NVD や CVE、ほか複数の脅威フィードを束ね、RCE など高リスクな事象を深く追える一覧です。CVSS と EPSS を組み合わせ、Exploit 参照や PoC の有無から悪用しやすさを追跡します。ベンダー修正や緩和策の文脈とあわせて優先度を決め、対応サイクルを短く保ちつつ重要資産を守る支援をします。
Assigner(CNA/発行元):[email protected] この条件を外す
| CVE | 説明 | CVSS 最大値 | EPSS(%) | 公開 | 更新 |
|---|---|---|---|---|---|
| CVE-2026-57621 | Unauthenticated PHP Object Injection in Booktics <= 1.0.21 versions. | 9.8 | 該当なし | 2026-07-02 | 2026-07-02 |
| CVE-2026-57620 | Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Tim Strifler Exclusive Addons Elementor allows Stored XSS. This issue affects Exclusive Addons Elementor: from n/a through 2.7.9.8. | 6.5 | 0.13% | 2026-06-26 | 2026-06-26 |
| CVE-2026-57619 | Contributor Sensitive Data Exposure in Elementor Website Builder <= 4.1.3 versions. | 6.5 | 0.27% | 2026-06-25 | 2026-06-25 |
| CVE-2026-57618 | Contributor Cross Site Scripting (XSS) in Neve PRO <= 3.1.2 versions. | 6.5 | 0.16% | 2026-06-26 | 2026-06-26 |
| CVE-2026-57617 | Contributor Cross Site Scripting (XSS) in SeedProd Pro < 6.19.5 versions. | 6.5 | 0.16% | 2026-06-26 | 2026-06-26 |
| CVE-2026-57431 | Author Cross Site Scripting (XSS) in Featured Image <= 2.1 versions. | 6.5 | 0.16% | 2026-06-26 | 2026-06-29 |
| CVE-2026-57430 | Contributor Broken Access Control in SEOPress PRO <= 9.1.1 versions. | 4.3 | 0.18% | 2026-06-26 | 2026-06-26 |
| CVE-2026-57429 | Contributor Broken Access Control in Slim SEO <= 4.6.2 versions. | 6.5 | 0.25% | 2026-06-25 | 2026-06-25 |
| CVE-2026-57426 | Unauthenticated Cross Site Scripting (XSS) in Modula - PRO <= 2.10.8 versions. | 7.1 | 該当なし | 2026-07-02 | 2026-07-02 |
| CVE-2026-57366 | Unauthenticated Cross Site Scripting (XSS) in WPAdverts <= 2.3.1 versions. | 7.1 | 該当なし | 2026-07-02 | 2026-07-02 |
| CVE-2026-57362 | Unauthenticated Cross Site Scripting (XSS) in ChatBot <= 8.3.2 versions. | 7.1 | 該当なし | 2026-07-02 | 2026-07-02 |
| CVE-2026-57361 | Unauthenticated Cross Site Scripting (XSS) in Survey Maker <= 5.2.2.5 versions. | 7.1 | 該当なし | 2026-07-02 | 2026-07-02 |
| CVE-2026-57360 | Unauthenticated Cross Site Scripting (XSS) in eCommerce Product Catalog <= 3.5.4 versions. | 7.1 | 該当なし | 2026-07-02 | 2026-07-02 |
| CVE-2026-57359 | Unauthenticated Cross Site Scripting (XSS) in ReviewX <= 2.3.10 versions. | 7.1 | 該当なし | 2026-07-02 | 2026-07-02 |
| CVE-2026-57358 | Unauthenticated Cross Site Scripting (XSS) in Customize My Account for WooCommerce <= 4.3.9 versions. | 7.1 | 該当なし | 2026-07-02 | 2026-07-02 |
| CVE-2026-57357 | Unauthenticated Cross Site Scripting (XSS) in Search Atlas SEO <= 2.6.6 versions. | 7.1 | 該当なし | 2026-07-02 | 2026-07-02 |
| CVE-2026-57356 | Unauthenticated Cross Site Scripting (XSS) in MC Woocommerce Wishlist <= 1.9.19 versions. | 7.1 | 該当なし | 2026-07-02 | 2026-07-02 |
| CVE-2026-57355 | Subscriber Broken Access Control in Classified Listing <= 5.4.2 versions. | 6.5 | 該当なし | 2026-07-02 | 2026-07-02 |
| CVE-2026-57354 | Subscriber Cross Site Scripting (XSS) in JetReviews <= 3.0.0.1 versions. | 6.5 | 該当なし | 2026-07-02 | 2026-07-02 |
| CVE-2026-57353 | Subscriber Broken Access Control in Link Whisper Premium <= 2.9.0 versions. | 6.5 | 該当なし | 2026-07-02 | 2026-07-02 |