Home Embedded Vulns General Vulns
CVE ID Description Severity Published Type
CVE-2026-4057 The Download Manager plugin for WordPress is vulnerable to unauthorized modification of data due to a missing capabilit… Medium (4.3) 2026-04-10 General Purpose
CVE-2026-2712 The WP-Optimize plugin for WordPress is vulnerable to unauthorized access of functionality due to missing capability ch… Medium (5.4) 2026-04-10 General Purpose
CVE-2026-1924 The Aruba HiSpeed Cache plugin for WordPress is vulnerable to Cross-Site Request Forgery in all versions up to, and inc… Medium (4.3) 2026-04-10 General Purpose
CVE-2026-1263 The Webling plugin for WordPress is vulnerable to Stored Cross-Site Scripting in all versions up to, and including, 3.9… Medium (6.4) 2026-04-10 General Purpose
CVE-2026-39933 Improper neutralization of input during web page generation ('cross-site scripting') vulnerability in The Wikimedia Fou… Unknown 2026-04-07 General Purpose