Skip to main content

WP-BusinessDirectory WordPress Plugin Unauthenticated Arbitrary File Deletion (CVE-2026-6070)

Scope: WP-BusinessDirectory WordPress Plugin Versions up to and Including 4.0.1

CVE-2026-57620 in Exclusive Addons Elementor Plugin

Scope: Exclusive Addons Elementor: from n

parse-server – Supply Chain Incident (CVE-2021-47987)

Scope: parse-server, Git-Based Dependencies

WSO2 API Manager – Server-Side Request Forgery (CVE-2026-2053)

Scope: WSO2 API Manager, Versions 3.1.0, 3.

ManageEngine Products – Predictable SSO Ticket Generation / Account Takeover (CVE-2026-11374)

Scope: ADSelfService Plus (prior to build 6529), RecoveryManager

Subscribe to