Announcements

CVE-2026-18432 (matched: wordpress)

  • 16th August 2026
A security vulnerability has been found in the Frontend Admin by DynamiApps plugin for WordPress, impacting all versions up to and including 3.29.9. This is a privilege escalation flaw, meaning an unauthorized person could gain full administrator-level access to your WordPress site.The vulnerability can be exploited in two common scenarios: if you ...
Continue reading

CVE-2026-16098 (matched: wordpress)

  • 16th August 2026
A security flaw has been identified in the ProSolution WP Client plugin for WordPress, a common tool used to add job portal features to websites. All versions of the plugin up to and including 2.0.10 are affected by this vulnerability.The issue allows unauthenticated attackers (people who do not have login access to your WordPress dashboard) to ...
Continue reading

CVE-2026-14524 (matched: wordpress)

  • 16th August 2026
A security flaw tracked as CVE-2026-14524 has been identified in the ProSolution WP Client plugin for WordPress, impacting all versions up to and including 2.0.8. The vulnerability stems from insufficient validation of file paths when the plugin processes file deletion requests.This flaw allows unauthenticated attackers (people who do not have ...
Continue reading

CVE-2026-18855 (matched: wordpress)

  • 16th August 2026
A security flaw has been identified in the Link Library plugin for WordPress, a tool many sites use to organize and display lists of external links. The issue impacts all versions of the plugin up to and including 7.9.4, and is caused by poor validation of file paths when the plugin deletes files tied to links.If a specific optional setting for ...
Continue reading