23 vulnerabilities across 4 products scored HIGH or above on July 29, 2026.
- π HIGH: 23
Exploit Status Upgrades
The following CVEs from previous bulletins have been upgraded based on new exploit intelligence:
- [UPGRADED] CVE-2026-51235 (programmervuln/cveadvisory-) β F1: exploitable β functional, AAS: 9.6 β 11.6 (HIGH β HIGH). Originally in 2026-07-27 bulletin.
- [UPGRADED] CVE-2026-65921 (jfrog/artifactory) β F1: exploitable β functional, AAS: 9.2 β 11.2 (HIGH β HIGH). Originally in 2026-07-27 bulletin.
- [UPGRADED] CVE-2026-66014 (jfrog/artifactory) β F1: exploitable β functional, AAS: 9.2 β 11.2 (HIGH β HIGH). Originally in 2026-07-27 bulletin.
- [UPGRADED] CVE-2026-65617 (jfrog/artifactory) β F1: exploitable β functional, AAS: 9.2 β 11.2 (HIGH β HIGH). Originally in 2026-07-27 bulletin.
π [HIGH] apache_software_foundation/apache_traffic_server
20 CVEs | CVSS 4.0: 9.2 | AAS 10.7
cpe:2.3:a:apache:apache_traffic_server:*:*:*:*:*:*:*:*(>= 9.0.0, < 9.2.15)cpe:2.3:a:apache:apache_traffic_server:*:*:*:*:*:*:*:*(>= 10.0.0, < 10.1.4)cpe:2.3:a:apache:apache_traffic_server:*:*:*:*:*:*:*:*(>= 8.0.0)cpe:2.3:a:apache:apache_traffic_server:*:*:*:*:*:*:*:*(>= 8.0.0, < 9.2.15)
Apache Traffic Server is affected by 20 vulnerabilities, including multiple high-severity issues with a maximum CVSS score of 9.2. The lead vulnerability involves null dereferences and dangling references in TLS and SNI handling that can crash the server, and at least one of the flaws is considered exploitable. Versions 8.0.0 through 8.1.9, 9.0.0 through 9.2.14, and 10.0.0 through 10.1.3 are all affected.
Organizations running Apache Traffic Server as a reverse proxy or caching layer should treat this as a high-priority update. The volume of CVEs and the severity of the lead issue indicate a broad attack surface across multiple components. Upgrade immediately to version 9.2.15 or 10.1.4 as recommended by the Apache Software Foundation, and review the vendor advisory at lists.apache.org for full details on all 20 issues.
- π CVE-2026-58161 (CVSS 4.0: 9.2)
- π CVE-2026-58154 (CVSS 4.0: 9.2)
- π CVE-2026-58179 (CVSS 4.0: 9.2)
- π CVE-2026-58155 (CVSS 4.0: 9.2)
- π CVE-2026-58188 (CVSS 4.0: 8.4)
- π CVE-2026-58151 (CVSS 4.0: 8.7)
- π CVE-2026-58163 (CVSS 4.0: 8.3)
- π CVE-2026-58184 (CVSS 4.0: 8.3)
- π CVE-2026-58177 (CVSS 4.0: 8.3)
- π CVE-2026-58164 (CVSS 4.0: 8.3)
- π CVE-2026-58158 (CVSS 4.0: 8.2)
- π CVE-2026-58180 (CVSS 4.0: 8.2)
- π CVE-2026-65324 (CVSS 4.0: 8.2)
- π CVE-2026-58181 (CVSS 4.0: 8.2)
- π CVE-2026-58182 (CVSS 4.0: 8.2)
- π CVE-2026-58185 (CVSS 4.0: 8.2)
- π CVE-2026-33930 (CVSS 4.0: 8.2)
- π CVE-2026-58189 (CVSS 4.0: 8.2)
- π CVE-2026-58175 (CVSS 4.0: 8.2)
- π CVE-2026-58178 (CVSS 4.0: 8.2)
π [HIGH] holest/spreadsheet_price_changer_for_woocommerce_and_wp_e-commerce_β_light
1 CVE | CVSS 3.1: 9.8 | AAS 10.1
cpe:2.3:a:holest:spreadsheet_price_changer_for_woocommerce_and_wp_e-commerce_light:*:*:*:*:*:*:*:*(< 2.4.38)
The Spreadsheet Price Changer for WooCommerce and WP E-commerce β Light plugin for WordPress contains a critical missing authorization vulnerability (CVSS 9.8) in all versions up to and including 2.4.37. The flaw in the user_filter function allows unauthenticated attackers to create administrator accounts, leading to full site compromise.
Any WordPress site running this plugin should treat this as an emergency. Update beyond version 2.4.37 immediately, audit your site’s user accounts for any unauthorized administrators, and review the vendor advisory for technical details.
- π CVE-2025-10656 (CVSS 3.1: 9.8)
π [HIGH] stylemixthemes/cost_calculator_builder_pro
1 CVE | CVSS 3.1: 9.8 | AAS 10.1
cpe:2.3:a:stylemixthemes:cost_calculator_builder_pro:*:*:*:*:*:*:*:*(< 4.0.4)
The Cost Calculator Builder PRO plugin for WordPress contains a critical remote code execution vulnerability (CVSS 9.8) in all versions up to and including 4.0.3. Insufficient sanitization of order detail fields allows attacker-controlled input to reach a PHP eval() call in the js_to_php function, enabling unauthenticated remote code execution on the underlying server.
Any WordPress site using this plugin should update beyond version 4.0.3 immediately and audit for signs of compromise. Review the vendor advisory at stylemixthemes.com for the latest patched release.
- π CVE-2026-14900 (CVSS 3.1: 9.8)
π [HIGH] an_unrestricted_scorm_file_upload_vulnerability_in_koollab_lms_allowed_an_authenticated_module_designer_to_upload_a_scorm_package_containing_a_php_webshell_to_a_publicly_accessible_directory_and_execute_arbitrary_code_on_the_server./koollab_lms
1 CVE | CVSS 3.1: 9.9 | AAS 9.2
cpe:2.3:a:an_unrestricted_scorm_file_upload_vulnerability_in_koollab_lms_allowed_an_authenticated_module_designer_to_upload_a_scorm_package_containing_a_php_webshell_to_a_publicly_accessible_directory_and_execute_arbitrary_code_on_the_server.:koollab_lms:*:*:*:*:*:*:*:*
Koollab LMS contains a critical unrestricted file upload vulnerability (CVSS 9.9) that allows an authenticated user with module designer privileges to upload a SCORM package containing a PHP webshell to a publicly accessible directory, resulting in arbitrary code execution on the server.
Organizations running Koollab LMS should contact the vendor for a patched version immediately, restrict module designer permissions to trusted users, and audit upload directories for any suspicious PHP files or webshells. Review the CSA advisory at www.csa.gov.sg for additional guidance.
- π CVE-2026-63227 (CVSS 3.1: 9.9)