Vulnerability index

Browse CVEs

10,000+ matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Unclassified CRITICAL 9.3
CVE-2026-56070

Unauthenticated SQL Injection in Advance Product Search <= 1.4.4 versions.

Mitigation only
Fix from $2,300 2026-06-26
Unclassified HIGH 7.5
CVE-2026-56069

Unauthenticated Insecure Direct Object References (IDOR) in Toolset Forms <= 2.6.24 versions.

Mitigation only
Fix from $1,950 2026-06-26
Unclassified CRITICAL 9.3
CVE-2026-56068

Unauthenticated SQL Injection in JetEngine <= 3.8.10.2 versions.

Mitigation only
Fix from $2,300 2026-06-26
Unclassified CRITICAL 9.3
CVE-2026-56067

Unauthenticated SQL Injection in JetSmartFilters <= 3.8.3 versions.

Mitigation only
Fix from $2,300 2026-06-26
Unclassified MEDIUM 5.8
CVE-2026-56066

Unauthenticated Arbitrary File Deletion in ShortPixel Adaptive Images <= 3.11.4 versions.

Mitigation only
Fix from $1,600 2026-06-26
Unclassified HIGH 8.5
CVE-2026-56064

Subscriber SQL Injection in Tourfic <= 2.22.5 versions.

Mitigation only
Fix from $1,950 2026-06-26
Unclassified HIGH 8.3
CVE-2026-56063

Unauthenticated Broken Access Control in MailChimp Block <= 1.1.15 versions.

Mitigation only
Fix from $1,950 2026-06-26
Unclassified CRITICAL 9.3
CVE-2026-56062

Unauthenticated SQL Injection in Quotes llama <= 3.1.5 versions.

Mitigation only
Fix from $2,300 2026-06-26
Unclassified HIGH 7.5
CVE-2026-56061

Unauthenticated Broken Access Control in Subscriptions for WooCommerce <= 1.9.5 versions.

Mitigation only
Fix from $1,950 2026-06-26
Unclassified HIGH 7.5
CVE-2026-56060

Unauthenticated Sensitive Data Exposure in Print Invoice & Delivery Notes for WooCommerce <= 7.1.1 versions.

Mitigation only
Fix from $1,950 2026-06-26
Unclassified CRITICAL 9.9
CVE-2026-56059

Subscriber Arbitrary File Upload in Travel Booking <= 2.2.5 versions.

Mitigation only
Fix from $2,300 2026-06-26
Unclassified CRITICAL 9.9
CVE-2026-56058

Subscriber Arbitrary File Upload in Quform <= 2.23.0 versions.

Mitigation only
Fix from $2,300 2026-06-26
Unclassified CRITICAL 9.8
CVE-2026-56057

Subscriber PHP Object Injection in Uncanny Automator Pro <= 7.3.0.6 versions.

Mitigation only
Fix from $2,300 2026-06-26
Unclassified HIGH 8.8
CVE-2026-56055

Subscriber PHP Object Injection in RealHomes <= 4.5.3 versions.

Mitigation only
Fix from $1,950 2026-06-26
Unclassified MEDIUM 6.5
CVE-2026-56048

Unauthenticated Insecure Direct Object References (IDOR) in Payment Gateway Based Fees and Discounts for WooCommerce <= 3.0.0 versions.

Mitigation only
Fix from $1,600 2026-06-26
Unclassified HIGH 7.1
CVE-2026-56047

Unauthenticated Cross Site Scripting (XSS) in perfmatters <= 2.6.3 versions.

Mitigation only
Fix from $1,950 2026-06-26
Unclassified MEDIUM 6.5
CVE-2026-56046

Subscriber Cross Site Scripting (XSS) in ListingPro <= 2.9.11 versions.

Mitigation only
Fix from $1,600 2026-06-26
Unclassified HIGH 7.1
CVE-2026-56045

Unauthenticated Cross Site Scripting (XSS) in Automatic < 3.135.1 versions.

Mitigation only
Fix from $1,950 2026-06-26
Unclassified HIGH 7.1
CVE-2026-56044

Unauthenticated Cross Site Scripting (XSS) in Blog2Social <= 8.9.2 versions.

Mitigation only
Fix from $1,950 2026-06-26
Unclassified HIGH 7.1
CVE-2026-56043

Unauthenticated Cross Site Scripting (XSS) in Customer Reviews for WooCommerce <= 5.110.1 versions.

Mitigation only
Fix from $1,950 2026-06-26
Unclassified HIGH 7.1
CVE-2026-56041

Unauthenticated Cross Site Scripting (XSS) in Responsive Lightbox <= 2.7.6 versions.

Mitigation only
Fix from $1,950 2026-06-26
Unclassified HIGH 7.1
CVE-2026-56040

Unauthenticated Cross Site Scripting (XSS) in Gutenverse Form <= 2.4.7 versions.

Mitigation only
Fix from $1,950 2026-06-26
Unclassified HIGH 7.1
CVE-2026-56039

Unauthenticated Cross Site Scripting (XSS) in Quick Interest Slider <= 3.1.6 versions.

Mitigation only
Fix from $1,950 2026-06-26
Unclassified HIGH 8.8
CVE-2026-56038

Contributor Privilege Escalation in Frisbii Pay <= 1.8.2 versions.

No fix yet
Fix from $1,950 2026-06-26
Unclassified CRITICAL 9.3
CVE-2026-56036

Unauthenticated SQL Injection in 워드프레스 결제 심플페이 <= 5.5.6 versions.

Mitigation only
Fix from $2,300 2026-06-26
Unclassified HIGH 8.6
CVE-2026-56035

Unauthenticated Multiple Vulnerabilities in BitFire Security <= 5.0.3 versions.

No fix yet
Fix from $1,950 2026-06-26
Unclassified CRITICAL 9.3
CVE-2026-56034

Unauthenticated SQL Injection in Library Management System <= 3.5.7 versions.

Mitigation only
Fix from $2,300 2026-06-26
Unclassified CRITICAL 9.8
CVE-2026-56033

Unauthenticated Privilege Escalation in Dokan Pro <= 5.0.4 versions.

Mitigation only
Fix from $2,300 2026-06-26
Unclassified CRITICAL 9.8
CVE-2026-56032

Subscriber PHP Object Injection in Buddyboss Platform <= 3.0.4 versions.

Mitigation only
Fix from $2,300 2026-06-26
Unclassified HIGH 8.1
CVE-2026-56031

Unauthenticated PHP Object Injection in Uncanny Automator <= 7.3.1.2 versions.

Mitigation only
Fix from $1,950 2026-06-26