Vulnerability index

Browse CVEs

10,000+ matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

CRITICAL 9.4 CVE-2026-14934 A Missing Authorization vulnerability in the repository creation functionality in Google Cloud BigQuery, Dataform and Colab Enterprise, in the versio… Mitigation only Fix from $2,3002026-07-13 MEDIUM 5.3 CVE-2026-61985 Missing Authorization vulnerability in magepeopleteam Car Rental Manager car-rental-manager allows Exploiting Incorrectly Configured Access Control S… Mitigation only Fix from $1,6002026-07-13 MEDIUM 5.3 CVE-2026-61983 Missing Authorization vulnerability in andy_moyle Church Admin church-admin allows Exploiting Incorrectly Configured Access Control Security Levels.T… Mitigation only Fix from $1,6002026-07-13 MEDIUM 5.3 CVE-2026-61977 Exposure of Sensitive System Information to an Unauthorized Control Sphere vulnerability in Crocoblock JetSearch jet-search allows Retrieve Embedded … No fix yet Fix from $1,6002026-07-13 MEDIUM 5.3 CVE-2026-61976 Exposure of Sensitive System Information to an Unauthorized Control Sphere vulnerability in Crocoblock JetBlocks For Elementor jet-blocks allows Retr… Mitigation only Fix from $1,6002026-07-13 MEDIUM 5.3 CVE-2026-61975 Exposure of Sensitive System Information to an Unauthorized Control Sphere vulnerability in Crocoblock JetReviews jet-reviews allows Retrieve Embedde… Mitigation only Fix from $1,6002026-07-13 MEDIUM 5.4 CVE-2026-61968 Missing Authorization vulnerability in Saad Iqbal myCred mycred allows Exploiting Incorrectly Configured Access Control Security Levels.This issue af… No fix yet Fix from $1,6002026-07-13 MEDIUM 5.4 CVE-2026-61958 Missing Authorization vulnerability in Saad Iqbal License Manager for WooCommerce license-manager-for-woocommerce allows Exploiting Incorrectly Confi… Mitigation only Fix from $1,6002026-07-13 HIGH 7.1 CVE-2026-61956 Cross-Site Request Forgery (CSRF) vulnerability in hamsalam ووسلام – همگام سازی ووکامرس و باسلام sync-basalam allows Cross Site Request Forgery… Mitigation only Fix from $1,9502026-07-13 HIGH 7.6 CVE-2026-61955 Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in Hannan گرویتی فرم فارسی persian-gravity-forms a… Mitigation only Fix from $1,9502026-07-13 MEDIUM 6.5 CVE-2026-59523 Missing Authorization vulnerability in NSquared Simply Schedule Appointments simply-schedule-appointments allows Exploiting Incorrectly Configured Ac… Mitigation only Fix from $1,6002026-07-13 HIGH 7.2 CVE-2026-59521 Deserialization of Untrusted Data vulnerability in ShapedPlugin LLC Real Testimonials testimonial-free allows Object Injection.This issue affects Rea… Mitigation only Fix from $1,9502026-07-13 CRITICAL 9.8 CVE-2026-59518 Deserialization of Untrusted Data vulnerability in wpWax Directorist directorist allows Object Injection.This issue affects Directorist: from n/a thr… Mitigation only Fix from $2,3002026-07-13 HIGH 7.1 CVE-2026-59516 Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Room 34 Creative Services, LLC ICS Calendar ics… Mitigation only Fix from $1,9502026-07-13 CRITICAL 9.3 CVE-2026-59515 Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in Sergey AIWU ai-copilot-content-generator allows… Mitigation only Fix from $2,3002026-07-13 HIGH 7.1 CVE-2026-57816 Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in FunnelKit Funnel Builder by FunnelKit funnel-bu… Mitigation only Fix from $1,9502026-07-13 HIGH 7.5 CVE-2026-57815 Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') vulnerability in WPMU DEV - Your All-in-One WordPress Platform Formina… Mitigation only Fix from $1,9502026-07-13 HIGH 7.1 CVE-2026-57814 Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in WPMU DEV - Your All-in-One WordPress Platform F… Mitigation only Fix from $1,9502026-07-13 CRITICAL 9.8 CVE-2026-57813 Incorrect Privilege Assignment vulnerability in properfraction MailOptin mailoptin allows Privilege Escalation.This issue affects MailOptin: from n/a… Mitigation only Fix from $2,3002026-07-13 MEDIUM 6.5 CVE-2026-57812 Missing Authorization vulnerability in NSquared Simply Schedule Appointments simply-schedule-appointments allows Exploiting Incorrectly Configured Ac… Mitigation only Fix from $1,6002026-07-13 CRITICAL 10.0 CVE-2026-57811 Improper Control of Generation of Code ('Code Injection') vulnerability in Realtyna Realtyna Organic IDX plugin real-estate-listing-realtyna-wpl allo… Mitigation only Fix from $2,3002026-07-13 HIGH 8.5 CVE-2026-57810 Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in Saad Iqbal APIExperts Square for WooCommerce wo… Mitigation only Fix from $1,9502026-07-13 HIGH 7.5 CVE-2026-57805 Improper Control of Filename for Include/Require Statement in PHP Program ('PHP Remote File Inclusion') vulnerability in Select-Themes Tonda tonda al… Mitigation only Fix from $1,9502026-07-13 HIGH 7.5 CVE-2026-57804 Improper Control of Filename for Include/Require Statement in PHP Program ('PHP Remote File Inclusion') vulnerability in CodexThemes TheGem Theme Ele… Mitigation only Fix from $1,9502026-07-13 HIGH 7.5 CVE-2026-57803 Improper Control of Filename for Include/Require Statement in PHP Program ('PHP Remote File Inclusion') vulnerability in Select-Themes Struktur Core … Mitigation only Fix from $1,9502026-07-13 HIGH 7.5 CVE-2026-57802 Improper Control of Filename for Include/Require Statement in PHP Program ('PHP Remote File Inclusion') vulnerability in Select-Themes Struktur allow… Mitigation only Fix from $1,9502026-07-13 HIGH 7.5 CVE-2026-57801 Improper Control of Filename for Include/Require Statement in PHP Program ('PHP Remote File Inclusion') vulnerability in Select-Themes SetSail setsai… Mitigation only Fix from $1,9502026-07-13 HIGH 7.5 CVE-2026-57800 Improper Control of Filename for Include/Require Statement in PHP Program ('PHP Remote File Inclusion') vulnerability in Edge-Themes Overworld overwo… Mitigation only Fix from $1,9502026-07-13 HIGH 7.5 CVE-2026-57799 Improper Control of Filename for Include/Require Statement in PHP Program ('PHP Remote File Inclusion') vulnerability in uxper Nuss nuss allows PHP L… Mitigation only Fix from $1,9502026-07-13 HIGH 7.5 CVE-2026-57798 Improper Control of Filename for Include/Require Statement in PHP Program ('PHP Remote File Inclusion') vulnerability in SaurabhSharma NewsPlus Short… Mitigation only Fix from $1,9502026-07-13