
CVE-2026-18366
Unauthenticated privilege-escalation PoC for WordPress Events Manager < 7.4.1; discovers colliding post/user IDs and escalates targets to…
exploitationinformation-gatheringprivilege-escalation+2

Unauthenticated privilege-escalation PoC for WordPress Events Manager < 7.4.1; discovers colliding post/user IDs and escalates targets to…

CVE-2026-25746 - SQL Injection Vulnerability in OpenEMR <8.0.0

CVE-2026-29187: SQL Injection Vulnerability in OpenEMR <8.0.0.3

CVE-2026-32127: SQL Injection Vulnerability in OpenEMR <8.0.0.1

Script to check for CVE-2022-21839 vulnerability by IP address, reporting whether the weakness exists.

The above investigation of the ES file browser security weakness allows us to see the issue in its entirety

CVE-2026-28766: Missing Authentication on User Account Endpoint — Gardyn Home Kit (ICSA-26-055-03)