Known Vulnerabilities for WP Data Access by Passionate Programmer Peter
Listed below are 10 of the newest known vulnerabilities associated with "WP Data Access" by "Passionate Programmer Peter".
These CVEs are retrieved based on exact matches on listed software, hardware, and vendor information (CPE data) as well as a keyword search to ensure the newest vulnerabilities with no officially listed software information are still displayed.
Data on known vulnerable versions is also displayed based on information from known CPEs
Known Vulnerabilities
| CVE | Shortened Description | Severity | Publish Date | Last Modified |
|---|---|---|---|---|
| CVE-2026-57521 json | Bitwarden Server before 2026.5.0 contains a broken access control vulnerability that allows any authenticated user to access ... | Not Provided | 2026-06-25 | 2026-06-25 |
| CVE-2026-56771 json | NewsBlur before version 14.5.0 contains a server-side request forgery vulnerability in the add_url endpoint that allows authe... | Not Provided | 2026-06-25 | 2026-06-26 |
| CVE-2026-56424 json | MISP core contained multiple broken access-control flaws where authorization checks were performed against the wrong entity, ... | Not Provided | 2026-06-22 | 2026-06-23 |
| CVE-2026-56422 json | Multiple MISP core controllers and model capture paths accepted client-controlled request fields such as primary keys (id) an... | Not Provided | 2026-06-22 | 2026-06-22 |
| CVE-2026-56348 json | n8n before 2.20.0 contains a credential exfiltration vulnerability in the POST /rest/dynamic-node-parameters/options endpoint... | Not Provided | 2026-06-22 | 2026-06-23 |
| CVE-2026-56269 json | Flowise before 3.1.0 (npm package flowise, versions 3.0.13 and earlier) uses a weak hardcoded default value 'Secre$t' for the... | Not Provided | 2026-06-24 | 2026-06-24 |
| CVE-2026-56257 json | Capgo before 12.128.2 allows direct patching of public.apps.owner_org through PostgREST, bypassing the transfer_app() workflo... | Not Provided | 2026-06-24 | 2026-06-25 |
| CVE-2026-56223 json | Capgo before 12.128.2 contains a cross-domain SSO account takeover vulnerability in the provision-user endpoint that allows a... | Not Provided | 2026-06-24 | 2026-06-24 |
| CVE-2026-56221 json | Cap-go before 12.128.2 contains multiple SQL injection vulnerabilities in cloudflare.ts where user-controlled values from API... | Not Provided | 2026-06-22 | 2026-06-23 |
| CVE-2026-56104 json | Chainlit before 2.10.1 contains a session hijacking vulnerability that allows unauthenticated attackers to restore and inheri... | Not Provided | 2026-06-22 | 2026-06-23 |