Tagged: Cybersecurity Alert

CVE-2026-3637

Mattermost versions 11.5.x

CVE-2026-4273

Mattermost versions 11.5.x

CVE-2026-6334

Mattermost versions 11.5.x

CVE-2026-6340

Mattermost versions 11.5.x

CVE-2026-6341

Mattermost Plugins versions

CVE-2026-6342

Mattermost Plugins versions

CVE-2026-2325

Mattermost versions 11.5.x

CVE-2026-3495

Mattermost versions 11.5.x

CVE-2026-1631

The Feeds for YouTube (YouTube video, channel, and gallery plugin) WordPress plugin before 2.6.4 is vulnerable to unauthorized modification of the Feeds for YouTube (YouTube video, channel, and gallery plugin) WordPress plugin before 2.6.4’s...

CVE-2026-3220

The Autoptimize WordPress plugin before 3.1.15, Clearfy Cache WordPress plugin before 2.4.2, Speed Optimizer WordPress plugin before 7.7.9 are vulnerable to unauthenticated Stored Cross-Site Scripting (XSS) due to a predictable replacement hash used during...

CVE-2026-6379

The WP Photo Album Plus WordPress plugin before 9.1.11.001 does not properly sanitize and escape a parameter before using it in a SQL query, allowing unauthenticated users to perform SQL injection attacks. More information...

CVE-2026-6495

The Ajax Load More WordPress plugin before 7.8.4 does not sanitise and escape a parameter before outputting it back in the page, leading to a Reflected Cross-Site Scripting which could be used against high...