[vulnfeed] 3 critical CVEs — 2026-07-08 08:00 UTC
vulnfeed
Critical alert — 2026-07-08 10:33 UTC
3 new critical CVEs
in the last 5 hours — 3 CVSS ≥ 9.0
New vulnerabilities
CVE-2026-12153CRITICAL
The WP Learn Manager plugin for WordPress is vulnerable to authorization bypass in all versions up to, and inc
The WP Learn Manager plugin for WordPress is vulnerable to authorization bypass in all versions up to, and including, 1.1.8. This is due to the plugin not properly verifying that a user is authorized
CVSS 9.8
CVE-2026-9695CRITICAL
An Improper Authentication vulnerability affecting DELMIA Apriso from Release 2020 through Release 2026 could
An Improper Authentication vulnerability affecting DELMIA Apriso from Release 2020 through Release 2026 could allow an attacker to gain privileged access to the server.
CVSS 9.8
CVE-2026-56000CRITICAL
Local attackers with a X connection able to provide GLX commit to the X server xorg-server before 21.2.24 and
Local attackers with a X connection able to provide GLX commit to the X server xorg-server before 21.2.24 and xwayland before 24.1.13 could cause a Heap Use After Free, due to CommonMakeCurrent() poin
CVSS 9.0
vulnfeed critical alerts — vulnfeed.it.
Unsubscribe
Don't miss what's next. Subscribe to Vulnfeed: