Search

Found 45,578 results in 3457ms · Match type: Filtered list

0
KEVHas exploit
Reset
CVE Severity CVSS Risk Flags OS Vendor Published Description
CVE-2026-41498 low 3.3 3.3 kimai 1mo ago Kimai has Missing Object-Level Authorization in the Team API
CVE-2026-8127 medium 6.3 6.3 1mo ago A vulnerability has been found in eladmin up to 2.7. Impacted is the function checkLevel of the file /rest/UserController.java of the component Users API Endpoint. Such manipulation leads to improper…
CVE-2026-8125 medium 6.3 6.3 1mo ago A vulnerability was detected in code-projects Simple Chat System 1.0. This vulnerability affects unknown code of the file sendMessage.php. The manipulation of the argument type/length/business parame…
CVE-2026-8124 medium 5.5 5.5 debian debian gpac 1mo ago A security vulnerability has been detected in GPAC up to 26.02.0. This affects the function sidx_box_read of the file src/isomedia/box_code_base.c. The manipulation leads to allocation of resources. …
CVE-2026-8123 medium 6.5 6.5 open5gs 1mo ago A vulnerability was determined in Open5GS up to 2.7.7. This impacts the function ogs_sbi_discovery_option_add_snssais in the library /lib/sbi/message.c of the component NSSF. This manipulation causes…
CVE-2026-8122 medium 6.5 6.5 open5gs 1mo ago A vulnerability was found in Open5GS up to 2.7.7. This affects the function ogs_sbi_discovery_option_add_service_names in the library /lib/sbi/message.c of the component NSSF. The manipulation result…
CVE-2026-8121 medium 6.5 6.5 open5gs 1mo ago A vulnerability has been found in Open5GS up to 2.7.7. The impacted element is the function ogs_sbi_parse_plmn_list in the library /lib/sbi/conv.c of the component NSSF. The manipulation leads to den…
CVE-2026-8120 medium 6.5 6.5 open5gs 1mo ago A flaw has been found in Open5GS up to 2.7.7. The affected element is the function nssf_nnrf_nsselection_handle_get_from_amf_or_vnssf of the file /src/nssf/nnssf-handler.c of the component NSSF. Exec…
CVE-2026-8119 medium 5.5 5.5 open5gs 1mo ago A vulnerability was detected in Open5GS up to 2.7.7. Impacted is the function ogs_sbi_stream_find_by_id in the library /lib/sbi/nghttp2-server.c of the component NSSF. Performing a manipulation resul…
CVE-2026-8117 medium 4.3 4.3 1mo ago A security vulnerability has been detected in SourceCodester Pizzafy Ecommerce System 1.0. This issue affects some unknown processing of the file /admin/index.php. Such manipulation of the argument p…
CVE-2026-8116 medium 6.3 6.3 1mo ago A weakness has been identified in huangjunsen0406 xiaozhi-mcphub up to 1.0.3. This vulnerability affects unknown code of the file src/controllers/dxtController.ts. This manipulation of the argument m…
CVE-2026-40295 medium 6.1 6.1 debian debian heartcombo 1mo ago Devise has an Open Redirect via Unvalidated `request.referrer` in Timeoutable Session Timeout Handler
CVE-2026-8115 medium 5.3 5.3 1mo ago short-video-maker has a path traversal vulnerability
CVE-2026-44661 medium 4.7 4.7 1mo ago utcp-http vulnerable to SSRF via attacker-controlled OpenAPI servers[0].url in HTTP communication protocol
CVE-2026-8114 medium 6.3 6.3 1mo ago A vulnerability was identified in JeecgBoot up to 3.9.1. Affected by this issue is some unknown functionality of the file /sys/dict/loadTreeData of the component JSON Object Handler. The manipulation…
CVE-2026-8113 medium 6.5 6.5 8421bit 1mo ago A vulnerability was determined in 8421bit MiniClaw up to 43905b934cf76489ab28e4d17da28ee97970f91f. Affected by this vulnerability is the function isPathInside of the file src/kernel.ts of the compone…
CVE-2026-8106 medium 6.1 6.1 github 1mo ago A reflected HTML injection vulnerability was identified in the GitHub Enterprise Server Management Console login page that could allow credential theft. The redirect_to query parameter on the /setup/…
CVE-2026-6736 medium 6.5 6.5 github 1mo ago An authentication bypass vulnerability was identified in GitHub Enterprise Server that allowed an unauthenticated attacker to create a local user account, bypassing the configured external identity p…
CVE-2026-41929 medium 6.1 6.1 1mo ago Vvveb before 1.0.8.2 contains an unauthenticated reflected cross-site scripting vulnerability in the visual editor preview renderer that allows attackers to execute arbitrary JavaScript by manipulati…
CVE-2026-41928 medium 5.3 5.3 1mo ago Vvveb before 1.0.8.2 contains an information disclosure vulnerability in the cron controller that allows unauthenticated attackers to retrieve the application's secret cron key. Attackers can access …
CVE-2026-40214 medium 6.3 6.3 FIX debian debian 1mo ago In OpenStack Cyborg before 16.0.1, the Accelerator Request (ARQ) API does not enforce project ownership at any layer. The project_id column in the database is never populated (NULL for every ARQ), da…
CVE-2026-8097 medium 6.3 6.3 1mo ago A security flaw has been discovered in CodeAstro Online Classroom 1.0. This vulnerability affects unknown code of the file /askquery.php. The manipulation of the argument squeryx results in sql injec…
CVE-2026-41692 medium 4.7 4.7 i18next 1mo ago i18nextify is a JavaScript library that adds website internationalization via a script tag, without source code changes. Versions prior to 4.0.8 substitute {{key}} interpolation tokens inside src and…
CVE-2026-8142 medium 6.5 6.5 1mo ago VINCE versions 3.0.38 and earlier do not properly verify the From address authenticity due to encoding confusion and use the from address for automated actions such as Ticket creation or Ticket updat…
CVE-2026-8088 medium 5.5 5.5 FIX debian debian osgeo 1mo ago A weakness has been identified in OSGeo gdal up to 3.13.0dev-4. The affected element is the function GDfieldinfo of the file frmts/hdf4/hdf-eos/GDapi.c. Executing a manipulation can lead to out-of-bo…
CVE-2026-42259 medium 5.5 1mo ago Saltcorn: Open Redirect in `POST /auth/login` due to incomplete `is_relative_url` validation (backslash bypass)
CVE-2026-42241 medium 5.3 5.3 1mo ago ParquetSharp: Possible Stack Overflow When Reading a ParquetFile with Large Decimal Type Width
CVE-2026-42225 medium 5.9 5.9 debian debian teluu 1mo ago PJSIP is a free and open source multimedia communication library written in C. Prior to version 2.17, on GnuTLS builds, the SIP TLS transport (sip_transport_tls) can accept connections with invalid o…
CVE-2026-39826 medium 6.1 6.1 FIX debian debian sleswindows windows golanggoogle 1mo ago If a trusted template author were to write a <script> tag containing an empty 'type' attribute or a 'type' attribute with an ASCII whitespace, the execution of the template would incorrectly escape a…
CVE-2026-39825 medium 5.3 5.3 FIX debian debian sleswindows windows golanggoogle 1mo ago ReverseProxy can forward queries containing parameters not visible to Rewrite functions. When used with a Rewrite function, or a Director function which parses query parameters, ReverseProxy sanitize…
CVE-2026-39823 medium 6.1 6.1 FIX debian debian sleswindows windows golanggoogle 1mo ago CVE-2026-27142 fixed a vulnerability in which URLs were not correctly escaped inside of a <meta> tag's <content> attribute. If the URL content were to insert ASCII whitespaces around the '=' rune ins…
CVE-2026-39819 medium 5.3 5.3 FIX debian debian sleswindows windows golanggoogle 1mo ago The "go bug" command writes to two files with predictable names in the system temporary directory (for example, "/tmp"). An attacker with access to the temporary directory can create a symlink in one…
CVE-2026-39817 medium 5.9 5.9 FIX debian debian sleswindows windows golanggoogle 1mo ago The "go tool pack" subcommand (usually used only by the compiler as an internal tool with known-good inputs) does not sanitize output filenames. Extracting a malicious archive file with the "pack" su…
CVE-2026-42879 medium 6.3 6.3 1mo ago FacturaScripts is an open source accounting and invoicing software. In 2025.81 and earlier, an authenticated unrestricted file upload vulnerability exists in FacturaScripts' product image upload func…
CVE-2026-42878 medium 5.3 5.3 1mo ago FacturaScripts is an open source accounting and invoicing software. Prior to v2026, an unauthenticated information disclosure vulnerability in the Installer controller allows any remote attacker to t…
CVE-2026-42877 medium 5.4 5.4 1mo ago FacturaScripts is an open source accounting and invoicing software. In 2025.92 and earlier, a stored Cross-Site Scripting (XSS) vulnerability exists in the product search modal of sales (Core/Lib/Aja…
CVE-2026-27964 low 3.9 3.9 1mo ago FacturaScripts vulnerable to Reflected Cross-Site Scripting (XSS) via Cookie Manipulation
CVE-2026-27892 medium 6.5 6.5 1mo ago FacturaScripts Vulnerable to Unstripped Image Metadata (EXIF) Leakage via Library Module File Upload/Download
CVE-2026-8084 medium 5.5 5.5 FIX debian debian osgeo 1mo ago A vulnerability was determined in OSGeo gdal up to 3.13.0dev-4. This vulnerability affects the function memmove of the file frmts/hdf4/hdf-eos/SWapi.c of the component HDF-EOS Grid File Handler. This…
CVE-2026-44742 medium 6.1 6.1 FIX debian debian postorius_project 1mo ago Postorius is vulnerable to XSS
CVE-2026-41903 medium 5.4 5.4 1mo ago FreeScout is a free help desk and shared inbox built with PHP's Laravel framework. Prior to version 1.8.217, a user holding the PERM_EDIT_USERS permission (intended for general user-profile editing) …
CVE-2026-36341 medium 5.4 5.4 1mo ago Webkul Krayin CRM is Vulnerable to Cross-Site Scripting in the /admin/activities/create endpoint
CVE-2026-8081 medium 6.3 6.3 router-for-me 1mo ago A vulnerability has been found in router-for-me CLIProxyAPI 6.9.29. Affected by this issue is some unknown functionality of the file internal/api/handlers/management/api_tools.go of the component API…
CVE-2026-36388 medium 5.4 5.4 1mo ago A Cross-Site Scripting (XSS) vulnerability was found in PHPGurukal Hospital Management System v4.0 in the /hospital/hms/edit-profile.php page. This flaw allows an authenticated attacker (patient) to …
CVE-2026-36387 medium 6.5 6.5 1mo ago A Remote Code Execution vulnerability was found in CODEASTRO Membership Management System v1.0 in /add_members.php. This vulnerability affects the file upload functionality, where improper file sanit…
CVE-2025-4397 medium 6.8 6.8 1mo ago Medtronic MyCareLink Patient Monitor uses per-product credentials that are stored in a recoverable format. An attacker can use these credentials to modify encrypted drive data.
CVE-2025-4386 medium 6.8 6.8 1mo ago Medtronic MyCareLink Patient Monitor has an internal serial interface, which allows an attacker with physical access to access a login prompt via a UART terminal.​
CVE-2026-44263 medium 4.3 4.3 weblate 1mo ago Weblate Vulnerable to Private Translation Enumeration via Screenshot API
CVE-2026-41689 medium 6.0 6.0 1mo ago Wallos is an open-source, self-hostable personal subscription tracker. In versions 4.8.4 and prior, the webhook notification feature reuses an administrator-configured local-target allowlist for ever…
CVE-2026-41687 medium 4.3 4.3 1mo ago Wallos is an open-source, self-hostable personal subscription tracker. Prior to version 4.8.1, the SSRF protection in endpoints/subscription/add.php (line 42) and endpoints/payments/add.php (line 40)…
CVE-2026-41650 medium 6.1 6.1 slesdebian debian naturalintelligence 1mo ago fast-xml-parser XMLBuilder: XML Comment and CDATA Injection via Unescaped Delimiters
CVE-2026-41685 medium 4.3 4.3 FIX debian debian linuxcontainers 1mo ago Incus is a system container and virtual machine manager. Prior to version 7.0.0, uploads of large amount of data by authenticated users can run the Incus server out of disk space, potentially taking …
CVE-2026-41684 medium 6.5 6.5 FIX debian debian linuxcontainers 1mo ago Incus is a system container and virtual machine manager. Prior to version 7.0.0, backup.GetInfo() trusts the inline backup/index.yaml config when present and only falls back to parsing the legacy bac…
CVE-2026-41648 medium 5.0 5.0 FIX debian debian linuxcontainers 1mo ago Incus is a system container and virtual machine manager. Prior to version 7.0.0, user provided image and backup tarballs would be unpacked and YAML files parsed without any size restrictions. This wa…
CVE-2026-41647 medium 6.5 6.5 FIX debian debian linuxcontainers 1mo ago Incus is a system container and virtual machine manager. Prior to version 7.0.0, a missing error handling could lead an authenticated Incus user to cause a daemon crash through the import of a trunca…
CVE-2026-32686 medium 5.5 1mo ago Decimal: Unbounded exponent in `Decimal.new` enables unauthenticated DoS
CVE-2026-5791 medium 6.5 6.5 1mo ago Cross-Site request forgery (CSRF) vulnerability in DivvyDrive Information Technologies Inc. DivvyDrive allows Cross Site Request Forgery. This issue affects DivvyDrive: from 4.8.2.9 before 4.8.3.2.
CVE-2026-8080 medium 5.4 5.4 misp 1mo ago Improper Neutralization of Input During Web Page Generation (XSS or 'Cross-site Scripting') vulnerability in misp allows Stored XSS. This issue affects MISP before 2.5.37. A stored cross-si…
CVE-2026-33589 medium 6.5 6.5 lfnovo 1mo ago Lack of user input validation in the file upload functionality of Open Notebook v1.8.3 allows the application user to access local files content from the docker container via path traversal.
CVE-2026-27415 medium 4.3 4.3 1mo ago Cross-Site Request Forgery (CSRF) vulnerability in PluginUs.Net BEAR allows Cross Site Request Forgery. This issue affects BEAR: from n/a through 1.1.5.
CVE-2026-27421 medium 6.5 6.5 1mo ago Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in WProyal Royal Elementor Addons allows Stored XSS. This issue affects Royal Elementor Addons: fro…
CVE-2026-27416 medium 5.3 5.3 1mo ago Missing Authorization vulnerability in bPlugins PDF Poster allows Exploiting Incorrectly Configured Access Control Security Levels. This issue affects PDF Poster: from n/a through 2.4.1.
CVE-2026-27329 medium 5.3 5.3 1mo ago Authorization Bypass Through User-Controlled Key vulnerability in YITH YITH WooCommerce Wishlist allows Exploiting Incorrectly Configured Access Control Security Levels. This issue affects YITH WooC…
CVE-2026-25468 medium 5.3 5.3 1mo ago Exposure of Sensitive System Information to an Unauthorized Control Sphere vulnerability in weDevs Happy Addons for Elementor allows Retrieve Embedded Sensitive Data. This issue affects Happy Addons…
CVE-2026-25436 medium 5.3 5.3 1mo ago Missing Authorization vulnerability in WProyal Royal Elementor Addons allows Exploiting Incorrectly Configured Access Control Security Levels. This issue affects Royal Elementor Addons: from n/a bef…
CVE-2025-68604 medium 5.4 5.4 1mo ago Cross-Site Request Forgery (CSRF) vulnerability in WPGraphQL allows Cross Site Request Forgery. This issue affects WPGraphQL: from n/a through 2.5.3.
CVE-2025-66105 medium 5.3 5.3 1mo ago Missing Authorization vulnerability in Magepeople inc. Bus Ticket Booking with Seat Reservation allows Exploiting Incorrectly Configured Access Control Security Levels. This issue affects Bus Ticket…
CVE-2025-62127 medium 5.9 5.9 1mo ago Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in WEN Themes WEN Logo Slider allows DOM-Based XSS. This issue affects WEN Logo Slider: from n/a th…
CVE-2025-2514 medium 5.3 5.3 hitachi 1mo ago Improper restriction of excessive authentication attempts vulnerability in Hitachi Virtual Storage Platform G130, G150, G350, G370, G700, G900, F350, F370, F700, F900, Hitachi Virtual Storage Platfor…
CVE-2026-8063 medium 6.5 6.5 mongodb 1mo ago An authenticated user can crash mongod when running $rankFusion or $scoreFusion with an empty pipeline on a view. When resolving a view, the server inspects the aggregation pipeline to determine whe…
CVE-2026-6214 medium 6.5 6.5 1mo ago The Forminator Forms plugin for WordPress is vulnerable to Missing Authorization in versions up to and including 1.53.0. This is due to the listen_for_saving_export_schedule() function in library/cla…
CVE-2026-41004 medium 4.4 4.4 vmware 1mo ago Spring Cloud Config Server Logged Sensitive Information
CVE-2026-4807 medium 6.5 6.5 1mo ago The Appointment Booking Calendar plugin for WordPress is vulnerable to Missing Authorization in versions up to and including 1.6.10.6. This is due to a flawed authorization logic in the nonce_permiss…
CVE-2026-44600 medium 5.3 5.3 FIX debian debian torproject 1mo ago Tor before 0.4.9.7 mishandles accounting of the conflux out-of-order queue during the clearing of a queue, aka TROVE-2026-010.
CVE-2026-44599 medium 5.3 5.3 FIX debian debian torproject 1mo ago Tor before 0.4.9.7 can attempt or accept BEGIN_DIR via conflux legs, aka TROVE-2026-008.
CVE-2026-6222 medium 5.3 5.3 1mo ago The Forminator Forms plugin for WordPress is vulnerable to Missing Authorization in versions up to and including 1.51.1. This is due to the `processRequest()` method in `Forminator_Admin_Module_Edit_…
CVE-2026-40003 medium 6.8 6.8 1mo ago ZTE ZX297520V3 BootROM contains a vulnerability that allows arbitrary memory writes via USB. Attackers can exploit the lack of target address validation in the USB download mode to write data to any …
CVE-2026-44264 medium 4.3 4.3 weblate 1mo ago Weblate vulnerable to XSS via crafted Markdown
CVE-2026-44312 medium 5.8 5.8 FIX debian debian 1mo ago css_parser is a Ruby CSS parser. Prior to 2.1.0 and 1.22.0, the CSS Parser gem does not validate HTTPS connections, allowing a Man-in-the-Middle (MITM) attacker to inject or modify CSS content when s…
CVE-2025-67202 medium 6.1 6.1 1mo ago Sidekiq-cron is vulnerable to a cross-site scripting (xss) vulnerability via crafted URL
CVE-2026-41484 medium 5.9 5.9 opentelemetry 1mo ago OneCollector exporter reads unbounded HTTP response bodies
CVE-2026-41483 medium 5.9 5.9 opentelemetry 1mo ago OpenTelemetry.Resources.Azure has an unbounded HTTP response body read
CVE-2026-41417 medium 5.3 5.3 slesdebian debian netty 1mo ago Netty: Start-Line Injection in DefaultHttpRequest.setUri() Allows HTTP Request Smuggling and RTSP Request Injection
CVE-2026-41310 medium 5.3 5.3 opentelemetry 1mo ago OpenTelemetry's Zipkin remote endpoint cache could grow without bounds and increase memory pressure
CVE-2026-3291 medium 5.5 5.5 hp 1mo ago Samsung Print Service Plugin for Android is potentially vulnerable to information disclosure when using an outdated version of the application via mobile devices. HP is releasing updates to mitigate …
CVE-2026-42549 medium 4.4 4.4 1mo ago Flight has path traversal in `make:controller` CLI that creates arbitrary directories outside project root
CVE-2026-40251 medium 6.5 6.5 FIX debian debian linuxcontainers 1mo ago Incus is a system container and virtual machine manager. In versions before 7.0.0, missing validation logic in the storage volume import logic allows an authenticated user with access to the storage …
CVE-2026-40243 medium 4.8 4.8 FIX debian debian linuxcontainers 1mo ago Incus is a system container and virtual machine manager. In versions before 7.0.0, broken TLS validation logic in the OVN database connection logic can allow connections to an attacker's OVN database…
CVE-2026-40197 medium 6.5 6.5 FIX debian debian linuxcontainers 1mo ago Incus is a system container and virtual machine manager. In versions before 7.0.0, missing validation logic in the storage volume import logic allows an authenticated user with access to the storage …
CVE-2026-40195 medium 6.5 6.5 FIX debian debian linuxcontainers 1mo ago Incus is a system container and virtual machine manager. In versions before 7.0.0, missing validation logic in the storage bucket import logic allows an authenticated user with access to the storage …
CVE-2026-42458 medium 5.5 1mo ago Magento LTS: Reflected XSS - Import -> Data Flow (profiles)
CVE-2026-44306 medium 5.3 5.3 1mo ago Statamic CMS vulnerable to email enumeration via forgot password endpoint
CVE-2026-8033 medium 5.3 5.3 1mo ago A vulnerability has been found in PicoTronica e-Clinic Healthcare System ECHS 5.7. This affects an unknown function of the file /cdemos/echs/api/v2/ of the component Response Header Handler. Such man…
CVE-2026-44117 medium 5.8 5.8 openclaw 1mo ago OpenClaw: QQBot direct media upload skipped URL SSRF validation
CVE-2026-44111 medium 4.3 4.3 openclaw 1mo ago OpenClaw before 2026.4.15 contains an arbitrary file read vulnerability in the QMD backend memory_get function that allows callers to read any Markdown files within the workspace root. Attackers with…
CVE-2026-43583 medium 6.5 6.5 openclaw 1mo ago OpenClaw: Delivery queue recovery could lose group tool-policy context for media replay
CVE-2026-43582 medium 6.3 6.3 openclaw 1mo ago OpenClaw: Browser SSRF hostname validation could be bypassed by DNS rebinding
CVE-2026-43579 medium 6.5 6.5 openclaw 1mo ago OpenClaw before 2026.4.10 contains an insufficient access control vulnerability in Nostr plugin HTTP profile routes that allows operators with write permissions to persist profile configuration witho…
CVE-2026-43577 medium 6.5 6.5 openclaw 1mo ago OpenClaw before 2026.4.9 contains a file read vulnerability allowing attackers to bypass navigation guards through browser act/evaluate interactions. Attackers can pivot into the local CDP origin and…
CVE-2026-8031 medium 5.3 5.3 1mo ago A vulnerability was detected in PicoTronica e-Clinic Healthcare System ECHS 5.7. The affected element is an unknown function of the file /cdemos/echs/api/v2/patient-records of the component API Endpo…