|
481
|
4.3 |
MEDIUM
Network
|
-
|
-
|
The Classified Listing – AI-Powered Classified ads & Business Directory Plugin plugin for WordPress is vulnerable to unauthorized access in all versions up to, and including, 5.3.10. This is due to t…
New
|
CWE-862
Missing Authorization
|
CVE-2026-7563
|
2026-05-15 23:09 |
2026-05-15 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
482
|
4.3 |
MEDIUM
Network
|
-
|
-
|
The Notify Odoo plugin for WordPress is vulnerable to Cross-Site Request Forgery in all versions up to, and including, 1.0.1. This is due to missing or incorrect nonce validation on the _updateSettin…
New
|
CWE-352
Origin Validation Error
|
CVE-2026-8425
|
2026-05-15 23:08 |
2026-05-15 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
483
|
5.8 |
MEDIUM
Network
|
-
|
-
|
Permission control vulnerability in calls. Impact: Successful exploitation of this vulnerability may affect availability.
New
|
CWE-200
Information Exposure
|
CVE-2026-41960
|
2026-05-15 23:08 |
2026-05-15 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
484
|
5.9 |
MEDIUM
Local
|
-
|
-
|
Permission control vulnerability in contacts. Impact: Successful exploitation of this vulnerability may affect availability.
New
|
CWE-840
Business Logic Errors
|
CVE-2026-41961
|
2026-05-15 23:08 |
2026-05-15 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
485
|
3.6 |
LOW
Local
|
-
|
-
|
Permission control vulnerability in the app management and control module. Impact: Successful exploitation of this vulnerability may affect service confidentiality.
New
|
CWE-264
Permissions, Privileges, and Access Controls
|
CVE-2026-41962
|
2026-05-15 23:08 |
2026-05-15 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
486
|
2.8 |
LOW
Local
|
-
|
-
|
Stack overflow vulnerability in the media platform. Impact: Successful exploitation of this vulnerability may affect availability.
New
|
CWE-121
Stack-based Buffer Overflow
|
CVE-2026-41963
|
2026-05-15 23:08 |
2026-05-15 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
487
|
8.4 |
HIGH
Local
|
-
|
-
|
Permission control vulnerability in the web. Impact: Successful exploitation of this vulnerability may affect availability.
New
|
CWE-362
Race Condition
|
CVE-2026-41964
|
2026-05-15 23:08 |
2026-05-15 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
488
|
5.6 |
MEDIUM
Network
|
-
|
-
|
Use-After-Free (UAF) vulnerability in the web. Impact: Successful exploitation of this vulnerability may affect availability.
New
|
CWE-840
Business Logic Errors
|
CVE-2026-41965
|
2026-05-15 23:08 |
2026-05-15 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
489
|
5.6 |
MEDIUM
Network
|
-
|
-
|
Permission control vulnerability in the smart sensing service. Impact: Successful exploitation of this vulnerability may affect service confidentiality.
New
|
CWE-840
Business Logic Errors
|
CVE-2026-41966
|
2026-05-15 23:08 |
2026-05-15 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
490
|
5.9 |
MEDIUM
Local
|
-
|
-
|
Permission control vulnerability in the manufacturability design module. Impact: Successful exploitation of this vulnerability may affect availability.
New
|
CWE-840
Business Logic Errors
|
CVE-2026-41967
|
2026-05-15 23:08 |
2026-05-15 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|