{
  "url": "https://www.videodioggi.com/cve-2026-09-28-en.html",
  "title": "CVE of the day — CVE-2026-18143 (CVSS 9,8, critic)",
  "language": "en",
  "published": "2026-09-28T00:52:34.842Z",
  "modified": "2026-09-28T00:52:34.842Z",
  "summary": "CVE-2026-18143: critical vulnerability, CVSS 9,8/10, type upload of dangerous files, exploitable remotely, without privileges, without user interaction. The Request a Quote for WooCommerce plugin for WordPress is vulnerable to Arbitrary File Upload in all versions up to, and including, 2.9.2 via the..",
  "keywords": [
    "c",
    "cve-2026-18143",
    "vulnerability",
    "critical vulnerability",
    "♪",
    "cvs",
    "cybersecurity",
    "cybersecurity",
    "♪",
    "security update"
  ],
  "key_facts": [
    "CVE-2026- 18143 — CVE-2026-18143: Critical gravity, CVSS score 9,8 out of 10 according to the National Vulnerability Database.",
    "Upload of dangerous files — The Request a Quote for WooCommerce plugin for WordPress is vulnerable to Arbitrary File Upload in all versions up to, and including, 2.9.2 via the `afrfq submit quote via popup()` function. This is two to missing file..",
    "Exposure and mitigation — Remotely exploitable Vulnerability, without privileges, without user interaction. Apply the update of the supplier promptly and consult the official notice on NVD."
  ],
  "transcript": "CVE-2026-18143: Critical gravity, CVSS score 9,8 out of 10 according to the National Vulnerability Database. The Request a Quote for WooCommerce plugin for WordPress is vulnerable to Arbitrary File Upload in all versions up to, and including, 2.9.2 via the `afrfq submit quote via popup()` function. This is two to missing file.. Remotely exploitable Vulnerability, without privileges, without user interaction. Apply the update of the supplier promptly and consult the official notice on NVD.",
  "video": {
    "mp4": "https://www.videodioggi.com/videos/cve-2026-09-28-en.mp4",
    "poster": "https://www.videodioggi.com/videos/cve-2026-09-28-en.jpg",
    "duration_seconds": 20
  },
  "source": "www.videodioggi.com",
  "generator": "videodioggi procedural video engine"
}