Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1336 CNY

100%

Security Intel Hub 849+

Curated security advisories, vulnerability analyses, and exploit write-ups — auto-cleaned and translated to English. Updated continuously.

Examples: RCE · SSRF · GHSA · log4j
Filter
Clear filters
Critical
WooCommerce emails-verification Unauth Account Takeover via Type-Juggling (CVE-2026-14182)
CVE-2026-14182 · wpscan.com · 2026-08-13
Customer Email Verification for WooCommerce < 3.2.6
Read more
Medium
TLP Food Menu Pre-Auth Broken Access Control to Modify Reservation Status (CVE-2026-13328)
CVE-2026-13328 · wpscan.com · 2026-08-13
TLP Food Menu < 6.0.2
Read more
Critical
KiviCare < 4.5.2 Unauthenticated Privilege Escalation (CVE-2026-13610)
CVE-2026-13610 · wpscan.com · 2026-08-13
kivicare-clinic-management-system < 4.5.2
Read more
High
WooCommerce Wallet System Checkout Price Manipulation via Unvalidated Amount (CVE-2026-15045)
CVE-2026-15045 · wpscan.com · 2026-08-12
Wallet System for WooCommerce < 2.7.10
Read more
High
WooCommerce PayPal Plugin Unauthenticated Payment Bypass via Return Handler (CVE-2026-16621)
CVE-2026-16621 · wpscan.com · 2026-08-12
Payment Gateway for PayPal on WooCommerce < 9.2.1
Read more
High
Unauthenticated Payment Price Manipulation in Payment Button for PayPal Plugin (CVE-2026-16990)
CVE-2026-16990 · wpscan.com · 2026-08-12
Payment Button for PayPal <= 1.2.3.44
Read more
High
CVE-2026-17008: Quick PayPal Payments Unauthenticated Payment Bypass
CVE-2026-17008 · wpscan.com · 2026-08-12
Quick PayPal Payments <= 5.7.50
Read more
Medium
Patterns Kit <=1.0.3 Stored XSS Vulnerability (CVE-2026-15249)
CVE-2026-15249 · wpscan.com · 2026-08-12
Patterns Kit <= 1.0.3
Read more
Medium
Cookie Consent < 0.0.10 Incorrect Authorization Vulnerability (CVE-2026-15388)
CVE-2026-15388 · wpscan.com · 2026-08-12
Cookie Consent < 0.0.10
Read more
Critical
Unauthenticated Arbitrary File Upload in Gift Cards For WooCommerce Pro (CVE-2026-15039)
CVE-2026-15039 · wpscan.com · 2026-08-12
giftware < 4.2.10
Read more
High
10Web Form Maker <1.15.45 Subscriber+ Secondary SQL Injection Vulnerability Advisory (CVE-2026-16977)
CVE-2026-16977 · wpscan.com · 2026-08-12
Form Maker by 10Web < 1.15.45
Read more
High
Total Upkeep < 1.17.3 Unauthenticated Sensitive Data Disclosure and Forced Site Restore via Predictable Cron Secret
CVE-2026-16253 · wpscan.com · 2026-08-12
Total Upkeep < 1.17.3 · BoldGrid Backup < 1.17.3
Read more
Medium
Blubrry PowerPress < 11.17.1 Contributor+ SSRF Vulnerability (CVE-2026-16294)
CVE-2026-16294 · wpscan.com · 2026-08-12
Blubrry PowerPress < 11.17.1
Read more
Medium
WP Travel Engine < 6.8.5 Unauthenticated IDOR and Data Disclosure (CVE-2026-16737)
CVE-2026-16737 · wpscan.com · 2026-08-12
WP Travel Engine < 6.8.5
Read more
High
WPMU DEV Dashboard < 5.0.1 Remote Code Execution via Hub Install Action (CVE-2026-16051)
CVE-2026-16051 · wpscan.com · 2026-08-12
WPMU DEV Dashboard < 5.0.1
Read more
Medium
TeraWallet WooCommerce Plugin Wallet Balance Inflation via Discounted Top-Up (CVE-2026-16538)
CVE-2026-16538 · wpscan.com · 2026-08-12
TeraWallet – Wallet for WooCommerce < 1.6.10
Read more
Medium
Welcart e-Commerce < 2.11.34 Authenticated Stored XSS Vulnerability (CVE-2026-16066)
CVE-2026-16066 · wpscan.com · 2026-08-12
usc-e-shop < 2.11.34
Read more

All articles are auto-cleaned (markdown extraction + LLM noise removal) and translated to English by our offline pipeline. Source URL is always preserved at the bottom of each article.

Want a specific source covered? Email us — we add new feeds weekly.