General-Purpose System Vulnerabilities
Vulnerabilities related to traditional IT systems, servers, and desktop applications.
| CVE ID | Description | Severity | Published | Type |
|---|---|---|---|---|
| CVE-2026-1298 | The Easy Replace Image plugin for WordPress is vulnerable to Missing Authorization in all versions up to, and including… | Medium (5.3) | 2026-01-28 | General Purpose |
| CVE-2026-1083 | The Appointment Hour Booking – Booking Calendar plugin for WordPress is vulnerable to Stored Cross-Site Scripting via f… | Medium (4.4) | 2026-01-28 | General Purpose |
| CVE-2025-8072 | The Target Video Easy Publish plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the ‘placeholder_im… | Medium (6.4) | 2026-01-28 | General Purpose |
| CVE-2025-14610 | The TableMaster for Elementor plugin for WordPress is vulnerable to Server-Side Request Forgery in all versions up to, … | High (7.2) | 2026-01-28 | General Purpose |
| CVE-2025-13471 | The User Activity Log WordPress plugin through 2.2 does not properly handle failed login attempts in some cases, allowi… | Medium (5.3) | 2026-01-28 | General Purpose |