JetBrains PhpStorm, phpstorm
In JetBrains PhpStorm before 2026.2 arbitrary code execution was possible before granting project trust via the configured interpreter
The CVSS severity warrants an early asset and exposure review.Use CVSS, EPSS, CISA KEV, affected-version data, and source evidence as separate signals for prioritization.
NVD data is used under its public data terms. This service is not endorsed or certified by NVD.In JetBrains PhpStorm before 2026.2 arbitrary code execution was possible before granting project trust via the configured interpreter
The CVSS severity warrants an early asset and exposure review.In JetBrains PhpStorm before 2026.2 arbitrary code execution was possible before granting project trust via project tooling
The CVSS severity warrants an early asset and exposure review.In JetBrains WebStorm before 2026.2 arbitrary code execution was possible via a project-supplied linter configuration
The CVSS severity warrants an early asset and exposure review.In JetBrains WebStorm before 2026.2 arbitrary code execution was possible before granting project trust via the configured Node.js interpreter
The CVSS severity warrants an early asset and exposure review.In JetBrains WebStorm before 2026.2 arbitrary code execution was possible before granting project trust via project-local package-manager tooling
The CVSS severity warrants an early asset and exposure review.In JetBrains WebStorm before 2026.2 arbitrary code execution was possible before granting project trust via project-local linter tooling
The CVSS severity warrants an early asset and exposure review.In JetBrains GoLand before 2026.2 arbitrary code execution was possible before granting project trust via the configured Go SDK
The CVSS severity warrants an early asset and exposure review.In JetBrains GoLand before 2026.2 arbitrary code execution was possible before granting project trust in the Go Modules integration
The CVSS severity warrants an early asset and exposure review.CVE-2026-61954 affects PayU India. Review the CVSS score, exploitation signals, affected versions, remediation status, and linked source material before making a change.
The CVSS severity warrants an early asset and exposure review.CVE-2026-61951 affects themetechmount TrueBooker. Review the CVSS score, exploitation signals, affected versions, remediation status, and linked source material before making a change.
The CVSS severity warrants an early asset and exposure review.CVE-2026-61950 affects themetechmount TrueBooker. Review the CVSS score, exploitation signals, affected versions, remediation status, and linked source material before making a change.
The CVSS severity warrants an early asset and exposure review.CVE-2026-61949 affects Bookly. Review the CVSS score, exploitation signals, affected versions, remediation status, and linked source material before making a change.
The CVSS severity warrants an early asset and exposure review.CVE-2026-61948 affects Shahjada WPDM – Premium Packages. Review the CVSS score, exploitation signals, affected versions, remediation status, and linked source material before making a change.
The CVSS severity warrants an early asset and exposure review.Unauthenticated Cross Site Scripting (XSS) in Form Vibes – Database Manager for Forms <= 1.5.2 versions.
The CVSS severity warrants an early asset and exposure review.CVE-2026-61944 affects Bookly. Review the CVSS score, exploitation signals, affected versions, remediation status, and linked source material before making a change.
The CVSS severity warrants an early asset and exposure review.