Bonds
Patchstack Bug Bounty Program
451 kredili kayıt · son 12 ayda 320 · 0 tanesi CISA KEV’de
Adlar CNA kayıtlarındaki serbest metindir; aynı kişi farklı yazımlarla ayrı görünebilir. Düzeltme için bize yazın.
Kredili kayıtlar
Araştırmacılar| Aksiyon | CVE | Zafiyet | Ciddiyet | KEV | EPSS | Yayın |
|---|---|---|---|---|---|---|
21İzleyin | CVE-2026-27347İstismar yok | WordPress JetPopup plugin <= 2.0.20.2 - Broken Access Control vulnerabilitycrocoblock · jetpopup · CWE-862 | Orta5,3 | — | %0,3 | 4 Eyl 2026 |
28İzleyin | CVE-2026-66623İstismar yok | WordPress Social Media & Share Icons plugin <= 2.9.9 - Cross Site Scripting (XSS) vulnerabilityinisev · social media & share icons · CWE-79 | Yüksek7,1 | — | %0,3 | 24 Ağu 2026 |
32İzleyin | CVE-2025-15637İstismar yok | WordPress Shuffle theme <= 1.8 - Local File Inclusion vulnerabilityedge themes · shuffle · CWE-98 | Yüksek8,1 | — | %0,5 | 20 Ağu 2026 |
40Planlayın | CVE-2026-66665İstismar yok | WordPress Type Hub plugin <= 2.0.6 - Arbitrary File Upload vulnerabilitybrandexponents · type hub · CWE-434 | Kritik10,0 | — | %0,5 | 6 Ağu 2026 |
39İzleyin | CVE-2026-65579İstismar yok | WordPress Agricola theme <= 1.21.0 - PHP Object Injection vulnerabilityaxiomthemes · agricola · CWE-502 | Kritik9,8 | — | %0,6 | 6 Ağu 2026 |
39İzleyin | CVE-2026-65578İstismar yok | WordPress Agora theme <= 1.9 - PHP Object Injection vulnerabilityancorathemes · agora · CWE-502 | Kritik9,8 | — | %0,6 | 6 Ağu 2026 |
39İzleyin | CVE-2026-65577İstismar yok | WordPress Advice theme <= 1.18.0 - PHP Object Injection vulnerabilityancorathemes · advice · CWE-502 | Kritik9,8 | — | %0,6 | 6 Ağu 2026 |
39İzleyin | CVE-2026-65576İstismar yok | WordPress Adrena theme <= 1.2.14 - PHP Object Injection vulnerabilityancorathemes · adrena · CWE-502 | Kritik9,8 | — | %0,6 | 6 Ağu 2026 |
39İzleyin | CVE-2026-65574İstismar yok | WordPress Abogado theme <= 1.18 - PHP Object Injection vulnerabilityancorathemes · abogado · CWE-502 | Kritik9,8 | — | %0,6 | 6 Ağu 2026 |
39İzleyin | CVE-2026-65572İstismar yok | WordPress A.Williams theme <= 1.3.1 - PHP Object Injection vulnerabilityaxiomthemes · a.williams · CWE-502 | Kritik9,8 | — | %0,6 | 6 Ağu 2026 |
39İzleyin | CVE-2026-65571İstismar yok | WordPress 69 Clothing theme <= 1.2.11.1 - PHP Object Injection vulnerabilityaxiomthemes · 69 clothing · CWE-502 | Kritik9,8 | — | %0,6 | 6 Ağu 2026 |
37İzleyin | CVE-2026-65546İstismar yok | WordPress Qode Tours plugin <= 3.1.3.1 - SQL Injection vulnerabilityqode · qode tours · CWE-89 | Kritik9,3 | — | %0,4 | 6 Ağu 2026 |
17İzleyin | CVE-2026-65524İstismar yok | WordPress Avada Custom Branding plugin <= 1.2 - Broken Access Control vulnerabilitythemefusion · avada custom branding · CWE-862 | Orta4,3 | — | %0,3 | 23 Tem 2026 |
28İzleyin | CVE-2026-57745İstismar yok | WordPress RT-Theme 18 | Extensions plugin <= 2.5 - Reflected Cross Site Scripting (XSS) vulnerabilitystmcan · rt-theme 18 | extensions · CWE-79 | Yüksek7,1 | — | %0,3 | 13 Tem 2026 |
39İzleyin | CVE-2026-57744İstismar yok | WordPress RT-Theme 18 | Extensions plugin <= 2.5 - PHP Object Injection vulnerabilitystmcan · rt-theme 18 | extensions · CWE-502 | Kritik9,8 | — | %0,6 | 13 Tem 2026 |
32İzleyin | CVE-2026-57743İstismar yok | WordPress RT-Theme 18 | Extensions plugin <= 2.5 - Local File Inclusion vulnerabilitystmcan · rt-theme 18 | extensions · CWE-98 | Yüksek8,1 | — | %0,6 | 13 Tem 2026 |
39İzleyin | CVE-2026-57738İstismar yok | WordPress 777 theme <= 1.13.0 - PHP Object Injection vulnerabilityaxiomthemes · 777 · CWE-502 | Kritik9,8 | — | %0,6 | 13 Tem 2026 |
28İzleyin | CVE-2026-57734İstismar yok | WordPress tagDiv Composer plugin <= 5.4.3 - Reflected Cross Site Scripting (XSS) vulnerabilitytagdiv · tagdiv composer · CWE-79 | Yüksek7,1 | — | %0,3 | 13 Tem 2026 |
28İzleyin | CVE-2026-57733İstismar yok | WordPress tagDiv Cloud Library plugin <= 3.9.4 - Cross Site Scripting (XSS) vulnerabilitytagdiv · tagdiv cloud library · CWE-79 | Yüksek7,1 | — | %0,3 | 13 Tem 2026 |
28İzleyin | CVE-2026-57732İstismar yok | WordPress tagDiv Opt-In Builder plugin <= 1.7.4 - Cross Site Scripting (XSS) vulnerabilitytagdiv · tagdiv opt-in builder · CWE-79 | Yüksek7,1 | — | %0,3 | 13 Tem 2026 |
30İzleyin | CVE-2026-57729İstismar yok | WordPress Flatsome theme <= 3.20.5 - Broken Access Control vulnerabilityux-themes · flatsome · CWE-862 | Yüksek7,5 | — | %0,4 | 13 Tem 2026 |
28İzleyin | CVE-2026-57728İstismar yok | WordPress Flatsome theme <= 3.20.5 - Reflected Cross Site Scripting (XSS) vulnerabilityux-themes · flatsome · CWE-79 | Yüksek7,1 | — | %0,3 | 13 Tem 2026 |
26İzleyin | CVE-2026-57731İstismar yok | WordPress Flatsome theme <= 3.20.5 - Broken Access Control vulnerabilityux-themes · flatsome · CWE-862 | Orta6,5 | — | %0,3 | 2 Tem 2026 |
17İzleyin | CVE-2026-57730İstismar yok | WordPress Flatsome theme <= 3.20.5 - Broken Access Control vulnerabilityux-themes · flatsome · CWE-862 | Orta4,3 | — | %0,3 | 2 Tem 2026 |
26İzleyin | CVE-2025-69132İstismar yok | WordPress Corpkit theme <= 1.0.5 - Sensitive Data Exposure vulnerabilityzozothemes · corpkit · CWE-201 | Orta6,5 | — | %0,4 | 2 Tem 2026 |
- CVE-2026-2734721İzleyin
WordPress JetPopup plugin <= 2.0.20.2 - Broken Access Control vulnerability
OrtaCVSS 5,3İstismar yokEPSS %0crocoblock · jetpopup4 Eyl 2026
- CVE-2026-6662328İzleyin
WordPress Social Media & Share Icons plugin <= 2.9.9 - Cross Site Scripting (XSS) vulnerability
YüksekCVSS 7,1İstismar yokEPSS %0inisev · social media & share icons24 Ağu 2026
- CVE-2025-1563732İzleyin
WordPress Shuffle theme <= 1.8 - Local File Inclusion vulnerability
YüksekCVSS 8,1İstismar yokEPSS %0edge themes · shuffle20 Ağu 2026
- CVE-2026-6666540Planlayın
WordPress Type Hub plugin <= 2.0.6 - Arbitrary File Upload vulnerability
KritikCVSS 10,0İstismar yokEPSS %1brandexponents · type hub6 Ağu 2026
- CVE-2026-6557939İzleyin
WordPress Agricola theme <= 1.21.0 - PHP Object Injection vulnerability
KritikCVSS 9,8İstismar yokEPSS %1axiomthemes · agricola6 Ağu 2026
- CVE-2026-6557839İzleyin
WordPress Agora theme <= 1.9 - PHP Object Injection vulnerability
KritikCVSS 9,8İstismar yokEPSS %1ancorathemes · agora6 Ağu 2026
- CVE-2026-6557739İzleyin
WordPress Advice theme <= 1.18.0 - PHP Object Injection vulnerability
KritikCVSS 9,8İstismar yokEPSS %1ancorathemes · advice6 Ağu 2026
- CVE-2026-6557639İzleyin
WordPress Adrena theme <= 1.2.14 - PHP Object Injection vulnerability
KritikCVSS 9,8İstismar yokEPSS %1ancorathemes · adrena6 Ağu 2026
- CVE-2026-6557439İzleyin
WordPress Abogado theme <= 1.18 - PHP Object Injection vulnerability
KritikCVSS 9,8İstismar yokEPSS %1ancorathemes · abogado6 Ağu 2026
- CVE-2026-6557239İzleyin
WordPress A.Williams theme <= 1.3.1 - PHP Object Injection vulnerability
KritikCVSS 9,8İstismar yokEPSS %1axiomthemes · a.williams6 Ağu 2026
- CVE-2026-6557139İzleyin
WordPress 69 Clothing theme <= 1.2.11.1 - PHP Object Injection vulnerability
KritikCVSS 9,8İstismar yokEPSS %1axiomthemes · 69 clothing6 Ağu 2026
- CVE-2026-6554637İzleyin
WordPress Qode Tours plugin <= 3.1.3.1 - SQL Injection vulnerability
KritikCVSS 9,3İstismar yokEPSS %0qode · qode tours6 Ağu 2026
- CVE-2026-6552417İzleyin
WordPress Avada Custom Branding plugin <= 1.2 - Broken Access Control vulnerability
OrtaCVSS 4,3İstismar yokEPSS %0themefusion · avada custom branding23 Tem 2026
- CVE-2026-5774528İzleyin
WordPress RT-Theme 18 | Extensions plugin <= 2.5 - Reflected Cross Site Scripting (XSS) vulnerability
YüksekCVSS 7,1İstismar yokEPSS %0stmcan · rt-theme 18 | extensions13 Tem 2026
- CVE-2026-5774439İzleyin
WordPress RT-Theme 18 | Extensions plugin <= 2.5 - PHP Object Injection vulnerability
KritikCVSS 9,8İstismar yokEPSS %1stmcan · rt-theme 18 | extensions13 Tem 2026
- CVE-2026-5774332İzleyin
WordPress RT-Theme 18 | Extensions plugin <= 2.5 - Local File Inclusion vulnerability
YüksekCVSS 8,1İstismar yokEPSS %1stmcan · rt-theme 18 | extensions13 Tem 2026
- CVE-2026-5773839İzleyin
WordPress 777 theme <= 1.13.0 - PHP Object Injection vulnerability
KritikCVSS 9,8İstismar yokEPSS %1axiomthemes · 77713 Tem 2026
- CVE-2026-5773428İzleyin
WordPress tagDiv Composer plugin <= 5.4.3 - Reflected Cross Site Scripting (XSS) vulnerability
YüksekCVSS 7,1İstismar yokEPSS %0tagdiv · tagdiv composer13 Tem 2026
- CVE-2026-5773328İzleyin
WordPress tagDiv Cloud Library plugin <= 3.9.4 - Cross Site Scripting (XSS) vulnerability
YüksekCVSS 7,1İstismar yokEPSS %0tagdiv · tagdiv cloud library13 Tem 2026
- CVE-2026-5773228İzleyin
WordPress tagDiv Opt-In Builder plugin <= 1.7.4 - Cross Site Scripting (XSS) vulnerability
YüksekCVSS 7,1İstismar yokEPSS %0tagdiv · tagdiv opt-in builder13 Tem 2026
- CVE-2026-5772930İzleyin
WordPress Flatsome theme <= 3.20.5 - Broken Access Control vulnerability
YüksekCVSS 7,5İstismar yokEPSS %0ux-themes · flatsome13 Tem 2026
- CVE-2026-5772828İzleyin
WordPress Flatsome theme <= 3.20.5 - Reflected Cross Site Scripting (XSS) vulnerability
YüksekCVSS 7,1İstismar yokEPSS %0ux-themes · flatsome13 Tem 2026
- CVE-2026-5773126İzleyin
WordPress Flatsome theme <= 3.20.5 - Broken Access Control vulnerability
OrtaCVSS 6,5İstismar yokEPSS %0ux-themes · flatsome2 Tem 2026
- CVE-2026-5773017İzleyin
WordPress Flatsome theme <= 3.20.5 - Broken Access Control vulnerability
OrtaCVSS 4,3İstismar yokEPSS %0ux-themes · flatsome2 Tem 2026
- CVE-2025-6913226İzleyin
WordPress Corpkit theme <= 1.0.5 - Sensitive Data Exposure vulnerability
OrtaCVSS 6,5İstismar yokEPSS %0zozothemes · corpkit2 Tem 2026