Known Vulnerabilities for Search Plugin by Hotaru
Listed below are 1 of the newest known vulnerabilities associated with "Search Plugin" by "Hotaru".
These CVEs are retrieved based on exact matches on listed software, hardware, and vendor information (CPE data) as well as a keyword search to ensure the newest vulnerabilities with no officially listed software information are still displayed.
Data on known vulnerable versions is also displayed based on information from known CPEs
Known Vulnerabilities
| CVE | Shortened Description | Severity | Publish Date | Last Modified |
|---|---|---|---|---|
| CVE-2026-57288 json | Jenkins Active Directory Plugin 2.41.1 and earlier does not escape the user name before building the LDAP search filter in th... | Not Provided | 2026-06-24 | 2026-06-24 |
| CVE-2026-50182 json | WWBN AVideo is an open source video platform. Versions prior to 29.0 contain an unauthenticated Reflected XSS vulnerability t... | Not Provided | 2026-07-15 | 2026-07-17 |
| CVE-2026-48116 json | AnythingLLM is an application that turns pieces of content into context that any LLM can use as references during chatting. P... | Not Provided | 2026-05-28 | 2026-05-30 |
| CVE-2026-47348 json | Editors with access to create or modify page content were able to include HTML markup in page titles that were stored in the ... | Not Provided | 2026-06-09 | 2026-06-09 |
| CVE-2026-41456 json | Bludit CMS prior to commit 6732dde contains a reflected cross-site scripting vulnerability in the search plugin that allows u... | Not Provided | 2026-04-21 | 2026-07-14 |
| CVE-2026-29090 json | ### Summary A SQL injection vulnerability exists in Rucio versions 1.30.0 and later before 35.8.5, 38.5.5, 39.4.2, and 40.1.... | Not Provided | 2026-05-06 | 2026-05-06 |
| CVE-2026-29080 json | A SQL injection vulnerability in `FilterEngine.create_sqla_query()` allows any authenticated Rucio user to execute arbitrary ... | Not Provided | 2026-05-06 | 2026-05-06 |
| CVE-2026-15306 json | The Product Feed Manager For WooCommerce – Sell on 200+ Online Marketplaces plugin for WordPress is vulnerable to Reflected... | Not Provided | 2026-07-16 | 2026-07-16 |
| CVE-2026-15300 json | The GEO my WP plugin for WordPress was vulnerable to SQL Injection via the 'distance', 'lat', and 'lng' parameters in version... | Not Provided | 2026-07-10 | 2026-07-10 |
| CVE-2026-15290 json | The Ultimate Member – User Profile, Registration, Login, Member Directory, Content Restriction & Membership Plugin plugin f... | Not Provided | 2026-07-10 | 2026-07-10 |