Vulnerabilities in Unknown
5,639 resultsCVE-2026-96532HIGHTestimonials Widget <= 4.0.4 - Unauthenticated Arbitrary Post UpdateEPSS 0.2%CVE-2025-8945MEDIUMWp Edit Password Protected < 1.3.5 - Protection Bypass via REST APIEPSS 0.2%CVE-2024-6224MEDIUMSend email only on Reply to My Comment <= 1.0.6 - Stored XSS via CSRFEPSS 0.2%CVE-2024-3058MEDIUMENL Newsletter <= 1.0.1 - Stored XSS via CSRFEPSS 0.2%CVE-2023-7083MEDIUMVoting Record <= 2.0 - Settings Update to Stored XSS via CSRFEPSS 0.2%CVE-2026-94298MEDIUMBuildKit < 1.0.29 - Contributor+ Stored SQLi via list_content ParameterEPSS 0.2%CVE-2026-86832MEDIUMMetForm < 4.3.1 - Unauthenticated Form Entry Data Disclosure via REST APIEPSS 0.2%CVE-2026-86789MEDIUMConnections Business Directory <= 10.4.67 - Unauthenticated Non-Public Directory Entry Disclosure via cn-api/v1 REST RoutesEPSS 0.2%CVE-2026-18232MEDIUMWP Directory Kit <= 1.5.7 - Unauthenticated Unpublished Listing Disclosure via map_infowindowEPSS 0.2%CVE-2026-11871MEDIUMTeam Showcase Supreme < 9.3 - Unauthenticated Sensitive Data Disclosure via wpm_6310_team_member_detailsEPSS 0.2%CVE-2026-86783MEDIUMPostX < 5.0.41 - Unauthenticated Custom Field Key Disclosure via REST APIEPSS 0.2%CVE-2026-90985MEDIUMWPC Smart Compare for WooCommerce < 6.6.1 - Unauthenticated Password-Protected Product Description Disclosure via woosc_loadEPSS 0.2%CVE-2026-90988MEDIUMRequest a Quote <= 2.5.6 - Unauthenticated Quote Request Contact Record Disclosure via emd_get_std_pagenumEPSS 0.2%CVE-2026-86786MEDIUMSlider Pro <= 1.0.0 - Unauthenticated Sensitive Data Disclosure via sliderpro_multiple_imagesEPSS 0.2%CVE-2026-90950MEDIUMPaid Member Subscriptions < 3.1.0 - Unauthenticated reCAPTCHA Bypass via Registration FormEPSS 0.2%CVE-2026-17517MEDIUMContent Views < 4.5.1.2 - Unauthenticated Non-Public Post Content Disclosure via Views Status FilterEPSS 0.2%CVE-2026-14562MEDIUMTeddy Bear Customize Addon <= 1.0.5 - Unauthenticated Order Data DisclosureEPSS 0.2%CVE-2026-92995MEDIUMVerge3D <= 4.13.0 - Unauthenticated Product Download Disclosure via v3d_download_fileEPSS 0.2%CVE-2026-96886MEDIUMCourse Booking System < 7.0.9 - Unauthenticated Attendee PII Disclosure via CSV ExportEPSS 0.2%CVE-2026-94274MEDIUMYayReviews 1.0.4 - 1.4.0 - Unauthenticated Sensitive Data Disclosure via REST APIEPSS 0.2%