Fleet Manager
Fleet Manager has one disclosed vulnerability in the WordSec catalog, all reported in 2025; it is fixed as of September 2026. Their average CVSS score is 4.4, and the most serious one scores 4.4 out of 10.
The most common weakness is Cross-Site Scripting, behind 1 of the records (100%).
The one issue recorded for Fleet Manager has a vendor fix available, so running the current release closes it.
All of these findings were reported by Ivan Cese. Fleet Manager is installed on roughly 10 WordPress sites, so each unpatched flaw has a wide blast radius. The current release is tested up to WordPress 6.8.8.
CVE-2025-12538Fleet Manager <= 2.5.1 - Authenticated (Editor+) Stored Cross-Site Scripting
Read the full analysisVulnerability Records

Fleet Manager
Author
iworks (Marcin Pietrzak)
Manage sailboats, sailors, regattas, and results with ease. Track boats, record sailor statistics, and organize sailing competitions—all within WordPress. Features Regatta Management: Create and manage sailing events, regattas, and competitions. Sailor & Boat Records: Store detailed information about sailors and boats. Results Display: Show race results, including medals and rankings. Statistics: Visualize sailor performance over time. Custom Shortcodes: Display regatta lists by country or year, show boat galleries, and more. Export Tools: Export results for boats and sailors. Compatibility: Works with popular WordPress themes and includes PWA support. Localization: Translated into multiple languages. 1. Via WordPress Admin Go to Plugins > Add New in your WordPress dashboard. Search for Fleet. Click Install Now and then Activate. The Fleet menu will appear in your admin sidebar. 2. Manual Upload Download the plugin .zip file from the plugin page. Go to Plugins > Add New in your dashboard. Click Upload Plugin, select the .zip file, and install. Activate the plugin. 3. FTP Upload Upload the fleet folder to /wp-content/plugins/ directory. Activate the plugin via the Plugins menu. The Fleet menu will appear in your admin sidebar. Usage Use the Fleet menu to add boats, sailors, regattas, and results. Utilize available shortcodes to display regatta lists, results, and statistics on your site. Customize plugin settings as needed for your club or event. Shortcodes [fleet_regattas_list_years] – List regattas by year. [fleet_regattas_list_countries] – List regattas by country. [boat] – Show boat link, data, or gallery. See documentation for more available shortcodes and parameters. Blocks Expenses: Manage and display regatta or fleet-related expenses. Contributing Want to help improve Fleet Manager? Report Bugs: Open a topic in the plugin forum. Verified bugs are tracked on GitHub. Suggest Features: Share your ideas in the forum to start a discussion. Contribute Code: Fork the GitHub repository and submit pull requests. See the contributing guide for details. GitHub The Fleet Manager plugin is available on GitHub.
Vulnerability data © Defiant, Inc., provided under the Wordfence Intelligence T&C