Blog

"Prevention is cheaper than a breach"

Live Vulnerability Intelligence

Threat Database

Search CVEs, inspect descriptions, and open detail pages with AI-assisted technical context.

Total1,249
Critical1,249
High0
Medium0
Reset
Showing 461-480 of 1249 records
Threat Entry Updated 2026-01-12

CVE-2026-21675 - iccDEV Plugin

iccDEV provides a set of libraries and tools for working with ICC color management profiles. Versions 2.3.1 and below contain a Use After Free vulnerability in the CIccXform::Create() function, where it deletes the hint. This issue is fixed in version 2.3.1.1.

PLUGIN iccDEV

CVE-2026-21675

CRITICAL CVSS 9.8 2026-01-06
Threat Entry Updated 2026-01-08

CVE-2026-0625 - DSL-2640B Plugin

Multiple D-Link DSL/DIR/DNS devices contain an authentication bypass and improper access control vulnerability in the dnscfg.cgi endpoint that allows an unauthenticated attacker to access DNS configuration functionality. By directly requesting this endpoint, an attacker can modify the device’s DNS settings without valid credentials, enabling DNS hijacking (“DNSChanger”) attacks that redirect user traffic to attacker-controlled infrastructure. In 2019, D-Link reported that this behavior was leveraged by the "GhostDNS" malware ecosystem targeting consumer and carrier routers. All impacted products were subsequently designated end-of-life/end-of-service, and no longer receive security updates. Exploitation evidence was observed…

PLUGIN DSL-2640B

CVE-2026-0625

CRITICAL CVSS 9.3 2026-01-05
Threat Entry Updated 2026-01-08

CVE-2026-21440 - Core Plugin

AdonisJS is a TypeScript-first web framework. A Path Traversal vulnerability in AdonisJS multipart file handling may allow a remote attacker to write arbitrary files to arbitrary locations on the server filesystem. This impacts @adonisjs/bodyparser through version 10.1.1 and 11.x prerelease versions prior to 11.0.0-next.6. This issue has been patched in @adonisjs/bodyparser versions 10.1.2 and 11.0.0-next.6.

PLUGIN Core

CVE-2026-21440

CRITICAL CVSS 9.2 2026-01-02
Threat Entry Updated 2026-01-02

CVE-2025-14998 - Branda White Labeling Plugin

The Branda plugin for WordPress is vulnerable to privilege escalation via account takeover in all versions up to, and including, 3.4.24. This is due to the plugin not properly validating a user's identity prior to updating their password. This makes it possible for unauthenticated attackers to change arbitrary user's passwords, including administrators, and leverage that to gain access to their account.

PLUGIN Branda White Labeling

CVE-2025-14998

CRITICAL CVSS 9.8 2026-01-02
Threat Entry Updated 2026-01-20

CVE-2025-52835 - WING WordPress Migrator Plugin

Cross-Site Request Forgery (CSRF) vulnerability in ConoHa by GMO WING WordPress Migrator allows Upload a Web Shell to a Web Server.This issue affects WING WordPress Migrator: from n/a through 1.1.9.

PLUGIN WING WordPress Migrator

CVE-2025-52835

CRITICAL CVSS 9.6 2025-12-30
Threat Entry Updated 2026-01-20

CVE-2025-68987 - For Movie Studios And Filmmakers Cinerama Allows Php Local File Inclusion Theme

Improper Control of Filename for Include/Require Statement in PHP Program ('PHP Remote File Inclusion') vulnerability in Edge-Themes Cinerama - A WordPress Theme for Movie Studios and Filmmakers cinerama allows PHP Local File Inclusion.This issue affects Cinerama - A WordPress Theme for Movie Studios and Filmmakers: from n/a through

THEME For Movie Studios And Filmmakers Cinerama Allows Php Local File Inclusion

CVE-2025-68987

CRITICAL CVSS 9.8 2025-12-30
Threat Entry Updated 2026-01-20

CVE-2025-68974 - WordPress Core

Improper Control of Filename for Include/Require Statement in PHP Program ('PHP Remote File Inclusion') vulnerability in miniOrange WordPress Social Login and Register miniorange-login-openid allows PHP Local File Inclusion.This issue affects WordPress Social Login and Register: from n/a through

CORE WordPress Core

CVE-2025-68974

CRITICAL CVSS 9.8 2025-12-30
Threat Entry Updated 2025-12-29

CVE-2025-13773 - Woocommerce Delivery Notes Plugin

The Print Invoice & Delivery Notes for WooCommerce plugin for WordPress is vulnerable to Remote Code Execution in all versions up to, and including, 5.8.0 via the 'WooCommerce_Delivery_Notes::update' function. This is due to missing capability check in the 'WooCommerce_Delivery_Notes::update' function, PHP enabled in Dompdf, and missing escape in the 'template.php' file. This makes it possible for unauthenticated attackers to execute code on the server.

PLUGIN Woocommerce Delivery Notes

CVE-2025-13773

CRITICAL CVSS 9.8 2025-12-24
Threat Entry Updated 2025-12-23

CVE-2025-14388 - Phastpress Plugin

The PhastPress plugin for WordPress is vulnerable to Unauthenticated Arbitrary File Read via null byte injection in all versions up to, and including, 3.7. This is due to a discrepancy between the extension validation in `getExtensionForURL()` which operates on URL-decoded paths, and `appendNormalized()` which strips everything after a null byte before constructing the filesystem path. This makes it possible for unauthenticated attackers to read arbitrary files from the webroot, including wp-config.php, by appending a double URL-encoded null byte (%2500) followed by an allowed extension (.txt) to the file path.

PLUGIN Phastpress

CVE-2025-14388

CRITICAL CVSS 9.8 2025-12-23
Threat Entry Updated 2025-12-23

CVE-2025-13619 - Flex Store Users Plugin

The Flex Store Users plugin for WordPress is vulnerable to Privilege Escalation in all versions up to, and including, 1.1.0. This is due to the 'fsUserHandle::signup' and the 'fsSellerRole::add_role_seller' functions not restricting what user roles a user can register with. This makes it possible for unauthenticated attackers to supply the 'administrator' role during registration and gain administrator access to the site. Note: The vulnerability can be exploited with the 'fs_type' parameter if the Flex Store Seller plugin is also activated.

PLUGIN Flex Store Users

CVE-2025-13619

CRITICAL CVSS 9.8 2025-12-20
Threat Entry Updated 2025-12-23

CVE-2025-13329 - File Uploader For Woocommerce Plugin

The File Uploader for WooCommerce plugin for WordPress is vulnerable to arbitrary file uploads due to missing file type validation in the callback function for the 'add-image-data' REST API endpoint in all versions up to, and including, 1.0.3. This makes it possible for unauthenticated attackers to upload arbitrary files to the Uploadcare service and subsequently download them on the affected site's server which may make remote code execution possible.

PLUGIN File Uploader For Woocommerce

CVE-2025-13329

CRITICAL CVSS 9.8 2025-12-20
Threat Entry Updated 2026-01-20

CVE-2025-64231 - Contact Form 7 Plugin

Unrestricted Upload of File with Dangerous Type vulnerability in RedefiningTheWeb WordPress Contact Form 7 PDF, Google Sheet & Database rtwwcfp-wordpress-contact-form-7-pdf allows Using Malicious Files.This issue affects WordPress Contact Form 7 PDF, Google Sheet & Database: from n/a through

PLUGIN Contact Form 7

CVE-2025-64231

CRITICAL CVSS 9.8 2025-12-18
Threat Entry Updated 2025-12-15

CVE-2025-14156 - Wordpress Lms Plugin

The Fox LMS – WordPress LMS Plugin plugin for WordPress is vulnerable to privilege escalation in all versions up to, and including, 1.0.5.1. This is due to the plugin not properly validating the 'role' parameter when creating new users via the `/fox-lms/v1/payments/create-order` REST API endpoint. This makes it possible for unauthenticated attackers to create new user accounts with arbitrary roles, including administrator, leading to complete site compromise.

PLUGIN Wordpress Lms

CVE-2025-14156

CRITICAL CVSS 9.8 2025-12-15
Threat Entry Updated 2025-12-15

CVE-2025-14440 - Jay Login Register Plugin

The JAY Login & Register plugin for WordPress is vulnerable to authentication bypass in versions up to, and including, 2.4.01. This is due to incorrect authentication checking in the 'jay_login_register_process_switch_back' function with the 'jay_login_register_process_switch_back' cookie value. This makes it possible for unauthenticated attackers to log in as any existing user on the site, such as an administrator, if they have access to the user id.

PLUGIN Jay Login Register

CVE-2025-14440

CRITICAL CVSS 9.8 2025-12-13
Threat Entry Updated 2025-12-15

CVE-2025-11693 - Pdf Plugin

The Export WP Page to Static HTML & PDF plugin for WordPress is vulnerable to Sensitive Information Exposure in all versions up to, and including, 4.3.4 through publicly exposed cookies.txt files containing authentication cookies. This makes it possible for unauthenticated attackers to cookies that may have been injected into the log file if the site administrator triggered a back-up using a specific user role like 'administrator.'

PLUGIN Pdf

CVE-2025-11693

CRITICAL CVSS 9.8 2025-12-13
Threat Entry Updated 2025-12-15

CVE-2025-10738 - Exact Links Plugin

The URL Shortener Plugin For WordPress plugin for WordPress is vulnerable to SQL Injection via the ‘analytic_id’ parameter in all versions up to, and including, 3.0.7 due to insufficient escaping on the user supplied parameter and lack of sufficient preparation on the existing SQL query. This makes it possible for unauthenticated attackers to append additional SQL queries into already existing queries that can be used to extract sensitive information from the database.

PLUGIN Exact Links

CVE-2025-10738

CRITICAL CVSS 9.8 2025-12-13
Threat Entry Updated 2025-12-12

CVE-2025-14344 - Gf Multi Uploader Plugin

The Multi Uploader for Gravity Forms plugin for WordPress is vulnerable to arbitrary file deletion due to insufficient file path validation in the 'plupload_ajax_delete_file' function in all versions up to, and including, 1.1.7. This makes it possible for unauthenticated attackers to delete arbitrary files on the server.

PLUGIN Gf Multi Uploader

CVE-2025-14344

CRITICAL CVSS 9.8 2025-12-12
Threat Entry Updated 2025-12-12

CVE-2025-12963 - Lazytasks Project Task Management Plugin

The LazyTasks – Project & Task Management with Collaboration, Kanban and Gantt Chart plugin for WordPress is vulnerable to privilege escalation via account takeover in all versions up to, and including, 1.2.29. This is due to the plugin not properly validating a user's identity via the 'wp-json/lazytasks/api/v1/user/role/edit/' REST API endpoint prior to updating their details like email address. This makes it possible for unauthenticated attackers to change arbitrary user's email addresses, including administrators, and leverage that to reset the user's password and gain access to their account. It is also…

PLUGIN Lazytasks Project Task Management

CVE-2025-12963

CRITICAL CVSS 9.8 2025-12-12
Threat Entry Updated 2025-12-12

CVE-2025-13764 - Wp Cardealer Plugin

The WP CarDealer plugin for WordPress is vulnerable to Privilege Escalation in all versions up to, and including, 1.2.16. This is due to the 'WP_CarDealer_User::process_register' function not restricting what user roles a user can register with. This makes it possible for unauthenticated attackers to supply the 'administrator' role during registration and gain administrator access to the site.

PLUGIN Wp Cardealer

CVE-2025-13764

CRITICAL CVSS 9.8 2025-12-11
Threat Entry Updated 2025-12-12

CVE-2025-13613 - Elated Membership Plugin

The Elated Membership plugin for WordPress is vulnerable to Authentication Bypass in all versions up to, and including, 1.2. This is due to the plugin not properly logging in a user with the data that was previously verified through the 'eltdf_membership_check_facebook_user' and the 'eltdf_membership_login_user_from_social_network' function. This makes it possible for unauthenticated attackers to log in as administrative users, as long as they have an existing account on the site which can easily be created by default through the temp user functionality, and access to the administrative user's email.

PLUGIN Elated Membership

CVE-2025-13613

CRITICAL CVSS 9.8 2025-12-10
Scroll to top