Skip to main content
Skip to footer
Home
CVE Analysis
How it Works
Resources
Pricing
Log in
Create Account
Home
CVE Analysis
How it Works
Resources
Pricing
Log in
Create Account
Severity:
critical
CVE-2026-3891: Pix for WooCommerce <= 1.5.0 Unauthenticated Arbitrary File Upload PoC, Patch Analysis & Rule
March 18, 2026
CVE-2026-3891 affects the Payment Gateway Pix for WooCommerce plugin (v1.5.0) with a critical CVSS score of 9.8. Unauthenticated file uploads…
CVE-2026-0953: Tutor LMS Pro <= 3.9.5 Authentication Bypass via Social Login PoC, Patch Analysis & Rule
March 18, 2026
CVE-2026-0953 affects Tutor Pro plugin versions up to 3.9.5, allowing critical authentication bypass (CVSS 9.8). Update to the patched version…
CVE-2026-2599: Database for Contact Form 7, WPforms, Elementor forms <= 1.4.7 Unauthenticated PHP Object Injection via 'download_csv' PoC, Patch Analysis & Rule
March 18, 2026
CVE-2026-2599 affects the Contact Form Entries plugin (up to 1.4.7) with a critical CVSS score of 9.8 due to a…
CVE-2025-69411: ionCube Tester Plus <= 1.3 Unauthenticated Arbitrary File Download PoC, Patch Analysis & Rule
March 18, 2026
CVE-2025-69411 affects the ionCube Tester Plus plugin (v1.3) with a critical CVSS score of 9.1 due to a path traversal…
←
1
…
7
8
9