Known Vulnerabilities for HT Feed by HT Plugins
Listed below are 10 of the newest known vulnerabilities associated with "HT Feed" by "HT Plugins".
These CVEs are retrieved based on exact matches on listed software, hardware, and vendor information (CPE data) as well as a keyword search to ensure the newest vulnerabilities with no officially listed software information are still displayed.
Data on known vulnerable versions is also displayed based on information from known CPEs
Known Vulnerabilities
| CVE | Shortened Description | Severity | Publish Date | Last Modified |
|---|---|---|---|---|
| CVE-2026-108735 json | Miniflux 2.3.0 through 2.3.3 contains a server-side request forgery vulnerability that allows authenticated users to reach in... | Not Provided | 2026-10-11 | 2026-10-11 |
| CVE-2026-104735 json | The RSS Aggregator by Feedzy – Feed to Post, Autoblogging, News & YouTube Video Feeds Aggregator plugin for WordPress is vu... | Not Provided | 2026-10-10 | 2026-10-11 |
| CVE-2026-104442 json | YesWiki before 4.6.7 contains an unauthenticated server-side request forgery vulnerability that allows remote attackers to ma... | Not Provided | 2026-10-02 | 2026-10-02 |
| CVE-2026-103349 json | Deserialization of Untrusted Data vulnerability in Rymera Web Co Product Feed PRO for WooCommerce woo-product-feed-pro allows... | Not Provided | 2026-10-05 | 2026-10-06 |
| CVE-2026-102473 json | A flaw was found in dash. When built without libc fnmatch, the internal pmatch() matcher implements * by unbounded recursion ... | Not Provided | 2026-09-29 | 2026-09-30 |
| CVE-2026-100750 json | Joomla Extension - regularlabs.com - LFI / SSRF in Modules Anywhere 1.5.0 - 9.0.5 for Joomla - Modules Anywhere Pro lets addi... | Not Provided | 2026-09-28 | 2026-09-30 |
| CVE-2026-100717 json | froxlor is a server administration panel. In versions 2.3.10 and earlier, Validate::validateUrl rejects carriage return and l... | Not Provided | 2026-09-26 | 2026-09-30 |
| CVE-2026-97626 json | Requesting a user or organization profile page (`GET /{username}`) with an `Accept: application/rss+xml` or `Accept: applicat... | Not Provided | 2026-10-06 | 2026-10-07 |
| CVE-2026-93756 json | The Smash Balloon Social Post Feed – Simple Social Feeds for WordPress plugin for WordPress is vulnerable to Stored Cross-S... | Not Provided | 2026-10-02 | 2026-10-03 |
| CVE-2026-93579 json | A flaw was found in Netty's HTTP/2 stack. This vulnerability allows a remote attacker to inject prohibited characters, such a... | Not Provided | 2026-09-18 | 2026-09-29 |