| CVE ID | Title | Vendor | Product | Severity | CVSS Score | Published At | AI Analysis |
|---|---|---|---|---|---|---|---|
| CVE-2026-34623 | Adobe Experience Manager | Cross-site Scripting (DOM-based XSS) (CWE-79) | Adobe | Adobe Experience Manager | Medium | 5.4 | 2026-04-14 18:26:00 | Deep Dive |
| CVE-2026-34624 | Adobe Experience Manager | Cross-site Scripting (DOM-based XSS) (CWE-79) | Adobe | Adobe Experience Manager | Medium | 5.4 | 2026-04-14 18:25:59 | Deep Dive |
| CVE-2026-27288 | Adobe Experience Manager | Cross-site Scripting (DOM-based XSS) (CWE-79) | Adobe | Adobe Experience Manager | Medium | 5.4 | 2026-04-14 18:00:54 | Deep Dive |
| CVE-2026-27668 | Siemens RUGGEDCOM CROSSBOW Secure Access Manager Primary 安全漏洞 | Siemens | RUGGEDCOM CROSSBOW Secure Access Manager Primary (SAM-P) | High | 8.8 | 2026-04-14 08:40:46 | Deep Dive |
| CVE-2026-0233 | Autonomous Digital Experience Manager: Improper validation of ADEM certificate | Palo Alto Networks | Autonomous Digital Experience Manager | 高危 | - | 2026-04-13 07:17:35 | Deep Dive |
| CVE-2026-4057 | Download Manager <= 3.3.51 - Missing Authorization to Authenticated (Contributor+) Media File Protection Removal | codename065 | Download Manager | Medium | 4.3 | 2026-04-10 01:24:59 | Deep Dive |
| CVE-2026-5357 | Download Manager <= 3.3.52 - Authenticated (Contributor+) Stored Cross-Site Scripting via Shortcode Attributes | codename065 | Download Manager | Medium | 6.4 | 2026-04-09 02:25:06 | Deep Dive |
| CVE-2026-1672 | BEAR – Bulk Editor and Products Manager Professional for WooCommerce by Pluginus.Net <= 1.1.5 - Cross-Site Request Forgery to Product Data Modification | realmag777 | BEAR – Bulk Editor and Products Manager Professional for WooCommerce by Pluginus.Net | Medium | 6.5 | 2026-04-08 11:16:59 | Deep Dive |
| CVE-2026-1673 | BEAR – Bulk Editor and Products Manager Professional for WooCommerce by Pluginus.Net <= 1.1.5 - Cross-Site Request Forgery to Taxonomy Term Deletion | realmag777 | BEAR – Bulk Editor and Products Manager Professional for WooCommerce by Pluginus.Net | Medium | 4.3 | 2026-04-08 11:16:57 | Deep Dive |
| CVE-2026-39715 | WordPress AnyTrack Affiliate Link Manager plugin <= 1.5.5 - Broken Access Control vulnerability | AnyTrack | AnyTrack Affiliate Link Manager | - | - | 2026-04-08 08:30:50 | Deep Dive |
| CVE-2026-39686 | WordPress BSK PDF Manager plugin <= 3.7.2 - Sensitive Data Exposure vulnerability | bannersky | BSK PDF Manager | - | - | 2026-04-08 08:30:43 | Deep Dive |
| CVE-2026-39682 | WordPress linkPizza-Manager plugin <= 5.5.5 - Broken Access Control vulnerability | Arjan Pronk | linkPizza-Manager | - | - | 2026-04-08 08:30:41 | Deep Dive |
| CVE-2026-39676 | WordPress Download Manager plugin <= 3.3.52 - Broken Access Control vulnerability | Shahjada | Download Manager | - | - | 2026-04-08 08:30:40 | Deep Dive |
| CVE-2026-39660 | WordPress WP Job Manager plugin <= 2.4.1 - Broken Access Control vulnerability | Automattic | WP Job Manager | - | - | 2026-04-08 08:30:37 | Deep Dive |
| CVE-2026-39615 | WordPress Download Manager plugin <= 3.3.53 - Cross Site Scripting (XSS) vulnerability | Shahjada | Download Manager | - | - | 2026-04-08 08:30:25 | Deep Dive |
| CVE-2026-3781 | Attendance Manager <= 0.6.2 - Authenticated (Subscriber+) SQL Injection via 'attmgr_off' Parameter | tnomi | Attendance Manager | Medium | 5.4 | 2026-04-08 06:43:43 | Deep Dive |
| CVE-2026-3477 | PZ Frontend Manager <= 1.0.6 - Missing Authorization to Arbitrary User Deletion via 'dataType' Parameter | projectzealous01 | PZ Frontend Manager | Medium | 5.3 | 2026-04-08 06:43:41 | Deep Dive |
| CVE-2026-4003 | Users manager – PN <= 1.1.15 - Unauthenticated Privilege Escalation via Account Takeover via 'userspn_form_save' AJAX Action | felixmartinez | Users manager – PN | Critical | 9.8 | 2026-04-08 03:36:08 | Deep Dive |
| CVE-2025-65116 | Buffer Overflow Vulnerability in JP1/IT Desktop Management 2 and JP1/NETM/DM | Hitachi | JP1/IT Desktop Management 2 - Manager | Medium | 5.5 | 2026-04-07 05:43:26 | Deep Dive |
| CVE-2025-65115 | Remote Code Execution Vulnerability in JP1/IT Desktop Management 2 and JP1/NETM/DM | Hitachi | JP1/IT Desktop Management 2 - Manager | High | 8.8 | 2026-04-07 05:19:50 | Deep Dive |