Security Database
All CVEs
Browse all security vulnerabilities from 1999 to present
CVEs published in 2026-08
| CVE ID | Published | Updated | Assigner | Description | |
|---|---|---|---|---|---|
| CVE-2026-68583 | 2026-08-02 12:15:29 | 2026-08-02 12:19:29 | VulnCheck | luci-app-adblock-fast before 1.2.4-4 contains a stored cross-site scripting… | Details |
| CVE-2026-68582 | 2026-08-02 12:15:28 | 2026-08-02 12:19:28 | VulnCheck | Vikunja versions >= 0.24.0 and <= 2.3.0 contain… | Details |
| CVE-2026-68581 | 2026-08-02 12:15:27 | 2026-08-02 12:19:27 | VulnCheck | Vikunja versions 0.22.0 through 2.3.0 fail to validate… | Details |
| CVE-2026-68580 | 2026-08-02 12:15:27 | 2026-08-02 12:19:27 | VulnCheck | FreeRDP before 3.29.0 contains integer overflow vulnerabilities in… | Details |
| CVE-2026-68579 | 2026-08-02 12:15:26 | 2026-08-02 12:19:26 | VulnCheck | FreeRDP before 3.30.0 (<= 3.29.0) contains a heap-based… | Details |
| CVE-2026-68578 | 2026-08-02 12:15:25 | 2026-08-02 12:19:25 | VulnCheck | ArcadeDB versions before 26.7.3 fail to bind the… | Details |
| CVE-2026-67357 | 2026-08-02 12:15:25 | 2026-08-02 12:19:25 | VulnCheck | ArcadeDB versions before 26.7.3 contain an information disclosure… | Details |
| CVE-2026-67356 | 2026-08-02 12:15:24 | 2026-08-02 12:19:24 | VulnCheck | ArcadeDB before 26.7.3 binds the real LocalDatabase object… | Details |
| CVE-2025-71401 | 2026-08-02 12:15:23 | 2026-08-02 12:19:23 | VulnCheck | better-auth (npm) before 1.4.2 allows an external request… | Details |
| CVE-2025-71399 | 2026-08-02 12:15:22 | 2026-08-02 12:19:22 | VulnCheck | Better Auth relies on better-call, which uses the… | Details |
| CVE-2025-71400 | 2026-08-02 12:15:22 | 2026-08-02 12:19:22 | VulnCheck | better-auth passkey versions before 1.4.0 contain an insecure… | Details |
| CVE-2026-67321 | 2026-08-01 12:22:18 | 2026-08-02 11:57:56 | VulnCheck | axios versions 0.31.1 before 0.33.0 and 1.15.1 before… | Details |
| CVE-2026-67315 | 2026-08-01 12:22:18 | 2026-08-02 11:57:51 | VulnCheck | axios versions 0.31.0 before 0.33.0 and 1.15.0 before… | Details |
| CVE-2026-67309 | 2026-08-01 12:22:18 | 2026-08-02 11:57:41 | VulnCheck | Traefik versions >= v3.7.0 and <= v3.7.7 contain… | Details |
| CVE-2026-67308 | 2026-08-01 12:22:17 | 2026-08-02 11:57:34 | VulnCheck | Wazuh workflows before 44bf114 contain a shell injection… | Details |
| CVE-2026-12231 | 2026-08-02 08:33:00 | 2026-08-02 08:33:00 | Wordfence | The Exclusive Addons for Elementor plugin for WordPress… | Details |
| CVE-2026-15236 | 2026-08-02 06:00:14 | 2026-08-02 06:00:14 | WPScan | The Gallery for Google Photos WordPress plugin… | Details |
| CVE-2025-15675 | 2026-08-02 06:00:13 | 2026-08-02 06:00:13 | WPScan | The Charitable WordPress plugin before 1.8.5.3 does… | Details |
| CVE-2026-16540 | 2026-08-02 06:00:13 | 2026-08-02 06:00:13 | WPScan | The Simply Schedule Appointments WordPress plugin before 1.6.12.6… | Details |
| CVE-2026-13389 | 2026-08-02 06:00:13 | 2026-08-02 06:00:13 | WPScan | The webtoffee-cookie-consent WordPress plugin before 3.5.3 does not… | Details |
| CVE-2026-16062 | 2026-08-02 06:00:12 | 2026-08-02 06:00:12 | WPScan | The Event Booking Manager for WooCommerce WordPress… | Details |
| CVE-2026-16063 | 2026-08-02 06:00:12 | 2026-08-02 06:00:12 | WPScan | The Event Booking Manager for WooCommerce WordPress… | Details |
| CVE-2026-16064 | 2026-08-02 06:00:12 | 2026-08-02 06:00:12 | WPScan | The Event Booking Manager for WooCommerce WordPress… | Details |
| CVE-2026-16292 | 2026-08-02 06:00:12 | 2026-08-02 06:00:12 | WPScan | The Frontend File Manager Plugin WordPress plugin through… | Details |
| CVE-2026-16291 | 2026-08-02 06:00:12 | 2026-08-02 06:00:12 | WPScan | The ProfileGrid WordPress plugin before 5.9.9.8 does… | Details |
| CVE-2026-16285 | 2026-08-02 06:00:12 | 2026-08-02 06:00:12 | WPScan | The Product Attachment for WooCommerce WordPress plugin before… | Details |
| CVE-2026-16273 | 2026-08-02 06:00:11 | 2026-08-02 06:00:11 | WPScan | The Narrative Publisher WordPress plugin through 1.0.7 does… | Details |
| CVE-2026-16042 | 2026-08-02 06:00:11 | 2026-08-02 06:00:11 | WPScan | The LWS Optimize WordPress plugin before 3.4… | Details |
| CVE-2026-16261 | 2026-08-02 06:00:11 | 2026-08-02 06:00:11 | WPScan | The login-social WordPress plugin through 1.0.4 does not… | Details |
| CVE-2026-16256 | 2026-08-02 06:00:10 | 2026-08-02 06:00:10 | WPScan | The POUCO Import Users WordPress plugin through 1.0.0… | Details |
| CVE-2026-14817 | 2026-08-02 06:00:10 | 2026-08-02 06:00:10 | WPScan | The Element Pack Addons for Elementor WordPress… | Details |
| CVE-2026-12586 | 2026-08-02 06:00:10 | 2026-08-02 06:00:10 | WPScan | The Lenxel WP WordPress theme through 1.0.31 does… | Details |
| CVE-2026-15385 | 2026-08-02 06:00:10 | 2026-08-02 06:00:10 | WPScan | The RT Mega Menu WordPress plugin before… | Details |
| CVE-2026-15939 | 2026-08-02 06:00:10 | 2026-08-02 06:00:10 | WPScan | The Simple Restrict WordPress plugin before 1.2.9 does… | Details |
| CVE-2026-11872 | 2026-08-02 06:00:10 | 2026-08-02 06:00:10 | WPScan | The Clever Mega Menu for Visual Composer WordPress… | Details |
| CVE-2026-15248 | 2026-08-02 06:00:09 | 2026-08-02 06:00:09 | WPScan | The Meta Box WordPress plugin before 5.13.1 does… | Details |
| CVE-2026-15241 | 2026-08-02 06:00:09 | 2026-08-02 06:00:09 | WPScan | The AI ChatBot for WooCommerce WordPress plugin… | Details |
| CVE-2026-15206 | 2026-08-02 06:00:09 | 2026-08-02 06:00:09 | WPScan | The SMS Alert WordPress plugin before 3.9.8… | Details |
| CVE-2026-14938 | 2026-08-02 06:00:08 | 2026-08-02 06:00:08 | WPScan | The FluentBoards WordPress plugin before 1.95.3 does… | Details |
| CVE-2026-14864 | 2026-08-02 06:00:08 | 2026-08-02 06:00:08 | WPScan | The JetEngine WordPress plugin before 3.8.12 does not… | Details |
| CVE-2026-14920 | 2026-08-02 06:00:08 | 2026-08-02 06:00:08 | WPScan | ## Summary… | Details |
| CVE-2026-15151 | 2026-08-02 06:00:08 | 2026-08-02 06:00:08 | WPScan | The Five Star Restaurant Reservations WordPress plugin… | Details |
| CVE-2026-14841 | 2026-08-02 06:00:07 | 2026-08-02 06:00:07 | WPScan | The King Addons for Elementor WordPress plugin… | Details |
| CVE-2026-18573 | 2026-08-02 05:28:43 | 2026-08-02 05:28:43 | redhat | A flaw was found in the keycloak-services component… | Details |
| CVE-2026-18572 | 2026-08-02 05:18:58 | 2026-08-02 05:18:58 | redhat | Keycloak provides authorization services that allow administrators to… | Details |
| CVE-2026-18571 | 2026-08-02 05:18:50 | 2026-08-02 05:18:50 | redhat | A flaw was found in the user creation… | Details |
| CVE-2026-18570 | 2026-08-02 05:18:42 | 2026-08-02 05:18:42 | redhat | A flaw was found in the full-scope-disabled client-policy… | Details |
| CVE-2026-9335 | 2026-08-02 03:49:25 | 2026-08-02 03:49:25 | @huntr_ai | A vulnerability in keras-team/keras versions <= 3.14.0 allows… | Details |
| CVE-2026-8457 | 2026-08-01 23:29:35 | 2026-08-01 23:29:35 | Wordfence | The WooCommerce - Social Login plugin for WordPress… | Details |
| CVE-2026-13339 | 2026-08-01 23:29:35 | 2026-08-01 23:29:35 | Wordfence | The CubeWP Framework plugin for WordPress is vulnerable… | Details |
| CVE-2026-18352 | 2026-08-01 23:29:34 | 2026-08-01 23:29:34 | Wordfence | The User Access Manager plugin for WordPress is… | Details |
| CVE-2026-18556 | 2026-08-01 19:59:30 | 2026-08-01 19:59:30 | N-able | Authentication bypass using an alternate path or channel… | Details |
| CVE-2026-55734 | 2026-08-01 18:46:24 | 2026-08-01 18:46:24 | EEF | Allocation of Resources Without Limits or Throttling vulnerability… | Details |
| CVE-2026-55733 | 2026-08-01 18:46:12 | 2026-08-01 18:46:12 | EEF | Allocation of Resources Without Limits or Throttling in… | Details |
| CVE-2026-55735 | 2026-08-01 18:46:05 | 2026-08-01 18:46:05 | EEF | Improper Verification of Cryptographic Signature in ueberauth guardian… | Details |
| CVE-2026-54894 | 2026-08-01 18:46:05 | 2026-08-01 18:46:05 | EEF | Allocation of Resources Without Limits or Throttling in… | Details |
| CVE-2026-18536 | 2026-08-01 10:35:38 | 2026-08-01 15:23:24 | CPANSec | Data::Entropy versions before 0.010 for Perl read remote… | Details |
| CVE-2025-71403 | 2026-08-01 12:22:18 | 2026-08-01 12:22:18 | VulnCheck | better-auth versions before 1.1.20 contain a bypass vulnerability… | Details |
| CVE-2026-66401 | 2026-08-01 12:22:18 | 2026-08-01 12:22:18 | VulnCheck | FreeRDP before 3.29.0 contains an out-of-bounds heap read… | Details |
| CVE-2026-67302 | 2026-08-01 12:22:18 | 2026-08-01 12:22:18 | VulnCheck | FreeRDP before 3.29.0 (affected versions <= 3.28.0) contains… | Details |
| CVE-2026-67333 | 2026-08-01 12:22:18 | 2026-08-01 12:22:18 | VulnCheck | better-auth before 1.6.13 (and pre-release builds 1.7.0-beta.0 through… | Details |
| CVE-2026-67340 | 2026-08-01 12:22:18 | 2026-08-01 12:22:18 | VulnCheck | ArcadeDB before 26.7.2 (arcadedb-engine) allows trigger scripts to… | Details |
| CVE-2026-67291 | 2026-08-01 12:22:18 | 2026-08-01 12:22:18 | VulnCheck | FreeRDP before 3.29.0 (affected versions <= 3.28.0) contains… | Details |
| CVE-2026-67300 | 2026-08-01 12:22:18 | 2026-08-01 12:22:18 | VulnCheck | FreeRDP before 3.29.0 contains client-side heap use-after-free vulnerabilities… | Details |
| CVE-2026-67326 | 2026-08-01 12:22:18 | 2026-08-01 12:22:18 | VulnCheck | GitPython before 3.1.50 fails to validate newline characters… | Details |
| CVE-2026-67299 | 2026-08-01 12:22:18 | 2026-08-01 12:22:18 | VulnCheck | FreeRDP before 3.29.0 contains a client-side heap use-after-free… | Details |
| CVE-2026-67354 | 2026-08-01 12:22:18 | 2026-08-01 12:22:18 | VulnCheck | guzzlehttp/guzzle versions before 7.15.1 contain an information disclosure… | Details |
| CVE-2026-67324 | 2026-08-01 12:22:18 | 2026-08-01 12:22:18 | VulnCheck | GitPython 3.1.50 fails to recognize joined short-option forms… | Details |
| CVE-2026-67334 | 2026-08-01 12:22:18 | 2026-08-01 12:22:18 | VulnCheck | better-auth versions before 1.6.11 fail to delete cached… | Details |
| CVE-2026-67295 | 2026-08-01 12:22:18 | 2026-08-01 12:22:18 | VulnCheck | FreeRDP before 3.29.0 fails to properly validate server-supplied… | Details |
| CVE-2026-67292 | 2026-08-01 12:22:18 | 2026-08-01 12:22:18 | VulnCheck | FreeRDP before 3.29.0 contains a buffer over-disclosure vulnerability… | Details |
| CVE-2026-67298 | 2026-08-01 12:22:18 | 2026-08-01 12:22:18 | VulnCheck | FreeRDP versions 3.28.0 and earlier contain a heap… | Details |
| CVE-2026-67319 | 2026-08-01 12:22:18 | 2026-08-01 12:22:18 | VulnCheck | axios before 0.33.0 (and 1.x before 1.18.0) can… | Details |
| CVE-2026-67329 | 2026-08-01 12:22:18 | 2026-08-01 12:22:18 | VulnCheck | @better-auth/stripe versions >= 1.4.11 and < 1.6.21, and… | Details |
| CVE-2026-67318 | 2026-08-01 12:22:18 | 2026-08-01 12:22:18 | VulnCheck | axios versions >=1.13.0 (Node.js HTTP adapter) fail to… | Details |
| CVE-2026-67341 | 2026-08-01 12:22:18 | 2026-08-01 12:22:18 | VulnCheck | ArcadeDB versions before 26.7.2 fail to enforce scripting… | Details |
| CVE-2026-67344 | 2026-08-01 12:22:18 | 2026-08-01 12:22:18 | VulnCheck | ArcadeDB before 26.7.2 fails to enforce the UPDATE_SCHEMA… | Details |
| CVE-2026-67332 | 2026-08-01 12:22:18 | 2026-08-01 12:22:18 | VulnCheck | @better-auth/oauth-provider before 1.7.0-beta.4 fails to bind access-token audience… | Details |
| CVE-2026-67316 | 2026-08-01 12:22:18 | 2026-08-01 12:22:18 | VulnCheck | axios is vulnerable to read-side prototype-pollution gadgets that… | Details |
| CVE-2026-67311 | 2026-08-01 12:22:18 | 2026-08-01 12:22:18 | VulnCheck | Budibase before 3.38.1 contains a server-side request forgery… | Details |
| CVE-2026-67303 | 2026-08-01 12:22:18 | 2026-08-01 12:22:18 | VulnCheck | FreeRDP before 3.29.0 contains a reachable assertion (WINPR_ASSERT(OutputBufferLength… | Details |
| CVE-2026-67337 | 2026-08-01 12:22:18 | 2026-08-01 12:22:18 | VulnCheck | better-auth versions before 1.4.9 contain a two-factor authentication… | Details |
| CVE-2026-67336 | 2026-08-01 12:22:18 | 2026-08-01 12:22:18 | VulnCheck | better-auth versions before 1.6.11 contain insecure cryptographic defaults… | Details |
| CVE-2026-67323 | 2026-08-01 12:22:18 | 2026-08-01 12:22:18 | VulnCheck | GitPython before 3.1.51 fails to guard against dangerous… | Details |
| CVE-2026-67306 | 2026-08-01 12:22:18 | 2026-08-01 12:22:18 | VulnCheck | FreeRDP versions 3.28.0 and earlier contain an out-of-bounds… | Details |
| CVE-2026-67288 | 2026-08-01 12:22:18 | 2026-08-01 12:22:18 | VulnCheck | FreeRDP before 3.29.0 contains a null pointer dereference… | Details |
| CVE-2026-67307 | 2026-08-01 12:22:18 | 2026-08-01 12:22:18 | VulnCheck | Wazuh 5.0.0-beta1 (fixed in 5.0.0-beta3) does not validate… | Details |
| CVE-2026-67312 | 2026-08-01 12:22:18 | 2026-08-01 12:22:18 | VulnCheck | axios versions from 0.28.0 before 0.33.0 and from… | Details |
| CVE-2025-71404 | 2026-08-01 12:22:17 | 2026-08-01 12:22:17 | VulnCheck | better-auth versions after v0.0.2 and before 1.1.16 contain… | Details |
| CVE-2026-66402 | 2026-08-01 12:22:17 | 2026-08-01 12:22:17 | VulnCheck | FreeRDP before 3.29.0 (affected versions <= 3.28.0) contains… | Details |
| CVE-2026-67338 | 2026-08-01 12:22:17 | 2026-08-01 12:22:17 | VulnCheck | JupyterLab before 4.5.9 contains a stored cross-site scripting… | Details |
| CVE-2026-67304 | 2026-08-01 12:22:17 | 2026-08-01 12:22:17 | VulnCheck | FreeRDP before 3.29.0 contains a null pointer dereference… | Details |
| CVE-2026-67328 | 2026-08-01 12:22:17 | 2026-08-01 12:22:17 | VulnCheck | @better-auth/sso versions before 1.6.21 contain multiple authentication bypass… | Details |
| CVE-2026-67331 | 2026-08-01 12:22:17 | 2026-08-01 12:22:17 | VulnCheck | better-auth SCIM versions from 1.5.0 before 1.7.0-beta.4 fail… | Details |
| CVE-2026-67310 | 2026-08-01 12:22:17 | 2026-08-01 12:22:17 | VulnCheck | OpenRemote (org.openremote:openremote) versions <= 1.26.2 contain an insecure… | Details |
| CVE-2026-67355 | 2026-08-01 12:22:17 | 2026-08-01 12:22:17 | VulnCheck | guzzlehttp/guzzle versions before 7.15.1 fail to preserve host-only… | Details |
| CVE-2026-67353 | 2026-08-01 12:22:17 | 2026-08-01 12:22:17 | VulnCheck | guzzlehttp/guzzle versions before 7.15.1 contain a denial of… | Details |
| CVE-2026-67343 | 2026-08-01 12:22:17 | 2026-08-01 12:22:17 | VulnCheck | ArcadeDB versions before 26.7.2 fail to properly redact… | Details |
| CVE-2026-67289 | 2026-08-01 12:22:17 | 2026-08-01 12:22:17 | VulnCheck | FreeRDP before 3.29.0 (affected versions <= 3.28.0) does… | Details |
| CVE-2026-67294 | 2026-08-01 12:22:17 | 2026-08-01 12:22:17 | VulnCheck | FreeRDP before 3.29.0 improperly validates the Extended Key… | Details |
| CVE-2026-67339 | 2026-08-01 12:22:17 | 2026-08-01 12:22:17 | VulnCheck | guzzlehttp/guzzle versions before 7.14.2 fail to properly isolate… | Details |
| CVE-2026-67296 | 2026-08-01 12:22:17 | 2026-08-01 12:22:17 | VulnCheck | FreeRDP before 3.29.0 contains a denial of service… | Details |
| CVE-2026-67322 | 2026-08-01 12:22:17 | 2026-08-01 12:22:17 | VulnCheck | GitPython before 3.1.52 is vulnerable to environment-variable exfiltration… | Details |
| CVE-2026-67320 | 2026-08-01 12:22:17 | 2026-08-01 12:22:17 | VulnCheck | axios in a Node.js deployment using the HTTP… | Details |
| CVE-2026-67327 | 2026-08-01 12:22:17 | 2026-08-01 12:22:17 | VulnCheck | better-auth versions >= 1.1.3 and < 1.6.22 (and… | Details |
| CVE-2026-67335 | 2026-08-01 12:22:17 | 2026-08-01 12:22:17 | VulnCheck | better-auth versions before 1.6.2 fail to validate the… | Details |
| CVE-2025-71402 | 2026-08-01 12:22:16 | 2026-08-01 12:22:16 | VulnCheck | better-auth versions greater than 1.3.34 and before 1.4.0… | Details |
| CVE-2026-67330 | 2026-08-01 12:22:16 | 2026-08-01 12:22:16 | VulnCheck | @better-auth/scim (a better-auth plugin) versions >= 1.4.0-beta.27 through… | Details |
| CVE-2026-67313 | 2026-08-01 12:22:16 | 2026-08-01 12:22:16 | VulnCheck | axios versions 0.28.0 and later contain uncontrolled recursion… | Details |
| CVE-2026-67352 | 2026-08-01 12:22:16 | 2026-08-01 12:22:16 | VulnCheck | luci-app-https-dns-proxy contains a stored cross-site scripting vulnerability in… | Details |
| CVE-2026-67290 | 2026-08-01 12:22:16 | 2026-08-01 12:22:16 | VulnCheck | FreeRDP before 3.29.0 contains a heap out-of-bounds read… | Details |
| CVE-2026-67301 | 2026-08-01 12:22:16 | 2026-08-01 12:22:16 | VulnCheck | FreeRDP before 3.29.0 contains out-of-bounds read vulnerabilities in… | Details |
| CVE-2026-67317 | 2026-08-01 12:22:16 | 2026-08-01 12:22:16 | VulnCheck | axios versions 1.7.0 before 1.18.0 fail to enforce… | Details |
| CVE-2026-67342 | 2026-08-01 12:22:16 | 2026-08-01 12:22:16 | VulnCheck | ArcadeDB versions before 26.7.2 contain an authorization bypass… | Details |
| CVE-2026-67297 | 2026-08-01 12:22:16 | 2026-08-01 12:22:16 | VulnCheck | FreeRDP before 3.29.0 fails to enforce the RESPONSE_SIZE_LIMIT… | Details |
| CVE-2026-67325 | 2026-08-01 12:22:16 | 2026-08-01 12:22:16 | VulnCheck | GitPython before 3.1.51 contains an incomplete command injection… | Details |
| CVE-2026-67305 | 2026-08-01 12:22:16 | 2026-08-01 12:22:16 | VulnCheck | FreeRDP Windows client before 3.29.0 contains a heap… | Details |
| CVE-2026-67293 | 2026-08-01 12:22:16 | 2026-08-01 12:22:16 | VulnCheck | FreeRDP before 3.29.0 (affected versions <= 3.28.0) contains… | Details |
| CVE-2026-67314 | 2026-08-01 12:22:16 | 2026-08-01 12:22:16 | VulnCheck | axios versions >=1.15.2 and <1.18.0 contain prototype-pollution read-side… | Details |
| CVE-2026-10773 | 2026-08-01 12:21:17 | 2026-08-01 12:21:17 | zephyr | The DHCPv4 client helper net_dhcpv4_msg_type_name() in subsys/net/lib/dhcpv4/dhcpv4.c indexes… | Details |
| CVE-2026-2411 | 2026-08-01 12:06:41 | 2026-08-01 12:06:41 | zephyr | Zephyr's Bluetooth host declares a GATT characteristic as… | Details |
| CVE-2026-16635 | 2026-08-01 08:32:29 | 2026-08-01 08:32:29 | Wordfence | The Pronamic Pay plugin for WordPress is vulnerable… | Details |
| CVE-2026-18344 | 2026-08-01 08:32:29 | 2026-08-01 08:32:29 | Wordfence | The Wp Responsive Thumbnail Slider plugin for WordPress… | Details |
| CVE-2025-14073 | 2026-08-01 08:32:28 | 2026-08-01 08:32:28 | Wordfence | The WooCommerce PayPal Payments plugin for WordPress is… | Details |
| CVE-2026-6453 | 2026-08-01 08:32:28 | 2026-08-01 08:32:28 | Wordfence | The CubeWP Framework plugin for WordPress is vulnerable… | Details |
| CVE-2026-15644 | 2026-08-01 08:32:28 | 2026-08-01 08:32:28 | Wordfence | The Powerkit – Supercharge your WordPress Site plugin… | Details |
| CVE-2026-17571 | 2026-08-01 08:32:27 | 2026-08-01 08:32:27 | Wordfence | The Fluent Forms – Customizable Contact Forms, Survey,… | Details |
| CVE-2026-17555 | 2026-08-01 08:32:27 | 2026-08-01 08:32:27 | Wordfence | The WPvivid Backup & Migration plugin for WordPress… | Details |
| CVE-2026-15964 | 2026-08-01 08:32:27 | 2026-08-01 08:32:27 | Wordfence | The Single Sign On For TNG plugin for… | Details |
| CVE-2026-16091 | 2026-08-01 07:49:53 | 2026-08-01 07:49:53 | Wordfence | The GamiPress – Gamification plugin to reward points,… | Details |
| CVE-2026-17580 | 2026-08-01 07:49:53 | 2026-08-01 07:49:53 | Wordfence | The Advanced Views – Display Custom Fields (ACF,… | Details |
| CVE-2026-15649 | 2026-08-01 07:49:53 | 2026-08-01 07:49:53 | Wordfence | The Powerkit – Supercharge your WordPress Site plugin… | Details |
| CVE-2026-15950 | 2026-08-01 07:49:52 | 2026-08-01 07:49:52 | Wordfence | The Cozy Blocks – Page Builder for Gutenberg… | Details |
| CVE-2026-18059 | 2026-08-01 07:49:52 | 2026-08-01 07:49:52 | Wordfence | The PixelYourSite – Your smart PIXEL (TAG) &… | Details |
| CVE-2026-17605 | 2026-08-01 07:49:51 | 2026-08-01 07:49:51 | Wordfence | The Payment forms, Buy now buttons, and Invoicing… | Details |
| CVE-2026-15052 | 2026-08-01 07:49:51 | 2026-08-01 07:49:51 | Wordfence | The MailChimp Subscribe Form, Optin Builder, PopUp Builder,… | Details |
| CVE-2026-15450 | 2026-08-01 07:49:51 | 2026-08-01 07:49:51 | Wordfence | The Nex Forms – Ultimate Form Builder –… | Details |
| CVE-2026-16144 | 2026-08-01 07:49:50 | 2026-08-01 07:49:50 | Wordfence | The Kali Forms — Contact Form & Drag-and-Drop… | Details |
| CVE-2026-15951 | 2026-08-01 07:49:50 | 2026-08-01 07:49:50 | Wordfence | The Icegram Mailer plugin for WordPress is vulnerable… | Details |
| CVE-2026-16614 | 2026-08-01 07:49:49 | 2026-08-01 07:49:49 | Wordfence | The GSheetConnector – CF7 Google Sheets Connector with… | Details |
| CVE-2026-15018 | 2026-08-01 07:49:49 | 2026-08-01 07:49:49 | Wordfence | The Database Collation Fix plugin for WordPress is… | Details |
| CVE-2026-11995 | 2026-08-01 07:49:49 | 2026-08-01 07:49:49 | Wordfence | The Gutena Forms – Contact Form, Survey Form,… | Details |
| CVE-2026-16685 | 2026-08-01 07:49:48 | 2026-08-01 07:49:48 | Wordfence | The Download Manager plugin for WordPress is vulnerable… | Details |
| CVE-2026-16090 | 2026-08-01 07:49:48 | 2026-08-01 07:49:48 | Wordfence | The GamiPress – Gamification plugin to reward points,… | Details |
| CVE-2026-15645 | 2026-08-01 07:49:47 | 2026-08-01 07:49:47 | Wordfence | The Powerkit – Supercharge your WordPress Site plugin… | Details |
| CVE-2026-18435 | 2026-08-01 07:49:47 | 2026-08-01 07:49:47 | Wordfence | The Kadence Blocks — Page Builder Toolkit for… | Details |
| CVE-2026-18062 | 2026-08-01 07:49:47 | 2026-08-01 07:49:47 | Wordfence | The Kadence Blocks — Page Builder Toolkit for… | Details |
| CVE-2026-15601 | 2026-08-01 07:49:46 | 2026-08-01 07:49:46 | Wordfence | The Kirki – Freeform Page Builder, Website Builder… | Details |
| CVE-2026-15662 | 2026-08-01 07:49:46 | 2026-08-01 07:49:46 | Wordfence | The Advanced Woo Labels – Product Labels &… | Details |
| CVE-2026-16087 | 2026-08-01 07:49:45 | 2026-08-01 07:49:45 | Wordfence | The Icegram Engage – Popups, Optins, CTAs &… | Details |
| CVE-2026-10782 | 2026-08-01 07:49:45 | 2026-08-01 07:49:45 | Wordfence | The RealHomes Memberships plugin for WordPress is vulnerable… | Details |
| CVE-2026-13458 | 2026-08-01 07:49:45 | 2026-08-01 07:49:45 | Wordfence | The GenerateBlocks plugin for WordPress is vulnerable to… | Details |
| CVE-2026-16684 | 2026-08-01 07:49:44 | 2026-08-01 07:49:44 | Wordfence | The Easy Property Listings plugin for WordPress is… | Details |
| CVE-2026-2916 | 2026-08-01 06:48:48 | 2026-08-01 06:48:48 | Wordfence | The Jeg Kit for Elementor plugin for WordPress… | Details |
| CVE-2026-15988 | 2026-08-01 06:48:48 | 2026-08-01 06:48:48 | Wordfence | The AI Engine – The Chatbot, AI Framework… | Details |
| CVE-2025-14469 | 2026-08-01 06:48:47 | 2026-08-01 06:48:47 | Wordfence | The Theme Editor plugin for WordPress is vulnerable… | Details |
| CVE-2026-14840 | 2026-08-01 06:00:14 | 2026-08-01 06:00:14 | WPScan | The YOP Poll WordPress plugin before 7.0.6 does… | Details |
| CVE-2026-14839 | 2026-08-01 06:00:14 | 2026-08-01 06:00:14 | WPScan | The Mapster WP Maps WordPress plugin before 1.24.0… | Details |
| CVE-2026-14561 | 2026-08-01 06:00:13 | 2026-08-01 06:00:13 | WPScan | The Authora : Easy login with mobile number… | Details |
| CVE-2026-14822 | 2026-08-01 06:00:13 | 2026-08-01 06:00:13 | WPScan | The Event Tickets and Registration WordPress plugin before… | Details |
| CVE-2026-14823 | 2026-08-01 06:00:13 | 2026-08-01 06:00:13 | WPScan | The Event Tickets and Registration WordPress plugin before… | Details |
| CVE-2026-14315 | 2026-08-01 06:00:13 | 2026-08-01 06:00:13 | WPScan | The Pixel Tag Manager for WooCommerce WordPress… | Details |
| CVE-2026-14214 | 2026-08-01 06:00:13 | 2026-08-01 06:00:13 | WPScan | The Booking for Appointments and Events Calendar … | Details |
| CVE-2026-14292 | 2026-08-01 06:00:13 | 2026-08-01 06:00:13 | WPScan | The Download Manager WordPress plugin before 3.3.66 does… | Details |
| CVE-2026-14195 | 2026-08-01 06:00:12 | 2026-08-01 06:00:12 | WPScan | The Brizy WordPress plugin before 2.8.18 does… | Details |
| CVE-2026-13725 | 2026-08-01 06:00:12 | 2026-08-01 06:00:12 | WPScan | The Dynamic Pricing With Discount Rules for WooCommerce… | Details |
| CVE-2026-13729 | 2026-08-01 06:00:12 | 2026-08-01 06:00:12 | WPScan | The Podlove Podcast Publisher WordPress plugin before 4.5.3… | Details |
| CVE-2026-13596 | 2026-08-01 06:00:12 | 2026-08-01 06:00:12 | WPScan | The Participants Database WordPress plugin before 2.7.8.4 does… | Details |
| CVE-2026-13604 | 2026-08-01 06:00:12 | 2026-08-01 06:00:12 | WPScan | The Pixelavo WordPress plugin before 1.5.4 registers… | Details |
| CVE-2026-12696 | 2026-08-01 06:00:11 | 2026-08-01 06:00:11 | WPScan | The wpForo Forum WordPress plugin before 3.1.2 does… | Details |
| CVE-2026-10827 | 2026-08-01 06:00:11 | 2026-08-01 06:00:11 | WPScan | The Spectra Legacy WordPress plugin before 2.20.0… | Details |
| CVE-2026-13157 | 2026-08-01 06:00:11 | 2026-08-01 06:00:11 | WPScan | The Demo Import WordPress plugin through 1.1.3… | Details |
| CVE-2026-13329 | 2026-08-01 06:00:11 | 2026-08-01 06:00:11 | WPScan | The Buckaroo Woocommerce Payments Plugin WordPress plugin before… | Details |
| CVE-2026-11882 | 2026-08-01 06:00:11 | 2026-08-01 06:00:11 | WPScan | The Builderall for WordPress plugin before 3.0.2 does… | Details |
| CVE-2026-13158 | 2026-08-01 06:00:10 | 2026-08-01 06:00:10 | WPScan | The Everest Toolkit WordPress plugin through 1.2.3 does… | Details |
| CVE-2026-15262 | 2026-08-01 06:00:10 | 2026-08-01 06:00:10 | WPScan | The Admin Columns for ACF Fields WordPress plugin… | Details |
| CVE-2026-15234 | 2026-08-01 06:00:10 | 2026-08-01 06:00:10 | WPScan | The Codeless Page Builder WordPress plugin through 1.1.4… | Details |
| CVE-2026-14836 | 2026-08-01 06:00:09 | 2026-08-01 06:00:09 | WPScan | The Login & Register Forms WordPress plugin… | Details |
| CVE-2026-15368 | 2026-08-01 06:00:09 | 2026-08-01 06:00:09 | WPScan | The User Profile Builder WordPress plugin before… | Details |
| CVE-2026-15244 | 2026-08-01 06:00:09 | 2026-08-01 06:00:09 | WPScan | The HUSKY WordPress plugin before 1.4.1 does… | Details |
| CVE-2025-15669 | 2026-08-01 06:00:08 | 2026-08-01 06:00:08 | WPScan | The Bit Form WordPress plugin before 3.1.4… | Details |
| CVE-2026-14197 | 2026-08-01 06:00:08 | 2026-08-01 06:00:08 | WPScan | The Fluent Support WordPress plugin before 2.3.1… | Details |
| CVE-2026-14309 | 2026-08-01 06:00:08 | 2026-08-01 06:00:08 | WPScan | The Chat On Desk Order Notifications WordPress… | Details |
| CVE-2026-14596 | 2026-08-01 06:00:08 | 2026-08-01 06:00:08 | WPScan | The DynamicKit for Elementor WordPress plugin before 1.0.3… | Details |
| CVE-2026-12966 | 2026-08-01 06:00:08 | 2026-08-01 06:00:08 | WPScan | The Direct Payments for WooCommerce WordPress plugin… | Details |
| CVE-2026-15932 | 2026-08-01 06:00:07 | 2026-08-01 06:00:07 | WPScan | The Support Genix WordPress plugin before 1.4.48… | Details |
| CVE-2026-3141 | 2026-08-01 05:33:54 | 2026-08-01 05:33:54 | Wordfence | The FormGent plugin for WordPress is vulnerable to… | Details |
| CVE-2026-15403 | 2026-08-01 01:29:57 | 2026-08-01 01:29:57 | Wordfence | The Pinpoint Booking System – Version 2 plugin… | Details |
| CVE-2026-13362 | 2026-08-01 01:29:56 | 2026-08-01 01:29:56 | Wordfence | The SendPulse Email Marketing Newsletter plugin for WordPress… | Details |
| CVE-2026-15414 | 2026-08-01 01:29:56 | 2026-08-01 01:29:56 | Wordfence | The Subscriptions for WooCommerce plugin for WordPress is… | Details |
| CVE-2026-15006 | 2026-08-01 01:29:56 | 2026-08-01 01:29:56 | Wordfence | The Bit integrations – Form Integration, Webhook, Spreadsheets,… | Details |
| CVE-2026-7623 | 2026-08-01 01:29:55 | 2026-08-01 01:29:55 | Wordfence | The SureForms – Contact Form, Payment Form &… | Details |