Blog

"Prevention is cheaper than a breach"

Live Vulnerability Intelligence

Threat Database

Search CVEs, inspect descriptions, and open detail pages with AI-assisted technical context.

Total18,248
Critical1,270
High4,357
Medium12,382
Reset
Showing 3381-3400 of 18248 records
Threat Entry Updated 2026-06-17

CVE-2026-32392 - Greenly Plugin

Improper Control of Filename for Include/Require Statement in PHP Program ('PHP Remote File Inclusion') vulnerability in Creatives_Planet Greenly greenly allows PHP Local File Inclusion.This issue affects Greenly: from n/a through

PLUGIN Greenly

CVE-2026-32392

HIGH CVSS 7.5 2026-03-13
Threat Entry Updated 2026-06-17

CVE-2026-32391 - SmartFix Plugin

Missing Authorization vulnerability in linethemes SmartFix smartfix allows Exploiting Incorrectly Configured Access Control Security Levels.This issue affects SmartFix: from n/a through < 1.2.4.

PLUGIN SmartFix

CVE-2026-32391

MEDIUM CVSS 5.4 2026-03-13
Threat Entry Updated 2026-06-17

CVE-2026-32390 - Nanosoft Plugin

Missing Authorization vulnerability in linethemes Nanosoft nanosoft allows Exploiting Incorrectly Configured Access Control Security Levels.This issue affects Nanosoft: from n/a through < 1.3.2.

PLUGIN Nanosoft

CVE-2026-32390

MEDIUM CVSS 5.4 2026-03-13
Threat Entry Updated 2026-06-17

CVE-2026-32388 - GLB Plugin

Missing Authorization vulnerability in linethemes GLB glb allows Exploiting Incorrectly Configured Access Control Security Levels.This issue affects GLB: from n/a through

PLUGIN GLB

CVE-2026-32388

MEDIUM CVSS 5.4 2026-03-13
Threat Entry Updated 2026-06-17

CVE-2026-32387 - Checkout for PayPal Plugin

Missing Authorization vulnerability in Noor Alam Checkout for PayPal checkout-for-paypal allows Exploiting Incorrectly Configured Access Control Security Levels.This issue affects Checkout for PayPal: from n/a through

PLUGIN Checkout for PayPal

CVE-2026-32387

MEDIUM CVSS 5.3 2026-03-13
Threat Entry Updated 2026-06-17

CVE-2026-32394 - PublishPress Capabilities Plugin

Missing Authorization vulnerability in PublishPress PublishPress Capabilities capability-manager-enhanced allows Exploiting Incorrectly Configured Access Control Security Levels.This issue affects PublishPress Capabilities: from n/a through

PLUGIN PublishPress Capabilities

CVE-2026-32394

MEDIUM CVSS 4.3 2026-03-13
Threat Entry Updated 2026-06-17

CVE-2026-32384 - WpBookingly Plugin

Improper Control of Filename for Include/Require Statement in PHP Program ('PHP Remote File Inclusion') vulnerability in magepeopleteam WpBookingly service-booking-manager allows PHP Local File Inclusion.This issue affects WpBookingly: from n/a through

PLUGIN WpBookingly

CVE-2026-32384

HIGH CVSS 7.5 2026-03-13
Threat Entry Updated 2026-06-17

CVE-2026-32385 - RegistrationMagic Plugin

Missing Authorization vulnerability in Metagauss RegistrationMagic custom-registration-form-builder-with-submission-manager allows Exploiting Incorrectly Configured Access Control Security Levels.This issue affects RegistrationMagic: from n/a through

PLUGIN RegistrationMagic

CVE-2026-32385

MEDIUM CVSS 5.4 2026-03-13
Threat Entry Updated 2026-06-17

CVE-2026-32383 - Ridhi Plugin

Missing Authorization vulnerability in raratheme Ridhi ridhi allows Exploiting Incorrectly Configured Access Control Security Levels.This issue affects Ridhi: from n/a through

PLUGIN Ridhi

CVE-2026-32383

MEDIUM CVSS 5.3 2026-03-13
Threat Entry Updated 2026-06-17

CVE-2026-32382 - Digital Download Plugin

Missing Authorization vulnerability in raratheme Digital Download digital-download allows Exploiting Incorrectly Configured Access Control Security Levels.This issue affects Digital Download: from n/a through

PLUGIN Digital Download

CVE-2026-32382

MEDIUM CVSS 5.3 2026-03-13
Threat Entry Updated 2026-06-17

CVE-2026-32381 - App Landing Page Plugin

Missing Authorization vulnerability in raratheme App Landing Page app-landing-page allows Exploiting Incorrectly Configured Access Control Security Levels.This issue affects App Landing Page: from n/a through

PLUGIN App Landing Page

CVE-2026-32381

MEDIUM CVSS 5.3 2026-03-13
Threat Entry Updated 2026-06-17

CVE-2026-32386 - Envo Extra Plugin

Missing Authorization vulnerability in EnvoThemes Envo Extra envo-extra allows Exploiting Incorrectly Configured Access Control Security Levels.This issue affects Envo Extra: from n/a through

PLUGIN Envo Extra

CVE-2026-32386

MEDIUM CVSS 4.3 2026-03-13
Threat Entry Updated 2026-06-17

CVE-2026-32380 - Numinous Plugin

Missing Authorization vulnerability in raratheme Numinous numinous allows Exploiting Incorrectly Configured Access Control Security Levels.This issue affects Numinous: from n/a through

PLUGIN Numinous

CVE-2026-32380

MEDIUM CVSS 5.3 2026-03-13
Threat Entry Updated 2026-06-17

CVE-2026-32379 - Rara Academic Plugin

Missing Authorization vulnerability in raratheme Rara Academic rara-academic allows Exploiting Incorrectly Configured Access Control Security Levels.This issue affects Rara Academic: from n/a through

PLUGIN Rara Academic

CVE-2026-32379

MEDIUM CVSS 5.3 2026-03-13
Threat Entry Updated 2026-06-17

CVE-2026-32378 - Book Landing Page Plugin

Missing Authorization vulnerability in raratheme Book Landing Page book-landing-page allows Exploiting Incorrectly Configured Access Control Security Levels.This issue affects Book Landing Page: from n/a through

PLUGIN Book Landing Page

CVE-2026-32378

MEDIUM CVSS 5.3 2026-03-13
Threat Entry Updated 2026-06-17

CVE-2026-32377 - Pranayama Yoga Plugin

Missing Authorization vulnerability in raratheme Pranayama Yoga pranayama-yoga allows Exploiting Incorrectly Configured Access Control Security Levels.This issue affects Pranayama Yoga: from n/a through

PLUGIN Pranayama Yoga

CVE-2026-32377

MEDIUM CVSS 5.3 2026-03-13
Threat Entry Updated 2026-06-17

CVE-2026-32376 - Kalon Plugin

Missing Authorization vulnerability in raratheme Kalon kalon allows Exploiting Incorrectly Configured Access Control Security Levels.This issue affects Kalon: from n/a through

PLUGIN Kalon

CVE-2026-32376

MEDIUM CVSS 5.3 2026-03-13
Threat Entry Updated 2026-06-17

CVE-2026-32375 - Travel Diaries Plugin

Missing Authorization vulnerability in raratheme Travel Diaries travel-diaries allows Exploiting Incorrectly Configured Access Control Security Levels.This issue affects Travel Diaries: from n/a through

PLUGIN Travel Diaries

CVE-2026-32375

MEDIUM CVSS 5.3 2026-03-13
Threat Entry Updated 2026-06-17

CVE-2026-32368 - Geo to Lat Plugin

Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in delphiknight Geo to Lat geo-to-lat allows Blind SQL Injection.This issue affects Geo to Lat: from n/a through

PLUGIN Geo to Lat

CVE-2026-32368

HIGH CVSS 8.5 2026-03-13
Threat Entry Updated 2026-06-17

CVE-2026-32369 - Medilink-Core Plugin

Improper Control of Filename for Include/Require Statement in PHP Program ('PHP Remote File Inclusion') vulnerability in RadiusTheme Medilink-Core medilink-core allows PHP Local File Inclusion.This issue affects Medilink-Core: from n/a through < 2.0.7.

PLUGIN Medilink-Core

CVE-2026-32369

HIGH CVSS 7.5 2026-03-13
Scroll to top