WP Vulnerability WatchVulnerability data as of September 7, 2026

Known vulnerabilities in WPeMatico RSS Feed Fetcher

WPeMatico is autoblogging in the blink of an eye! On complete autopilot, WPeMatico delivers fresh content to your site regularly!

7Reported vulnerabilities
8.8Highest CVSS score
2.8.25Latest version
10,000+Active installs

What to do now

Update WPeMatico RSS Feed Fetcher to 2.8.25 or later. 7 of these have a fixed version available. Updating resolves them.

Plugin last updated: August 15, 2026 / Tested up to WordPress: 7.1 / View on wordpress.org

Reported vulnerabilities

Ordered by how urgently they need attention — whether a vulnerability is actually being exploited, and how likely exploitation is, rather than CVSS severity alone.

CVESeverityExploit probability
next 30 days
Affected versionsFixed inPublished
CVE-2026-19883 High 8.8 0.4% 0 to 2.8.24 (inclusive) 2.8.25 August 22, 2026
CVE-2026-57349 High 7.2 0.3% 2.8.17 and earlier 2.8.18 July 1, 2026
CVE-2025-11917 Medium 6.4 0.2% 0 to 2.8.11 (inclusive) 2.8.12 November 5, 2025
CVE-2025-13031 Medium 4.4 0.2% 2.8.12 and earlier 2.8.13 November 18, 2025
CVE-2025-57937 Medium 4.3 0.3% 2.8.10 and earlier 2.8.11 September 22, 2025
CVE-2025-8103 Medium 4.3 0.2% 0 to 2.8.7 (inclusive) 2.8.8 July 26, 2025
CVE-2025-49922 Medium 4.3 0.2% 2.8.3 and earlier 2.8.4 May 29, 2025

Sources: vulnerability records from NVD, exploitation from CISA KEV, exploit probability from EPSS. Affected versions come from CPE ranges or from the reporting CNA.