| CVE ID | Title | Vendor | Product | Severity | CVSS Score | Published At | AI Analysis |
|---|---|---|---|---|---|---|---|
| CVE-2026-2712 | WP-Optimize <= 4.5.0 - Missing Authorization to Authenticated (Subscriber+) Plugin Settings Update and Image Manipulation | davidanderson | WP-Optimize – Cache, Compress images, Minify & Clean database to boost page speed & performance | Medium | 5.4 | 2026-04-10 01:24:58 | Deep Dive |
| CVE-2026-3881 | Performance Monitor <= 1.0.6 - Unauthenticated Blind SSRF | Unknown | Performance Monitor | - | - | 2026-03-31 06:00:07 | Deep Dive |
| CVE-2026-4416 | GIGABYTE|Performance Library - Insecure Deserialization | GIGABYTE | Performance Library | High | 7.8 | 2026-03-30 07:52:22 | Deep Dive |
| CVE-2026-1648 | Performance Monitor <= 1.0.6 - Unauthenticated Server-Side Request Forgery via 'url' Parameter | qrolic | Performance Monitor | High | 7.2 | 2026-03-21 03:27:02 | Deep Dive |
| CVE-2019-25326 | ipPulse 1.92 - 'Enter Key' Denial of Service | Northwest Performance Software, Inc. | ipPulse | Medium | 6.2 | 2026-02-18 21:54:55 | Deep Dive |
| CVE-2025-15336 | Tanium addressed an incorrect default permissions vulnerability in Performance. | Tanium | Performance | Medium | 6.5 | 2026-02-05 18:16:29 | Deep Dive |
| CVE-2021-47894 | Managed Switch Port Mapping Tool 2.85.2 - Denial of Service | Northwest Performance Software, Inc. | Managed Switch Port Mapping Tool | High | 7.5 | 2026-01-23 16:47:39 | Deep Dive |
| CVE-2026-24354 | WordPress Penci Shortcodes & Performance plugin <= 6.1 - Cross Site Scripting (XSS) vulnerability | PenciDesign | Penci Shortcodes & Performance | - | - | 2026-01-22 16:52:43 | Deep Dive |
| CVE-2026-0726 | Nexter Extension – Site Enhancements Toolkit <= 4.4.6 - Unauthenticated PHP Object Injection via 'nxt_unserialize_replace' | posimyththemes | Nexter Extension – Security, Performance, Code Snippets & Site Toolkit | High | 8.1 | 2026-01-20 14:26:31 | Deep Dive |
| CVE-2025-14437 | Hummingbird <= 3.18.0 - Unauthenticated Sensitive Information Exposure via Log File | wpmudev | Hummingbird Performance – Cache & Page Speed Optimization for Core Web Vitals | Critical CSS | Minify CSS | Defer CSS Javascript | CDN | High | 7.5 | 2025-12-18 12:22:27 | Deep Dive |
| CVE-2025-66108 | WordPress TNC Toolbox: Web Performance plugin <= 2.0.4 - Broken Access Control vulnerability | Merlot Digital (by TNC) | TNC Toolbox: Web Performance | Medium | 4.3 | 2025-11-21 12:30:05 | Deep Dive |
| CVE-2025-24491 | Intel Killer 代码问题漏洞 | - | Intel(R) Killer(TM) Performance Suite software | Medium | 6.7 | 2025-11-11 16:49:47 | Deep Dive |
| CVE-2025-12539 | TNC Toolbox: Web Performance <= 1.4.2 - Unauthenticated Sensitive Information Exposure to Privilege Escalation/cPanel Account Takeover | leopardhost | TNC Toolbox: Web Performance | Critical | 10.0 | 2025-11-11 11:03:44 | Deep Dive |
| CVE-2025-33133 | Fixes to common vulnerabilities found in IBM Db2 High Performance Unload | IBM | DB2 High Performance Unload | Medium | 6.5 | 2025-10-27 23:57:32 | Deep Dive |
| CVE-2025-33132 | Fixes to common vulnerabilities found in IBM Db2 High Performance Unload | IBM | DB2 High Performance Unload | Medium | 6.5 | 2025-10-27 23:57:12 | Deep Dive |
| CVE-2025-33131 | Fixes to common vulnerabilities found in IBM Db2 High Performance Unload | IBM | DB2 High Performance Unload | Medium | 6.5 | 2025-10-27 23:56:34 | Deep Dive |
| CVE-2025-33126 | Fixes to common vulnerabilities found in IBM Db2 High Performance Unload | IBM | DB2 High Performance Unload | Medium | 6.5 | 2025-10-27 23:56:06 | Deep Dive |
| CVE-2025-9063 | Rockwell Automation PanelView Plus 7 Performance Series B Authentication Bypass | Rockwell Automation | PanelView Plus 7 Performance Series B | - | - | 2025-10-14 12:20:39 | Deep Dive |
| CVE-2025-59587 | WordPress Penci Shortcodes & Performance Plugin < 6.1 - Cross Site Scripting (XSS) Vulnerability | PenciDesign | Penci Shortcodes & Performance | Medium | 6.5 | 2025-09-22 18:25:49 | Deep Dive |
| CVE-2025-9622 | WP Blast | SEO & Performance Booster <= 1.8.6 - Cross-Site Request Forgery to Cache Clearing | wpblast | WP Blast | SEO & Performance Booster | Medium | 4.3 | 2025-09-10 06:38:50 | Deep Dive |