π¨ CVE-2026-65513
Unauthenticated Cross Site Scripting (XSS) in Simply Schedule Appointments <= 1.6.12.10 versions.
π@cveNotify
Unauthenticated Cross Site Scripting (XSS) in Simply Schedule Appointments <= 1.6.12.10 versions.
π@cveNotify
Patchstack
Cross Site Scripting (XSS) in WordPress Simply Schedule Appointments Plugin
Patchstack is the leading open source vulnerability research organization. Find information and protection for all WordPress, Drupal and Joomla security issues.
π¨ CVE-2026-65515
Unauthenticated Cross Site Scripting (XSS) in AffiliateWP <= 2.35.0 versions.
π@cveNotify
Unauthenticated Cross Site Scripting (XSS) in AffiliateWP <= 2.35.0 versions.
π@cveNotify
Patchstack
Cross Site Scripting (XSS) in WordPress AffiliateWP Plugin
Patchstack is the leading open source vulnerability research organization. Find information and protection for all WordPress, Drupal and Joomla security issues.
π¨ CVE-2026-65517
Unauthenticated Cross Site Scripting (XSS) in Easy PayPal Buy Now Button <= 2.0.4 versions.
π@cveNotify
Unauthenticated Cross Site Scripting (XSS) in Easy PayPal Buy Now Button <= 2.0.4 versions.
π@cveNotify
Patchstack
Cross Site Scripting (XSS) in WordPress Easy PayPal Buy Now Button Plugin
Patchstack is the leading open source vulnerability research organization. Find information and protection for all WordPress, Drupal and Joomla security issues.
π¨ CVE-2026-65520
Unauthenticated SQL Injection in WP OAuth Server <= 6.2.0 versions.
π@cveNotify
Unauthenticated SQL Injection in WP OAuth Server <= 6.2.0 versions.
π@cveNotify
Patchstack
SQL Injection in WordPress WP OAuth Server Plugin
Patchstack is the leading open source vulnerability research organization. Find information and protection for all WordPress, Drupal and Joomla security issues.
π¨ CVE-2026-65523
Unauthenticated Insecure Direct Object References (IDOR) in Formidable Forms Signature Online Contract Automation <= 2.0.1 versions.
π@cveNotify
Unauthenticated Insecure Direct Object References (IDOR) in Formidable Forms Signature Online Contract Automation <= 2.0.1 versions.
π@cveNotify
Patchstack
Insecure Direct Object References (IDOR) in WordPress Formidable Forms Signature Online Contract Automation Plugin
Patchstack is the leading open source vulnerability research organization. Find information and protection for all WordPress, Drupal and Joomla security issues.
π¨ CVE-2026-65541
Unauthenticated Broken Access Control in Staff Training <= 1.0.7 versions.
π@cveNotify
Unauthenticated Broken Access Control in Staff Training <= 1.0.7 versions.
π@cveNotify
Patchstack
Broken Access Control in WordPress Staff Training Plugin
Patchstack is the leading open source vulnerability research organization. Find information and protection for all WordPress, Drupal and Joomla security issues.
π¨ CVE-2026-65542
Unauthenticated Broken Authentication in Super Socializer <= 7.14.5 versions.
π@cveNotify
Unauthenticated Broken Authentication in Super Socializer <= 7.14.5 versions.
π@cveNotify
Patchstack
Broken Authentication in WordPress Super Socializer Plugin
Patchstack is the leading open source vulnerability research organization. Find information and protection for all WordPress, Drupal and Joomla security issues.
π¨ CVE-2026-65544
Unauthenticated Cross Site Scripting (XSS) in Super Socializer <= 7.14.5 versions.
π@cveNotify
Unauthenticated Cross Site Scripting (XSS) in Super Socializer <= 7.14.5 versions.
π@cveNotify
Patchstack
Cross Site Scripting (XSS) in WordPress Super Socializer Plugin
Patchstack is the leading open source vulnerability research organization. Find information and protection for all WordPress, Drupal and Joomla security issues.
π¨ CVE-2026-65545
Unauthenticated Cross Site Scripting (XSS) in AI Engine <= 3.6.8 versions.
π@cveNotify
Unauthenticated Cross Site Scripting (XSS) in AI Engine <= 3.6.8 versions.
π@cveNotify
Patchstack
Cross Site Scripting (XSS) in WordPress AI Engine Plugin
Patchstack is the leading open source vulnerability research organization. Find information and protection for all WordPress, Drupal and Joomla security issues.
π¨ CVE-2026-65548
Contributor Remote Code Execution (RCE) in Betheme <= 28.4.2 versions.
π@cveNotify
Contributor Remote Code Execution (RCE) in Betheme <= 28.4.2 versions.
π@cveNotify
Patchstack
Remote Code Execution (RCE) in WordPress Betheme Theme
Patchstack is the leading open source vulnerability research organization. Find information and protection for all WordPress, Drupal and Joomla security issues.
π¨ CVE-2026-65549
Author PHP Object Injection in Jeg Kit for Elementor <= 3.2.10 versions.
π@cveNotify
Author PHP Object Injection in Jeg Kit for Elementor <= 3.2.10 versions.
π@cveNotify
Patchstack
PHP Object Injection in WordPress Jeg Kit for Elementor Plugin
Patchstack is the leading open source vulnerability research organization. Find information and protection for all WordPress, Drupal and Joomla security issues.
π¨ CVE-2026-65552
Subscriber PHP Object Injection in Export User Data <= 2.2.6 versions.
π@cveNotify
Subscriber PHP Object Injection in Export User Data <= 2.2.6 versions.
π@cveNotify
Patchstack
PHP Object Injection in WordPress Export User Data Plugin
Patchstack is the leading open source vulnerability research organization. Find information and protection for all WordPress, Drupal and Joomla security issues.
π¨ CVE-2026-65553
Unauthenticated Remote Code Execution (RCE) in Spider Analyser – WordPressζη΄’εΌζθθεζζδ»Ά <= 2.1.3 versions.
π@cveNotify
Unauthenticated Remote Code Execution (RCE) in Spider Analyser – WordPressζη΄’εΌζθθεζζδ»Ά <= 2.1.3 versions.
π@cveNotify
Patchstack
Remote Code Execution (RCE) in WordPress Spider Analyser β WordPressζη΄’εΌζθθεζζδ»Ά Plugin
Patchstack is the leading open source vulnerability research organization. Find information and protection for all WordPress, Drupal and Joomla security issues.
π¨ CVE-2026-65556
Unauthenticated PHP Object Injection in WPBruiser {no- Captcha anti-Spam} <= 3.1.43 versions.
π@cveNotify
Unauthenticated PHP Object Injection in WPBruiser {no- Captcha anti-Spam} <= 3.1.43 versions.
π@cveNotify
Patchstack
PHP Object Injection in WordPress WPBruiser {no- Captcha anti-Spam} Plugin
Patchstack is the leading open source vulnerability research organization. Find information and protection for all WordPress, Drupal and Joomla security issues.
π¨ CVE-2026-65559
Shop manager Privilege Escalation in Order Delivery Date for WooCommerce <= 4.6.0 versions.
π@cveNotify
Shop manager Privilege Escalation in Order Delivery Date for WooCommerce <= 4.6.0 versions.
π@cveNotify
Patchstack
Privilege Escalation in WordPress Order Delivery Date for WooCommerce Plugin
Patchstack is the leading open source vulnerability research organization. Find information and protection for all WordPress, Drupal and Joomla security issues.
π¨ CVE-2026-65560
Unauthenticated Cross Site Scripting (XSS) in Houzez Property Feed <= 2.5.48 versions.
π@cveNotify
Unauthenticated Cross Site Scripting (XSS) in Houzez Property Feed <= 2.5.48 versions.
π@cveNotify
Patchstack
Cross Site Scripting (XSS) in WordPress Houzez Property Feed Plugin
Patchstack is the leading open source vulnerability research organization. Find information and protection for all WordPress, Drupal and Joomla security issues.
π¨ CVE-2026-65565
Unauthenticated Cross Site Scripting (XSS) in Survey Maker <= 5.2.3.3 versions.
π@cveNotify
Unauthenticated Cross Site Scripting (XSS) in Survey Maker <= 5.2.3.3 versions.
π@cveNotify
Patchstack
Cross Site Scripting (XSS) in WordPress Survey Maker Plugin
Patchstack is the leading open source vulnerability research organization. Find information and protection for all WordPress, Drupal and Joomla security issues.