[vulnfeed] 1 critical CVE — 2026-08-14 08:00 UTC
vulnfeed
Critical alert — 2026-08-14 09:32 UTC
1 new critical CVE
in the last 5 hours — 1 CVSS ≥ 9.0
New vulnerabilities
CVE-2026-12949CRITICAL
The Wishlist Member plugin for WordPress is vulnerable to Account Takeover via Insufficient Verification of Da
The Wishlist Member plugin for WordPress is vulnerable to Account Takeover via Insufficient Verification of Data Authenticity in versions up to and including 3.34.1. This is due to the wpm_register()
CVSS 9.8
vulnfeed critical alerts — vulnfeed.it.
Unsubscribe
Don't miss what's next. Subscribe to Vulnfeed: