| CVE ID | Title | Vendor | Product | Severity | CVSS Score | Published At | AI Analysis |
|---|---|---|---|---|---|---|---|
| CVE-2026-2826 | Kadence Blocks — Page Builder Toolkit for Gutenberg Editor <= 3.6.3 - Missing Authorization to Authenticated (Contributor+) Media Upload | stellarwp | Kadence Blocks — Page Builder Toolkit for Gutenberg Editor | Medium | 4.3 | 2026-04-04 08:25:20 | Deep Dive |
| CVE-2026-3509 | CODESYS Control Audit Log Format String DoS | CODESYS | CODESYS Control RTE (SL) | High | 7.5 | 2026-03-24 07:42:34 | Deep Dive |
| CVE-2025-41660 | CODESYS Control Boot Application Replacement Enables Code Execution | CODESYS | CODESYS Control RTE (SL) | High | 8.8 | 2026-03-24 07:41:43 | Deep Dive |
| CVE-2026-4314 | The Ultimate WordPress Toolkit – WP Extended <= 3.2.4 - Authenticated (Subscriber+) Privilege Escalation via Menu Editor Module | wpextended | The Ultimate WordPress Toolkit – WP Extended | High | 8.8 | 2026-03-22 03:26:34 | Deep Dive |
| CVE-2026-3478 | Content Syndication Toolkit <= 1.3 - Unauthenticated Server-Side Request Forgery via 'url' Parameter | benmoody | Content Syndication Toolkit | High | 7.2 | 2026-03-21 03:27:13 | Deep Dive |
| CVE-2026-4038 | Aimogen Pro <= 2.7.5 - Unauthenticated Privilege Escalation via Arbitrary Function Call | CodeRevolution | Aimogen Pro - All-in-One AI Content Writer, Editor, ChatBot & Automation Toolkit | Critical | 9.8 | 2026-03-20 03:37:02 | Deep Dive |
| CVE-2026-21994 | Oracle Edge Cloud Infrastructure Designer and Visualisation Toolkit 安全漏洞 | Oracle Corporation | Oracle Edge Cloud Infrastructure Designer and Visualisation Toolkit | Critical | 9.8 | 2026-03-17 22:43:25 | Deep Dive |
| CVE-2026-4269 | Improper S3 ownership verification in Bedrock AgentCore Starter Toolkit | AWS | Bedrock AgentCore Starter Toolkit | High | 7.5 | 2026-03-16 18:03:56 | Deep Dive |
| CVE-2026-2633 | Gutenberg Blocks with AI by Kadence WP <= 3.6.1 - Missing Authorization to Authenticated (Contributor+) Unauthorized Media Upload | stellarwp | Kadence Blocks — Page Builder Toolkit for Gutenberg Editor | Medium | 4.3 | 2026-02-18 06:42:43 | Deep Dive |
| CVE-2026-1857 | Gutenberg Blocks with AI by Kadence WP <= 3.6.1 - Authenticated (Contributor+) Server-Side Request Forgery via 'endpoint' Parameter | stellarwp | Kadence Blocks — Page Builder Toolkit for Gutenberg Editor | Medium | 4.3 | 2026-02-18 06:42:40 | Deep Dive |
| CVE-2026-2608 | Gutenberg Blocks by Kadence Blocks <= 3.5.32 - Missing Authorization | stellarwp | Kadence Blocks — Page Builder Toolkit for Gutenberg Editor | Medium | 4.3 | 2026-02-17 11:20:37 | Deep Dive |
| CVE-2025-9293 | Insufficient Certificate Validation in Multiple Mobile Applications Allows Man in the Middle Interception | TP-Link Systems Inc. | Tapo App | - | - | 2026-02-13 00:22:27 | Deep Dive |
| CVE-2025-13375 | IBM Common Cryptographic Architecture Arbitrary Command Execution | IBM | Common Cryptographic Architecture | Critical | 9.8 | 2026-02-04 20:31:13 | Deep Dive |
| CVE-2026-24940 | WordPress Travelfic Toolkit plugin <= 1.3.3 - Broken Access Control vulnerability | Themefic | Travelfic Toolkit | - | - | 2026-02-03 14:08:33 | Deep Dive |
| CVE-2026-24622 | WordPress Suggestion Toolkit plugin <= 5.0 - Broken Access Control vulnerability | Sergiy Dzysyak | Suggestion Toolkit | Medium | 5.4 | 2026-01-23 14:29:07 | Deep Dive |
| CVE-2025-33231 | NVIDIA CUDA toolkit 代码问题漏洞 | NVIDIA | CUDA Toolkit | Medium | 6.7 | 2026-01-20 17:55:55 | Deep Dive |
| CVE-2025-33230 | NVIDIA CUDA toolkit 命令注入漏洞 | NVIDIA | CUDA Toolkit | High | 7.3 | 2026-01-20 17:55:29 | Deep Dive |
| CVE-2025-33229 | NVIDIA CUDA toolkit 代码问题漏洞 | NVIDIA | CUDA Toolkit | High | 7.3 | 2026-01-20 17:44:48 | Deep Dive |
| CVE-2025-33228 | NVIDIA CUDA toolkit 命令注入漏洞 | NVIDIA | CUDA Toolkit | High | 7.3 | 2026-01-20 17:44:20 | Deep Dive |
| CVE-2026-0726 | Nexter Extension – Site Enhancements Toolkit <= 4.4.6 - Unauthenticated PHP Object Injection via 'nxt_unserialize_replace' | posimyththemes | Nexter Extension – Security, Performance, Code Snippets & Site Toolkit | High | 8.1 | 2026-01-20 14:26:31 | Deep Dive |