Known Vulnerabilities for New User Approve by Wpexperts
Listed below are 2 of the newest known vulnerabilities associated with "New User Approve" by "Wpexperts".
These CVEs are retrieved based on exact matches on listed software, hardware, and vendor information (CPE data) as well as a keyword search to ensure the newest vulnerabilities with no officially listed software information are still displayed.
Data on known vulnerable versions is also displayed based on information from known CPEs
Known Vulnerabilities
| CVE | Shortened Description | Severity | Publish Date | Last Modified |
|---|---|---|---|---|
| CVE-2026-86830 json | Incorrect privilege assignment in Temporary Elevated Access Management (TEAM) for AWS IAM Identity Center solution before ver... | Not Provided | 2026-09-14 | 2026-09-14 |
| CVE-2026-81901 json | In Concrete CMS 9.2.0 through 9.5.2, the REST API page update endpoint (PUT /ccm/api/1.0/pages/{cID}) did not enforce page-pr... | Not Provided | 2026-09-14 | 2026-09-15 |
| CVE-2026-77134 json | The extension fails to require the dedicated admin confirmation token when processing an admin-approval request, so a regular... | Not Provided | 2026-08-25 | 2026-08-25 |
| CVE-2026-73317 json | XenForo before 2.3.13 contains a missing authorization vulnerability in the ACP cache-rebuild dispatcher that allows limited ... | Not Provided | 2026-09-08 | 2026-09-09 |
| CVE-2026-66001 json | Frappe is a full-stack web application framework. Prior to 15.114.0 and 16.26.0, the approve and authorize functions in frapp... | Not Provided | 2026-08-20 | 2026-08-25 |
| CVE-2026-65594 json | n8n before 2.29.8 and 2.30.x before 2.30.1 (affected from 2.27.0, when the OAuth 2.1 consent and token-issuance flow was intr... | Not Provided | 2026-07-22 | 2026-07-23 |
| CVE-2026-39903 json | Simple Machines Forum 2.1 prior to commit 7d048f8 and 3.0 prior to commit a7875e8 contains an authorization bypass vulnerabil... | Not Provided | 2026-07-10 | 2026-07-14 |
| CVE-2026-28163 json | Missing Authorization vulnerability in myCred New User Approve allows Exploiting Incorrectly Configured Access Control Securi... | Not Provided | 2026-08-20 | 2026-08-20 |
| CVE-2026-19711 json | The Premium Packages WordPress plugin before 7.0.7 does not validate a withdrawal request against the requesting user's actu... | Not Provided | 2026-08-16 | 2026-08-17 |
| CVE-2026-17534 json | Kimi Code (@moonshot-ai/kimi-code) before 0.27.0 implements FetchURL SSRF hardening as a static hostname and IP-literal denyl... | Not Provided | 2026-07-27 | 2026-07-27 |