In MotoPress Hotel Booking plugin component for WordPress versions 6.2.4 and earlier a high severity vulnerability CVE-2026-90650 was detected. This vulnerability allows unauthenticated attackers to inject arbitrary web scripts. To address this issue, users should upgrade MotoPress Hotel Booking plugin to the latest available version. For more details, visit https://nvd.nist.gov/vuln/detail/CVE-2026-90650.
Read more CMSIn GenieWords component for WordPress versions 1.5.34 and earlier a high severity vulnerability CVE-2026-74933 was detected. This vulnerability allows unauthenticated users to overwrite its configuration and inject arbitrary web scripts. To address this issue, users should upgrade GenieWords to the latest available version. For more details, visit https://nvd.nist.gov/vuln/detail/CVE-2026-74933.
Read more CMSIn Aruba HiSpeed Cache component for WordPress versions 3.0.14 and earlier a medium severity vulnerability CVE-2026-15889 was detected. This vulnerability allows authenticated attackers to inject arbitrary web scripts. To address this issue, users should upgrade Aruba HiSpeed Cache plugin to the latest available version. For more details, visit https://nvd.nist.gov/vuln/detail/CVE-2026-15889.
Read more CMSIn SP Property component for Joomla versions prior to 4.1.4 a critical severity vulnerability CVE-2026-78082 was detected. This vulnerability allows an unauthenticated attacker to extract sensitive data from the database. To address this issue, users should upgrade SP Property to the latest available version. For more details, visit https://nvd.nist.gov/vuln/detail/CVE-2026-78082.
Read more CMSIn SP Property component for Joomla versions prior to 4.1.4 a medium severity vulnerability CVE-2026-78084 was detected. This vulnerability allows unauthorized users to remove arbitrary files or upload unverified file types. To address this issue, users should upgrade SP Property to the latest available version. For more details, visit https://nvd.nist.gov/vuln/detail/CVE-2026-78084.
Read more CMSIn Redux Framework component for WordPress versions 4.5.13.1 and earlier a medium severity vulnerability CVE-2026-5399 was detected. This vulnerability allows attackers to inject arbitrary web scripts. To address this issue, users should upgrade Redux Framework to the latest available version. For more details, visit https://nvd.nist.gov/vuln/detail/CVE-2026-5399.
Read more CMSIn SP Property component for Joomla versions prior to 4.1.4 a high severity vulnerability CVE-2026-78083 was detected. This vulnerability allows attackers to perform unauthorized actions on behalf of authenticated users. To address this issue, users should upgrade SP Property to the latest available version. For more details, visit https://nvd.nist.gov/vuln/detail/CVE-2026-78083.
Read more CMSIn Rara One Click Demo Import component for WordPress versions before 1.3.5 a high severity vulnerability CVE-2026-26212 was detected. This vulnerability allows an attacker to achieve remote code execution. To address this issue, users should upgrade Rara One Click Demo Import to the latest available version. For more details, visit https://nvd.nist.gov/vuln/detail/CVE-2026-26212.
Read more CMSIn IP2Location Country Blocker component for WordPress versions before 2.45.0 a medium severity vulnerability CVE-2026-82530 was detected. This vulnerability allows unauthenticated attackers to bypass IP-based access restrictions. To address this issue, users should upgrade IP2Location Country Blocker to the latest available version. For more details, visit https://nvd.nist.gov/vuln/detail/CVE-2026-82530.
Read more CMS