In Java a medium severity vulnerability CVE-2026-12353 was detected. This vulnerability allows an unauthenticated attacker to trigger an Out of Memory condition to crash the Java process. To address this issue, users should upgrade Java to the latest available version. For more details, visit https://nvd.nist.gov/vuln/detail/CVE-2026-12353.
Read more Application DevelopmentIn WPO365 | Login component for WordPress versions 43.2 and earlier a high severity vulnerability CVE-2026-15212 was detected. This vulnerability allows an attacker to modify the plugin’s settings via a specially crafted request. To address this issue, users should upgrade WPO365 | Login to the latest available version. For more details, visit https://nvd.nist.gov/vuln/detail/CVE-2026-15212.
Read more CMSIn SAML Single Sign On – SSO Login component for WordPress versions up to and including 5.4.4 a critical severity vulnerability CVE-2026-15981 was detected. This vulnerability allows attackers to bypass authentication. To address this issue, users should upgrade SAML Single Sign On – SSO Login to the latest available version. For more details, visit https://nvd.nist.gov/vuln/detail/CVE-2026-15981.
Read more CMSIn Cal versions 4.7.15 and earlier a high severity vulnerability CVE-2024-58353 was detected. This vulnerability allows an attacker to inject arbitrary HTML or JavaScript. To address this issue, users should upgrade Cal to the latest available version. For more details, visit https://nvd.nist.gov/vuln/detail/CVE-2024-58353.
Read more ProductivityIn Clover Payment Gateway by Zaytech component for WooCommerce versions before 1.3.6 a high severity vulnerability CVE-2026-12493 was detected. This vulnerability allows unauthenticated users to mark arbitrary orders as paid. To address this issue, users should upgrade Clover Payment Gateway by Zaytech to the latest available version. For more details, visit https://nvd.nist.gov/vuln/detail/CVE-2026-12493.
Read more E-commerceIn Cal a critical severity vulnerability CVE-2026-16624 was detected. This vulnerability allows any authenticated user to create a webhook on any team and steal booking data. To address this issue, users should upgrade Cal to the latest available version. For more details, visit https://nvd.nist.gov/vuln/detail/CVE-2026-16624.
Read more ProductivityIn MongoDB versions prior to 8.0.28 a medium severity vulnerability CVE-2026-13064 was detected. This vulnerability allows attackers to cause resource exhaustion through specially crafted queries. To address this issue, users should upgrade MongoDB to version 8.0.28 or later. For more details, visit https://nvd.nist.gov/vuln/detail/CVE-2026-13064.
Read more DatabaseIn MongoDB versions before 8.2.12 a medium severity vulnerability CVE-2026-13063 was detected. This vulnerability allows an authenticated user to cause a denial of service. To address this issue, users should upgrade MongoDB to version 8.2.12 or later. For more details, visit https://nvd.nist.gov/vuln/detail/CVE-2026-13063.
Read more DatabaseIn the Quix Page Builder component for Joomla versions prior to 6.2.1 a high severity vulnerability CVE-2026-60027 was detected. This vulnerability allows unauthenticated users to read arbitrary files via path traversal. To address this issue, users should upgrade Quix Page Builder to the latest available version. For more details, visit https://nvd.nist.gov/vuln/detail/CVE-2026-60027.
Read more CMS