| CVE ID | Title | Vendor | Product | Severity | CVSS Score | Published At | AI Analysis |
|---|---|---|---|---|---|---|---|
| CVE-2026-66467 | WordPress FluentCommunity plugin <= 2.7.5 - Cross Site Scripting (XSS) vulnerability | WPManageNinja | FluentCommunity | Medium | 6.5 | 2026-08-13 13:37:06 | Deep Dive |
| CVE-2026-66466 | WordPress StoreGrowth: Smart Sales Booster for WooCommerce | BOGO, Upsells, Direct Checkout, Quick View, Side Cart plugin <= 2.1.1 - Broken Access Control vulnerability | weDevs | StoreGrowth: Smart Sales Booster for WooCommerce | BOGO, Upsells, Direct Checkout, Quick View, Side Cart | High | 7.5 | 2026-08-13 13:37:05 | Deep Dive |
| CVE-2026-66465 | WordPress Cartify theme <= 1.3.0.1 - Account Takeover vulnerability | AgniHD | Cartify | Critical | 9.8 | 2026-08-13 13:37:05 | Deep Dive |
| CVE-2026-66464 | WordPress Internal Link Optimiser plugin <= 5.2.7 - Broken Access Control vulnerability | Toast Plugins | Internal Link Optimiser | Medium | 6.5 | 2026-08-13 13:37:04 | Deep Dive |
| CVE-2026-66463 | WordPress iCARRY plugin <= 2.9 - Sensitive Data Exposure vulnerability | Hassan Fakih | iCARRY | High | 7.5 | 2026-08-13 13:37:03 | Deep Dive |
| CVE-2026-66462 | WordPress WooCommerce Appointments plugin <= 5.3.8 - Sensitive Data Exposure vulnerability | BookingWP | WooCommerce Appointments | High | 7.5 | 2026-08-13 13:37:03 | Deep Dive |
| CVE-2026-66461 | WordPress SMEPay: UPI Gateway for WooCommerce plugin <= 1.0.5 - Payment Bypass vulnerability | smepay | SMEPay: UPI Gateway for WooCommerce | High | 7.5 | 2026-08-13 13:37:02 | Deep Dive |
| CVE-2026-66459 | WordPress AI for SEO plugin <= 2.4.2 - Broken Access Control vulnerability | Space Codes | AI for SEO | Medium | 6.5 | 2026-08-13 13:37:01 | Deep Dive |
| CVE-2026-66460 | WordPress AfterShip Tracking plugin <= 1.18.1 - Cross Site Scripting (XSS) vulnerability | AfterShip & Automizely | AfterShip Tracking | Medium | 6.5 | 2026-08-13 13:37:01 | Deep Dive |
| CVE-2026-66458 | WordPress RealPress plugin <= 1.1.2 - SQL Injection vulnerability | ThimPress | RealPress | Critical | 9.3 | 2026-08-13 13:37:00 | Deep Dive |
| CVE-2026-66456 | WordPress Profile Extra Fields by BestWebSoft plugin <= 1.3.4 - Cross Site Scripting (XSS) vulnerability | bestwebsoft | Profile Extra Fields by BestWebSoft | Medium | 6.5 | 2026-08-13 13:36:59 | Deep Dive |
| CVE-2026-66455 | WordPress ReactPress plugin <= 3.4.0 - Broken Access Control vulnerability | rockiger | ReactPress | Medium | 6.0 | 2026-08-13 13:36:59 | Deep Dive |
| CVE-2026-66454 | WordPress WP Social Avatar plugin <= 1.5 - Broken Access Control vulnerability | Maruti Mohanty | WP Social Avatar | Medium | 6.5 | 2026-08-13 13:36:58 | Deep Dive |
| CVE-2026-66453 | WordPress Salon booking system plugin <= 10.30.26 - Broken Authentication vulnerability | Dimitri Grassi | Salon booking system | Critical | 9.8 | 2026-08-13 13:36:58 | Deep Dive |
| CVE-2026-66450 | WordPress Geo Mashup plugin <= 1.13.18 - Local File Inclusion vulnerability | Dylan Kuhn | Geo Mashup | High | 8.1 | 2026-08-13 13:36:57 | Deep Dive |
| CVE-2026-66449 | WordPress Geo Mashup plugin <= 1.13.18 - Cross Site Scripting (XSS) vulnerability | Dylan Kuhn | Geo Mashup | High | 7.1 | 2026-08-13 13:36:56 | Deep Dive |
| CVE-2026-66446 | WordPress If-So Dynamic Content Personalization plugin <= 1.10 - SQL Injection vulnerability | If-So Dynamic Content | If-So Dynamic Content Personalization | Critical | 9.3 | 2026-08-13 13:36:56 | Deep Dive |
| CVE-2026-66444 | WordPress Payment Forms for Paystack plugin <= 4.0.5 - Sensitive Data Exposure vulnerability | kendysond | Payment Forms for Paystack | Medium | 6.5 | 2026-08-13 13:36:55 | Deep Dive |
| CVE-2026-66441 | WordPress MultiVendorX plugin <= 5.0.10 - Broken Access Control vulnerability | MultiVendorX | MultiVendorX | High | 7.5 | 2026-08-13 13:36:54 | Deep Dive |
| CVE-2026-66443 | WordPress REST API Log plugin <= 1.7.1 - Sensitive Data Exposure vulnerability | Pete Nelson | REST API Log | High | 7.5 | 2026-08-13 13:36:54 | Deep Dive |