CVE Database

132723+ vulnerabilities with CVSS scores, EPSS exploit predictions, and CISA KEV status. Updated daily.

Filter: All CRITICAL HIGH MEDIUM LOW CISA KEV
Sort: Newest CVSS EPSS
CVE-2026-15366

A control logic defect in a specific built-in webpage of Kids Mode allows users to view local gallery photos directly within the page

Aug 26, 2026
CVE-2026-15365

A pop-up logic flaw in a certain feature of Kids Mode allows users to bypass password verification and use Quick Apps outside the app.

Aug 26, 2026
CVE-2026-79654
4.3 MEDIUM

A flaw was found in Katello where the Content View History API does not properly enforce authorization when accessing a Content View specified by the …

Aug 26, 2026
CVE-2026-78146
6.5 MEDIUM

The Simple Newsletter Plugin WordPress plugin before 4.3.3 does not verify that the requester is the subscriber named in a public request before rendering that …

Aug 26, 2026
CVE-2026-77790

The RegistrationMagic WordPress plugin before 6.0.9.4 does not sanitise and escape a parameter before using it in a SQL statement, which could allow high privilege …

Aug 26, 2026
CVE-2026-77789
4.3 MEDIUM

The Stripe Payment Forms by WP Full Pay WordPress plugin before 8.5.1 does not verify that a subscription belongs to the customer bound to the …

Aug 26, 2026
CVE-2026-77758
5.3 MEDIUM

The Stripe Payment Forms by WP Full Pay WordPress plugin before 8.5.1 does not properly verify that a customer portal session has completed its confirmation …

Aug 26, 2026
CVE-2026-77757
5.4 MEDIUM

The Directorist: AI-Powered Business Directory, Listings & Classified Ads WordPress plugin before 8.9.3 does not sanitize a user-supplied image reference before using it as the …

Aug 26, 2026
CVE-2026-77754
5.3 MEDIUM

The Kirki WordPress plugin before 6.0.14 does not perform a capability check on some endpoints of one of its public AJAX actions, allowing unauthenticated users …

Aug 26, 2026
CVE-2026-77695
6.5 MEDIUM

The Return Refund and Exchange For WooCommerce WordPress plugin before 4.6.4 does not correctly verify the ownership of guest orders in some of the AJAX …

Aug 26, 2026
CVE-2026-77694
5.3 MEDIUM

The Eventin WordPress plugin before 4.1.19 does not properly restrict which changes a guest checkout token is allowed to authorise on an order, allowing unauthenticated …

Aug 26, 2026
CVE-2026-77693
8.7 HIGH

The Order Tip for WooCommerce WordPress plugin before 1.6.0 does not check the capability of the user requesting a file deletion, nor does it restrict …

Aug 26, 2026
CVE-2026-75798
5.3 MEDIUM

The AI Engine WordPress plugin before 3.7.2 does not perform an authorisation check on one of its administration-only features, relying instead on a token it …

Aug 26, 2026
CVE-2026-75797
7.7 HIGH

The AI Engine WordPress plugin before 3.7.2 does not confine a caller-supplied URL when mapping it to a local filesystem path before reading the file …

Aug 26, 2026
CVE-2026-74930
4.3 MEDIUM

The Project Manager WordPress plugin before 4.0.7 does not check that the user whose activity is being requested is the one making the request in …

Aug 26, 2026
CVE-2026-74929
5.4 MEDIUM

The Project Manager WordPress plugin before 4.0.7 does not restrict several of its REST API routes to the projects a user belongs to, allowing any …

Aug 26, 2026
CVE-2026-74928
7.5 HIGH

The Project Manager WordPress plugin before 4.0.7 does not have any authorisation check on its import routes, allowing unauthenticated users to create WordPress accounts with …

Aug 26, 2026
CVE-2026-74851
7.2 HIGH

The Pods WordPress plugin before 3.3.9.1 does not correctly compare a display callback against its list of blocked functions, allowing users with the author role …

Aug 26, 2026
CVE-2026-58097
7.8 HIGH

mp_SetEnddisc() copied a user-supplied PSN endpoint value without length validation, allowing a buffer overflow via the ppp(8) command interface. A local user with access to …

Aug 26, 2026
CVE-2026-58096
8.8 HIGH

LcpDecodeConfig() did not validate the length of received endpoint discriminator options against the minimum required by RFC 1717. Undersized options would trigger an out-of-bounds write. …

Aug 26, 2026
CVE-2026-58095
8.8 HIGH

mp_Enddisc() used incorrect length calculations when formatting endpoint discriminator addresses for display, allowing a received endpoint option to overflow a global result buffer. A malicious …

Aug 26, 2026
CVE-2026-58094
7.8 HIGH

The FIOSSHMLPGCNF ioctl(2) operation configures the page size for a largepage shared memory object. This is intended to be used immediately after creating the object, …

Aug 26, 2026
CVE-2026-58093
7.0 HIGH

The TIOCSCTTY ioctl handler drops the tty lock in order to acquire the process tree lock. After reacquiring the tty lock, the handler did not …

Aug 26, 2026
CVE-2026-19760
7.2 HIGH

The WP Fastest Cache – WordPress Cache Plugin plugin for WordPress is vulnerable to Stored Cross-Site Scripting via HTTP Host Header in all versions up …

Aug 26, 2026
CVE-2026-19718
8.1 HIGH

The BlogVault Backup & Staging WordPress plugin before 6.65, MalCare WordPress Security Plugin WordPress plugin before 6.65, The WP Remote WordPress Plugin WordPress plugin before …

Aug 26, 2026
CVE-2026-19226
6.8 MEDIUM

The Royal Addons for Elementor WordPress plugin before 1.7.1066 does not validate some widget settings before outputting them inside an HTML attribute, which could allow …

Aug 26, 2026
CVE-2026-19220
3.7 LOW

The Forminator Forms WordPress plugin before 1.57.1 does not verify that site registration is enabled on the network before creating a site signup, allowing unauthenticated …

Aug 26, 2026
CVE-2026-19094
5.3 MEDIUM

The Tutor LMS WordPress plugin before 4.0.6 does not validate values used to build a database query, and does not restrict which template file a …

Aug 26, 2026
CVE-2026-16986
5.3 MEDIUM

The Booking Package WordPress plugin before 1.7.25 does not validate the payment amount server-side against the stored service price, deriving the expected charge from attacker-supplied …

Aug 26, 2026
CVE-2026-16984
6.5 MEDIUM

The Privacy Policy Generator, Terms & Conditions, GDPR, CCPA, Cookie Policy & Disclaimer Templates WordPress plugin before 3.7.1 does not include an authorization check on …

Aug 26, 2026
CVE-2026-15203

Improper access control in debug and engineering interfaces in Danfoss iC7-Automation SP, iC7-Marine, and iC7-Hybrid GR3 allows attackers to gain read/write access to internal values, …

Aug 26, 2026
CVE-2026-14550
5.3 MEDIUM

The WPCafe WordPress plugin before 3.0.18 does not perform an authorization check when creating a reservation through its REST API, verifying only a publicly available …

Aug 26, 2026
CVE-2026-14216
6.5 MEDIUM

The Booking for Appointments and Events Calendar WordPress plugin before 2.4.7 does not require authentication before processing its pending notification queue, allowing an unauthenticated user …

Aug 26, 2026
CVE-2026-14212
4.7 MEDIUM

The Booking for Appointments and Events Calendar WordPress plugin before 9.8 does not verify that an authenticated employee (provider) owns the provider account being updated, …

Aug 26, 2026
CVE-2026-13406
5.3 MEDIUM

The Royal Addons for Elementor WordPress plugin before 1.7.1066 does not perform any capability or nonce check before returning taxonomy term data for an arbitrary, …

Aug 26, 2026
CVE-2026-13404
5.3 MEDIUM

The Royal Addons for Elementor WordPress plugin before 1.7.1066 does not perform any capability or ownership check (relying only on a publicly-scrapeable nonce) before writing …

Aug 26, 2026
CVE-2026-13172
5.3 MEDIUM

The Eventin WordPress plugin before 4.1.22 does not restrict access to non-published content by status or ownership in one of its REST API namespaces, allowing …

Aug 26, 2026
CVE-2026-9805
2.7 LOW

SMM IHISI command handler, FMTSWriteUseIntelLib, for FMTS command 0x32, read and write data without checking buffer size and could cause buffer overflow.

Aug 26, 2026
CVE-2026-9252

Rejected reason: This CVE ID has been rejected or withdrawn by its CVE Numbering Authority.

Aug 26, 2026
CVE-2026-9250

Rejected reason: This CVE ID has been rejected or withdrawn by its CVE Numbering Authority.

Aug 26, 2026
CVE-2026-9146

Rejected reason: This CVE ID has been rejected or withdrawn by its CVE Numbering Authority.

Aug 26, 2026
CVE-2026-80216

Rejected reason: duplicate record

Aug 26, 2026
CVE-2026-80214

LibreNMS’s Virtualization Discovery module is vulnerable to command line injection. An authenticated admin user can execute arbitrary code on the host server.

Aug 26, 2026
CVE-2026-80202
8.8 HIGH

Kimai before 2.56.0 does not enforce team-membership checks in TimesheetVoter::voteOnAttribute(), which maps permissions only to own_timesheet or other_timesheet. As a result, any authenticated user with …

Aug 26, 2026
CVE-2026-80201
2.0 LOW

Kimai before 2.53.0 fails to block sensitive User methods in the Twig invoice template sandbox, allowing admins to call getApiToken() and getPlainApiToken() methods. Attackers with …

Aug 26, 2026
CVE-2026-80200
4.7 MEDIUM

Kimai before 2.53.0 contains an open redirect vulnerability in the SAML authentication success handler that accepts unvalidated RelayState POST parameters as redirect destinations. Attackers with …

Aug 26, 2026
CVE-2026-80199
3.7 LOW

Kimai before 2.54.0 contains a timing oracle vulnerability in TokenAuthenticator that allows unauthenticated attackers to enumerate valid usernames via X-AUTH-USER header. Attackers can measure response …

Aug 26, 2026
CVE-2026-80198
7.5 HIGH

Kimai versions before 2.56.0 fail to restrict the config() Twig function in sandboxed invoice and export templates, allowing administrators to access arbitrary configuration keys. Attackers …

Aug 26, 2026
CVE-2026-80197
4.3 MEDIUM

Kimai before 2.57.0 contains an improper authorization vulnerability in the favorite timesheet add and remove endpoints that allows authenticated users to manipulate other users' bookmarks. …

Aug 26, 2026
CVE-2026-80196
7.5 HIGH

Kimai before 2.58.0 contains an authentication bypass vulnerability where password reset links remain valid after password changes because the LoginLink signature covers only the user …

Aug 26, 2026

Scan your infrastructure for known CVEs

Free website and port scanning — find vulnerabilities before attackers do.