Vulnerabilities in Unknown

5,635 results
CVE-2026-88791LOWSafe Redirect Manager < 2.3.0 - Open Redirect via Wildcard Redirect RulesEPSS 0.2%CVE-2026-86834LOWMetForm 2.2.1 - 4.3.0 - Unauthenticated Debug File Disclosure via HubSpot Forms IntegrationEPSS 0.2%CVE-2026-80338MEDIUMCMB2 < 2.13.0 - Subscriber+ Arbitrary Option Corruption via oEmbed HandlerEPSS 0.2%CVE-2026-80518LOWWP Ultimate CSV Importer < 9.2 - Unauthenticated Imported Data Disclosure via Predictable Log PathEPSS 0.2%CVE-2025-9703MEDIUMUltimate Addons for Elementor Lite < 2.5.0 - Author+ Stored XSSEPSS 0.2%CVE-2024-8090MEDIUMJavaScript Logic <= 0.1 - CSRF to Stored XSSEPSS 0.2%CVE-2025-12061HIGHTax Service Electronic HDM < 1.2.1 - Unauthenticated Arbitrary SQL ExecutionEPSS 0.2%CVE-2026-86603MEDIUMWP Recipe Maker < 10.8.2 - Subscriber+ Non-Public List Title Disclosure via wprm_search_listsEPSS 0.2%CVE-2026-86602MEDIUMWP Recipe Maker 10.3.0 - 10.8.1 - Subscriber+ Draft and Private Recipe Content Disclosure via wprm_shortcode_previewEPSS 0.2%CVE-2026-97331MEDIUMUser Private Files < 2.1.9 - Subscriber+ User Email Address Disclosure via dpk_upvf_rmv_accessEPSS 0.2%CVE-2026-93662MEDIUMEvents Manager 7.4.1 - 7.4.4 - Subscriber+ Unpublished Event and Location Disclosure via 'owner' ParameterEPSS 0.2%CVE-2024-9709MEDIUMEKC Tournament Manager < 2.2.2 - Create Tournaments/Teams via CSRFEPSS 0.2%CVE-2026-16557MEDIUMNimble Builder <= 3.3.8 - Subscriber+ Non-Public Content Disclosure via sek_get_nimble_content_for_seo_pluginsEPSS 0.2%CVE-2026-90953MEDIUMImage Optimizer by Elementor < 1.7.7 - Subscriber+ Attachment Metadata and Site Statistics Disclosure via Discarded REST Permission CallbacksEPSS 0.2%CVE-2024-9711MEDIUMEKC Tournament Manager < 2.2.2 - Delete Tournaments via CSRFEPSS 0.2%CVE-2023-2334MEDIUMEasy Digital Downloads Google Sheet Connector < 1.6.6 - Access Code Update via CSRFEPSS 0.2%CVE-2026-82850MEDIUMMasteriyo LMS < 3.4.2 - Subscriber+ Quiz Answer Key DisclosureEPSS 0.2%CVE-2025-5921MEDIUMSureForms < 1.7.2 - Reflected XSSEPSS 0.2%CVE-2026-87970MEDIUMIf-So Dynamic Content 1.8 - 1.10.1 - Reflected XSS via render_ifso_shortcodesEPSS 0.2%CVE-2026-87981MEDIUMPaymob for WooCommerce < 4.1.14 - Contributor+ Payment Gateway Configuration Deletion and Modification via Multiple AJAX ActionsEPSS 0.2%