← Back to browse
·
API
CVE-2026-66665
Severity
CRITICAL
CVSS
10.0
EPSS
0.0029
Risk score
40.1
CISA KEV
No
PoC
No
Published
2026-08-06
Modified
2026-08-06
First seen
2026-08-07
Aliases
EUVD-2026-53891, GHSA-PG7V-726M-F23V
Products
brandexponents:Type Hub n/a ≤2.0.6
Sources
euvd
EUVD-2026-53891
nvd
CVE-2026-66665
Description
Unauthenticated Arbitrary File Upload in Type Hub <= 2.0.6 versions.
References
https://euvd.enisa.europa.eu/vulnerability/EUVD-2026-53891
https://patchstack.com/database/wordpress/plugin/typehub/vulnerability/wordpress-type-hub-plugin-2-0-6-arbitrary-file-upload-vulnerability?_s_id=cve