π¨ CVE-2026-66452
Unauthenticated Broken Access Control in Legal Text Connector of the IT-Recht Kanzlei <= 1.0.13 versions.
π@cveNotify
Unauthenticated Broken Access Control in Legal Text Connector of the IT-Recht Kanzlei <= 1.0.13 versions.
π@cveNotify
Patchstack
Broken Access Control in WordPress Legal Text Connector of the IT-Recht Kanzlei Plugin
Patchstack is the leading open source vulnerability research organization. Find information and protection for all WordPress, Drupal and Joomla security issues.
π¨ CVE-2026-66457
Unauthenticated Cross Site Scripting (XSS) in Events Manager <= 7.4.1 versions.
π@cveNotify
Unauthenticated Cross Site Scripting (XSS) in Events Manager <= 7.4.1 versions.
π@cveNotify
Patchstack
Cross Site Scripting (XSS) in WordPress Events Manager Plugin
Patchstack is the leading open source vulnerability research organization. Find information and protection for all WordPress, Drupal and Joomla security issues.
π¨ CVE-2026-66470
Subscriber Broken Access Control in Frontend Admin by DynamiApps <= 3.29.10 versions.
π@cveNotify
Subscriber Broken Access Control in Frontend Admin by DynamiApps <= 3.29.10 versions.
π@cveNotify
Patchstack
Broken Access Control in WordPress Frontend Admin by DynamiApps Plugin
Patchstack is the leading open source vulnerability research organization. Find information and protection for all WordPress, Drupal and Joomla security issues.
π¨ CVE-2026-66662
Unauthenticated Privilege Escalation in Frontend Admin by DynamiApps <= 3.29.10 versions.
π@cveNotify
Unauthenticated Privilege Escalation in Frontend Admin by DynamiApps <= 3.29.10 versions.
π@cveNotify
Patchstack
Privilege Escalation in WordPress Frontend Admin by DynamiApps Plugin
Patchstack is the leading open source vulnerability research organization. Find information and protection for all WordPress, Drupal and Joomla security issues.
π¨ CVE-2026-66663
Unauthenticated Cross Site Scripting (XSS) in WP Data Access <= 5.5.79 versions.
π@cveNotify
Unauthenticated Cross Site Scripting (XSS) in WP Data Access <= 5.5.79 versions.
π@cveNotify
Patchstack
Cross Site Scripting (XSS) in WordPress WP Data Access Plugin
Patchstack is the leading open source vulnerability research organization. Find information and protection for all WordPress, Drupal and Joomla security issues.
π¨ CVE-2026-66664
Unauthenticated Cross Site Scripting (XSS) in SEO Plugin by Squirrly SEO <= 14.2.0 versions.
π@cveNotify
Unauthenticated Cross Site Scripting (XSS) in SEO Plugin by Squirrly SEO <= 14.2.0 versions.
π@cveNotify
Patchstack
Cross Site Scripting (XSS) in WordPress SEO Plugin by Squirrly SEO Plugin
Patchstack is the leading open source vulnerability research organization. Find information and protection for all WordPress, Drupal and Joomla security issues.
π¨ CVE-2026-66665
Unauthenticated Arbitrary File Upload in Type Hub <= 2.0.6 versions.
π@cveNotify
Unauthenticated Arbitrary File Upload in Type Hub <= 2.0.6 versions.
π@cveNotify
Patchstack
Arbitrary File Upload in WordPress Type Hub Plugin
Patchstack is the leading open source vulnerability research organization. Find information and protection for all WordPress, Drupal and Joomla security issues.
π¨ CVE-2026-66678
Contributor Broken Access Control in Advanced Custom Fields: Font Awesome Field <= 6.1.1 versions.
π@cveNotify
Contributor Broken Access Control in Advanced Custom Fields: Font Awesome Field <= 6.1.1 versions.
π@cveNotify
Patchstack
Broken Access Control in WordPress Advanced Custom Fields: Font Awesome Field Plugin
Patchstack is the leading open source vulnerability research organization. Find information and protection for all WordPress, Drupal and Joomla security issues.
π¨ CVE-2026-66681
Unauthenticated Cross Site Request Forgery (CSRF) in Theme My Login <= 7.1.14 versions.
π@cveNotify
Unauthenticated Cross Site Request Forgery (CSRF) in Theme My Login <= 7.1.14 versions.
π@cveNotify
Patchstack
Cross Site Request Forgery (CSRF) in WordPress Theme My Login Plugin
Patchstack is the leading open source vulnerability research organization. Find information and protection for all WordPress, Drupal and Joomla security issues.
π¨ CVE-2026-66683
Unauthenticated Sensitive Data Exposure in Custom CSS and JavaScript <= 2.0.16 versions.
π@cveNotify
Unauthenticated Sensitive Data Exposure in Custom CSS and JavaScript <= 2.0.16 versions.
π@cveNotify
Patchstack
Sensitive Data Exposure in WordPress Custom CSS and JavaScript Plugin
Patchstack is the leading open source vulnerability research organization. Find information and protection for all WordPress, Drupal and Joomla security issues.
π¨ CVE-2026-66684
Unauthenticated Sensitive Data Exposure in Export Import Menus <= 1.9.2 versions.
π@cveNotify
Unauthenticated Sensitive Data Exposure in Export Import Menus <= 1.9.2 versions.
π@cveNotify
Patchstack
Sensitive Data Exposure in WordPress Export Import Menus Plugin
Patchstack is the leading open source vulnerability research organization. Find information and protection for all WordPress, Drupal and Joomla security issues.
π¨ CVE-2026-66685
Unauthenticated Sensitive Data Exposure in Featured Video Plus <= 2.3.3 versions.
π@cveNotify
Unauthenticated Sensitive Data Exposure in Featured Video Plus <= 2.3.3 versions.
π@cveNotify
Patchstack
Sensitive Data Exposure in WordPress Featured Video Plus Plugin
Patchstack is the leading open source vulnerability research organization. Find information and protection for all WordPress, Drupal and Joomla security issues.
π¨ CVE-2026-66686
Unauthenticated Cross Site Request Forgery (CSRF) in Plugins Garbage Collector (Database Cleanup) <= 0.14 versions.
π@cveNotify
Unauthenticated Cross Site Request Forgery (CSRF) in Plugins Garbage Collector (Database Cleanup) <= 0.14 versions.
π@cveNotify
Patchstack
Cross Site Request Forgery (CSRF) in WordPress Plugins Garbage Collector (Database Cleanup) Plugin
Patchstack is the leading open source vulnerability research organization. Find information and protection for all WordPress, Drupal and Joomla security issues.
π¨ CVE-2026-66688
Contributor Cross Site Scripting (XSS) in Ultimate Addons for Elementor <= 1.45.2 versions.
π@cveNotify
Contributor Cross Site Scripting (XSS) in Ultimate Addons for Elementor <= 1.45.2 versions.
π@cveNotify
Patchstack
Cross Site Scripting (XSS) in WordPress Ultimate Addons for Elementor Plugin
Patchstack is the leading open source vulnerability research organization. Find information and protection for all WordPress, Drupal and Joomla security issues.
π¨ CVE-2026-66690
Unauthenticated Cross Site Scripting (XSS) in GiveWP <= 4.16.5 versions.
π@cveNotify
Unauthenticated Cross Site Scripting (XSS) in GiveWP <= 4.16.5 versions.
π@cveNotify
Patchstack
Cross Site Scripting (XSS) in WordPress GiveWP Plugin
Patchstack is the leading open source vulnerability research organization. Find information and protection for all WordPress, Drupal and Joomla security issues.
π¨ CVE-2026-66692
Customer Insecure Direct Object References (IDOR) in Colissimo Officiel : MΓ©thodes de livraison pour WooCommerce <= 2.10.0 versions.
π@cveNotify
Customer Insecure Direct Object References (IDOR) in Colissimo Officiel : MΓ©thodes de livraison pour WooCommerce <= 2.10.0 versions.
π@cveNotify
Patchstack
Insecure Direct Object References (IDOR) in WordPress Colissimo Officiel : MΓ©thodes de livraison pour WooCommerce Plugin
Patchstack is the leading open source vulnerability research organization. Find information and protection for all WordPress, Drupal and Joomla security issues.
π¨ CVE-2026-66694
Unauthenticated Cross Site Scripting (XSS) in Thrive Architect <= 10.9.3.1 versions.
π@cveNotify
Unauthenticated Cross Site Scripting (XSS) in Thrive Architect <= 10.9.3.1 versions.
π@cveNotify
Patchstack
Cross Site Scripting (XSS) in WordPress Thrive Architect Plugin
Patchstack is the leading open source vulnerability research organization. Find information and protection for all WordPress, Drupal and Joomla security issues.
π¨ CVE-2026-66695
Unauthenticated Path Traversal in W3 Total Cache <= 2.10.2 versions.
π@cveNotify
Unauthenticated Path Traversal in W3 Total Cache <= 2.10.2 versions.
π@cveNotify
Patchstack
Path Traversal in WordPress W3 Total Cache Plugin
Patchstack is the leading open source vulnerability research organization. Find information and protection for all WordPress, Drupal and Joomla security issues.
π¨ CVE-2026-66696
Contributor Sensitive Data Exposure in Gutenberg Blocks by Kadence Blocks <= 3.7.8 versions.
π@cveNotify
Contributor Sensitive Data Exposure in Gutenberg Blocks by Kadence Blocks <= 3.7.8 versions.
π@cveNotify
Patchstack
Sensitive Data Exposure in WordPress Gutenberg Blocks by Kadence Blocks Plugin
Patchstack is the leading open source vulnerability research organization. Find information and protection for all WordPress, Drupal and Joomla security issues.
π¨ CVE-2026-66702
Unauthenticated Cross Site Scripting (XSS) in Rank Math SEO <= 1.0.274.1 versions.
π@cveNotify
Unauthenticated Cross Site Scripting (XSS) in Rank Math SEO <= 1.0.274.1 versions.
π@cveNotify
Patchstack
Cross Site Scripting (XSS) in WordPress Rank Math SEO Plugin
Patchstack is the leading open source vulnerability research organization. Find information and protection for all WordPress, Drupal and Joomla security issues.