CVE Database

114567+ vulnerabilities with CVSS scores, EPSS exploit predictions, and CISA KEV status. Updated daily.

Filter: All CRITICAL HIGH MEDIUM LOW CISA KEV
Sort: Newest CVSS EPSS
CVE-2026-53909
6.5 MEDIUM

MCO does not correctly validate types of uploaded files. File upload validation functionality relies only on client-side checks, which can be bypassed. An authorized, low-privileged …

Jul 1, 2026
CVE-2026-53908
4.3 MEDIUM

MCO is vulnerable to User Enumeration through authentication-related functionalities. The application returns distinguishable responses for valid and invalid users during username reminder and password reset …

Jul 1, 2026
CVE-2026-53907
5.4 MEDIUM

MCO is vulnerable to Stored Cross‑Site Scripting (XSS) via the application logo upload functionality. An attacker with the ability to change the application logo can …

Jul 1, 2026
CVE-2026-53906
8.2 HIGH

MCO is vulnerable to Path Disclosure and Path Traversal in file handling functionality related to data export and upload. Improper validation of the filename parameter …

Jul 1, 2026
CVE-2026-53905
7.1 HIGH

MCO does not properly enforce authorization checks in the /customer/servlet/mco/webapi/admin-view-hierarchy/get-acl-tree-structure endpoint. An authenticated, low-privileged user can retrieve administrator access control structures without proper authorization checks. …

Jul 1, 2026
CVE-2026-53904
7.1 HIGH

MCO is vulnerable to Account Denial of Service due to improper implementation of password reset functionality. Each password reset request invalidates previously set password as …

Jul 1, 2026
CVE-2026-53903
8.1 HIGH

MCO is vulnerable to an Insecure Direct Object Reference (IDOR) vulnerability in the /customer/servlet/mco/webapi/trading-document/fetchPdfStatement endpoint. The application does not properly validate whether an authenticated user …

Jul 1, 2026
CVE-2026-53902
6.5 MEDIUM

MCO does not properly enforce authorization checks in the /customer/servlet/mco/webapi/profile-sections/group-membership endpoint. An authenticated user can modify their group membership without proper authorization checks, allowing privilege …

Jul 1, 2026
CVE-2026-14198
9.1 CRITICAL

@fastify/middie versions 9.1.0 through 9.3.2 decode the encoded slash %2F inside path parameter values before matching middleware paths, while Fastify's underlying router preserves the encoding …

Jul 1, 2026
CVE-2026-14181
7.5 HIGH

@fastify/middie versions 9.1.0 through 9.3.2 fail to guard the URL normalization step used by the standalone engine when incoming request paths contain malformed percent-encoded sequences. …

Jul 1, 2026
CVE-2026-13323
4.1 MEDIUM

In Open VSX Registry before 1.0.2, the /vscode/unpkg/ endpoint serves user-supplied HTML files with Content-Type: text/html and without a Content-Security-Policy or Content-Disposition: attachment response header. …

Jul 1, 2026
CVE-2026-14258
6.5 MEDIUM

A flaw was found in dhcpcd's IPv6 Neighbor Discovery Router Advertisement processing. A specially crafted IPv6 Router Advertisement containing a zero-length Neighbor Discovery option can …

Jul 1, 2026
CVE-2026-13228
8.8 HIGH

The LatePoint – Calendar Booking Plugin for Appointments and Events plugin for WordPress is vulnerable to Privilege Escalation to Administrator in versions up to, and …

Jul 1, 2026
CVE-2026-12142
7.2 HIGH

The NEX-Forms – Ultimate Forms Plugin for WordPress plugin for WordPress is vulnerable to Stored Cross-Site Scripting via '_name[]' Array Parameter in all versions up …

Jul 1, 2026
CVE-2026-10095
6.4 MEDIUM

The WP Photo Album Plus plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the 'subtext' parameter in all versions up to, and including, …

Jul 1, 2026
CVE-2026-27435
5.3 MEDIUM

Missing Authorization vulnerability in WofficeIO Woffice allows Exploiting Incorrectly Configured Access Control Security Levels. This issue affects Woffice: from n/a before 5.4.33.

Jul 1, 2026
CVE-2026-13454
6.5 MEDIUM

The MotoPress Appointment Booking plugin for WordPress is vulnerable to generic SQL Injection via the 's' parameter in all versions up to, and including, 2.4.5 …

Jul 1, 2026
CVE-2026-12754
6.1 MEDIUM

The VikBooking Hotel Booking Engine & PMS plugin for WordPress is vulnerable to Reflected Cross-Site Scripting via the 'layoutstyle' parameter in all versions up to, …

Jul 1, 2026
CVE-2026-56016
5.9 MEDIUM

CGI::Session::ID::md5 versions before 4.49 for Perl generate predictable session ids from low-entropy sources. The generate_id method builds the session id from a MD5 digest of …

Jul 1, 2026
CVE-2026-50043
7.2 HIGH

Improper neutralization of special elements used in an OS command ('OS Command Injection') issue exists in SkyBridge MB-A100/MB-A110. If this vulnerability is exploited, an arbitrary …

Jul 1, 2026
CVE-2026-13733
6.4 MEDIUM

The Download Manager plugin for WordPress is vulnerable to Stored Cross-Site Scripting via 'no_data_msg' Shortcode Attribute in all versions up to, and including, 3.3.60 due …

Jul 1, 2026
CVE-2026-12732
6.4 MEDIUM

The LearnPress plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the 'class_wrapper_form' shortcode attribute in versions up to, and including, 4.4.0. This is …

Jul 1, 2026
CVE-2026-12577

DVP80ES3 with Improperly Implemented Security Check for Standard vulnerability.

Jul 1, 2026
CVE-2026-12576
7.5 HIGH

DVP80ES3 with Improper Enforcement of Message Integrity During Transmission in a Communication Channel vulnerability.

Jul 1, 2026
CVE-2026-12575
7.5 HIGH

DVP80ES3 with Improper Resource Shutdown or Release vulnerability.

Jul 1, 2026
CVE-2026-12435
4.3 MEDIUM

The Motors – Car Dealership & Classified Listings Plugin plugin for WordPress is vulnerable to authorization bypass in all versions up to, and including, 1.4.111. …

Jul 1, 2026
CVE-2026-12408
4.3 MEDIUM

The Slim SEO – A Fast & Automated SEO Plugin For WordPress plugin for WordPress is vulnerable to Unauthorized Private Content Disclosure in all versions …

Jul 1, 2026
CVE-2026-12224
8.8 HIGH

The Dokan Pro plugin for WordPress is vulnerable to privilege escalation via update_capabilities REST Endpoint in all versions up to, and including, 5.0.4. This is …

Jul 1, 2026
CVE-2026-12158
8.8 HIGH

The RegistrationMagic – User Registration Forms Plugin plugin for WordPress is vulnerable to Cross-Site Request Forgery in all versions up to, and including, 6.0.9.1. This …

Jul 1, 2026
CVE-2026-11387
9.8 CRITICAL

The SMS Alert – SMS & OTP for WooCommerce, Order Notifications & Abandoned Cart Recovery plugin for WordPress is vulnerable to privilege escalation via account …

Jul 1, 2026
CVE-2026-10540
5.6 MEDIUM

The Control-M/Enterprise Manager uses weak protections for stored hashes of account passwords, potentially allowing offline password recovery attacks if credential data is obtained by an …

Jul 1, 2026
CVE-2026-10539
9.0 CRITICAL

A Control-M/Server communication command does not sufficiently filter or sanitize user-supplied input. Under certain conditions, this issue may allow an unauthenticated attacker to execute unauthorized …

Jul 1, 2026
CVE-2026-10538
8.0 HIGH

Messaging consumer functionality allows deserialization of user-controlled data without sufficient restriction of allowed object types in the out of support Control-M/Server and Control-M/Enterprise Manager versions …

Jul 1, 2026
CVE-2026-10096
4.3 MEDIUM

The Qi Blocks plugin for WordPress is vulnerable to Insecure Direct Object Reference in all versions up to, and including, 1.4.9 via the 'page_id' parameter …

Jul 1, 2026
CVE-2026-1239
7.5 HIGH

The Ninja Forms – The Contact Form Builder That Grows With You plugin for WordPress is vulnerable to unauthorized access of data due to a …

Jul 1, 2026
CVE-2026-14193
7.5 HIGH

DVP80ES300T with Improper Validation of Array Index Vulnerability

Jul 1, 2026
CVE-2026-12579
7.4 HIGH

AS228T with Authentication Bypass Vulnerability

Jul 1, 2026
CVE-2026-11887
4.3 MEDIUM

The Salon Booking System WordPress plugin before 10.30.20 does not have proper authorisation checks on one of its AJAX actions, allowing any authenticated user, such …

Jul 1, 2026
CVE-2026-11883
7.2 HIGH

The WebAuthn Provider for Two Factor WordPress plugin before 2.5.6 does not correctly validate the second-factor authentication response, allowing an attacker who already knows a …

Jul 1, 2026
CVE-2026-11880
3.1 LOW

The Fluent Forms WordPress plugin before 6.2.1 does not properly verify ownership before processing a subscription cancellation request, allowing authenticated users with a low-privilege account …

Jul 1, 2026
CVE-2026-11823
7.5 HIGH

The BookingPress Appointment Booking Pro plugin for WordPress is vulnerable to SQL Injection via the 'store_service_date' parameter of the bpa_assign_staffmember_to_slots() function in versions up to …

Jul 1, 2026
CVE-2026-11794
8.1 HIGH

The Advanced Form Integration — Connect Forms to 200+ Apps WordPress plugin before 2.1.1 does not restrict the WordPress role assigned when it creates a …

Jul 1, 2026
CVE-2026-11570
4.2 MEDIUM

The User Submitted Posts WordPress plugin before 20260608 does not escape a submitted value before outputting it in an admin-configured display template, leading to a …

Jul 1, 2026
CVE-2026-11568
7.5 HIGH

The Product Configurator for WooCommerce WordPress plugin before 1.7.3 does not perform any authorisation or post-status check before returning WooCommerce product data through a public …

Jul 1, 2026
CVE-2026-11562
4.3 MEDIUM

The WS Form LITE WordPress plugin before 1.11.8 does not have a capability check on one of its settings-update actions, allowing authenticated users with subscriber-level …

Jul 1, 2026
CVE-2026-10750
8.1 HIGH

The Royal MCP WordPress plugin before 1.4.26 does not perform capability checks on the majority of its MCP tools after token authentication, allowing authenticated users …

Jul 1, 2026
CVE-2025-15666
5.3 MEDIUM

A security vulnerability has been detected in Open Asset Import Library Assimp up to 5.4.3. Affected by this vulnerability is the function Assimp::SceneCombiner::Copy of the …

Jul 1, 2026
CVE-2026-9107
6.4 MEDIUM

The Kali Forms — Contact Form & Drag-and-Drop Builder plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the 'meta[kaliforms_field_components]' parameter in all versions …

Jul 1, 2026
CVE-2026-7840
9.8 CRITICAL

UltraVNC repeater through 1.8.2.2 contains a global buffer overflow in its embedded HTTP administration server. The functions wi_senderr() and wi_replyhdr() in repeater/webgui/webutils.c write the caller-supplied …

Jul 1, 2026
CVE-2026-7839
9.1 CRITICAL

UltraVNC repeater through 1.8.2.2 initializes the HTTP administration server with a hardcoded default password. In repeater/webgui/settings.c:197, when settings2.txt is absent on first run the repeater …

Jul 1, 2026

Scan your infrastructure for known CVEs

Free website and port scanning — find vulnerabilities before attackers do.