Search

Search Results (402609 CVEs found)

CVE Vendors Products Updated CVSS v3.1
CVE-2026-66588 2 Dream-theme, Wordpress-extensions 2 The7, The7 2026-10-06 7.5 High
Unauthenticated Broken Access Control in The7 <= 14.2.2 versions.
CVE-2026-94675 2 Fluent Forms Free Vs Pro, Wordpress-extensions 2 Fluent Forms Pro Add On Pack, Fluent Forms Pro Add On Pack 2026-10-06 7.1 High
Unauthenticated Cross Site Scripting (XSS) in Fluent Forms Pro Add On Pack <= 6.2.13 versions.
CVE-2026-95526 2 Realmag777, Wordpress-extensions 2 Bear, Bear 2026-10-06 7.3 High
Unauthenticated Broken Access Control in BEAR <= 1.2.2 versions.
CVE-2026-95594 2 Cozy Vision Technologies Pvt. Ltd., Wordpress-extensions 2 Sms Alert Order Notifications, Sms Alert Order Notifications 2026-10-06 8.1 High
Unauthenticated Privilege Escalation in SMS Alert Order Notifications <= 4.0.0 versions.
CVE-2026-97308 2 Webfactoryltd, Wordpress-extensions 2 Wp Login Lockdown, Login Lockdown 2026-10-06 4.8 Medium
Unauthenticated Bypass Vulnerability in Login Lockdown <= 2.17 versions.
CVE-2026-100518 2 Webfactoryltd, Wordpress-extensions 2 Advanced Google Recaptcha, Advanced Google Recaptcha 2026-10-06 5.3 Medium
Unauthenticated Broken Authentication in Advanced Google reCAPTCHA <= 5.40 versions.
CVE-2026-102387 2 Wordpress-extensions, Xserver 2 Xserver Migrator, Xserver Migrator 2026-10-06 7.5 High
Unauthenticated Sensitive Data Exposure in Xserver Migrator <= 1.6.6 versions.
CVE-2026-102915 2 Marco Van Wieren, Wordpress-extensions 2 Wpo365, Wpo365 2026-10-06 8.5 High
Subscriber Broken Access Control in WPO365 <= 44.1 versions.
CVE-2026-104385 2 Adrian Tobey, Wordpress-extensions 2 Groundhogg, Groundhogg 2026-10-06 7.5 High
Unauthenticated Sensitive Data Exposure in Groundhogg <= 4.8.3 versions.
CVE-2026-104387 2 Blubrry, Wordpress-extensions 2 Powerpress Podcasting, Powerpress Podcasting 2026-10-06 7.2 High
Unauthenticated Broken Access Control in PowerPress Podcasting <= 11.17.9 versions.
CVE-2026-104394 2 Syed Balkhi, Wordpress-extensions 2 Charitable, Charitable 2026-10-06 7.1 High
Unauthenticated Cross Site Scripting (XSS) in Charitable <= 1.8.12.3 versions.
CVE-2026-104395 2 Picu, Wordpress-extensions 2 Picu, Picu 2026-10-06 7.1 High
Unauthenticated Cross Site Scripting (XSS) in picu <= 3.10.1 versions.
CVE-2026-104405 2 Nexcess, Wordpress-extensions 2 Givewp, Givewp 2026-10-06 8.1 High
Unauthenticated Privilege Escalation in GiveWP <= 4.17.0 versions.
CVE-2026-104406 2 Picu, Wordpress-extensions 2 Picu, Picu 2026-10-06 7.3 High
Unauthenticated Broken Access Control in picu <= 3.10.1 versions.
CVE-2026-104670 2 Thimpress, Wordpress-extensions 2 Learnpress, Learnpress 2026-10-06 7.1 High
Unauthenticated Cross Site Scripting (XSS) in LearnPress <= 4.4.9 versions.
CVE-2026-104672 2 Nexcess, Wordpress-extensions 2 Givewp, Givewp 2026-10-06 7.1 High
Unauthenticated Cross Site Scripting (XSS) in GiveWP <= 4.17.0 versions.
CVE-2026-104747 2 Edge-themes, Wordpress-extensions 2 Haaken, Haaken 2026-10-06 8.1 High
Unauthenticated PHP Object Injection in Haaken <= 1.5 versions.
CVE-2026-104757 2 Carazo, Wordpress-extensions 2 Import And Export Users And Customers, Import And Export Users And Customers 2026-10-06 7.2 High
Editor Privilege Escalation in Import and export users and customers <= 2.5.5 versions.
CVE-2026-104814 2 Epiph, Wordpress-extensions 2 Form Block, Form Block 2026-10-06 7.1 High
Unauthenticated Cross Site Scripting (XSS) in Form Block <= 1.8.1 versions.
CVE-2026-105057 2 Ben Marshall, Wordpress-extensions 2 Zero Spam, Zero Spam 2026-10-06 5.3 Medium
Unauthenticated Bypass Vulnerability in Zero Spam <= 5.7.11 versions.