WordPress Plugin AccessPress Custom CSS [only if downloaded via the vendor website] contains suspicious code. Attackers can exploit this issue to perform a variety of actions. Successful attacks will compromise the affected application and possibly the webserver or computer. WordPress Plugin AccessPress Custom CSS version 2.0.1 is vulnerable; prior versions may also be affected.
Update to plugin version 2.0.2 or latest
WordPress Plugin Tutor LMS-eLearning and online course solution Cross-Site Request Forgery (1.5.2)
WordPress Plugin WP-Members Membership Cross-Site Scripting (3.1.7)
WordPress Plugin Jibu Pro Cross-Site Scripting (1.7)
WordPress Plugin Contact Form DB Cross-Site Scripting (2.10.29)