Export limit exceeded: 23220 CVEs match your query. Please refine your search to export 10,000 CVEs or fewer.
Export limit exceeded: 401186 CVEs match your query. Please refine your search to export 10,000 CVEs or fewer.
Search
Search Results (1 CVEs found)
| CVE | Vendors | Products | Updated | CVSS v3.1 |
|---|---|---|---|---|
| CVE-2026-93549 | 1 Wordpress-extensions | 1 Cocart | 2026-10-04 | N/A |
| The CoCart WordPress plugin before 4.9.7 does not scope its REST API authentication filter to its own endpoints, which disables WordPress core's REST nonce protection for every route, allowing an attacker to perform a cross-site request forgery attack that creates a new administrator account using a logged-in administrator's session. | ||||
Page 1 of 1.