CVE Database

52085+ vulnerabilities with CVSS scores, EPSS exploit predictions, and CISA KEV status. Updated daily.

Filter: All CRITICAL HIGH MEDIUM LOW CISA KEV
Sort: Newest CVSS EPSS
CVE-2026-11887
4.3 MEDIUM

The Salon Booking System WordPress plugin before 10.30.20 does not have proper authorisation checks on one of its AJAX actions, allowing any authenticated user, such …

Jul 1, 2026
CVE-2026-11570
4.2 MEDIUM

The User Submitted Posts WordPress plugin before 20260608 does not escape a submitted value before outputting it in an admin-configured display template, leading to a …

Jul 1, 2026
CVE-2026-11562
4.3 MEDIUM

The WS Form LITE WordPress plugin before 1.11.8 does not have a capability check on one of its settings-update actions, allowing authenticated users with subscriber-level …

Jul 1, 2026
CVE-2025-15666
5.3 MEDIUM

A security vulnerability has been detected in Open Asset Import Library Assimp up to 5.4.3. Affected by this vulnerability is the function Assimp::SceneCombiner::Copy of the …

Jul 1, 2026
CVE-2026-9107
6.4 MEDIUM

The Kali Forms — Contact Form & Drag-and-Drop Builder plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the 'meta[kaliforms_field_components]' parameter in all versions …

Jul 1, 2026
CVE-2026-7828
5.3 MEDIUM

UltraVNC repeater through 1.8.2.2 contains an integer overflow in the HTTP request logging path. In repeater/webgui/settings.c:336, the win_log() function allocates list nodes via malloc(sizeof(struct LIST) …

Jul 1, 2026
CVE-2026-58519
5.4 MEDIUM

Improper neutralization of input during web page generation ('cross-site scripting') vulnerability in The Wikimedia Foundation Mediawiki - Cargo Extension allows Stored XSS. This issue affects …

Jul 1, 2026
CVE-2026-44041
4.3 MEDIUM

UltraVNC through 1.8.2.2 contains an out-of-bounds read in the wide-string to multibyte conversion helper. In rfb/dh.cpp:204, the vncWc2Mb() function passes a caller-supplied WCHAR pointer to …

Jul 1, 2026
CVE-2026-44040
4.8 MEDIUM

UltraVNC through 1.8.2.2 uses a cryptographically weak pseudo-random number generator to produce VNC authentication challenge bytes. In rfb/vncauth.c:119-129, the vncRandomBytes() function seeds libc rand() with …

Jul 1, 2026
CVE-2026-2387
6.4 MEDIUM

The Event Organiser plugin for WordPress is vulnerable to Stored Cross-Site Scripting in all versions up to, and including, 3.12.9. This is due to the …

Jul 1, 2026
CVE-2026-13443
6.4 MEDIUM

The Tutor LMS – eLearning and online course solution plugin for WordPress is vulnerable to Stored Cross-Site Scripting via Lesson Attachment Title in all versions …

Jul 1, 2026
CVE-2026-13246
6.4 MEDIUM

The GiveWP – Donation Plugin and Fundraising Platform plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the 'block_id' (and other) shortcode attributes of …

Jul 1, 2026
CVE-2026-13015
6.1 MEDIUM

The Wp Google Places Review Slider plugin for WordPress is vulnerable to Reflected Cross-Site Scripting via the 'place' parameter in versions up to, and including, …

Jul 1, 2026
CVE-2026-12904
4.3 MEDIUM

The Kadence Blocks – Gutenberg Blocks for Page Builder Features plugin for WordPress is vulnerable to Insecure Direct Object Reference in versions up to and …

Jul 1, 2026
CVE-2026-12902
4.3 MEDIUM

The Kadence Blocks — Page Builder Toolkit for Gutenberg Editor plugin for WordPress is vulnerable to authorization bypass in all versions up to, and including, …

Jul 1, 2026
CVE-2026-12135
6.4 MEDIUM

The FV Flowplayer Video Player plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the 'video_player' shortcode 'align' attribute in all versions up to, …

Jul 1, 2026
CVE-2026-12133
4.3 MEDIUM

The JoomSport – for Sports: Team & League, Football, Hockey & more plugin for WordPress is vulnerable to Missing Authorization to Arbitrary Group Deletion in …

Jul 1, 2026
CVE-2026-12127
5.3 MEDIUM

The WPForms – Easy Form Builder for WordPress – Contact Forms, Payment Forms, Surveys, & More plugin for WordPress is vulnerable to Improper Neutralization of …

Jul 1, 2026
CVE-2026-12113
4.3 MEDIUM

The Appointment Booking Calendar plugin for WordPress is vulnerable to Sensitive Information Exposure in all versions up to, and including, 1.4.02 via the cpabc_appointments_filter_list. This …

Jul 1, 2026
CVE-2026-12110
6.5 MEDIUM

The Taskbuilder – Project Management & Task Management Tool With Kanban Board plugin for WordPress is vulnerable to generic SQL Injection via the 'task_search' parameter …

Jul 1, 2026
CVE-2026-12090
6.5 MEDIUM

The Taskbuilder – Project Management & Task Management Tool With Kanban Board plugin for WordPress is vulnerable to generic SQL Injection via the 'wppm_proj_filter' parameter …

Jul 1, 2026
CVE-2026-11988
6.5 MEDIUM

The LearnPress – WordPress LMS Plugin for Create and Sell Online Courses plugin for WordPress is vulnerable to Insecure Direct Object Reference in all versions …

Jul 1, 2026
CVE-2026-11981
4.3 MEDIUM

The GiveWP plugin for WordPress is vulnerable to Cross-Site Request Forgery in versions up to, and including, 4.15.3 This is due to missing nonce validation …

Jul 1, 2026
CVE-2026-11380
6.4 MEDIUM

The JetWidgets For Elementor plugin for WordPress is vulnerable to Stored Cross-Site Scripting in versions up to and including 1.0.21. This is due to insufficient …

Jul 1, 2026
CVE-2026-20463
6.7 MEDIUM

In Modem, there is a possible escalation of privilege due to a permissions bypass. This could lead to local escalation of privilege if a malicious …

Jul 1, 2026
CVE-2026-20462
6.7 MEDIUM

In Telephony, there is a possible memory corruption due to a heap buffer overflow. This could lead to local escalation of privilege if a malicious …

Jul 1, 2026
CVE-2026-20461
5.3 MEDIUM

In Modem, there is a possible out of bounds write due to a missing bounds check. This could lead to remote denial of service, if …

Jul 1, 2026
CVE-2026-20460
5.3 MEDIUM

In Modem, there is a possible information disclosure due to improper input validation. This could lead to remote information disclosure, if a UE has connected …

Jul 1, 2026
CVE-2026-20459
5.3 MEDIUM

In Modem, there is a possible system crash due to improper input validation. This could lead to remote denial of service, if a UE has …

Jul 1, 2026
CVE-2026-20457
5.3 MEDIUM

In Modem, there is a possible system crash due to improper input validation. This could lead to remote denial of service, if a UE has …

Jul 1, 2026
CVE-2026-57963
6.5 MEDIUM

An attacker who can send HTML chat messages (via Matrix or XMPP) can inject arbitrary styled content, phishing links, and CSS that manipulates the chat …

Jul 1, 2026
CVE-2026-57962
5.3 MEDIUM

A malicious LDAP server, which a Thunderbird user is configured to query for address-book autocomplete, can stash arbitrarily large amounts of attacker-supplied data into the …

Jul 1, 2026
CVE-2026-54500
5.3 MEDIUM

Oj (Optimized JSON) is a JSON parser and Object marshaller packaged as a Ruby gem. In versions prior to 3.17.3, Oj.load in :object mode reads …

Jul 1, 2026
CVE-2026-56777
5.0 MEDIUM

n8n before 2.25.7 and 2.26.x before 2.26.2 contains an abstract syntax tree (AST) security validator bypass in the Python Code node. An authenticated user with …

Jun 30, 2026
CVE-2026-56399
5.0 MEDIUM

Open WebUI before 0.6.27 contains a server-side request forgery vulnerability in the /api/v1/retrieval/process/web endpoint that allows authenticated users to bypass SSRF protections. Attackers can manipulate …

Jun 30, 2026
CVE-2026-56356
5.4 MEDIUM

n8n contains a stored cross-site scripting vulnerability in the Chat Trigger node's Custom CSS field due to a misconfiguration of the sanitize-html library. Affected releases …

Jun 30, 2026
CVE-2026-56350
6.3 MEDIUM

n8n before 2.8.0 contains an authentication bypass vulnerability allowing authenticated SSO users to disable SSO enforcement through the API. Attackers can create local password credentials …

Jun 30, 2026
CVE-2026-56334
4.3 MEDIUM

Capgo before 12.128.2 lacks an UPDATE row-level security policy for the build_requests table, preventing API-key and anonymous access from persisting builder status updates. Attackers can …

Jun 30, 2026
CVE-2026-56333
4.3 MEDIUM

Capgo before 12.128.2 contains a server-side validation bypass vulnerability in organization security settings that allows authenticated org admins to persist invalid security policy state. Attackers …

Jun 30, 2026
CVE-2026-56331
5.3 MEDIUM

Capgo before 12.128.2 contains improper error handling in the /private/accept_invitation endpoint that returns HTTP 500 instead of safe 4xx errors when magic_invite_string is invalid. Attackers …

Jun 30, 2026
CVE-2026-56328
6.5 MEDIUM

Capgo before 12.128.2 allows multiple public channels for the same app and platform to coexist simultaneously, while unnamed /updates requests without defaultChannel implicitly resolve to …

Jun 30, 2026
CVE-2026-56327
5.3 MEDIUM

Capgo before 12.128.2 contains an information disclosure vulnerability in the public.invite_user_to_org RPC function that allows unauthenticated attackers to enumerate organization existence by observing distinct error …

Jun 30, 2026
CVE-2026-56318
5.3 MEDIUM

Capgo before 12.128.2 contains an information disclosure vulnerability in the /private/validate_password_compliance endpoint that returns different error responses for malformed, non-existent, and existing organization IDs. Unauthenticated …

Jun 30, 2026
CVE-2026-56277
6.5 MEDIUM

Flowise before 3.1.2 sets Access-Control-Allow-Origin to a hardcoded wildcard (*) on its text-to-speech (TTS) generation endpoint (packages/server/src/controllers/text-to-speech/index.ts), independent of the server's configured CORS policy. This …

Jun 30, 2026
CVE-2026-56224
5.4 MEDIUM

Capgo console.capgo.app/login before 12.128.2 accepts access_token and refresh_token in URL query parameters, automatically authenticating users without confirmation. Attackers can craft malicious links to force victims …

Jun 30, 2026
CVE-2026-50040
6.1 MEDIUM

Storage Concentrator (SC & SCVM) is vulnerable to reflected cross-site scripting due to unsanitized content being echoed back in 404 error pages. An attacker can …

Jun 30, 2026
CVE-2026-28322
5.6 MEDIUM

SolarWinds Database Performance Analyzer was found to be affected by a stored cross-site scripting vulnerability, which when exploited, can lead to unintended script execution.

Jun 30, 2026
CVE-2026-14156
6.5 MEDIUM

Insufficient policy enforcement in StorageAccessAPI in Google Chrome prior to 150.0.7871.47 allowed a remote attacker who had compromised the renderer process to bypass same origin …

Jun 30, 2026
CVE-2026-14155
6.5 MEDIUM

Insufficient policy enforcement in StorageAccessAPI in Google Chrome prior to 150.0.7871.47 allowed a remote attacker to leak cross-origin data via a crafted HTML page. (Chromium …

Jun 30, 2026
CVE-2026-14154
4.8 MEDIUM

Inappropriate implementation in DevTools in Google Chrome prior to 150.0.7871.47 allowed an attacker who convinced a user to install a malicious extension to perform UI …

Jun 30, 2026

Scan your infrastructure for known CVEs

Free website and port scanning — find vulnerabilities before attackers do.