| CVE ID | Title | Vendor | Product | Severity | CVSS Score | Published At | AI Analysis |
|---|---|---|---|---|---|---|---|
| CVE-2018-25244 | Eco Search 1.0.2.0 Denial of Service | EcoSearch | Eco Search | Medium | 6.2 | 2026-04-04 13:51:11 | Deep Dive |
| CVE-2018-25242 | One Search 1.1.0.0 Denial of Service | OneSearch | One Search | Medium | 6.2 | 2026-04-04 13:51:09 | Deep Dive |
| CVE-2026-4819 | Search Guard audit logs can contain under certain conditions user credentials | floragunn | Search Guard FLX | Medium | 4.9 | 2026-03-31 14:57:57 | Deep Dive |
| CVE-2026-4818 | Some management operations on data streams are not properly restricted when user does not have the necessary privileges | floragunn | Search Guard FLX | Medium | 6.8 | 2026-03-31 14:53:20 | Deep Dive |
| CVE-2026-4799 | Open redirect vulnerability in Search Guard Kibana Plugin via manipulated requests | floragunn | Search Guard FLX | Medium | 4.3 | 2026-03-31 14:41:06 | Deep Dive |
| CVE-2026-24971 | WordPress Search & Go theme <= 2.8 - Privilege Escalation vulnerability | Elated-Themes | Search & Go | Critical | 9.8 | 2026-03-25 16:14:34 | Deep Dive |
| CVE-2019-25591 | DNSS Domain Name Search Software 2.1.8 Denial of Service | nsauditor | DNSS Domain Name Search Software | Medium | 6.2 | 2026-03-22 13:38:30 | Deep Dive |
| CVE-2026-2837 | Ricerca – advanced search <= 1.1.12 - Authenticated (Administrator+) Stored Cross-Site Scripting via Plugin's Settings | systemsrtk | Ricerca – advanced search | Medium | 4.4 | 2026-03-21 03:27:11 | Deep Dive |
| CVE-2026-2941 | Linksy Search and Replace <= 1.0.4 - Missing Authorization to Authenticated (Subscriber+) Arbitrary Database Update via linksy_search_and_replace_item_details | plugli | Linksy Search and Replace | High | 8.8 | 2026-03-21 03:26:33 | Deep Dive |
| CVE-2026-25392 | WordPress Update URLs – Quick and Easy way to search old links and replace them with new links in WordPress plugin <= 1.4.0 - Open Redirection vulnerability | KaizenCoders | Update URLs – Quick and Easy way to search old links and replace them with new links in WordPress | Medium | 4.7 | 2026-02-19 08:27:03 | Deep Dive |
| CVE-2026-23805 | WordPress Media Search Enhanced plugin <= 0.9.1 - SQL Injection vulnerability | Yoren Chang | Media Search Enhanced | - | - | 2026-02-19 08:26:51 | Deep Dive |
| CVE-2020-37197 | Dnss Domain Name Search Software - 'Name' Denial of Service | Nsasoft | Nsauditor Dnss Domain Name Search Software | High | 7.5 | 2026-02-11 20:37:18 | Deep Dive |
| CVE-2020-37196 | Dnss Domain Name Search Software - 'Key' Denial of Service | Nsasoft | Nsauditor Dnss Domain Name Search Software | High | 7.5 | 2026-02-11 20:37:17 | Deep Dive |
| CVE-2026-24938 | WordPress Better Search plugin <= 4.2.1 - Cross Site Scripting (XSS) vulnerability | Ajay | Better Search | - | - | 2026-02-03 14:08:32 | Deep Dive |
| CVE-2025-14386 | Search Atlas SEO – Premier SEO Plugin for One-Click WP Publishing & Integrated AI Optimization 2.4.4 - 2.5.12 - Missing Authorization to Authenticated (Subscriber+) Authentication Bypass via Account Takeover | shahrukhlinkgraph | Search Atlas SEO – Premier SEO Plugin for One-Click WP Publishing & Integrated AI Optimization | High | 8.8 | 2026-01-28 11:23:39 | Deep Dive |
| CVE-2026-1053 | Ivory Search <= 5.5.13 - Authenticated (Administrator+) Stored Cross-Site Scripting via 'menu_gcse' and 'nothing_found_text' Parameters | vinod-dalvi | Ivory Search – WordPress Search Plugin | Medium | 4.4 | 2026-01-28 08:26:56 | Deep Dive |
| CVE-2025-69005 | WordPress Search & Go theme <= 2.8 - Local File Inclusion vulnerability | Elated-Themes | Search & Go | - | - | 2026-01-22 16:52:17 | Deep Dive |
| CVE-2025-67626 | WordPress WP SEO Search plugin <= 1.1 - Cross Site Request Forgery (CSRF) vulnerability | Angel Costa | WP SEO Search | - | - | 2026-01-22 16:51:52 | Deep Dive |
| CVE-2025-67930 | WordPress eHive Search plugin <= 2.5.0 - Cross Site Scripting (XSS) vulnerability | Vernon Systems Limited | eHive Search | High | 7.1 | 2026-01-08 09:17:49 | Deep Dive |
| CVE-2025-14313 | Advance WP Query Search Filter <= 1.0.10 - Reflected XSS via taxo_ajax | Unknown | Advance WP Query Search Filter | 中危 | - | 2025-12-30 06:00:05 | Deep Dive |