Live Vulnerability Intelligence
Threat Database
Search CVEs, inspect descriptions, and open detail pages with AI-assisted technical context.
CVE-2026-42655 - WordPress component
Unauthenticated Bypass Vulnerability in Best Payments Plugin for WP
CVE-2026-42655
CVE-2026-42657 - WordPress component
Unauthenticated Other Vulnerability Type in Contest Gallery
CVE-2026-42657
CVE-2026-42640 - WordPress component
Unauthenticated Broken Access Control in Classified Listing
CVE-2026-42640
CVE-2026-42651 - WordPress component
Subscriber Broken Access Control in Classified Listing
CVE-2026-42651
CVE-2026-42378 - WordPress component
Subscriber Broken Authentication in WP Full Stripe Free
CVE-2026-42378
CVE-2026-41556 - WordPress component
Subscriber Cross Site Scripting (XSS) in ProfilePress
CVE-2026-41556
CVE-2026-40796 - WordPress component
Subscriber Sensitive Data Exposure in WPPizza
CVE-2026-40796
CVE-2026-40799 - WordPress component
Unauthenticated Broken Authentication in Simple Cloudflare Turnstile
CVE-2026-40799
CVE-2026-40795 - WordPress component
Subscriber Broken Access Control in Amelia
CVE-2026-40795
CVE-2026-40794 - WordPress component
Subscriber Broken Access Control in myCred
CVE-2026-40794
CVE-2026-40793 - WordPress component
Subscriber Broken Access Control in Groundhogg < 4.4.1 versions.
CVE-2026-40793
CVE-2026-40790 - WordPress component
Subscriber Sensitive Data Exposure in WP SMS
CVE-2026-40790
CVE-2026-40792 - WordPress component
Subscriber Insecure Direct Object References (IDOR) in KiviCare
CVE-2026-40792
CVE-2026-40782 - WordPress component
Unauthenticated Broken Access Control in WPAdverts
CVE-2026-40782
CVE-2026-40773 - WordPress Core
Subscriber Broken Access Control in rtMedia for WordPress, BuddyPress and bbPress
CVE-2026-40773
CVE-2026-40743 - WordPress component
Unauthenticated Broken Access Control in Tutor LMS
CVE-2026-40743
CVE-2026-39594 - WPForms Plugin
Subscriber Broken Access Control in Ultra Addons for WPForms
CVE-2026-39594
CVE-2026-39584 - WordPress component
Subscriber Broken Access Control in RepairBuddy
CVE-2026-39584
CVE-2026-39540 - WordPress component
Subscriber Cross Site Scripting (XSS) in Shipment Tracker for Woocommerce
CVE-2026-39540
CVE-2026-39525 - WordPress component
Unauthenticated Broken Access Control in Booking Activities
CVE-2026-39525
