Recent Advisories

Severity ID Title Vendor Product Date Type
CRITICAL 9.8 7EF1048B-EC16-

Exploit for CVE-2026-49105_7EF1048B-EC16-5C52-ADFF-9E459A7BCD0E

CVE-2026-49105 CVE-2026-49105 WP Zendesk PHP Object Injection Exploit...

N/A N/A GITHUBEXPLOIT
NONE 24B08E86-9B8F-

Exploit for CVE-2026-49079_24B08E86-9B8F-5BF7-AAB3-E33143DE5E53

CVE-2026-49079 CVE-2026-49079 JetSearch SQL Injection Exploit...

N/A N/A GITHUBEXPLOIT
HIGH 7.5 64C268B8-DAA9-

Exploit for CVE-2026-49083_64C268B8-DAA9-5742-A8DC-477457B77A6F

CVE-2026-49083 CVE-2026-49083 LatePoint Calendar Booking Plugin Privilege Escalation Exploit...

N/A N/A GITHUBEXPLOIT
MEDIUM 5.5 CVE-2026-40722

WordPress Yoast SEO Premium plugin <= 26.6 - Broken Access Control vulnerability_CVE-2026-40722

Missing Authorization vulnerability in Yoast BV Yoast SEO Premium allows Exploiting Incorrectly Configured Access Control Security Levels. This is...

Yoast BV Yoast SEO Premium n/a CVE
MEDIUM 4.8 CVE-2026-27870

CROSS-SITE SCRIPTING (XSS) VIA MALICIOUS FILE UPLOAD ON REGESTA SMART HD-PLC OF TELDAT_CVE-2026-27870

An attacker with access via network to the Regesta Smart HD-PLC of the provider Teldat (in this case, registration action IS required) who has the ...

Teldat Regesta Smart HD-PLC - TLDPH16D2 11.02.05.10.02 CVE
MEDIUM 6.9 CVE-2026-27869

WEB SERVICE (HTTP) DENIAL OF SERVICE VIA SLOW HEADERS ON REGESTA SMART HD-PLC OF TELDAT_CVE-2026-27869

An attacker with access via network to the Regesta Smart HD-PLC of the provider Teldat (in this case, NO registration action is required) who has t...

Teldat Regesta Smart HD-PLC - TLDPH16D2 11.02.05.10.02 CVE
MEDIUM 6.9 CVE-2026-27868

PUBLICATION OF SENSITIVE INFORMATION ON REGESTA SMART HD-PLC OF TELDAT_CVE-2026-27868

An attacker with access via network to the Regesta Smart HD-PLC of the provider Teldat (in this case, NO registration action is required) who has t...

Teldat Regesta Smart HD-PLC - TLDPH16D2 11.02.05.10.02 CVE
HIGH 8.8 CVE-2026-12165

Contest Gallery <= 30.0.2 - Authenticated (Author+) Privilege Escalation via 'RegistryUserRole' Parameter_CVE-2026-12165

The Contest Gallery – Upload & Vote Photos, Media, Sell with PayPal & Stripe plugin for WordPress is vulnerable to Privilege Escalation in all vers...

contest-gallery Contest Gallery – Upload & Vote Photos, Media, Sell with PayPal & Stripe CVE
MEDIUM 6.6 CVE-2026-12115

Counter Box <= 2.0.13 - Authenticated (Administrator+) PHP Object Injection via Import_CVE-2026-12115

The Counter Box – Add Countdowns, Timers & Dynamic Counters to WordPress plugin for WordPress is vulnerable to PHP Object Injection in all versions...

wpcalc Counter Box – Add Countdowns, Timers & Dynamic Counters to WordPress CVE
CRITICAL 10 06D35475-E02D-

Exploit for Improper Input Validation in Siemens 6Bk1602-0Aa12-0Tp0_Firmware_06D35475-E02D-543B-8D0C-C2472D8AE7A8

No description provided...

N/A N/A GITHUBEXPLOIT