Home Embedded Vulns General Vulns
CVE ID Description Severity Published Type
CVE-2026-1298 The Easy Replace Image plugin for WordPress is vulnerable to Missing Authorization in all versions up to, and including… Medium (5.3) 2026-01-28 General Purpose
CVE-2026-1083 The Appointment Hour Booking – Booking Calendar plugin for WordPress is vulnerable to Stored Cross-Site Scripting via f… Medium (4.4) 2026-01-28 General Purpose
CVE-2025-8072 The Target Video Easy Publish plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the ‘placeholder_im… Medium (6.4) 2026-01-28 General Purpose
CVE-2025-14610 The TableMaster for Elementor plugin for WordPress is vulnerable to Server-Side Request Forgery in all versions up to, … High (7.2) 2026-01-28 General Purpose
CVE-2025-13471 The User Activity Log WordPress plugin through 2.2 does not properly handle failed login attempts in some cases, allowi… Medium (5.3) 2026-01-28 General Purpose