|
191
|
7.1 |
HIGH
Network
|
-
|
-
|
Unauthenticated Cross Site Scripting (XSS) in Link Whisper Free <= 0.9.4 versions.
New
|
CWE-79
Cross-site Scripting
|
CVE-2026-57333
|
2026-06-30 03:39 |
2026-06-30 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
192
|
6.5 |
MEDIUM
Network
|
-
|
-
|
Unauthenticated Broken Access Control in WP User Frontend <= 4.3.7 versions.
New
|
CWE-862
Missing Authorization
|
CVE-2026-57334
|
2026-06-30 03:39 |
2026-06-30 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
193
|
6.5 |
MEDIUM
Network
|
-
|
-
|
Subscriber Broken Access Control in Ads by WPQuads <= 3.0.3 versions.
New
|
CWE-862
Missing Authorization
|
CVE-2026-57335
|
2026-06-30 03:39 |
2026-06-30 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
194
|
7.1 |
HIGH
Network
|
-
|
-
|
Unauthenticated Cross Site Scripting (XSS) in Jobify <= 4.3.2 versions.
New
|
CWE-79
Cross-site Scripting
|
CVE-2026-57336
|
2026-06-30 03:39 |
2026-06-30 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
195
|
7.1 |
HIGH
Network
|
-
|
-
|
Unauthenticated Cross Site Scripting (XSS) in Landing Page Builder <= 1.5.3.5 versions.
New
|
CWE-79
Cross-site Scripting
|
CVE-2026-57337
|
2026-06-30 03:39 |
2026-06-30 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
196
|
7.1 |
HIGH
Network
|
-
|
-
|
Unauthenticated Cross Site Scripting (XSS) in ARForms <= 7.1.2 versions.
New
|
CWE-79
Cross-site Scripting
|
CVE-2026-57338
|
2026-06-30 03:39 |
2026-06-30 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
197
|
6.5 |
MEDIUM
Network
|
-
|
-
|
Unauthenticated Broken Access Control in Business Directory <= 6.4.23 versions.
New
|
CWE-862
Missing Authorization
|
CVE-2026-57339
|
2026-06-30 03:39 |
2026-06-30 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
198
|
6.5 |
MEDIUM
Network
|
-
|
-
|
Unauthenticated Broken Access Control in Japanized For WooCommerce <= 2.9.12 versions.
New
|
CWE-862
Missing Authorization
|
CVE-2026-57340
|
2026-06-30 03:39 |
2026-06-30 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
199
|
6.5 |
MEDIUM
Network
|
-
|
-
|
Unauthenticated Insecure Direct Object References (IDOR) in Colissimo Officiel : Méthodes de livraison pour WooCommerce <= 2.9.0 versions.
New
|
CWE-639
Authorization Bypass Through User-Controlled Key
|
CVE-2026-57341
|
2026-06-30 03:39 |
2026-06-30 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
200
|
7.5 |
HIGH
Network
|
envoyproxy
|
envoy
|
Envoy is an open source edge and service proxy designed for cloud-native applications. Prior to 1.35.11, 1.36.7, 1.37.3, and 1.38.1, in cases where UDP DNS filter is configured with local resolution …
Update
|
CWE-480
Use of Incorrect Operator
|
CVE-2026-48497
|
2026-06-30 03:36 |
2026-06-27 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|