| CVE ID | Title | Vendor | Product | Severity | CVSS Score | Published At | AI Analysis |
|---|---|---|---|---|---|---|---|
| CVE-2021-47928 | Opencart TMD Vendor System 3.x Blind SQL Injection via product route | opencartextensions | Extension TMD Vendor System | High | 8.2 | 2026-05-10 12:43:50 | Deep Dive |
| CVE-2021-47927 | WordPress Plugin WP Symposium Pro 2021.10 Stored XSS via wps_admin_forum_add_name | Wpsymposiumpro | WP Symposium Pro | Medium | 6.4 | 2026-05-10 12:43:49 | Deep Dive |
| CVE-2021-47926 | WordPress Contact Form to Email 1.3.24 Stored XSS | Form2Email | Contact Form to Email | Medium | 6.4 | 2026-05-10 12:43:48 | Deep Dive |
| CVE-2021-47925 | CMDBuild 3.3.2 Multiple Stored Cross-Site Scripting | Cmdbuild | CMDBuild | Medium | 6.4 | 2026-05-10 12:43:47 | Deep Dive |
| CVE-2021-47924 | WordPress Plugin Ultimate Product Catalog 5.8.2 Stored XSS via price | Etoilewebdesign | Ultimate Product Catalog | Medium | 6.4 | 2026-05-10 12:43:47 | Deep Dive |
| CVE-2021-47923 | OpenCart 3.0.3.8 Session Fixation via OCSESSID Cookie | Opencart | opencart | Critical | 9.8 | 2026-05-10 12:43:46 | Deep Dive |
| CVE-2021-47922 | WordPress Plugin Slider by Soliloquy 2.6.2 Stored XSS | Soliloquywp | Slider by Soliloquy | Medium | 6.4 | 2026-05-10 12:43:45 | Deep Dive |
| CVE-2021-47910 | WordPress Plugin AccessPress Social Icons 1.8.2 Stored XSS | Accesspressthemes | AccessPress Social Icons | Medium | 6.4 | 2026-05-10 12:43:45 | Deep Dive |
| CVE-2021-47907 | Rocket LMS 1.1 Persistent Cross-Site Scripting via Support Tickets | Rocketsoft | Rocket LMS | Medium | 6.4 | 2026-05-10 12:43:44 | Deep Dive |
| CVE-2022-50970 | WordPress Plugin AAWP 3.16 Reflected XSS via tab Parameter | Getaawp | WordPress Plugin AAWP | Medium | 5.4 | 2026-05-10 12:13:02 | Deep Dive |
| CVE-2022-50969 | uBidAuction 2.0.1 mailingLog manage Reflected XSS | uBidAuction | uBidAuction | Medium | 6.1 | 2026-05-10 12:13:01 | Deep Dive |
| CVE-2022-50968 | uBidAuction 2.0.1 auctions manage Reflected XSS | uBidAuction | uBidAuction | Medium | 6.1 | 2026-05-10 12:13:00 | Deep Dive |
| CVE-2022-50966 | uBidAuction 2.0.1 news manage Reflected XSS | uBidAuction | uBidAuction | Medium | 6.1 | 2026-05-10 12:12:59 | Deep Dive |
| CVE-2022-50967 | uBidAuction 2.0.1 tickets manage Reflected XSS | uBidAuction | uBidAuction | Medium | 6.1 | 2026-05-10 12:12:59 | Deep Dive |
| CVE-2022-50965 | uBidAuction 2.0.1 posts manage Reflected XSS | uBidAuction | uBidAuction | Medium | 6.1 | 2026-05-10 12:12:58 | Deep Dive |
| CVE-2022-50963 | uBidAuction 2.0.1 myAuctions active Reflected XSS | uBidAuction | uBidAuction | Medium | 6.1 | 2026-05-10 12:12:57 | Deep Dive |
| CVE-2022-50964 | uBidAuction 2.0.1 myAuctions loose Reflected XSS | uBidAuction | uBidAuction | Medium | 6.1 | 2026-05-10 12:12:57 | Deep Dive |
| CVE-2022-50962 | uBidAuction 2.0.1 myOrders Reflected XSS | uBidAuction | uBidAuction | Medium | 6.1 | 2026-05-10 12:12:56 | Deep Dive |
| CVE-2022-50961 | WordPress Plugin IP2Location Country Blocker 2.26.7 Stored XSS | IP2Location | IP2Location Country Blocker | Medium | 6.4 | 2026-05-10 12:12:55 | Deep Dive |
| CVE-2022-50959 | WordPress Contact Form Builder 1.6.1 Cross-Site Scripting via code_generator.php | wpdevart | Contact Form Builder | Medium | 6.1 | 2026-05-10 12:12:54 | Deep Dive |