CVE Database

57505+ vulnerabilities with CVSS scores, EPSS exploit predictions, and CISA KEV status. Updated daily.

Filter: All CRITICAL HIGH MEDIUM LOW CISA KEV
Sort: Newest CVSS EPSS
CVE-2026-86115
5.0 MEDIUM

Sim before 0.8.14 classifies tool requests as internal based on URL prefix matching without scheme normalization, skipping SSRF validation and minting internal authentication tokens. Authenticated …

Sep 5, 2026
CVE-2026-86114
6.5 MEDIUM

Arcane versions before 2.0.0 fail to properly restrict template operations, allowing default user role accounts to create, modify, and delete compose templates including instance-wide defaults. …

Sep 5, 2026
CVE-2026-86113
6.5 MEDIUM

BookWyrm through 0.9.1 contains an authorization bypass vulnerability in the edit_readthrough function that allows authenticated users to modify other users' reading records. Attackers can exploit …

Sep 5, 2026
CVE-2026-86112
5.4 MEDIUM

BookWyrm through 0.9.1 fails to validate user visibility permissions in the Favorite and Unfavorite views, allowing authenticated attackers to favorite or unfavorite followers-only and direct …

Sep 5, 2026
CVE-2026-86111
6.5 MEDIUM

BookWyrm through 0.9.1 fails to validate user visibility permissions in the status edit endpoint, allowing authenticated attackers to read followers-only and direct-message reviews by enumerating …

Sep 5, 2026
CVE-2026-76573
6.4 MEDIUM

The Pods – Custom Content Types and Fields plugin for WordPress is vulnerable to Stored Cross-Site Scripting via 'not_found' Shortcode Attribute in all versions up …

Sep 5, 2026
CVE-2026-85414
6.4 MEDIUM

The Gallery : FooGallery plugin for WordPress is vulnerable to Stored Cross-Site Scripting via 'custom_settings' Shortcode Attribute in all versions up to, and including, 3.3.2 …

Sep 5, 2026
CVE-2026-75586
6.1 MEDIUM

The Unlimited Elements For Elementor plugin for WordPress is vulnerable to Reflected Cross-Site Scripting via 'formData[id]' Parameter in all versions up to, and including, 2.0.17 …

Sep 5, 2026
CVE-2026-75018
4.3 MEDIUM

The Custom Contact Forms plugin for WordPress is vulnerable to authorization bypass in all versions up to, and including, 7.16. This is due to the …

Sep 5, 2026
CVE-2026-84937
6.8 MEDIUM

The Video Player for YouTube WordPress plugin before 2.1.0 does not properly sanitise and escape user-supplied input before using it in a SQL statement, allowing …

Sep 5, 2026
CVE-2026-84936
5.3 MEDIUM

The EmbedPress WordPress plugin before 4.6.4 does not have proper authorization on a public review-loading action, allowing unauthenticated users to force the site to make …

Sep 5, 2026
CVE-2026-84931
6.8 MEDIUM

The Joli Table Of Contents WordPress plugin before 3.0.3 does not sanitise or escape a shortcode attribute value before outputting it inside an HTML element's …

Sep 5, 2026
CVE-2026-84930
6.8 MEDIUM

The CatFolders Document Gallery & PDF Library WordPress plugin before 2.0.7 does not properly validate a block attribute before using it as an HTML tag …

Sep 5, 2026
CVE-2026-84901
4.9 MEDIUM

The Eventin WordPress plugin before 4.1.22 does not properly check authorization on several of its event-management REST routes, allowing users with contributor-level access and above …

Sep 5, 2026
CVE-2026-84899
6.8 MEDIUM

The VikWidgetsLoader WordPress plugin before 1.12.0 does not sanitise or escape a block attribute before outputting it inside an inline script, allowing users with the …

Sep 5, 2026
CVE-2026-84898
6.6 MEDIUM

The Eventin WordPress plugin before 4.1.21 does not properly validate a template path value before using it to include a local file, allowing users with …

Sep 5, 2026
CVE-2026-84896
6.8 MEDIUM

The King Addons for Elementor WordPress plugin before 51.1.77 does not escape a widget display-style setting before outputting it in an HTML attribute, allowing users …

Sep 5, 2026
CVE-2026-84221
6.8 MEDIUM

The Kirki WordPress plugin before 6.3.0 does not escape a user-supplied identifier before using it in a SQL query, allowing users with editor-level access and …

Sep 5, 2026
CVE-2026-84022
6.8 MEDIUM

The Bold Page Builder WordPress plugin before 5.9.8 does not sanitise and escape several shortcode attributes before outputting them in HTML attributes, allowing users with …

Sep 5, 2026
CVE-2026-84021
6.8 MEDIUM

The Bold Page Builder WordPress plugin before 5.9.8 does not properly validate a link URL before outputting it in an HTML attribute, relying on a …

Sep 5, 2026
CVE-2026-83544
6.8 MEDIUM

The Greenshift WordPress plugin before 13.2.0 does not properly escape a block animation attribute before outputting it within an HTML attribute, allowing users with contributor-level …

Sep 5, 2026
CVE-2026-83543
4.1 MEDIUM

The Greenshift WordPress plugin before 13.2.0 does not validate a user-supplied URL before fetching it server-side, allowing users with contributor-level access and above to make …

Sep 5, 2026
CVE-2026-82846
6.8 MEDIUM

The Masteriyo LMS WordPress plugin before 3.4.0 does not sanitise and escape some course settings before outputting them in a page available to all visitors, …

Sep 5, 2026
CVE-2026-81424
5.3 MEDIUM

The Accept Stripe Payments WordPress plugin before 2.1.4 does not verify that the product fulfilled when a checkout is completed matches the product the authoritative …

Sep 5, 2026
CVE-2026-81423
4.3 MEDIUM

The Accept Stripe Payments WordPress plugin before 2.1.4 does not validate a user-supplied URL before using it in a redirect, allowing unauthenticated attackers to redirect …

Sep 5, 2026
CVE-2026-78149
5.3 MEDIUM

The Smart Post WordPress plugin before 4.0.8 does not check whether a post is password protected before returning its content and its stored password through …

Sep 5, 2026
CVE-2026-4361
5.0 MEDIUM

The Divi theme for WordPress is vulnerable to Server-Side Request Forgery in all versions up to, and including, 4.27.6. This is due to the `et_pb_set_video_oembed_thumbnail_resolution()` …

Sep 5, 2026
CVE-2026-3853
6.4 MEDIUM

The Divi theme for WordPress is vulnerable to DOM-Based Stored Cross-Site Scripting via the `image_src` attribute of the `et_pb_video_slider_item` shortcode in all versions up to, …

Sep 5, 2026
CVE-2026-19861
4.7 MEDIUM

The JetFormBuilder — Dynamic Blocks Form Builder WordPress plugin before 3.6.5.2 does not properly sanitise and escape a form field's value before including it in …

Sep 5, 2026
CVE-2026-18843
6.1 MEDIUM

The Beaver Builder Plugin (Starter Version) plugin for WordPress is vulnerable to Reflected Cross-Site Scripting via 'no_results_message' node_preview Parameter in all versions up to, and …

Sep 5, 2026
CVE-2026-15247
5.4 MEDIUM

The Search Atlas SEO WordPress plugin before 2.6.24 does not perform a nonce or capability check before processing a settings update in one of its …

Sep 5, 2026
CVE-2026-14975
6.5 MEDIUM

The WP File Download plugin for WordPress is vulnerable to Directory Traversal in all versions up to, and including, 6.3.8 via the 'remoteurl' parameter. This …

Sep 5, 2026
CVE-2026-8625
6.4 MEDIUM

The Dear Flipbook – PDF Flipbook, 3D Flipbook, PDF embed, PDF viewer plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the 'post_content (Custom …

Sep 5, 2026
CVE-2026-8623
6.4 MEDIUM

The Dear Flipbook – PDF Flipbook, 3D Flipbook, PDF embed, PDF viewer plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the 'post_content (class …

Sep 5, 2026
CVE-2026-83628
4.3 MEDIUM

The Theme My Login plugin for WordPress is vulnerable to Missing Authorization in versions up to, and including, 7.1.15 on Multisite installations. This is due …

Sep 5, 2026
CVE-2026-18404
6.4 MEDIUM

The Social Chat – Click To Chat App Button plugin for WordPress is vulnerable to Stored Cross-Site Scripting via 'consent_message' JSON Attribute in .qlwapp data-box …

Sep 5, 2026
CVE-2025-14945
5.4 MEDIUM

The Events Manager - Calendar, Bookings, Tickets, and more! plugin for WordPress is vulnerable to Stored Cross-Site Scripting via event attribute values in all versions …

Sep 5, 2026
CVE-2026-86144
5.6 MEDIUM

In xinclude in libxml2 before 2.15.4, xmlXIncludeProcess and xmlXIncludeProcessTree do not propagate parseFlags. This has security relevance for, for example, the XML_PARSE_NONET flag, if (without …

Sep 5, 2026
CVE-2026-86143
6.9 MEDIUM

In xmlIO in libxml2 before 2.15.4, an inconsistency in xmlOutputWriteCallback and xmlBufUse causes negative lengths to reach write callbacks, aka a lack of a check …

Sep 5, 2026
CVE-2026-86142
6.9 MEDIUM

In libxml2 before 2.15.4, there is a heap-based buffer overflow in xmlXPtrEvalXPtrPart because of xmlXPtrEval xpointer length saturation.

Sep 5, 2026
CVE-2026-86139
6.9 MEDIUM

In libxml2 before 2.15.4, xmlURIEscapeStr in uri.c has an integer overflow.

Sep 5, 2026
CVE-2026-86138
6.9 MEDIUM

In libxml2 before 2.15.4, xmlDictAddQString in dict.c has an integer overflow and resultant heap-based buffer overflow.

Sep 5, 2026
CVE-2026-86100
6.4 MEDIUM

Camaleon CMS versions 2.7.5 through 2.9.1 fail to validate redirect targets when fetching remote files in the Upload from URL media feature. Authenticated attackers can …

Sep 5, 2026
CVE-2026-52774
6.1 MEDIUM

YesWiki is a wiki system written in PHP. Prior to version 4.6.6, YesWiki's Bazar widget handler reflects the id GET parameter into HTML attributes using …

Sep 5, 2026
CVE-2026-52773
6.1 MEDIUM

YesWiki is a wiki system written in PHP. From version 4.1.0 to before version 4.6.6, YesWiki's archived-revision view reflects the time GET parameter into a …

Sep 5, 2026
CVE-2026-52772
5.5 MEDIUM

YesWiki is a wiki system written in PHP. Prior to version 4.6.6, Bazar form-field templates still apply |raw('html') to field.label / field.hint in attribute and …

Sep 5, 2026
CVE-2026-52763
6.5 MEDIUM

YesWiki is a wiki system written in PHP. Prior to version 4.6.6, the recentchanges action (actions/recentchanges.php) accepts a period argument from two disjoint parameter spaces. …

Sep 5, 2026
CVE-2026-86097
6.5 MEDIUM

PX4 Autopilot through 1.17.0 contains a null pointer dereference vulnerability in param_set_default_file() and param_set_backup_file() functions that allows attackers to crash the autopilot process. Attackers can …

Sep 4, 2026
CVE-2026-86096
5.9 MEDIUM

PX4 Autopilot through 1.17.0 contains a use-after-free vulnerability in TemperatureCalibration::start() due to a race condition between task spawning and object deletion. Attackers can trigger the …

Sep 4, 2026
CVE-2026-76925
5.8 MEDIUM

A flaw was found in Flatpak. A Time-of-check to time-of-use (TOCTOU) race condition exists in the `org.freedesktop.Flatpak.SystemHelper` component. This vulnerability occurs because a privileged `chmod` …

Sep 4, 2026

Scan your infrastructure for known CVEs

Free website and port scanning — find vulnerabilities before attackers do.