Recent Advisories

Severity ID Title Vendor Product Date Type
HIGH 8.1 CVE-2026-22330

WordPress Right Way theme <= 4.0 - Local File Inclusion vulnerability_CVE-2026-22330

Unauthenticated Local File Inclusion in Right Way

Themeum Right Way n/a CVE
HIGH 7.1 CVE-2026-22329

WordPress Skillate theme <= 1.2.10 - Reflected Cross Site Scripting (XSS) vulnerability_CVE-2026-22329

Unauthenticated Cross Site Scripting (XSS) in Skillate

Themeum Skillate n/a CVE
HIGH 7.1 CVE-2026-22328

WordPress Auto Repair theme <= 22.6 - Reflected Cross Site Scripting (XSS) vulnerability_CVE-2026-22328

Unauthenticated Cross Site Scripting (XSS) in Auto Repair

VamTam Auto Repair n/a CVE
CRITICAL 9.9 CVE-2026-22327

WordPress Restaurt theme <= 1.0.4 - Arbitrary File Upload vulnerability_CVE-2026-22327

Subscriber Arbitrary File Upload in Restaurt

Zozothemes Restaurt n/a CVE
HIGH 8.1 CVE-2026-22326

WordPress Reprizo theme <= 1.0.8 - Local File Inclusion vulnerability_CVE-2026-22326

Unauthenticated Local File Inclusion in Reprizo

AxiomThemes Reprizo n/a CVE
HIGH 8.1 CVE-2026-22325

WordPress Promo theme <= 1.3.0 - Local File Inclusion vulnerability_CVE-2026-22325

Unauthenticated Local File Inclusion in Promo

AxiomThemes Promo n/a CVE
MEDIUM 4.8 CVE-2026-12491

Vllm: vllm: image exif rotation & png trns transparency not normalized, causing mismatch between model input and expectations_CVE-2026-12491

A flaw was found in vLLM, an open-source library for large language model inference. This vulnerability arises from improper handling of image meta...

Red Hat Red Hat AI Inference Server CVE
CRITICAL 9.8 CVE-2025-69179

WordPress Support Ticket Management System plugin <= 1.9 - Privilege Escalation vulnerability_CVE-2025-69179

Unauthenticated Privilege Escalation in Support Ticket Management System

Theme passion Support Ticket Management System n/a CVE
HIGH 8.1 CVE-2025-69173

WordPress Tipsy theme <= 1.1 - Local File Inclusion vulnerability_CVE-2025-69173

Unauthenticated Local File Inclusion in Tipsy

ThemeREX Tipsy n/a CVE
HIGH 8.1 CVE-2025-69172

WordPress Resurs theme <= 1.3 - Local File Inclusion vulnerability_CVE-2025-69172

Unauthenticated Local File Inclusion in Resurs

ThemeREX Resurs n/a CVE