search
OffSeq
Trends
- 1Critical authentication flaw disclosed in dplugins DevKit Pro●CVE-2026-14378 | CRITICAL vuln in dplugins DevKit Pro ( https:// radar.offseq.com/threat/cve-20 26-14378-cwe-287-imprope
A critical vulnerability, tracked as CVE-2026-14378, has been disclosed in DevKit Pro, a plugin product by dplugins for WordPress. The flaw is classified as CWE-287, improper authentication, meaning the plugin may fail to correctly verify user identity, potentially letting attackers gain unauthorized access to sites running it. Security trackers are flagging it as critical, and WordPress administrators are being urged to check whether they use the affected plugin and apply fixes or mitigations.
- 2Discord libdave hit by critical vulnerability CVE-2026-104480●Discord libdave CRITICAL vuln (CVE-2026-104480, CVSS 9.4): Affected versions 1.1.0 – https:// radar.offseq.com/threat/cv
A critical vulnerability tracked as CVE-2026-104480, rated 9.4 on the CVSS scale, has been reported in Discord's libdave library, affecting version 1.1.0. The flaw is classified as CWE-390, detection of an error condition without action, meaning errors can occur without proper handling. Security researchers are circulating details of the issue and urging users and developers to watch for patches or updated releases.
- 3Critical Authentication Flaw Reported in Kiteworks Email Protection Gateway●CVE-2026-102106 (CRITICAL, CVSS 9.1): Kiteworks Email Protection Gateway ( https:// radar.offseq.com/threat/cve-20 26-10
A critical vulnerability tracked as CVE-2026-102106, carrying a CVSS score of 9.1, has been disclosed affecting Kiteworks' Email Protection Gateway. The flaw is classified as improper authentication, meaning attackers could potentially bypass identity checks to gain unauthorized access. Security professionals are circulating the advisory and urging organizations using the product to review exposure and apply patches.
- 4Kiteworks Email Protection Gateway vulnerability tracked as CVE-2026-102105●CVE-2026-102105: Kiteworks Email Protection Gateway https:// radar.offseq.com/threat/cve-20 26-102105-cwe-918-server-sid
A server-side request forgery (SSRF) flaw in Kiteworks' Email Protection Gateway has been catalogued as CVE-2026-102105. Vulnerability-tracking services have added the issue to their radar, flagging it to security teams. Kiteworks is a platform used to share files and sensitive communications securely, so a flaw in its email gateway draws attention from defenders concerned attackers could abuse it to probe internal networks.