🛡️ CVE Intelligence Center
Common Vulnerabilities & Exposures — Security Intelligence Database
| CVE ID | Severity | CVSS | Description | Status | Published |
|---|---|---|---|---|---|
| CVE-2026-2957 | Medium | 5.4 |
A weakness has been identified in qinming99 dst-admin up to 1.5.0. This impacts the function deleteBackup of the file sr…
|
⚡ Exploit | Feb 22, 2026 |
| CVE-2026-2385 | Medium | 5.3 |
The The Plus Addons for Elementor – Addons for Elementor, Page Templates, Widgets, Mega Menu, WooCommerce plugin for Wor…
|
— | Feb 22, 2026 |
| CVE-2026-1369 | Medium | 4.3 |
The Conditional CAPTCHA WordPress plugin through 4.0.0 does not validate a parameter before redirecting the user to its …
|
— | Feb 22, 2026 |
| CVE-2026-2943 | Medium | 4.3 |
A vulnerability was identified in SapneshNaik Student Management System up to f4b4f0928f0b5551a28ee81ae7e7fe47d9345318. …
|
— | Feb 22, 2026 |
| CVE-2025-14339 | Medium | 6.5 |
The weMail - Email Marketing, Lead Generation, Optin Forms, Email Newsletters, A/B Testing, and Automation plugin for Wo…
|
— | Feb 21, 2026 |
| CVE-2026-27469 | Medium | 6.1 |
Isso is a lightweight commenting server written in Python and JavaScript. In commits before 0afbfe0691ee237963e8fb0b2ee0…
|
— | Feb 21, 2026 |
| CVE-2026-27482 | Medium | 5.9 |
Ray is an AI compute engine. In versions 2.53.0 and below, thedashboard HTTP server blocks browser-origin POST/PUT but d…
|
⚡ Exploit ✅ Patch | Feb 21, 2026 |
| CVE-2026-2864 | Medium | 5.4 |
A vulnerability has been found in feng_ha_ha/megagao ssm-erp and production_ssm up to 4288d53bd35757b27f2d070057aefb2c07…
|
— | Feb 21, 2026 |
| CVE-2026-27480 | Medium | 5.3 |
Static Web Server (SWS) is a production-ready web server suitable for static web files or assets. In versions 2.1.0 thro…
|
⚡ Exploit ✅ Patch | Feb 21, 2026 |
| CVE-2026-27486 | Medium | 5.3 |
OpenClaw is a personal AI assistant. In versions 2026.2.13 and below of the OpenClaw CLI, the process cleanup uses syste…
|
✅ Patch | Feb 21, 2026 |
| CVE-2026-2894 | Medium | 5.3 |
A vulnerability was identified in funadmin up to 7.1.0-rc4. Affected by this vulnerability is the function getMember of …
|
⚡ Exploit | Feb 21, 2026 |
| CVE-2026-1787 | Medium | 4.8 |
The LearnPress Export Import – WordPress extension for LearnPress plugin for WordPress is vulnerable to unauthorized los…
|
— | Feb 21, 2026 |
| CVE-2026-27492 | Medium | 4.7 |
Lettermint Node.js SDK is the official Node.js SDK for Lettermint. In versions 1.5.0 and below, email properties (such a…
|
✅ Patch | Feb 21, 2026 |
| CVE-2026-27485 | Medium | 4.4 |
OpenClaw is a personal AI assistant. In versions 2026.2.17 and below, skills/skill-creator/scripts/package_skill.py (a l…
|
✅ Patch | Feb 21, 2026 |
| CVE-2026-27484 | Medium | 4.3 |
OpenClaw is a personal AI assistant. In versions 2026.2.17 and below, the Discord moderation action handling (timeout, k…
|
✅ Patch | Feb 21, 2026 |
| CVE-2026-27576 | Medium | 4.0 |
OpenClaw is a personal AI assistant. In versions 2026.2.17 and below, the ACP bridge accepts very large prompt text bloc…
|
✅ Patch | Feb 21, 2026 |