92,816 indexed

CVECVE vulnerabilities

92,816 CVEs indexed — newest first. Filter by CVSS severity or CISA KEV listing; KEV-flagged entries surface a rose pill. Authored by Adam Lundqvist.

Showing 3,101–3,150 of 92,816 · page 63 of 1857

IDTitleSummary
CVE-2026-93014CVE-2026-93014
CVSS 7.1
RosarioSIS versions before 12.9 fail to validate the filename request parameter in Users and Students modules, allowing authenticated users to unlink allow-lis…
CVE-2026-93013CVE-2026-93013
CVSS 4.3
RAGFlow through 0.27.2 contains a path traversal vulnerability in the dev_insert_chunks_from_file and dev_insert_metadata_from_file endpoints that allows authe…
CVE-2026-93012CVE-2026-93012
CVSS 9.8
Email::Sender::Transport::Sendmail versions before 2.602 for Perl allow arbitrary command execution on Windows sending a message whose envelope address reaches…
CVE-2026-9301CVE-2026-9301
CVSS 6.3
A vulnerability was found in omec-project amf up to 2.1.1. This vulnerability affects unknown code of the component NGReset Message Handler. Performing a manip…
CVE-2026-93000CVE-2026-93000
CVSS 6.8
The SPS-Suite WordPress plugin through 1.4.0 does not sanitise the search query before using it in a SQL query when its static-page search feature is enabled, …
CVE-2026-9300CVE-2026-9300
CVSS 6.3
A vulnerability has been found in omec-project amf up to 2.1.1. This affects an unknown part of the component NGSetupRequest Handler. Such manipulation leads t…
CVE-2026-92996CVE-2026-92996
CVSS 5.3
The Verge3D WordPress plugin from 4.1.0 through 4.13.0 does not verify with the payment provider that a payment was actually made, and does not check order own…
CVE-2026-92995CVE-2026-92995
CVSS 5.3
The Verge3D Publishing and E-Commerce WordPress plugin through 4.13.0 does not restrict access to a file-download handler, allowing unauthenticated users to do…
CVE-2026-92994CVE-2026-92994
CVSS 8.8
The Verge3D Publishing and E-Commerce WordPress plugin before 4.13.1 does not validate the contents of files uploaded through its file storage feature and serv…
CVE-2026-92993CVE-2026-92993
CVSS 6.3
A vulnerability was detected in Dromara mayfly-go up to 1.11.5. The impacted element is the function RunMachineScript of the file server/internal/machine/api/m…
CVE-2026-92992CVE-2026-92992
CVSS 6.3
A security vulnerability has been detected in Dromara mayfly-go up to 1.11.5. The affected element is an unknown function of the file server/internal/ai/api/ai…
CVE-2026-92991CVE-2026-92991
CVSS 5.4
The Biggop Library is vulnerable to Cross-Site Scripting via the ‘display_id’ parameter from the Sigmative API in various versions due to insufficient output e…
CVE-2026-92990CVE-2026-92990
CVSS 5.3
The SendPress Newsletters WordPress plugin through 1.26.1.20 protects a logging endpoint with a hardcoded token that is the same on every site rather than a pe…
CVE-2026-9299CVE-2026-9299
CVSS 6.3
A flaw has been found in omec-project amf up to 2.1.1. Affected by this issue is the function PDUSessionResourceModifyIndication of the file /go/src/amf/ngap/h…
CVE-2026-92989CVE-2026-92989
CVSS 4.3
The SendPress Newsletters WordPress plugin through 1.26.1.20 does not check the user's capability on several newsletter-management actions, allowing any authen…
CVE-2026-92987CVE-2026-92987
CVSS 7.5
roxmltree through 0.21.1 performs quadratic-time attribute and namespace validation during XML parsing without limits on attribute count. Attackers can craft X…
CVE-2026-92986CVE-2026-92986
CVSS 8.8
SiYuan before 3.8.4 renders document titles as HTML in the backlink dock tree without escaping markup characters. Attackers can set malicious titles through th…
CVE-2026-92985CVE-2026-92985
CVSS 8.8
SiYuan versions before 3.8.4 fail to escape bookmark labels imported from notebook files when rendering them in the dock tree. Attackers can craft malicious .s…
CVE-2026-92984CVE-2026-92984
CVSS 8.1
HUBzero CMS through 2.2.32 accepts session identifiers from query strings and request variables instead of cookies alone, allowing unauthenticated attackers to…
CVE-2026-92983CVE-2026-92983
CVSS 7.5
InternLM LMDeploy through 0.17.0 in DistServe prefill/decode disaggregation mode fails to release scheduler sessions because the proxy uses user-facing session…
CVE-2026-92980CVE-2026-92980
CVSS 7.2
HortusFox-Web prior to version 6.1 contains a remote code execution vulnerability that allows authenticated administrators to execute arbitrary OS commands as …
CVE-2026-9298CVE-2026-9298
CVSS 6.3
A vulnerability was detected in omec-project amf up to 2.1.1. Affected by this vulnerability is an unknown functionality of the component PathSwitchRequest Han…
CVE-2026-92977CVE-2026-92977
CVSS 7.2
The Real Cookie Banner: GDPR & ePrivacy Cookie Consent plugin for WordPress is vulnerable to Stored Cross-Site Scripting via Comment in all versions up to, and…
CVE-2026-92976CVE-2026-92976A stored Cross-Site Scripting (XSS) vulnerability in the profile management functionality of T-Systems’ TAO 2.0 suite. An authenticated user could inject malic…
CVE-2026-92975CVE-2026-92975
CVSS 8.1
The Groundhogg — CRM, Newsletters, and Marketing Automation plugin for WordPress is vulnerable to Privilege Escalation in all versions up to, and including, 4.…
CVE-2026-92974CVE-2026-92974
CVSS 6.1
The Photo Gallery by 10Web – Mobile-Friendly Image Gallery plugin for WordPress is vulnerable to Reflected Cross-Site Scripting via the 'thumb_url' parameter i…
CVE-2026-92973CVE-2026-92973
CVSS 6.1
ansi2html versions 1.7.0a0 through 1.9.3 contain a cross-site scripting vulnerability in OSC 8 hyperlink handling that fails to validate or escape URL targets.…
CVE-2026-92972CVE-2026-92972
CVSS 8.6
SGLang through 0.5.19 in prefill/decode disaggregation mode contains an unauthenticated PUT /route endpoint on the prefill bootstrap service that allows attack…
CVE-2026-92971CVE-2026-92971
CVSS 7.5
InternLM LMDeploy through 0.17.0 contains a reachable assertion vulnerability in the DistServe decode migration loop that allows unauthenticated attackers to t…
CVE-2026-92970CVE-2026-92970
CVSS 8.8
HUBzero CMS through 2.2.32 contains a path traversal vulnerability in project file upload handlers that allows authenticated project members to write arbitrary…
CVE-2026-9297CVE-2026-9297
CVSS 6.3
A security vulnerability has been detected in Edimax BR-6428NS 1.10. Affected is the function formWlbasic of the file /goform/formWlbasic of the component POST…
CVE-2026-92969CVE-2026-92969
CVSS 8.1
The HUSKY – Products Filter for WooCommerce Professional plugin for WordPress is vulnerable to Local File Inclusion in all versions up to, and including, 1.4.4…
CVE-2026-92967CVE-2026-92967
CVSS 6.1
The Pochipp plugin for WordPress is vulnerable to Reflected Cross-Site Scripting via the 'keyword' parameter in versions up to, and including, 1.20.2. This is …
CVE-2026-92966CVE-2026-92966
CVSS 9.1
The The Appointment Booking Plugin – LatePoint | Calendar & Scheduling for WordPress plugin for WordPress is vulnerable to arbitrary shortcode execution in all…
CVE-2026-92965CVE-2026-92965
CVSS 3.7
The TikTok WordPress plugin before 1.4.2 does not check that a request is authorised before acting on a sign-in code supplied in the URL, so any visitor can ma…
CVE-2026-92963CVE-2026-92963
CVSS 5.3
vm2 versions before 3.11.2 fail to properly restrict access to the VM2_INTERNAL_STATE_DO_NOT_USE_OR_PROGRAM_WILL_FAIL global variable. Attackers can access thi…
CVE-2026-92962CVE-2026-92962vm2 is a sandbox for running untrusted JavaScript. In vm2 versions up to and including 3.11.3, the defaultSandboxPrepareStackTrace function in lib/setup-sandbo…
CVE-2026-92961CVE-2026-92961
CVSS 7.5
vm2 before 3.11.6 fails to enforce bufferAllocLimit on ArrayBuffer, SharedArrayBuffer, and TypedArray constructors, allowing attackers to allocate arbitrary ho…
CVE-2026-92960CVE-2026-92960
CVSS 10.0
vm2 before 3.11.6 fails to restrict access to os and dns builtins under the builtin: ['*'] configuration, allowing sandbox code to read host process identity a…
CVE-2026-9296CVE-2026-9296
CVSS 6.3
A weakness has been identified in Edimax BR-6428NS 1.10. This impacts the function system of the file /goform/formWlanM of the component POST Request Handler. …
CVE-2026-92959CVE-2026-92959
CVSS 7.1
vm2 before 3.11.8 does not fully enforce the allowAsync: false option in VM and NodeVM. While localPromise.prototype.then is replaced with a handler that throw…
CVE-2026-92958CVE-2026-92958
CVSS 8.5
vm2 through 3.11.6 contains a builtin-module denylist bypass in NodeVM. When the embedder uses the builtin wildcard together with negative entries (e.g. requir…
CVE-2026-92957CVE-2026-92957
CVSS 9.9
vm2 through 3.11.6 does not normalize `node:`-prefixed builtin specifiers when evaluating user-supplied negative (deny) entries in a NodeVM wildcard require po…
CVE-2026-92956CVE-2026-92956
CVSS 10.0
vm2 versions 3.10.1 through 3.11.6 contain a sandbox escape reachable from a default `new VM()` sandbox when running on Node.js 26. WebAssembly.compileStreamin…
CVE-2026-92955CVE-2026-92955
CVSS 10.0
vm2 before 3.11.8 contains a sandbox escape vulnerability in NodeVM that allows attackers to access the host __proto__ getter/setter through console._stdout an…
CVE-2026-92954CVE-2026-92954
CVSS 8.6
vm2 is a sandbox library for running untrusted JavaScript in Node.js. In versions >= 3.10.0 and <= 3.11.7, Promises returned from the host realm into the sandb…
CVE-2026-92953CVE-2026-92953
CVSS 10.0
vm2 versions from 3.11.0 before 3.11.8 fail to protect host TypedArray and ArrayBuffer prototypes from sandbox mutation. Attackers can use prototype-walking pr…
CVE-2026-92952CVE-2026-92952
CVSS 6.8
vm2 versions 3.11.4 through 3.11.6 incompletely filter Node.js registered internal symbols across the sandbox boundary. The extraction filters in lib/setup-san…
CVE-2026-92951CVE-2026-92951
CVSS 9.9
vm2 before 3.11.7 contains an incorrect authorization vulnerability in the external package allowlist check that uses non-exact substring matching instead of f…
CVE-2026-92950CVE-2026-92950
CVSS 8.6
vm2 before 3.11.7 contains a sandbox escape vulnerability in the CLI tool that allows attackers to execute arbitrary code in the host Node.js process. Attacker…
Sourced from NVD + CISA KEV + FIRST EPSS. Curated by Adam Lundqvist, Founder at SQUR.