<?xml version="1.0" encoding="UTF-8"?><rss version="2.0"><channel><title>Haitam Lazaar (lazaarsec) - Research &amp; Advisories</title><description>Security advisories, CVE disclosures, and vulnerability research writeups.</description><link>https://lazaarsec.com/</link><item><title>CVE-2026-100310: Local Privilege Escalation via LIBEXTRACTOR_PREFIX Untrusted Search Path</title><link>https://lazaarsec.com/cves/cve-2026-100310/</link><guid isPermaLink="true">https://lazaarsec.com/cves/cve-2026-100310/</guid><description>Security advisory for CVE-2026-100310 (GNU Project libextractor (&lt; 1.16)). CVSS: 7.3</description><pubDate>Fri, 25 Sep 2026 00:00:00 GMT</pubDate></item><item><title>CVE-2026-91752: Stack Overflow via Excessive Stack Allocation in OLE2 Plugin</title><link>https://lazaarsec.com/cves/cve-2026-91752/</link><guid isPermaLink="true">https://lazaarsec.com/cves/cve-2026-91752/</guid><description>Security advisory for CVE-2026-91752 (GNU Project libextractor (&lt; 1.15)). CVSS: 8.7</description><pubDate>Mon, 14 Sep 2026 00:00:00 GMT</pubDate></item><item><title>How I Bypassed an API Key Validation with a Single Boolean (true) — A PHP Type Juggling Case Study</title><link>https://lazaarsec.com/articles/bypassed-api-key-validation-boolean-php-type-juggling/</link><guid isPermaLink="true">https://lazaarsec.com/articles/bypassed-api-key-validation-boolean-php-type-juggling/</guid><description>A deep dive into CVE-2026-16269: How loose comparison (==) combined with JSON typed deserialization allowed unauthenticated API key bypass with a single boolean true, and how to defend against dynamic type confusion.</description><pubDate>Sat, 08 Aug 2026 00:00:00 GMT</pubDate></item><item><title>CVE-2026-15237: Unauthenticated Payment Record Creation via Checkout REST Endpoint</title><link>https://lazaarsec.com/cves/cve-2026-15237/</link><guid isPermaLink="true">https://lazaarsec.com/cves/cve-2026-15237/</guid><description>Security advisory for CVE-2026-15237 (MotoPress Hotel Booking Lite (&lt; 6.2.3)). CVSS: 5.3</description><pubDate>Thu, 06 Aug 2026 00:00:00 GMT</pubDate></item><item><title>CVE-2026-15238: Subscriber+ Customer Data Modification via IDOR</title><link>https://lazaarsec.com/cves/cve-2026-15238/</link><guid isPermaLink="true">https://lazaarsec.com/cves/cve-2026-15238/</guid><description>Security advisory for CVE-2026-15238 (MotoPress Hotel Booking Lite (&lt; 6.2.3)). CVSS: 5.4</description><pubDate>Thu, 06 Aug 2026 00:00:00 GMT</pubDate></item><item><title>CVE-2026-16269: Unauthenticated API Authentication Bypass via Type Juggling</title><link>https://lazaarsec.com/cves/cve-2026-16269/</link><guid isPermaLink="true">https://lazaarsec.com/cves/cve-2026-16269/</guid><description>Security advisory for CVE-2026-16269 (Tribulant Newsletters (&lt; 4.16)). CVSS: 4.8</description><pubDate>Mon, 03 Aug 2026 00:00:00 GMT</pubDate></item><item><title>CVE-2026-12251: Unauthenticated Privilege Escalation via Role Selection Field</title><link>https://lazaarsec.com/cves/cve-2026-12251/</link><guid isPermaLink="true">https://lazaarsec.com/cves/cve-2026-12251/</guid><description>Security advisory for CVE-2026-12251 (Ultimate Member Ultimate Member (&lt; 2.12.1)). CVSS: 8.1</description><pubDate>Tue, 14 Jul 2026 00:00:00 GMT</pubDate></item><item><title>CVE-2026-13178: Unauthenticated Payment Bypass via Order Status Manipulation</title><link>https://lazaarsec.com/cves/cve-2026-13178/</link><guid isPermaLink="true">https://lazaarsec.com/cves/cve-2026-13178/</guid><description>Security advisory for CVE-2026-13178 (Themewinter Eventin (&lt; 4.1.16)). CVSS: undefined</description><pubDate>Mon, 13 Jul 2026 00:00:00 GMT</pubDate></item><item><title>CVE-2026-14843: Unauthenticated Person Data Modification via IDOR</title><link>https://lazaarsec.com/cves/cve-2026-14843/</link><guid isPermaLink="true">https://lazaarsec.com/cves/cve-2026-14843/</guid><description>Security advisory for CVE-2026-14843 (Events Made Easy Events Made Easy (&lt; 3.1.4)). CVSS: 5.3</description><pubDate>Mon, 13 Jul 2026 00:00:00 GMT</pubDate></item><item><title>CVE-2026-12097: Unauthenticated Plugin Settings Modification</title><link>https://lazaarsec.com/cves/cve-2026-12097/</link><guid isPermaLink="true">https://lazaarsec.com/cves/cve-2026-12097/</guid><description>Security advisory for CVE-2026-12097 (User Management User Management (&lt;= 1.2)). CVSS: 5.3</description><pubDate>Tue, 07 Jul 2026 00:00:00 GMT</pubDate></item><item><title>CVE-2026-14842: Unauthenticated Payment Bypass via Token Detachment</title><link>https://lazaarsec.com/cves/cve-2026-14842/</link><guid isPermaLink="true">https://lazaarsec.com/cves/cve-2026-14842/</guid><description>Security advisory for CVE-2026-14842 (Events Made Easy Events Made Easy (&lt; 3.1.2)). CVSS: undefined</description><pubDate>Tue, 07 Jul 2026 00:00:00 GMT</pubDate></item><item><title>CVE-2026-13390: Unauthenticated Event Aggregator Import Status Manipulation</title><link>https://lazaarsec.com/cves/cve-2026-13390/</link><guid isPermaLink="true">https://lazaarsec.com/cves/cve-2026-13390/</guid><description>Security advisory for CVE-2026-13390 (The Events Calendar The Events Calendar (&lt; 6.16.5.1)). CVSS: 5.3</description><pubDate>Mon, 06 Jul 2026 00:00:00 GMT</pubDate></item><item><title>CVE-2026-12968: Unauthenticated Stored XSS via Arbitrary SVG Upload</title><link>https://lazaarsec.com/cves/cve-2026-12968/</link><guid isPermaLink="true">https://lazaarsec.com/cves/cve-2026-12968/</guid><description>Security advisory for CVE-2026-12968 (Product Addons Product Addons – WowAddons (&lt; 1.6.15)). CVSS: 8.8</description><pubDate>Wed, 01 Jul 2026 00:00:00 GMT</pubDate></item><item><title>Time is Not a Secret: How Predictable Tokens Lead to Registration Bypasses (CVE-2026-10530)</title><link>https://lazaarsec.com/articles/predictable-tokens-registration-bypass-cve-2026-10530/</link><guid isPermaLink="true">https://lazaarsec.com/articles/predictable-tokens-registration-bypass-cve-2026-10530/</guid><description>Deconstructing an unauthenticated account verification bypass in WordPress Pie Register (&lt;= 3.8.4.9) caused by deterministic md5(time()) token generation, server-timing reconnaissance, and entropy analysis.</description><pubDate>Sat, 06 Jun 2026 00:00:00 GMT</pubDate></item><item><title>CVE-2026-10820: Subscriber+ Subscription Cancellation via IDOR</title><link>https://lazaarsec.com/cves/cve-2026-10820/</link><guid isPermaLink="true">https://lazaarsec.com/cves/cve-2026-10820/</guid><description>Security advisory for CVE-2026-10820 (ProfilePress ProfilePress (&lt; 4.16.17)). CVSS: 8.1</description><pubDate>Sat, 06 Jun 2026 00:00:00 GMT</pubDate></item><item><title>CVE-2026-10531: Contributor+ Stored XSS via Shortcode Attribute</title><link>https://lazaarsec.com/cves/cve-2026-10531/</link><guid isPermaLink="true">https://lazaarsec.com/cves/cve-2026-10531/</guid><description>Security advisory for CVE-2026-10531 (AI Share &amp; Summarize AI Share &amp; Summarize (&lt; 2.0.4)). CVSS: 6.8</description><pubDate>Wed, 03 Jun 2026 00:00:00 GMT</pubDate></item><item><title>CVE-2026-10530: Email Verification Bypass via Predictable Token</title><link>https://lazaarsec.com/cves/cve-2026-10530/</link><guid isPermaLink="true">https://lazaarsec.com/cves/cve-2026-10530/</guid><description>Security advisory for CVE-2026-10530 (Pie Register Pie Register (&lt;= 3.8.4.9)). CVSS: 5.3</description><pubDate>Mon, 01 Jun 2026 00:00:00 GMT</pubDate></item><item><title>I Tested a 1950s Algorithm Against Modern Network Attacks. Here&apos;s What Surprised Me.</title><link>https://lazaarsec.com/articles/1950s-algorithm-network-attacks-ml-ids/</link><guid isPermaLink="true">https://lazaarsec.com/articles/1950s-algorithm-network-attacks-ml-ids/</guid><description>Benchmarking 1958 Logistic Regression against 25,000 network intrusion flows (NSL-KDD), uncovering how PCA dimensionality reduction jumped AUC by +0.10, and running red team payloads including Slowloris and reverse shells against ML detection models.</description><pubDate>Thu, 07 May 2026 00:00:00 GMT</pubDate></item><item><title>Stop Trusting Your App: How to Implement &apos;Zero Trust&apos; Directly in SQL Server</title><link>https://lazaarsec.com/articles/zero-trust-sql-server-orion7/</link><guid isPermaLink="true">https://lazaarsec.com/articles/zero-trust-sql-server-orion7/</guid><description>A technical blueprint on moving defense-in-depth directly into database schemas using T-SQL firewalls, strict RBAC, filtered conditional unique constraints, and physical isolation across a distributed multi-OS network.</description><pubDate>Mon, 23 Feb 2026 00:00:00 GMT</pubDate></item></channel></rss>