CVE-2026-57389 is a Path Traversal vulnerability in Groundhogg plugin versions up to 4.4.1. This issue allows for Path Traversal attacks and has a CVSS score of 8.6, classified as HIGH severity. Users of Groundhogg plugin versions up to 4.4.1 should apply patches or mitigations. The vulnerability affects Groundhogg versions from n/a through <= 4.4.1.
CVE-2026-57667 is a HIGH severity vulnerability in Groundhogg plugin for WordPress, with a CVSS score of 8.5. The vulnerability allows SQL injection attacks via the Sales Representative feature in Groundhogg versions <= 4.5. The CVE was published on 2026-06-26 and modified on 2026-06-29. The vulnerability is considered HIGH severity, indicating a significant risk to affected systems.