CVE Database

45217+ vulnerabilities with CVSS scores, EPSS exploit predictions, and CISA KEV status. Updated daily.

Filter: All CRITICAL HIGH MEDIUM LOW CISA KEV
Sort: Newest CVSS EPSS
CVE-2026-82549
8.3 HIGH

A vulnerability was identified in Linux Foundation Magma 1.9.0. This affects an unknown function of the component SecurityModeComplete Handler. Such manipulation leads to improper validation …

Aug 30, 2026
CVE-2026-82657
7.5 HIGH

Admidio before 5.0.12 fails to enforce login-only module restrictions in RSS feed endpoints for forum and announcements modules. Unauthenticated attackers can retrieve forum topics and …

Aug 30, 2026
CVE-2026-82655
7.5 HIGH

Admidio before 5.0.12 contains a blind SQL injection vulnerability in the relation_type_list parameter of lists_show.php that allows unauthenticated attackers to execute arbitrary SQL queries. Attackers …

Aug 30, 2026
CVE-2026-82654
8.9 HIGH

SiYuan before v3.8.1 fails to properly escape block name, alias, and memo fields in hint, backlink, and breadcrumb rendering functions. Attackers can set a block's …

Aug 30, 2026
CVE-2026-82653
8.9 HIGH

SiYuan before v3.8.1 contains a stored cross-site scripting vulnerability in confirmDialog() where unescaped package names and notebook names are interpolated directly into innerHTML assignments. Attackers …

Aug 30, 2026
CVE-2026-82648
7.1 HIGH

WWBN AVideo contains a server-side request forgery filter bypass vulnerability in the isSSRFSafeURL function that fails to normalize NAT64 addresses written in hexadecimal form. Attackers …

Aug 30, 2026
CVE-2026-82645
8.6 HIGH

AVideo (current commit e01e41ecc and earlier) exposes stream credentials through the plugin/Live/view/Live_restreams/getLiveKey.json.php endpoint. Supplying a 'token' request parameter waives both the Live::canRestream() access gate and …

Aug 30, 2026
CVE-2026-82644
7.5 HIGH

WWBN AVideo (current e01e41ecc and earlier) contains a brute-force rate limiting bypass in enforceRateLimit(), which protects login.json.php and 13 other endpoints. The function stores its …

Aug 30, 2026
CVE-2026-82642
8.8 HIGH

Readest is an open-source e-book reader built on Tauri. In versions prior to 0.11.16, EPUB chapter HTML is sanitized with DOMPurify using a configuration that …

Aug 30, 2026
CVE-2026-82641
8.6 HIGH

keploy versions 3.1.0 through 3.6.25 bind the agent control-plane HTTP server to all interfaces without authentication, exposing endpoints that stream TLS session keys and traffic …

Aug 30, 2026
CVE-2026-82639
7.5 HIGH

NextChat versions from 2.15.8 through 2.16.1 contain an improper URL validation vulnerability in the proxy endpoint that allows attackers to obtain the server's OpenAI API …

Aug 30, 2026
CVE-2026-82638
7.5 HIGH

jina-ai reader disables its private-address guard outside Google Cloud deployments, allowing unauthenticated attackers to perform server-side request forgery. Attackers can supply publicly resolvable hostnames mapping …

Aug 30, 2026
CVE-2026-82636
7.9 HIGH

Qubes OS before qubes-core-dom0-linux 4.3.22 allows OS command injection during a qvm-copy-to-vm call from dom0 to an attacker-controlled qube, because the "system" library function is …

Aug 30, 2026
CVE-2026-82635
8.8 HIGH

Pake before 3.13.1 joins the JavaScript-supplied filename for the download_file Tauri command onto the user's Downloads directory with no sanitization. A filename containing path traversal …

Aug 30, 2026
CVE-2026-82543
7.3 HIGH

A vulnerability was detected in vastsa FileCodeBox up to 2.3. This vulnerability affects the function update_file_usage of the file apps/base/views.py of the component Pickup Limit …

Aug 30, 2026
CVE-2026-81660
8.8 HIGH

The Groundhogg — CRM, Newsletters, and Marketing Automation WordPress plugin before 4.5.13 does not validate or escape values submitted to some optional web form fields …

Aug 30, 2026
CVE-2026-76585
8.8 HIGH

The Customer Reviews for WooCommerce WordPress plugin before 5.118.0 does not sanitise and escape the content of customer reviews received via one of its endpoints, …

Aug 30, 2026
CVE-2026-14307
7.1 HIGH

The geotargetingwp WordPress plugin before 3.5.6.2 does not sanitise or escape several parameters before reflecting them back in AJAX responses that are served with an …

Aug 30, 2026
CVE-2026-82480
7.4 HIGH

A security flaw has been discovered in NASA cFS up to 7.0.1. The affected element is the function CFE_SB_GetUserDataLength of the file src/cFS/cfe/modules/sb/fsw/src/cfe_sb_util.c of the …

Aug 30, 2026
CVE-2026-82478
7.3 HIGH

A vulnerability was determined in NASA Trick 19.6.0. This issue affects the function JSONVariableServerThread::parse_request of the file trick_source/sim_services/JSONVariableServer/JSONVariableServerThread.cpp of the component TCP Socket Handler. This …

Aug 30, 2026
CVE-2026-75807
7.5 HIGH

The SAML Single Sign On – SSO Login plugin for WordPress is vulnerable to Authentication Bypass in versions up to, and including, 5.4.6. This is …

Aug 29, 2026
CVE-2026-82475
8.1 HIGH

iFlytek astron-agent through 1.1.1 contains an authorization bypass vulnerability in the copyFlow endpoint that fails to validate workflow ownership. Authenticated attackers can enumerate workflow identifiers …

Aug 29, 2026
CVE-2026-82474
7.8 HIGH

Sudo through 1.9.17p2 fails to apply intercept policy checks to the execveat system call in ptrace-based intercept mode. Users permitted to run specific commands can …

Aug 29, 2026
CVE-2026-82473
8.2 HIGH

KubeEdge CloudCore through 1.23.1 accepts node task status reports on its HTTPS server without authentication verification. Attackers can reach CloudCore on port 10002 to mark …

Aug 29, 2026
CVE-2026-82472
7.5 HIGH

Documenso before 2.13.0 accepts PDF file uploads on the /api/files/upload-pdf endpoint without requiring authentication, session tokens, or API credentials. Unauthenticated attackers can upload arbitrary PDF …

Aug 29, 2026
CVE-2026-82466
8.7 HIGH

Rodauth before 2.46.0 contains an authentication bypass vulnerability in the webauthn_login route that allows logged-in users to authenticate as any other account. Attackers can exploit …

Aug 29, 2026
CVE-2026-82463
8.1 HIGH

pac4j-core before 6.5.6 contains an authentication bypass vulnerability in CheckProfileTypeAuthorizer that reverses the profile type validation logic. Attackers can authenticate through a weaker client and …

Aug 29, 2026
CVE-2026-82461
8.1 HIGH

pac4j-oidc before 6.5.6 fails to verify access token signatures, issuers, audiences, or expiry when extracting Keycloak realm and client roles. Attackers can forge access tokens …

Aug 29, 2026
CVE-2026-82457
7.8 HIGH

su-exec through 0.3 fails to validate numeric user and group identifiers parsed with strtol before assigning to uid_t and gid_t, allowing truncation of out-of-range values …

Aug 29, 2026
CVE-2026-82455
7.1 HIGH

RubyGems fails to re-validate path containment after filesystem symlink resolution during gem extraction. When a pre-existing symlink inside the destination directory points outside the extraction …

Aug 29, 2026
CVE-2026-82453
7.5 HIGH

rust-iot-platform through commit 5df942ab stores user passwords in cleartext without hashing in the user model. Attackers can read API responses from user retrieval and listing …

Aug 29, 2026
CVE-2026-82450
8.8 HIGH

BookStack before 26.05.4 contains a remote code execution vulnerability in the portable ZIP import functionality that allows users with Import Content and Create Books permissions …

Aug 29, 2026
CVE-2026-82447
8.8 HIGH

Skyvern before 1.0.45 contains a sandbox escape vulnerability in TextPromptBlock that renders prompts twice, first through a sandboxed Jinja environment and then through an unsandboxed …

Aug 29, 2026
CVE-2026-77007
7.5 HIGH

The HEL Online Classroom: AI-powered Online Classrooms WordPress plugin through 1.0.3 does not perform any authorisation check on one of its REST API routes, allowing …

Aug 29, 2026
CVE-2026-76586
7.5 HIGH

The Appointment Booking Calendar Plugin and Scheduling Plugin WordPress plugin before 1.6.3 does not verify the amount actually paid against the server-side price staged for …

Aug 29, 2026
CVE-2026-76548
8.2 HIGH

The User Profile Builder WordPress plugin before 4.0.1 does not properly restrict its front-end file upload feature, granting unauthenticated visitors capabilities reserved to privileged roles. …

Aug 29, 2026
CVE-2026-16600
7.7 HIGH

The SmartAIPress WordPress plugin through 1.2.0 does not perform a capability check on one of its AJAX actions and does not validate a user-supplied URL …

Aug 29, 2026
CVE-2026-16061
8.6 HIGH

The Rest Routes WordPress plugin through 5.5.5 does not sanitize and validate a value taken from the URL of one of its public REST routes …

Aug 29, 2026
CVE-2026-41012
7.7 HIGH

Traffic interception vulnerability in BOSH Director vCenter CPI allows attackers positioned between BOSH Director and vCenter to impersonate vCenter REST API and capture administrator credentials …

Aug 29, 2026
CVE-2026-55848
8.6 HIGH

mapfish-print is a component of MapFish for printing templated cartographic maps. Prior to 3.28.30, 3.30.32, 3.31.24, 3.33.16, and 4.0.5, MapFish Print accepts an attacker-controlled GML …

Aug 28, 2026
CVE-2026-55841
7.5 HIGH

Graylog is a free and open log management platform. Prior to Graylog Server versions 6.3.12, 7.0.7, and 7.1.2 and Graylog Forwarder version 7.3, the FortiGate …

Aug 28, 2026
CVE-2026-55784
7.5 HIGH

free5GC is an open-source implementation of the 5G core network. In version 1.4.4 and earlier, the AUSF component stores per-subscriber authentication state in a global …

Aug 28, 2026
CVE-2026-82333
7.5 HIGH

multer is a middleware for handling multipart/form-data in Node.js. A small multipart request with two specially crafted text field names can make multer's field parser …

Aug 28, 2026
CVE-2026-82017
7.6 HIGH

IGEL OS 12 before 12.7.6 and IGEL OS 11 before 11.11.150 contain a boot registry parameter injection vulnerability that allows attackers with physical access to …

Aug 28, 2026
CVE-2026-81533
7.1 HIGH

An application using the MongoDB BI Connector ODBC Driver may encounter a memory-safety issue when a submitted SQL statement contains an unusually long run of …

Aug 28, 2026
CVE-2026-81532
8.8 HIGH

A user able to submit SQL through an application using the MongoDB Connector for BI ODBC driver can supply a positioned-cursor statement whose cursor name …

Aug 28, 2026
CVE-2026-81520
7.5 HIGH

A network-reachable client that has not yet authenticated can hold a MongoDB Connector for BI authentication session open indefinitely by beginning a SASL-based login exchange …

Aug 28, 2026
CVE-2026-81518
7.5 HIGH

When mongosqld is configured with a client certificate authority file, the listener requests a client certificate during the TLS handshake but does not require one, …

Aug 28, 2026
CVE-2026-81517
7.5 HIGH

An unauthenticated party able to reach the port of a MongoDB Connector for BI (mongosqld) instance may generate enough routine connection log activity to exhaust …

Aug 28, 2026
CVE-2026-81490
7.7 HIGH

A database user able to create a view in a namespace that MongoDB Connector for BI samples can cause the schema-sampling routine to stop functioning …

Aug 28, 2026

Scan your infrastructure for known CVEs

Free website and port scanning — find vulnerabilities before attackers do.