| CVE ID | Title | Vendor | Product | Severity | CVSS Score | Published At | AI Analysis |
|---|---|---|---|---|---|---|---|
| CVE-2026-2746 | Missing PGP Signature Tag | SEPPmail | Secure Email Gateway | - | - | 2026-03-04 08:44:32 | Deep Dive |
| CVE-2025-14480 | IBM Aspera faspio Gateway 1.3.7 has addressed a vulnerability affected by weak cryptographic algorithms | IBM | Aspera faspio Gateway | Medium | 5.1 | 2026-03-03 20:41:16 | Deep Dive |
| CVE-2026-2606 | IBM webMethods API Management fails to validate user input and enables unauthorized arbitrary file read | IBM | webMethods API Gateway (on-prem) | Medium | 6.5 | 2026-03-03 19:38:31 | Deep Dive |
| CVE-2026-27208 | api-gateway-deploy Affected by Exploitable Command Injection via Unprivileged Root Execution | bleon-ethical | api-gateway-deploy | Critical | 9.2 | 2026-02-24 13:52:43 | Deep Dive |
| CVE-2025-68542 | WordPress Checkout Gateway for IRIS plugin <= 1.3 - Broken Access Control vulnerability | vgdevsolutions | Checkout Gateway for IRIS | - | - | 2026-02-20 15:46:40 | Deep Dive |
| CVE-2025-67969 | WordPress UPI QR Code Payment Gateway for WooCommerce plugin <= 1.5.1 - Broken Access Control vulnerability | knitpay | UPI QR Code Payment Gateway for WooCommerce | - | - | 2026-02-20 15:46:29 | Deep Dive |
| CVE-2025-13590 | Authenticated arbitrary file upload via a System REST API requiring administrator permission. | WSO2 | WSO2 API Manager | Critical | 9.1 | 2026-02-19 10:05:06 | Deep Dive |
| CVE-2026-1942 | Blog2Social: Social Media Auto Post & Scheduler <= 8.7.4 - Missing Authorization to Authenticated (Subscriber+) Arbitrary Post Modification | pr-gateway | Blog2Social: Social Media Auto Post & Scheduler | Medium | 6.5 | 2026-02-18 10:20:49 | Deep Dive |
| CVE-2025-36348 | The Dashboard of IBM Sterling B2B Integrator and IBM Sterling File Gateway is Vulnerable to Information Disclosure | IBM | Sterling B2B Integrator | Medium | 4.9 | 2026-02-17 21:31:30 | Deep Dive |
| CVE-2026-2592 | Zarinpal Gateway for WooCommerce <= 5.0.16 - Improper Access Control to Payment Status Update | zarinpal | Zarinpal Gateway | High | 7.7 | 2026-02-17 04:35:46 | Deep Dive |
| CVE-2026-0692 | BlueSnap Payment Gateway for WooCommerce <= 3.4.0 - Missing Authorization to Unauthenticated Arbitrary Order Status Manipulation | bluesnap | BlueSnap Payment Gateway for WooCommerce | High | 7.5 | 2026-02-14 04:35:43 | Deep Dive |
| CVE-2026-1868 | Improper Neutralization of Special Elements Used in a Template Engine in GitLab AI Gateway | GitLab | GitLab AI Gateway | Critical | 9.9 | 2026-02-09 06:33:12 | Deep Dive |
| CVE-2026-1370 | SIBS - WooCommerce <= 2.2.0 - Authenticated (Admin+) SQL Injection via 'referencedId' Parameter | comprassibs | SIBS woocommerce payment gateway | Medium | 4.9 | 2026-02-04 08:25:33 | Deep Dive |
| CVE-2025-15482 | Chapa Payment Gateway Plugin for WooCommerce <= 1.0.3 - Unauthenticated Sensitive Information Exposure | chapaet | Chapa Payment Gateway Plugin for WooCommerce | Medium | 5.3 | 2026-02-04 08:25:27 | Deep Dive |
| CVE-2026-1791 | Arbitrary File Upload Vulnerability in Operation and Maintenance Security Gateway | Hillstone Networks | Operation and Maintenance Security Gateway | Low | 2.7 | 2026-02-04 03:11:30 | Deep Dive |
| CVE-2025-14843 | Wizit Gateway for WooCommerce <= 1.2.9 - Missing Authentication to Unauthenticated Arbitrary Order Cancellation | wizit | Wizit Gateway for WooCommerce | Medium | 5.3 | 2026-01-24 07:26:46 | Deep Dive |
| CVE-2026-24583 | WordPress SumUp Payment Gateway For WooCommerce plugin <= 2.7.9 - Broken Access Control vulnerability | sumup | SumUp Payment Gateway For WooCommerce | Medium | 5.3 | 2026-01-23 14:28:59 | Deep Dive |
| CVE-2025-9290 | Authentication Weakness on Omada Controllers, Gateways and Access Points | TP-Link Systems Inc. | Omada Software Controller | 中危 | - | 2026-01-22 23:14:46 | Deep Dive |
| CVE-2025-68016 | WordPress onepay Payment Gateway For WooCommerce plugin <= 1.1.2 - Other Vulnerability Type vulnerability | Onepay Sri Lanka | onepay Payment Gateway For WooCommerce | - | - | 2026-01-22 16:52:03 | Deep Dive |
| CVE-2025-68013 | WordPress Payment Gateway Authorize.Net CIM for WooCommerce plugin <= 2.1.2 - Arbitrary Content Deletion vulnerability | cardpaysolutions | Payment Gateway Authorize.Net CIM for WooCommerce | Medium | 6.5 | 2026-01-22 16:52:03 | Deep Dive |