CSIRTS // UNIFIED SECURITY ADVISORY FEEDSYS ● ONLINE · POWERED BY INTELFUSIONS.COM

● Daily security briefing

Saturday, August 15, 2026

The security advisory landscape remained relatively quiet on the CERT/PSIRT front with just one advisory published, but 926 CVEs were disclosed today with eight critical vulnerabilities requiring immediate attention. Multiple WordPress plugins were flagged with critical authentication bypass and account takeover issues, including CVE-2026-19598 in Pods, CVE-2026-15341 in User Session Synchronizer, CVE-2026-15303 in 6Storage Rentals, CVE-2026-15826 in User Profile Builder, and CVE-2026-16142 in TrueBooker, all rated at CVSS 9.8. Additionally, SiYuan before v3.7.4 was disclosed with a critical authentication flaw (CVE-2026-73046), and two WordPress plugins—Link Library and RapiSafe—were found vulnerable to arbitrary file operations with CVSS ratings of 9.1. Teams should prioritize patching these WordPress plugin vulnerabilities given their widespread deployment and exploitation risk.

Last updated 03:16 UTC

CERT / PSIRT advisories
1
CVEs published
926
Added to KEV
0
Known exploited
0

12 criticalacross the day’s notable advisories and CVEs

Notable CVEs

Highest-severity CVEs published this day from the NVD and GitHub Advisory firehose — the sharpest items behind the day’s numbers.

Where the day’s advisories came from

Curated CERT and PSIRT sources — these add up to the 1 above.

plus 925 CVE records from the NVD/GHSA firehose — not counted above

Get this briefing by email. One free message every morning after 06:00 UTC — same data, zero noise, one-click unsubscribe. Subscribe. Tracking specific products instead? Watch them from any product page and get alerted only when they ship a new advisory.