CVE Database

48111+ vulnerabilities with CVSS scores, EPSS exploit predictions, and CISA KEV status. Updated daily.

Filter: All CRITICAL HIGH MEDIUM LOW CISA KEV
Sort: Newest CVSS EPSS
CVE-2026-93572
7.5 HIGH

A flaw was found in Netty's `RedisArrayAggregator` component. A remote attacker can exploit this vulnerability by sending specially crafted nested Redis (RESP) array headers. This …

Sep 18, 2026
CVE-2026-93563
7.5 HIGH

A flaw was found in Netty's `SmtpResponseDecoder` component. A remote attacker, acting as a malicious or man-in-the-middle (MITM) SMTP server, could exploit this by sending …

Sep 18, 2026
CVE-2026-81627
8.2 HIGH

A flaw was found in QEMU. The VAPIC setup hypercall in hw/i386/vapic.c does not validate that the writable RAM alias remains within the option ROM …

Sep 18, 2026
CVE-2026-87915
7.2 HIGH

The Popup Maker – Boost Sales, Conversions, Optins, Subscribers with the Ultimate WP Popup Builder plugin for WordPress is vulnerable to Stored Cross-Site Scripting via …

Sep 18, 2026
CVE-2026-87743
7.5 HIGH

A flaw was found in Quarkus HTTP security. An unauthenticated attacker can exploit a discrepancy in how paths are normalized between the security matcher and …

Sep 18, 2026
CVE-2026-18405
7.2 HIGH

The Jeg Kit for Elementor – Powerful Addons for Elementor, Widgets & Templates for WordPress plugin for WordPress is vulnerable to Stored Cross-Site Scripting via …

Sep 18, 2026
CVE-2026-85410
8.1 HIGH

The Master Addons for Elementor – Elementor Addons, Widgets, Mega Menu Builder, Popup Builder, Widget Builder & Template Kits plugin for WordPress is vulnerable to …

Sep 18, 2026
CVE-2026-83561
7.2 HIGH

The Complianz GDPR/CCPA Cookie Consent Banner plugin for WordPress is vulnerable to Stored Cross-Site Scripting via Comment Content via Elementor Cookie Blocker Regex in all …

Sep 18, 2026
CVE-2026-6205
8.1 HIGH

An external control of file name or path vulnerability in Upload API in Synology DiskStation Manager (DSM) before 7.2.1-69057-12, 7.2.2-72806-9, 7.3.2-86009-4 and 7.4-90075 allows remote …

Sep 18, 2026
CVE-2026-40539
7.1 HIGH

An improper certificate validation vulnerability in Email API in Synology DiskStation Manager (DSM) before 7.2.1-69057-10, 7.2.2-72806-7 and 7.3.2-86009-2 allows man-in-the-middle attackers to read or write …

Sep 18, 2026
CVE-2026-40530
8.0 HIGH

An improper neutralization of CRLF sequences ('CRLF injection') vulnerability in User API in Synology DiskStation Manager (DSM) before 7.2.1-69057-10, 7.2.2-72806-7 and 7.3.2-86009-2 allows remote authenticated …

Sep 18, 2026
CVE-2026-13673
8.8 HIGH

An incorrect permission assignment for critical resource vulnerability in LDAP API in Synology DiskStation Manager (DSM) before 7.2.1-69057-12, 7.2.2-72806-9, 7.3.2-86009-4 and 7.4-90075 allows remote authenticated …

Sep 18, 2026
CVE-2026-93494
7.5 HIGH

A flaw was found in Netty's StompSubframeDecoder component. A remote attacker can exploit this vulnerability by sending a specially crafted STOMP frame body without its …

Sep 18, 2026
CVE-2026-89059
7.5 HIGH

A flaw was found in RESTEasy's IIOImageProvider, which decodes attacker-supplied image request bodies without enforcing any limit on the declared image dimensions or pixel count. …

Sep 18, 2026
CVE-2026-89058
7.4 HIGH

A flaw was found in RESTEasy's CorsFilter, which, when configured to allow all origins ("*"), reflects the request's Origin header back in the Access-Control-Allow-Origin response …

Sep 18, 2026
CVE-2026-85705
7.5 HIGH

The Location Manager plugin for WordPress is vulnerable to generic SQL Injection via 'latitude' and 'longitude' REST API Parameters in all versions up to, and …

Sep 18, 2026
CVE-2026-75157
7.5 HIGH

Apache Airflow's asset queued-events DELETE endpoints checked the caller's Dag-axis permission with `READ` instead of `EDIT`. Any authenticated user who could read a Dag could …

Sep 18, 2026
CVE-2026-67103
7.6 HIGH

HCL BigFix Service Management is affected by Cross-Site Scripting (XSS) vulnerability, which could allow an attacker to inject unsanitized malicious scripts that execute in a …

Sep 18, 2026
CVE-2026-67102
8.1 HIGH

HCL BigFix Service Management is affected by a high-severity Broken Access Control vulnerability, which could allow a low-privileged user to gain unauthorized access to administrative …

Sep 18, 2026
CVE-2026-18442
7.5 HIGH

The WCFM Marketplace – Multivendor Marketplace for WooCommerce plugin for WordPress is vulnerable to generic SQL Injection via the 'wcfmmp_user_location_lng' parameter in all versions up …

Sep 18, 2026
CVE-2026-15275
7.5 HIGH

The WP Multi Store Locator Pro plugin for WordPress is vulnerable to generic SQL Injection via the 'store_locatore_search_radius' parameter in all versions up to, and …

Sep 18, 2026
CVE-2026-14323
7.5 HIGH

The Printcart Web to Print Product Designer for WooCommerce plugin for WordPress is vulnerable to Directory Traversal in all versions up to, and including, 2.8.5 …

Sep 18, 2026
CVE-2026-12954
8.8 HIGH

The Mapster WP Maps plugin for WordPress is vulnerable to Arbitrary User Meta Write in all versions up to, and including, 1.23.0 via the `my_profile_update()` …

Sep 18, 2026
CVE-2026-12384
8.8 HIGH

Authorization bypass through User-Controlled key vulnerability in TECHIN2B TECHIN2B Application allows Privilege Abuse. This issue affects TECHIN2B Application: from V1.0.7676.13 through 18092026. NOTE: The vendor …

Sep 18, 2026
CVE-2026-92619
7.2 HIGH

The Booking Calendar plugin for WordPress is vulnerable to Privilege Escalation in all versions up to, and including, 11.8.2 via the `wpbc_ajax_option_save` AJAX action. The …

Sep 18, 2026
CVE-2026-89413
8.1 HIGH

The Filter Gallery plugin for WordPress is vulnerable to authorization bypass in all versions up to, and including, 1.1.4. This is due to the plugin …

Sep 18, 2026
CVE-2026-93485
7.1 HIGH

Improper neutralization of input during web page generation ('cross-site scripting') vulnerability in Automattic WordPress core allows DOM-Based XSS. This issue affects WordPress versions 7.1 before …

Sep 18, 2026
CVE-2026-90978
7.1 HIGH

The Filter Gallery WordPress plugin before 1.1.5 does not verify the nonce on several of its AJAX handlers when the nonce field is omitted, and …

Sep 18, 2026
CVE-2026-88825
8.8 HIGH

The iGMS Direct Booking WordPress plugin before 2.0 does not authorise or escape its widget appearance settings, allowing unauthenticated users to store arbitrary web scripts …

Sep 18, 2026
CVE-2026-87775
8.6 HIGH

The Tz Weekly Radio Schedule WordPress plugin through 1.8.1 does not sanitize and escape a parameter before using it to build a SQL query on …

Sep 18, 2026
CVE-2026-87774
8.6 HIGH

The Tz Weekly Radio Schedule WordPress plugin through 1.8.1 does not sanitize and escape a parameter before using it to build a SQL query on …

Sep 18, 2026
CVE-2026-87771
8.6 HIGH

The Product Question and Answer WordPress plugin through 1.1.0 does not sanitize and escape parameters before using them in SQL queries on AJAX actions available …

Sep 18, 2026
CVE-2026-87770
8.6 HIGH

The Price Drop Alert for Woo Commerce WordPress plugin through 1.1 does not sanitize and escape parameters before using them in a SQL query on …

Sep 18, 2026
CVE-2026-87767
8.6 HIGH

The wp shortcut link and advertisement baner WordPress plugin through 1.2.0 does not sanitize and escape a parameter before using it in a SQL query …

Sep 18, 2026
CVE-2026-85127
8.8 HIGH

The VikBooking Hotel Booking Engine & PMS WordPress plugin before 1.8.15 does not restrict the type of files unauthenticated visitors may attach to its live …

Sep 18, 2026
CVE-2026-85122
8.8 HIGH

The Easy Form Builder by WhiteStudio WordPress plugin before 4.2.0 does not validate a submitted value against the stored configuration for some of its form …

Sep 18, 2026
CVE-2026-81810
7.2 HIGH

The All-in-One WP Migration and Backup WordPress plugin before 7.111 does not perform any capability check on several of its AJAX actions, gating them only …

Sep 18, 2026
CVE-2026-18912
7.7 HIGH

ManageEngine DataSecurity Plus versions before 6310 are vulnerable to an authenticated SQL injection vulnerability, allowing an authenticated technician to execute arbitrary SQL queries through the …

Sep 18, 2026
CVE-2026-18911
7.5 HIGH

ManageEngine DataSecurity Plus versions before 6310 are vulnerable to an agent authentication bypass, allowing unenrolled agents to send requests without proper authentication.

Sep 18, 2026
CVE-2026-17086
8.8 HIGH

The ShortPixel Image Optimizer – Optimize Images, Convert WebP & AVIF plugin for WordPress is vulnerable to PHP Object Injection in all versions up to, …

Sep 18, 2026
CVE-2026-93468
7.5 HIGH

The OAKlouds developed by HGiga has an Arbitrary File Read vulnerability. Unauthenticated remote attackers can exploit Relative Path Traversal to read arbitrary system files.

Sep 18, 2026
CVE-2026-93371
8.3 HIGH

A security vulnerability has been detected in marcopiovanello yt-dlp-web-ui up to v4. This issue affects the function NewGenericDownload of the file server/internal/downloaders/generic.go. Such manipulation of …

Sep 18, 2026
CVE-2026-93456
8.2 HIGH

django-page-cms through 2.0.13 exempts five admin mutation views from CSRF protection in pages/admin/views.py, allowing attackers to forge requests that modify page content. Signed-in editors visiting …

Sep 18, 2026
CVE-2026-93331
7.3 HIGH

A vulnerability was identified in GPAC 26.08-DEV. This vulnerability affects the function gf_rtp_parse_ttxt of the file src/ietf/rtp_depacketizer.c of the component RTP Depacketizer. Such manipulation of …

Sep 18, 2026
CVE-2026-93453
8.3 HIGH

SOGo before 5.12.11 constructs password-reset links using the client-supplied Origin header as the authority, allowing unauthenticated attackers to redirect recovery tokens to attacker-controlled domains. Attackers …

Sep 18, 2026
CVE-2026-93452
7.5 HIGH

snappy-java through 1.1.10.8 contains a buffer overflow vulnerability in Snappy.compress(ByteBuffer, ByteBuffer) that writes past the end of the destination buffer. Attackers can supply incompressible data …

Sep 18, 2026
CVE-2026-93450
7.5 HIGH

go-openapi/swag jsonutils before 0.27.1 contains a stack overflow vulnerability in ordered JSON parsing and serialization due to unbounded recursion with no depth limit. Remote unauthenticated …

Sep 18, 2026
CVE-2026-85887
7.7 HIGH

Incorrect permission assignment for critical resource in M365 Copilot allows an authorized attacker to disclose information over a network.

Sep 18, 2026
CVE-2026-83946
8.2 HIGH

Improper neutralization of input during web page generation ('cross-site scripting') in Azure Portal allows an unauthorized attacker to perform spoofing over a network.

Sep 18, 2026
CVE-2026-93436
7.5 HIGH

vLLM through 0.29.0 fails to properly clean up decode-side metadata for rejected inference requests in prefill/decode disaggregated deployments. Remote attackers can submit requests with max_tokens=0 …

Sep 17, 2026

Scan your infrastructure for known CVEs

Free website and port scanning — find vulnerabilities before attackers do.