| CVE | Vendor / Product | Sev | Risk | CVSS | EPSS | KEV | Published | Description |
|---|---|---|---|---|---|---|---|---|
| CVE-2026-66431 | Hig | 0.49 | 7.5 | 0.00 | Aug 13, 2026 | Unauthenticated Broken Access Control in Bitcoin Lightning Payment Gateway for WooCommerce (via CLINK) <= 1.0.7 versions. | ||
| CVE-2026-66430 | Hig | 0.55 | 8.5 | 0.00 | Aug 13, 2026 | Subscriber SQL Injection in Visitor Traffic Real Time Statistics Pro <= 11.10 versions. | ||
| CVE-2026-66429 | Hig | 0.46 | 7.1 | 0.00 | Aug 13, 2026 | Unauthenticated Cross Site Scripting (XSS) in Visitor Traffic Real Time Statistics Pro <= 11.10 versions. | ||
| CVE-2026-66426 | Hig | 0.46 | 7.1 | 0.00 | Aug 13, 2026 | Unauthenticated Cross Site Scripting (XSS) in WP-Stats <= 2.56 versions. | ||
| CVE-2026-65582 | Hig | 0.50 | 7.7 | 0.00 | Aug 13, 2026 | Subscriber Arbitrary File Download in AI Hub <= 1.3.10 versions. | ||
| CVE-2026-65580 | Hig | 0.46 | 7.1 | 0.00 | Aug 13, 2026 | Unauthenticated Cross Site Scripting (XSS) in Agrion <= 1.0.0 versions. | ||
| CVE-2026-61984 | Hig | 0.49 | 7.5 | 0.00 | Aug 13, 2026 | Unauthenticated Broken Access Control in WPMobile.App <= 11.77 versions. | ||
| CVE-2026-61980 | Hig | 0.49 | 7.5 | 0.00 | Aug 13, 2026 | Unauthenticated Arbitrary File Download in OMGF Pro <= 5.2.7 versions. | ||
| CVE-2026-61979 | Hig | 0.53 | 8.1 | 0.00 | Aug 13, 2026 | Unauthenticated Privilege Escalation in SAML SP Single Sign On <= 5.4.3 versions. | ||
| CVE-2026-61974 | Hig | 0.46 | 7.1 | 0.00 | Aug 13, 2026 | Unauthenticated Cross Site Scripting (XSS) in Mang Board WP <= 2.3.4 versions. | ||
| CVE-2026-61965 | Hig | 0.46 | 7.1 | 0.00 | Aug 13, 2026 | Unauthenticated Cross Site Scripting (XSS) in GeekyBot <= 1.2.6 versions. | ||
| CVE-2026-61960 | Hig | 0.46 | 7.1 | 0.00 | Aug 13, 2026 | Unauthenticated Cross Site Scripting (XSS) in WP Full Stripe Free <= 8.5.0 versions. | ||
| CVE-2026-48702 | Hig | 0.49 | 7.5 | 0.00 | Aug 13, 2026 | Rekor is a software supply chain transparency log. Starting in version 0.3.0 and prior to version 1.5.2, the `Package.Unmarshal()` function in `pkg/types/alpine/apk.go` decompresses the signature and control gzip members of an APK file into in-memory buffers without bounding the… | ||
| CVE-2026-28189 | Hig | 0.48 | 7.4 | 0.00 | Aug 13, 2026 | Unauthenticated Arbitrary File Deletion in Participants Database <= 2.7.8.4 versions. | ||
| CVE-2026-28188 | Hig | 0.47 | 7.3 | 0.00 | Aug 13, 2026 | Unauthenticated Broken Access Control in Hydra Booking <= 1.2.2 versions. | ||
| CVE-2026-28187 | Hig | 0.46 | 7.1 | 0.00 | Aug 13, 2026 | Unauthenticated Cross Site Scripting (XSS) in Knowledge Base for Documentation, FAQs with AI Assistance <= 17.211.0 versions. | ||
| CVE-2026-28186 | Hig | 0.53 | 8.1 | 0.00 | Aug 13, 2026 | Subscriber Broken Access Control in Travelfic Toolkit <= 1.5.1 versions. | ||
| CVE-2026-28176 | Hig | 0.57 | 8.8 | 0.00 | Aug 13, 2026 | Unauthenticated PHP Object Injection in Booking Activities <= 1.18.4 versions. | ||
| CVE-2026-28175 | Hig | 0.46 | 7.1 | 0.00 | Aug 13, 2026 | Unauthenticated Cross Site Scripting (XSS) in Visitors Traffic Real Time Statistics <= 8.11 versions. | ||
| CVE-2026-28173 | Hig | 0.46 | 7.1 | 0.00 | Aug 13, 2026 | Customer Arbitrary Content Deletion in WP Event SOlution <= 4.1.19 versions. | ||
| CVE-2026-28170 | Hig | 0.46 | 7.1 | 0.00 | Aug 13, 2026 | Unauthenticated Cross Site Scripting (XSS) in Blog Floating Button <= 1.4.20 versions. | ||
| CVE-2026-28168 | Hig | 0.55 | 8.5 | 0.00 | Aug 13, 2026 | Subscriber SQL Injection in CubeWP <= 1.1.30 versions. | ||
| CVE-2026-28161 | Hig | 0.57 | 8.8 | 0.00 | Aug 13, 2026 | Subscriber Privilege Escalation in Service Finder Booking <= 6.2 versions. | ||
| CVE-2026-28158 | Hig | 0.46 | 7.1 | 0.00 | Aug 13, 2026 | Unauthenticated Cross Site Scripting (XSS) in Do Lasso <= 358 versions. | ||
| CVE-2026-28157 | Hig | 0.49 | 7.5 | 0.00 | Aug 13, 2026 | Subscriber Path Traversal in Do Lasso <= 358 versions. | ||
| CVE-2026-28156 | Hig | 0.55 | 8.5 | 0.00 | Aug 13, 2026 | Subscriber SQL Injection in Do Lasso <= 358 versions. | ||
| CVE-2026-28004 | Hig | 0.46 | 7.1 | 0.00 | Aug 13, 2026 | Unauthenticated Cross Site Scripting (XSS) in Business Directory <= 6.4.25 versions. | ||
| CVE-2026-28003 | Hig | 0.46 | 7.1 | 0.00 | Aug 13, 2026 | Unauthenticated Cross Site Scripting (XSS) in Maspik – Spam blacklist <= 2.9.1 versions. | ||
| CVE-2026-28002 | Hig | 0.55 | 8.5 | 0.00 | Aug 13, 2026 | Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in Arraytics Booktics allows Blind SQL Injection. This issue affects Booktics: from n/a through 1.0.22. | ||
| CVE-2026-27543 | Hig | 0.53 | 8.1 | 0.00 | Aug 13, 2026 | Unauthenticated Privilege Escalation in MStore API <= 4.20.0 versions. | ||
| CVE-2026-27539 | Hig | 0.46 | 7.1 | 0.00 | Aug 13, 2026 | Unauthenticated Cross Site Scripting (XSS) in Welcart e-Commerce <= 2.11.31 versions. | ||
| CVE-2026-27538 | Hig | 0.49 | 7.5 | 0.00 | Aug 13, 2026 | Unauthenticated SQL Injection in WP Directory Kit <= 1.5.4 versions. | ||
| CVE-2026-27536 | Hig | 0.46 | 7.1 | 0.00 | Aug 13, 2026 | Unauthenticated Cross Site Scripting (XSS) in MailChimp Subscribe Forms <= 4.3.3 versions. | ||
| CVE-2026-27535 | Hig | 0.46 | 7.1 | 0.00 | Aug 13, 2026 | Subscriber Broken Access Control in Solace Extra <= 1.6.0 versions. | ||
| CVE-2026-27380 | Hig | 0.47 | 7.2 | 0.00 | Aug 13, 2026 | Editor PHP Object Injection in Car Rental Manager <= 1.3.9 versions. | ||
| CVE-2026-27345 | Hig | 0.49 | 7.5 | 0.00 | Aug 13, 2026 | Unauthenticated Broken Access Control in Taxi Booking Manager for WooCommerce <= 2.0.3 versions. | ||
| CVE-2026-55072 | hig | 0.38 | — | — | Aug 13, 2026 | ### Summary A missing end anchor (`$`) in the ClassDefinition UID validation regex allows an authenticated user with the `objects` permission to create a class with a malicious UID containing SQL. When a data object of that class is later loaded, Block.php concatenates the raw… | ||
| CVE-2026-6471 | Hig | 0.40 | 7.2 | 0.01 | Aug 13, 2026 | Missing authorization in PostgreSQL logical decoding allows a non-superuser holding REPLICATION privilege to dlopen any file visible to the operating system account running the server, via the choice of logical decoding plugin. This in turn runs arbitrary code as that account. … | ||
| CVE-2026-6464 | Hig | 0.46 | 8.1 | 0.00 | Aug 13, 2026 | Untrusted data inclusion in PostgreSQL psql COPY may allow a server administrator to elicit execution of data lines as psql commands, via error injection. If the "COPY FROM STDIN" or "\copy FROM STDIN" command fails before the server indicates that it awaits input rows, psql… | ||
| CVE-2026-49478 | Hig | 0.50 | 8.7 | 0.00 | Aug 13, 2026 | Fulcio is a certificate authority for issuing code signing certificates for an OpenID Connect (OIDC) identity. Versions through 1.8.5 improperly follow cross-host redirects and attach Kubernetes ServiceAccount tokens during OIDC discovery, allowing a malicious or compromised… | ||
| CVE-2026-19385 | Hig | 0.50 | 8.8 | 0.01 | Aug 13, 2026 | Heap buffer overflow in PostgreSQL pg_dump of long function transform lists allows an object creator to execute arbitrary code as the operating system user running pg_dump, via a crafted transform list. Versions before PostgreSQL 18.5, 17.11, 16.15, 15.19, and 14.24 are… | ||
| CVE-2026-18408 | Hig | 0.50 | 8.8 | 0.01 | Aug 13, 2026 | Untrusted data inclusion in pg_dump in PostgreSQL allows a malicious superuser of the origin server to inject arbitrary code for restore-time execution as the client operating system account running psql to restore the dump, via psql \restrict meta-command input expansion. The… | ||
| CVE-2026-16239 | Hig | 0.50 | 8.8 | 0.01 | Aug 13, 2026 | Type confusion in PostgreSQL "portal"/cursor lifecycle allows a user to execute arbitrary code as the operating system user running the database, via re-creation of a cursor or other portal with different types. Versions before PostgreSQL 18.5, 17.11, 16.15, 15.19, and 14.24… | ||
| CVE-2026-16238 | Hig | 0.50 | 8.8 | 0.01 | Aug 13, 2026 | Type confusion in PostgreSQL pg_restore_attribute_stats() allows an object creator to execute arbitrary code as the operating system user running the database, via conflation of range and multirange values. Within major version 18, minor versions before PostgreSQL 18.5 are… | ||
| CVE-2026-15742 | Hig | 0.50 | 8.8 | 0.00 | Aug 13, 2026 | Integer wraparound in PostgreSQL fuzzystrmatch allows a user to direct writes to a huge range of addresses, executing arbitrary code as the operating system user running the database, via extreme inputs to SQL function levenshtein() or levenshtein_less_equal(). Versions before… | ||
| CVE-2026-15741 | Hig | 0.50 | 8.8 | 0.00 | Aug 13, 2026 | SQL injection in PostgreSQL EXTRACT() deparse allows an object owner to execute arbitrary SQL as a superuser via a hostile object definition. Attacks affect expression deparse consumers broadly, including pg_dump, psql commands like \sf, and any similar usage in non-core tools.… | ||
| CVE-2026-14680 | Hig | 0.50 | 8.8 | 0.01 | Aug 13, 2026 | Type confusion with PostgreSQL "internal" data type arguments allows any user to execute arbitrary code as the operating system user running the database, via calls to functions with that argument type. Type "internal" represents a class of mutually-incompatible data structures… | ||
| CVE-2026-14679 | Hig | 0.46 | 8.2 | 0.00 | Aug 13, 2026 | Stack buffer overflow in PostgreSQL argument name matching allows an object creator to achieve unknown impacts via OUT parameter count. The attack can write only 0x0 and 0x1 bytes. Versions before PostgreSQL 18.5, 17.11, 16.15, 15.19, and 14.24 are affected. | ||
| CVE-2026-14677 | Hig | 0.50 | 8.8 | 0.01 | Aug 13, 2026 | Integer wraparound in PostgreSQL 32-bit builds of pltcl and plperl allows an object creator to cause the server to undersize an allocation and write out-of-bounds via crafted function bodies. This may execute arbitrary code as the operating system user running the database. … | ||
| CVE-2026-14676 | Hig | 0.57 | 8.8 | 0.01 | Aug 13, 2026 | Heap buffer overflow in PostgreSQL pg_stat_statements allows the query author to execute arbitrary code as the operating system user running the database, via crafted queries containing array constants. Within major version 18, minor versions before PostgreSQL 18.5 are… |
- risk 0.49cvss 7.5epss 0.00
Unauthenticated Broken Access Control in Bitcoin Lightning Payment Gateway for WooCommerce (via CLINK) <= 1.0.7 versions.
- risk 0.55cvss 8.5epss 0.00
Subscriber SQL Injection in Visitor Traffic Real Time Statistics Pro <= 11.10 versions.
- risk 0.46cvss 7.1epss 0.00
Unauthenticated Cross Site Scripting (XSS) in Visitor Traffic Real Time Statistics Pro <= 11.10 versions.
- risk 0.46cvss 7.1epss 0.00
Unauthenticated Cross Site Scripting (XSS) in WP-Stats <= 2.56 versions.
- risk 0.50cvss 7.7epss 0.00
Subscriber Arbitrary File Download in AI Hub <= 1.3.10 versions.
- risk 0.46cvss 7.1epss 0.00
Unauthenticated Cross Site Scripting (XSS) in Agrion <= 1.0.0 versions.
- risk 0.49cvss 7.5epss 0.00
Unauthenticated Broken Access Control in WPMobile.App <= 11.77 versions.
- risk 0.49cvss 7.5epss 0.00
Unauthenticated Arbitrary File Download in OMGF Pro <= 5.2.7 versions.
- risk 0.53cvss 8.1epss 0.00
Unauthenticated Privilege Escalation in SAML SP Single Sign On <= 5.4.3 versions.
- risk 0.46cvss 7.1epss 0.00
Unauthenticated Cross Site Scripting (XSS) in Mang Board WP <= 2.3.4 versions.
- risk 0.46cvss 7.1epss 0.00
Unauthenticated Cross Site Scripting (XSS) in GeekyBot <= 1.2.6 versions.
- risk 0.46cvss 7.1epss 0.00
Unauthenticated Cross Site Scripting (XSS) in WP Full Stripe Free <= 8.5.0 versions.
- risk 0.49cvss 7.5epss 0.00
Rekor is a software supply chain transparency log. Starting in version 0.3.0 and prior to version 1.5.2, the `Package.Unmarshal()` function in `pkg/types/alpine/apk.go` decompresses the signature and control gzip members of an APK file into in-memory buffers without bounding the…
- risk 0.48cvss 7.4epss 0.00
Unauthenticated Arbitrary File Deletion in Participants Database <= 2.7.8.4 versions.
- risk 0.47cvss 7.3epss 0.00
Unauthenticated Broken Access Control in Hydra Booking <= 1.2.2 versions.
- risk 0.46cvss 7.1epss 0.00
Unauthenticated Cross Site Scripting (XSS) in Knowledge Base for Documentation, FAQs with AI Assistance <= 17.211.0 versions.
- risk 0.53cvss 8.1epss 0.00
Subscriber Broken Access Control in Travelfic Toolkit <= 1.5.1 versions.
- risk 0.57cvss 8.8epss 0.00
Unauthenticated PHP Object Injection in Booking Activities <= 1.18.4 versions.
- risk 0.46cvss 7.1epss 0.00
Unauthenticated Cross Site Scripting (XSS) in Visitors Traffic Real Time Statistics <= 8.11 versions.
- risk 0.46cvss 7.1epss 0.00
Customer Arbitrary Content Deletion in WP Event SOlution <= 4.1.19 versions.
- risk 0.46cvss 7.1epss 0.00
Unauthenticated Cross Site Scripting (XSS) in Blog Floating Button <= 1.4.20 versions.
- risk 0.55cvss 8.5epss 0.00
Subscriber SQL Injection in CubeWP <= 1.1.30 versions.
- risk 0.57cvss 8.8epss 0.00
Subscriber Privilege Escalation in Service Finder Booking <= 6.2 versions.
- risk 0.46cvss 7.1epss 0.00
Unauthenticated Cross Site Scripting (XSS) in Do Lasso <= 358 versions.
- risk 0.49cvss 7.5epss 0.00
Subscriber Path Traversal in Do Lasso <= 358 versions.
- risk 0.55cvss 8.5epss 0.00
Subscriber SQL Injection in Do Lasso <= 358 versions.
- risk 0.46cvss 7.1epss 0.00
Unauthenticated Cross Site Scripting (XSS) in Business Directory <= 6.4.25 versions.
- risk 0.46cvss 7.1epss 0.00
Unauthenticated Cross Site Scripting (XSS) in Maspik – Spam blacklist <= 2.9.1 versions.
- risk 0.55cvss 8.5epss 0.00
Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in Arraytics Booktics allows Blind SQL Injection. This issue affects Booktics: from n/a through 1.0.22.
- risk 0.53cvss 8.1epss 0.00
Unauthenticated Privilege Escalation in MStore API <= 4.20.0 versions.
- risk 0.46cvss 7.1epss 0.00
Unauthenticated Cross Site Scripting (XSS) in Welcart e-Commerce <= 2.11.31 versions.
- risk 0.49cvss 7.5epss 0.00
Unauthenticated SQL Injection in WP Directory Kit <= 1.5.4 versions.
- risk 0.46cvss 7.1epss 0.00
Unauthenticated Cross Site Scripting (XSS) in MailChimp Subscribe Forms <= 4.3.3 versions.
- risk 0.46cvss 7.1epss 0.00
Subscriber Broken Access Control in Solace Extra <= 1.6.0 versions.
- risk 0.47cvss 7.2epss 0.00
Editor PHP Object Injection in Car Rental Manager <= 1.3.9 versions.
- risk 0.49cvss 7.5epss 0.00
Unauthenticated Broken Access Control in Taxi Booking Manager for WooCommerce <= 2.0.3 versions.
- risk 0.38cvss —epss —
### Summary A missing end anchor (`$`) in the ClassDefinition UID validation regex allows an authenticated user with the `objects` permission to create a class with a malicious UID containing SQL. When a data object of that class is later loaded, Block.php concatenates the raw…
- risk 0.40cvss 7.2epss 0.01
Missing authorization in PostgreSQL logical decoding allows a non-superuser holding REPLICATION privilege to dlopen any file visible to the operating system account running the server, via the choice of logical decoding plugin. This in turn runs arbitrary code as that account. …
- risk 0.46cvss 8.1epss 0.00
Untrusted data inclusion in PostgreSQL psql COPY may allow a server administrator to elicit execution of data lines as psql commands, via error injection. If the "COPY FROM STDIN" or "\copy FROM STDIN" command fails before the server indicates that it awaits input rows, psql…
- risk 0.50cvss 8.7epss 0.00
Fulcio is a certificate authority for issuing code signing certificates for an OpenID Connect (OIDC) identity. Versions through 1.8.5 improperly follow cross-host redirects and attach Kubernetes ServiceAccount tokens during OIDC discovery, allowing a malicious or compromised…
- risk 0.50cvss 8.8epss 0.01
Heap buffer overflow in PostgreSQL pg_dump of long function transform lists allows an object creator to execute arbitrary code as the operating system user running pg_dump, via a crafted transform list. Versions before PostgreSQL 18.5, 17.11, 16.15, 15.19, and 14.24 are…
- risk 0.50cvss 8.8epss 0.01
Untrusted data inclusion in pg_dump in PostgreSQL allows a malicious superuser of the origin server to inject arbitrary code for restore-time execution as the client operating system account running psql to restore the dump, via psql \restrict meta-command input expansion. The…
- risk 0.50cvss 8.8epss 0.01
Type confusion in PostgreSQL "portal"/cursor lifecycle allows a user to execute arbitrary code as the operating system user running the database, via re-creation of a cursor or other portal with different types. Versions before PostgreSQL 18.5, 17.11, 16.15, 15.19, and 14.24…
- risk 0.50cvss 8.8epss 0.01
Type confusion in PostgreSQL pg_restore_attribute_stats() allows an object creator to execute arbitrary code as the operating system user running the database, via conflation of range and multirange values. Within major version 18, minor versions before PostgreSQL 18.5 are…
- risk 0.50cvss 8.8epss 0.00
Integer wraparound in PostgreSQL fuzzystrmatch allows a user to direct writes to a huge range of addresses, executing arbitrary code as the operating system user running the database, via extreme inputs to SQL function levenshtein() or levenshtein_less_equal(). Versions before…
- risk 0.50cvss 8.8epss 0.00
SQL injection in PostgreSQL EXTRACT() deparse allows an object owner to execute arbitrary SQL as a superuser via a hostile object definition. Attacks affect expression deparse consumers broadly, including pg_dump, psql commands like \sf, and any similar usage in non-core tools.…
- risk 0.50cvss 8.8epss 0.01
Type confusion with PostgreSQL "internal" data type arguments allows any user to execute arbitrary code as the operating system user running the database, via calls to functions with that argument type. Type "internal" represents a class of mutually-incompatible data structures…
- risk 0.46cvss 8.2epss 0.00
Stack buffer overflow in PostgreSQL argument name matching allows an object creator to achieve unknown impacts via OUT parameter count. The attack can write only 0x0 and 0x1 bytes. Versions before PostgreSQL 18.5, 17.11, 16.15, 15.19, and 14.24 are affected.
- risk 0.50cvss 8.8epss 0.01
Integer wraparound in PostgreSQL 32-bit builds of pltcl and plperl allows an object creator to cause the server to undersize an allocation and write out-of-bounds via crafted function bodies. This may execute arbitrary code as the operating system user running the database. …
- risk 0.57cvss 8.8epss 0.01
Heap buffer overflow in PostgreSQL pg_stat_statements allows the query author to execute arbitrary code as the operating system user running the database, via crafted queries containing array constants. Within major version 18, minor versions before PostgreSQL 18.5 are…