CVE Database

45217+ vulnerabilities with CVSS scores, EPSS exploit predictions, and CISA KEV status. Updated daily.

Filter: All CRITICAL HIGH MEDIUM LOW CISA KEV
Sort: Newest CVSS EPSS
CVE-2026-80237
8.8 HIGH

EFence developed by Thinking Software Technology has an Arbitrary File Upload vulnerability. Authenticated remote attackers can upload and execute web shell backdoors, thereby enabling arbitrary …

Aug 26, 2026
CVE-2026-80236
8.2 HIGH

Efence developed by Thinking Software Technology has a SQL Injection vulnerability. Unauthenticated remote attackers can access file upload functionality and read database contents.

Aug 26, 2026
CVE-2026-80233
7.2 HIGH

CAYIN CMS-WS, CMS-SE, and SMP series products developed by CAYIN Technology have an Arbitrary File Upload vulnerability. Privileged remote attackers can upload and execute web …

Aug 26, 2026
CVE-2026-78237
7.8 HIGH

Insufficient input validation in ABR allows a low-privileged user to inject malicious entries into the sudoers file, resulting in persistent root access that remained effective …

Aug 26, 2026
CVE-2026-78236
8.8 HIGH

An insecure PIN derivation mechanism in ABR allows a low-privileged user to escalate privileges to administrator by communicating over Cross-Process Communication (XPC) while masquerading as …

Aug 26, 2026
CVE-2026-75977
8.8 HIGH

The Mang Board WP plugin for WordPress is vulnerable to Missing Authorization via Authentication Cookie Forgery in all versions up to, and including, 2.3.7. This …

Aug 26, 2026
CVE-2026-18884
7.5 HIGH

The WooCommerce Lottery plugin for WordPress is vulnerable to Time-Based SQL Injection via 'orderby' and 'order' GET Parameters in all versions up to, and including, …

Aug 26, 2026
CVE-2026-18331
7.2 HIGH

The Formidable Forms – WordPress Form Builder for Contact Forms, Calculators, Quizzes & More plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the …

Aug 26, 2026
CVE-2026-77693
8.7 HIGH

The Order Tip for WooCommerce WordPress plugin before 1.6.0 does not check the capability of the user requesting a file deletion, nor does it restrict …

Aug 26, 2026
CVE-2026-75797
7.7 HIGH

The AI Engine WordPress plugin before 3.7.2 does not confine a caller-supplied URL when mapping it to a local filesystem path before reading the file …

Aug 26, 2026
CVE-2026-74928
7.5 HIGH

The Project Manager WordPress plugin before 4.0.7 does not have any authorisation check on its import routes, allowing unauthenticated users to create WordPress accounts with …

Aug 26, 2026
CVE-2026-74851
7.2 HIGH

The Pods WordPress plugin before 3.3.9.1 does not correctly compare a display callback against its list of blocked functions, allowing users with the author role …

Aug 26, 2026
CVE-2026-58097
7.8 HIGH

mp_SetEnddisc() copied a user-supplied PSN endpoint value without length validation, allowing a buffer overflow via the ppp(8) command interface. A local user with access to …

Aug 26, 2026
CVE-2026-58096
8.8 HIGH

LcpDecodeConfig() did not validate the length of received endpoint discriminator options against the minimum required by RFC 1717. Undersized options would trigger an out-of-bounds write. …

Aug 26, 2026
CVE-2026-58095
8.8 HIGH

mp_Enddisc() used incorrect length calculations when formatting endpoint discriminator addresses for display, allowing a received endpoint option to overflow a global result buffer. A malicious …

Aug 26, 2026
CVE-2026-58094
7.8 HIGH

The FIOSSHMLPGCNF ioctl(2) operation configures the page size for a largepage shared memory object. This is intended to be used immediately after creating the object, …

Aug 26, 2026
CVE-2026-58093
7.0 HIGH

The TIOCSCTTY ioctl handler drops the tty lock in order to acquire the process tree lock. After reacquiring the tty lock, the handler did not …

Aug 26, 2026
CVE-2026-19760
7.2 HIGH

The WP Fastest Cache – WordPress Cache Plugin plugin for WordPress is vulnerable to Stored Cross-Site Scripting via HTTP Host Header in all versions up …

Aug 26, 2026
CVE-2026-19718
8.1 HIGH

The BlogVault Backup & Staging WordPress plugin before 6.65, MalCare WordPress Security Plugin WordPress plugin before 6.65, The WP Remote WordPress Plugin WordPress plugin before …

Aug 26, 2026
CVE-2026-80202
8.8 HIGH

Kimai before 2.56.0 does not enforce team-membership checks in TimesheetVoter::voteOnAttribute(), which maps permissions only to own_timesheet or other_timesheet. As a result, any authenticated user with …

Aug 26, 2026
CVE-2026-80198
7.5 HIGH

Kimai versions before 2.56.0 fail to restrict the config() Twig function in sandboxed invoice and export templates, allowing administrators to access arbitrary configuration keys. Attackers …

Aug 26, 2026
CVE-2026-80196
7.5 HIGH

Kimai before 2.58.0 contains an authentication bypass vulnerability where password reset links remain valid after password changes because the LoginLink signature covers only the user …

Aug 26, 2026
CVE-2026-80193
8.8 HIGH

Kimai before 2.62.0 fails to validate create_other_timesheet permission in the QuickEntry controller when creating new timesheets. Authenticated users with view_other_timesheet and edit_other_timesheet permissions can create …

Aug 26, 2026
CVE-2026-80192
8.1 HIGH

@better-auth/sso before 1.6.27 (and before 1.4.8 in the 1.4.x line and before 1.7.0-rc.5 in the 1.7 prerelease line) contains two domain-ownership flaws. When domain verification …

Aug 26, 2026
CVE-2026-80191
7.5 HIGH

GROWI applies its page-viewer permission check to attachment requests only when the request carries an authenticated user. retrieveAttachmentFromIdParam in apps/app/src/server/routes/attachment/get.ts guards the check with a …

Aug 26, 2026
CVE-2026-76148
7.8 HIGH

CorvusSKK contains a code injection vulnerability, which may lead to arbitrary code execution on the affected product.

Aug 26, 2026
CVE-2026-58092
8.1 HIGH

In FreeBSD 15.0, the kernel structure used to represent user credentials changed: previously the primary group ID was stored in the first element of the …

Aug 26, 2026
CVE-2026-58091
7.8 HIGH

The implementation of this ioctl attempts to acquire locks on all channels in a sync group. If locking a channel would block, it releases the …

Aug 26, 2026
CVE-2026-58090
7.8 HIGH

The SOCK_STREAM receive path in the unix socket implementation failed to fully detach control messages from the socket buffer before processing them. Some error paths …

Aug 26, 2026
CVE-2026-58089
7.8 HIGH

When a process calls execve(2) to execute a setuid or setgid image, hwpmc(4) is supposed to detach PMCs owned by unprivileged processes. An inverted check …

Aug 26, 2026
CVE-2026-57171
7.7 HIGH

Compliance-trestle (Trestle) is a Python SDK and command-line tool for managing OSCAL compliance documents. In versions before 3.12.4 and versions 4.0.0 through 4.0.3, the catalog-generate, …

Aug 26, 2026
CVE-2026-57170
7.8 HIGH

Compliance-trestle (Trestle) is a Python SDK and command-line tool for managing OSCAL compliance documents. In versions prior to 3.12.4 and 4.0.0 through 4.0.3, the custom …

Aug 26, 2026
CVE-2026-54467
7.0 HIGH

On the Trusted Firmware-M (TF-M) 2 through 2.3.0 platform before 00d1b3e, mailbox initialization on PSOC64 and RP2350 accepts a non-secure, unvalidated, supplied pointer.

Aug 26, 2026
CVE-2026-29988
7.6 HIGH

A cleartext transmission of sensitive information vulnerability in the NFC interface of multiple Milesight IoT device models running affected firmware versions allows an unauthenticated attacker …

Aug 26, 2026
CVE-2026-79912
8.3 HIGH

A vulnerability was detected in TOTOLINK N600R 4.3.0cu.7647_B20210106. The impacted element is the function getCurrentTime of the file /cgi-bin/cstecgi.cgi. Performing a manipulation of the argument …

Aug 25, 2026
CVE-2026-54757
7.8 HIGH

Compliance-trestle (Trestle) is a Python SDK and command-line tool for managing OSCAL compliance documents. In versions before 3.12.4 and versions 4.0.0 through 4.0.3, Trestle is …

Aug 25, 2026
CVE-2026-41707
7.4 HIGH

Authentication Bypass by Capture-replay vulnerability in Spring Spring Security allows Spring Security's DPoPProofJwtDecoderFactory contains a cache-based replay attack vulnerability. The internal cache storing JWT ID …

Aug 25, 2026
CVE-2026-18985
8.1 HIGH

Incorrect Authorization vulnerability in Drupal Edit in-place field allows Forceful Browsing. This issue affects Edit in-place field versions: from 0.0.0 to 2.1.1.

Aug 25, 2026
CVE-2026-18259
7.5 HIGH

Observable Timing Discrepancy vulnerability in Drupal Token Content Access allows Brute Force. This issue affects Token Content Access versions: from 0.0.0 to 3.1.2.

Aug 25, 2026
CVE-2026-80186
7.6 HIGH

A stack-based buffer overflow vulnerability exists in BlueZ, the Linux Bluetooth protocol stack. A remote user within Bluetooth radio range can send a specially crafted …

Aug 25, 2026
CVE-2026-79845
7.3 HIGH

A vulnerability was identified in code-projects Simple Inventory System 1.0. This vulnerability affects unknown code of the file /InventoryManagement/edit.php. The manipulation of the argument ID …

Aug 25, 2026
CVE-2026-79804
7.3 HIGH

A vulnerability was found in SililaWijesinghe Food Ordering System up to ba314e897e3365600461e5ea59432e39ceaa0fa5. Affected by this issue is some unknown functionality of the file /search.php. Performing …

Aug 25, 2026
CVE-2026-68763
7.5 HIGH

Uncontrolled Resource Consumption vulnerability in Apache Tomcat via an allocation leak in the HTTP/2 backlog tracking when a stream is reset This issue affects Apache …

Aug 25, 2026
CVE-2026-68569
8.1 HIGH

Improper Authentication vulnerability in Apache Tomcat meant that in some circumstances (e.g. CLIENT-CERT, SPNEGO) that a user would be authenticated even if the user did …

Aug 25, 2026
CVE-2026-66422
8.1 HIGH

Improper Authorization vulnerability in Apache Tomcat cause by security-role-ref definitions being incorrectly used as role aliases within the Realm in additional to the correct usage …

Aug 25, 2026
CVE-2026-65927
7.5 HIGH

Off-by-one Error vulnerability in Apache Tomcat impacting the [N] flag on the rewrite valves causes rewrite processing to restart at the second rule rather than …

Aug 25, 2026
CVE-2026-65183
8.1 HIGH

Time-of-check Time-of-use (TOCTOU) Race Condition vulnerability in Apache Tomcat when creating unix domain sockets allows an unauthorised local user to access the unix domain socket. …

Aug 25, 2026
CVE-2026-79292
8.3 HIGH

Integer overflow in Chromecast in Google Chrome prior to 152.0.7977.65 allowed a remote attacker who had compromised the renderer process to potentially execute arbitrary code …

Aug 25, 2026
CVE-2026-79286
7.4 HIGH

Missing authorization in CustomTabs in Google Chrome on on Android prior to 152.0.7977.65 allowed a local attacker to potentially execute arbitrary code outside the sandbox …

Aug 25, 2026
CVE-2026-79266
8.8 HIGH

Use after free in DevTools in Google Chrome prior to 152.0.7977.65 allowed a remote attacker leveraging social engineering to execute arbitrary code inside the sandbox …

Aug 25, 2026

Scan your infrastructure for known CVEs

Free website and port scanning — find vulnerabilities before attackers do.