CVE Field Guide

Critical CVEs

CVE Title Updated Score
CVE-2025-41764 Unchecked role in wwwupdate.cgi 09.03.2026 9.1
CVE-2025-41765 Unchecked role in wwwupload.cgi 09.03.2026 9.1
CVE-2026-3823 Atop Technologies|EHG2408 series switch - Stack-based Buffer Overflow 09.03.2026 9.3
CVE-2026-3630 Stack-based Buffer Overflow Vulnerability in COMMGR2 09.03.2026 9.8
CVE-2026-3703 Wavlink NU516U1 login.cgi sub_401A10 out-of-bounds write 08.03.2026 9.3
CVE-2026-30860 WeKnora: Remote Code Execution via SQL Injection Bypass in AI Database Query Tool 07.03.2026 10
CVE-2026-30861 WeKnora: Remote Code Execution (RCE) via Command Injection in MCP Stdio Configuration Validation 07.03.2026 10
CVE-2026-30863 Parse Server: JWT audience validation bypass in Google, Apple, and Facebook authentication adapters 07.03.2026 9.3
CVE-2026-30832 Soft Serve: SSRF via unvalidated LFS endpoint in repo import 07.03.2026 9.1
CVE-2026-29191 ZITADEL: 1-Click Account Takeover via XSS in /saml-post Endpoint 07.03.2026 9.3
CVE-2026-25070 XikeStor SKS8310-8X PingTestSet Command Injection 07.03.2026 9.3
CVE-2026-29789 Vito: Cross-project privilege escalation in workflow site-creation actions allows unauthorized server modification 06.03.2026 10
CVE-2026-30847 Wekan Credential Leak via notificationUsers Publication Exposes Password Hashes and Session Tokens 06.03.2026 9.3
CVE-2026-30843 Wekan has Cross-Board IDOR in Custom Fields Update Endpoints 06.03.2026 9.3
CVE-2026-30844 Wekan Vulnerable to SSRF through Lack of Validation or Filtering in Attachment URL Loading 06.03.2026 9.3
CVE-2026-28514 Rocket.Chat: Users can login with any password via the EE ddp-streamer-service 09.03.2026 9.3
CVE-2026-26288 Everon api.everon.io Missing Authentication for Critical Function 06.03.2026 9.3
CVE-2026-26051 Mobiliti e-mobi.hu Missing Authentication for Critical Function 09.03.2026 9.3
CVE-2026-2330 CVE-2026-2330 06.03.2026 9.4
CVE-2026-2331 CVE-2026-2331 06.03.2026 9.8
CVE-2026-29183 SiYuan: Unauthenticated reflected SVG XSS in `/api/icon/getDynamicIcon` (`type=8`) enables arbitrary JavaScript execution 06.03.2026 9.3
CVE-2026-29058 AVideo: Unauthenticated OS Command Injection via base64Url in objects/getImage.php 06.03.2026 9.8
CVE-2026-28794 oRPC: Prototype Pollution in `@orpc/client` via `StandardRPCJsonSerializer` Deserialization 06.03.2026 9.3
CVE-2026-28508 Idno: Unauthenticated SSRF via URL Unfurl Endpoint 06.03.2026 9.2
CVE-2026-28680 Ghostfolio: Full-Read SSRF in Manual Asset Import 06.03.2026 9.3
CVE-2026-28785 Ghostfolio: Time-Based Blind SQL Injection in Manual Asset Import 06.03.2026 9.3
CVE-2025-59542 Chamilo: Account Takeover via Stored XSS in Course Learning Paths 06.03.2026 9.1
CVE-2025-59543 Chamilo: Account Takeover via Stored XSS in Course Description 09.03.2026 9.1
CVE-2026-28497 TinyWeb: Integer Overflow in `_Val` (HTTP Request Smuggling) 06.03.2026 9.3
CVE-2026-28501 WWBN AVideo: Unauthenticated SQL Injection via JSON Request Bypass in objects/videos.json.php 06.03.2026 9.8
CVE-2026-28502 WWBN AVideo: Authenticated Remote Code Execution via Unsafe Plugin ZIP Extraction 06.03.2026 9.3
CVE-2026-29046 TinyWeb: HTTP Header Control Character Injection into CGI Environment 06.03.2026 9.2
CVE-2026-22552 ePower epower.ie Missing Authentication for Critical Function 05.03.2026 9.3
CVE-2026-21536 Microsoft Devices Pricing Program Remote Code Execution Vulnerability 06.03.2026 9.8
CVE-2026-28391 OpenClaw < 2026.2.2 - Command Injection via cmd.exe Parsing Bypass in Allowlist Enforcement 06.03.2026 9.2
CVE-2026-28446 OpenClaw < 2026.2.1 - Inbound Allowlist Policy Bypass in voice-call Extension via Empty Caller ID and Suffix Matching 06.03.2026 9.2
CVE-2026-28466 OpenClaw < 2026.2.14 - Remote Code Execution via Node Invoke Approval Bypass 06.03.2026 9.4
CVE-2026-28470 OpenClaw < 2026.2.2 - Exec Allowlist Bypass via Command Substitution in Double Quotes 05.03.2026 9.2
CVE-2026-28472 OpenClaw < 2026.2.2 - Device Identity Check Bypass in Gateway WebSocket Connect Handshake 06.03.2026 9.2
CVE-2026-28474 OpenClaw Nextcloud Talk < 2026.2.6 - Allowlist Bypass via actor.name Display Name Spoofing 05.03.2026 9.3
CVE-2026-21622 Password Reset Tokens Do Not Expire 05.03.2026 9.5
CVE-2025-55208 Chamilo LMS has Stored Cross Site Scripting on Social Networks Uploaded Files 06.03.2026 9.1
CVE-2026-29188 File Browser: TUS Delete Endpoint Bypasses Delete Permission Check 06.03.2026 9.1
CVE-2026-0848 Arbitrary Code Execution in NLTK StanfordSegmenter via Untrusted JAR Loading 06.03.2026 10
CVE-2026-28353 Trivy Vulnerability Scanner: Unauthorized AI Agent Execution Code Included in OpenVSX Extension Release 06.03.2026 10
CVE-2026-25921 Gogs: Cross-repository LFS object overwrite via missing content hash verification 06.03.2026 9.3
CVE-2026-24457 06.03.2026 9.1
CVE-2026-27944 Nginx UI: Unauthenticated Backup Download with Encryption Key Disclosure 06.03.2026 9.8
CVE-2026-30789 RustDesk Client Generates Auth Proof Without Client-Side Nonce, Enabling Replay Attacks 05.03.2026 9.3
CVE-2026-30790 RustDesk Server Controls All Handshake Entropy (Salt/Challenge), Enabling Offline Brute-Force 05.03.2026 9.3
CVE-2026-30797 RustDesk rustdesk://config/ URI Silently Re-homes Client to Attacker-Controlled Server 05.03.2026 9.3
CVE-2026-30792 RustDesk Client Blindly Merges Unauthenticated Strategy Payloads, Bypassing Local Security Settings 06.03.2026 9.1
CVE-2026-30793 RustDesk Flutter URI Handler Sets Permanent Password Without Privilege Check or User Confirmation 05.03.2026 9.3
CVE-2026-30794 RustDesk HTTP Client Silently Accepts Invalid TLS Certificates After Handshake Failure 05.03.2026 9.1
CVE-2026-2599 Database for Contact Form 7, WPforms, Elementor forms <= 1.4.7 - Unauthenticated PHP Object Injection via 'download_csv' 05.03.2026 9.8
CVE-2026-21628 Extension - astroidframe.work - Unauthenticated Remote Code Execution in Astroid Framework 2.0.0 - 3.3.10 for Joomla 05.03.2026 10
CVE-2026-28536 05.03.2026 9.6
CVE-2026-2743 SEPPmail User Web Interface Arbitrary File Write to RCE 05.03.2026 10
CVE-2026-1678 dns: memory‑safety issue in the DNS name parser 05.03.2026 9.4
CVE-2026-29127 Incorrect Permission Assignment(777) on `monitor` Users Home Directory Containing SUID Root Binaries in IDC SFX2100 05.03.2026 9.2
CVE-2026-2835 HTTP Request Smuggling via HTTP/1.0 and Transfer-Encoding Misparsing 06.03.2026 9.3
CVE-2026-2833 HTTP Request Smuggling via Premature Upgrade 06.03.2026 9.3
CVE-2026-29000 pac4j-jwt JwtAuthenticator Authentication Bypass 07.03.2026 10
CVE-2026-20079 05.03.2026 10
CVE-2026-20131 05.03.2026 10
CVE-2026-28783 Craft has a Twig Function Blocklist Bypass 06.03.2026 9.4
CVE-2026-28697 Craft Affected by Authenticated RCE via "craft.app.fs.write()" in Twig Templates 06.03.2026 9.4
CVE-2026-27441 PDF Password CMDi 04.03.2026 9.5
CVE-2026-27442 zip_attachments Path Traversal 04.03.2026 9.3
CVE-2026-27446 Apache Artemis, Apache ActiveMQ Artemis: Auth bypass for Core downstream federation 05.03.2026 9.3
CVE-2026-29120 Insecure, Hardcoded Root Password Stored in Anaconda Configuration File On IDC SFX2100 Satellite Receiver 05.03.2026 9.2
CVE-2026-28777 Hardcoded and Insecure Credentials for "User" Local Account with SSH Access On IDC SFX2100 Satellite Receiver 05.03.2026 9.2
CVE-2026-28773 Authenticated OS Command Injection via Ping Utility Leading to RCE as Root 05.03.2026 9.3
CVE-2026-28774 Authenticated OS Command Injection via Traceroute Utility leads to Root RCE 05.03.2026 9.3
CVE-2026-28775 Unauthenticated RCE via SNMP Default Writable Community String 05.03.2026 10
CVE-2026-27971 Qwik affected by unauthenticated RCE via server$ Deserialization 04.03.2026 9.2
CVE-2026-28289 FreeScout 1.8.206 Patch Bypass for CVE-2026-27636 via Zero-Width Space Character Leads to Remote Code Execution 05.03.2026 10
CVE-2026-26279 Froxlor Admin-to-Root Privilege Escalation via Input Validation Bypass + OS Command Injection 04.03.2026 9.1
CVE-2026-26266 AliasVault affected by Cross-Site Scripting (XSS) via Email HTML Rendering 04.03.2026 9.3
CVE-2026-24898 OpenEMR has an Unauthenticated MedEx Token Disclosure 04.03.2026 10
CVE-2026-25146 OpenEMR's payments gateway_api_key secret rendered into client JS code 04.03.2026 9.6
CVE-2026-27012 Unauthenticated privilege escalation in OpenSTAManager via modules/utenti/actions.php 04.03.2026 9.8
CVE-2026-3485 D-Link DIR-868L SSDP Service sub_1BF84 os command injection 03.03.2026 9.3
CVE-2026-3437 Improper Restriction of Operations within the Bounds of a Memory Buffer in Portwell Engineering Toolkits 03.03.2026 9.3
CVE-2026-22891 03.03.2026 9.8
CVE-2026-22886 03.03.2026 9.8
CVE-2026-1492 User Registration & Membership <= 5.1.2 - Unauthenticated Privilege Escalation via Membership Registration 03.03.2026 9.8
CVE-2026-2628 All-in-One Microsoft 365 & Entra ID / Azure AD SSO Login <= 2.2.5 - Authentication Bypass 03.03.2026 9.8

Latest Updates

CVE Title Updated Score
CVE-2025-70042 09.03.2026
CVE-2025-70046 09.03.2026
CVE-2025-70050 09.03.2026
CVE-2026-25866 MobaXterm < 26.1 Notepad++ Unquoted Service Path 09.03.2026
CVE-2025-70047 09.03.2026
CVE-2025-70048 09.03.2026
CVE-2025-70059 09.03.2026
CVE-2025-70238 09.03.2026
CVE-2025-69647 09.03.2026
CVE-2025-69648 09.03.2026
CVE-2025-70243 09.03.2026
CVE-2025-70250 09.03.2026
CVE-2026-3089 Actual Sync Server 26.2.1 - Authenticated Path Traversal 09.03.2026
CVE-2026-2919 Attacker-controlled content shown under spoofed domains in Focus for iOS via stalled navigation and iframe redirect 09.03.2026
CVE-2026-3819 SourceCodester Resort Reservation System Reservation Management page cross site scripting 09.03.2026
CVE-2026-21736 GPU DDK - Insufficient permission check in PhysmemWrapExtMem() when write attribute support enabled 09.03.2026
CVE-2026-2261 blocklistd(8) socket leak 09.03.2026
CVE-2026-3038 Local DoS and possible privilege escalation via routing sockets 09.03.2026
CVE-2025-15576 Jail chroot escape via fd exchange with a different jail 09.03.2026
CVE-2026-3818 Tiandy Easy7 CMS Windows GetDBData.jsp sql injection 09.03.2026
CVE-2025-15547 Jail escape by a privileged user via nullfs 09.03.2026
CVE-2025-14558 Remote code execution via ND6 Router Advertisements 09.03.2026
CVE-2025-14769 ipfw denial of service 09.03.2026
CVE-2026-3817 SourceCodester Patients Waiting Area Queue Management System patient-search.php improper authorization 09.03.2026
CVE-2026-3816 OWASP DefectDojo SonarQubeParser/MSDefenderParser parser.py input_zip.read denial of service 09.03.2026
CVE-2026-25604 Apache Airflow AWS Auth Manager - Host Header Injection Leading to SAML Authentication Bypass 09.03.2026
CVE-2026-3815 UTT HiPER 810G formApMail strcpy buffer overflow 09.03.2026
CVE-2025-69219 Apache Airflow Providers Http: Unsafe Pickle Deserialization in apache-airflow-providers-http leading to RCE via HttpOperator 09.03.2026
CVE-2026-3814 UTT HiPER 810G getOneApConfTempEntry strcpy buffer overflow 09.03.2026
CVE-2025-40639 SQL injection in Eventobot 09.03.2026
CVE-2026-3813 opencc JFlow WF_CCForm.java Calculate injection 09.03.2026
CVE-2025-33022 09.03.2026
CVE-2025-40638 Reflected Cross-Site Scripting (XSS) in Eventobot 09.03.2026
CVE-2025-61611 09.03.2026 7.5
CVE-2025-61612 09.03.2026 7.5
CVE-2025-61613 09.03.2026 7.5
CVE-2025-61614 09.03.2026 7.5
CVE-2025-61615 09.03.2026 7.5
CVE-2025-61616 09.03.2026 7.5
CVE-2025-69278 09.03.2026 7.5
CVE-2025-69279 09.03.2026 7.5
CVE-2026-24015 Apache IoTDB: Insecure Default Configuration Vulnerability 09.03.2026
CVE-2026-24713 Apache IoTDB: JEXL Expression Injection Vulnerability 09.03.2026
CVE-2026-3812 itsourcecode Payroll Management System manage_employee_allowances.php cross site scripting 09.03.2026
CVE-2026-3811 Tenda FH1202 P2pListFilter fromP2pListFilter stack-based overflow 09.03.2026
CVE-2025-41754 Arbitrary Read with ubr-editfile 09.03.2026 6.5
CVE-2025-41755 Arbitrary Read with ubr-logread 09.03.2026 6.5
CVE-2025-41756 Arbitrary Write with ubr-editfile 09.03.2026 8.1
CVE-2025-41757 Arbitrary Write with ubr-restore 09.03.2026 8.8
CVE-2025-41758 Arbitrary Write with wwwupload.cgi 09.03.2026 8.8
CVE-2025-41759 Use of wildcard (“*” or “all”) in Block list 09.03.2026 4.9
CVE-2025-41760 Pass filter with Empty Table 09.03.2026 4.9
CVE-2025-41761 Privilege escalation possible 09.03.2026 7.8
CVE-2025-41762 Secret leak with wwwdnload.cgi 09.03.2026 6.2
CVE-2025-41763 Unchecked role in wwwdnload.cgi 09.03.2026 6.5
CVE-2025-41764 Unchecked role in wwwupdate.cgi 09.03.2026 9.1
CVE-2025-41765 Unchecked role in wwwupload.cgi 09.03.2026 9.1
CVE-2025-41766 Stack buffer overflow on parsing web request 09.03.2026 8.8
CVE-2025-41767 Signature bypass on update upload 09.03.2026 7.2
CVE-2025-41772 wwwupdate.cgi Session token in URL 09.03.2026 7.5
CVE-2026-3810 Tenda FH1202 DhcpListClient fromDhcpListClient stack-based overflow 09.03.2026
CVE-2026-3809 Tenda FH1202 NatSaticSetting fromNatStaticSetting stack-based overflow 09.03.2026
CVE-2026-3808 Tenda FH1202 webtypelibrary formWebTypeLibrary stack-based overflow 09.03.2026
CVE-2026-3807 Tenda FH1202 AdvSetWrlsafeset formWrlsafeset stack-based overflow 09.03.2026
CVE-2026-3823 Atop Technologies|EHG2408 series switch - Stack-based Buffer Overflow 09.03.2026
CVE-2026-3806 SourceCodester/janobe Resort Reservation System room_rates.php sql injection 09.03.2026
CVE-2026-3804 Tenda i3 WifiMacFilterSet formWifiMacFilterSet stack-based overflow 09.03.2026
CVE-2026-30896 09.03.2026
CVE-2026-3803 Tenda i3 WifiMacFilterGet formWifiMacFilterGet stack-based overflow 09.03.2026
CVE-2026-3802 Tenda i3 exeCommand formexeCommand stack-based overflow 09.03.2026
CVE-2026-3799 Tenda i3 setcfm formSetCfm stack-based overflow 09.03.2026
CVE-2026-3800 SourceCodester/janobe Resort Reservation System controller.php doInsert unrestricted upload 09.03.2026
CVE-2026-3801 Tenda i3 setAutoPing formSetAutoPing stack-based overflow 09.03.2026
CVE-2026-3822 Taipower|Taipower APP - Improper Certificate Validation 09.03.2026
CVE-2026-3630 Stack-based Buffer Overflow Vulnerability in COMMGR2 09.03.2026 9.8
CVE-2026-3631 Buffer Over-read DoS Vulnerability in COMMGR2 09.03.2026 7.5
CVE-2026-3796 Qi-ANXIN QAX Virus Removal Mini Filter Driver QKSecureIO_Imp.sys ZwTerminateProcess access control 09.03.2026
CVE-2026-3797 Tiandy Video Surveillance System 视频监控平台 CLS_REST_File.java uploadFile unrestricted upload 09.03.2026
CVE-2026-3798 Comfast CF-AC100 Request Path mbox-config sub_44AC14 command injection 09.03.2026
CVE-2026-3793 SourceCodester Sales and Inventory System GET Parameter sales_invoice1.php sql injection 09.03.2026
CVE-2026-3794 doramart DoraCMS Email API send improper authentication 09.03.2026
CVE-2026-3795 doramart DoraCMS v1.js createFileBypath path traversal 09.03.2026
CVE-2026-3792 SourceCodester Sales and Inventory System GET Parameter purchase_invoice.php sql injection 09.03.2026
CVE-2026-3791 SourceCodester Sales and Inventory System Search dashboard.php sql injection 09.03.2026
CVE-2026-3790 SourceCodester Sales and Inventory System POST Parameter check_supplier_details.php sql injection 09.03.2026
CVE-2026-3788 Bytedesk SpringAIOpenrouterRestController SpringAIOpenrouterRestService.java getModels server-side request forgery 08.03.2026
CVE-2026-3789 Bytedesk SpringAIGiteeRestController SpringAIGiteeRestService.java getModels server-side request forgery 08.03.2026
CVE-2026-3787 UltraVNC Windows Service cryptbase.dll uncontrolled search path 08.03.2026
CVE-2026-3785 EasyCMS Request Parameter RbacnodeAction.class.php sql injection 08.03.2026
CVE-2026-3786 EasyCMS Request Parameter RbacuserAction.class.php sql injection 08.03.2026
CVE-2026-3771 SourceCodester/janobe Resort Reservation System accomodation.php sql injection 08.03.2026
CVE-2026-3769 Tenda F453 WrlclientSet stack-based overflow 08.03.2026
CVE-2026-3770 SourceCodester Computer Laboratory Management System cross-site request forgery 08.03.2026