View Ridge Security
Back to Cyber HoseVulnerabilities & CVEs

CVE-2026-16098: Unauthenticated File Upload in ProSolution WP

🔓 CVEs & KEV

  • CVE-2026-16098 — CVSS 9.8 — ProSolution WP Client through 2.0.10 - Unauthenticated Arbitrary File Upload via C...
  • CVE-2026-14524 — CVSS 9.1 — ProSolution WP Client through 2.0.8 - Unauthenticated Arbitrary File Deletion via ...
  • CVE-2026-17123 — CVSS 8.8 — Royal Addons for Elementor through 1.7.1064 - Authenticated (Contributor+) Server-...
  • CVE-2026-14498 — CVSS 8.8 — Query Wrangler through 1.5.57 - Authenticated (Subscriber+) Remote Code Execution ...
  • CVE-2026-15963 — CVSS 6.5 — Quiz and Survey Master (QSM) through 11.2.1 - Authenticated (Contributor+) SQL Inj...
  • CVE-2026-16079 — CVSS 6.5 — Fullscreen Galleria through 1.6.12 - Authenticated (Contributor+) SQL Injection vi...
  • CVE-2026-11780 — CVSS 6.4 — Quiz and Survey Master (QSM) through 11.2.1 - Authenticated (Contributor+) Stored ...

Need help assessing your exposure?

Start with the free Posture Self-Check to see where you stand against the current threat landscape.

Free Posture Self-Check