CVE Database

11693+ vulnerabilities with CVSS scores, EPSS exploit predictions, and CISA KEV status. Updated daily.

Filter: All CRITICAL HIGH MEDIUM LOW CISA KEV
Sort: Newest CVSS EPSS
CVE-2026-18924
9.1 CRITICAL

A flaw in libcurl's handling of HTTP/2 Server Push streams, when the parent handle is set to share connections with other handles, can lead to …

Sep 6, 2026
CVE-2026-86167
9.9 CRITICAL

A vulnerability was identified in Tenda HG10 300001138. Impacted is the function formgponConf of the file /boaform/admin/formgponConf of the component Boa. The manipulation of the …

Sep 6, 2026
CVE-2026-86165
9.8 CRITICAL

A vulnerability was found in Tenda HG10 300001138. This vulnerability affects the function formURL of the file /boaform/admin/formURL. Performing a manipulation of the argument Keywd/urlFQDN …

Sep 6, 2026
CVE-2026-86218
9.8 CRITICAL KEV

N-central is vulnerable to a pre-auth remote code execution This issue affects N-central: before 2026.3.1.14.

Sep 6, 2026
CVE-2026-75816
9.8 CRITICAL

The Frontend Admin by DynamiApps plugin for WordPress is vulnerable to Authentication Bypass to Account Takeover in all versions up to, and including, 3.29.12. This …

Sep 6, 2026
CVE-2026-16310
9.8 CRITICAL

The MemberDash plugin for WordPress is vulnerable to Insecure Direct Object Reference in all versions up to, and including, 1.8.5 via the 'id' parameter due …

Sep 6, 2026
CVE-2026-86153
9.1 CRITICAL

A vulnerability has been found in Tenda CP3 27.5.57.101. This affects the function CRedirServer::SetRedirectEnable of the file Functions/Redirect.cpp. The manipulation leads to improper privilege management. …

Sep 6, 2026
CVE-2026-86152
10.0 CRITICAL

A flaw has been found in Tenda CP3 27.5.57.101. The impacted element is the function CAutoAddWifi::ThreadProc of the file Functions/AutoAddWifi.cpp of the component Kylin. Executing …

Sep 6, 2026
CVE-2026-86151
9.1 CRITICAL

A vulnerability was detected in Tenda CP3 27.5.57.101. The affected element is the function sub_2F77E8 of the file Apis/system.c of the component Network Configuration Management. …

Sep 6, 2026
CVE-2026-86149
9.1 CRITICAL

A weakness has been identified in Tenda CP3 27.5.57.101. This issue affects some unknown processing of the file Net/NetCheckPing.cpp. This manipulation of the argument interface_name/host …

Sep 5, 2026
CVE-2026-86148
9.1 CRITICAL

A security flaw has been discovered in Tenda CP3 27.5.57.101. This vulnerability affects the function SystemAsh of the file Apis/system.c of the component Kylin. The …

Sep 5, 2026
CVE-2026-86060
9.8 CRITICAL KEV

RouterOS contains an argument-handling flaw in the SSH login path involving usernames that begin with a prohibited character, allowing for the trusted RouterOS policy mask …

Sep 5, 2026
CVE-2026-86190
9.1 CRITICAL

WWBN AVideo contains a broken access control vulnerability in videoViewsInfo endpoints that returns complete user records including password hashes, recovery tokens, and live session identifiers …

Sep 5, 2026
CVE-2026-86189
9.8 CRITICAL

WWBN AVideo contains a path traversal vulnerability in notify.ffmpeg.json.php that allows unauthenticated attackers to write files to arbitrary locations by supplying a caller-chosen path in …

Sep 5, 2026
CVE-2026-86184
9.8 CRITICAL

Lara Dashboard before 1.3.0 contains an authentication bypass vulnerability in the screenshot-login route that allows unauthenticated attackers to authenticate as any user by email when …

Sep 5, 2026
CVE-2026-10196
9.8 CRITICAL

The Mail Mint – Email Marketing, Newsletter, Email Automation & WooCommerce Emails plugin for WordPress is vulnerable to PHP Object Injection in all versions up …

Sep 5, 2026
CVE-2026-86124
9.8 CRITICAL

AutoAgent contains an unauthenticated remote code execution vulnerability in the TCP server that binds to all interfaces and executes attacker-supplied commands as root. Attackers can …

Sep 5, 2026
CVE-2026-86121
9.8 CRITICAL

Cua computer-server versions before 0.3.42 skip authentication when the CONTAINER_NAME environment variable is unset and bind to all interfaces by default, allowing unauthenticated attackers to …

Sep 5, 2026
CVE-2024-11080
9.8 CRITICAL

The Post Grid and Gutenberg Blocks – ComboBlocks plugin for WordPress is vulnerable to Unauthenticated Hook Injection in versions 2.2.32 to 2.3.1 via several functions …

Sep 5, 2026
CVE-2026-78362
9.8 CRITICAL

The SEO Flow by LupsOnline WordPress plugin before 3.0.3 does not correctly validate the credential supplied with its API requests, allowing unauthenticated users to be …

Sep 5, 2026
CVE-2026-83627
9.8 CRITICAL

The Hummingbird – Speed Optimization, Caching, Minify, Compress & CDN plugin for WordPress is vulnerable to Remote Code Execution in all versions up to, and …

Sep 5, 2026
CVE-2026-13447
9.8 CRITICAL

The Mstore Api plugin for WordPress is vulnerable to Authentication Bypass via JWT Forgery in versions up to, and including, 4.20.0 This is due to …

Sep 5, 2026
CVE-2026-52766
9.1 CRITICAL

YesWiki is a wiki system written in PHP. Prior to version 4.6.6, the {{erasespamedcomments}} wiki action (actions/EraseSpamedCommentsAction.php) accepts a suppr[] array from POST and deletes …

Sep 5, 2026
CVE-2026-75925
9.6 CRITICAL

Improper neutralization of CRLF sequences in IXON VPN Client before version 1.4.7 allows an attacker to execute commands as root or SYSTEM. Configuration values accepted …

Sep 4, 2026
CVE-2026-50894
9.8 CRITICAL

easyadmin v2.0.2.2 is vulnerable to Unrestricted Upload of File with Dangerous Type in the background management interface which allows authenticated remote attackers to execute arbitrary …

Sep 4, 2026
CVE-2025-67066
9.8 CRITICAL

SQL Injection vulnerability in oasys sysoa version 1.0 allows a remote attacker to execute arbitrary code via the outtype parameter in the /outaddresspaging path

Sep 4, 2026
CVE-2026-79391
9.8 CRITICAL

No authentication exists in the MQTT service of Trueview 6.0.23.4. The MQTT broker accepts client connections on TCP port 1883 without requiring authentication, allowing a …

Sep 4, 2026
CVE-2026-71625
9.8 CRITICAL

An issue in slimkit plus ThinkSNS+ v.2.4 allows a remote attacker to escalate privileges via the ResetPasswordController.php component

Sep 4, 2026
CVE-2026-71624
9.8 CRITICAL

An issue in esoTalk v.1.0.0g4 allows a remote attacker to execute arbitrary code via the core/models/ETMemberModel.class.php, core/controllers/ETMemberController.class.php, and core/lib/ET.class.php components

Sep 4, 2026
CVE-2026-81939
9.1 CRITICAL

A Zip Slip vulnerability in the SonicWall Network Security Manager (NSM) On-Prem file upload and archive processing functionality allows an attacker to extract files outside …

Sep 4, 2026
CVE-2026-78328
9.1 CRITICAL

A missing authorization vulnerability in the SonicWall Network Security Manager (NSM) On-Prem Management interface allows a lower-privileged Admin user to escalate privileges to SuperAdmin.

Sep 4, 2026
CVE-2026-78327
9.1 CRITICAL

An Improper Neutralization of Special Elements used in an OS Command ('OS Command Injection') vulnerability in the SonicWall Network Security Manager (NSM) On-Prem Management interface …

Sep 4, 2026
CVE-2026-78745
9.8 CRITICAL

An issue in HiDPT/ Weyon HiDPTAndroid Hi3751V350 Hi3751V352E_DMO allows a remote attacker to execute arbitrary code via the Android Debug Bridge (ADB) daemon (adbd)

Sep 4, 2026
CVE-2026-75430
9.8 CRITICAL

PowerJob Worker version 5.1.2 (and likely earlier versions) exposes the /worker/deployContainer HTTP endpoint without authentication on the default transport port. This allows a remote attacker …

Sep 4, 2026
CVE-2026-31020
9.8 CRITICAL

In DocsGPT 0.15.0 and below, the application provides a custom prompt feature that allows users to define prompt content used during chatbot interactions. This functionality …

Sep 4, 2026
CVE-2026-75431
9.1 CRITICAL

PowerJob Server version 5.1.2 (and likely earlier) uses a predictable JWT signing key for HS256-based authentication. This allows a remote attacker to execute arbitrary code.

Sep 4, 2026
CVE-2026-75160
9.1 CRITICAL

An issue in X-Serie Gateway Firmware V6_00_05 allows a remote attacker to escalate privileges via the endpoints /cgi-bin/wwwugw.cgi and /cgi-bin/ugwdownload.cgi.

Sep 4, 2026
CVE-2026-44402
9.8 CRITICAL

Voltronic Power SNMP Web Pro 1.1 contains an unauthenticated remote code execution vulnerability in the upload.cgi firmware update endpoint that allows remote attackers to execute …

Sep 4, 2026
CVE-2026-19274
9.6 CRITICAL

IBM Observability with Instana (Agent) Build 1.0.303 through 1.0.323 IBM Instana Agent Operator could allow an authenticated Kubernetes tenant to hijack or permanently destroy another …

Sep 4, 2026
CVE-2026-18658
9.8 CRITICAL

IBM Operational Decision Manager 9.6.0.0, 9.5.0.0, 8.11.1.0, 8.11.0.1, 8.12.0.1, 9.5.0.1, and 9.0.0.1 is vulnerable to SQL injection. An unauthenticated attacker can execute arbitrary SQL statements …

Sep 4, 2026
CVE-2026-85696
9.8 CRITICAL

SadTalker contains an OS command injection vulnerability in the video muxing process where uploaded audio filenames are interpolated into ffmpeg commands without proper escaping. Attackers …

Sep 4, 2026
CVE-2026-85695
9.4 CRITICAL

FastChat contains an authentication bypass vulnerability in the /register_worker endpoint that allows unauthenticated attackers to register arbitrary worker addresses and perform server-side request forgery. Attackers …

Sep 4, 2026
CVE-2026-85688
9.8 CRITICAL

TEN Framework 0.11.71 contains unauthenticated arbitrary file read and write vulnerabilities in the TMAN Designer file-content API endpoints. Attackers can submit POST and PUT requests …

Sep 4, 2026
CVE-2026-85684
9.1 CRITICAL

marker through 2.0.0 contains a path traversal vulnerability in the FastAPI /marker/upload handler that fails to sanitize the file.filename parameter. Unauthenticated attackers can supply filenames …

Sep 4, 2026
CVE-2026-85672
9.8 CRITICAL

zerox 1.1.20 contains an OS command injection vulnerability in the file download mechanism where the temporary file extension derived from document URLs is interpolated unsanitized …

Sep 4, 2026
CVE-2026-85667
9.1 CRITICAL

xiaobei through 5.5.2 fails to implement authentication or signature validation on webhook endpoints, allowing unauthenticated attackers to inject arbitrary messages into the agent pipeline. Attackers …

Sep 4, 2026
CVE-2026-85663
9.8 CRITICAL

Aim 3.29.1 remote tracking server fails to authenticate requests and dispatches arbitrary methods through getattr without allowlist validation. Unauthenticated attackers can register clients, instantiate Repo …

Sep 4, 2026
CVE-2026-85661
9.8 CRITICAL

excel-mcp-server 0.1.8 fails to enforce path confinement in stdio mode when EXCEL_FILES_PATH is unset, allowing attackers to read and write arbitrary files. Attackers can supply …

Sep 4, 2026
CVE-2026-85184
9.1 CRITICAL

@fastify/middie versions >= 9.1.0 and before 9.3.4 decide whether to run path-scoped middleware by matching against the raw request target, while the Fastify router resolves …

Sep 4, 2026
CVE-2026-82923
9.8 CRITICAL

The AI Website Builder WordPress plugin (GitHub build) 1.0.0 does not perform any authorisation or nonce check on its REST API routes, allowing unauthenticated attackers …

Sep 4, 2026

Scan your infrastructure for known CVEs

Free website and port scanning — find vulnerabilities before attackers do.