CVE-2026-28698
Pronetiqs IntraVUE versions 3.2.1a14 and prior have an exposure of sensitive system information to an unauthorized control sphere vulnerabil
CVSS
8.6
High
EPSS
—
KEV
—
Exploit Today
—
0-100
Published: Jul 23, 2026 · Last modified: Jul 23, 2026 · CWE-497
Not enough EPSS history yet.
Pronetiqs IntraVUE versions 3.2.1a14 and prior have an exposure of sensitive system information to an unauthorized control sphere vulnerability which could expose the underlying host/share filesystem.
CVECVSSEPSSKEVRExploitTitleMod.
CVE-2026-449555.3 MED—
———Pronetiqs IntraVUE versions 3.2.1a14 and prior have an exposure of sensitive system information to an unauthorized control sphere vulnerability which could allow for asset discovery by unauthenticated users.7hCVE-2026-655354.3 MED—
——0Contributor Sensitive Data Exposure in TinyMCE Templates <= 4.8.1 versions.16hCVE-2026-655215.3 MED—
——0Unauthenticated Sensitive Data Exposure in WP Social Ninja <= 4.3.0 versions.16hCVE-2026-655055.3 MED—
——0Unauthenticated Sensitive Data Exposure in Ultimate Store Kit Elementor Addons <= 3.0.5 versions.14hCVE-2026-654985.3 MED—
——0Unauthenticated Sensitive Data Exposure in Complianz <= 7.5.0 versions.14hCVE-2026-654905.3 MED—
——0Unauthenticated Sensitive Data Exposure in Create by Mediavine <= 2.5.3 versions.15h