CVE Tools

Nexcess

10 CVEs tracked since 2026. Since Aug 2026, none of them reached CISA KEV.

Nexcess CVEs per month

Aug 2026 to Aug 2026. Point at a month, or focus the strip and use the arrow keys.
Nexcess CVEs per month, with the share now in CISA KEV
MonthCVEsIn CISA KEV
2026-08100

Products

The products that kept showing up in Nexcess's monthly top three, with their CVEs summed over those months.

  1. Givewp51 month
  2. Event Tickets11 month
  3. Gutenberg Blocks By Kadence Blocks11 month

Latest CVEs

The 15 most recently published vulnerabilities affecting Nexcess.

  1. CVE-2026-93526WordPress Event Tickets plugin <= 5.29.4 - Cross Site Scripting (XSS) vulnerability7.1
  2. CVE-2026-84767WordPress BookIt plugin <= 2.6.0.3 - Bypass Vulnerability vulnerability5.3
  3. CVE-2026-78265WordPress The Events Calendar plugin <= 6.17.2 - PHP Object Injection vulnerability9.8
  4. CVE-2026-78263WordPress Event Tickets plugin <= 5.29.2.1 - Cross Site Scripting (XSS) vulnerability7.1
  5. CVE-2026-73997WordPress Starter Templates by Kadence WP plugin <= 2.3.3 - Denial of Service Attack vulnerability7.5
  6. CVE-2026-73352WordPress GiveWP plugin <= 4.16.5.1 - Broken Access Control vulnerability6.5
  7. CVE-2026-73348WordPress GiveWP plugin < 4.16.6 - Broken Access Control vulnerability6.5
  8. CVE-2026-73357WordPress GiveWP plugin < 4.16.6 - Cross Site Scripting (XSS) vulnerability6.5
  9. CVE-2026-73349WordPress GiveWP plugin < 4.16.6 - Broken Access Control vulnerability5.3
  10. CVE-2026-66696WordPress Gutenberg Blocks by Kadence Blocks plugin <= 3.7.8 - Sensitive Data Exposure vulnerability4.3
  11. CVE-2026-66690WordPress GiveWP plugin <= 4.16.5 - Cross Site Scripting (XSS) vulnerability7.1
  12. CVE-2026-28005WordPress Kadence WooCommerce Email Designer plugin <= 1.5.19 - Privilege Escalation vulnerability9.8
  13. CVE-2026-65441WordPress GiveWP plugin <= 4.16.3 - Cross Site Scripting (XSS) vulnerability7.1
  14. CVE-2026-65567WordPress Event Tickets plugin <= 5.29.0.1 - Broken Access Control vulnerability5.3
  15. CVE-2026-65473WordPress Virtue/Ascend/Pinnacle Toolkit plugin <= 4.9.12 - Cross Site Scripting (XSS) vulnerability6.5

The record

Peak rank
#165 in Aug 2026
Busiest month shown
Aug 2026, 10 CVEs
Months with a KEV entry
0 since Aug 2026
Monthly snapshots
1 since 2026
Nexcess's full record, month by month

We use analytics cookies to see which pages and articles actually help people. Decline and none of them run — the site works the same. What we store