Search
Search Results (84992 CVEs found)
| CVE | Vendors | Products | Updated | CVSS v3.1 |
|---|---|---|---|---|
| CVE-2026-22339 | 2 Jobster Marketplace, Wordpress | 2 Wpjobster, Wordpress | 2026-06-20 | 7.1 High |
| Unauthenticated Cross Site Scripting (XSS) in WPJobster <= 6.3.5 versions. | ||||
| CVE-2026-22342 | 2 Premiumpress Limited., Wordpress | 2 Wordpress Dating Theme, Wordpress | 2026-06-20 | 8.8 High |
| Unauthenticated Cross Site Request Forgery (CSRF) in WordPress Dating Theme <= 11.2.0 versions. | ||||
| CVE-2026-22343 | 2 Premiumpress Limited., Wordpress | 2 Wordpress Dating Theme, Wordpress | 2026-06-20 | 8.6 High |
| Unauthenticated Broken Access Control in WordPress Dating Theme <= 11.2.0 versions. | ||||
| CVE-2026-27400 | 2 Ovatheme, Wordpress | 2 Bookpro, Wordpress | 2026-06-20 | 8.6 High |
| Unauthenticated Arbitrary File Deletion in BookPro <= 1.1.0 versions. | ||||
| CVE-2026-39545 | 2 Select-themes, Wordpress | 2 Zermatt, Wordpress | 2026-06-20 | 8.1 High |
| Unauthenticated PHP Object Injection in Zermatt <= 1.6.1 versions. | ||||
| CVE-2026-39573 | 2 Select-themes, Wordpress | 2 Mildhill, Wordpress | 2026-06-20 | 8.1 High |
| Unauthenticated PHP Object Injection in Mildhill <= 1.5 versions. | ||||
| CVE-2026-39582 | 2 Wordpress, Xtemos | 2 Wordpress, Hitek | 2026-06-20 | 8.1 High |
| Unauthenticated Local File Inclusion in Hitek < 1.8.3 versions. | ||||
| CVE-2026-40726 | 2 Themegrill, Wordpress | 2 User Registration Stripe, Wordpress | 2026-06-20 | 8.2 High |
| Unauthenticated Broken Access Control in User Registration Stripe <= 1.3.14 versions. | ||||
| CVE-2026-40753 | 2 Mikado-themes, Wordpress | 2 Easymeals, Wordpress | 2026-06-20 | 8.1 High |
| Unauthenticated PHP Object Injection in EasyMeals <= 1.5.1 versions. | ||||
| CVE-2026-40765 | 2 Collectchat, Wordpress | 2 Collectchat, Wordpress | 2026-06-20 | 7.1 High |
| Unauthenticated Cross Site Scripting (XSS) in collectchat <= 2.4.9 versions. | ||||
| CVE-2026-40768 | 2 Dimitri Grassi, Wordpress | 2 Salon Booking System, Wordpress | 2026-06-20 | 7.3 High |
| Unauthenticated Insecure Direct Object References (IDOR) in Salon booking system <= 10.30.24 versions. | ||||
| CVE-2026-41557 | 2 Presslayouts, Wordpress | 2 Kapee, Wordpress | 2026-06-20 | 7.1 High |
| Unauthenticated Cross Site Scripting (XSS) in Kapee < 1.7.1 versions. | ||||
| CVE-2026-49074 | 2 Jetimpex Inc., Wordpress | 2 Jetengine, Wordpress | 2026-06-20 | 7.1 High |
| Unauthenticated Cross Site Scripting (XSS) in JetEngine <= 3.8.9.1 versions. | ||||
| CVE-2026-49081 | 2 Themegrill, Wordpress | 2 User Registration Stripe, Wordpress | 2026-06-20 | 8.2 High |
| Unauthenticated Broken Access Control in User Registration Stripe <= 1.3.12 versions. | ||||
| CVE-2026-52696 | 2 Jetimpex Inc., Wordpress | 2 Jetblog, Wordpress | 2026-06-20 | 7.5 High |
| Unauthenticated Sensitive Data Exposure in JetBlog <= 2.4.8 versions. | ||||
| CVE-2026-52698 | 2 Syed Balkhi, Wordpress | 2 Pushengage – Web Push Notifications, Ecommerce Automation & Chat Widget, Wordpress | 2026-06-20 | 7.4 High |
| Subscriber Sensitive Data Exposure in PushEngage – Web Push Notifications, eCommerce Automation & Chat Widget <= 4.2.3 versions. | ||||
| CVE-2026-54184 | 2 Alberto Hornero, Wordpress | 2 Clean Login, Wordpress | 2026-06-20 | 8.2 High |
| Unauthenticated Insecure Direct Object References (IDOR) in Clean Login <= 1.15 versions. | ||||
| CVE-2026-54185 | 2 Themeco, Wordpress | 2 Cornerstone, Wordpress | 2026-06-20 | 8.5 High |
| Subscriber SQL Injection in Cornerstone < 7.8.8 versions. | ||||
| CVE-2026-54188 | 2 Jetimpex Inc., Wordpress | 2 Jetengine, Wordpress | 2026-06-20 | 7.1 High |
| Unauthenticated Cross Site Scripting (XSS) in JetEngine <= 3.8.10 versions. | ||||
| CVE-2026-54189 | 2 Jetimpex Inc., Wordpress | 2 Jetengine, Wordpress | 2026-06-20 | 7.1 High |
| Unauthenticated Cross Site Scripting (XSS) in JetEngine <= 3.8.10 versions. | ||||