7.6

CVSS3.1

CVE-2026-32459 - WordPress UpsellWP plugin <= 2.2.4 - SQL Injection vulnerability

Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in flycart UpsellWP checkout-upsell-and-order-bumps allows Blind SQL Injection.This issue affects UpsellWP: from n/a through <= 2.2.4.

πŸ“… Published: March 13, 2026, 11:42 a.m. πŸ”„ Last Modified: April 29, 2026, 9:52 a.m.

7.6

CVSS3.1

CVE-2026-32458 - WordPress WOLF plugin <= 1.0.8.7 - SQL Injection vulnerability

Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in RealMag777 WOLF bulk-editor allows Blind SQL Injection.This issue affects WOLF: from n/a through <= 1.0.8.7.

πŸ“… Published: March 13, 2026, 11:42 a.m. πŸ”„ Last Modified: April 22, 2026, 9:30 p.m.

5.3

CVSS3.1

CVE-2026-32457 - WordPress Advanced Product Fields (Product Addons) for WooCommerce plugin <= 1.6.18 - Broken Access…

Missing Authorization vulnerability in Wombat Plugins Advanced Product Fields (Product Addons) for WooCommerce advanced-product-fields-for-woocommerce allows Exploiting Incorrectly Configured Access Control Security Levels.This issue affects Advanced Product Fields (Product Addons) for WooCommerce:…

πŸ“… Published: March 13, 2026, 11:42 a.m. πŸ”„ Last Modified: April 22, 2026, 9:30 p.m.

4.3

CVSS3.1

CVE-2026-32456 - WordPress Admin Menu Editor plugin <= 1.14.1 - Cross Site Request Forgery (CSRF) vulnerability

Cross-Site Request Forgery (CSRF) vulnerability in Janis Elsts Admin Menu Editor admin-menu-editor allows Cross Site Request Forgery.This issue affects Admin Menu Editor: from n/a through <= 1.14.1.

πŸ“… Published: March 13, 2026, 11:42 a.m. πŸ”„ Last Modified: April 22, 2026, 9:30 p.m.

6.5

CVSS3.1

CVE-2026-32455 - WordPress MDTF plugin <= 1.3.5 - Cross Site Scripting (XSS) vulnerability

Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in RealMag777 MDTF wp-meta-data-filter-and-taxonomy-filter allows DOM-Based XSS.This issue affects MDTF: from n/a through <= 1.3.5.

πŸ“… Published: March 13, 2026, 11:42 a.m. πŸ”„ Last Modified: April 22, 2026, 9:30 p.m.

6.5

CVSS3.1

CVE-2026-32454 - WordPress Avada Core plugin < 5.15.0 - Cross Site Scripting (XSS) vulnerability

Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in ThemeFusion Avada Core fusion-core allows DOM-Based XSS.This issue affects Avada Core: from n/a through < 5.15.0.

πŸ“… Published: March 13, 2026, 11:42 a.m. πŸ”„ Last Modified: April 22, 2026, 9:30 p.m.

5.3

CVSS3.1

CVE-2026-32453 - WordPress Avada Core plugin < 5.15.0 - Broken Access Control vulnerability

Missing Authorization vulnerability in ThemeFusion Avada Core fusion-core allows Exploiting Incorrectly Configured Access Control Security Levels.This issue affects Avada Core: from n/a through < 5.15.0.

πŸ“… Published: March 13, 2026, 11:42 a.m. πŸ”„ Last Modified: April 22, 2026, 9:30 p.m.

5.3

CVSS3.1

CVE-2026-32452 - WordPress Fusion Builder plugin < 3.15.0 - Broken Access Control vulnerability

Missing Authorization vulnerability in ThemeFusion Fusion Builder fusion-builder allows Exploiting Incorrectly Configured Access Control Security Levels.This issue affects Fusion Builder: from n/a through < 3.15.0.

πŸ“… Published: March 13, 2026, 11:42 a.m. πŸ”„ Last Modified: April 22, 2026, 9:30 p.m.

6.5

CVSS3.1

CVE-2026-32451 - WordPress Fusion Builder plugin < 3.15.0 - Broken Access Control vulnerability

Missing Authorization vulnerability in ThemeFusion Fusion Builder fusion-builder allows Exploiting Incorrectly Configured Access Control Security Levels.This issue affects Fusion Builder: from n/a through < 3.15.0.

πŸ“… Published: March 13, 2026, 11:42 a.m. πŸ”„ Last Modified: April 29, 2026, 9:51 a.m.

6.5

CVSS3.1

CVE-2026-32450 - WordPress Active Products Tables for WooCommerce plugin <= 1.0.7 - Cross Site Scripting (XSS) vulne…

Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in RealMag777 Active Products Tables for WooCommerce profit-products-tables-for-woocommerce allows DOM-Based XSS.This issue affects Active Products Tables for WooCommerce: from n/a through <= 1.0.7.

πŸ“… Published: March 13, 2026, 11:42 a.m. πŸ”„ Last Modified: April 22, 2026, 9:30 p.m.
Total resulsts: 349182
Page 1129 of 34,919
Β« previous page Β» next page
Filters