General-Purpose System Vulnerabilities
Vulnerabilities related to traditional IT systems, servers, and desktop applications.
| CVE ID | Description | Severity | Published | Type |
|---|---|---|---|---|
| CVE-2026-3643 | The Accessibly plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the REST API in all versions up to… | High (7.2) | 2026-04-15 | General Purpose |
| CVE-2026-3642 | The e-shot™ form builder plugin for WordPress is vulnerable to Missing Authorization in all versions up to and includin… | Medium (5.3) | 2026-04-15 | General Purpose |
| CVE-2026-1541 | The Avada (Fusion) Builder plugin for WordPress is vulnerable to Sensitive Information Exposure in all versions up to, … | Medium (4.3) | 2026-04-15 | General Purpose |
| CVE-2026-1314 | The 3D FlipBook – PDF Embedder, PDF Flipbook Viewer, Flipbook Image Gallery plugin for WordPress is vulnerable to unaut… | Medium (5.3) | 2026-04-15 | General Purpose |
| CVE-2025-15470 | The Eleganzo theme for WordPress is vulnerable to arbitrary directory deletion due to insufficient path validation in t… | Medium (6.5) | 2026-04-15 | General Purpose |