CVE-2026-66654: Tangiblewp Vehica Core

Medium severity, CVSS 6.0. EPSS: 0.2% chance of exploitation in the next 30 days.

Subscriber Server Side Request Forgery (SSRF) in Vehica Core <= 1.0.104 versions.

Affected products

  • Tangiblewp Vehica Core: up to and including 1.0.104

Published 2026-08-13. Last modified 2026-08-14.