A vulnerability was found in FreeBSD. It has been classified as critical. This issue affects some unknown processing of the component ELF Image Handler. The manipulation leads to incorrect behavior order: early validation.
This vulnerability is uniquely identified as CVE-2026-49414. Local access is required to approach this attack. No exploit exists.
Upgrading the affected component is recommended.
A vulnerability was found in FreeBSD and classified as critical. This vulnerability affects unknown code. Executing a manipulation can lead to integer overflow.
This vulnerability is handled as CVE-2026-49416. It is possible to launch the attack on the local host. There is not any exploit available.
It is suggested to upgrade the affected component.
A vulnerability has been found in FreeBSD and classified as critical. This affects an unknown part of the file /dev/dsp of the component Kernel Memory Handler. Performing a manipulation results in use after free.
This vulnerability is known as CVE-2026-49417. Attacking locally is a requirement. No exploit is available.
The affected component should be upgraded.
A vulnerability, which was classified as problematic, was found in FreeBSD. Affected by this issue is some unknown functionality of the component Shared Library Handler. Such manipulation leads to incorrect privilege assignment.
This vulnerability is traded as CVE-2026-49413. An attack has to be approached locally. There is no exploit available.
You should upgrade the affected component.
A vulnerability, which was classified as critical, has been found in FreeBSD. Affected by this vulnerability is the function dsp_mmap_single of the file /dev/dsp of the component Kernel Memory Handler. This manipulation causes out-of-bounds read.
This vulnerability appears as CVE-2026-45258. The attack requires local access. There is no available exploit.
It is advisable to upgrade the affected component.
A vulnerability classified as critical was found in FreeBSD. Affected is an unknown function. The manipulation results in use after free.
This vulnerability is reported as CVE-2026-49412. The attack requires a local approach. No exploit exists.
Upgrading the affected component is advised.
A vulnerability classified as problematic has been found in jegstudio Gutenverse Plugin up to 3.8.0 on WordPress. This impacts an unknown function of the component Setting Handler. The manipulation leads to cross site scripting.
This vulnerability is documented as CVE-2026-12399. The attack can be initiated remotely. There is not any exploit available.
It is recommended to upgrade the affected component.
A vulnerability described as problematic has been identified in surbma Surbma Plugin up to 2.0.1 on WordPress. This affects the function surbma_infusionsoft_shortcode_shortcode of the component Shortcode Handler. Executing a manipulation of the argument ID can lead to cross site scripting.
This vulnerability is registered as CVE-2026-11597. It is possible to launch the attack remotely. No exploit is available.
Upgrading the affected component is recommended.
A vulnerability marked as problematic has been reported in FreeBSD. The impacted element is an unknown function of the component Capability Mode. Performing a manipulation results in incorrect privilege assignment.
This vulnerability is cataloged as CVE-2026-45259. The attack must originate from the local network. There is no exploit available.
Applying a patch is the recommended action to fix this issue.
A vulnerability labeled as problematic has been found in gpriday Page Builder by SiteOrigin Plugin up to 2.34.3 on WordPress. The affected element is an unknown function. Such manipulation of the argument panels_data leads to cross site scripting.
This vulnerability is listed as CVE-2026-13295. The attack may be performed from remote. There is no available exploit.
The affected component should be upgraded.
A vulnerability identified as problematic has been detected in dokaninc Dokan Plugin up to 5.0.4 on WordPress. Impacted is the function html. This manipulation causes cross site scripting.
This vulnerability is tracked as CVE-2026-11783. The attack is possible to be carried out remotely. No exploit exists.
You should upgrade the affected component.
A vulnerability categorized as critical has been discovered in themeisle Stripe Payment Forms by WP Full Pay Plugin up to 8.4.3 on WordPress. This issue affects the function wpfs_update_failed_payment_status of the file Stripe.js. The manipulation of the argument db results in missing authorization.
This vulnerability is identified as CVE-2026-12432. The attack can be executed remotely. There is not any exploit available.
It is advisable to upgrade the affected component.
A vulnerability was found in expresstech Quiz and Survey Master Plugin up to 11.1.4 on WordPress. It has been rated as critical. This vulnerability affects unknown code of the component Database Table Handler. The manipulation leads to missing authorization.
This vulnerability is referenced as CVE-2026-9233. Remote exploitation of the attack is possible. No exploit is available.
Upgrading the affected component is advised.
A vulnerability was found in Masteriyo LMS Plugin up to 2.2.1 on WordPress. It has been declared as critical. This affects an unknown part. Executing a manipulation can lead to missing authorization.
The identification of this vulnerability is CVE-2026-11773. The attack may be launched remotely. There is no exploit available.
It is recommended to upgrade the affected component.