CVE-2026-66477
Unauthenticated Broken Access Control in Gillion <= 4.13 versions.
CVSS
5.3
Medium
EPSS
—
KEV
—
Exploit Today
—
0-100
Published: Jul 27, 2026 · Last modified: Jul 27, 2026 · CWE-862
Not enough EPSS history yet.
Unauthenticated Broken Access Control in Gillion <= 4.13 versions.
CVECVSSEPSSKEVRExploitTitleMod.
CVE-2026-664425.4 MED—
———Subscriber Broken Access Control in YayPricing <= 3.5.6 versions.2hCVE-2026-655685.0 MED—
———Contributor Broken Access Control in Visual Composer Website Builder <= 45.15.0 versions.2hCVE-2026-655675.3 MED—
———Unauthenticated Broken Access Control in Event Tickets <= 5.29.0.1 versions.2hCVE-2026-654356.5 MED—
———Unauthenticated Broken Access Control in Thrive Leads Version <= 10.9.2 versions.2hCVE-2026-654336.5 MED—
———Subscriber Broken Access Control in RT Mega Menu – Mega Menu Builder for Elementor & Gutenberg <= 1.5.1 versions.2hCVE-2026-595606.5 MED—
———Subscriber Broken Access Control in FundEngine <= 1.7.8 versions.2h