Live Vulnerability Intelligence
Threat Database
Search CVEs, inspect descriptions, and open detail pages with AI-assisted technical context.
CVE-2026-49057 - WordPress component
Unauthenticated Broken Access Control in JobSearch
CVE-2026-49057
CVE-2026-48869 - WordPress component
Unauthenticated Cross Site Scripting (XSS) in Enfold
CVE-2026-48869
CVE-2026-42629 - Elementor Plugin
Unauthenticated Broken Authentication in PowerPack Pro for Elementor < v2.13.0 versions.
CVE-2026-42629
CVE-2026-42385 - WordPress component
Unauthenticated Cross Site Scripting (XSS) in Profile Builder Pro
CVE-2026-42385
CVE-2026-45436 - WordPress component
Subscriber Broken Access Control in WPBakery Page Builder
CVE-2026-45436
CVE-2026-42380 - WordPress component
Unauthenticated PHP Object Injection in AI Lab < 5.4.2 versions.
CVE-2026-42380
CVE-2026-40783 - WordPress component
Contributor Remote Code Execution (RCE) in Blocksy Companion Pro
CVE-2026-40783
CVE-2026-41557 - WordPress component
Unauthenticated Cross Site Scripting (XSS) in Kapee < 1.7.1 versions.
CVE-2026-41557
CVE-2026-40761 - WordPress component
Unauthenticated PHP Object Injection in Valeska
CVE-2026-40761
CVE-2026-40760 - WordPress component
Unauthenticated PHP Object Injection in Behold
CVE-2026-40760
CVE-2026-40759 - WordPress component
Unauthenticated PHP Object Injection in Esmée
CVE-2026-40759
CVE-2026-40758 - WordPress component
Unauthenticated PHP Object Injection in Léonie
CVE-2026-40758
CVE-2026-40755 - WordPress component
Unauthenticated PHP Object Injection in TechLink
CVE-2026-40755
CVE-2026-40768 - WordPress component
Unauthenticated Insecure Direct Object References (IDOR) in Salon booking system
CVE-2026-40768
CVE-2026-40765 - WordPress component
Unauthenticated Cross Site Scripting (XSS) in collectchat
CVE-2026-40765
CVE-2026-40749 - WordPress component
Subscriber Arbitrary File Upload in Charity Zone
CVE-2026-40749
CVE-2026-40748 - WordPress component
Subscriber Arbitrary File Upload in Kids Gift Shop
CVE-2026-40748
CVE-2026-40747 - WordPress component
Subscriber Arbitrary File Upload in Ecommerce Zone
CVE-2026-40747
CVE-2026-40746 - WordPress component
Subscriber Arbitrary File Upload in Restaurant Zone
CVE-2026-40746
CVE-2026-40754 - WordPress component
Unauthenticated PHP Object Injection in Roisin
CVE-2026-40754
