Search Results (84992 CVEs found)

CVE Vendors Products Updated CVSS v3.1
CVE-2026-22339 2 Jobster Marketplace, Wordpress 2 Wpjobster, Wordpress 2026-06-20 7.1 High
Unauthenticated Cross Site Scripting (XSS) in WPJobster <= 6.3.5 versions.
CVE-2026-22342 2 Premiumpress Limited., Wordpress 2 Wordpress Dating Theme, Wordpress 2026-06-20 8.8 High
Unauthenticated Cross Site Request Forgery (CSRF) in WordPress Dating Theme <= 11.2.0 versions.
CVE-2026-22343 2 Premiumpress Limited., Wordpress 2 Wordpress Dating Theme, Wordpress 2026-06-20 8.6 High
Unauthenticated Broken Access Control in WordPress Dating Theme <= 11.2.0 versions.
CVE-2026-27400 2 Ovatheme, Wordpress 2 Bookpro, Wordpress 2026-06-20 8.6 High
Unauthenticated Arbitrary File Deletion in BookPro <= 1.1.0 versions.
CVE-2026-39545 2 Select-themes, Wordpress 2 Zermatt, Wordpress 2026-06-20 8.1 High
Unauthenticated PHP Object Injection in Zermatt <= 1.6.1 versions.
CVE-2026-39573 2 Select-themes, Wordpress 2 Mildhill, Wordpress 2026-06-20 8.1 High
Unauthenticated PHP Object Injection in Mildhill <= 1.5 versions.
CVE-2026-39582 2 Wordpress, Xtemos 2 Wordpress, Hitek 2026-06-20 8.1 High
Unauthenticated Local File Inclusion in Hitek < 1.8.3 versions.
CVE-2026-40726 2 Themegrill, Wordpress 2 User Registration Stripe, Wordpress 2026-06-20 8.2 High
Unauthenticated Broken Access Control in User Registration Stripe <= 1.3.14 versions.
CVE-2026-40753 2 Mikado-themes, Wordpress 2 Easymeals, Wordpress 2026-06-20 8.1 High
Unauthenticated PHP Object Injection in EasyMeals <= 1.5.1 versions.
CVE-2026-40765 2 Collectchat, Wordpress 2 Collectchat, Wordpress 2026-06-20 7.1 High
Unauthenticated Cross Site Scripting (XSS) in collectchat <= 2.4.9 versions.
CVE-2026-40768 2 Dimitri Grassi, Wordpress 2 Salon Booking System, Wordpress 2026-06-20 7.3 High
Unauthenticated Insecure Direct Object References (IDOR) in Salon booking system <= 10.30.24 versions.
CVE-2026-41557 2 Presslayouts, Wordpress 2 Kapee, Wordpress 2026-06-20 7.1 High
Unauthenticated Cross Site Scripting (XSS) in Kapee < 1.7.1 versions.
CVE-2026-49074 2 Jetimpex Inc., Wordpress 2 Jetengine, Wordpress 2026-06-20 7.1 High
Unauthenticated Cross Site Scripting (XSS) in JetEngine <= 3.8.9.1 versions.
CVE-2026-49081 2 Themegrill, Wordpress 2 User Registration Stripe, Wordpress 2026-06-20 8.2 High
Unauthenticated Broken Access Control in User Registration Stripe <= 1.3.12 versions.
CVE-2026-52696 2 Jetimpex Inc., Wordpress 2 Jetblog, Wordpress 2026-06-20 7.5 High
Unauthenticated Sensitive Data Exposure in JetBlog <= 2.4.8 versions.
CVE-2026-52698 2 Syed Balkhi, Wordpress 2 Pushengage – Web Push Notifications, Ecommerce Automation & Chat Widget, Wordpress 2026-06-20 7.4 High
Subscriber Sensitive Data Exposure in PushEngage – Web Push Notifications, eCommerce Automation &amp; Chat Widget <= 4.2.3 versions.
CVE-2026-54184 2 Alberto Hornero, Wordpress 2 Clean Login, Wordpress 2026-06-20 8.2 High
Unauthenticated Insecure Direct Object References (IDOR) in Clean Login <= 1.15 versions.
CVE-2026-54185 2 Themeco, Wordpress 2 Cornerstone, Wordpress 2026-06-20 8.5 High
Subscriber SQL Injection in Cornerstone < 7.8.8 versions.
CVE-2026-54188 2 Jetimpex Inc., Wordpress 2 Jetengine, Wordpress 2026-06-20 7.1 High
Unauthenticated Cross Site Scripting (XSS) in JetEngine <= 3.8.10 versions.
CVE-2026-54189 2 Jetimpex Inc., Wordpress 2 Jetengine, Wordpress 2026-06-20 7.1 High
Unauthenticated Cross Site Scripting (XSS) in JetEngine <= 3.8.10 versions.