Vulnerabilities in Unknown

5,639 results
CVE-2026-88797HIGHVayu X < 1.0.6 - Subscriber+ Arbitrary WordPress.org Plugin Installation and ActivationEPSS 0.2%CVE-2025-10357MEDIUMSimple SEO < 2.0.32 - Contributor+ Stored XSSEPSS 0.2%CVE-2026-16264MEDIUMNewsletters < 4.18.1 - Unauthenticated Subscriber Record Overwrite and PII Disclosure via IDOREPSS 0.2%CVE-2025-8594LOWPz-LinkCard < 2.5.7 - Contributor+ SSRFEPSS 0.2%CVE-2026-105322MEDIUMMagee Shortcodes <= 2.1.1 - Unauthenticated Mail Relay via Contact FormEPSS 0.2%CVE-2026-86841MEDIUMBookly 23.2 - 28.2 - Bookly Administrator+ PHP Object Injection via Diagnostics Advanced OptionsEPSS 0.2%CVE-2026-19453HIGHJetBackup 3.1.7.9 - 3.1.23.3 - Subscriber+ Privilege Escalation via Restore Admin User SelectionEPSS 0.2%CVE-2026-91078HIGHTillKit < 1.0.5 - Unauthenticated POS Takeover via Hard-Coded Default Manager PINEPSS 0.2%CVE-2026-13611MEDIUMKiviCare – Clinic & Patient Management System (EHR) < 4.5.5 - Unauthenticated Patient Data DisclosureEPSS 0.2%CVE-2024-2235MEDIUM Himer - Social Questions and Answers < 2.1.1 - Bypass Poll Voting Restrictions via CSRFEPSS 0.2%CVE-2024-2040MEDIUM Himer - Social Questions and Answers < 2.1.1 - Arbitrary Group Joining via CSRFEPSS 0.2%CVE-2024-2233MEDIUM Himer - Social Questions and Answers < 2.1.1 - Multiple CSRF on the Group SectionEPSS 0.2%CVE-2025-15489MEDIUMPassster < 4.2.24 - Password Protection BypassEPSS 0.2%CVE-2026-19430MEDIUMCatFolders Document Gallery Pro < 2.0.7 - Unauthenticated Missing Authorization via download-allEPSS 0.2%CVE-2026-96173MEDIUMPayments for Hubtel < 1.0.2 - Unauthenticated Order Key Disclosure via IDOREPSS 0.2%CVE-2024-6857MEDIUMWP MultiTasking <= 0.1.12 - Header/Footer/Body Script Update via CSRFEPSS 0.2%CVE-2024-8092MEDIUMAccordion Image Menu <= 3.1.3 - Stored XSS via CSRFEPSS 0.2%CVE-2025-8282LOWSureForms < 1.9.1 - Admin+ Stored XSSEPSS 0.2%CVE-2026-16567MEDIUMDocument Embedder < 2.3.1 - Unauthenticated Private Document Download via Token OracleEPSS 0.2%CVE-2026-89001MEDIUMWPeMatico RSS Feed Fetcher < 2.8.27 - Contributor+ Post Publication and Author Spoofing via Campaign SettingsEPSS 0.2%