๐จ CVE-2026-65433
Subscriber Broken Access Control in RT Mega Menu โ Mega Menu Builder for Elementor & Gutenberg <= 1.5.1 versions.
๐@cveNotify
Subscriber Broken Access Control in RT Mega Menu โ Mega Menu Builder for Elementor & Gutenberg <= 1.5.1 versions.
๐@cveNotify
Patchstack
Broken Access Control in WordPress RT Mega Menu โ Mega Menu Builder for Elementor & Gutenberg Plugin
Patchstack is the leading open source vulnerability research organization. Find information and protection for all WordPress, Drupal and Joomla security issues.
๐จ CVE-2026-65434
Subscriber Sensitive Data Exposure in ะฎKassa ะดะปั WooCommerce <= 2.16.1 versions.
๐@cveNotify
Subscriber Sensitive Data Exposure in ะฎKassa ะดะปั WooCommerce <= 2.16.1 versions.
๐@cveNotify
Patchstack
Sensitive Data Exposure in WordPress ะฎKassa ะดะปั WooCommerce Plugin
Patchstack is the leading open source vulnerability research organization. Find information and protection for all WordPress, Drupal and Joomla security issues.
๐จ CVE-2026-65435
Unauthenticated Broken Access Control in Thrive Leads Version <= 10.9.2 versions.
๐@cveNotify
Unauthenticated Broken Access Control in Thrive Leads Version <= 10.9.2 versions.
๐@cveNotify
Patchstack
Broken Access Control in WordPress Thrive Leads Version Plugin
Patchstack is the leading open source vulnerability research organization. Find information and protection for all WordPress, Drupal and Joomla security issues.
๐จ CVE-2026-65557
Shop manager Cross Site Scripting (XSS) in Abandoned Cart Lite for WooCommerce <= 6.8.0 versions.
๐@cveNotify
Shop manager Cross Site Scripting (XSS) in Abandoned Cart Lite for WooCommerce <= 6.8.0 versions.
๐@cveNotify
Patchstack
Cross Site Scripting (XSS) in WordPress Abandoned Cart Lite for WooCommerce Plugin
Patchstack is the leading open source vulnerability research organization. Find information and protection for all WordPress, Drupal and Joomla security issues.
๐จ CVE-2026-65558
Unauthenticated Server Side Request Forgery (SSRF) in AffiliateX <= 2.3.5 versions.
๐@cveNotify
Unauthenticated Server Side Request Forgery (SSRF) in AffiliateX <= 2.3.5 versions.
๐@cveNotify
Patchstack
Server Side Request Forgery (SSRF) in WordPress AffiliateX Plugin
Patchstack is the leading open source vulnerability research organization. Find information and protection for all WordPress, Drupal and Joomla security issues.
๐จ CVE-2026-65561
Contributor Cross Site Scripting (XSS) in WordPress Social Login and Register <= 7.8.0 versions.
๐@cveNotify
Contributor Cross Site Scripting (XSS) in WordPress Social Login and Register <= 7.8.0 versions.
๐@cveNotify
Patchstack
Cross Site Scripting (XSS) in WordPress WordPress Social Login and Register Plugin
Patchstack is the leading open source vulnerability research organization. Find information and protection for all WordPress, Drupal and Joomla security issues.
๐จ CVE-2026-65562
Contributor Cross Site Scripting (XSS) in BetterDocs <= 4.6.2 versions.
๐@cveNotify
Contributor Cross Site Scripting (XSS) in BetterDocs <= 4.6.2 versions.
๐@cveNotify
Patchstack
Cross Site Scripting (XSS) in WordPress BetterDocs Plugin
Patchstack is the leading open source vulnerability research organization. Find information and protection for all WordPress, Drupal and Joomla security issues.
๐จ CVE-2026-65563
Author Cross Site Scripting (XSS) in Orbit Fox by ThemeIsle <= 3.0.7 versions.
๐@cveNotify
Author Cross Site Scripting (XSS) in Orbit Fox by ThemeIsle <= 3.0.7 versions.
๐@cveNotify
Patchstack
Cross Site Scripting (XSS) in WordPress Orbit Fox by ThemeIsle Plugin
Patchstack is the leading open source vulnerability research organization. Find information and protection for all WordPress, Drupal and Joomla security issues.
๐จ CVE-2026-65567
Unauthenticated Broken Access Control in Event Tickets <= 5.29.0.1 versions.
๐@cveNotify
Unauthenticated Broken Access Control in Event Tickets <= 5.29.0.1 versions.
๐@cveNotify
๐จ CVE-2026-65568
Contributor Broken Access Control in Visual Composer Website Builder <= 45.15.0 versions.
๐@cveNotify
Contributor Broken Access Control in Visual Composer Website Builder <= 45.15.0 versions.
๐@cveNotify
Patchstack
Broken Access Control in WordPress Visual Composer Website Builder Plugin
Patchstack is the leading open source vulnerability research organization. Find information and protection for all WordPress, Drupal and Joomla security issues.
๐จ CVE-2026-66427
Administrator SQL Injection in WP Google Review Slider <= 18.4 versions.
๐@cveNotify
Administrator SQL Injection in WP Google Review Slider <= 18.4 versions.
๐@cveNotify
Patchstack
SQL Injection in WordPress WP Google Review Slider Plugin
Patchstack is the leading open source vulnerability research organization. Find information and protection for all WordPress, Drupal and Joomla security issues.
๐จ CVE-2026-66428
Unauthenticated Cross Site Request Forgery (CSRF) in WP Google Review Slider <= 18.4 versions.
๐@cveNotify
Unauthenticated Cross Site Request Forgery (CSRF) in WP Google Review Slider <= 18.4 versions.
๐@cveNotify
Patchstack
Cross Site Request Forgery (CSRF) in WordPress WP Google Review Slider Plugin
Patchstack is the leading open source vulnerability research organization. Find information and protection for all WordPress, Drupal and Joomla security issues.
๐จ CVE-2026-66433
Contributor Cross Site Scripting (XSS) in Location Weather <= 3.0.6 versions.
๐@cveNotify
Contributor Cross Site Scripting (XSS) in Location Weather <= 3.0.6 versions.
๐@cveNotify
Patchstack
Cross Site Scripting (XSS) in WordPress Location Weather Plugin
Patchstack is the leading open source vulnerability research organization. Find information and protection for all WordPress, Drupal and Joomla security issues.
๐จ CVE-2026-66434
Contributor Cross Site Scripting (XSS) in Photonic Gallery & Lightbox for Flickr, SmugMug & Others <= 3.33 versions.
๐@cveNotify
Contributor Cross Site Scripting (XSS) in Photonic Gallery & Lightbox for Flickr, SmugMug & Others <= 3.33 versions.
๐@cveNotify
Patchstack
Cross Site Scripting (XSS) in WordPress Photonic Gallery & Lightbox for Flickr, SmugMug & Others Plugin
Patchstack is the leading open source vulnerability research organization. Find information and protection for all WordPress, Drupal and Joomla security issues.
๐จ CVE-2026-66437
Contributor Server Side Request Forgery (SSRF) in Feedzy <= 5.2.4 versions.
๐@cveNotify
Contributor Server Side Request Forgery (SSRF) in Feedzy <= 5.2.4 versions.
๐@cveNotify
Patchstack
Server Side Request Forgery (SSRF) in WordPress Feedzy Plugin
Patchstack is the leading open source vulnerability research organization. Find information and protection for all WordPress, Drupal and Joomla security issues.
๐จ CVE-2026-66438
Unauthenticated Sensitive Data Exposure in Exclusive Addons Elementor <= 2.8.0 versions.
๐@cveNotify
Unauthenticated Sensitive Data Exposure in Exclusive Addons Elementor <= 2.8.0 versions.
๐@cveNotify
Patchstack
Sensitive Data Exposure in WordPress Exclusive Addons Elementor Plugin
Patchstack is the leading open source vulnerability research organization. Find information and protection for all WordPress, Drupal and Joomla security issues.
๐จ CVE-2026-66445
Contributor Cross Site Scripting (XSS) in Open User Map <= 1.4.46 versions.
๐@cveNotify
Contributor Cross Site Scripting (XSS) in Open User Map <= 1.4.46 versions.
๐@cveNotify
Patchstack
Cross Site Scripting (XSS) in WordPress Open User Map Plugin
Patchstack is the leading open source vulnerability research organization. Find information and protection for all WordPress, Drupal and Joomla security issues.
๐จ CVE-2026-66448
Contributor Cross Site Scripting (XSS) in Gallery PhotoBlocks <= 1.3.3 versions.
๐@cveNotify
Contributor Cross Site Scripting (XSS) in Gallery PhotoBlocks <= 1.3.3 versions.
๐@cveNotify
Patchstack
Cross Site Scripting (XSS) in WordPress Gallery PhotoBlocks Plugin
Patchstack is the leading open source vulnerability research organization. Find information and protection for all WordPress, Drupal and Joomla security issues.