Adobe addressed a critical Acrobat Reader vulnerability, tracked as CVE-2026-34621, which is actively exploited to run malicious code. Adobe released emergency updates to address a critical vulnerability, tracked as CVE-2026-34621 (CVSS score of 8.6), in Adobe Acrobat Reader, which is being actively exploited. The flaw could allow attackers to execute malicious code on affected systems, […]
Cloudflare's mission has always been to help build a better Internet. Sometimes that means building for the Internet as it exists. Sometimes it means building for the Internet as it's about to become.
This week, we're kicking off Agents Week, dedicated to what comes next.
A vulnerability labeled as problematic has been found in wpDataTables Plugin up to 3.4.2.2 on WordPress. Affected by this issue is some unknown functionality. The manipulation results in cross site scripting.
This vulnerability is identified as CVE-2024-0591. The attack can be executed remotely. There is not any exploit available.
A vulnerability has been found in ArtiBot Free Chat Bot Plugin up to 1.1.6 on WordPress and classified as critical. Affected by this issue is some unknown functionality of the component Setting Handler. This manipulation causes missing authorization.
This vulnerability is handled as CVE-2024-0447. The attack can be initiated remotely. There is not any exploit available.
A vulnerability was found in Bulk Edit Post Titles Plugin up to 5.0.0 on WordPress and classified as critical. This affects the function bulkUpdatePostTitles. Such manipulation leads to missing authorization.
This vulnerability is uniquely identified as CVE-2024-0369. The attack can be launched remotely. No exploit exists.
A vulnerability was found in Duitku Payment Gateway Plugin up to 2.11.4 on WordPress. It has been classified as critical. This vulnerability affects the function check_duitku_response. Performing a manipulation results in missing authorization.
This vulnerability was named CVE-2024-0631. The attack may be initiated remotely. There is no available exploit.
A vulnerability was found in User Shortcodes Plus Plugin up to 2.0.2 on WordPress. It has been declared as problematic. This issue affects some unknown processing of the component Shortcode Handler. Executing a manipulation can lead to improper control of resource identifiers.
The identification of this vulnerability is CVE-2023-6969. The attack needs to be done within the local network. There is no exploit available.
A vulnerability, which was classified as problematic, has been found in ArtiBot Free Chat Bot Plugin up to 1.1.6 on WordPress. This vulnerability affects unknown code. This manipulation causes cross site scripting.
This vulnerability appears as CVE-2024-0449. The attack may be initiated remotely. There is no available exploit.
A vulnerability labeled as critical has been found in Page Restriction Plugin up to 1.3.4 on WordPress. Affected by this issue is some unknown functionality. Such manipulation leads to protection mechanism failure.
This vulnerability is documented as CVE-2024-0681. The attack can be executed remotely. There is not any exploit available.
A vulnerability described as problematic has been identified in Events Manager Plugin up to 6.4.6.4 on WordPress. Affected by this issue is some unknown functionality of the component Setting Handler. Executing a manipulation can lead to cross site scripting.
This vulnerability is registered as CVE-2024-0614. It is possible to launch the attack remotely. No exploit is available.
A vulnerability was found in Visual Composer Premium Plugin up to 45.6.0 on WordPress and classified as problematic. Affected by this issue is some unknown functionality. Executing a manipulation can lead to cross site scripting.
This vulnerability is tracked as CVE-2023-6880. The attack can be launched remotely. No exploit exists.
A vulnerability was found in File Manager Plugin and File Manager Pro Plugin on WordPress. It has been classified as critical. The impacted element is an unknown function. This manipulation causes path traversal.
This vulnerability is tracked as CVE-2023-6825. The attack is only possible within the local network. No exploit exists.
A vulnerability described as problematic has been identified in Hustle Plugin up to 7.8.3 on WordPress. Affected is an unknown function of the component Hubspot API Key Handler. Executing a manipulation can lead to information disclosure.
This vulnerability appears as CVE-2024-0368. The attacker needs to be present on the local network. There is no available exploit.
A vulnerability categorized as problematic has been discovered in Related Posts Plugin up to 2.2.1 on WordPress. This affects an unknown part. The manipulation results in cross-site request forgery.
This vulnerability was named CVE-2024-0592. The attack may be performed from remote. There is no available exploit.