CVE Database

47974+ vulnerabilities with CVSS scores, EPSS exploit predictions, and CISA KEV status. Updated daily.

Filter: All CRITICAL HIGH MEDIUM LOW CISA KEV
Sort: Newest CVSS EPSS
CVE-2026-94002
7.5 HIGH

Possible memory exhaustion in SFTP clients (DefaultSftpClient) in component sshd-sftp in Apache MINA SSHD versions 0.9.0 to 2.19.0 and 3.0.0-M1 to 3.0.0-M5. Apache MINA SSHD …

Sep 30, 2026
CVE-2026-93994
8.1 HIGH

Apache MINA SSHD is a Java library for client-side and server-side SSH. SSH servers can be configured to require multi-authentication schemes, for instance two different …

Sep 30, 2026
CVE-2026-79625
8.1 HIGH

Affected products do not properly synchronize access to their monitoring functionality. When multiple clients send concurrent requests, this may lead to incorrect reads or writes, …

Sep 30, 2026
CVE-2026-10764
8.7 HIGH

Information disclosure in BVMS 4.5 up to 12.3 including allows man-in-the-middle attackers to gain unauthorized access to sensitive data.

Sep 30, 2026
CVE-2026-97347
7.2 HIGH

The Post Views Stats Counter plugin for WordPress is vulnerable to Stored Cross-Site Scripting via User-Agent Header in all versions up to, and including, 1.1.7 …

Sep 30, 2026
CVE-2026-75098
7.5 HIGH

The Product Designer App plugin for WordPress is vulnerable to Directory Traversal in all versions up to, and including, 1.1.3 via the 'svg' parameter parameter. …

Sep 30, 2026
CVE-2026-102454
7.2 HIGH

EasyFlow .NET developed by Digiwin has an Arbitrary File Upload vulnerability. Privileged remote attackers can upload and execute web shell backdoors, thereby enabling arbitrary code …

Sep 30, 2026
CVE-2026-97150
7.2 HIGH

When converting baserCMS4-style addons to baserCMS5-style ones, BcAddonMigrator includes "config.php" from the addon, which means the PHP code in the file is executed. Arbitrary files …

Sep 30, 2026
CVE-2026-92873
7.3 HIGH

Pgpool-II contains an incorrect implementation of an authentication algorithm, which may allow an unauthenticated attacker to promote an arbitrary watchdog node to the leader node.

Sep 30, 2026
CVE-2026-92871
7.5 HIGH

A NULL pointer dereference vulnerability exists in Pgpool-II, which may allow an unauthenticated attacker to cause abnormal termination of the watchdog process.

Sep 30, 2026
CVE-2026-92870
7.5 HIGH

A stack-based buffer overflow vulnerability exists in Pgpool-II, which may allow an unauthenticated attacker to cause abnormal process termination.

Sep 30, 2026
CVE-2026-92867
8.8 HIGH

An out-of-bounds write vulnerability exists in Pgpool-II , which may allow an authenticated attacker to cause abnormal process termination or arbitrary code execution.

Sep 30, 2026
CVE-2026-6806
7.5 HIGH

The Motors – Car Dealership & Classified Listings Plugin plugin for WordPress is vulnerable to time-based blind SQL Injection via the 'stm_lat/stm_lng' parameter in all …

Sep 30, 2026
CVE-2026-89294
7.5 HIGH

The Simply Schedule Appointments plugin for WordPress is vulnerable to Local File Inclusion in all versions up to, and including, 1.6.12.27 via the 'ssa_locale' parameter …

Sep 30, 2026
CVE-2026-92994
8.8 HIGH

The Verge3D Publishing and E-Commerce WordPress plugin before 4.13.1 does not validate the contents of files uploaded through its file storage feature and serves them …

Sep 30, 2026
CVE-2026-91832
7.1 HIGH

The WP Mobile Menu WordPress plugin before 2.9 does not correctly verify the nonce on its settings import, so an attacker can import arbitrary WP …

Sep 30, 2026
CVE-2026-89193
7.5 HIGH

The Robin Image Optimizer WordPress plugin before 2.0.8 does not escape values that its bundled HTML parser re-emits into element attributes when a non-default image …

Sep 30, 2026
CVE-2026-88797
7.1 HIGH

The Vayu X WordPress theme before 1.0.6 does not perform any capability check on one of its AJAX actions and exposes the nonce guarding it …

Sep 30, 2026
CVE-2026-85573
8.8 HIGH

The All in One Files Upload WordPress plugin before 2.0.17 adds SVG to the site's allowed upload types and does not sanitise uploaded files or …

Sep 30, 2026
CVE-2026-75823
7.4 HIGH

The User Frontend WordPress plugin before 4.3.12 does not prevent tampering with the role assigned by its registration form, allowing unauthenticated users to register with …

Sep 30, 2026
CVE-2026-103111
7.6 HIGH

PCRE2 before 10.49, when there is an attacker-controlled regular expression and certain JIT API usage, allows an out-of-bounds write with arbitrary data.

Sep 30, 2026
CVE-2026-102913
7.3 HIGH

A security flaw has been discovered in SourceCodester Car Driving School Management System 1.0. Impacted is an unknown function of the file /classes/Master.php?f=save_enrollment. The manipulation …

Sep 30, 2026
CVE-2026-86134
7.5 HIGH

A NULL pointer dereference vulnerability in the WatchGuard Fireware OS authentication process allows a remote, unauthenticated attacker to crash the management daemon by sending a …

Sep 30, 2026
CVE-2026-102910
7.3 HIGH

A security flaw has been discovered in SourceCodester Online Reviewer Management System 1.0. The affected element is an unknown function of the file /reviewer_0/admins/assessments/examproper/exam-delete.php. The …

Sep 30, 2026
CVE-2026-96649
7.2 HIGH

The Frontend Post Submission Manager Lite – Frontend Posting WordPress Plugin plugin for WordPress is vulnerable to Stored DOM-Based Cross-Site Scripting via post_content Parameter (data-label …

Sep 30, 2026
CVE-2026-103109
7.7 HIGH

Pexip Infinity before 38.2, plus 39.0, 39.1 and 40.0, is affected by improper input validation in the media implementation that allows a remote attacker to …

Sep 30, 2026
CVE-2026-103108
7.5 HIGH

Pexip Infinity before 38.2, plus 39.0, 39.1, and 40.0, is affected by improper input validation in the media implementation that allows a remote attacker to …

Sep 30, 2026
CVE-2026-103106
7.8 HIGH

Pexip Infinity before 38.2, plus 39.0, 39.1, and 40.0, is affected by improper input validation within an internal Pexip Infinity service that allows an attacker …

Sep 30, 2026
CVE-2026-103105
8.8 HIGH

Pexip Infinity before 38.2, plus 39.0, 39.1 and 40.0, is affected by improper access control on a product-internal API which allows an attacker with local …

Sep 30, 2026
CVE-2026-103104
7.5 HIGH

Pexip Infinity before 38.2, plus 39.0, 39.1 and 40.0, is affected by improper input validation in the media implementation which allows a remote attacker to …

Sep 30, 2026
CVE-2026-103102
8.6 HIGH

Pexip Infinity before 41.0 is affected by improper input validation in the signaling implementation which allows a remote attacker to trigger a software abort resulting …

Sep 30, 2026
CVE-2026-103101
8.6 HIGH

Pexip Infinity 30.0 through 40.x before 41.0 is affected by improper input validation in the web server that allows a malicious attacker to render a …

Sep 30, 2026
CVE-2026-103100
7.5 HIGH

Pexip Infinity before 40.1 is affected by improper input validation in the signaling implementation that allows a malicious attacker to trigger a software abort resulting …

Sep 30, 2026
CVE-2026-103099
7.5 HIGH

Pexip Infinity before 41.1 is affected by improper input validation in the media implementation that allows a remote attacker to trigger a software abort resulting …

Sep 30, 2026
CVE-2026-102909
7.3 HIGH

A vulnerability was identified in SourceCodester Online Reviewer Management System 1.0. Impacted is an unknown function of the file /reviewer_0/admins/assessments/examproper/btn_functions.php. The manipulation of the argument …

Sep 30, 2026
CVE-2026-102908
7.3 HIGH

A vulnerability was determined in SourceCodester Online Reviewer Management System 1.0. This issue affects some unknown processing of the file /reviewer_0/admins/assessments/examproper/questions-view.php. Executing a manipulation of …

Sep 30, 2026
CVE-2026-102874
7.3 HIGH

A vulnerability was identified in HKUDS AnyTool 0.1.0. Affected is the function subprocess.run of the file anytool/local_server/main.py of the component Execute Endpoint. The manipulation of …

Sep 30, 2026
CVE-2026-103088
7.5 HIGH

Handlebars.java before 4.5.5 allows directory traversal. In handlebars-springmvc 4.5.3 and 4.5.4, the path-containment fix for CVE-2026-63490 validates template locations as raw percent-encoded strings, whereas the …

Sep 30, 2026
CVE-2026-103055
7.5 HIGH

AiSOC versions 7.5.0 before 12.0.0 use a hard-coded constant for JWT verification in the realtime WebSocket and SSE service when the AISOC_REALTIME_JWT_SECRET environment variable is …

Sep 30, 2026
CVE-2026-103054
7.1 HIGH

AiSOC versions before 12.0.0 contain an authorization bypass vulnerability in the MSSP module that allows authenticated users to add arbitrary tenants to portfolios they own. …

Sep 30, 2026
CVE-2026-103043
7.5 HIGH

anchorme through 3.0.8 contains a regular expression denial of service vulnerability in the IPv6 host extraction regex due to catastrophic backtracking. Attackers can supply specially …

Sep 29, 2026
CVE-2026-103042
7.5 HIGH

LightLLM through 1.2.0 contains a memory exhaustion vulnerability in the NCCL control channel when started with --pd_trans_mode nccl, allowing unauthenticated attackers to exhaust KV-transfer worker …

Sep 29, 2026
CVE-2026-91191
7.5 HIGH

The device's update mechanism includes conditions that allow unauthorized software packages to be accepted as authentic. During the boot process, the stock done function disables …

Sep 29, 2026
CVE-2026-84409
7.5 HIGH

The device's update mechanism retrieves metadata for software updates over an unencrypted HTTP connection and stores portions of that metadata for later use. A management …

Sep 29, 2026
CVE-2026-74225
7.1 HIGH

U-Boot before 2026.10-rc5 contains out-of-bounds memory access in dhcp6_parse_options() that fails to validate SERVERID and CLIENTID option lengths from DHCPv6 packets. Attackers on the local …

Sep 29, 2026
CVE-2026-74222
8.2 HIGH

U-Boot before 2026.10-rc5 contains a use-after-free vulnerability in the httpc_recv_cb() function within the lwIP wget implementation. When HTTP data storage fails, the callback frees the …

Sep 29, 2026
CVE-2026-74221
8.2 HIGH

U-Boot before 2026.10-rc5 contains a buffer overflow in nfs_readlink_reply() function in net/nfs-common.c when processing NFS server responses. A malicious NFS server can send crafted READLINK …

Sep 29, 2026
CVE-2026-74220
8.2 HIGH

U-Boot before 2026.10-rc5 contains a buffer overflow in nfs_read_reply() function in net/nfs-common.c that allows attackers to corrupt memory by supplying crafted NFS READ reply lengths. …

Sep 29, 2026
CVE-2026-71971
8.2 HIGH

U-Boot before 2026.10-rc3 with CONFIG_IP_DEFRAG enabled contains an out-of-bounds write vulnerability in the __net_defragment() function in net/net.c. Remote attackers can send a crafted IP fragment …

Sep 29, 2026
CVE-2026-71302
7.1 HIGH

The application accepts user-supplied session identifiers and does not regenerate the session ID after authentication. This allows an attacker to predefine a session ID and …

Sep 29, 2026

Scan your infrastructure for known CVEs

Free website and port scanning — find vulnerabilities before attackers do.