Live Vulnerability Intelligence
Threat Database
Search CVEs, inspect descriptions, and open detail pages with AI-assisted technical context.
CVE-2026-57359 - WordPress component
Unauthenticated Cross Site Scripting (XSS) in ReviewX
CVE-2026-57359
CVE-2026-57358 - WordPress component
Unauthenticated Cross Site Scripting (XSS) in Customize My Account for WooCommerce
CVE-2026-57358
CVE-2026-57357 - WordPress component
Unauthenticated Cross Site Scripting (XSS) in Search Atlas SEO
CVE-2026-57357
CVE-2026-57356 - WordPress component
Unauthenticated Cross Site Scripting (XSS) in MC Woocommerce Wishlist
CVE-2026-57356
CVE-2026-57351 - WordPress component
Unauthenticated Cross Site Scripting (XSS) in HandL UTM Grabber
CVE-2026-57351
CVE-2026-57350 - WordPress component
Unauthenticated Cross Site Scripting (XSS) in WP Debugging
CVE-2026-57350
CVE-2026-57349 - WordPress component
Unauthenticated Cross Site Scripting (XSS) in WPeMatico RSS Feed Fetcher
CVE-2026-57349
CVE-2026-57355 - WordPress component
Subscriber Broken Access Control in Classified Listing
CVE-2026-57355
CVE-2026-57354 - WordPress component
Subscriber Cross Site Scripting (XSS) in JetReviews
CVE-2026-57354
CVE-2026-57353 - WordPress component
Subscriber Broken Access Control in Link Whisper Premium
CVE-2026-57353
CVE-2026-57352 - WordPress component
Unauthenticated Broken Authentication in ALD – Dropshipping and Fulfillment for AliExpress and WooCommerce
CVE-2026-57352
CVE-2026-56037 - Themify Popup Plugin
Deserialization of Untrusted Data vulnerability in Themify Themify Popup allows Object Injection. This issue affects Themify Popup: from n/a through 1.4.3.
CVE-2026-56037
CVE-2026-57348 - WordPress component
Unauthenticated Server Side Request Forgery (SSRF) in Paid Member Subscriptions
CVE-2026-57348
CVE-2026-57345 - WordPress component
Unauthenticated Cross Site Scripting (XSS) in Internal Links Manager
CVE-2026-57345
CVE-2026-57344 - WordPress component
Unauthenticated Cross Site Scripting (XSS) in Classified Listing
CVE-2026-57344
CVE-2026-57343 - WordPress component
Unauthenticated Cross Site Scripting (XSS) in Real Estate 7
CVE-2026-57343
CVE-2026-57347 - WordPress component
Subscriber Sensitive Data Exposure in Hotel Booking Lite
CVE-2026-57347
CVE-2026-57342 - WordPress component
Subscriber Cross Site Scripting (XSS) in ShortPixel Adaptive Images
CVE-2026-57342
CVE-2026-49779 - WordPress component
Customer Path Traversal in Tax Exempt for WooCommerce
CVE-2026-49779
CVE-2026-42382 - WordPress component
Unauthenticated Local File Inclusion in Audrey
CVE-2026-42382
