| CVE | Vendor / Product | Sev | Risk | CVSS | EPSS | KEV | Published | Description |
|---|---|---|---|---|---|---|---|---|
| CVE-2026-64961 | Med | 0.41 | — | 0.00 | Aug 20, 2026 | ATutor is vulnerable to authentication bypass . Although a token validation check is present in the auto-login functionality, the values required for token validation remain uninitialized in certain code paths. An unauthenticated attacker who can determine a user's identifier… | ||
| CVE-2026-64960 | Hig | 0.57 | — | 0.01 | Aug 20, 2026 | ATutor Gameme module allows users to upload files of any type and extension without restriction. Due to improper handling of file uploads, files are stored in a web-accessible location before their content is validated. An authenticated attacker who knows a valid course_id can… | ||
| CVE-2026-15706 | Cri | 0.64 | 9.8 | 0.01 | Aug 20, 2026 | Missing authentication for critical function vulnerability in Baylan Measuring Instruments Industry and Trade Inc. Baylan Smart Meter Management Application (BMS) allows Authentication Bypass. This issue affects Baylan Smart Meter Management Application (BMS): before… | ||
| CVE-2026-7485 | Low | 0.08 | — | 0.00 | Aug 20, 2026 | Incorrect authorization in frozen BI aggregations in Checkmk <2.5.0p2, <2.4.0p29, <2.3.0p47, and all 2.2.0 versions allows an authenticated user with restricted host and service visibility to learn the names and the existence of hosts and services they are not authorized to see. | ||
| CVE-2026-77118 | Hig | 0.55 | — | 0.00 | Aug 20, 2026 | A heap out-of-bounds write exists in the Photo CD (PCD) decoder of GraphicsMagick. In DecodeImage() (coders/pcd.c), the Huffman delta loop advances its output pointer with q++ after every decoded delta and never checks it against the end of the heap-allocated luma/chroma plane… | ||
| CVE-2026-76989 | Med | 0.27 | 5.3 | 0.01 | Aug 20, 2026 | A security vulnerability has been detected in liftoff-sr CIPster 1802525be27d33e19a9a83c163e331a1d13b1892. This impacts an unknown function of the file source/src/enet_encap/encap.cc of the component TCP Encapsulation Receive Path. The manipulation leads to out-of-bounds read.… | ||
| CVE-2026-76988 | Med | 0.27 | 5.3 | 0.01 | Aug 20, 2026 | A weakness has been identified in liftoff-sr CIPster 1802525be27d33e19a9a83c163e331a1d13b1892. This affects the function CipConnMgrClass::forward_open of the file cipconnectionmanager.cc of the component ForwardOpen Handler. Executing a manipulation of the argument product_code_… | ||
| CVE-2026-76987 | Hig | 0.40 | 7.3 | 0.01 | Aug 20, 2026 | A security flaw has been discovered in liftoff-sr CIPster 1802525be27d33e19a9a83c163e331a1d13b1892. The impacted element is the function CipAttribute::GetAttrData/CipAttribute::SetAttrData of the file ciptypes.h of the component Generic Attribute Logic. Performing a manipulation… | ||
| CVE-2026-74011 | Hig | 0.49 | 7.6 | 0.00 | Aug 20, 2026 | Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in revmakx InfiniteWP Client allows Blind SQL Injection. This issue affects InfiniteWP Client: from n/a through 1.13.9. | ||
| CVE-2026-28164 | Cri | 0.62 | 9.6 | 0.00 | Aug 20, 2026 | Cross-Site Request Forgery (CSRF) vulnerability in HashThemes Easy Elementor Addons allows Cross Site Request Forgery. This issue affects Easy Elementor Addons: from n/a through 2.3.7. | ||
| CVE-2026-28163 | Med | 0.27 | 5.3 | 0.00 | Aug 20, 2026 | Missing Authorization vulnerability in myCred New User Approve allows Exploiting Incorrectly Configured Access Control Security Levels. This issue affects New User Approve: from n/a through 3.2.8. | ||
| CVE-2026-21784 | Med | 0.31 | 4.8 | 0.00 | Aug 20, 2026 | HCL IntelliOps Event Management (IEM) is affected by missing or insecure Cross-Origin Security headers. This issue makes the application's environment and resources susceptible to unauthorized external interaction and potential exploitation. | ||
| CVE-2026-18482 | Cri | 0.57 | 9.8 | 0.02 | Aug 20, 2026 | Neo.mjs contains a command injection vulnerability within the FileSystemService.mjs component of the ai/mcp/server/file-system MCP server, where the checkSyntax() and runPlaywrightTest() functions unsafely interpolate caller-controlled absolutePath values into shell commands,… | ||
| CVE-2025-62306 | Med | 0.33 | 5.0 | 0.00 | Aug 20, 2026 | HCL IntelliOps Event Management (IEM) is affected by information omission. The lack of information breaks auditability and observability of a workflow. if an attacker were to gain access to the application, the insufficient logging could hinder incident response. | ||
| CVE-2025-62300 | Med | 0.38 | 5.9 | 0.00 | Aug 20, 2026 | HCL IntelliOps Event Management (IEM) is affected by a race condition. A "timing window" can occur where an attacker can modify the resource causing unpredictable behavior. | ||
| CVE-2025-62299 | Med | 0.43 | 6.6 | 0.00 | Aug 20, 2026 | HCL IntelliOps Event Management (IEM) is affected by a least privileges violation which could allow an attacker to access the resource with the elevated privilege that could not be accessed with the attacker's original privileges. | ||
| CVE-2026-77085 | Med | 0.42 | 6.5 | 0.00 | Aug 20, 2026 | n8n before 2.34.1 and 2.33.x before 2.33.4 contains an SSRF protection bypass in the SearXNG Agent tool. The tool sent requests to the user-supplied API URL using a raw HTTP client that did not route through n8n's centralized SSRF protection. On instances with… | ||
| CVE-2026-77084 | Hig | 0.57 | 8.8 | 0.01 | Aug 20, 2026 | n8n before 1.123.69 (and 2.x before 2.33.4 / 2.34.1) contains a code execution vulnerability in the Git node. The Git node executed certain repository-local git configuration values without neutralizing them, so any subsequent Git node operation against a repository containing a… | ||
| CVE-2026-77083 | Med | 0.38 | 5.9 | 0.00 | Aug 20, 2026 | n8n is a workflow automation platform. In versions prior to 1.123.69, 2.33.4, and 2.34.1, the JavaScript Code node's VM sandbox did not freeze the sandbox's Function.prototype, allowing an authenticated user with the ability to create and execute workflows to pollute it from… | ||
| CVE-2026-77082 | Med | 0.28 | 4.3 | 0.00 | Aug 20, 2026 | n8n before 1.123.69, 2.x before 2.33.4, and 2.34.x before 2.34.1 contains a regular expression denial of service (ReDoS) vulnerability in the Filter and Switch nodes, which compile user-supplied regex patterns with new RegExp() and execute them synchronously on the worker thread… | ||
| CVE-2026-77081 | Hig | 0.46 | 7.1 | 0.00 | Aug 20, 2026 | n8n before 1.123.69, 2.x before 2.33.4, and 2.x before 2.34.1 contain an allowed-domains bypass in the GraphQL node. When the node's Authentication parameter is set to expression mode, every authentication-gated credential selector is treated as active; if two credentials of… | ||
| CVE-2026-77080 | Hig | 0.57 | 8.8 | 0.01 | Aug 20, 2026 | n8n before 1.123.69, 2.x before 2.33.4, and 2.34.x before 2.34.1 contain an arbitrary file read and write vulnerability in the Snowflake node, which passes free-form Execute Query input, including client-side commands, directly to the Snowflake SDK without applying n8n's… | ||
| CVE-2026-77079 | Hig | 0.57 | 8.8 | 0.00 | Aug 20, 2026 | n8n before 2.34.1 and 2.33.4 contains an authorization bypass in the custom project role deletion (reassignment) path. When deleting a custom project role with a reassignment target, the code validated only that the target role existed and was project-scoped, performing no… | ||
| CVE-2026-77077 | Hig | 0.49 | 7.6 | 0.01 | Aug 20, 2026 | n8n versions before 1.123.69, 2.33.4, and 2.34.1 contain a JavaScript task runner VM sandbox escape. The runner's prototype-freezing routine covers globalThis functions but not internal module constructors such as EventEmitter, allowing an authenticated user with Code node… | ||
| CVE-2026-77076 | Med | 0.42 | 6.5 | 0.00 | Aug 20, 2026 | n8n versions before 1.123.69, 2.33.4, and 2.34.1 contain an information disclosure vulnerability in the GraphQL node. When a GraphQL request fails at the connection level, the node re-throws the underlying HTTP client error unchanged instead of wrapping it in n8n's standard… | ||
| CVE-2026-77075 | Hig | 0.47 | 7.3 | 0.00 | Aug 20, 2026 | n8n before 1.123.69, 2.x before 2.33.4, and 2.34.x before 2.34.1 contain an expression injection vulnerability in resource-locator field link preview rendering. The editor spliced the field's stored value directly into the node type's URL template without checking for expression… | ||
| CVE-2026-77074 | Med | 0.42 | 6.5 | 0.00 | Aug 20, 2026 | n8n versions before 1.123.69 contain a server-side request forgery vulnerability in the Edit Image node's Draw Text operation that allows authenticated users to inject MVG primitives. Attackers can craft malicious text values to issue blind outbound HTTP requests to arbitrary… | ||
| CVE-2026-77073 | Med | 0.28 | 4.3 | 0.00 | Aug 20, 2026 | n8n versions before 2.34.1 contain a credential validation bypass in the MCP create_workflow_from_code tool when authentication type is set to an expression. Attackers with a valid MCP Bearer API key and knowledge of a target credential ID can persist unauthorized cross-project… | ||
| CVE-2026-77072 | Hig | 0.49 | 7.6 | 0.00 | Aug 20, 2026 | n8n before 1.123.69, 2.33.4, and 2.34.1 contains a stored cross-site scripting vulnerability in the Form node's completion page. The completion page applied its sandboxing Content-Security-Policy only when respondWith was not set to 'redirect', but responseText was always… | ||
| CVE-2026-77071 | Cri | 0.64 | 9.8 | 0.01 | Aug 20, 2026 | n8n before 1.123.69, 2.33.4, and 2.34.1 contains a PostgREST filter injection vulnerability in the Supabase node's Row Get Many, Delete, and Update operations, which built filter queries by concatenating an expression-bindable value without escaping. An attacker could inject a… | ||
| CVE-2026-77070 | Cri | 0.64 | 9.8 | 0.01 | Aug 20, 2026 | n8n before 1.123.69, 2.33.4, and 2.34.1 contains a NoSQL injection vulnerability in the MongoDB node's Find, Delete, and Aggregate operations, which parse the Query parameter as JSON after expression resolution without sanitizing MongoDB operators. An attacker who can influence… | ||
| CVE-2026-77069 | Med | 0.28 | 4.3 | 0.00 | Aug 20, 2026 | n8n before 1.123.69, 2.33.4, and 2.34.1 contains an SSRF protection bypass in the OAuth2 credential authorization-code-to-access-token exchange. While OAuth2 discovery and dynamic-client-registration requests use n8n's SSRF-protected HTTP client, the token exchange uses a… | ||
| CVE-2026-77068 | Hig | 0.57 | 8.8 | 0.01 | Aug 20, 2026 | n8n before 2.33.4 and 2.34.x before 2.34.1 contain a remote code execution vulnerability in the @n8n/workflow-sdk node-schema loader used for MCP node-schema loading. The loader derives a node's schema module path directly from the attacker-supplied node type string without… | ||
| CVE-2026-74021 | Hig | 0.49 | 7.5 | 0.00 | Aug 20, 2026 | Unauthenticated Broken Access Control in Chaplin <= 2.6.8 versions. | ||
| CVE-2026-74020 | Hig | 0.49 | 7.5 | 0.00 | Aug 20, 2026 | Unauthenticated Broken Access Control in Koji <= 2.2.1 versions. | ||
| CVE-2026-74019 | Hig | 0.46 | 7.1 | 0.00 | Aug 20, 2026 | Unauthenticated Broken Access Control in EPROLO Dropshipping <= 2.4.2 versions. | ||
| CVE-2026-74018 | Cri | 0.64 | 9.9 | 0.00 | Aug 20, 2026 | Subscriber Arbitrary File Upload in Warehouse Cargo <= 2.6.9 versions. | ||
| CVE-2026-74016 | Cri | 0.64 | 9.9 | 0.00 | Aug 20, 2026 | Subscriber Arbitrary File Upload in Smart Cleaning <= 4.8.6 versions. | ||
| CVE-2026-74014 | Cri | 0.64 | 9.9 | 0.00 | Aug 20, 2026 | Subscriber Arbitrary File Upload in IT Residence <= 3.2.1 versions. | ||
| CVE-2026-74013 | Hig | 0.55 | 8.5 | 0.00 | Aug 20, 2026 | Subscriber SQL Injection in eShipper Commerce <= 2.16.13 versions. | ||
| CVE-2026-74001 | Cri | 0.64 | 9.8 | 0.01 | Aug 20, 2026 | Unauthenticated Broken Authentication in User Registration & Membership Pro <= 5.4.5 versions. | ||
| CVE-2026-73998 | Hig | 0.55 | 8.5 | 0.00 | Aug 20, 2026 | Subscriber SQL Injection in WP w3all phpBB <= 3.0.5 versions. | ||
| CVE-2026-73993 | Cri | 0.64 | 9.8 | 0.01 | Aug 20, 2026 | Unauthenticated PHP Object Injection in FundEngine <= 1.7.9 versions. | ||
| CVE-2026-73992 | Cri | 0.64 | 9.9 | 0.01 | Aug 20, 2026 | Subscriber Remote Code Execution (RCE) in Query Wrangler <= 1.5.57 versions. | ||
| CVE-2026-73402 | Med | 0.42 | 6.5 | 0.00 | Aug 20, 2026 | Subscriber Cross Site Scripting (XSS) in WP BASE Booking <= 6.3.2 versions. | ||
| CVE-2026-68566 | Cri | 0.60 | 9.3 | 0.00 | Aug 20, 2026 | Unauthenticated SQL Injection in BookingPress Appointment Booking Pro <= 6.0.2 versions. | ||
| CVE-2026-68564 | Hig | 0.46 | 7.1 | 0.00 | Aug 20, 2026 | Unauthenticated Cross Site Scripting (XSS) in NotificationX Pro <= 3.1.4 versions. | ||
| CVE-2026-66682 | Cri | 0.64 | 9.8 | 0.00 | Aug 20, 2026 | Unauthenticated Privilege Escalation in Abandoned Cart Pro for WooCommerce <= 10.4.0 versions. | ||
| CVE-2026-66680 | Cri | 0.60 | 9.3 | 0.00 | Aug 20, 2026 | Unauthenticated SQL Injection in Locatoraid Store Locator <= 3.9.72 versions. | ||
| CVE-2026-66677 | Hig | 0.49 | 7.6 | 0.00 | Aug 20, 2026 | Subscriber Broken Authentication in Leyka <= 3.32.3 versions. |
- risk 0.41cvss —epss 0.00
ATutor is vulnerable to authentication bypass . Although a token validation check is present in the auto-login functionality, the values required for token validation remain uninitialized in certain code paths. An unauthenticated attacker who can determine a user's identifier…
- risk 0.57cvss —epss 0.01
ATutor Gameme module allows users to upload files of any type and extension without restriction. Due to improper handling of file uploads, files are stored in a web-accessible location before their content is validated. An authenticated attacker who knows a valid course_id can…
- risk 0.64cvss 9.8epss 0.01
Missing authentication for critical function vulnerability in Baylan Measuring Instruments Industry and Trade Inc. Baylan Smart Meter Management Application (BMS) allows Authentication Bypass. This issue affects Baylan Smart Meter Management Application (BMS): before…
- risk 0.08cvss —epss 0.00
Incorrect authorization in frozen BI aggregations in Checkmk <2.5.0p2, <2.4.0p29, <2.3.0p47, and all 2.2.0 versions allows an authenticated user with restricted host and service visibility to learn the names and the existence of hosts and services they are not authorized to see.
- risk 0.55cvss —epss 0.00
A heap out-of-bounds write exists in the Photo CD (PCD) decoder of GraphicsMagick. In DecodeImage() (coders/pcd.c), the Huffman delta loop advances its output pointer with q++ after every decoded delta and never checks it against the end of the heap-allocated luma/chroma plane…
- risk 0.27cvss 5.3epss 0.01
A security vulnerability has been detected in liftoff-sr CIPster 1802525be27d33e19a9a83c163e331a1d13b1892. This impacts an unknown function of the file source/src/enet_encap/encap.cc of the component TCP Encapsulation Receive Path. The manipulation leads to out-of-bounds read.…
- risk 0.27cvss 5.3epss 0.01
A weakness has been identified in liftoff-sr CIPster 1802525be27d33e19a9a83c163e331a1d13b1892. This affects the function CipConnMgrClass::forward_open of the file cipconnectionmanager.cc of the component ForwardOpen Handler. Executing a manipulation of the argument product_code_…
- risk 0.40cvss 7.3epss 0.01
A security flaw has been discovered in liftoff-sr CIPster 1802525be27d33e19a9a83c163e331a1d13b1892. The impacted element is the function CipAttribute::GetAttrData/CipAttribute::SetAttrData of the file ciptypes.h of the component Generic Attribute Logic. Performing a manipulation…
- risk 0.49cvss 7.6epss 0.00
Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in revmakx InfiniteWP Client allows Blind SQL Injection. This issue affects InfiniteWP Client: from n/a through 1.13.9.
- risk 0.62cvss 9.6epss 0.00
Cross-Site Request Forgery (CSRF) vulnerability in HashThemes Easy Elementor Addons allows Cross Site Request Forgery. This issue affects Easy Elementor Addons: from n/a through 2.3.7.
- risk 0.27cvss 5.3epss 0.00
Missing Authorization vulnerability in myCred New User Approve allows Exploiting Incorrectly Configured Access Control Security Levels. This issue affects New User Approve: from n/a through 3.2.8.
- risk 0.31cvss 4.8epss 0.00
HCL IntelliOps Event Management (IEM) is affected by missing or insecure Cross-Origin Security headers. This issue makes the application's environment and resources susceptible to unauthorized external interaction and potential exploitation.
- risk 0.57cvss 9.8epss 0.02
Neo.mjs contains a command injection vulnerability within the FileSystemService.mjs component of the ai/mcp/server/file-system MCP server, where the checkSyntax() and runPlaywrightTest() functions unsafely interpolate caller-controlled absolutePath values into shell commands,…
- risk 0.33cvss 5.0epss 0.00
HCL IntelliOps Event Management (IEM) is affected by information omission. The lack of information breaks auditability and observability of a workflow. if an attacker were to gain access to the application, the insufficient logging could hinder incident response.
- risk 0.38cvss 5.9epss 0.00
HCL IntelliOps Event Management (IEM) is affected by a race condition. A "timing window" can occur where an attacker can modify the resource causing unpredictable behavior.
- risk 0.43cvss 6.6epss 0.00
HCL IntelliOps Event Management (IEM) is affected by a least privileges violation which could allow an attacker to access the resource with the elevated privilege that could not be accessed with the attacker's original privileges.
- risk 0.42cvss 6.5epss 0.00
n8n before 2.34.1 and 2.33.x before 2.33.4 contains an SSRF protection bypass in the SearXNG Agent tool. The tool sent requests to the user-supplied API URL using a raw HTTP client that did not route through n8n's centralized SSRF protection. On instances with…
- risk 0.57cvss 8.8epss 0.01
n8n before 1.123.69 (and 2.x before 2.33.4 / 2.34.1) contains a code execution vulnerability in the Git node. The Git node executed certain repository-local git configuration values without neutralizing them, so any subsequent Git node operation against a repository containing a…
- risk 0.38cvss 5.9epss 0.00
n8n is a workflow automation platform. In versions prior to 1.123.69, 2.33.4, and 2.34.1, the JavaScript Code node's VM sandbox did not freeze the sandbox's Function.prototype, allowing an authenticated user with the ability to create and execute workflows to pollute it from…
- risk 0.28cvss 4.3epss 0.00
n8n before 1.123.69, 2.x before 2.33.4, and 2.34.x before 2.34.1 contains a regular expression denial of service (ReDoS) vulnerability in the Filter and Switch nodes, which compile user-supplied regex patterns with new RegExp() and execute them synchronously on the worker thread…
- risk 0.46cvss 7.1epss 0.00
n8n before 1.123.69, 2.x before 2.33.4, and 2.x before 2.34.1 contain an allowed-domains bypass in the GraphQL node. When the node's Authentication parameter is set to expression mode, every authentication-gated credential selector is treated as active; if two credentials of…
- risk 0.57cvss 8.8epss 0.01
n8n before 1.123.69, 2.x before 2.33.4, and 2.34.x before 2.34.1 contain an arbitrary file read and write vulnerability in the Snowflake node, which passes free-form Execute Query input, including client-side commands, directly to the Snowflake SDK without applying n8n's…
- risk 0.57cvss 8.8epss 0.00
n8n before 2.34.1 and 2.33.4 contains an authorization bypass in the custom project role deletion (reassignment) path. When deleting a custom project role with a reassignment target, the code validated only that the target role existed and was project-scoped, performing no…
- risk 0.49cvss 7.6epss 0.01
n8n versions before 1.123.69, 2.33.4, and 2.34.1 contain a JavaScript task runner VM sandbox escape. The runner's prototype-freezing routine covers globalThis functions but not internal module constructors such as EventEmitter, allowing an authenticated user with Code node…
- risk 0.42cvss 6.5epss 0.00
n8n versions before 1.123.69, 2.33.4, and 2.34.1 contain an information disclosure vulnerability in the GraphQL node. When a GraphQL request fails at the connection level, the node re-throws the underlying HTTP client error unchanged instead of wrapping it in n8n's standard…
- risk 0.47cvss 7.3epss 0.00
n8n before 1.123.69, 2.x before 2.33.4, and 2.34.x before 2.34.1 contain an expression injection vulnerability in resource-locator field link preview rendering. The editor spliced the field's stored value directly into the node type's URL template without checking for expression…
- risk 0.42cvss 6.5epss 0.00
n8n versions before 1.123.69 contain a server-side request forgery vulnerability in the Edit Image node's Draw Text operation that allows authenticated users to inject MVG primitives. Attackers can craft malicious text values to issue blind outbound HTTP requests to arbitrary…
- risk 0.28cvss 4.3epss 0.00
n8n versions before 2.34.1 contain a credential validation bypass in the MCP create_workflow_from_code tool when authentication type is set to an expression. Attackers with a valid MCP Bearer API key and knowledge of a target credential ID can persist unauthorized cross-project…
- risk 0.49cvss 7.6epss 0.00
n8n before 1.123.69, 2.33.4, and 2.34.1 contains a stored cross-site scripting vulnerability in the Form node's completion page. The completion page applied its sandboxing Content-Security-Policy only when respondWith was not set to 'redirect', but responseText was always…
- risk 0.64cvss 9.8epss 0.01
n8n before 1.123.69, 2.33.4, and 2.34.1 contains a PostgREST filter injection vulnerability in the Supabase node's Row Get Many, Delete, and Update operations, which built filter queries by concatenating an expression-bindable value without escaping. An attacker could inject a…
- risk 0.64cvss 9.8epss 0.01
n8n before 1.123.69, 2.33.4, and 2.34.1 contains a NoSQL injection vulnerability in the MongoDB node's Find, Delete, and Aggregate operations, which parse the Query parameter as JSON after expression resolution without sanitizing MongoDB operators. An attacker who can influence…
- risk 0.28cvss 4.3epss 0.00
n8n before 1.123.69, 2.33.4, and 2.34.1 contains an SSRF protection bypass in the OAuth2 credential authorization-code-to-access-token exchange. While OAuth2 discovery and dynamic-client-registration requests use n8n's SSRF-protected HTTP client, the token exchange uses a…
- risk 0.57cvss 8.8epss 0.01
n8n before 2.33.4 and 2.34.x before 2.34.1 contain a remote code execution vulnerability in the @n8n/workflow-sdk node-schema loader used for MCP node-schema loading. The loader derives a node's schema module path directly from the attacker-supplied node type string without…
- risk 0.49cvss 7.5epss 0.00
Unauthenticated Broken Access Control in Chaplin <= 2.6.8 versions.
- risk 0.49cvss 7.5epss 0.00
Unauthenticated Broken Access Control in Koji <= 2.2.1 versions.
- risk 0.46cvss 7.1epss 0.00
Unauthenticated Broken Access Control in EPROLO Dropshipping <= 2.4.2 versions.
- risk 0.64cvss 9.9epss 0.00
Subscriber Arbitrary File Upload in Warehouse Cargo <= 2.6.9 versions.
- risk 0.64cvss 9.9epss 0.00
Subscriber Arbitrary File Upload in Smart Cleaning <= 4.8.6 versions.
- risk 0.64cvss 9.9epss 0.00
Subscriber Arbitrary File Upload in IT Residence <= 3.2.1 versions.
- risk 0.55cvss 8.5epss 0.00
Subscriber SQL Injection in eShipper Commerce <= 2.16.13 versions.
- risk 0.64cvss 9.8epss 0.01
Unauthenticated Broken Authentication in User Registration & Membership Pro <= 5.4.5 versions.
- risk 0.55cvss 8.5epss 0.00
Subscriber SQL Injection in WP w3all phpBB <= 3.0.5 versions.
- risk 0.64cvss 9.8epss 0.01
Unauthenticated PHP Object Injection in FundEngine <= 1.7.9 versions.
- risk 0.64cvss 9.9epss 0.01
Subscriber Remote Code Execution (RCE) in Query Wrangler <= 1.5.57 versions.
- risk 0.42cvss 6.5epss 0.00
Subscriber Cross Site Scripting (XSS) in WP BASE Booking <= 6.3.2 versions.
- risk 0.60cvss 9.3epss 0.00
Unauthenticated SQL Injection in BookingPress Appointment Booking Pro <= 6.0.2 versions.
- risk 0.46cvss 7.1epss 0.00
Unauthenticated Cross Site Scripting (XSS) in NotificationX Pro <= 3.1.4 versions.
- risk 0.64cvss 9.8epss 0.00
Unauthenticated Privilege Escalation in Abandoned Cart Pro for WooCommerce <= 10.4.0 versions.
- risk 0.60cvss 9.3epss 0.00
Unauthenticated SQL Injection in Locatoraid Store Locator <= 3.9.72 versions.
- risk 0.49cvss 7.6epss 0.00
Subscriber Broken Authentication in Leyka <= 3.32.3 versions.