Known Vulnerabilities for Wp Php Widget by Wp Php Widget Project
Listed below are 1 of the newest known vulnerabilities associated with "Wp Php Widget" by "Wp Php Widget Project".
These CVEs are retrieved based on exact matches on listed software, hardware, and vendor information (CPE data) as well as a keyword search to ensure the newest vulnerabilities with no officially listed software information are still displayed.
Data on known vulnerable versions is also displayed based on information from known CPEs
Known Vulnerabilities
| CVE | Shortened Description | Severity | Publish Date | Last Modified |
|---|---|---|---|---|
| CVE-2026-55880 json | OpenReplay is a self-hosted session replay suite. In 1.27.0 and earlier, three dashboard and note mutation functions ran thei... | Not Provided | 2026-07-10 | 2026-07-13 |
| CVE-2026-55790 json | Craft CMS is a content management system (CMS). In versions 5.0.0-RC1 through 5.9.22 and 4.0.0-RC1 through 4.17.15, an attack... | Not Provided | 2026-07-01 | 2026-07-02 |
| CVE-2026-55664 json | Grist is spreadsheet software using Python as its formula language. Prior to 1.7.15, the GET /forms endpoint read table and c... | Not Provided | 2026-07-10 | 2026-07-13 |
| CVE-2026-54823 json | Contributor Remote Code Execution (RCE) in Widget Options <= 4.2.3 versions. | Not Provided | 2026-06-25 | 2026-06-25 |
| CVE-2026-54443 json | Dashy is a self-hostable personal dashboard. From 1.9.4 until 3.2.0, the Dashy RSS Widget in src/components/Widgets/RssFeed.v... | Not Provided | 2026-07-15 | 2026-07-15 |
| CVE-2026-53052 json | In the Linux kernel, the following vulnerability has been resolved: ASoC: qcom: qdsp6: topology: check widget type before ac... | Not Provided | 2026-06-24 | 2026-06-24 |
| CVE-2026-52698 json | Subscriber Sensitive Data Exposure in PushEngage – Web Push Notifications, eCommerce Automation & Chat Widget <= 4.2.3 ... | Not Provided | 2026-06-17 | 2026-06-17 |
| CVE-2026-49216 json | Symfony UX is a JavaScript ecosystem for Symfony. From 2.2.0 until 2.36.0 and 3.1.0, the Stimulus controller in symfony/ux-au... | Not Provided | 2026-07-17 | 2026-07-21 |
| CVE-2026-45437 json | Unauthenticated Cross Site Scripting (XSS) in Product Filter Widget for Elementor <= 1.0.6 versions. | Not Provided | 2026-06-15 | 2026-06-15 |
| CVE-2026-45375 json | SiYuan is an open-source personal knowledge management system. Prior to 3.7.0, SiYuan's Bazaar (community marketplace) render... | Not Provided | 2026-05-14 | 2026-05-16 |
Known Affected Configurations (CPE V2.3)
| Type | Vendor | Product | Version | Update | Edition | Language |
|---|---|---|---|---|---|---|
| Application | Wp Php Widget Project | Wp Php Widget | 1.0.2 |