A vulnerability categorized as problematic has been discovered in nats-io nats-server. The affected element is the function wsRead of the component WebSocket Frame Handler. Such manipulation leads to integer overflow.
This vulnerability is referenced as CVE-2026-27889. It is possible to launch the attack remotely. No exploit is available.
It is advisable to upgrade the affected component.
A vulnerability was found in don-themes Riode Plugin up to 1.6.29 on WordPress. It has been rated as problematic. Impacted is an unknown function. This manipulation causes cross site scripting.
The identification of this vulnerability is CVE-2026-32528. It is possible to initiate the attack remotely. There is no exploit available.
Upgrading the affected component is advised.
A vulnerability was found in Taboola Pixel Plugin up to 1.1.4 on WordPress. It has been declared as problematic. This issue affects some unknown processing. The manipulation results in cross site scripting.
This vulnerability was named CVE-2026-32545. The attack may be performed from remote. There is no available exploit.
A vulnerability was found in Bookly Plugin up to 26.7 on WordPress and classified as problematic. This affects an unknown part. Executing a manipulation can lead to cross site scripting.
This vulnerability is handled as CVE-2026-32540. The attack can be executed remotely. There is not any exploit available.
A vulnerability has been found in WPFunnels Creator LMS Plugin up to 1.1.18 on WordPress and classified as critical. Affected by this issue is some unknown functionality. Performing a manipulation results in incorrect privilege assignment.
This vulnerability is known as CVE-2026-32530. Remote exploitation of the attack is possible. No exploit is available.
A vulnerability, which was classified as problematic, was found in OOPSpam Anti-Spam Plugin up to 1.2.62 on WordPress. Affected by this vulnerability is an unknown functionality. Such manipulation leads to cross site scripting.
This vulnerability is traded as CVE-2026-32544. The attack may be launched remotely. There is no exploit available.
A vulnerability classified as problematic was found in ThemeFusion Fusion Builder Plugin up to 3.15.0 on WordPress. This impacts an unknown function. The manipulation results in cross site scripting.
This vulnerability is reported as CVE-2026-32542. The attack can be launched remotely. No exploit exists.
Upgrading the affected component is advised.
A vulnerability classified as problematic has been found in don-themes Molla Plugin up to 1.5.19 on WordPress. This affects an unknown function. The manipulation leads to cross site scripting.
This vulnerability is documented as CVE-2026-32529. The attack can be initiated remotely. There is not any exploit available.
It is recommended to upgrade the affected component.
A vulnerability described as critical has been identified in Edge-Themes Gracey Plugin up to 1.4 on WordPress. The impacted element is an unknown function. Executing a manipulation can lead to deserialization.
This vulnerability is registered as CVE-2026-32509. It is possible to launch the attack remotely. No exploit is available.
Upgrading the affected component is recommended.
A vulnerability marked as critical has been reported in Edge-Themes Archicon Plugin up to 1.7 on WordPress. The affected element is an unknown function. Performing a manipulation results in deserialization.
This vulnerability is cataloged as CVE-2026-32506. It is possible to initiate the attack remotely. There is no exploit available.
It is suggested to upgrade the affected component.
A vulnerability labeled as critical has been found in Mikado-Themes Stål Plugin up to 1.7 on WordPress. Impacted is an unknown function. Such manipulation leads to deserialization.
This vulnerability is listed as CVE-2026-32511. The attack may be performed from remote. There is no available exploit.
The affected component should be upgraded.
A vulnerability identified as critical has been detected in Mikado-Themes Halstein Plugin up to 1.8 on WordPress. This issue affects some unknown processing. This manipulation causes deserialization.
This vulnerability is tracked as CVE-2026-32508. The attack is possible to be carried out remotely. No exploit exists.
You should upgrade the affected component.
A vulnerability categorized as critical has been discovered in Elated-Themes Leroux Plugin up to 1.4 on WordPress. This vulnerability affects unknown code. The manipulation results in deserialization.
This vulnerability is identified as CVE-2026-32507. The attack can be executed remotely. There is not any exploit available.
It is advisable to upgrade the affected component.
A vulnerability was found in Andrew Munro RewardsWP Plugin up to 1.0.4 on WordPress. It has been rated as critical. This affects an unknown part. The manipulation leads to incorrect privilege assignment.
This vulnerability is referenced as CVE-2026-32520. Remote exploitation of the attack is possible. No exploit is available.
A vulnerability was found in Edge-Themes Kamperen Plugin up to 1.3 on WordPress. It has been declared as critical. Affected by this issue is some unknown functionality. Executing a manipulation can lead to deserialization.
The identification of this vulnerability is CVE-2026-32510. The attack may be launched remotely. There is no exploit available.
It is recommended to upgrade the affected component.
A vulnerability was found in Bit Apps Bit SMTP Plugin up to 1.2.2 on WordPress. It has been classified as critical. Affected by this vulnerability is an unknown functionality. Performing a manipulation results in incorrect privilege assignment.
This vulnerability was named CVE-2026-32519. The attack may be initiated remotely. There is no available exploit.