Security Intelligence
Feed

Real-time CVE tracking, exploit analysis, and vulnerability intelligence curated for security professionals.

324 New today
65,952 Total advisories
Live Monitoring

Daily Security Trends (Last 14 Days)

60
Jun 13
68
Jun 14
443
Jun 15
630
Jun 16
464
Jun 17
3
Jun 18
352
Jun 19
56
Jun 20
104
Jun 21
317
Jun 22
294
Jun 23
355
Jun 24
376
Jun 25
289
Jun 26
Critical
High
Medium
Low

Recent Advisories

Severity ID Title Vendor Product Date Type
MEDIUM 4.3 CVE-2026-57634

WordPress PPWP plugin <= 1.9.19 - Insecure Direct Object References (IDOR) vulnerability_CVE-2026-57634

Contributor Insecure Direct Object References (IDOR) in PPWP

WP Folio Team PPWP n/a CVE
MEDIUM 5.3 CVE-2026-57633

WordPress WCBoost – Products Compare plugin <= 1.1.0 - Sensitive Data Exposure vulnerability_CVE-2026-57633

Unauthenticated Sensitive Data Exposure in WCBoost – Products Compare

WCBoost WCBoost – Products Compare n/a CVE
MEDIUM 5.4 CVE-2026-57632

WordPress Email Marketing for WooCommerce by Omnisend plugin <= 1.19.0 - Broken Access Control vulnerability_CVE-2026-57632

Subscriber Broken Access Control in Email Marketing for WooCommerce by Omnisend

Omnisend Email Marketing for WooCommerce by Omnisend n/a CVE
HIGH 7.6 CVE-2026-57631

WordPress Popup box plugin <= 6.0.1 - SQL Injection vulnerability_CVE-2026-57631

Administrator SQL Injection in Popup box

Ays Pro Popup box n/a CVE
MEDIUM 5.3 CVE-2026-57630

WordPress Blocksy Companion Pro plugin <= 2.1.46 - Insecure Direct Object References (IDOR) vulnerability_CVE-2026-57630

Unauthenticated Insecure Direct Object References (IDOR) in Blocksy Companion Pro

Creative Themes Blocksy Companion Pro n/a CVE
MEDIUM 6.5 CVE-2026-57629

WordPress StatCounter plugin <= 2.1.1 - Cross Site Scripting (XSS) vulnerability_CVE-2026-57629

Contributor Cross Site Scripting (XSS) in StatCounter

StatCounter StatCounter n/a CVE
HIGH 7.6 CVE-2026-57628

WordPress WP All Import plugin <= 4.0.1 - SQL Injection vulnerability_CVE-2026-57628

Administrator SQL Injection in WP All Import

WP All Import WP All Import n/a CVE
MEDIUM 4.9 CVE-2026-57627

WordPress Kirki plugin <= 6.0.11 - Server Side Request Forgery (SSRF) vulnerability_CVE-2026-57627

Subscriber Server Side Request Forgery (SSRF) in Kirki

Themeum Kirki n/a CVE
MEDIUM 4.3 CVE-2026-57622

WordPress WPCafe plugin <= 3.0.14 - Broken Access Control vulnerability_CVE-2026-57622

Subscriber Broken Access Control in WPCafe

Arraytics WPCafe n/a CVE