Embedded System Vulnerabilities
A focused list of vulnerabilities relevant to embedded and IoT devices.
| CVE ID | Description | Severity | Published | Type |
|---|---|---|---|---|
| CVE-2026-49106 | Unauthenticated PHP Object Injection in Integration for Contact Form 7 and Constant Contact <= 1.1.6 versions. | Critical (9.8) | 2026-06-15 | Environment Specific |
| CVE-2026-49105 | Unauthenticated PHP Object Injection in WP Zendesk for Contact Form 7, WPForms, Elementor, Formidable and Ninja Forms <… | Critical (9.8) | 2026-06-15 | Environment Specific |
| CVE-2026-49104 | Unauthenticated PHP Object Injection in Integration for Keap/infusionsoft and Contact Form 7, WPForms, Elementor, Formi… | Critical (9.8) | 2026-06-15 | Environment Specific |
| CVE-2026-49085 | Unauthenticated PHP Object Injection in WP Insightly for Contact Form 7, WPForms, Elementor, Formidable and Ninja Forms… | Critical (9.8) | 2026-06-15 | Environment Specific |
| CVE-2026-49083 | Contributor Privilege Escalation in LatePoint <= 5.5.1 versions. | High (7.5) | 2026-06-15 | Environment Specific |