Related Threat Clusters
-
Critical PHP Object Injection Vulnerability in WS Form LITE Plugin
A critical PHP Object Injection vulnerability, CVE-2026-4703, has been identified in the WS Form LITE – Drag & Drop Form Builder plugin for WordPress, affecting all versions up to 1.10.80. Unauthenticated attackers can…
2 articles · Updated August 24, 2026 -
Critical PHP Object Injection Vulnerability in Mirasvit Cache Warmer
A critical vulnerability, CVE-2026-45247, has been identified in the Mirasvit Full Page Cache Warmer for Magento 2, allowing unauthenticated remote code execution via a crafted CacheWarmer cookie. The flaw, rated 9.8 on…
8 articles · Updated June 4, 2026 -
Multiple Critical Vulnerabilities Disclosed Affecting Various Products
A series of critical vulnerabilities (CVEs) have been disclosed affecting multiple products, all with a CVSS score of 9.8. CVE-2026-25775 allows unauthorized firmware operations on SenseLive X3050. CVE-2026-8935 enables…
16 articles · Updated June 16, 2026 -
Critical RCE Vulnerability in GiveWP Plugin Exposed
A critical vulnerability (CVE-2026-82222) in the GiveWP WordPress donation plugin allows unauthenticated attackers to execute arbitrary commands on affected servers. The flaw, discovered by Udin Chan and reported to…
8 articles · Updated August 28, 2026 -
Critical CVEs Disclosed for WordPress Plugins: CVE-2026-16502 and CVE-2026-6431
Two significant vulnerabilities affecting WordPress plugins have been disclosed. CVE-2026-16502 in the Live Composer plugin allows authenticated attackers to exploit PHP Object Injection, potentially leading to code…
2 articles · Updated September 8, 2026 -
CVE-2026-27206: RCE Vulnerability in Zumba Json Serializer Affects PHP Applications
CVE-2026-27206 identifies a vulnerability in the Zumba Json Serializer library, affecting versions 3.2.2 and below. The library's deserialization feature allows attackers to instantiate arbitrary PHP classes via…
2 articles · Updated February 22, 2026 -
VulnCheck Achieves Top Ranking on 2026 Inc. 5000 List
VulnCheck, a cybersecurity firm specializing in exploit intelligence, has been ranked No. 478 on the 2026 Inc. 5000 list, showcasing a remarkable 717% revenue growth over three years. This growth places VulnCheck among…
4 articles · Updated August 11, 2026
Recent Intelligence Reports
- CVE Alert: CVE-2026-16502 – livecomposer – Live Composer — Redpacketsecurity · September 8, 2026
- GiveWP Patches CVSS 10 — Therepository.Email · August 28, 2026
- Original ↗ — nvd.nist.gov · August 24, 2026
- CVE-2026-4703 (CVSS 9.8 CRITICAL): The WS Form LITE — Theexploitdesk.Tech · August 23, 2026
- CT — cts.businesswire.com · August 11, 2026
- CRITICAL: CVE-2026-49105 (CVSS 9.8) — multiple products — Lyrie.Ai · June 16, 2026
- Critical Vulnerability in Mirasvit Full Page Cache Warmer for Magento 2 — Csa.Sg · June 5, 2026
- CVE-2026-27206: The Zumba Class Dance: RCE via PHP Object Injection in json — Dev.To · February 21, 2026