CVE-2026-59548
Unauthenticated Sensitive Data Exposure in Byteflows Travel & Hotel Booking <= 1.0.0 versions.
CVSS
7.5
High
EPSS
—
KEV
—
Exploit Today
—
0-100
Published: Jul 27, 2026 · Last modified: Jul 27, 2026 · CWE-497
Not enough EPSS history yet.
Unauthenticated Sensitive Data Exposure in Byteflows Travel & Hotel Booking <= 1.0.0 versions.
CVECVSSEPSSKEVRExploitTitleMod.
CVE-2026-664385.3 MED—
———Unauthenticated Sensitive Data Exposure in Exclusive Addons Elementor <= 2.8.0 versions.4hCVE-2026-655645.3 MED—
———Unauthenticated Sensitive Data Exposure in MapPress Maps for WordPress <= 2.97.6 versions.4hCVE-2026-595287.5 HIG—
———Subscriber Sensitive Data Exposure in ShipTime: Discounted Shipping Rates <= 1.1.1 versions.4hCVE-2025-59178——
———Ericsson Packet Core Controller (PCC) versions prior to 1.39 contain an Exposure of Sensitive System Information vulnerability in Configuration Management allowing an attacker to enumerate other users on the system.6hCVE-2026-449555.3 MED10.9%
——3Pronetiqs IntraVUE versions 3.2.1a14 and prior have an exposure of sensitive system information to an unauthorized control sphere vulnerability which could allow for asset discovery by unauthenticated users.3dCVE-2026-286988.6 HIG17.5%
——5Pronetiqs IntraVUE versions 3.2.1a14 and prior have an exposure of sensitive system information to an unauthorized control sphere vulnerability which could expose the underlying host/share filesystem.3d