Known Vulnerabilities for Trash Bin by Mybb
Listed below are 1 of the newest known vulnerabilities associated with "Trash Bin" by "Mybb".
These CVEs are retrieved based on exact matches on listed software, hardware, and vendor information (CPE data) as well as a keyword search to ensure the newest vulnerabilities with no officially listed software information are still displayed.
Data on known vulnerable versions is also displayed based on information from known CPEs
Known Vulnerabilities
| CVE | Shortened Description | Severity | Publish Date | Last Modified |
|---|---|---|---|---|
| CVE-2026-101923 json | The Photo Reviews for WooCommerce plugin for WordPress is vulnerable to Arbitrary Content Deletion in versions up to, and inc... | Not Provided | 2026-10-03 | 2026-10-03 |
| CVE-2026-88802 json | The MDJM Event Management WordPress plugin before 1.7.8.5 and the Mobile Events Manager WordPress plugin through 1.4.8.3 do n... | Not Provided | 2026-09-13 | 2026-09-14 |
| CVE-2026-86812 json | The WPCafe WordPress plugin before 3.0.18 does not correctly restrict access to a set of order-management REST endpoints bec... | Not Provided | 2026-09-11 | 2026-09-11 |
| CVE-2026-86591 json | The Botiga Pro WordPress plugin before 1.6.5 does not perform any authorisation checks on one of its REST routes, allowing un... | Not Provided | 2026-09-19 | 2026-09-19 |
| CVE-2026-84743 json | The Events Calendar WordPress plugin before 6.17.5 does not perform a per-object capability check on one family of its REST w... | Not Provided | 2026-09-23 | 2026-09-23 |
| CVE-2026-82538 json | ILIAS before versions 9.22, 10.10, and 11.3 contains a SQL injection vulnerability in the repository trash table where the ta... | Not Provided | 2026-09-04 | 2026-09-30 |
| CVE-2026-75538 json | An attacker that connects to an open Erlang TCP port that uses the inet driver with {packet,4} mode can use a signed overflow... | Not Provided | 2026-09-01 | 2026-09-08 |
| CVE-2026-46145 json | In the Linux kernel, the following vulnerability has been resolved: RDMA/mana: Validate rx_hash_key_len Sashiko points out ... | Not Provided | 2026-05-28 | 2026-09-09 |
| CVE-2026-15026 json | The Import and export users and customers plugin for WordPress is vulnerable to Sensitive Information Exposure in all version... | Not Provided | 2026-07-10 | 2026-07-10 |
| CVE-2026-12739 json | The WP Easy Pay – Payment and Donation form Builder for Square plugin for WordPress is vulnerable to authorization bypass i... | Not Provided | 2026-09-18 | 2026-09-19 |
Known Affected Configurations (CPE V2.3)
| Type | Vendor | Product | Version | Update | Edition | Language |
|---|---|---|---|---|---|---|
| Application | Mybb | Trash Bin | 1.1.3 |