CVE Database

60353+ vulnerabilities with CVSS scores, EPSS exploit predictions, and CISA KEV status. Updated daily.

Filter: All CRITICAL HIGH MEDIUM LOW CISA KEV
Sort: Newest CVSS EPSS
CVE-2026-88837
6.5 MEDIUM

BusyBox httpd treats yescrypt ($y$) password hashes as plaintext during Basic Authentication, inverting the authentication check.

Sep 23, 2026
CVE-2026-88835
6.1 MEDIUM

BusyBox dpkg read_package_field() steps past a NUL terminator on malformed .deb packages, causing an out-of-bounds heap read.

Sep 23, 2026
CVE-2026-88831
5.3 MEDIUM

BusyBox httpd IP deny rules with invalid CIDR prefix lengths fail open, leaving a parsed IP with a zeroed mask so the rule matches no …

Sep 23, 2026
CVE-2026-86867
6.5 MEDIUM

Cinnamon's Kotaemon (all versions up to and including v0.12.0) multi-user chat interface contains multiple vulnerabilities due to incorrect authorization and improper access controls. There are …

Sep 23, 2026
CVE-2026-96807
4.0 MEDIUM

In Flatpak before 1.18.1, a malicious sandboxed app can replace ~/.var/app/$appid/.ld.so with a symlink, causing regenerate_ld_cache to write files at an arbitrary location. The filenames …

Sep 23, 2026
CVE-2026-96655
4.3 MEDIUM

Plex Media Server before 1.43.3.10861 allows an authenticated user to request arbitrary internal or external addresses via the '/video/:/transcode/universal' path parameter.

Sep 23, 2026
CVE-2026-96654
6.5 MEDIUM

Plex Media Server before 1.43.3.10861 does not correctly neutralize URL values included in 'searchOne,' allowing an attacker to call other plugins' functions and supply their …

Sep 23, 2026
CVE-2026-96652
4.3 MEDIUM

Plex Media Server before 1.43.3.10861 allows SSRF via '/player/timeline'. An attacker using any X-Plex-Token value can include a full URL in the 'protocol' parameter and …

Sep 23, 2026
CVE-2026-96651
6.5 MEDIUM

Plex Media Server before 1.43.3.10861 builds a file path from the url parameter without checking it for ../ sequences, allowing path traversal via '/system/agents/media/get'. A …

Sep 23, 2026
CVE-2026-6669
5.9 MEDIUM

Missing upper bound on the key derivation iteration count accepted during SCRAM authentication to a backend server in PgBouncer through 1.25.2 allows a malicious or …

Sep 23, 2026
CVE-2026-96674
4.4 MEDIUM

alsa-lib through 1.2.16.1 computes combined topology element size using 32-bit arithmetic in src/topology/ctl.c, allowing integer overflow that defeats bounds checks. Attackers can supply crafted topology …

Sep 23, 2026
CVE-2026-96672
6.4 MEDIUM

Frappe ERPNext versions before 16.34.1 fail to validate that Financial Report Template calculation_formula values reference whitelisted methods before passing them to frappe.call(). Accounts Managers can …

Sep 23, 2026
CVE-2026-79306
6.5 MEDIUM

CyberPanel v1.9.1 contains a path traversal vulnerability in the compress method exposed through the /filemanager/controller endpoint. An authenticated remote attacker with ownership of any configured …

Sep 23, 2026
CVE-2026-79304
6.5 MEDIUM

CyberPanel 1.9.1 contains a path traversal vulnerability in the readFileContents method of the /filemanager/controller endpoint. An authenticated remote attacker with ownership of any configured domain …

Sep 23, 2026
CVE-2026-6327
4.3 MEDIUM

IBM Concert 1.0.0 through 3.0.0 could allow an unauthorized user to inject data into log messages due to improper neutralization of special elements when written …

Sep 23, 2026
CVE-2026-3626
5.3 MEDIUM

IBM Concert 1.0.0 through 3.0.0 could allow a remote attacker to obtain sensitive information when a detailed technical error message is returned in the browser. …

Sep 23, 2026
CVE-2026-19267
6.2 MEDIUM

IBM Financial Transaction Manager (FTM) for RedHat OpenShift is vulnerable to missing authentication on the Business Rules Manager commands REST endpoint (`CommandsResource.java:31`). A local actor …

Sep 23, 2026
CVE-2026-19087
4.4 MEDIUM

IBM Financial Transaction Manager (FTM) for RedHat OpenShift could allow a local attacker to achieve privilege escalation within the container due to improper privilege management.

Sep 23, 2026
CVE-2026-18505
5.4 MEDIUM

IBM Financial Transaction Manager (FTM) for RedHat OpenShift is vulnerable to open redirect in the PMP `HostHeaderFilter` (`HostHeaderFilter.java:151`). An unauthenticated attacker can craft a request …

Sep 23, 2026
CVE-2026-18180
6.5 MEDIUM

IBM Financial Transaction Manager (FTM) for RedHat OpenShift could allow a remote authenticated attacker to obtain sensitive information due to SQL injection.

Sep 23, 2026
CVE-2026-96611
6.9 MEDIUM

FFmpeg before 9.0 has a signed integer overflow in libavformat/mov.c. In mov_read_ispe(), uint32_t width/height values from a crafted HEIF ispe box are stored into signed …

Sep 23, 2026
CVE-2026-96600
5.5 MEDIUM

Isotope eCommerce through 2.9.10 contains a blind SQL injection vulnerability in backend callbacks that interpolate request-controlled identifiers and administrator-supplied values directly into SQL statements. Authenticated …

Sep 23, 2026
CVE-2026-96599
5.9 MEDIUM

Isotope eCommerce through 2.9.10 derives order identifiers from uniqid() instead of a cryptographically secure source, allowing unauthenticated attackers to guess identifiers. Guest orders lack ownership …

Sep 23, 2026
CVE-2026-96276
6.5 MEDIUM

If a malicious SDK container declares an extension point with a crafted `directory` path, and a developer runs `flatpak build-init --writable-sdk --sdk-extension` with that SDK, …

Sep 23, 2026
CVE-2026-92164
6.5 MEDIUM

Streamlink is a CLI utility which pipes video streams from various services into a video player. Prior to 8.6.0, HTTPSession mounts a FileAdapter for the …

Sep 23, 2026
CVE-2026-88974
5.4 MEDIUM

WPGraphQL provides a GraphQL API for WordPress sites. Prior to 2.22.2, the updatePost mutation in src/Mutation/PostObjectUpdate.php checks only the collection-level edit_posts capability and the post …

Sep 23, 2026
CVE-2026-73858
5.3 MEDIUM

Solspace Freeform plugin for Craft CMS 5.x is a super flexible form-building tool. From 5.0.0 through 5.10.13, submitted values from public Freeform forms can be …

Sep 23, 2026
CVE-2026-73589
6.3 MEDIUM

Dell Secure Connect Gateway (SCG) Policy Manager, versions prior to 5.34.00.16, Versions prior to 5.36, contains a Weak Encoding for Password vulnerability. A low privileged …

Sep 23, 2026
CVE-2026-73587
6.8 MEDIUM

Dell Secure Connect Gateway (SCG) Policy Manager, versions prior to 5.34.00.16, contains an Improper Certificate Validation vulnerability. An unauthenticated attacker with adjacent network access could …

Sep 23, 2026
CVE-2026-73586
6.4 MEDIUM

Dell Secure Connect Gateway (SCG) Policy Manager, versions prior to 5.34.00.16, contains an Insufficient Session Expiration vulnerability. A low privileged attacker with adjacent network access …

Sep 23, 2026
CVE-2026-71177
5.4 MEDIUM

Dell Secure Connect Gateway (SCG) Policy Manager, versions prior to 5.34.00.16, contains an Improper Restriction of Rendered UI Layers or Frames vulnerability. A low privileged …

Sep 23, 2026
CVE-2026-63002
4.8 MEDIUM

REDAXO is a PHP-based content management system. Prior to 5.21.2, redaxo/src/addons/mediapool/pages/sync.php inserts filenames held in $diffFiles from the media filesystem into the Mediapool Sync page …

Sep 23, 2026
CVE-2026-63001
4.8 MEDIUM

REDAXO is a PHP-based content management system. Prior to 5.21.2, the mediaIsInUse() handler in redaxo/src/addons/media_manager/lib/media_manager.php inserts a Media Manager type name into raw backend warning …

Sep 23, 2026
CVE-2026-63000
6.4 MEDIUM

REDAXO is a PHP-based content management system. Prior to 5.21.2, rex_api_install_package_update in redaxo/src/addons/install/lib/api/api_package_update.php inherits the false default from rex_api_function::requiresCsrfProtection() instead of requiring a CSRF token. …

Sep 23, 2026
CVE-2026-62998
4.3 MEDIUM

REDAXO is a PHP-based content management system. Prior to 5.21.2, rex_list::getSortColumn() in redaxo/src/core/lib/list.php accepts the sort request parameter without checking whether setColumnSortable() registered the requested …

Sep 23, 2026
CVE-2026-61834
4.3 MEDIUM

scim-patch is a library for applying SCIM patch operations. Prior to 0.9.2, navigate() reads inherited properties and assign() uses prototype-chain membership checks while resolving attacker-controlled …

Sep 23, 2026
CVE-2026-61413
6.8 MEDIUM

Dell Secure Connect Gateway (SCG) Policy Manager, versions prior to 5.34.00.16, contains an Improper Privilege Management vulnerability. A low privileged attacker with remote access could …

Sep 23, 2026
CVE-2026-18179
6.5 MEDIUM

IBM Financial Transaction Manager (FTM) for RedHat OpenShift could allow a remote attacker to clear active chat sessions due to improper authorization.

Sep 23, 2026
CVE-2026-84091
5.3 MEDIUM

The SUMIT Payment Gateway for WooCommerce WordPress plugin before 4.0.0 does not verify with the payment provider that a payment notification is genuine before marking …

Sep 23, 2026
CVE-2026-77112
6.5 MEDIUM

Server-Side request forgery (SSRF) vulnerability in Global IT Informatics Technology Services Inc. Weoll allows Server Side Request Forgery. This issue affects Weoll: before 3.2.45.44.

Sep 23, 2026
CVE-2026-96446
4.2 MEDIUM

A flaw was found in the Pushed Authorization Request PAR implementation of Keycloak. The issue occurs when the silent authentication path prompt=none is used, which …

Sep 23, 2026
CVE-2026-96445
6.8 MEDIUM

A flaw was found in the Conditional OTP authenticator of Keycloak, an identity and access management solution. The issue occurs when the system evaluates specific …

Sep 23, 2026
CVE-2026-80444
5.4 MEDIUM

URL redirection to untrusted site ('open redirect') vulnerability in Abis Technology Ltd. Co. AVESİS allows Input Data Manipulation. This issue affects AVESİS: from 202608201331 before …

Sep 23, 2026
CVE-2026-73581
6.5 MEDIUM

Improper Check for Certificate Revocation vulnerability in Apache Tomcat. Both the OpenSSL and OpenSSL-FFM TLS implementations ignore CRLs when certificate uses a keystore. This issue …

Sep 23, 2026
CVE-2026-96456
6.3 MEDIUM

The Reachy Mini Bluetooth service asks a connecting device for a PIN before it will accept commands. The check protects the session but not the …

Sep 23, 2026
CVE-2026-90950
5.3 MEDIUM

The Paid Membership Subscriptions WordPress plugin before 3.1.0 does not verify the reCAPTCHA on its registration handler when a form field is absent from the …

Sep 23, 2026
CVE-2026-87978
5.3 MEDIUM

The Paymob for WooCommerce WordPress plugin before 4.1.14 does not verify the request signature on one branch of its payment webhook, allowing unauthenticated attackers to …

Sep 23, 2026
CVE-2026-87071
5.3 MEDIUM

The Forminator Forms WordPress plugin before 1.57.2.1 does not restrict which metadata keys a form submission may supply, and does not exclude the keys WordPress …

Sep 23, 2026
CVE-2026-87070
5.3 MEDIUM

The Forminator Forms WordPress plugin before 1.57.2.1 does not verify that a request came from a trusted proxy before preferring client-supplied forwarding headers over the …

Sep 23, 2026
CVE-2026-86612
5.6 MEDIUM

The Ninja Tables WordPress plugin before 5.2.17 does not restrict shortcode expansion to administrator-authored table rows which, in a non-default configuration, allows unauthenticated users to …

Sep 23, 2026

Scan your infrastructure for known CVEs

Free website and port scanning — find vulnerabilities before attackers do.