VulnSea

Tagged “cve.org”

CVEs tagged cve.org, newest first.

20161 CVEsRSS

CVE-2026-78124Low· 3.7
3w ago

strongSwan 5.0.2 through 6.0.7 allows PKCS#7 certificate enumeration in the openssl plugin that leads to a lack of release of memory after its effective lifetime.

strongSwan 5.0.2 through 6.0.7 allows PKCS#7 certificate enumeration in the openssl plugin that leads to a lack of release of memory after its effective lifetime.

▾ Sunlitstrongswan · strongswanEPSS 0.19%via NVD
CVE-2026-62089High· 7.1
3w ago

WordPress Master Addons for Elementor plugin <= 3.2.2 - Broken Access Control vulnerability

Missing Authorization vulnerability in Pixar Labs Master Addons for Elementor allows Privilege Abuse. This issue affects Master Addons for Elementor: from n/a through 3.2.2.

▾ TwilightPixar Labs · master-addonsEPSS 0.32%via CVEORG
CVE-2026-52630Critical· 9.8
3w ago

SQL Injection vulnerability in Woltlab WCF v.6.2.4 and before allows a remote attacker to updateUserOptions in UserEditor.class.php and the update action in UserAction.class.php

SQL Injection vulnerability in Woltlab WCF v.6.2.4 and before allows a remote attacker to updateUserOptions in UserEditor.class.php and the update action in UserAction.class.php

▾ MidnightEPSS 0.66%via NVD
CVE-2026-8778Critical· 9.8
3w ago

MIPL Grouped Checkout Fields for WooCommerce <= 1.2.2 - Unauthenticated Arbitrary File Upload

The MIPL Grouped Checkout Fields for WooCommerce – Customize & Organize Checkout Fields. plugin for WordPress is vulnerable to arbitrary file uploads due to missing file type validation in the `mipl_wc_upload_file` function in all versio…

▾ Midnightmulika · MIPL Grouped Checkout Fields for WooCommerce. Customize & Organize Checkout Fields.EPSS 1.1%via CVEORG
CVE-2026-62140Medium· 5.3
3w ago

WordPress Quiz And Survey Master plugin <= 11.2.5 - Insecure Direct Object References (IDOR) vulnerability

Unauthenticated Insecure Direct Object References (IDOR) in Quiz And Survey Master <= 11.2.5 versions.

▾ SunlitExpressTech Systems · quiz-master-nextEPSS 0.31%via CVEORG
CVE-2026-62137Medium· 5.3
3w ago

WordPress bbPress plugin <= 2.6.14 - Sensitive Data Exposure vulnerability

Unauthenticated Sensitive Data Exposure in bbPress <= 2.6.14 versions.

▾ SunlitJohn James Jacoby · bbpressEPSS 0.31%via CVEORG
CVE-2026-62135Medium· 5.3
3w ago

WordPress Booktics plugin <= 1.0.24 - Broken Access Control vulnerability

Unauthenticated Broken Access Control in Booktics <= 1.0.24 versions.

▾ SunlitArraytics · bookticsEPSS 0.29%via CVEORG
CVE-2026-62132Medium· 5.3
3w ago

WordPress Masteriyo - LMS plugin <= 3.4.0 - Broken Access Control vulnerability

Subscriber Broken Access Control in Masteriyo - LMS <= 3.4.0 versions.

▾ Sunlitmasteriyo · learning-management-systemEPSS 0.29%via CVEORG
CVE-2026-62113Medium· 4.3
3w ago

WordPress Slim SEO plugin <= 4.10.0 - Insecure Direct Object References (IDOR) vulnerability

Contributor Insecure Direct Object References (IDOR) in Slim SEO <= 4.10.0 versions.

▾ SunlitAnh Tran · slim-seoEPSS 0.27%via CVEORG
CVE-2026-62110Medium· 6.5
3w ago

WordPress Bold Page Builder plugin <= 5.9.9 - Cross Site Scripting (XSS) vulnerability

Contributor Cross Site Scripting (XSS) in Bold Page Builder <= 5.9.9 versions.

▾ Sunlitboldthemes · bold-page-builderEPSS 0.22%via CVEORG
CVE-2026-62107High· 8.8
3w ago

WordPress Masteriyo - LMS plugin <= 3.4.0 - PHP Object Injection vulnerability

Unauthenticated PHP Object Injection in Masteriyo - LMS <= 3.4.0 versions.

▾ Twilightmasteriyo · learning-management-systemEPSS 0.52%via CVEORG
CVE-2026-62103Critical· 9.8
3w ago

WordPress Everest Forms plugin <= 3.6.0 - PHP Object Injection vulnerability

Unauthenticated PHP Object Injection in Everest Forms <= 3.6.0 versions.

▾ Midnightwpeverest · everest-formsEPSS 0.56%via CVEORG
CVE-2026-18579High· 7.2
3w ago

WP Photo Album Plus <= 9.2.08.003 - Unauthenticated Stored Cross-Site Scripting

The WP Photo Album Plus plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the 'HTTP_X_FORWARDED_FOR' parameter in all versions up to, and including, 9.2.08.003 due to insufficient input sanitization and output escapin…

▾ Twilightopajaap · WP Photo Album PlusEPSS 0.29%via CVEORG
CVE-2026-11496Medium· 6.5
3w ago

Woo PDF Invoice Builder <= 2.0.8 - Authenticated (Subscriber+) Insecure Direct Object Reference to Sensitive Order Information Disclosure

The Woo PDF Invoice Builder plugin (also distributed as "PDF Builder for WooCommerce") for WordPress is vulnerable to Insecure Direct Object Reference in all versions up to, and including, 2.0.8. This is due to the InspectOrder() AJAX ha…

▾ Sunlitedgarrojas · PDF Builder for WooCommerce. Create invoices,packing slips and moreEPSS 0.26%via CVEORG
CVE-2024-12145Medium· 4.3
3w ago

BuddyPress <= 14.3.3 - Insecure Direct Object Reference to Notifications Deletion

The BuddyPress plugin for WordPress is vulnerable to Insecure Direct Object Reference in all versions up to, and including, 14.3.3 via the bp_notifications_action_bulk_manage due to missing validation on a user controlled key. This makes…

▾ Sunlitbuddypress · BuddyPressEPSS 0.19%via CVEORG
CVE-2026-89265Medium· 4.3PoC
3w ago

MoguBlog through 6.2 Missing Authorization on the Admin getPictureSortByUid Endpoint

MoguBlog through 6.2 contains an authorization bypass vulnerability in the POST /pictureSort/getPictureSortByUid endpoint, which omits the @AuthorityVerify annotation required to enforce role-based permissions. Authenticated back-office …

▾ Twilightmoxi624 · MoguBlogEPSS 0.37%via CVEORG
CVE-2026-89260High· 7.5PoC
3w ago

MoguBlog through 6.2 XML External Entity Injection in the Unauthenticated WeChat Callback Endpoint

MoguBlog through 6.2 contains an XML external entity injection vulnerability in the WeChat callback handler at POST /wechat/wechatCheck. The WechatRestApi.index() method passes the raw request body to SignUtil.xmlToMap(), which uses an u…

▾ Midnightmoxi624 · MoguBlogEPSS 0.73%via CVEORG
CVE-2026-89259Critical· 9.8
3w ago

Hugo is a static site generator

Hugo is a static site generator. From v0.161.0, Hugo executes Node tools under Node's permission model, but TailwindCSS — included in the default security.exec.allow list — requires a highly permissive configuration (--allow-addons, --al…

▾ Midnightgohugoio · hugoEPSS 0.59%via NVD
CVE-2026-89254High· 8.7
3w ago

AVideo CustomizeUser Stored XSS via field_name Parameter

AVideo through commit c3edcc274c389816d434acadac07ee78eaf330c1 contains a stored cross-site scripting vulnerability in the CustomizeUser plugin where the field_name parameter is stored raw without sanitization. Administrators can inject …

▾ TwilightWWBN · AVideoEPSS 0.37%via CVEORG
CVE-2026-89249High· 8.7
3w ago

AVideo YPTWallet Stored XSS via CryptoWallet Configuration

AVideo through commit c3edcc274c389816d434acadac07ee78eaf330c1 contains a stored cross-site scripting vulnerability in the YPTWallet plugin where user-supplied CryptoWallet values are base64-encoded but not HTML-escaped before storage in…

▾ TwilightWWBN · AVideoEPSS 0.37%via CVEORG
CVE-2026-89244Medium· 6.1
3w ago

WWBN AVideo Reflected XSS via Gallery Category getBackURL

WWBN AVideo through commit c3edcc274c389816d434acadac07ee78eaf330c1 contains a reflected cross-site scripting vulnerability in plugin/Gallery/view/Category.php when SubCategorys is enabled. The getBackURL parameter is echoed into an href…

▾ SunlitWWBN · AVideoEPSS 0.26%via CVEORG
CVE-2026-89239Medium· 6.1
3w ago

WWBN AVideo Reflected XSS via Referer Header Comment Breakout

WWBN AVideo through commit c3edcc274c389816d434acadac07ee78eaf330c1 contains a reflected cross-site scripting vulnerability in the showAlertMessage() function that inserts the raw Referer header into a JavaScript comment without encoding…

▾ SunlitWWBN · AVideoEPSS 0.26%via CVEORG
CVE-2026-89060High· 7.7
3w ago

A cross-namespace authorization flaw in multicluster-observability-addon allows a user with permission to modify a managed cluster’s ManagedClusterAddOn configuration to reference ClusterLogForwarder or OpenTelemetryCollector resources o…

A cross-namespace authorization flaw in multicluster-observability-addon allows a user with permission to modify a managed cluster’s ManagedClusterAddOn configuration to reference ClusterLogForwarder or OpenTelemetryCollector resources o…

▾ TwilightRed Hat · multicluster-observability-addonEPSS 0.47%via NVD
CVE-2026-6642Medium· 6.4
3w ago

Media Library Assistant <= 3.35 - Authenticated (Author+) Stored Cross-Site Scripting via Bulk Edit Preset Export/Import

The Media Library Assistant plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the bulk edit preset export/import mechanism in versions up to and including 3.35. This is due to insufficient output escaping on preset fi…

▾ Sunlitdglingren · Media Library AssistantEPSS 0.36%via CVEORG
CVE-2026-62136Medium· 5.3
3w ago

WordPress Flexible Quantity – Measurement Price Calculator for WooCommerce plugin <= 2.3.21 - Broken Access Control vulnerability

Unauthenticated Broken Access Control in Flexible Quantity – Measurement Price Calculator for WooCommerce <= 2.3.21 versions.

▾ Sunlitwpdesk · flexible-quantity-measurement-price-calculator-for-woocommerceEPSS 0.29%via CVEORG
CVE-2026-62114Medium· 5.3
3w ago

WordPress Passster plugin <= 4.3.13 - Broken Access Control vulnerability

Unauthenticated Broken Access Control in Passster <= 4.3.13 versions.

▾ SunlitWP Chill · content-protectorEPSS 0.31%via CVEORG
CVE-2026-62109High· 7.6
3w ago

WordPress Sky Addons for Elementor plugin <= 3.8.4 - SQL Injection vulnerability

Editor SQL Injection in Sky Addons for Elementor <= 3.8.4 versions.

▾ TwilightwowDevs · sky-elementor-addonsEPSS 0.38%via CVEORG
CVE-2026-62102High· 8.8
3w ago

WordPress Gato GraphQL plugin <= 19.2.3 - Privilege Escalation vulnerability

Subscriber Privilege Escalation in Gato GraphQL <= 19.2.3 versions.

▾ TwilightGato GraphQL · Gato GraphQLEPSS 0.42%via CVEORG
CVE-2026-62088Medium· 5.3
3w ago

WordPress ElasticPress plugin <= 5.3.4 - Sensitive Data Exposure vulnerability

Insertion of Sensitive Information Into Sent Data vulnerability in 10up ElasticPress allows Retrieve Embedded Sensitive Data. This issue affects ElasticPress: from n/a through 5.3.4.

▾ Sunlit10up · elasticpressEPSS 0.33%via CVEORG
CVE-2026-19991High· 8.1
3w ago

UsersWP <= 1.2.70 - Authenticated (Subscriber+) Arbitrary File Deletion

The UsersWP plugin for WordPress is vulnerable to Arbitrary File Deletion in versions up to, and including, 1.2.70 via the upload_file_remove() AJAX handler. The plugin stores the value of an account 'file' form field taken directly from…

▾ Twilightstiofansisland · UsersWP – Front-end login form, User Registration, User Profile & Members Directory plugin for WPEPSS 0.41%via CVEORG
CVEs tagged “cve.org” — page 415 · VulnSea