Recent Advisories

Severity ID Title Vendor Product Date Type
HIGH 7.1 CVE-2025-68872

WordPress Eli’s WordCents adSense Widget with Analytics plugin <= 1.3.03.27 - Reflected Cross Site Scripting (XSS) vulnerability_CVE-2025-68872

Unauthenticated Cross Site Scripting (XSS) in Eli's WordCents adSense Widget with Analytics

Eli Eli's WordCents adSense Widget with Analytics n/a CVE
HIGH 7.1 CVE-2025-68851

WordPress Okay Toolkit plugin <= 2.3 - Reflected Cross Site Scripting (XSS) vulnerability_CVE-2025-68851

Unauthenticated Cross Site Scripting (XSS) in Okay Toolkit

ArrayHQ Okay Toolkit n/a CVE
HIGH 7.1 CVE-2025-68840

WordPress iRobots.txt SEO plugin <= 1.1.2 - Reflected Cross Site Scripting (XSS) vulnerability_CVE-2025-68840

Unauthenticated Cross Site Scripting (XSS) in iRobots.txt SEO

markbeljaars iRobots.txt SEO n/a CVE
MEDIUM 6.3 CVE-2025-68049

WordPress bunny.net plugin <= 2.3.6 - Broken Access Control vulnerability_CVE-2025-68049

Subscriber Broken Access Control in bunny.net

bunny.net bunny.net n/a CVE
MEDIUM 4.4 CVE-2025-60175

WordPress PopAd Plugin <= 1.0.4 - Server Side Request Forgery (SSRF) Vulnerability_CVE-2025-60175

Administrator Server Side Request Forgery (SSRF) in PopAd

vynnus PopAd n/a CVE
HIGH 7.5 CVE-2025-59133

WordPress Projectopia plugin <= 5.1.25.2 - Insecure Direct Object References (IDOR) vulnerability_CVE-2025-59133

Custom role Insecure Direct Object References (IDOR) in Projectopia

Projectopia Projectopia n/a CVE
NONE 7E9AB78A-EC36-

VulnAnalyzer_7E9AB78A-EC36-5B66-A8F9-1A52F13CAF8E

🔍 VulnAnalyzer 2.1 A comprehensive automated vulnerability detection and analysis platform Supports manual code analysis and automatic website sca...

N/A N/A GITHUBEXPLOIT
NONE AEC6B5A0-7165-

ITScape_AEC6B5A0-7165-56C3-93E1-5924E719E738

🛡️ ITScape - Test your systems for security gaps 📖 Overview ITScape performs security testing on your computer system. This tool checks for a spec...

N/A N/A GITHUBEXPLOIT
HIGH 8.8 MS:CVE-2026-12007

Chromium: CVE-2026-12007 Use after free  Core_MS:CVE-2026-12007

This CVE was assigned by Chrome. Microsoft Edge (Chromium-based) ingests Chromium, which addresses this vulnerability. Please see Google Chrome Rel...

N/A N/A MSCVE
HIGH 8.3 MS:CVE-2026-12008

Chromium: CVE-2026-12008 Use after free  DigitalCredentials_MS:CVE-2026-12008

This CVE was assigned by Chrome. Microsoft Edge (Chromium-based) ingests Chromium, which addresses this vulnerability. Please see Google Chrome Rel...

N/A N/A MSCVE