🚨 CVE-2026-22328
Unauthenticated Cross Site Scripting (XSS) in Auto Repair <= 22.6 versions.
🎖@cveNotify
Unauthenticated Cross Site Scripting (XSS) in Auto Repair <= 22.6 versions.
🎖@cveNotify
Patchstack
Cross Site Scripting (XSS) in WordPress Auto Repair Theme
Patchstack is the leading open source vulnerability research organization. Find information and protection for all WordPress, Drupal and Joomla security issues.
🚨 CVE-2026-22329
Unauthenticated Cross Site Scripting (XSS) in Skillate <= 1.2.10 versions.
🎖@cveNotify
Unauthenticated Cross Site Scripting (XSS) in Skillate <= 1.2.10 versions.
🎖@cveNotify
Patchstack
Cross Site Scripting (XSS) in WordPress Skillate Theme
Patchstack is the leading open source vulnerability research organization. Find information and protection for all WordPress, Drupal and Joomla security issues.
🚨 CVE-2026-22335
Subscriber SQL Injection in WooCommerce Frontend Manager – Ultimate < 6.7.7 versions.
🎖@cveNotify
Subscriber SQL Injection in WooCommerce Frontend Manager – Ultimate < 6.7.7 versions.
🎖@cveNotify
Patchstack
SQL Injection in WordPress WooCommerce Frontend Manager – Ultimate Plugin
Patchstack is the leading open source vulnerability research organization. Find information and protection for all WordPress, Drupal and Joomla security issues.
🚨 CVE-2026-22339
Unauthenticated Cross Site Scripting (XSS) in WPJobster <= 6.3.5 versions.
🎖@cveNotify
Unauthenticated Cross Site Scripting (XSS) in WPJobster <= 6.3.5 versions.
🎖@cveNotify
Patchstack
Cross Site Scripting (XSS) in WordPress WPJobster Theme
Patchstack is the leading open source vulnerability research organization. Find information and protection for all WordPress, Drupal and Joomla security issues.
🚨 CVE-2026-22342
Unauthenticated Cross Site Request Forgery (CSRF) in WordPress Dating Theme <= 11.2.0 versions.
🎖@cveNotify
Unauthenticated Cross Site Request Forgery (CSRF) in WordPress Dating Theme <= 11.2.0 versions.
🎖@cveNotify
Patchstack
Cross Site Request Forgery (CSRF) in WordPress WordPress Dating Theme Theme
Patchstack is the leading open source vulnerability research organization. Find information and protection for all WordPress, Drupal and Joomla security issues.
🚨 CVE-2026-22343
Unauthenticated Broken Access Control in WordPress Dating Theme <= 11.2.0 versions.
🎖@cveNotify
Unauthenticated Broken Access Control in WordPress Dating Theme <= 11.2.0 versions.
🎖@cveNotify
Patchstack
Broken Access Control in WordPress WordPress Dating Theme Theme
Patchstack is the leading open source vulnerability research organization. Find information and protection for all WordPress, Drupal and Joomla security issues.
🚨 CVE-2026-24575
Subscriber Broken Access Control in WishList Member X <= 3.29.0 versions.
🎖@cveNotify
Subscriber Broken Access Control in WishList Member X <= 3.29.0 versions.
🎖@cveNotify
Patchstack
Broken Access Control in WordPress WishList Member X Plugin
Patchstack is the leading open source vulnerability research organization. Find information and protection for all WordPress, Drupal and Joomla security issues.
🚨 CVE-2026-25446
Subscriber Arbitrary File Upload in WishList Member X <= 3.29.0 versions.
🎖@cveNotify
Subscriber Arbitrary File Upload in WishList Member X <= 3.29.0 versions.
🎖@cveNotify
Patchstack
Arbitrary File Upload in WordPress WishList Member X Plugin
Patchstack is the leading open source vulnerability research organization. Find information and protection for all WordPress, Drupal and Joomla security issues.
🚨 CVE-2026-25470
Improper Control of Generation of Code ('Code Injection') vulnerability in ACPT ACPT (Pro) - Custom Post Types Plugin for WordPress allows Remote Code Inclusion.
This issue affects ACPT (Pro) - Custom Post Types Plugin for WordPress: from n/a through 2.0.47.
🎖@cveNotify
Improper Control of Generation of Code ('Code Injection') vulnerability in ACPT ACPT (Pro) - Custom Post Types Plugin for WordPress allows Remote Code Inclusion.
This issue affects ACPT (Pro) - Custom Post Types Plugin for WordPress: from n/a through 2.0.47.
🎖@cveNotify
Patchstack
Remote Code Execution (RCE) in WordPress ACPT (Pro) - Custom Post Types Plugin for WordPress Plugin
Patchstack is the leading open source vulnerability research organization. Find information and protection for all WordPress, Drupal and Joomla security issues.
🚨 CVE-2026-27041
Contributor Arbitrary File Upload in Unlimited Elements for Elementor (Premium) <= 2.0.6 versions.
🎖@cveNotify
Contributor Arbitrary File Upload in Unlimited Elements for Elementor (Premium) <= 2.0.6 versions.
🎖@cveNotify
Patchstack
Arbitrary File Upload in WordPress Unlimited Elements for Elementor (Premium) Plugin
Patchstack is the leading open source vulnerability research organization. Find information and protection for all WordPress, Drupal and Joomla security issues.