Home
Home
Trends
Trends
Vulnerabilities
Vulnerabilities
News
News
Researchers
Researchers
Why dbugs?
Why dbugs?
Settings

Pavan Saxena

#18576of 56,330
15.4Total CVSS
Vulnerabilities · 2
High
2
PT-2026-78830
7.4
2026-08-19
Splunk · Splunk Connect For Kafka · CVE-2026-76403
**Name of the Vulnerable Software and Affected Versions** Splunk Connect for Kafka versions prior to 2.2.7 **Description** An unauthenticated user positioned in the network path can read or modify data sent from the connector when Kerberos authentication is used with the Hypertext Transfer Protocol (HTTP) Event Collector in Splunk Enterprise. This occurs because the Kerberos authentication path fails to apply the configured certificate validation options during the construction of the HTTP client. **Recommendations** Update Splunk Connect for Kafka to version 2.2.7 or later.
PT-2026-67667
8.0
2026-08-04
WordPress · Create Block · CVE-2026-16623
**Name of the Vulnerable Software and Affected Versions** Create Block WordPress plugin versions prior to 2.10.0 **Description** Insufficient escaping of user-supplied text occurs before it is written into a generated PHP pattern file. This allows a multisite subsite administrator, who possesses the capability to perform this action but is restricted from editing PHP files, to inject and execute arbitrary PHP code on the server. **Recommendations** Update Create Block WordPress plugin to version 2.10.0 or later.