Recent Advisories

Severity ID Title Vendor Product Date Type
CRITICAL 9.9 CVE-2026-56059

WordPress Travel Booking theme <= 2.2.5 - Arbitrary File Upload vulnerability_CVE-2026-56059

Subscriber Arbitrary File Upload in Travel Booking

PhysCode Travel Booking n/a CVE
CRITICAL 9.9 CVE-2026-56058

WordPress Quform plugin <= 2.23.0 - Arbitrary File Upload vulnerability_CVE-2026-56058

Subscriber Arbitrary File Upload in Quform

ThemeCatcher Quform n/a CVE
CRITICAL 9.8 CVE-2026-56057

WordPress Uncanny Automator Pro plugin <= 7.3.0.6 - PHP Object Injection vulnerability_CVE-2026-56057

Subscriber PHP Object Injection in Uncanny Automator Pro

Uncanny Owl Uncanny Automator Pro n/a CVE
CRITICAL 9.3 CVE-2026-56036

WordPress 워드프레스 결제 심플페이 plugin <= 5.5.6 - SQL Injection vulnerability_CVE-2026-56036

Unauthenticated SQL Injection in 워드프레스 결제 심플페이

codemstory 워드프레스 결제 심플페이 5.5.6 CVE
CRITICAL 9.3 CVE-2026-56034

WordPress Library Management System plugin <= 3.5.7 - SQL Injection vulnerability_CVE-2026-56034

Unauthenticated SQL Injection in Library Management System

Online Web Tutor Library Management System n/a CVE
CRITICAL 9.8 CVE-2026-56033

WordPress Dokan Pro plugin <= 5.0.4 - Privilege Escalation vulnerability_CVE-2026-56033

Unauthenticated Privilege Escalation in Dokan Pro

Dokan Multivendor Plugin Dokan Pro n/a CVE
CRITICAL 9.8 CVE-2026-56032

WordPress Buddyboss Platform plugin <= 3.0.4 - PHP Object Injection vulnerability_CVE-2026-56032

Subscriber PHP Object Injection in Buddyboss Platform

BuddyBoss Buddyboss Platform n/a CVE
CRITICAL 9.8 CVE-2026-56030

WordPress Paytium plugin <= 5.0.2 - Privilege Escalation vulnerability_CVE-2026-56030

Unauthenticated Privilege Escalation in Paytium

paytiumsupport Paytium n/a CVE
CRITICAL 9.8 CVE-2026-56028

WordPress Easy Elements for Elementor – Addons & Website Templates plugin <= 1.4.9 - Privilege Escalation vulnerability_CVE-2026-56028

Unauthenticated Privilege Escalation in Easy Elements for Elementor – Addons & Website Templates

themewant Easy Elements for Elementor – Addons & Website Templates n/a CVE
CRITICAL 9.9 CVE-2026-56027

WordPress Booster for WooCommerce plugin <= 8.0.1 - Arbitrary File Upload vulnerability_CVE-2026-56027

Customer Arbitrary File Upload in Booster for WooCommerce

Pluggabl Booster for WooCommerce n/a CVE