CVE Database

53435+ vulnerabilities with CVSS scores, EPSS exploit predictions, and CISA KEV status. Updated daily.

Filter: All CRITICAL HIGH MEDIUM LOW CISA KEV
Sort: Newest CVSS EPSS
CVE-2026-8155
5.4 MEDIUM

The BuddyPress WordPress plugin before 14.5.0 does not properly enforce authorization on its private messaging endpoints, allowing any authenticated user (Subscriber+) to read, modify, or …

Jul 31, 2026
CVE-2026-15209
6.5 MEDIUM

The JS Help Desk WordPress plugin before 3.1.5 does not verify that the requesting user owns the ticket being loaded: a low-privileged authenticated user can …

Jul 31, 2026
CVE-2026-14931
6.5 MEDIUM

The JS Help Desk WordPress plugin before 3.1.4 grants a support-agent capability to the Contributor role on activation and does not perform a capability check …

Jul 31, 2026
CVE-2026-14929
4.3 MEDIUM

The JS Help Desk WordPress plugin before 3.1.4 does not verify ownership of the targeted reply before updating it, allowing any authenticated user (Subscriber and …

Jul 31, 2026
CVE-2026-14928
6.5 MEDIUM

The JS Help Desk WordPress plugin before 3.1.4 does not perform authorization or ownership checks before returning support-ticket content in a nonce-gated search handler, allowing …

Jul 31, 2026
CVE-2026-14922
6.1 MEDIUM

WP Photo Album Plus is vulnerable to stored Cross-Site Scripting in all versions up to, and including, 9.2.03.001 through a decode-after-sanitize (double-encoding) flaw in the …

Jul 31, 2026
CVE-2026-14921
6.1 MEDIUM

The Ultimate Addons for WPBakery Page Builder WordPress plugin before 3.21.5's shared link-rendering function, Ultimate_VC_Addons::uavc_link_init(),

Jul 31, 2026
CVE-2026-14847
4.3 MEDIUM

The Paid Membership Subscriptions WordPress plugin before 3.0.7 does not perform capability or nonce checks on one of its payment-related AJAX actions, allowing any authenticated …

Jul 31, 2026
CVE-2026-14845
6.1 MEDIUM

The NewStatPress WordPress plugin before 1.4.5 does not sanitise and escape data derived from unauthenticated visitor requests before storing it and later outputting it in …

Jul 31, 2026
CVE-2026-14843
5.3 MEDIUM

The Events Made Easy WordPress plugin before 3.1.4 does not verify that the requester is authorized to modify the targeted record when handling an unauthenticated …

Jul 31, 2026
CVE-2026-14834
6.5 MEDIUM

The Mailgun for WordPress plugin before 2.2.1 does not perform any capability or nonce check on an unauthenticated AJAX action that adds subscribers to the …

Jul 31, 2026
CVE-2026-14833
6.8 MEDIUM

The Lightbox with PhotoSwipe WordPress plugin before 5.9.0 does not sanitise or escape a link data attribute before rendering it into the image lightbox caption …

Jul 31, 2026
CVE-2026-14554
6.5 MEDIUM

The Check & Log Email WordPress plugin before 2.0.15 does not properly sanitize and escape parameters before using them in SQL queries, allowing users with …

Jul 31, 2026
CVE-2026-14317
5.3 MEDIUM

The GiveWP WordPress plugin before 4.16.3 does not restrict the set of available payment gateways to those enabled by the administrator, deriving it in part …

Jul 31, 2026
CVE-2026-12697
5.4 MEDIUM

The wpForo Forum WordPress plugin before 3.1.2 does not verify that an AI chat conversation belongs to the requesting user before deleting its messages, allowing …

Jul 31, 2026
CVE-2026-12376
4.3 MEDIUM

The Academy LMS WordPress plugin through 3.8.2 does not restrict access to quiz attempt records to their owner, allowing any authenticated user with subscriber-level access …

Jul 31, 2026
CVE-2026-63220
4.8 MEDIUM

CodeIgniter is a PHP full-stack web framework. In versions prior to 4.7.4, IncomingRequest::isSecure() trusted the X-Forwarded-Proto and Front-End-Https headers from any incoming request, allowing an …

Jul 31, 2026
CVE-2026-62323
6.3 MEDIUM

Cloudreve is a self-hosted file management and sharing system. Prior to 4.17.0, ViewerSessionValidation uses only the session-id prefix of a WOPI access token and does …

Jul 31, 2026
CVE-2026-55499
4.3 MEDIUM

Cloudreve is a self-hosted file management and sharing system. Prior to 4.17.0, a single-file share event-stream subscription resolves the share root to the owner’s parent …

Jul 31, 2026
CVE-2026-55497
6.5 MEDIUM

Cloudreve is a self-hosted file management and sharing system. Prior to 4.17.0, the built-in thumbnail and avatar image decoders limit compressed file size but do …

Jul 31, 2026
CVE-2026-55496
4.3 MEDIUM

Cloudreve is a self-hosted file management and sharing system. Prior to 4.17.0, GET /api/v4/user/search calls SearchActive without adding a StatusActive predicate and serializes matches at …

Jul 31, 2026
CVE-2026-55495
4.3 MEDIUM

Cloudreve is a self-hosted file management and sharing system. Prior to 4.17.0, the WOPI PUT_RELATIVE handler passes X-WOPI-SuggestedTarget to URI.JoinRaw as a path rather than …

Jul 31, 2026
CVE-2026-43833
5.3 MEDIUM

Full details and mitigation steps are currently restricted and will be published at a later date.

Jul 31, 2026
CVE-2026-66720
6.5 MEDIUM

The GOOSE subscriber component improperly validates the UTC timestamp field in unauthenticated IEC 61850 GOOSE (EtherType 0x88B8) Layer-2 multicast messages. A specially crafted GOOSE frame …

Jul 30, 2026
CVE-2026-66369
6.5 MEDIUM

The GOOSE parser contains an off-by-one boundary-handling flaw that can be triggered by a single unauthenticated Layer-2 multicast frame on the process bus. When specific …

Jul 30, 2026
CVE-2026-66364
6.5 MEDIUM

The GOOSE payload parser contains a boundary handling flaw that can be triggered by a single unauthenticated Layer 2 multicast frame on the process bus. …

Jul 30, 2026
CVE-2026-66349
6.5 MEDIUM

The MMS server connection handler contains a flaw in its processing of BER-encoded request data. When an MMS confirmed request PDU containing an extended BER …

Jul 30, 2026
CVE-2026-65421
6.5 MEDIUM

The MMS BER decoder contains a flaw in decoding fixed-width BER fields (boolean/integer): an attacker-supplied length value is not validated, causing a read past the …

Jul 30, 2026
CVE-2026-63550
6.5 MEDIUM

The MMS BER decoder contains a boundary-handling flaw in the processing of certain fields within confirmed-request messages. When a crafted BER-encoded element is received over …

Jul 30, 2026
CVE-2026-63362
5.9 MEDIUM

An unsigned integer underflow in the PubSub signature verification path in open62541 may allow a remote attacker to cause a denial of service via a …

Jul 30, 2026
CVE-2026-63033
6.5 MEDIUM

A crafted IEC 60870-5-104 I-frame with a declared object count exceeding what fits in the ASDU body causes InformationObject_ParseObjectAddress to read one byte past the …

Jul 30, 2026
CVE-2026-61893
6.5 MEDIUM

A crafted IEC 60870-5-104 I-frame with TypeID 104 (C_TS_NA_1) and an inflated object count causes TestCommand_getFromBuffer to read one byte past the end of the …

Jul 30, 2026
CVE-2026-56758
6.5 MEDIUM

The ACSE layer contains a flaw in the processing of AARQ PDUs during MMS connection establishment. When parsing certain fields within the calling AP title, …

Jul 30, 2026
CVE-2026-10031
4.2 MEDIUM

SFTPGo prior to 2.7.4 contains a permission bypass vulnerability that allows authenticated users to circumvent per-directory access controls by creating symbolic links in a permitted …

Jul 30, 2026
CVE-2026-68563
5.5 MEDIUM

A flaw was found in ansible-collection-redhat-leapp. When a remediation task is executed with elevated privileges and the `leapp_old_postgresql_data` option is selected, a PostgreSQL data backup …

Jul 30, 2026
CVE-2026-68562
6.2 MEDIUM

A flaw was found in ansible-collection-redhat-leapp. An attacker with privileged write access to a managed node's Leapp report content can manipulate it. When an operator …

Jul 30, 2026
CVE-2026-64816
6.5 MEDIUM

RapidRAW before 1.6.0 does not validate the lutPath field in preset files before passing it to File::open() in lut_processing.rs. On Windows, a UNC path in …

Jul 30, 2026
CVE-2026-62845
4.7 MEDIUM

Kamaji is the Hosted Control Plane Manager for Kubernetes. Prior to 26.7.4-edge, the PostgreSQL and MySQL datastore drivers build DDL statements by interpolating the user-supplied …

Jul 30, 2026
CVE-2026-5846
5.7 MEDIUM

The affected Watchfire Controller Software contains self-signed hard-coded RSA private keys and corresponding X.509 certificates used for authenticating and encrypting HTTPS/TLS connections to the controller's …

Jul 30, 2026
CVE-2026-68501
6.5 MEDIUM

Sylius Mollie Plugin provides Mollie payment integration for Sylius applications. Prior to 2.2.8, 3.2.4, and 3.3.1, Sylius Mollie Plugin's GET /{_locale}/thank-you PageRedirectController::thankYouAction and GET /{_locale}/get-code …

Jul 30, 2026
CVE-2026-68499
6.2 MEDIUM

re2 provides Node.js bindings for Google's RE2 regular expression engine. Prior to 1.25.2, re2's String.prototype.match implementation with a global RE2 pattern that can match the …

Jul 30, 2026
CVE-2026-61526
6.1 MEDIUM

AdonisJS HTTP Server is a package for handling HTTP requests in the AdonisJS framework. In versions 8.0.0-next.0 through 8.2.0 and 9.0.0 through 9.0.2, the error.message …

Jul 30, 2026
CVE-2025-65342
6.1 MEDIUM

code-projects Blood System 1.0 is vulnerable to Cross Site Scripting (XSS) in /don.php via the city field.

Jul 30, 2026
CVE-2025-65341
6.1 MEDIUM

Ecommerce Fruits Bazar 1.0 is vulnerable to Cross Site Scripting (XSS) in admin/edit_product.php.

Jul 30, 2026
CVE-2026-67550
5.7 MEDIUM

re2 provides Node.js bindings for Google's RE2 regular expression engine. Prior to 1.25.2, re2 validates lastIndex against the UTF-8 byte length of a subject but …

Jul 30, 2026
CVE-2026-67530
6.4 MEDIUM

WACRM is a self-hostable CRM template for WhatsApp. In 0.7.0 and earlier, the automation send_webhook action in src/lib/automations/engine.ts and its validation in src/lib/automations/validate.ts allowed an …

Jul 30, 2026
CVE-2026-67529
4.3 MEDIUM

OpenProject is open-source, web-based project management software. Prior to 17.6.0, GET /api/v3/time_entries and GET /api/v3/cost_entries rendered _links.workPackage.title and _links.workPackage.href through associated_resource in modules/costs/lib/api/v3/time_entries/time_entry_representer.rb and modules/costs/lib/api/v3/cost_entries/cost_entry_representer.rb …

Jul 30, 2026
CVE-2026-67528
4.3 MEDIUM

OpenProject is open-source, web-based project management software. Prior to 17.6.0, GET /api/v3/custom_options/:id resolved CustomOption records by global numeric id and allowed UserCustomField and GroupCustomField options …

Jul 30, 2026
CVE-2026-65835
6.6 MEDIUM

Capsule is a multi-tenancy and policy-based framework for Kubernetes. From 0.13.0 until 0.13.8, after the incomplete CVE-2026-22872 fix, TenantResource RawItems and Generators in internal/controllers/resources/collect.go, including …

Jul 30, 2026
CVE-2026-65834
6.8 MEDIUM

Capsule is a multi-tenancy and policy-based framework for Kubernetes. Prior to 0.13.8, CapsuleConfiguration.Spec.NodeMetadata.ForbiddenLabels.Regex and CapsuleConfiguration.Spec.NodeMetadata.ForbiddenAnnotations.Regex were not validated by the configuration admission webhook, allowing a …

Jul 30, 2026

Scan your infrastructure for known CVEs

Free website and port scanning — find vulnerabilities before attackers do.