CVE-2026-29014: MetInfo CMS Vulnerability
A vulnerability in MetInfo CMS exploited in a global CMS campaign for web shell deployment.
A vulnerability in MetInfo CMS exploited in a global CMS campaign for web shell deployment.
Australian agency that issued an alert about a global exploitation campaign targeting vulnerable CMS systems and plugins, including web shell deployment.
A popular content management system (CMS) whose extensions iCagenda and Balbooa Forms were exploited as zero-days.
A vulnerability in the Ninja Forms WordPress plugin exploited in a global CMS campaign for web shell deployment.
A vulnerability in the WavePlayer WordPress plugin exploited in a global CMS campaign for web shell deployment.
A vulnerability in the WPBookit WordPress plugin exploited in a global CMS campaign for web shell deployment.
A vulnerability in the Breeze Cache WordPress plugin exploited in a global CMS campaign for web shell deployment.
Joomla is the provider of the Joomla content management system (CMS). It warned users about active exploitation of a critical flaw in…
WordPress is the content management system affected by the BdThemes supply chain attack, which exploited a vulnerability in a promotional banner component…
The popular CMS. Versions 4.7 through 7.0 are affected by CVE-2026-65640, allowing Author-level users to achieve RCE via malicious Postscript uploads. Patched…