CVE Database

57505+ vulnerabilities with CVSS scores, EPSS exploit predictions, and CISA KEV status. Updated daily.

Filter: All CRITICAL HIGH MEDIUM LOW CISA KEV
Sort: Newest CVSS EPSS
CVE-2026-82451
6.1 MEDIUM

Formwork through 2.3.14 contains a stored cross-site scripting vulnerability in visit tracking that records the Referer header host unescaped. Unauthenticated attackers can craft malicious Referer …

Aug 29, 2026
CVE-2026-82449
5.3 MEDIUM

Cockpit CMS before 2.14.1 contains an account enumeration vulnerability in the auth check endpoint due to timing discrepancies in password verification. Attackers can measure response …

Aug 29, 2026
CVE-2026-82364
4.2 MEDIUM

A security vulnerability has been detected in macrozheng mall up to 1.0.3. This impacts an unknown function of the file /order/submit of the component Order …

Aug 29, 2026
CVE-2026-81346
4.3 MEDIUM

The Frontend Admin by DynamiApps WordPress plugin before 3.29.11 does not perform a capability check on one of its AJAX actions, allowing any authenticated user, …

Aug 29, 2026
CVE-2026-81342
4.7 MEDIUM

The MasterStudy LMS WordPress Plugin WordPress plugin before 3.7.43 does not validate a redirect parameter supplied during user registration before using it, allowing unauthenticated attackers …

Aug 29, 2026
CVE-2026-81026
4.8 MEDIUM

The MasterStudy LMS WordPress Plugin WordPress plugin before 3.7.40 does not verify the amount, receiver, currency or status of a payment notification before marking the …

Aug 29, 2026
CVE-2026-80488
4.1 MEDIUM

The WP Ultimate CSV Importer WordPress plugin before 9.0 does not properly sanitise and escape imported field values before using them in a SQL statement, …

Aug 29, 2026
CVE-2026-80311
4.3 MEDIUM

The Stripe Payment Forms by WP Full Pay WordPress plugin before 8.5.5 does not verify that a subscription belongs to the customer bound to the …

Aug 29, 2026
CVE-2026-77786
4.9 MEDIUM

The Rank Math SEO WordPress plugin before 1.0.277 does not check that the user requesting an automated SEO fix holds the capability WordPress itself requires …

Aug 29, 2026
CVE-2026-77010
6.5 MEDIUM

The HEL Online Classroom: AI-powered Online Classrooms WordPress plugin through 1.0.3 does not perform authorisation checks on its REST API routes and does not consistently …

Aug 29, 2026
CVE-2026-77008
6.5 MEDIUM

The HEL Online Classroom: AI-powered Online Classrooms WordPress plugin through 1.0.3 does not have any authorisation or authentication check when saving its settings, allowing unauthenticated …

Aug 29, 2026
CVE-2026-76547
6.6 MEDIUM

The User Profile Builder WordPress plugin before 4.0.1 does not validate the type of data being deserialized when importing a configuration file, allowing high privilege …

Aug 29, 2026
CVE-2026-76546
6.8 MEDIUM

The User Profile Builder WordPress plugin before 4.0.1 does not escape the output of one of its optional shortcodes, allowing users with a role as …

Aug 29, 2026
CVE-2026-19430
5.3 MEDIUM

The Catfolders Document Gallery Pro WordPress plugin before 2.0.7 does not authorise some of its REST API routes, and the token identifying the requested content …

Aug 29, 2026
CVE-2026-18234
6.5 MEDIUM

The MStore API WordPress plugin before 4.21.1 does not verify that the order targeted by its wallet payment handling belongs to the requester, and does …

Aug 29, 2026
CVE-2026-18233
6.5 MEDIUM

The MStore API WordPress plugin before 4.21.1 does not verify that the order targeted by one of its delivery endpoints belongs to the requester, allowing …

Aug 29, 2026
CVE-2026-17522
5.4 MEDIUM

The Newsletters WordPress plugin before 4.17 does not perform any nonce or capability check when saving one of its settings screens, and writes every submitted …

Aug 29, 2026
CVE-2026-17520
4.8 MEDIUM

The Newsletters WordPress plugin before 4.17 does not generate its API key using a sufficiently random source, deriving it from a publicly known value, allowing …

Aug 29, 2026
CVE-2026-55860
5.9 MEDIUM

MariaDB Connector/R2DBC is a non-blocking MariaDB and MySQL client implemented in Java. Prior to 1.4.1, org.mariadb:r2dbc-mariadb does not gate clear-text password authentication plugins on transport …

Aug 28, 2026
CVE-2026-55859
5.9 MEDIUM

MariaDB Connector/R2DBC is a non-blocking MariaDB and MySQL client implemented in Java. Prior to 1.4.1, org.mariadb:r2dbc-mariadb encodes and decodes all character data under the assumption …

Aug 28, 2026
CVE-2026-55858
5.9 MEDIUM

MariaDB Connector/J is used to connect applications developed in Java to MariaDB and MySQL databases. Prior to 2.7.14, 3.3.5, 3.4.3, and 3.5.9, the connector encodes …

Aug 28, 2026
CVE-2026-55857
5.9 MEDIUM

MariaDB Connector/J is used to connect applications developed in Java to MariaDB and MySQL databases. Prior to 2.7.14, 3.3.5, 3.4.3, and 3.5.9, PAM dialog authentication …

Aug 28, 2026
CVE-2026-55856
5.9 MEDIUM

MariaDB Connector/J is used to connect applications developed in Java to MariaDB and MySQL databases. Prior to 2.7.14, 3.3.5, 3.4.3, and 3.5.9, when a Java …

Aug 28, 2026
CVE-2026-55855
6.5 MEDIUM

MariaDB Connector/Node.js is used to connect applications developed on Node.js to MariaDB and MySQL databases. Prior to 3.2.4, 3.3.3, 3.4.6, and 3.5.3, MariaDB Connector/Node.js permits …

Aug 28, 2026
CVE-2026-55854
5.9 MEDIUM

MariaDB Connector/Node.js is used to connect applications developed on Node.js to MariaDB and MySQL databases. Prior to 3.2.4, 3.3.3, 3.4.6, and 3.5.3, MariaDB Connector/Node.js can …

Aug 28, 2026
CVE-2026-55779
5.4 MEDIUM

Silverstripe Versioned provides versioning for Silverstripe models. Prior to 3.2.1, RestoreAction::getRestoreMessage() in src/RestoreAction.php builds ArchiveAdmin restore notifications rendered as CAST_HTML and inserts $restoredItem->Title, $restoredItem->URLSegment, $restoredItem->CMSEditLink(), …

Aug 28, 2026
CVE-2026-82018
6.1 MEDIUM

IGEL OS 12 before 12.9.0, 12.8.3 LTS and IGEL OS 11 before 11.11.150 contain a secure boot bypass vulnerability in the GRUB boot stage that …

Aug 28, 2026
CVE-2026-55696
4.3 MEDIUM

PrivateBin is an online pastebin where the server has zero knowledge of pasted data. Prior to 2.0.5, AttachmentViewer.setAttachment in js/privatebin.js uses getAttachmentMimeType to accept attacker-controlled …

Aug 28, 2026
CVE-2026-51665
4.3 MEDIUM

Incorrect access control in the getTracerouteCfg function of TOTOLINK T6 4.1.5cu.748_B20211015 allows unauthenticated attackers to obtain traceroute diagnostic logs via sending a crafted POST request …

Aug 28, 2026
CVE-2026-51664
4.3 MEDIUM

Incorrect access control in the getTelnetCfg function of TOTOLINK T6 4.1.5cu.748_B20211015 allows unauthenticated attackers to obtain Telnet service enablement status information via sending a crafted …

Aug 28, 2026
CVE-2026-3686
6.2 MEDIUM

IBM Cloud Pak for Data System 11.3.0.2 through Interim Fix 001 is vulnerable to a denial of service due to improper limitation of resources.

Aug 28, 2026
CVE-2026-19294
6.4 MEDIUM

IBM Langflow OSS 1.0.0 through 1.11.1 could allow a remote authenticated attacker to execute and read any user's private flow due to improper authorization.

Aug 28, 2026
CVE-2026-18545
4.3 MEDIUM

IBM Langflow OSS 1.0.0 through 1.11.1 is vulnerable to server-side request forgery (SSRF). This may allow an authenticated attacker to send unauthorized requests from the …

Aug 28, 2026
CVE-2026-13734
6.5 MEDIUM

Zephyr's WireGuard VPN data-plane receive handler wg_process_data_message() in subsys/net/lib/wireguard/wg_crypto.c validated the anti-replay counter too late. After AEAD decryption of a MESSAGE_TRANSPORT_DATA packet succeeded, the code …

Aug 28, 2026
CVE-2025-64649
5.9 MEDIUM

IBM Concert 1.0.0 through 2.3.1 could allow a remote attacker to perform unauthorized actions using man in the middle techniques due to improper certificate validation.

Aug 28, 2026
CVE-2025-36290
5.9 MEDIUM

IBM Integrated Analytics System 1.0.0.0 through 1.0.31.0 does not validate or improperly validates TLS certificate validation, which could allow an attacker to obtain sensitive information …

Aug 28, 2026
CVE-2025-36271
5.9 MEDIUM

IBM Integrated Analytics System 1.0.0.0 through 1.0.31.0 uses weaker than expected cryptographic algorithms that could allow an attacker to decrypt highly sensitive information.

Aug 28, 2026
CVE-2026-82343
6.1 MEDIUM

A flaw was found in the file-psd plugin in GIMP. When processing a specially crafted PSD image file, the plugin does not properly validate the …

Aug 28, 2026
CVE-2026-82306
6.5 MEDIUM

StarRocks through 4.0.13 contains an information disclosure vulnerability in the query_detail endpoint that returns unfiltered query history for all users. Authenticated attackers with low privileges …

Aug 28, 2026
CVE-2026-82290
5.3 MEDIUM

Chainlit through 2.12.0 fails to validate ownership of feedback records in PUT and DELETE endpoints. Authenticated attackers can delete or modify other users' feedback by …

Aug 28, 2026
CVE-2026-82276
5.3 MEDIUM

StarRocks through 4.0.13 contains an authentication bypass vulnerability in five REST handler classes that override execute() directly instead of implementing executeWithoutPassword(). Attackers can access six …

Aug 28, 2026
CVE-2026-82274
4.7 MEDIUM

Twenty through 2.35.0 contains an open redirect vulnerability in the OAuthPropagatorController.propagateOAuthCallback endpoint that treats the state query parameter as a redirect URL. Attackers can craft …

Aug 28, 2026
CVE-2026-82273
6.5 MEDIUM

Mastra through 1.63.0 contains an authentication bypass vulnerability in the memory API thread ownership validation when mapUserToResourceId callback is omitted from configuration. Authenticated attackers can …

Aug 28, 2026
CVE-2026-82272
6.5 MEDIUM

Immich through 3.1.0 fails to properly enforce locked asset visibility when assets are locked through the single-asset endpoint, allowing them to remain accessible through shared …

Aug 28, 2026
CVE-2026-82271
6.5 MEDIUM

R2R through 3.6.5 fails to properly validate user ownership in conversation update and message handlers, allowing authenticated users to modify other users' conversations. Attackers can …

Aug 28, 2026
CVE-2026-82267
5.4 MEDIUM

Komodo through 2.3.2 discloses internal resource identifiers and writes audit entries before performing permission checks in the /execute and /execute/{variant} handlers. Authenticated users can guess …

Aug 28, 2026
CVE-2026-82265
6.5 MEDIUM

Zipkin through 3.6.1 exposes Spring Boot Actuator endpoints on the tracing API port without authentication, allowing unauthenticated attackers to access sensitive information. Attackers can read …

Aug 28, 2026
CVE-2026-82264
6.8 MEDIUM

Duplicacy through 3.2.5 contains a path traversal vulnerability in the restore function that fails to validate entry paths deserialized from snapshot files. Attackers can craft …

Aug 28, 2026
CVE-2026-82263
6.8 MEDIUM

Logto through 1.42.0 contains a server-side request forgery vulnerability in the OIDC SSO connector creation endpoint that fails to validate the issuer URL parameter. Tenant …

Aug 28, 2026
CVE-2026-82262
6.8 MEDIUM

Logto through 1.42.0 contains a server-side request forgery vulnerability in the POST /api/hooks/:id/test endpoint that accepts arbitrary URLs without host validation. Tenant administrators with Management …

Aug 28, 2026

Scan your infrastructure for known CVEs

Free website and port scanning — find vulnerabilities before attackers do.