Articles
Newsflash
23 Sep 2026 Business and Enterprise Solutions
WordPress: Stored Cross-Site Scripting vulnerability in User Profile Builder – Beautiful User Registration Forms, User Profiles & User Role Editor

In User Profile Builder – Beautiful User Registration Forms, User Profiles & User Role Editor component for WordPress versions 3.15.7 and earlier a high severity vulnerability CVE-2026-6431 was detected. This vulnerability allows unauthenticated attackers to inject arbitrary web scripts. To address this issue, users should upgrade User Profile Builder – Beautiful User Registration Forms, User Profiles & User Role Editor to the latest available version. For more details, visit https://nvd.nist.gov/vuln/detail/CVE-2026-6431.

Read more
CMS
23 Sep 2026 Business and Enterprise Solutions
WordPress: Stored Cross-Site Scripting vulnerability in Powerkit

In Powerkit component for WordPress versions 3.0.4 and earlier a medium severity vulnerability CVE-2026-2390 was detected. This vulnerability allows attackers to inject arbitrary web scripts. To address this issue, users should upgrade Powerkit to the latest available version. For more details, visit https://nvd.nist.gov/vuln/detail/CVE-2026-2390.

Read more
CMS
23 Sep 2026 Infrastructure and Network
OpenVPN: System Crash Vulnerability

In OpenVPN versions 2.5.0 through 2.8.6 a medium severity vulnerability CVE-2026-82325 was detected. This vulnerability allows local authenticated users to cause a system crash. To address this issue, users should upgrade OpenVPN to the latest available version. For more details, visit https://nvd.nist.gov/vuln/detail/CVE-2026-82325.

Read more
Security
23 Sep 2026 Business and Enterprise Solutions
WordPress: Authorization Bypass in Flamingo

In Flamingo component for WordPress versions 2.6.2 and earlier a medium severity vulnerability CVE-2026-12853 was detected. This vulnerability allows unauthorized users to perform restricted actions. To address this issue, users should upgrade Flamingo to the latest available version. For more details, visit https://nvd.nist.gov/vuln/detail/CVE-2026-12853.

Read more
CMS
23 Sep 2026 Business and Enterprise Solutions
WordPress: Incorrect Authorization in Otter Blocks

In Otter Blocks component for WordPress versions 3.1.7 and earlier a medium severity vulnerability CVE-2026-4945 was detected. This vulnerability allows unauthenticated attackers to pay for a lower-cost product while obtaining entitlement for a premium product. To address this issue, users should upgrade Otter Blocks to the latest available version. For more details, visit https://nvd.nist.gov/vuln/detail/CVE-2026-4945.

Read more
CMS
22 Sep 2026 Data Management and Analytics
PostgreSQL: Arbitrary Code Execution in PostgreSQL Anonymizer

In PostgreSQL Anonymizer component for PostgreSQL versions earlier than 3.1.4 a high severity vulnerability CVE-2026-19633 was detected. This vulnerability allows unprivileged masked users to execute arbitrary code with elevated privileges. To address this issue, users should upgrade PostgreSQL Anonymizer to the latest available version. For more details, visit https://nvd.nist.gov/vuln/detail/CVE-2026-19633.

Read more
Database
Case Studies