CVE Database

10684+ vulnerabilities with CVSS scores, EPSS exploit predictions, and CISA KEV status. Updated daily.

Filter: All CRITICAL HIGH MEDIUM LOW CISA KEV
Sort: Newest CVSS EPSS
CVE-2026-12415
9.8 CRITICAL

The Invoice Generator plugin for WordPress is vulnerable to privilege escalation due to a missing capability check on the pravel_invoice_edit_account() AJAX action in versions up …

Jun 27, 2026
CVE-2026-28701
9.8 CRITICAL

Various versions of Daktronics Controller Firmware could allow authenticated and unauthenticated remote users to escape the intended directory and enumerate arbitrary file system paths.

Jun 26, 2026
CVE-2026-53576
10.0 CRITICAL

Kestra is an open-source, event-driven orchestration platform. Prior to 1.0.45 and 1.3.21, the authentication filter for the REST API (@Filter("/api/v1/**")) treats any request whose path …

Jun 26, 2026
CVE-2026-49869
10.0 CRITICAL

Kestra is an open-source, event-driven orchestration platform. Prior to 1.0.45 and 1.3.21, AuthenticationFilter in Kestra OSS uses request.getPath().endsWith("/configs") to whitelist the public configuration endpoint from …

Jun 26, 2026
CVE-2026-54352
9.6 CRITICAL

Budibase is an open-source low-code platform. Prior to 3.39.9, `POST /api/pwa/process-zip` at packages/server/src/api/routes/static.ts:24 accepts a builder-uploaded .zip, extracts it with [email protected] into a temp directory, …

Jun 26, 2026
CVE-2026-54350
10.0 CRITICAL

Budibase is an open-source low-code platform. Prior to 3.39.12, an unauthenticated visitor of any published Budibase app reads every document of the backing MongoDB, CouchDB, …

Jun 26, 2026
CVE-2026-50137
9.4 CRITICAL

Budibase is an open-source low-code platform. Prior to 3.39.0, an anonymous attacker who knows or can enumerate a workspace id (app_...) and an S3-source datasource …

Jun 26, 2026
CVE-2026-53309
9.8 CRITICAL

In the Linux kernel, the following vulnerability has been resolved: ocfs2/dlm: fix off-by-one in dlm_match_regions() region comparison The local-vs-remote region comparison loop uses '<=' instead …

Jun 26, 2026
CVE-2026-52785
9.9 CRITICAL

OpenProject is open-source, web-based project management software. Prior to 17.3.3 and 17.4.1, there is a SQL injection in timestamps functionality. OpenProject baseline comparison allows callers …

Jun 26, 2026
CVE-2026-52782
9.9 CRITICAL

OpenProject is open-source, web-based project management software. Prior to 17.3.3 and 17.4.1, there is an IDOR through /projects/<A>/settings/project_storages/<A_ps_id> via PATCH parameter "storages_project_storage[project_folder_id]" leads to Access …

Jun 26, 2026
CVE-2026-52780
9.6 CRITICAL

OpenProject is open-source, web-based project management software. Prior to 17.3.3 and 17.4.1, cache store poisoning leads to Remote Code Execution (RCE). This vulnerability is fixed …

Jun 26, 2026
CVE-2026-46386
9.9 CRITICAL

OpenProject is open-source, web-based project management software. Prior to , the official openproject/openproject Docker image ships ENV SECRET_KEY_BASE=OVERWRITE_ME as the default Rails master key. Combined …

Jun 26, 2026
CVE-2026-33646
9.6 CRITICAL

mise manages dev tools like node, python, cmake, and terraform. Prior to 2026.3.10, mise processes .tool-versions files through the Tera template engine during parsing, with …

Jun 26, 2026
CVE-2026-54636
9.0 CRITICAL

Dokku is a docker-powered PaaS. Prior to 0.38.7, the cron plugin utilizes commands in the app.json file to manage system cron running as the Dokku …

Jun 26, 2026
CVE-2026-45408
9.0 CRITICAL

Dokku is a docker-powered PaaS. Prior to 0.38.2, the app name validation regex (^[a-z0-9][^/:_A-Z]*$) permits shell metacharacters. When an authenticated user pushes to a git …

Jun 26, 2026
CVE-2026-45406
9.0 CRITICAL

Dokku is a docker-powered PaaS. Prior to 0.38.2, the openresty-vhosts plugin copies files from an app's openresty/http-includes/ git repository directory to the host and then …

Jun 26, 2026
CVE-2026-45405
9.0 CRITICAL

Dokku is a docker-powered PaaS. Prior to 0.38.2, the git:from-archive and certs:add commands extract user-supplied tar/zip archives into temporary directories without sanitizing member paths or …

Jun 26, 2026
CVE-2026-0685
9.8 CRITICAL

Server side template inject (SSTI) in the expression evaluation component in Genshi Template Engine version 0.7.9 allows a remote attacker to achieve remote code execution …

Jun 26, 2026
CVE-2025-11919
9.6 CRITICAL

The default JVM can access files and directories under `/tmp/` including the `$TemporaryDirectory` of other users on the same cloud instance (`/tmp/UserTemporaryFiles/`). The `-init` file …

Jun 26, 2026
CVE-2026-57658
9.1 CRITICAL

Administrator Arbitrary File Upload in TemplateSpare <= 4.2.0 versions.

Jun 26, 2026
CVE-2026-56070
9.3 CRITICAL

Unauthenticated SQL Injection in Advance Product Search <= 1.4.4 versions.

Jun 26, 2026
CVE-2026-56068
9.3 CRITICAL

Unauthenticated SQL Injection in JetEngine <= 3.8.10.2 versions.

Jun 26, 2026
CVE-2026-56067
9.3 CRITICAL

Unauthenticated SQL Injection in JetSmartFilters <= 3.8.3 versions.

Jun 26, 2026
CVE-2026-56062
9.3 CRITICAL

Unauthenticated SQL Injection in Quotes llama <= 3.1.5 versions.

Jun 26, 2026
CVE-2026-56059
9.9 CRITICAL

Subscriber Arbitrary File Upload in Travel Booking <= 2.2.5 versions.

Jun 26, 2026
CVE-2026-56058
9.9 CRITICAL

Subscriber Arbitrary File Upload in Quform <= 2.23.0 versions.

Jun 26, 2026
CVE-2026-56057
9.8 CRITICAL

Subscriber PHP Object Injection in Uncanny Automator Pro <= 7.3.0.6 versions.

Jun 26, 2026
CVE-2026-56036
9.3 CRITICAL

Unauthenticated SQL Injection in 워드프레스 결제 심플페이 <= 5.5.6 versions.

Jun 26, 2026
CVE-2026-56034
9.3 CRITICAL

Unauthenticated SQL Injection in Library Management System <= 3.5.7 versions.

Jun 26, 2026
CVE-2026-56033
9.8 CRITICAL

Unauthenticated Privilege Escalation in Dokan Pro <= 5.0.4 versions.

Jun 26, 2026
CVE-2026-56032
9.8 CRITICAL

Subscriber PHP Object Injection in Buddyboss Platform <= 3.0.4 versions.

Jun 26, 2026
CVE-2026-56030
9.8 CRITICAL

Unauthenticated Privilege Escalation in Paytium <= 5.0.2 versions.

Jun 26, 2026
CVE-2026-56028
9.8 CRITICAL

Unauthenticated Privilege Escalation in Easy Elements for Elementor &#8211; Addons &amp; Website Templates <= 1.4.9 versions.

Jun 26, 2026
CVE-2026-56027
9.9 CRITICAL

Customer Arbitrary File Upload in Booster for WooCommerce <= 8.0.1 versions.

Jun 26, 2026
CVE-2026-54831
9.3 CRITICAL

Unauthenticated SQL Injection in GeoDirectory <= 2.8.162 versions.

Jun 26, 2026
CVE-2026-54827
9.3 CRITICAL

Unauthenticated SQL Injection in Real Estate 7 <= 3.5.9 versions.

Jun 26, 2026
CVE-2026-54825
9.3 CRITICAL

Unauthenticated SQL Injection in wpDataTables <= 7.4 versions.

Jun 26, 2026
CVE-2026-54820
9.3 CRITICAL

Unauthenticated SQL Injection in JetBooking <= 4.0.4.1 versions.

Jun 26, 2026
CVE-2025-64152
9.1 CRITICAL

Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') vulnerability in Apache IoTDB. This issue affects Apache IoTDB: from 1.0.0 before 1.3.6, from …

Jun 26, 2026
CVE-2025-55017
9.1 CRITICAL

Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') vulnerability in Apache IoTDB. This issue affects Apache IoTDB: from 2.0.0 before 2.0.6, from …

Jun 26, 2026
CVE-2026-57881
9.8 CRITICAL

An unauthenticated stack-based buffer overflow vulnerability exists in vlsvr in GeoVision GV-LPC2011 and GV-LPC2211 V1.12 and earlier. The vulnerability is caused by insufficient length validation …

Jun 26, 2026
CVE-2026-57880
9.8 CRITICAL

An unauthenticated stack-based buffer overflow vulnerability exists in ssvr in GeoVision GV-LPC2011 and GV-LPC2211 V1.12 and earlier. The vulnerability is caused by insufficient bounds checking …

Jun 26, 2026
CVE-2026-57879
9.8 CRITICAL

An unauthenticated stack-based buffer overflow vulnerability exists in ssvr in GeoVision GV-LPC2011 and GV-LPC2211 V1.12 and earlier. The vulnerability is caused by insufficient bounds checking …

Jun 26, 2026
CVE-2026-57878
9.8 CRITICAL

An unauthenticated stack-based buffer overflow vulnerability exists in thttpd in GeoVision GV-LPC2011 and GV-LPC2211 V1.12 and earlier. The vulnerability is caused by insufficient bounds checking …

Jun 26, 2026
CVE-2026-48930
9.8 CRITICAL

A flaw in Node.js TLS hostname handling can cause Embedded-nul hostnames can lead to silent authority rebinding due to c-string truncation in resolver bindings. This …

Jun 26, 2026
CVE-2026-40702
9.4 CRITICAL

WebSocket endpoints lack proper authentication mechanisms, enabling attackers to impersonate charging stations. As a result, attackers can exploit this weakness to gain unauthorized access to …

Jun 25, 2026
CVE-2025-71338
10.0 CRITICAL

Flowise contains a path traversal vulnerability in the /api/v1/document-store/loader/process endpoint that allows unauthenticated attackers to write arbitrary files to the filesystem. Attackers can exploit unsanitized …

Jun 25, 2026
CVE-2025-71336
9.8 CRITICAL

Flowise before 3.0.6 (affected versions 2.2.7-patch.1 and earlier) contains an unsandboxed remote code execution vulnerability in the Custom MCP feature, which is designed to execute …

Jun 25, 2026
CVE-2025-71334
9.8 CRITICAL

Flowise before 3.0.6 (affected versions 2.2.8 and earlier) contains an arbitrary file access vulnerability due to missing validation that the chatflowId and chatId parameters are …

Jun 25, 2026
CVE-2025-71333
9.8 CRITICAL

Flowise through 2.2.4 contains an unauthenticated arbitrary file upload vulnerability in the /api/v1/attachments endpoint when storageType is set to local. Attackers can exploit path traversal …

Jun 25, 2026

Scan your infrastructure for known CVEs

Free website and port scanning — find vulnerabilities before attackers do.