In the keycloak-services component for Keycloak in unpatched versions a medium severity vulnerability CVE-2026-79652 was detected. This vulnerability allows an authenticated attacker to bypass user consent requirements and gain unauthorized access. To address this issue, users should upgrade Keycloak to the latest available version. For more details, visit https://nvd.nist.gov/vuln/detail/CVE-2026-79652.
Read more SecurityIn CM Map Locations – Visualize and share your locations in a few clicks component for WordPress versions 2.1.8 and earlier a high severity vulnerability CVE-2026-16601 was detected. This vulnerability allows attackers to upload arbitrary files. To address this issue, users should upgrade CM Map Locations – Visualize and share your locations in a few clicks to the latest available version. For more details, visit https://nvd.nist.gov/vuln/detail/CVE-2026-16601.
Read more CMSIn ShopBuilder Pro – Elementor WooCommerce Builder Addons component for WooCommerce versions 2.2.0 and earlier a high severity vulnerability CVE-2026-32477 was detected. This vulnerability allows unauthenticated attackers to delete arbitrary files on the server. To address this issue, users should upgrade ShopBuilder Pro – Elementor WooCommerce Builder Addons to the latest available version. For more details, visit https://nvd.nist.gov/vuln/detail/CVE-2026-32477.
Read more E-commerceIn affected versions of Java a medium severity vulnerability CVE-2026-78323 was detected. This vulnerability allows attackers to bypass TLS trust validation. To address this issue, users should upgrade Java to the latest available version. For more details, visit https://nvd.nist.gov/vuln/detail/CVE-2026-78323.
Read more Application DevelopmentIn Keycloak in affected versions a medium severity vulnerability CVE-2025-68833 was detected. This vulnerability allows an attacker unauthorized access to resources. To address this issue, users should upgrade Keycloak to the latest available version. For more details, visit https://nvd.nist.gov/vuln/detail/CVE-2025-68833.
Read more SecurityIn Grafana versions prior to 12.4.0 a medium severity vulnerability CVE-2026-17033 was detected. This vulnerability allows an authenticated attacker to submit a malicious alert containing a controlled URL. To address this issue, users should upgrade Grafana to the latest available version. For more details, visit https://nvd.nist.gov/vuln/detail/CVE-2026-17033.
Read more Data AnalyticsIn Page Builder CK component for Joomla versions earlier than 3.6.5 a medium severity vulnerability CVE-2026-77993 was detected. This vulnerability allows attackers to execute arbitrary web scripts. To address this issue, users should upgrade Page Builder CK to the latest available version. For more details, visit https://nvd.nist.gov/vuln/detail/CVE-2026-77993.
Read more CMSIn 6Storage Rentals component for WordPress versions up to and including 2.27.0 a critical severity vulnerability CVE-2026-16249 was detected. This vulnerability allows unauthenticated attackers to log in as any existing user, including administrators. To address this issue, users should upgrade 6Storage Rentals to the latest available version. For more details, visit https://nvd.nist.gov/vuln/detail/CVE-2026-16249.
Read more CMSIn WooCommerce File Approval component for WooCommerce versions 10.7 and earlier a high severity vulnerability CVE-2026-28171 was detected. This vulnerability allows an unauthenticated attacker to arbitrarily delete files. To address this issue, users should upgrade WooCommerce File Approval to the latest available version. For more details, visit https://nvd.nist.gov/vuln/detail/CVE-2026-28171.
Read more E-commerce