| CVE/PSC | Application | Date | Affected versions | Description |
|---|---|---|---|---|
| Actual on: Aug 21, 2026, 02:08:28 | ||||
|
URL Shortify – Simple, Powerful and Easy URL Shortener Plugin For WordPress
vulnerable
|
Aug 21, 2026, 06:08:30 |
Min -
Max 2.5.1
|
Unauthenticated Cross Site Scripting (XSS) in URL Shortify <= 2.5.0 versions. | |
|
Piraeus Bank WooCommerce Payment Gateway
vulnerable
|
Aug 21, 2026, 05:08:46 |
Min -
Max 3.2.0
|
Unauthenticated Broken Authentication in Piraeus Bank WooCommerce Payment Gateway 3.2.0 versions. | |
|
Quiz And Survey Master – Best Quiz, Exam and Survey Plugin for WordPress
vulnerable
|
Aug 21, 2026, 05:08:38 |
Min -
Max 11.2.4
|
The Quiz and Survey Master (QSM) WordPress plugin before 11.2.4 does not perform a per-object ownership check on the REST routes that return a quiz's email-notification and results-page configuration, allowing users with contributor-level access and above to read the configuration, including notification recipient addresses, of quizzes created by other users. | |
|
Quiz And Survey Master – Best Quiz, Exam and Survey Plugin for WordPress
vulnerable
|
Aug 21, 2026, 05:08:38 |
Min -
Max 11.2.4
|
The Quiz and Survey Master (QSM) WordPress plugin before 11.2.4 does not perform a per-object ownership check before saving a quiz's front-end text settings, allowing users with contributor-level access and above to modify the text settings of quizzes created by other users. | |
|
MasterStudy LMS WordPress Plugin – for Online Courses and Education
vulnerable
|
Aug 21, 2026, 05:08:36 |
Min -
Max 3.7.42
|
Subscriber Privilege Escalation in MasterStudy LMS <= 3.7.41 versions. | |
|
MasterStudy LMS WordPress Plugin – for Online Courses and Education
vulnerable
|
Aug 21, 2026, 05:08:36 |
Min -
Max 3.7.42
|
Subscriber Broken Access Control in MasterStudy LMS <= 3.7.41 versions. | |
|
SupportCandy – Helpdesk & Customer Support Ticket System
vulnerable
|
Aug 21, 2026, 04:08:25 |
Min -
Max 3.5.2
|
Unauthenticated Broken Authentication in SupportCandy <= 3.5.1 versions. | |
|
WP Table Builder – WordPress Table Plugin
vulnerable
|
Aug 21, 2026, 04:08:17 |
Min -
Max 2.2.0
|
Contributor Broken Access Control in WP Table Builder <= 2.2.0 versions. | |
|
vulnerable
|
Aug 21, 2026, 03:08:58 |
Min -
Max 1.5.0
|
Unauthenticated Broken Access Control in Ultimate Maps by Supsystic < 1.5.0 versions. | |
|
vulnerable
|
Aug 21, 2026, 03:08:58 |
Min -
Max 1.5.0
|
Unauthenticated Cross Site Scripting (XSS) in Ultimate Maps by Supsystic < 1.5.0 versions. | |