Latest CVE Feed

Vulnerabilities published in the last 30 days. Filter by severity, exploit status, or attack vector.

Score
Vulnerability
Published
0.0 NA
CVE-2026-81742 — BE REST Endpoints <= 1.0.0 - Unauthenticated Stored XSS and Widget Manipulation

The BE REST Endpoints WordPress plugin through 1.0.0 does not perform any authorization check before allowing widgets to be read, created, updated and deleted, and does not sanitize the values it sto…

| Authorization
Sep 12, 2026 Sep 12, 2026
Sep 12, 2026
Sep 12, 2026
0.0 NA
CVE-2026-81429 — Export & Import WPBakery Page Builder <= 1.0.2 - Stored XSS via CSRF

The Export & Import WPBakery Page Builder WordPress plugin through 1.0.2 does not perform any CSRF check on its template-import feature and does not sanitise the imported data before storing it and e…

| Cross-Site Request Forgery
Sep 12, 2026 Sep 12, 2026
Sep 12, 2026
Sep 12, 2026
0.0 NA
CVE-2026-81402 — DS Ad Rotator <= 0.8 - Unauthenticated Arbitrary File Upload

The DS Ad Rotator WordPress plugin through 0.8 does not perform any capability check, nonce verification, or file-type validation on its image upload handler, allowing unauthenticated attackers to up…

| Authentication
Sep 12, 2026 Sep 12, 2026
Sep 12, 2026
Sep 12, 2026
0.0 NA
CVE-2026-81090 — Gpx2Graphics <= 0.3 - Arbitrary File Upload via CSRF

The Gpx2Graphics WordPress plugin through 0.3 does not perform a CSRF check when handling file uploads, nor validate the type of the uploaded file, allowing attackers to make a logged-in administrato…

| Cross-Site Request Forgery
Sep 12, 2026 Sep 12, 2026
Sep 12, 2026
Sep 12, 2026
0.0 NA
CVE-2026-80494 — Yogeta WP Cloud <= 1.0 - Unauthenticated Arbitrary File Download

The Yogeta WP Cloud WordPress plugin through 1.0 does not validate a user-supplied file path before passing it to a file-read function on a public endpoint that lacks any authorization check, allowin…

| Path Traversal
Sep 12, 2026 Sep 12, 2026
Sep 12, 2026
Sep 12, 2026
0.0 NA
CVE-2026-80491 — SAMO Forms <= 1.0.0 - Unauthenticated SQLi

The SAMO Forms WordPress plugin through 1.0.0 does not properly sanitise and escape user input before using it in SQL queries in several unauthenticated actions, allowing unauthenticated attackers to…

| Injection
Sep 12, 2026 Sep 12, 2026
Sep 12, 2026
Sep 12, 2026
0.0 NA
CVE-2026-78152 — SureRank 1.6.2 - 1.10.0 - Unauthenticated Author Email Disclosure via Person Schema

The SureRank SEO WordPress plugin before 1.10.1 does not exclude users' registered account email addresses from the structured data it outputs on public pages by default, allowing unauthenticated vi…

| Information Disclosure
Sep 12, 2026 Sep 12, 2026
Sep 12, 2026
Sep 12, 2026
0.0 NA
CVE-2026-77753 — Temporary Login Without Password < 1.9.9 - Authenticated Temporary Access Revocation Bypa…

The Temporary Login Without Password WordPress plugin before 1.9.9 does not prevent a temporary user from creating an Application Password, and does not revoke one when the temporary access expires o…

Sep 12, 2026 Sep 12, 2026
Sep 12, 2026
Sep 12, 2026
0.0 NA
CVE-2026-77752 — Temporary Login Without Password 1.5 - 1.9.8 - Multisite Subsite Admin+ Network Super Adm…

The Temporary Login Without Password WordPress plugin before 1.9.9 does not verify that the user requesting a temporary login holds network super admin rights before granting the new account those ri…

Sep 12, 2026 Sep 12, 2026
Sep 12, 2026
Sep 12, 2026
0.0 NA
CVE-2026-77705 — Amelia < 2.4.10 - Amelia Manager+ WordPress Account Takeover

The Booking for Appointments and Events Calendar WordPress plugin before 2.4.10 does not verify that the user editing a customer or employee record is entitled to modify the WordPress account linked…

| Authentication
Sep 12, 2026 Sep 12, 2026
Sep 12, 2026
Sep 12, 2026
0.0 NA
CVE-2026-77689 — Amelia Pro 9.0 - 9.8 - Unauthenticated Payment Bypass

The Booking for Appointments and Events Calendar WordPress plugin before 9.8.1 does not verify that a payment was actually taken before recording a booking as paid, trusting the payment gateway name…

| Authentication
Sep 12, 2026 Sep 12, 2026
Sep 12, 2026
Sep 12, 2026
0.0 NA
CVE-2026-77006 — WebTotem Backups <= 1.0.1 - Subscriber+ Arbitrary File Deletion via Path Traversal

The WebTotem Backups WordPress plugin through 1.0.1 does not validate a user-supplied file path, does not check the capability of the user making the request, and discards the result of its own CSRF …

| Path Traversal
Sep 12, 2026 Sep 12, 2026
Sep 12, 2026
Sep 12, 2026
0.0 NA
CVE-2026-77005 — Code Monkeys Proposals <= 1.0.1 - Subscriber+ Arbitrary File Deletion via Path Traversal

The CODE MONKEYS PROPOSALS WordPress plugin through 1.0.1 does not validate a user-supplied file path before deleting a file, and does not check the capability of the user making the request, allowi…

| Path Traversal
Sep 12, 2026 Sep 12, 2026
Sep 12, 2026
Sep 12, 2026
0.0 NA
CVE-2026-75800 — Frontegg SAML SSO <= 1.0.1 - Unauthenticated Account Takeover via Unverified SAMLResponse

The Frontegg SAML SSO WordPress plugin through 1.0.1 does not verify the signature or issuer of SAML authentication responses before establishing a session, allowing unauthenticated attackers to log …

| Authentication
Sep 12, 2026 Sep 12, 2026
Sep 12, 2026
Sep 12, 2026
9.9 CRITICAL
CVE-2026-87719 — Deserialization of Untrusted Data in GitLab

GitLab has remediated an issue in GitLab EE affecting all versions from 18.3 before 19.1.8, 19.2 before 19.2.6, and 19.3 before 19.3.2 that under certain conditions could allow an authenticated user …

gitlab | Remote | Injection
Sep 12, 2026 Sep 12, 2026
Sep 12, 2026
Sep 12, 2026
10.0 CRITICAL
CVE-2026-85706 — GitLab Community Edition and Enterprise Edition Path Traversal Vulnerability - [Actively …

GitLab has remediated an issue in GitLab CE/EE affecting all versions from 18.7 before 19.1.8, 19.2 before 19.2.6, and 19.3 before 19.3.2 that, under certain conditions, an unauthenticated user could…

gitlab | CISA KEV Remote | Path Traversal
Sep 12, 2026 Sep 12, 2026
Sep 12, 2026
Sep 12, 2026
6.3 MEDIUM
CVE-2026-90467 — aiosmtplib before 5.1.3 ESMTP Parameter Injection via unvalidated addresses

aiosmtplib before 5.1.3 fails to properly validate email addresses supplied by callers, allowing attackers to inject ESMTP parameters into MAIL FROM and RCPT TO command lines. Attackers can craft mal…

Remote | Injection
Sep 12, 2026 Sep 12, 2026
Sep 12, 2026
Sep 12, 2026
5.4 MEDIUM
CVE-2026-89268 — QloApps through 1.7.0 Reflected XSS via List Filter Parameters

QloApps through 1.7.0 renders back-office list filter POST parameters into HTML input value attributes without escaping them in the list helper template. Attackers can induce authenticated users to s…

qloapps | Remote | Cross-Site Scripting
Sep 12, 2026 Sep 12, 2026
Sep 12, 2026
Sep 12, 2026
5.3 MEDIUM
CVE-2026-89267 — starlette-admin 0.16.1 through 0.17.1 Searchable Fields Allowlist Bypass

starlette-admin versions 0.16.1 through 0.17.1 fail to enforce the searchable_fields allowlist when configured as an empty list, allowing authenticated users to filter on non-searchable fields. Attac…

starlette | Remote | Authorization
Sep 12, 2026 Sep 12, 2026
Sep 12, 2026
Sep 12, 2026
8.8 HIGH
CVE-2026-89266 — stb_vorbis through 1.22 heap buffer overflow via codebook multiplicands

stb_vorbis through 1.22 contains a heap buffer overflow in start_decoder() where the codebook multiplicands allocation size is truncated from size_t to int. Attackers can craft a malicious Ogg Vorbis…

stb_vorbis | Remote | Memory Corruption
Sep 12, 2026 Sep 12, 2026
Sep 12, 2026
Sep 12, 2026
Showing 20 of 13477 Results