search
OffSeq
Trends
- 1Critical authentication flaw disclosed in dplugins DevKit Pro●CVE-2026-14378 | CRITICAL vuln in dplugins DevKit Pro ( https:// radar.offseq.com/threat/cve-20 26-14378-cwe-287-imprope
A critical vulnerability, tracked as CVE-2026-14378, has been disclosed in DevKit Pro, a plugin product by dplugins for WordPress. The flaw is classified as CWE-287, improper authentication, meaning the plugin may fail to correctly verify user identity, potentially letting attackers gain unauthorized access to sites running it. Security trackers are flagging it as critical, and WordPress administrators are being urged to check whether they use the affected plugin and apply fixes or mitigations.
- 2Discord libdave hit by critical vulnerability CVE-2026-104480●Discord libdave CRITICAL vuln (CVE-2026-104480, CVSS 9.4): Affected versions 1.1.0 – https:// radar.offseq.com/threat/cv
A critical vulnerability tracked as CVE-2026-104480, rated 9.4 on the CVSS scale, has been reported in Discord's libdave library, affecting version 1.1.0. The flaw is classified as CWE-390, detection of an error condition without action, meaning errors can occur without proper handling. Security researchers are circulating details of the issue and urging users and developers to watch for patches or updated releases.