CVE Database and Vulnerability Search
Search CVE and GHSA vulnerability records by identifier, title, vendor, product, package, or CWE. Filter by severity, CISA KEV, ransomware association, linked artifacts, and Nuclei templates; sort by publication date, CVSS, or EPSS.
| Vulnerability | Title and context | CVSS | EPSS | PoCs | Signals | STIX action |
|---|---|---|---|---|---|---|
CVE-2026-65462HIGH | WordPress Uncanny Automator plugin <= 7.3.2 - SQL Injection vulnerabilityAdministrator SQL Injection in Uncanny Automator <= 7.3.2 versions. CWE-89Jul 23, 2026 | CVSS7.6v3.1 | EPSS0.279% | PoCs0 | SignalsNot listed in CISA KEVNo known ransomware useNo Nuclei templates | STIX |
CVE-2026-56031HIGH | WordPress Uncanny Automator plugin <= 7.3.1.2 - PHP Object Injection vulnerabilityUnauthenticated PHP Object Injection in Uncanny Automator <= 7.3.1.2 versions. CWE-502Jun 26, 2026 | CVSS8.1v3.1 | EPSS0.308% | PoCs0 | SignalsNot listed in CISA KEVNo known ransomware useNo Nuclei templates | STIX |
CVE-2025-66056MEDIUM | WordPress Uncanny Automator plugin < 6.10.0 - Sensitive Data Exposure vulnerabilityExposure of Sensitive System Information to an Unauthorized Control Sphere vulnerability in Uncanny Owl Uncanny Automator uncanny-automator allows Retrieve Embedded Sensitive Data.This issue affects Uncanny Automator: from n/a through < 6.10.0. CWE-497Nov 21, 2025 | CVSS4.3v3.1 | EPSS0.249% | PoCs0 | SignalsNot listed in CISA KEVNo known ransomware useNo Nuclei templates | STIX |
CVE-2025-58193MEDIUM | WordPress Uncanny Automator Plugin <= 6.7.0.1 - Broken Access Control VulnerabilityMissing Authorization vulnerability in Uncanny Owl Uncanny Automator uncanny-automator allows Exploiting Incorrectly Configured Access Control Security Levels.This issue affects Uncanny Automator: from n/a through <= 6.7.0.1. CWE-862Aug 27, 2025 | CVSS4.3v3.1 | EPSS0.194% | PoCs0 | SignalsNot listed in CISA KEVNo known ransomware useNo Nuclei templates | STIX |
CVE-2025-48133MEDIUM | WordPress Uncanny Automator plugin <= 6.4.0.2 - Broken Access Control VulnerabilityMissing Authorization vulnerability in Uncanny Owl Uncanny Automator uncanny-automator allows Exploiting Incorrectly Configured Access Control Security Levels.This issue affects Uncanny Automator: from n/a through <= 6.4.0.2. CWE-862Jun 5, 2025 | CVSS6.5v3.1 | EPSS0.264% | PoCs0 | SignalsNot listed in CISA KEVNo known ransomware useNo Nuclei templates | STIX |