CVE Database

48111+ vulnerabilities with CVSS scores, EPSS exploit predictions, and CISA KEV status. Updated daily.

Filter: All CRITICAL HIGH MEDIUM LOW CISA KEV
Sort: Newest CVSS EPSS
CVE-2026-89294
7.5 HIGH

The Simply Schedule Appointments plugin for WordPress is vulnerable to Local File Inclusion in all versions up to, and including, 1.6.12.27 via the 'ssa_locale' parameter …

Sep 30, 2026
CVE-2026-92994
8.8 HIGH

The Verge3D Publishing and E-Commerce WordPress plugin before 4.13.1 does not validate the contents of files uploaded through its file storage feature and serves them …

Sep 30, 2026
CVE-2026-91832
7.1 HIGH

The WP Mobile Menu WordPress plugin before 2.9 does not correctly verify the nonce on its settings import, so an attacker can import arbitrary WP …

Sep 30, 2026
CVE-2026-89193
7.5 HIGH

The Robin Image Optimizer WordPress plugin before 2.0.8 does not escape values that its bundled HTML parser re-emits into element attributes when a non-default image …

Sep 30, 2026
CVE-2026-88797
7.1 HIGH

The Vayu X WordPress theme before 1.0.6 does not perform any capability check on one of its AJAX actions and exposes the nonce guarding it …

Sep 30, 2026
CVE-2026-85573
8.8 HIGH

The All in One Files Upload WordPress plugin before 2.0.17 adds SVG to the site's allowed upload types and does not sanitise uploaded files or …

Sep 30, 2026
CVE-2026-75823
7.4 HIGH

The User Frontend WordPress plugin before 4.3.12 does not prevent tampering with the role assigned by its registration form, allowing unauthenticated users to register with …

Sep 30, 2026
CVE-2026-103111
7.6 HIGH

PCRE2 before 10.49, when there is an attacker-controlled regular expression and certain JIT API usage, allows an out-of-bounds write with arbitrary data.

Sep 30, 2026
CVE-2026-102913
7.3 HIGH

A security flaw has been discovered in SourceCodester Car Driving School Management System 1.0. Impacted is an unknown function of the file /classes/Master.php?f=save_enrollment. The manipulation …

Sep 30, 2026
CVE-2026-86134
7.5 HIGH

A NULL pointer dereference vulnerability in the WatchGuard Fireware OS authentication process allows a remote, unauthenticated attacker to crash the management daemon by sending a …

Sep 30, 2026
CVE-2026-102910
7.3 HIGH

A security flaw has been discovered in SourceCodester Online Reviewer Management System 1.0. The affected element is an unknown function of the file /reviewer_0/admins/assessments/examproper/exam-delete.php. The …

Sep 30, 2026
CVE-2026-96649
7.2 HIGH

The Frontend Post Submission Manager Lite – Frontend Posting WordPress Plugin plugin for WordPress is vulnerable to Stored DOM-Based Cross-Site Scripting via post_content Parameter (data-label …

Sep 30, 2026
CVE-2026-103109
7.7 HIGH

Pexip Infinity before 38.2, plus 39.0, 39.1 and 40.0, is affected by improper input validation in the media implementation that allows a remote attacker to …

Sep 30, 2026
CVE-2026-103108
7.5 HIGH

Pexip Infinity before 38.2, plus 39.0, 39.1, and 40.0, is affected by improper input validation in the media implementation that allows a remote attacker to …

Sep 30, 2026
CVE-2026-103106
7.8 HIGH

Pexip Infinity before 38.2, plus 39.0, 39.1, and 40.0, is affected by improper input validation within an internal Pexip Infinity service that allows an attacker …

Sep 30, 2026
CVE-2026-103105
8.8 HIGH

Pexip Infinity before 38.2, plus 39.0, 39.1 and 40.0, is affected by improper access control on a product-internal API which allows an attacker with local …

Sep 30, 2026
CVE-2026-103104
7.5 HIGH

Pexip Infinity before 38.2, plus 39.0, 39.1 and 40.0, is affected by improper input validation in the media implementation which allows a remote attacker to …

Sep 30, 2026
CVE-2026-103102
8.6 HIGH

Pexip Infinity before 41.0 is affected by improper input validation in the signaling implementation which allows a remote attacker to trigger a software abort resulting …

Sep 30, 2026
CVE-2026-103101
8.6 HIGH

Pexip Infinity 30.0 through 40.x before 41.0 is affected by improper input validation in the web server that allows a malicious attacker to render a …

Sep 30, 2026
CVE-2026-103100
7.5 HIGH

Pexip Infinity before 40.1 is affected by improper input validation in the signaling implementation that allows a malicious attacker to trigger a software abort resulting …

Sep 30, 2026
CVE-2026-103099
7.5 HIGH

Pexip Infinity before 41.1 is affected by improper input validation in the media implementation that allows a remote attacker to trigger a software abort resulting …

Sep 30, 2026
CVE-2026-102909
7.3 HIGH

A vulnerability was identified in SourceCodester Online Reviewer Management System 1.0. Impacted is an unknown function of the file /reviewer_0/admins/assessments/examproper/btn_functions.php. The manipulation of the argument …

Sep 30, 2026
CVE-2026-102908
7.3 HIGH

A vulnerability was determined in SourceCodester Online Reviewer Management System 1.0. This issue affects some unknown processing of the file /reviewer_0/admins/assessments/examproper/questions-view.php. Executing a manipulation of …

Sep 30, 2026
CVE-2026-102874
7.3 HIGH

A vulnerability was identified in HKUDS AnyTool 0.1.0. Affected is the function subprocess.run of the file anytool/local_server/main.py of the component Execute Endpoint. The manipulation of …

Sep 30, 2026
CVE-2026-103088
7.5 HIGH

Handlebars.java before 4.5.5 allows directory traversal. In handlebars-springmvc 4.5.3 and 4.5.4, the path-containment fix for CVE-2026-63490 validates template locations as raw percent-encoded strings, whereas the …

Sep 30, 2026
CVE-2026-103055
7.5 HIGH

AiSOC versions 7.5.0 before 12.0.0 use a hard-coded constant for JWT verification in the realtime WebSocket and SSE service when the AISOC_REALTIME_JWT_SECRET environment variable is …

Sep 30, 2026
CVE-2026-103054
7.1 HIGH

AiSOC versions before 12.0.0 contain an authorization bypass vulnerability in the MSSP module that allows authenticated users to add arbitrary tenants to portfolios they own. …

Sep 30, 2026
CVE-2026-103043
7.5 HIGH

anchorme through 3.0.8 contains a regular expression denial of service vulnerability in the IPv6 host extraction regex due to catastrophic backtracking. Attackers can supply specially …

Sep 29, 2026
CVE-2026-103042
7.5 HIGH

LightLLM through 1.2.0 contains a memory exhaustion vulnerability in the NCCL control channel when started with --pd_trans_mode nccl, allowing unauthenticated attackers to exhaust KV-transfer worker …

Sep 29, 2026
CVE-2026-91191
7.5 HIGH

The device's update mechanism includes conditions that allow unauthorized software packages to be accepted as authentic. During the boot process, the stock done function disables …

Sep 29, 2026
CVE-2026-84409
7.5 HIGH

The device's update mechanism retrieves metadata for software updates over an unencrypted HTTP connection and stores portions of that metadata for later use. A management …

Sep 29, 2026
CVE-2026-74225
7.1 HIGH

U-Boot before 2026.10-rc5 contains out-of-bounds memory access in dhcp6_parse_options() that fails to validate SERVERID and CLIENTID option lengths from DHCPv6 packets. Attackers on the local …

Sep 29, 2026
CVE-2026-74222
8.2 HIGH

U-Boot before 2026.10-rc5 contains a use-after-free vulnerability in the httpc_recv_cb() function within the lwIP wget implementation. When HTTP data storage fails, the callback frees the …

Sep 29, 2026
CVE-2026-74221
8.2 HIGH

U-Boot before 2026.10-rc5 contains a buffer overflow in nfs_readlink_reply() function in net/nfs-common.c when processing NFS server responses. A malicious NFS server can send crafted READLINK …

Sep 29, 2026
CVE-2026-74220
8.2 HIGH

U-Boot before 2026.10-rc5 contains a buffer overflow in nfs_read_reply() function in net/nfs-common.c that allows attackers to corrupt memory by supplying crafted NFS READ reply lengths. …

Sep 29, 2026
CVE-2026-71971
8.2 HIGH

U-Boot before 2026.10-rc3 with CONFIG_IP_DEFRAG enabled contains an out-of-bounds write vulnerability in the __net_defragment() function in net/net.c. Remote attackers can send a crafted IP fragment …

Sep 29, 2026
CVE-2026-71302
7.1 HIGH

The application accepts user-supplied session identifiers and does not regenerate the session ID after authentication. This allows an attacker to predefine a session ID and …

Sep 29, 2026
CVE-2026-94204
7.5 HIGH

The central cloud storage backend for the entire dashcam platform is misconfigured with public-read permissions, allowing unrestricted access to all stored objects. Because this bucket …

Sep 29, 2026
CVE-2026-102925
7.8 HIGH

virtualenv is a tool for creating isolated virtual python environments. Prior to 21.7.13, the generated activate (bash and zsh) and activate.fish scripts place values already …

Sep 29, 2026
CVE-2026-102253
7.5 HIGH

iperf3 versions prior to 3.22 contains a denial of service vulnerability that allows unauthenticated remote attackers to crash-loop the server's UDP receive worker into an …

Sep 29, 2026
CVE-2026-96274
7.4 HIGH

In Baicells Nova 430H, an unauthenticated device within radio range can send a malformed uplink message during connection setup that contains an invalid NAS payload. …

Sep 29, 2026
CVE-2026-94953
8.8 HIGH

A stack-based buffer overflow vulnerability exists in the web management interface of TOTOLINK N150RT (NTR150) firmware V3.4.0-B20201030. It is reachable through the route /boafrm/formAjaxSet using …

Sep 29, 2026
CVE-2026-79403
8.4 HIGH

An issue in Kilo Code before v7.4.1 allows a local attacker to execute arbitrary code via the permission/allow-everything endpoint

Sep 29, 2026
CVE-2026-76728
7.2 HIGH

A vulnerability in the API endpoint of HPE Networking Instant ON APs could allow an authenticated remote attacker with high privileges to conduct a server-side …

Sep 29, 2026
CVE-2026-76727
7.2 HIGH

Command injection vulnerabilities exist in the affected interface of HPE Networking Instant ON that could allow an authenticated remote attacker with high privileges to perform …

Sep 29, 2026
CVE-2026-76726
8.1 HIGH

An authentication bypass vulnerability in the API endpoint of HPE Networking Instant ON could allow an unauthenticated remote attacker to bypass network access controls if …

Sep 29, 2026
CVE-2026-67993
8.8 HIGH

basecamp/upright at commit efe4f2e5254ac6e57e45d2261804cca74dbbca3f contains a login cross-site request forgery issue in the static credentials callback.

Sep 29, 2026
CVE-2026-67987
7.5 HIGH

crmne/ruby_llm at commit fa6f279847d6d7027814539d9c0dfc3bbdfd2a83 contains polynomial-time regular expression denial-of-service conditions in think-tag response parsing on Ruby 3.1.x. A malicious or anomalous model response containing many …

Sep 29, 2026
CVE-2026-61519
8.8 HIGH

Liberu CRM 0.9.1 before 10.0.0 contains a broken access control vulnerability that allows any user holding a pending team invitation to invite additional attacker-controlled accounts …

Sep 29, 2026
CVE-2026-102878
8.1 HIGH

mcp-chrome-bridge through 1.0.31 contains an origin validation error in the native-server HTTP API that allows attackers to bypass CORS restrictions. Attackers can craft malicious web …

Sep 29, 2026

Scan your infrastructure for known CVEs

Free website and port scanning — find vulnerabilities before attackers do.