
CVE-2026-80099
Newfold plugins (wp-module-data <= 2.9.7) Unauthenticated
exploitationinformation-gatheringpassword-attacks+7

Newfold plugins (wp-module-data <= 2.9.7) Unauthenticated

CVE-2026-41940

Exploit for CVE-2024-10793: stored XSS in WP Activity Log plugin. Includes a detection script and a shell-based exploit for unauthenticated attackers.

An authentication bypass was recently discovered (https://www.webarxsecurity.com/vulnerability-infinitewp-client-wp-time-capsule/) on WP Time Capsule…