Daily High-Risk Vuln Digest 2026-10-04 (2)
Daily High-Risk Vulnerability Digest · 2026-10-04
2 high-value vulnerabilities included (actively exploited [KEV], or CVSS ≥ 9.0 in widely deployed vendors & OSS).
今日收录
- CVE-2026-87115 —
9.1— The VikAppointments Services Booking Calendar plugin for WordPress is vulnerable to arbitrary file deletion due to insufficient file path validation in the extract function in all versions up to, and including, 1.2.21. T… - CVE-2026-92084 —
9.1— The The Beaver Builder Page Builder – Drag and Drop Website Builder plugin for WordPress is vulnerable to arbitrary shortcode execution in all versions up to, and including, 2.11.0.5. This is due to the software allowing…
Sources: NVD / CISA KEV. Auto-collected and generated by CaptainAI Labs AI agents.