WP Vulnerability WatchVulnerability data as of September 7, 2026

Known vulnerabilities in SureDash – Community, Courses & Member Dashboard

Build a community right inside WordPress. Discussion spaces, courses, member profiles, and a beautiful dashboard — no coding needed.

7Reported vulnerabilities
8.8Highest CVSS score
1.11.0Latest version
1,000+Active installs

What to do now

Update SureDash – Community, Courses & Member Dashboard to 1.10.4 or later. 7 of these have a fixed version available. Updating resolves them.

Plugin last updated: August 11, 2026 / Tested up to WordPress: 7.0.0 / View on wordpress.org

Reported vulnerabilities

Ordered by how urgently they need attention — whether a vulnerability is actually being exploited, and how likely exploitation is, rather than CVSS severity alone.

CVESeverityExploit probability
next 30 days
Affected versionsFixed inPublished
CVE-2025-48164 High 8.8 0.4% 1.0.3 and earlier 1.1.0 July 28, 2025
CVE-2026-57401 High 8.1 0.5% 1.8.0 and earlier 1.8.1 July 8, 2026
CVE-2026-66698 High 7.2 0.2% 1.10.1 and earlier 1.10.2 August 10, 2026
CVE-2026-54813 Medium 6.5 0.2% 1.8.0 and earlier 1.8.1 June 17, 2026
CVE-2026-18402 Medium 6.4 0.2% 0 to 1.10.3 (inclusive) 1.10.4 August 16, 2026
CVE-2026-15821 Medium 6.4 0.2% 0 to 1.10.0 (inclusive) 1.10.1 July 24, 2026
CVE-2025-54685 Medium 4.3 0.4% 1.1.0 and earlier 1.2.0 July 31, 2025

Sources: vulnerability records from NVD, exploitation from CISA KEV, exploit probability from EPSS. Affected versions come from CPE ranges or from the reporting CNA.