Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1336 CNY

100%

Security Intel Hub 851+

Curated security advisories, vulnerability analyses, and exploit write-ups — auto-cleaned and translated to English. Updated continuously.

Examples: RCE · SSRF · GHSA · log4j
Filter
Clear filters
Medium
WordPress Term Pages Unauthenticated SQL Injection (CVE-2026-16949)
CVE-2026-16949 · wpscan.com · 2026-08-10
term-pages < 2.0.0
Read more
High
CheckView < 2.3.2 WordPress Plugin REST API Authentication Bypass (CVE-2026-18786)
CVE-2026-18786 · wpscan.com · 2026-08-10
CheckView < 2.3.2
Read more
High
easy-login-woocommerce Unauthenticated Account Takeover via Password Reset (CVE-2026-18468)
CVE-2026-18468 · wpscan.com · 2026-08-10
Login & Register Forms < 4.0.2
Read more
Medium
Feedzy RSS Aggregator < 5.2.6 Authorization Bypass Leading to Arbitrary Post Deletion (CVE-2026-18934)
CVE-2026-18934 · wpscan.com · 2026-08-10
RSS Aggregator by Feedzy < 5.2.6
Read more
Medium
WordPress Block User Account Auth Bypass via Application Passwords (CVE-2026-18960)
CVE-2026-18960 · wpscan.com · 2026-08-10
Block User Account < 2.0.1
Read more
Medium
All-in-One Video Gallery < 4.9.2 Unauthenticated SSRF (CVE-2026-19075)
CVE-2026-19075 · wpscan.com · 2026-08-10
All-in-One Video Gallery < 4.9.2
Read more
Medium
WordPress Contact Form to Any API < 3.0.7 Unauthenticated Sensitive File Disclosure CVE-2026-18946
CVE-2026-18946 · wpscan.com · 2026-08-10
contact-form-to-any-api < 3.0.7
Read more
Medium
FoodBoxBooker < 1.0.8 IDOR Vulnerability CVE-2026-18200 Advisory
CVE-2026-18200 · wpscan.com · 2026-08-10
FoodBoxBooker < 1.0.8
Read more
High
ProSolution WP Client <2.0.9 Unauthenticated SQLi and Data Deletion via Cookie (CVE-2026-19049)
CVE-2026-19049 · wpscan.com · 2026-08-10
ProSolution WP Client < 2.0.9
Read more
Medium
Advanced Classifieds & Directory Pro < 3.4.3 Unauthenticated Sensitive Data Disclosure (CVE-2026-19074)
CVE-2026-19074 · wpscan.com · 2026-08-10
Advanced Classifieds & Directory Pro < 3.4.3
Read more
High
CVE-2026-19053: ProSolution WP Client Pre-Auth Blind SQLi in 'jobID' Parameter
CVE-2026-19053 · wpscan.com · 2026-08-10
ProSolution WP Client < 2.0.6
Read more
Critical
CVE-2026-19089: Unauthenticated Arbitrary File Upload in Product Input Fields for WooCommerce < 2.0.2
CVE-2026-19089 · wpscan.com · 2026-08-10
Product Input Fields for WooCommerce < 2.0.2
Read more
Medium
Vitepos < 3.6.0 Admin+ SQL Injection via product-details-report (CVE-2026-14238)
CVE-2026-14238 · wpscan.com · 2026-08-10
Vitepos < 3.6.0
Read more
Medium
Customer Reviews for WooCommerce < 5.116.0 Missing Authorization Vulnerability (CVE-2026-14941)
CVE-2026-14941 · wpscan.com · 2026-08-10
Customer Reviews for WooCommerce < 5.116.0
Read more
High
Vitepos <3.6.0 Privilege Escalation via Unauthenticated Password Reset (CVE-2026-14237)
CVE-2026-14237 · wpscan.com · 2026-08-10
vitepos < 3.6.0 · vitepos-lite < 3.5.0
Read more
Low
CVE-2026-14211: Amelia Pro IDOR Arbitrary Customer Data Disclosure
CVE-2026-14211 · wpscan.com · 2026-08-10
Amelia Pro < 9.7
Read more
Medium
Podcast Player < 8.3.1 Unauthenticated SSRF Vulnerability (CVE-2026-14860)
CVE-2026-14860 · wpscan.com · 2026-08-10
Podcast Player < 8.3.1
Read more

All articles are auto-cleaned (markdown extraction + LLM noise removal) and translated to English by our offline pipeline. Source URL is always preserved at the bottom of each article.

Want a specific source covered? Email us — we add new feeds weekly.