92,816 indexed
CVECVE vulnerabilities
92,816 CVEs indexed — newest first. Filter by CVSS severity or CISA KEV listing; KEV-flagged entries surface a rose pill. Authored by Adam Lundqvist.
Showing 3,101–3,150 of 92,816 · page 63 of 1857
| ID | Title | Summary |
|---|---|---|
| CVE-2026-93014 | CVE-2026-93014 CVSS 7.1 | RosarioSIS versions before 12.9 fail to validate the filename request parameter in Users and Students modules, allowing authenticated users to unlink allow-lis… |
| CVE-2026-93013 | CVE-2026-93013 CVSS 4.3 | RAGFlow through 0.27.2 contains a path traversal vulnerability in the dev_insert_chunks_from_file and dev_insert_metadata_from_file endpoints that allows authe… |
| CVE-2026-93012 | CVE-2026-93012 CVSS 9.8 | Email::Sender::Transport::Sendmail versions before 2.602 for Perl allow arbitrary command execution on Windows sending a message whose envelope address reaches… |
| CVE-2026-9301 | CVE-2026-9301 CVSS 6.3 | A vulnerability was found in omec-project amf up to 2.1.1. This vulnerability affects unknown code of the component NGReset Message Handler. Performing a manip… |
| CVE-2026-93000 | CVE-2026-93000 CVSS 6.8 | The SPS-Suite WordPress plugin through 1.4.0 does not sanitise the search query before using it in a SQL query when its static-page search feature is enabled, … |
| CVE-2026-9300 | CVE-2026-9300 CVSS 6.3 | A vulnerability has been found in omec-project amf up to 2.1.1. This affects an unknown part of the component NGSetupRequest Handler. Such manipulation leads t… |
| CVE-2026-92996 | CVE-2026-92996 CVSS 5.3 | The Verge3D WordPress plugin from 4.1.0 through 4.13.0 does not verify with the payment provider that a payment was actually made, and does not check order own… |
| CVE-2026-92995 | CVE-2026-92995 CVSS 5.3 | The Verge3D Publishing and E-Commerce WordPress plugin through 4.13.0 does not restrict access to a file-download handler, allowing unauthenticated users to do… |
| CVE-2026-92994 | CVE-2026-92994 CVSS 8.8 | The Verge3D Publishing and E-Commerce WordPress plugin before 4.13.1 does not validate the contents of files uploaded through its file storage feature and serv… |
| CVE-2026-92993 | CVE-2026-92993 CVSS 6.3 | A vulnerability was detected in Dromara mayfly-go up to 1.11.5. The impacted element is the function RunMachineScript of the file server/internal/machine/api/m… |
| CVE-2026-92992 | CVE-2026-92992 CVSS 6.3 | A security vulnerability has been detected in Dromara mayfly-go up to 1.11.5. The affected element is an unknown function of the file server/internal/ai/api/ai… |
| CVE-2026-92991 | CVE-2026-92991 CVSS 5.4 | The Biggop Library is vulnerable to Cross-Site Scripting via the ‘display_id’ parameter from the Sigmative API in various versions due to insufficient output e… |
| CVE-2026-92990 | CVE-2026-92990 CVSS 5.3 | The SendPress Newsletters WordPress plugin through 1.26.1.20 protects a logging endpoint with a hardcoded token that is the same on every site rather than a pe… |
| CVE-2026-9299 | CVE-2026-9299 CVSS 6.3 | A flaw has been found in omec-project amf up to 2.1.1. Affected by this issue is the function PDUSessionResourceModifyIndication of the file /go/src/amf/ngap/h… |
| CVE-2026-92989 | CVE-2026-92989 CVSS 4.3 | The SendPress Newsletters WordPress plugin through 1.26.1.20 does not check the user's capability on several newsletter-management actions, allowing any authen… |
| CVE-2026-92987 | CVE-2026-92987 CVSS 7.5 | roxmltree through 0.21.1 performs quadratic-time attribute and namespace validation during XML parsing without limits on attribute count. Attackers can craft X… |
| CVE-2026-92986 | CVE-2026-92986 CVSS 8.8 | SiYuan before 3.8.4 renders document titles as HTML in the backlink dock tree without escaping markup characters. Attackers can set malicious titles through th… |
| CVE-2026-92985 | CVE-2026-92985 CVSS 8.8 | SiYuan versions before 3.8.4 fail to escape bookmark labels imported from notebook files when rendering them in the dock tree. Attackers can craft malicious .s… |
| CVE-2026-92984 | CVE-2026-92984 CVSS 8.1 | HUBzero CMS through 2.2.32 accepts session identifiers from query strings and request variables instead of cookies alone, allowing unauthenticated attackers to… |
| CVE-2026-92983 | CVE-2026-92983 CVSS 7.5 | InternLM LMDeploy through 0.17.0 in DistServe prefill/decode disaggregation mode fails to release scheduler sessions because the proxy uses user-facing session… |
| CVE-2026-92980 | CVE-2026-92980 CVSS 7.2 | HortusFox-Web prior to version 6.1 contains a remote code execution vulnerability that allows authenticated administrators to execute arbitrary OS commands as … |
| CVE-2026-9298 | CVE-2026-9298 CVSS 6.3 | A vulnerability was detected in omec-project amf up to 2.1.1. Affected by this vulnerability is an unknown functionality of the component PathSwitchRequest Han… |
| CVE-2026-92977 | CVE-2026-92977 CVSS 7.2 | The Real Cookie Banner: GDPR & ePrivacy Cookie Consent plugin for WordPress is vulnerable to Stored Cross-Site Scripting via Comment in all versions up to, and… |
| CVE-2026-92976 | CVE-2026-92976 | A stored Cross-Site Scripting (XSS) vulnerability in the profile management functionality of T-Systems’ TAO 2.0 suite. An authenticated user could inject malic… |
| CVE-2026-92975 | CVE-2026-92975 CVSS 8.1 | The Groundhogg — CRM, Newsletters, and Marketing Automation plugin for WordPress is vulnerable to Privilege Escalation in all versions up to, and including, 4.… |
| CVE-2026-92974 | CVE-2026-92974 CVSS 6.1 | The Photo Gallery by 10Web – Mobile-Friendly Image Gallery plugin for WordPress is vulnerable to Reflected Cross-Site Scripting via the 'thumb_url' parameter i… |
| CVE-2026-92973 | CVE-2026-92973 CVSS 6.1 | ansi2html versions 1.7.0a0 through 1.9.3 contain a cross-site scripting vulnerability in OSC 8 hyperlink handling that fails to validate or escape URL targets.… |
| CVE-2026-92972 | CVE-2026-92972 CVSS 8.6 | SGLang through 0.5.19 in prefill/decode disaggregation mode contains an unauthenticated PUT /route endpoint on the prefill bootstrap service that allows attack… |
| CVE-2026-92971 | CVE-2026-92971 CVSS 7.5 | InternLM LMDeploy through 0.17.0 contains a reachable assertion vulnerability in the DistServe decode migration loop that allows unauthenticated attackers to t… |
| CVE-2026-92970 | CVE-2026-92970 CVSS 8.8 | HUBzero CMS through 2.2.32 contains a path traversal vulnerability in project file upload handlers that allows authenticated project members to write arbitrary… |
| CVE-2026-9297 | CVE-2026-9297 CVSS 6.3 | A security vulnerability has been detected in Edimax BR-6428NS 1.10. Affected is the function formWlbasic of the file /goform/formWlbasic of the component POST… |
| CVE-2026-92969 | CVE-2026-92969 CVSS 8.1 | The HUSKY – Products Filter for WooCommerce Professional plugin for WordPress is vulnerable to Local File Inclusion in all versions up to, and including, 1.4.4… |
| CVE-2026-92967 | CVE-2026-92967 CVSS 6.1 | The Pochipp plugin for WordPress is vulnerable to Reflected Cross-Site Scripting via the 'keyword' parameter in versions up to, and including, 1.20.2. This is … |
| CVE-2026-92966 | CVE-2026-92966 CVSS 9.1 | The The Appointment Booking Plugin – LatePoint | Calendar & Scheduling for WordPress plugin for WordPress is vulnerable to arbitrary shortcode execution in all… |
| CVE-2026-92965 | CVE-2026-92965 CVSS 3.7 | The TikTok WordPress plugin before 1.4.2 does not check that a request is authorised before acting on a sign-in code supplied in the URL, so any visitor can ma… |
| CVE-2026-92963 | CVE-2026-92963 CVSS 5.3 | vm2 versions before 3.11.2 fail to properly restrict access to the VM2_INTERNAL_STATE_DO_NOT_USE_OR_PROGRAM_WILL_FAIL global variable. Attackers can access thi… |
| CVE-2026-92962 | CVE-2026-92962 | vm2 is a sandbox for running untrusted JavaScript. In vm2 versions up to and including 3.11.3, the defaultSandboxPrepareStackTrace function in lib/setup-sandbo… |
| CVE-2026-92961 | CVE-2026-92961 CVSS 7.5 | vm2 before 3.11.6 fails to enforce bufferAllocLimit on ArrayBuffer, SharedArrayBuffer, and TypedArray constructors, allowing attackers to allocate arbitrary ho… |
| CVE-2026-92960 | CVE-2026-92960 CVSS 10.0 | vm2 before 3.11.6 fails to restrict access to os and dns builtins under the builtin: ['*'] configuration, allowing sandbox code to read host process identity a… |
| CVE-2026-9296 | CVE-2026-9296 CVSS 6.3 | A weakness has been identified in Edimax BR-6428NS 1.10. This impacts the function system of the file /goform/formWlanM of the component POST Request Handler. … |
| CVE-2026-92959 | CVE-2026-92959 CVSS 7.1 | vm2 before 3.11.8 does not fully enforce the allowAsync: false option in VM and NodeVM. While localPromise.prototype.then is replaced with a handler that throw… |
| CVE-2026-92958 | CVE-2026-92958 CVSS 8.5 | vm2 through 3.11.6 contains a builtin-module denylist bypass in NodeVM. When the embedder uses the builtin wildcard together with negative entries (e.g. requir… |
| CVE-2026-92957 | CVE-2026-92957 CVSS 9.9 | vm2 through 3.11.6 does not normalize `node:`-prefixed builtin specifiers when evaluating user-supplied negative (deny) entries in a NodeVM wildcard require po… |
| CVE-2026-92956 | CVE-2026-92956 CVSS 10.0 | vm2 versions 3.10.1 through 3.11.6 contain a sandbox escape reachable from a default `new VM()` sandbox when running on Node.js 26. WebAssembly.compileStreamin… |
| CVE-2026-92955 | CVE-2026-92955 CVSS 10.0 | vm2 before 3.11.8 contains a sandbox escape vulnerability in NodeVM that allows attackers to access the host __proto__ getter/setter through console._stdout an… |
| CVE-2026-92954 | CVE-2026-92954 CVSS 8.6 | vm2 is a sandbox library for running untrusted JavaScript in Node.js. In versions >= 3.10.0 and <= 3.11.7, Promises returned from the host realm into the sandb… |
| CVE-2026-92953 | CVE-2026-92953 CVSS 10.0 | vm2 versions from 3.11.0 before 3.11.8 fail to protect host TypedArray and ArrayBuffer prototypes from sandbox mutation. Attackers can use prototype-walking pr… |
| CVE-2026-92952 | CVE-2026-92952 CVSS 6.8 | vm2 versions 3.11.4 through 3.11.6 incompletely filter Node.js registered internal symbols across the sandbox boundary. The extraction filters in lib/setup-san… |
| CVE-2026-92951 | CVE-2026-92951 CVSS 9.9 | vm2 before 3.11.7 contains an incorrect authorization vulnerability in the external package allowlist check that uses non-exact substring matching instead of f… |
| CVE-2026-92950 | CVE-2026-92950 CVSS 8.6 | vm2 before 3.11.7 contains a sandbox escape vulnerability in the CLI tool that allows attackers to execute arbitrary code in the host Node.js process. Attacker… |