CVE Database

57505+ vulnerabilities with CVSS scores, EPSS exploit predictions, and CISA KEV status. Updated daily.

Filter: All CRITICAL HIGH MEDIUM LOW CISA KEV
Sort: Newest CVSS EPSS
CVE-2026-86257
5.4 MEDIUM

wger before 2.6 fails to sanitize first_name and last_name fields in the gym member TSV export endpoint, allowing any gym member to inject spreadsheet formulas. …

Sep 6, 2026
CVE-2026-86256
5.4 MEDIUM

wger before 2.6 (affected versions <= 2.5.0) contains an open redirect vulnerability in the trainer_login view (wger/core/views/user.py). After a trainer enters impersonation mode, the view …

Sep 6, 2026
CVE-2026-86255
6.5 MEDIUM

wger before 2.5 fails to validate the maximum duration of routine date ranges, allowing authenticated users to create routines spanning arbitrarily long periods. Attackers can …

Sep 6, 2026
CVE-2026-86254
6.8 MEDIUM

wger versions through master contain an incomplete authorization bypass in wger/core/views/user.py where three views retain the original gym-scope check using raw integer comparison instead of …

Sep 6, 2026
CVE-2026-86253
5.9 MEDIUM

h3 (npm package) versions <= 2.0.1-rc.14 contain a path traversal vulnerability in serveStatic(). On Node.js deployments, event.url.pathname is not normalized, so percent-encoded dot segments (%2e%2e) …

Sep 6, 2026
CVE-2026-86252
5.3 MEDIUM

h3 versions before 1.15.9 fail to sanitize carriage return characters in EventStream data and comment fields, allowing attackers to inject arbitrary SSE events by including …

Sep 6, 2026
CVE-2026-86251
5.9 MEDIUM

h3 versions before 1.15.9 contain a path traversal vulnerability in the serveStatic utility. A double-decoding flaw allows a request path containing double-encoded dot sequences (e.g. …

Sep 6, 2026
CVE-2026-86212
4.3 MEDIUM

A vulnerability has been found in Open5GS 2.7.7/2.8.0. This vulnerability affects unknown code of the component AMF/MME. The manipulation leads to improper authorization. The attack …

Sep 6, 2026
CVE-2026-86205
5.4 MEDIUM

h3 versions before 2.0.1-rc.18 contain an open redirect vulnerability in the redirectBack() utility that fails to sanitize protocol-relative paths in the Referer header pathname. Attackers …

Sep 6, 2026
CVE-2022-51008
5.3 MEDIUM

PocketMine-MP before 4.12.3 fails to limit unauthenticated sessions, allowing attackers to exhaust player slots by creating sessions without sending LoginPacket. Attackers can flood the server …

Sep 6, 2026
CVE-2021-48007
6.5 MEDIUM

PocketMine-MP versions before 3.18.1 fail to validate NaN or INF values in MovePlayerPacket position and rotation fields. Malicious clients can send crafted movement packets with …

Sep 6, 2026
CVE-2020-37277
6.5 MEDIUM

PocketMine-MP versions before 3.15.4 contain a denial of service vulnerability in the InventoryTransaction component's findResultItem() method. Malicious clients can send specially crafted InventoryTransactionPackets with multiple …

Sep 6, 2026
CVE-2026-80439
4.8 MEDIUM

The Redirection for Contact Form 7 WordPress plugin from 2.2.7 before 3.2.11 does not prevent shortcodes in submitted form values from being executed when it …

Sep 6, 2026
CVE-2026-80437
4.8 MEDIUM

The Ninja Forms WordPress plugin from 3.14.10 before 3.15.2 does not prevent shortcodes in request-derived values from being executed when it substitutes them into content …

Sep 6, 2026
CVE-2026-19862
4.8 MEDIUM

The JetFormBuilder WordPress plugin before 3.6.5.2 does not validate or strip line breaks from address values it sources from submitted form fields before adding them …

Sep 6, 2026
CVE-2026-19859
6.5 MEDIUM

The JetFormBuilder WordPress plugin before 3.6.5.2 does not sanitize a request parameter before rendering it as message content, allowing unauthenticated users to execute arbitrary shortcodes …

Sep 6, 2026
CVE-2026-86183
5.3 MEDIUM

A vulnerability was identified in diem-project diem up to 5.1.3. This vulnerability affects unknown code of the file dmFrontPlugin/modules/dmWidget/lib/BasedmWidgetActions.class.php of the component dmWidget. Such manipulation …

Sep 6, 2026
CVE-2026-86182
4.3 MEDIUM

A vulnerability was determined in diem-project diem up to 5.1.3. This affects the function executeCommand of the file dmAdminPlugin/modules/dmConsole/actions/actions.class.php of the component dmConsole. This manipulation …

Sep 6, 2026
CVE-2026-86179
5.3 MEDIUM

A flaw has been found in code-projects Daily Expense Manager 1.0. Affected is an unknown function of the file /Daily-Expense-Manager/exp_ak.sql of the component Database Backup …

Sep 6, 2026
CVE-2026-86172
6.3 MEDIUM

A vulnerability was detected in DefaultFuction CRM 1.0.0. This impacts an unknown function of the file /modules/customers/delete.php. Performing a manipulation of the argument ID results …

Sep 6, 2026
CVE-2026-86171
6.3 MEDIUM

A security vulnerability has been detected in DefaultFuction CRM 1.0.0. This affects an unknown function of the file /modules/orders/delete.php. Such manipulation of the argument ID …

Sep 6, 2026
CVE-2026-85038
5.3 MEDIUM

The B2BKing — Ultimate WooCommerce B2B and Wholesale Plugin — Wholesale Prices, Bulk Order Form & More WordPress plugin before 5.2.40 does not verify that …

Sep 6, 2026
CVE-2026-84028
6.8 MEDIUM

The Bold Page Builder WordPress plugin before 5.9.9 does not sanitise and escape a shortcode attribute before outputting it in an HTML attribute, allowing users …

Sep 6, 2026
CVE-2026-75793
6.5 MEDIUM

The SureCart WordPress plugin before 4.7.0 does not consult the site's user registration setting before creating WordPress accounts, allowing unauthenticated users to create an account …

Sep 6, 2026
CVE-2026-13159
4.3 MEDIUM

The Real Estate Papi WordPress theme through 1.0.5 does not perform capability or CSRF checks on one of its AJAX actions, allowing any authenticated user, …

Sep 6, 2026
CVE-2026-86170
6.3 MEDIUM

A weakness has been identified in DefaultFuction CRM 1.0.0. The impacted element is an unknown function of the file /modules/orders/edit.php. This manipulation of the argument …

Sep 6, 2026
CVE-2026-86164
6.3 MEDIUM

A security flaw has been discovered in itsourcecode Sales and Inventory System 1.0. Affected is an unknown function of the file /pages/trans_view.php. The manipulation of …

Sep 6, 2026
CVE-2026-86163
6.3 MEDIUM

A vulnerability was identified in itsourcecode Sales and Inventory System 1.0. This impacts an unknown function of the file /pages/pro_del.php. The manipulation of the argument …

Sep 6, 2026
CVE-2026-86150
4.1 MEDIUM

A security vulnerability has been detected in Tenda CP3 27.5.57.101. Impacted is an unknown function of the file custom-x/softap/hostapd. Such manipulation of the argument wpa_passphrase …

Sep 5, 2026
CVE-2026-6554
5.5 MEDIUM

libpcap BPF interpreter treats the offset in the 'ja L' BPF instruction as a signed integer to implement looping via backward jumps, but it does …

Sep 5, 2026
CVE-2026-6244
5.5 MEDIUM

libpcap BPF interpreter for the 'div #k' and 'mod #k' ALU instructions does not check whether the immediate value is zero. In particular uncommon use …

Sep 5, 2026
CVE-2026-31912
5.5 MEDIUM

libpcap BPF interpreter detects neither reaching the end of the filter program buffer due to lack of a return instruction nor executing a jump instruction …

Sep 5, 2026
CVE-2026-31911
5.5 MEDIUM

libpcap BPF interpreter calls abort() if it encounters a BPF instruction that has an invalid opcode. In particular uncommon use cases a crafted filter program …

Sep 5, 2026
CVE-2026-18313
4.3 MEDIUM

rpcapd can allocate up to 65536 bytes per each RPCAP_MSG_UPDATEFILTER_REQ or RPCAP_MSG_STARTCAP_REQ message received from the client, but it never frees the memory, so it …

Sep 5, 2026
CVE-2026-18238
5.0 MEDIUM

The rpcap client code that processes a RPCAP_MSG_PACKET message received from the server incorrectly validates its headers. A malicious server can send a crafted message …

Sep 5, 2026
CVE-2026-86192
6.5 MEDIUM

SiYuan versions before v3.8.2 fail to properly filter private attribute-view cell values in the getAttributeViewKeys endpoint. Publish readers can retrieve hidden KeyValues payloads from rows …

Sep 5, 2026
CVE-2026-86191
4.3 MEDIUM

SiYuan versions before v3.8.2 contain an information disclosure vulnerability in the getAttributeViewKeysByID endpoint that allows publish readers to enumerate private attribute view key definitions without …

Sep 5, 2026
CVE-2026-86187
5.9 MEDIUM

WWBN AVideo generates passwords for external-login accounts using rand() instead of a cryptographic generator, producing only 31-bit integers. Attackers with access to password hashes can …

Sep 5, 2026
CVE-2026-86186
6.5 MEDIUM

AVideo API fails to enforce rate limits when clients send a bot User-Agent header, allowing attackers to bypass all eight protected operations including login brute-force …

Sep 5, 2026
CVE-2026-15550
4.3 MEDIUM

The Ninja Forms - Save Progress plugin for WordPress is vulnerable to Missing Authorization in versions up to, and including, 3.0.30. This is due to …

Sep 5, 2026
CVE-2026-12843
5.4 MEDIUM

The LearnDash LMS plugin for WordPress is vulnerable to authorization bypass in versions 4.25.0 - 5.1.6. This is due to the plugin not properly verifying …

Sep 5, 2026
CVE-2025-15647
5.5 MEDIUM

CDT before 1.4.5 contains an out-of-bounds read vulnerability in the opposedVertexInd() function when constraint edge intersections are computed in floating point and round outside adjacent …

Sep 5, 2026
CVE-2026-86178
5.4 MEDIUM

Pixelfed through 0.12.9 fails to validate follower status in StoryComposeController react and comment endpoints, allowing authenticated users to access follower-only stories. Attackers can enumerate sequential …

Sep 5, 2026
CVE-2026-86176
4.3 MEDIUM

NetBox through 4.7.0 fails to properly scope user-private records in REST and GraphQL API endpoints for Notifications, Subscriptions, and Bookmarks. Authenticated users with view permissions …

Sep 5, 2026
CVE-2026-86175
6.5 MEDIUM

NetBox through 4.7.0 fails to redact sensitive data source backend credentials in REST and GraphQL API responses. Authenticated users with only view permission can retrieve …

Sep 5, 2026
CVE-2026-86174
4.3 MEDIUM

Plane through 1.4.2 fails to validate that issues belong to the deploy board's project in the public comment endpoint. Authenticated attackers can post comments to …

Sep 5, 2026
CVE-2026-86122
5.0 MEDIUM

Rowboat through 0.9.1 fails to validate custom MCP server and webhook URLs, allowing authenticated users to configure arbitrary destinations. Attackers can point these URLs at …

Sep 5, 2026
CVE-2026-86120
4.3 MEDIUM

APITable through 1.13.0-beta.1 contains an incorrect authorization vulnerability in NodePermissionGuard that fails to enforce node-level access control when permission lookups throw exceptions. Attackers with valid …

Sep 5, 2026
CVE-2026-86118
4.3 MEDIUM

gonic versions before 0.22.0 fail to validate administrator privileges in the startScan endpoint, allowing any authenticated user to trigger media library rescans. Attackers can repeatedly …

Sep 5, 2026
CVE-2026-86116
6.5 MEDIUM

Metabase versions before 0.63.1 fail to enforce data analyst permission checks on glossary API endpoints, allowing any authenticated user to create, modify, and delete glossary …

Sep 5, 2026

Scan your infrastructure for known CVEs

Free website and port scanning — find vulnerabilities before attackers do.