General-Purpose System Vulnerabilities
Vulnerabilities related to traditional IT systems, servers, and desktop applications.
| CVE ID | Description | Severity | Published | Type |
|---|---|---|---|---|
| CVE-2026-85657 | The Co-Authors, Multiple Authors and Guest Authors in an Author Box with PublishPress Authors plugin for WordPress is v… | Medium (5.4) | 2026-09-15 | General Purpose |
| CVE-2026-85575 | The ShopEngine Elementor WooCommerce Builder Addon – All in One WooCommerce Solution with eCommerce Templates & Woo Wid… | Medium (6.4) | 2026-09-15 | General Purpose |
| CVE-2026-91181 | Mattermost versions 11.9.x <= 11.9.0, 11.8.x <= 11.8.4, 11.7.x <= 11.7.7, 10.11.x <= 10.11.22 Fail to sanitize Team obj… | Medium (6.5) | 2026-09-14 | General Purpose |
| CVE-2026-81901 | In Concrete CMS 9.2.0 through 9.5.2, the REST API page update endpoint (PUT /ccm/api/1.0/pages/{cID}) did not enforce p… | Unknown | 2026-09-14 | General Purpose |
| CVE-2026-68489 | Static Code Injection in Plesk extensions "Ruby" before 1.6.6 and "Node.js Toolkit" before 2.5.0 allows remote authenti… | Unknown | 2026-09-14 | General Purpose |