Embedded System Vulnerabilities
A focused list of vulnerabilities relevant to embedded and IoT devices.
| CVE ID | Description | Severity | Published | Type |
|---|---|---|---|---|
| CVE-2026-39502 | Unauthenticated SQL Injection in Form Maker by 10Web <= 1.15.38 versions. | Critical (9.3) | 2026-06-15 | Environment Specific |
| CVE-2026-39498 | Shop manager PHP Object Injection in YayMail <= 4.3.3 versions. | High (7.2) | 2026-06-15 | Environment Specific |
| CVE-2026-39493 | Unauthenticated SQL Injection in Simply Schedule Appointments <= 1.6.9.27 versions. | Critical (9.3) | 2026-06-15 | Environment Specific |
| CVE-2026-39492 | Unauthenticated SQL Injection in WP Maps <= 4.9.1 versions. | Critical (9.3) | 2026-06-15 | Environment Specific |
| CVE-2026-39489 | Author Arbitrary File Download in Download Monitor <= 5.1.9 versions. | Medium (4.4) | 2026-06-15 | Environment Specific |