NIST

CVE intelligence

Cached from NVD. 2026-09-19 PT. Recent.

CVETitleVendorPublishedCVSSKEV listed
CVE-2026-12843The LearnDash LMS plugin for WordPress is vulnerable to authorization bypass in versions 4.25.0 - 5.1.6. This is due to the plugin not prope2026-09-05
CVE-2026-10196The Mail Mint – Email Marketing, Newsletter, Email Automation & WooCommerce Emails plugin for WordPress is vulnerable to PHP Object Injectio2026-09-05
CVE-2026-0799In BPF instructions that load/store a value from/to a scratch memory register the register index is an unsigned 32-bit integer and must not 2026-09-05
CVE-2025-9049The Nokri – Job Board WordPress Theme theme for WordPress is vulnerable to unauthorized modification of data due to a missing capability che2026-09-05
CVE-2025-15694The Joli Table Of Contents WordPress plugin before 2.8.1 does not sanitise and escape some of its settings before outputting them in an admi2026-09-05
CVE-2025-15693The JCH Optimize WordPress plugin before 5.0.1 does not properly restrict a directory path provided to one of its administrative image-brows2026-09-05
CVE-2025-15647CDT before 1.4.5 contains an out-of-bounds read vulnerability in the opposedVertexInd() function when constraint edge intersections are comp2026-09-05
CVE-2025-15614ugrep before 7.6.0 contains a heap buffer over-read vulnerability in the LZW decompressor when processing crafted .Z archive files. Attacker2026-09-05
CVE-2025-14945The Events Manager - Calendar, Bookings, Tickets, and more! plugin for WordPress is vulnerable to Stored Cross-Site Scripting via event attr2026-09-05
CVE-2024-11080The Post Grid and Gutenberg Blocks – ComboBlocks plugin for WordPress is vulnerable to Unauthenticated Hook Injection in versions 2.2.32 to 2026-09-05

Previous201–210 of 210