CVE Database

132614+ vulnerabilities with CVSS scores, EPSS exploit predictions, and CISA KEV status. Updated daily.

Filter: All CRITICAL HIGH MEDIUM LOW CISA KEV
Sort: Newest CVSS EPSS
CVE-2026-86174
4.3 MEDIUM

Plane through 1.4.2 fails to validate that issues belong to the deploy board's project in the public comment endpoint. Authenticated attackers can post comments to …

Sep 5, 2026
CVE-2026-86173
7.5 HIGH

MindsDB through 26.1.0 contains a server-side request forgery vulnerability in the web crawler handler that allows unauthenticated attackers to fetch arbitrary URLs by supplying caller-controlled …

Sep 5, 2026
CVE-2026-86169
8.8 HIGH

Axolotl before 0.19.0 contains a remote code execution vulnerability in the multipack patch path where trust_remote_code defaults to None instead of False, causing the security …

Sep 5, 2026
CVE-2026-86124
9.8 CRITICAL

AutoAgent contains an unauthenticated remote code execution vulnerability in the TCP server that binds to all interfaces and executes attacker-supplied commands as root. Attackers can …

Sep 5, 2026
CVE-2026-86123
8.7 HIGH

SQL Chat contains four unauthenticated API endpoints that accept client-supplied database connection parameters and execute arbitrary SQL queries against attacker-specified hosts. Attackers can connect to …

Sep 5, 2026
CVE-2026-86122
5.0 MEDIUM

Rowboat through 0.9.1 fails to validate custom MCP server and webhook URLs, allowing authenticated users to configure arbitrary destinations. Attackers can point these URLs at …

Sep 5, 2026
CVE-2026-86121
9.8 CRITICAL

Cua computer-server versions before 0.3.42 skip authentication when the CONTAINER_NAME environment variable is unset and bind to all interfaces by default, allowing unauthenticated attackers to …

Sep 5, 2026
CVE-2026-86120
4.3 MEDIUM

APITable through 1.13.0-beta.1 contains an incorrect authorization vulnerability in NodePermissionGuard that fails to enforce node-level access control when permission lookups throw exceptions. Attackers with valid …

Sep 5, 2026
CVE-2026-86119
8.6 HIGH

Webstudio through 0.296.0 contains an unauthenticated server-side request forgery vulnerability in the /cgi/image, /cgi/video, and /cgi/asset proxy routes when RESIZE_ORIGIN environment variable is unset. Attackers …

Sep 5, 2026
CVE-2026-86118
4.3 MEDIUM

gonic versions before 0.22.0 fail to validate administrator privileges in the startScan endpoint, allowing any authenticated user to trigger media library rescans. Attackers can repeatedly …

Sep 5, 2026
CVE-2026-86117
8.1 HIGH

Coolify through 4.3.17 contains an authentication bypass vulnerability in the OAuth callback handler that signs users into existing accounts based solely on email address without …

Sep 5, 2026
CVE-2026-86116
6.5 MEDIUM

Metabase versions before 0.63.1 fail to enforce data analyst permission checks on glossary API endpoints, allowing any authenticated user to create, modify, and delete glossary …

Sep 5, 2026
CVE-2026-86115
5.0 MEDIUM

Sim before 0.8.14 classifies tool requests as internal based on URL prefix matching without scheme normalization, skipping SSRF validation and minting internal authentication tokens. Authenticated …

Sep 5, 2026
CVE-2026-86114
6.5 MEDIUM

Arcane versions before 2.0.0 fail to properly restrict template operations, allowing default user role accounts to create, modify, and delete compose templates including instance-wide defaults. …

Sep 5, 2026
CVE-2026-86113
6.5 MEDIUM

BookWyrm through 0.9.1 contains an authorization bypass vulnerability in the edit_readthrough function that allows authenticated users to modify other users' reading records. Attackers can exploit …

Sep 5, 2026
CVE-2026-86112
5.4 MEDIUM

BookWyrm through 0.9.1 fails to validate user visibility permissions in the Favorite and Unfavorite views, allowing authenticated attackers to favorite or unfavorite followers-only and direct …

Sep 5, 2026
CVE-2026-86111
6.5 MEDIUM

BookWyrm through 0.9.1 fails to validate user visibility permissions in the status edit endpoint, allowing authenticated attackers to read followers-only and direct-message reviews by enumerating …

Sep 5, 2026
CVE-2026-76573
6.4 MEDIUM

The Pods – Custom Content Types and Fields plugin for WordPress is vulnerable to Stored Cross-Site Scripting via 'not_found' Shortcode Attribute in all versions up …

Sep 5, 2026
CVE-2024-11080
9.8 CRITICAL

The Post Grid and Gutenberg Blocks – ComboBlocks plugin for WordPress is vulnerable to Unauthenticated Hook Injection in versions 2.2.32 to 2.3.1 via several functions …

Sep 5, 2026
CVE-2026-85414
6.4 MEDIUM

The Gallery : FooGallery plugin for WordPress is vulnerable to Stored Cross-Site Scripting via 'custom_settings' Shortcode Attribute in all versions up to, and including, 3.3.2 …

Sep 5, 2026
CVE-2026-83625
7.2 HIGH

The Contact Form by Supsystic plugin for WordPress is vulnerable to Stored Cross-Site Scripting via IP Address Header in all versions up to, and including, …

Sep 5, 2026
CVE-2026-81543
8.8 HIGH

The Abandoned Cart Pro for WooCommerce plugin for WordPress is vulnerable to Privilege Escalation in all versions up to, and including, 10.7.1. This is due …

Sep 5, 2026
CVE-2026-75586
6.1 MEDIUM

The Unlimited Elements For Elementor plugin for WordPress is vulnerable to Reflected Cross-Site Scripting via 'formData[id]' Parameter in all versions up to, and including, 2.0.17 …

Sep 5, 2026
CVE-2026-75018
4.3 MEDIUM

The Custom Contact Forms plugin for WordPress is vulnerable to authorization bypass in all versions up to, and including, 7.16. This is due to the …

Sep 5, 2026
CVE-2026-84937
6.8 MEDIUM

The Video Player for YouTube WordPress plugin before 2.1.0 does not properly sanitise and escape user-supplied input before using it in a SQL statement, allowing …

Sep 5, 2026
CVE-2026-84936
5.3 MEDIUM

The EmbedPress WordPress plugin before 4.6.4 does not have proper authorization on a public review-loading action, allowing unauthenticated users to force the site to make …

Sep 5, 2026
CVE-2026-84935
8.0 HIGH

The HT Menu WordPress plugin before 1.2.7 does not perform any capability or object-ownership check when saving navigation menu-item settings, and does not escape those …

Sep 5, 2026
CVE-2026-84934
8.0 HIGH

The JCH Optimize WordPress plugin before 6.0.1 does not perform a capability check on one of its authenticated AJAX actions and lets the request choose …

Sep 5, 2026
CVE-2026-84931
6.8 MEDIUM

The Joli Table Of Contents WordPress plugin before 3.0.3 does not sanitise or escape a shortcode attribute value before outputting it inside an HTML element's …

Sep 5, 2026
CVE-2026-84930
6.8 MEDIUM

The CatFolders Document Gallery & PDF Library WordPress plugin before 2.0.7 does not properly validate a block attribute before using it as an HTML tag …

Sep 5, 2026
CVE-2026-84927
2.7 LOW

The EmbedPress WordPress plugin before 4.6.4 does not perform a sufficient authorization check on one of its Google Reviews REST API routes, allowing users with …

Sep 5, 2026
CVE-2026-84926
2.7 LOW

The EmbedPress WordPress plugin before 4.6.4 does not correctly restrict access to one of its Google Reviews REST routes to administrators, allowing any authenticated user …

Sep 5, 2026
CVE-2026-84901
4.9 MEDIUM

The Eventin WordPress plugin before 4.1.22 does not properly check authorization on several of its event-management REST routes, allowing users with contributor-level access and above …

Sep 5, 2026
CVE-2026-84899
6.8 MEDIUM

The VikWidgetsLoader WordPress plugin before 1.12.0 does not sanitise or escape a block attribute before outputting it inside an inline script, allowing users with the …

Sep 5, 2026
CVE-2026-84898
6.6 MEDIUM

The Eventin WordPress plugin before 4.1.21 does not properly validate a template path value before using it to include a local file, allowing users with …

Sep 5, 2026
CVE-2026-84896
6.8 MEDIUM

The King Addons for Elementor WordPress plugin before 51.1.77 does not escape a widget display-style setting before outputting it in an HTML attribute, allowing users …

Sep 5, 2026
CVE-2026-84745
2.7 LOW

The Events Calendar WordPress plugin before 6.17.3.1 does not restrict non-public content to the users entitled to read it on its public REST archives, allowing …

Sep 5, 2026
CVE-2026-84225
2.2 LOW

The Kirki WordPress plugin before 6.3.0 does not check that a user is allowed to act on a collaboration comment before changing its state, allowing …

Sep 5, 2026
CVE-2026-84221
6.8 MEDIUM

The Kirki WordPress plugin before 6.3.0 does not escape a user-supplied identifier before using it in a SQL query, allowing users with editor-level access and …

Sep 5, 2026
CVE-2026-84022
6.8 MEDIUM

The Bold Page Builder WordPress plugin before 5.9.8 does not sanitise and escape several shortcode attributes before outputting them in HTML attributes, allowing users with …

Sep 5, 2026
CVE-2026-84021
6.8 MEDIUM

The Bold Page Builder WordPress plugin before 5.9.8 does not properly validate a link URL before outputting it in an HTML attribute, relying on a …

Sep 5, 2026
CVE-2026-83544
6.8 MEDIUM

The Greenshift WordPress plugin before 13.2.0 does not properly escape a block animation attribute before outputting it within an HTML attribute, allowing users with contributor-level …

Sep 5, 2026
CVE-2026-83543
4.1 MEDIUM

The Greenshift WordPress plugin before 13.2.0 does not validate a user-supplied URL before fetching it server-side, allowing users with contributor-level access and above to make …

Sep 5, 2026
CVE-2026-82846
6.8 MEDIUM

The Masteriyo LMS WordPress plugin before 3.4.0 does not sanitise and escape some course settings before outputting them in a page available to all visitors, …

Sep 5, 2026
CVE-2026-82304
8.6 HIGH

The Music Store WordPress plugin before 1.4.5 does not sanitise and escape user input before using it in a SQL statement, leading to a SQL …

Sep 5, 2026
CVE-2026-81424
5.3 MEDIUM

The Accept Stripe Payments WordPress plugin before 2.1.4 does not verify that the product fulfilled when a checkout is completed matches the product the authoritative …

Sep 5, 2026
CVE-2026-81423
4.3 MEDIUM

The Accept Stripe Payments WordPress plugin before 2.1.4 does not validate a user-supplied URL before using it in a redirect, allowing unauthenticated attackers to redirect …

Sep 5, 2026
CVE-2026-81404
7.1 HIGH

The IPGP Visitors Origin WordPress plugin before 1.6 does not sanitise or escape user input before reflecting it back in the HTTP response, allowing unauthenticated …

Sep 5, 2026
CVE-2026-81348
3.7 LOW

The My Private Site WordPress plugin before 4.2.3 does not apply its site-privacy access control to certain unauthenticated front-end read surfaces, allowing unauthenticated users to …

Sep 5, 2026
CVE-2026-78438
7.2 HIGH

The W3 Total Cache plugin for WordPress is vulnerable to Stored Cross-Site Scripting via Comment Content via LazyLoad Background Mutator in all versions up to, …

Sep 5, 2026

Scan your infrastructure for known CVEs

Free website and port scanning — find vulnerabilities before attackers do.