| CVE ID | Title | Vendor | Product | Severity | CVSS Score | Published At | AI Analysis |
|---|---|---|---|---|---|---|---|
| CVE-2026-24490 | MobSF has Stored XSS via Manifest Analysis - Dialer Code Host Field | MobSF | Mobile-Security-Framework-MobSF | High | 8.1 | 2026-01-27 00:40:36 | Deep Dive |
| CVE-2025-69052 | WordPress Registration & Login with Mobile Phone Number for WooCommerce plugin <= 1.3.1 - Broken Access Control vulnerability | FmeAddons | Registration & Login with Mobile Phone Number for WooCommerce | - | - | 2026-01-22 16:52:20 | Deep Dive |
| CVE-2026-1036 | Photo Gallery by 10Web – Mobile-Friendly Image Gallery <= 1.8.36 - Missing Authorization to Unauthenticated Arbitrary Comment Deletion | 10web | Photo Gallery by 10Web – Mobile-Friendly Image Gallery | Medium | 5.3 | 2026-01-21 23:23:28 | Deep Dive |
| CVE-2025-10484 | Registration & Login with Mobile Phone Number for WooCommerce <= 1.3.1 - Authentication Bypass | FmeAddons | Registration & Login with Mobile Phone Number for WooCommerce | Critical | 9.8 | 2026-01-17 08:24:31 | Deep Dive |
| CVE-2026-0739 | WMF Mobile Redirector <= 1.2 - Authenticated (Administrator+) Stored Cross-Site Scripting via Settings Parameters | webbu | WMF Mobile Redirector | Medium | 4.4 | 2026-01-14 06:40:04 | Deep Dive |
| CVE-2026-0627 | AMP for WP <= 1.1.10 - Authenticated (Contributor+) Stored Cross-Site Scripting via SVG File Upload | mohammed_kaludi | AMP for WP – Accelerated Mobile Pages | Medium | 6.4 | 2026-01-09 08:20:46 | Deep Dive |
| CVE-2026-20976 | SAMSUNG Galaxy Store 安全漏洞 | Samsung Mobile | Galaxy Store | 中危 | - | 2026-01-09 06:17:11 | Deep Dive |
| CVE-2026-20975 | Samsung Cloud 安全漏洞 | Samsung Mobile | Samsung Cloud | 中危 | - | 2026-01-09 06:17:00 | Deep Dive |
| CVE-2026-20974 | SAMSUNG Mobile devices 安全漏洞 | Samsung Mobile | Samsung Mobile Devices | 中危 | - | 2026-01-09 06:16:49 | Deep Dive |
| CVE-2026-20973 | SAMSUNG Mobile devices 安全漏洞 | Samsung Mobile | Samsung Mobile Devices | Medium | 5.3 | 2026-01-09 06:16:38 | Deep Dive |
| CVE-2026-20972 | SAMSUNG Mobile devices 安全漏洞 | Samsung Mobile | Samsung Mobile Devices | 中危 | - | 2026-01-09 06:16:26 | Deep Dive |
| CVE-2026-20971 | SAMSUNG Mobile devices 安全漏洞 | Samsung Mobile | Samsung Mobile Devices | 中危 | - | 2026-01-09 06:16:15 | Deep Dive |
| CVE-2026-20970 | SAMSUNG Mobile devices 安全漏洞 | Samsung Mobile | Samsung Mobile Devices | 中危 | - | 2026-01-09 06:16:04 | Deep Dive |
| CVE-2026-20969 | SAMSUNG Mobile devices 安全漏洞 | Samsung Mobile | Samsung Mobile Devices | 中危 | - | 2026-01-09 06:15:53 | Deep Dive |
| CVE-2026-20968 | SAMSUNG Mobile devices 安全漏洞 | Samsung Mobile | Samsung Mobile Devices | 中危 | - | 2026-01-09 06:15:42 | Deep Dive |
| CVE-2025-15464 | KL-001-2026-01: yintibao Fun Print Mobile Unauthorized Access via Context Hijacking | yintibao | Fun Print Mobile | 中危 | - | 2026-01-08 21:01:31 | Deep Dive |
| CVE-2025-14468 | AMP for WP – Accelerated Mobile Pages <= 1.1.9 - Cross-Site Request Forgery to Comment Submission | mohammed_kaludi | AMP for WP – Accelerated Mobile Pages | Medium | 4.3 | 2026-01-07 04:32:04 | Deep Dive |
| CVE-2025-15385 | TECNO Mobile Boomplay 安全漏洞 | TECNO Mobile | com.afmobi.boomplayer | 中危 | - | 2026-01-06 01:39:21 | Deep Dive |
| CVE-2025-50053 | WordPress Blappsta Mobile App Plugin – Your native, mobile iPhone App and Android App Plugin <= 0.8.8.8 - Cross Site Scripting (XSS) Vulnerability | nebelhorn | Blappsta Mobile App Plugin – Your native, mobile iPhone App and Android App | High | 7.1 | 2025-12-31 20:09:03 | Deep Dive |
| CVE-2025-13029 | Knowband Mobile App Builder for wooCommerce < 3.0.0 – Unauthenticated Arbitrary User Deletion | Unknown | Knowband Mobile App Builder | 高危 | - | 2025-12-31 06:00:03 | Deep Dive |