Tag
high
advisory
Database Backup for WordPress Plugin Arbitrary File Read and Deletion Vulnerability (CVE-2026-4030)
2 rules 1 CVEThe Database Backup for WordPress plugin before 2.5.3 is vulnerable to unauthenticated arbitrary file read and deletion due to improper authorization checks and user-controlled backup directories, leading to sensitive information exposure and potential site takeover on WordPress Multisite environments.
Database Backup for WordPress plugin <= 2.5.2
wordpress
file_read
file_deletion
cve
2r
1c
critical
advisory
Indico LaTeX Injection Vulnerability (CVE-2026-33046)
2 rules 2 TTPsA critical vulnerability in Indico versions prior to 3.3.12 allows specially-crafted LaTeX snippets to achieve local file read or arbitrary code execution due to insufficient sanitization of LaTeX input, impacting systems where server-side LaTeX rendering is enabled.
Indico
CVE-2026-33046
latex
code_execution
file_read
2r
2t