CVE Database

57505+ vulnerabilities with CVSS scores, EPSS exploit predictions, and CISA KEV status. Updated daily.

Filter: All CRITICAL HIGH MEDIUM LOW CISA KEV
Sort: Newest CVSS EPSS
CVE-2026-82123
6.5 MEDIUM

Improper neutralization of input during web page generation ('cross-site scripting') vulnerability in Tangible Loops & Logic.

Aug 28, 2026
CVE-2026-79995
4.3 MEDIUM

The User Registration & Membership WordPress plugin before 5.2.5 does not verify that the account whose pending email change is being cancelled belongs to the …

Aug 28, 2026
CVE-2026-79706
5.3 MEDIUM

The Breeze Cache WordPress plugin before 2.5.13 does not sanitise a value taken from the request before using it to build the paths of the …

Aug 28, 2026
CVE-2026-78238
5.4 MEDIUM

SOY Gallery contains a cross-site scripting vulnerability. An arbitrary script may be executed on the web browser of the user who is logging in to …

Aug 28, 2026
CVE-2026-77838
5.4 MEDIUM

SOY Calendar contains a cross-site scripting vulnerability. An arbitrary script may be executed on the web browser of the user who is logging in to …

Aug 28, 2026
CVE-2026-77701
5.3 MEDIUM

The WCFM Marketplace WordPress plugin before 3.8.2 does not correctly verify that the person requesting a refund owns the order, allowing unauthenticated users to create …

Aug 28, 2026
CVE-2026-73827
5.4 MEDIUM

SOY Calendar contains a cross-site scripting vulnerability. An arbitrary script may be executed on the web browser of the user who is logging in to …

Aug 28, 2026
CVE-2026-4246
6.1 MEDIUM

The ElementsKit Pro plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the 's' parameter of the Advanced Search REST endpoint in all versions …

Aug 28, 2026
CVE-2026-14567
5.3 MEDIUM

The User Frontend WordPress plugin before 4.3.10 does not restrict access to its user directory search endpoint, allowing unauthenticated attackers to retrieve the email address …

Aug 28, 2026
CVE-2026-12514
5.3 MEDIUM

The Shared Files WordPress plugin before 1.7.67, shared-files-pro WordPress plugin before 1.7.70 do not perform a capability check in their file-upload handler, which is registered …

Aug 28, 2026
CVE-2026-12513
6.8 MEDIUM

The Shared Files WordPress plugin before 1.7.67, shared-files-pro WordPress plugin before 1.7.68 do not properly sanitize a file path taken from a frontend file submission …

Aug 28, 2026
CVE-2026-82081
6.4 MEDIUM

wallabag 2 through 2.6.14 allows SSRF because a crafted title or content field is mishandled during PDF export.

Aug 28, 2026
CVE-2026-3129
6.4 MEDIUM

The LiteSpeed Cache plugin for WordPress is vulnerable to Stored Cross-Site Scripting via crafted `<img>` tag attributes in all versions up to, and including, 7.7. …

Aug 28, 2026
CVE-2026-16759
6.5 MEDIUM

The Tutor LMS – eLearning and online course solution plugin for WordPress is vulnerable to Remote Code Execution limited to zero-argument function invocation in all …

Aug 28, 2026
CVE-2026-16654
6.4 MEDIUM

The Avada (Fusion) Builder plugin for WordPress is vulnerable to Stored Cross-Site Scripting via 'size' Shortcode Attribute in all versions up to, and including, 3.15.6 …

Aug 28, 2026
CVE-2026-15798
6.4 MEDIUM

The Smart Slider 3 plugin for WordPress is vulnerable to Stored Cross-Site Scripting via 'slider' Block Attribute in all versions up to, and including, 3.5.1.38 …

Aug 28, 2026
CVE-2026-61802
6.5 MEDIUM

Wazuh is an open-source security platform providing unified XDR and SIEM protection for endpoints and cloud workloads. In versions 4.14.0 through 4.14.6, a low-privilege API …

Aug 28, 2026
CVE-2026-38819
5.3 MEDIUM

Multiple memory leaks in openNDS before 11.0.0 allow an unauthenticated attacker on the captive portal network to exhaust all available memory on the device within …

Aug 28, 2026
CVE-2026-81847
5.5 MEDIUM

A vulnerability was found in MAA-AI MaaMCP up to 1.1.1.dev6+g2e4a41287. The affected element is the function save_pipeline/load_pipeline of the file pipeline_tools.py. Performing a manipulation results …

Aug 28, 2026
CVE-2026-81845
6.3 MEDIUM

A vulnerability has been found in arben-adm mcp-sequential-thinking up to 0.5.0. Impacted is the function import_session/export_session of the file mcp_sequential_thinking/server.py of the component Import Session/Export …

Aug 28, 2026
CVE-2026-81837
6.3 MEDIUM

A flaw has been found in RooCodeInc Roo-Code up to 3.51.1. This issue affects the function path.resolve of the file src/core/tools/ApplyPatchTool.ts of the component ApplyPatchTool. …

Aug 28, 2026
CVE-2026-81835
5.5 MEDIUM

A security vulnerability has been detected in RooCodeInc Roo-Code up to 3.51.1. This affects the function fetch_instructions of the file malicious_mcp_server.py of the component MCP …

Aug 28, 2026
CVE-2026-80179
5.9 MEDIUM

A flaw was found in jwcrypto. A remote attacker can send a specially crafted JSON Web Encryption (JWE) token containing numerous period delimiters. This malformed …

Aug 28, 2026
CVE-2026-75548
5.4 MEDIUM

The affected Ebyte device web management interface does not restrict the interface from being rendered within an external frame. An unauthenticated remote attacker could use …

Aug 28, 2026
CVE-2026-73839
4.6 MEDIUM

Administrative credentials may be exposed in plaintext within the Ebyte device's management interface, increasing the risk of credential compromise through visual or remote observation. This …

Aug 28, 2026
CVE-2026-71396
5.4 MEDIUM

Bendix EC80 Brake ECU uses hard-coded credentials, which could allow an attacker to disable automatic traction control.

Aug 28, 2026
CVE-2026-68967
6.5 MEDIUM

Bendix EC80 Brake ECU is vulnerable to an out-of-bounds write, which could allow an attacker to deliver a payload that could establish an arbitrary write …

Aug 28, 2026
CVE-2026-54084
5.3 MEDIUM

Wazuh is an open-source security platform providing unified XDR and SIEM protection for endpoints and cloud workloads. In versions 4.0.0 through 4.14.6, a malicious or …

Aug 28, 2026
CVE-2026-38343
6.5 MEDIUM

An integer overflow in the libavfilter/vf_scale.c component of FFmpeg N-122528-gdd2976b9e1 allows attackers to cause a Denial of Service (DoS) via supplying a crafted video file.

Aug 28, 2026
CVE-2026-81893
4.7 MEDIUM

A flaw was found in gdk-pixbuf. When loading a specially crafted JPEG image containing chunked ICC profile markers, an error during ICC profile parsing can …

Aug 27, 2026
CVE-2026-81834
6.3 MEDIUM

A weakness has been identified in RooCodeInc Roo-Code up to 3.51.1. Affected by this issue is the function ExecaTerminalProcess of the component README File Handler. …

Aug 27, 2026
CVE-2026-81833
5.5 MEDIUM

A security flaw has been discovered in RooCodeInc Roo-Code up to 3.51.1. Affected by this vulnerability is the function optimizeQuery of the file src/utils/helpers.ts of …

Aug 27, 2026
CVE-2026-81731
5.4 MEDIUM

Frappe 15.11.0 through 16.32.0 stores and renders the workspace card description without XSS filtering. The description field of the Workspace Link doctype is declared with …

Aug 27, 2026
CVE-2026-81729
6.5 MEDIUM

Dolibarr before 23.0.4 authorizes REST API document deletion against the wrong permission. Documents::delete() in htdocs/api/class/api_documents.class.php calls dol_check_secure_access_document() with the mode argument 'read' when handling DELETE …

Aug 27, 2026
CVE-2026-81530
5.6 MEDIUM

A weakness in the client-side encryption configuration surface of the MongoDB C# Driver causes sensitive key-management credential material supplied by the application to be reproduced …

Aug 27, 2026
CVE-2026-81528
5.4 MEDIUM

A MongoDB C# driver document-replacement code path omits the element-name/shape validation that the equivalent write paths apply, so a value supplied as a replacement is …

Aug 27, 2026
CVE-2026-81527
6.5 MEDIUM

A NoSQL/expression injection weakness exists in the LINQ-to-aggregation query translation layer of the MongoDB C# Driver, in both aggregation expression and query filter translation. When …

Aug 27, 2026
CVE-2026-81526
6.5 MEDIUM

The MongoDB Rust Driver does not neutralize special characters in a caller-supplied target identifier before embedding it in the request it sends to the server. …

Aug 27, 2026
CVE-2026-81524
5.4 MEDIUM

A weakness in the MongoDB C Driver allows special elements in caller-supplied database and collection name components to pass without sanitization when the driver composes …

Aug 27, 2026
CVE-2026-81523
4.4 MEDIUM

A missing input-validation issue in MongoDB libmongocrypt's automatic-encryption context setup allows a caller-supplied database identifier to be accepted without sanitization. The resulting impact is limited …

Aug 27, 2026
CVE-2026-81521
6.5 MEDIUM

The MongoDB Go Driver's client-level bulk write operation may accept a caller-supplied database name containing a reserved separator character without escaping it before the name …

Aug 27, 2026
CVE-2026-59322
6.3 MEDIUM

The EmbeddedHeadersJsonMessageMapper defaults to an overly permissive header parsing posture in its constructor. When decodeNativeFormat processes raw byte payloads, it deserializes embedded JSON headers into …

Aug 27, 2026
CVE-2026-59321
4.2 MEDIUM

A single ScriptEngine instance is reused for every message on a script-backed channel. For JSR-223 engines that report THREADING=null (not thread-safe, e.g. the Kotlin kts …

Aug 27, 2026
CVE-2026-59320
6.5 MEDIUM

When a container-level ErrorHandler is configured (the mitigation for finding 221000), each delivery whose processing throws still permanently consumes one link credit. After initialCredits (default …

Aug 27, 2026
CVE-2026-59319
4.3 MEDIUM

RedisChatMemoryRepository.findByMetadata() builds RediSearch tag and text queries from caller-supplied metadata values without applying RediSearchUtil.escape(), unlike get(), clear(), and findByTimeRange() in the same class which do …

Aug 27, 2026
CVE-2026-59317
6.5 MEDIUM

DeadLetterPublishingRecovererFactory reads the retry_topic-original-timestamp header from an inbound ConsumerRecord and passes its raw bytes directly to new BigInteger(header.value()) with no length or format validation. Spring …

Aug 27, 2026
CVE-2026-59315
5.3 MEDIUM

The Spring Cloud Config Monitor is susceptible to Denial of Service attacks via malicious payloads. Spring Cloud Config 5.0.0 - 5.0.4 Spring Cloud Config 4.3.0 …

Aug 27, 2026
CVE-2026-59311
6.8 MEDIUM

A local unprivileged user on the same host can redirect all Zip/UnZip transformer output into a directory of their choosing by pre-creating /tmp/ziptransformer as a …

Aug 27, 2026
CVE-2026-59294
5.9 MEDIUM

ResourceCacheService.getCacheName() builds the on-disk filename by appending the URI fragment verbatim, without stripping path separators or .. sequences, and passes the result to new File(resourceParentFolder, …

Aug 27, 2026
CVE-2026-59293
6.6 MEDIUM

Unless the application explicitly raises smbMinVersion, the jCIFS client will negotiate down to SMB1/CIFS, which lacks mandatory signing/encryption and is vulnerable to NTLM relay and …

Aug 27, 2026

Scan your infrastructure for known CVEs

Free website and port scanning — find vulnerabilities before attackers do.