The Bookly plugin for WordPress has a critical vulnerability, CVE-2026-93399, with a CVSS score of 9.1. This Insecure Direct Object Reference vulnerability affects versions up to and including 28.2. It allows unauthenticated attackers to enumerate sequential order IDs, disclose other customers' order tokens, retrieve calendar/appointment information, and permanently delete arbitrary non-completed bookings.
The Customer Reviews for WooCommerce plugin for WordPress has a critical vulnerability allowing unauthorized deletion of Media Library attachments. This issue, tracked as CVE-2026-89055, affects all versions up to and including 5.120.0. Exploitation requires a public review-form link, exposing a nonce for deleting arbitrary attachments, including administrator-owned images and documents.
CVE-2026-14281 debrief based on the supplied source corpus. The CVE record was published on 2026-09-25T07:16:53.540Z and has not been modified since then. The Automation Web Platform – Notifications and OTP for WooCommerce, Advanced Country Code plugin for WordPress is vulnerable to Privilege Escalation due to missing permission enforcement on the publicly accessible REST route `POST /wp-json/wawp/v1/sign [truncated]
CVE-2026-87902 is a remote file inclusion vulnerability in WordPress Core with known exploitation in the wild. The vulnerability allows attackers to include remote files, potentially leading to remote code execution. System administrators and security teams should prioritize patching, especially for internet-exposed installations. The scope of exploitation and impact require verification from official sou [truncated]
The CVE-2026-81630 vulnerability affects the Botslab G980H dash camera firmware, which does not properly verify the authenticity of firmware updates. This allows an attacker to intercept and modify firmware updates, potentially leading to unauthorized code execution on the device. The vulnerability has a CVSS score of 9.2 and is considered critical. Defenders responsible for managing and securing IoT devi [truncated]
CVE-2026-79766 is a critical vulnerability in Termix, a web-based server management platform. An authenticated administrator can store malicious domain and email values, which can be interpolated into a certbot shell command, allowing execution of arbitrary operating-system commands as the Termix backend process. This issue is fixed in version 2.5.1.
A vulnerability in the Linux kernel's svcrdma has been resolved. The vulnerability involves rejecting Write/Reply chunks with segcount 0. A peer can send a Write or Reply chunk with a zero segcount field, which was not properly rejected. This could lead to potential issues with the parsed chunk lists. The fix ensures that such malformed frames are rejected at the decode boundary.
A critical vulnerability has been resolved in the Linux kernel, specifically in the SUNRPC (Sun Remote Procedure Call) implementation. The vulnerability arises from the improper handling of the rpc_gss_wire_cred structure in the svcauth_gss_decode_credbody() function. This function is responsible for decoding credentials in the RPC service. The issue occurs when the function fails to zero out the rpc_gss_ [truncated]
An integer overflow vulnerability exists in the MPack Node API in MPack 1.1.1 on 32-bit platforms. When parsing a specially crafted MessagePack array32 or map32 object with an excessively large element count, the page allocation size calculation in mpack_tree_parse_children() can overflow size_t and produce an undersized allocation. Subsequent parsing writes mpack_node_data_t records beyond the allocated [truncated]
A critical vulnerability was found in mcp-remote versions 0.1.32 through 0.1.38, which are susceptible to Server-Side Request Forgery (SSRF) via the resource_metadata URL extracted from a remote MCP server's WWW-Authenticate header. This issue has a CVSS score of 9.1 and is considered critical. The vulnerability allows attackers to make unauthorized requests, potentially leading to significant operational [truncated]
A flaw in the Ansible Automation Platform automation-controller allows a user with organization workflow-admin permission to copy a WorkflowJobTemplate and launch jobs pinned to instance groups they are not authorized to use, bypassing the InstanceGroup use_role boundary. This could lead to attacker-influenced automation running in the control-plane execution context.
A critical vulnerability in Moquette, a lightweight Java MQTT broker, allows unauthorized access to MQTT topics due to improper handling of pattern-based ACL rules. This issue, fixed in version 0.18.1, enables clients to broaden their access and potentially disrupt session processing. The vulnerability arises from the AuthorizationsCollector.canDoOperation method directly substituting client ID and userna [truncated]