🚨 CVE-2026-65465
Contributor Cross Site Scripting (XSS) in JetElements For Elementor <= 2.9.1.1 versions.
🎖@cveNotify
Contributor Cross Site Scripting (XSS) in JetElements For Elementor <= 2.9.1.1 versions.
🎖@cveNotify
Patchstack
Cross Site Scripting (XSS) in WordPress JetElements For Elementor Plugin
Patchstack is the leading open source vulnerability research organization. Find information and protection for all WordPress, Drupal and Joomla security issues.
🚨 CVE-2026-65466
Custom role Server Side Request Forgery (SSRF) in JetBooking <= 4.1.2 versions.
🎖@cveNotify
Custom role Server Side Request Forgery (SSRF) in JetBooking <= 4.1.2 versions.
🎖@cveNotify
Patchstack
Server Side Request Forgery (SSRF) in WordPress JetBooking Plugin
Patchstack is the leading open source vulnerability research organization. Find information and protection for all WordPress, Drupal and Joomla security issues.
🚨 CVE-2026-65471
Unauthenticated Cross Site Request Forgery (CSRF) in Avada Core <= 5.15.6 versions.
🎖@cveNotify
Unauthenticated Cross Site Request Forgery (CSRF) in Avada Core <= 5.15.6 versions.
🎖@cveNotify
Patchstack
Cross Site Request Forgery (CSRF) in WordPress Avada Core Plugin
Patchstack is the leading open source vulnerability research organization. Find information and protection for all WordPress, Drupal and Joomla security issues.
🚨 CVE-2026-65472
Unauthenticated Broken Access Control in Kit (formerly ConvertKit) <= 3.3.5 versions.
🎖@cveNotify
Unauthenticated Broken Access Control in Kit (formerly ConvertKit) <= 3.3.5 versions.
🎖@cveNotify
Patchstack
Broken Access Control in WordPress Kit (formerly ConvertKit) Plugin
Patchstack is the leading open source vulnerability research organization. Find information and protection for all WordPress, Drupal and Joomla security issues.
🚨 CVE-2026-65474
Unauthenticated Sensitive Data Exposure in Ninja Tables <= 5.2.10 versions.
🎖@cveNotify
Unauthenticated Sensitive Data Exposure in Ninja Tables <= 5.2.10 versions.
🎖@cveNotify
Patchstack
Sensitive Data Exposure in WordPress Ninja Tables Plugin
Patchstack is the leading open source vulnerability research organization. Find information and protection for all WordPress, Drupal and Joomla security issues.
🚨 CVE-2026-65490
Unauthenticated Sensitive Data Exposure in Create by Mediavine <= 2.5.3 versions.
🎖@cveNotify
Unauthenticated Sensitive Data Exposure in Create by Mediavine <= 2.5.3 versions.
🎖@cveNotify
Patchstack
Sensitive Data Exposure in WordPress Create by Mediavine Plugin
Patchstack is the leading open source vulnerability research organization. Find information and protection for all WordPress, Drupal and Joomla security issues.
🚨 CVE-2026-65496
Author Server Side Request Forgery (SSRF) in Complianz <= 7.5.0 versions.
🎖@cveNotify
Author Server Side Request Forgery (SSRF) in Complianz <= 7.5.0 versions.
🎖@cveNotify
Patchstack
Server Side Request Forgery (SSRF) in WordPress Complianz Plugin
Patchstack is the leading open source vulnerability research organization. Find information and protection for all WordPress, Drupal and Joomla security issues.
🚨 CVE-2026-65499
Unauthenticated Broken Access Control in PeproDev Ultimate Invoice <= 2.2.6 versions.
🎖@cveNotify
Unauthenticated Broken Access Control in PeproDev Ultimate Invoice <= 2.2.6 versions.
🎖@cveNotify
Patchstack
Broken Access Control in WordPress PeproDev Ultimate Invoice Plugin
Patchstack is the leading open source vulnerability research organization. Find information and protection for all WordPress, Drupal and Joomla security issues.
🚨 CVE-2026-65503
Contributor Cross Site Scripting (XSS) in Ultimate Store Kit Elementor Addons <= 3.0.5 versions.
🎖@cveNotify
Contributor Cross Site Scripting (XSS) in Ultimate Store Kit Elementor Addons <= 3.0.5 versions.
🎖@cveNotify
Patchstack
Cross Site Scripting (XSS) in WordPress Ultimate Store Kit Elementor Addons Plugin
Patchstack is the leading open source vulnerability research organization. Find information and protection for all WordPress, Drupal and Joomla security issues.
🚨 CVE-2026-65514
Contributor Cross Site Scripting (XSS) in Appointment Hour Booking <= 1.5.86 versions.
🎖@cveNotify
Contributor Cross Site Scripting (XSS) in Appointment Hour Booking <= 1.5.86 versions.
🎖@cveNotify
Patchstack
Cross Site Scripting (XSS) in WordPress Appointment Hour Booking Plugin
Patchstack is the leading open source vulnerability research organization. Find information and protection for all WordPress, Drupal and Joomla security issues.
🚨 CVE-2026-65524
Contributor Broken Access Control in Avada Custom Branding <= 1.2 versions.
🎖@cveNotify
Contributor Broken Access Control in Avada Custom Branding <= 1.2 versions.
🎖@cveNotify
Patchstack
Broken Access Control in WordPress Avada Custom Branding Plugin
Patchstack is the leading open source vulnerability research organization. Find information and protection for all WordPress, Drupal and Joomla security issues.
🚨 CVE-2026-65527
Contributor Cross Site Scripting (XSS) in LIQUID SPEECH BALLOON <= 1.2.5 versions.
🎖@cveNotify
Contributor Cross Site Scripting (XSS) in LIQUID SPEECH BALLOON <= 1.2.5 versions.
🎖@cveNotify
Patchstack
Cross Site Scripting (XSS) in WordPress LIQUID SPEECH BALLOON Plugin
Patchstack is the leading open source vulnerability research organization. Find information and protection for all WordPress, Drupal and Joomla security issues.