CVE-2026-66564 — Unauthenticated PHP Object Injection in ShiftCV <= 3.0.14 versions.
Unauthenticated PHP Object Injection in ShiftCV <= 3.0.14 versions.
Veille cybersécurité : alertes, vulnérabilités, actualités et outils pour se protéger.
Unauthenticated PHP Object Injection in ShiftCV <= 3.0.14 versions.
Unauthenticated PHP Object Injection in Windsor <= 2.10 versions.
Unauthenticated PHP Object Injection in Education Center <= 3.6.12 versions.
Unauthenticated PHP Object Injection in Drone Media <= 2.2.0 versions.
Author Arbitrary File Deletion in Presto Player Pro <= 3.0.1 versions.
Exposure of Sensitive System Information to an Unauthorized Control Sphere vulnerability in YITH YITH WooCommerce Product Add-Ons allows Retrieve Embedded Sensitive Data. This issue affects YITH WooCommerce Product Add-…
Unauthenticated Arbitrary Content Deletion in Forminator <= 1.57.3 versions.
Shop manager PHP Object Injection in WooCommerce Multilingual & Multicurrency <= 5.5.8 versions.
Contributor Arbitrary File Upload in Creator LMS <= 1.2.21 versions.
Unauthenticated PHP Object Injection in Asia Garden <= 1.3.1 versions.
Unauthenticated PHP Object Injection in N7 | Golf Club Sports & Events <= 2.21 versions.
Unauthenticated PHP Object Injection in Invetex <= 2.18 versions.