/Low CVE | admin-post-navigation active | 2.1 → no fix available | CVE-2024-6549 CVSS 5.3 MEDIUM | N/A no update available — nothing to upgrade to | No update offered for this version — likely an expired premium licence or a removed plugin. Worth a look. |
| Routine | wordpress-seo active | 28.4 → 28.5 | HIGH minor version bump 28.4 -> 28.5; HIGH BLAST RADIUS plugin — touches page rendering / forms / cache sitewide | UPDATE WITH CAPTURE — routine bump but on a sitewide-impact plugin; watch the diff closely. |