CVE Field Guide

Critical CVEs

CVE Title Updated Score
CVE-2026-18872 IBM Financial Transaction Manager (FTM) is Impacted by Multiple Vulnerabilities 23.09.2026 9.3
CVE-2026-59167 SunEditor: Critical XSS vulnerability - sanitizer bypass 23.09.2026 10
CVE-2026-96560 LightLLM through 1.2.0 Unauthenticated Remote Code Execution via NCCL PD RPyC Control Channel 23.09.2026 9.3
CVE-2026-86708 Sensitive data exposure 23.09.2026 10
CVE-2026-19599 Remote Code Execution vulnerability 23.09.2026 9.9
CVE-2026-96257 Fast FAC1203R Gigabit Edition Device Discovery Service copy_msg_element stack-based overflow 23.09.2026 10
CVE-2026-18162 IBM Financial Transaction Manager (FTM) is Impacted by Multiple Vulnerabilities 22.09.2026 9.8
CVE-2026-18163 IBM Financial Transaction Manager (FTM) is Impacted by Multiple Vulnerabilities 22.09.2026 9.8
CVE-2026-18169 IBM Financial Transaction Manager (FTM) is Impacted by Multiple Vulnerabilities 23.09.2026 9.9
CVE-2026-19202 Token Cache Reuse in mcp-toolbox-sdk-python 23.09.2026 9.1
CVE-2026-17645 IBM Financial Transaction Manager (FTM) is Impacted by Multiple Vulnerabilities 22.09.2026 9.1
CVE-2026-16346 DataStage on Cloud Pak for Data has several vulnerabilities 22.09.2026 9.9
CVE-2026-17472 Multiple Vulnerabilities in IBM Concert Software 23.09.2026 9.6
CVE-2026-17635 IBM Financial Transaction Manager (FTM) is Impacted by Multiple Vulnerabilities 22.09.2026 9.1
CVE-2026-77987 GitHub Enterprise Server notebook viewer vulnerable to Server-side request forgery 23.09.2026 9.3
CVE-2026-87121 Out-of-bounds write in lwIP TCP/IP Stack MQTT Client Application 22.09.2026 9.3
CVE-2026-28324 SolarWinds Observability Self-Hosted Remote Code Execution Vulnerability 22.09.2026 9.8
CVE-2026-47116 LTSecurity LTK3500SF Hard-coded Credentials via Telnet/SSH 23.09.2026 9.2
CVE-2026-76708 Unauthenticated Remote Unauthorized Access Vulnerability in HPE Networking Analytics and Location Engine (ALE) 23.09.2026 9.8
CVE-2026-76709 Unauthenticated Remote Arbitrary File Write Vulnerability in HPE Networking Analytics and Location Engine (ALE) 23.09.2026 9.8
CVE-2026-57149 plone.app.portlets Vulnerable to Remote Code Execution via TALES Injection 22.09.2026 9.9
CVE-2026-91130 Home Assistant: XSS in Statistics Graph Card 22.09.2026 9.3
CVE-2026-75682 Adobe Connect | Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') (CWE-89) 23.09.2026 9.9
CVE-2026-75684 Adobe Connect | Cross-site Scripting (Stored XSS) (CWE-79) 22.09.2026 9.3
CVE-2026-75686 Adobe Connect | Improper Input Validation (CWE-20) 23.09.2026 9.3
CVE-2026-75689 Adobe Connect | Cross-site Scripting (Stored XSS) (CWE-79) 22.09.2026 9.3
CVE-2026-75697 Adobe Connect | Cross-site Scripting (Stored XSS) (CWE-79) 22.09.2026 9.3
CVE-2026-75698 Adobe Connect | Cross-site Scripting (Reflected XSS) (CWE-79) 23.09.2026 9.3
CVE-2026-75745 Adobe Experience Manager Forms JEE | Incorrect Authorization (CWE-863) 22.09.2026 10
CVE-2026-81995 Adobe Experience Manager Forms JEE | Improper Input Validation (CWE-20) 23.09.2026 9.1
CVE-2026-82000 Adobe Experience Manager Forms JEE | Server-Side Request Forgery (SSRF) (CWE-918) 23.09.2026 9.6
CVE-2026-77254 MCP Atlassian: Unauthenticated HTTP MCP requests can use globally configured Jira and Confluence credentials 22.09.2026 9.1
CVE-2026-43641 Softaculous Virtualizor OS Command Injection via Billing Module Handler 23.09.2026 9.3
CVE-2026-43642 Softaculous Virtualizor PHP Object Injection via Billing Module Handler 22.09.2026 9.2
CVE-2026-18461 Use of Externally-Controlled Format String vulnerability in RTI Connext Professional (Core Libraries) allows Format String Injection. 22.09.2026 9.2
CVE-2026-77244 [mcp-atlassian] Authentication bypass in HTTP transport: AtlassianOpaqueTokenVerifier accepts any non-empty token 23.09.2026 10
CVE-2026-7866 Stack-based Buffer Overflow vulnerability in RTI Connext Professional (Core Libraries) allows Overflow Buffers. 23.09.2026 9.3
CVE-2026-73369 Adobe Campaign Classic (ACC) | Improper Control of Generation of Code ('Code Injection') (CWE-94) 23.09.2026 10
CVE-2026-75699 Adobe Campaign Classic (ACC) | Improper Control of Generation of Code ('Code Injection') (CWE-94) 22.09.2026 10
CVE-2026-75703 Adobe Campaign Classic (ACC) | Improper Control of Generation of Code ('Code Injection') (CWE-94) 22.09.2026 10
CVE-2026-75721 Adobe Campaign Classic (ACC) | Improper Control of Generation of Code ('Code Injection') (CWE-94) 22.09.2026 10
CVE-2026-75723 Adobe Campaign Classic (ACC) | Incorrect Authorization (CWE-863) 22.09.2026 10
CVE-2026-75728 Adobe Campaign Classic (ACC) | Incorrect Authorization (CWE-863) 23.09.2026 9.1
CVE-2026-82008 Adobe Campaign Classic (ACC) | Improper Input Validation (CWE-20) 22.09.2026 9.9
CVE-2026-82009 Adobe Campaign Classic (ACC) | Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') (CWE-89) 22.09.2026 9.1
CVE-2026-82010 Adobe Campaign Classic (ACC) | Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') (CWE-89) 22.09.2026 9.9
CVE-2026-82011 Adobe Campaign Classic (ACC) | Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') (CWE-89) 23.09.2026 9.1
CVE-2026-82013 Adobe Campaign Classic (ACC) | Server-Side Request Forgery (SSRF) (CWE-918) 22.09.2026 9.9
CVE-2026-82443 Adobe Campaign Classic (ACC) | Server-Side Request Forgery (SSRF) (CWE-918) 22.09.2026 9.6
CVE-2026-83660 Adobe Campaign Classic (ACC) | Server-Side Request Forgery (SSRF) (CWE-918) 22.09.2026 9.9
CVE-2026-84412 Adobe Campaign Classic (ACC) | Improper Control of Generation of Code ('Code Injection') (CWE-94) 22.09.2026 10
CVE-2026-89275 Adobe Campaign Classic (ACC) | Improper Control of Generation of Code ('Code Injection') (CWE-94) 23.09.2026 10
CVE-2026-89276 Adobe Campaign Classic (ACC) | Improper Control of Generation of Code ('Code Injection') (CWE-94) 22.09.2026 9.9
CVE-2026-85734 LightRAG: No Rate Limiting on /login Endpoint Allows Brute-Force Attacks 22.09.2026 9.1
CVE-2026-86059 Dokploy: Git Provider Credential Exposure via Unprotected .one Endpoints and application.one 22.09.2026 9.6
CVE-2026-94456 Unauthenticated recovery of the Math.random() state behind OAuth tokens, authorization codes, client secrets and organization API keys 22.09.2026 9.1
CVE-2026-63374 AnyIO: TLSStream IDNA 2003 host name encoding enables potential TLS certificate spoofing 22.09.2026 9.3
CVE-2026-77621 Vector: Arbitrary file write in the file sink via templated path (path traversal). 22.09.2026 9.3
CVE-2026-80143 Lantronix Autonomous Out-of-Band Devices CLI Command Injection via mfc eeprom read 22.09.2026 9.4
CVE-2026-80144 Lantronix Autonomous Out-of-Band Devices CLI Command Injection via mfc eeprom write 22.09.2026 9.4
CVE-2026-80145 Lantronix Autonomous Out-of-Band Devices CLI Command Injection via set cifs password 23.09.2026 9.4
CVE-2026-80146 Lantronix Autonomous Out-of-Band Devices Stack-Based Buffer Overflow via mfc eeprom read 22.09.2026 9.4
CVE-2026-80147 Lantronix Autonomous Out-of-Band Devices Stack-Based Buffer Overflow via mfc eeprom write 22.09.2026 9.4
CVE-2026-80151 Lantronix Autonomous Out-of-Band Devices OS Command Injection via set nfs download 22.09.2026 9.4
CVE-2026-80152 Lantronix Autonomous Out-of-Band Devices OS Command Injection via set script schedule 22.09.2026 9.4
CVE-2026-80155 Lantronix Autonomous Out-of-Band Devices Unauthenticated Authentication Bypass via snprintf Path Truncation 22.09.2026 10
CVE-2026-80156 Lantronix Autonomous Out-of-Band Devices Arbitrary File Write via Upload Filename Validation Bypass 23.09.2026 9.4
CVE-2026-95654 Databasement before 1.7.14 Authorization Bypass via Stale Invitation Token 22.09.2026 9.1
CVE-2026-65113 22.09.2026 9.8
CVE-2026-84388 22.09.2026 9.1
CVE-2026-94127 BIG-IP APM OAuth vulnerability 23.09.2026 9.3
CVE-2026-12718 SQLi in Karel Electronics' KarelIPS 22.09.2026 9.8
CVE-2026-95675 D-Link DAP-1360 6.14 Unauthenticated RCE via Web Management Interface 22.09.2026 9.3
CVE-2026-93616 Directory Traversal and File upload allows execution of arbitrary script on the Management Server 23.09.2026 9.8
CVE-2026-74849 Remote code execution vulnerability 23.09.2026 9.8
CVE-2026-25254 Improper authorization in Qualcomm Software Center 22.09.2026 9.8
CVE-2026-93556 Direct references to unsafe objects (IDOR) in Tankuam Places by Kompini 22.09.2026 9.3
CVE-2026-89422 TLS 1.3 client skips server authentication when ServerHello carries an unsolicited pre_shared_key extension 22.09.2026 9.3
CVE-2026-93952 Security Advisory 0183 23.09.2026 9.5
CVE-2026-13355 Meta Box AIO <= 3.11.0 And Standalone Plugin Extensions - Unauthenticated Privilege Escalation to Administrator to 'rwmb_frontend_field_object_id' Parameter 22.09.2026 9.8
CVE-2026-19658 Give Tributes <= 2.3.1 - Unauthenticated PHP Object Injection via 'give_tributes_ecard_notify[recipient][personalized][]' Parameter 22.09.2026 9.8
CVE-2026-94493 Gigatech PDV5701 WebSocket Service index.html missing authentication 22.09.2026 10
CVE-2026-94425 Moore Threads MTT S80 Driver Package IOCTL mtdispkm64.sys sub_140006F0C privileges management 22.09.2026 9.3
CVE-2026-46649 Joplin: SSO Auth Code Login Missing Rate Limiting — 9-Digit Numeric Code Brute-Forceable via Unprotected Endpoint 21.09.2026 9.1
CVE-2026-77521 MaxKB: Prompt-injectable agent can lead to command execution 22.09.2026 10
CVE-2026-94424 Moore Threads MTT S80 Driver Package IOCTL mtdispkm64.sys sub_140001000 heap-based overflow 22.09.2026 9.3
CVE-2026-79916 MaxKB AWS Bedrock model credential injection leads to remote code execution 22.09.2026 9.1
CVE-2026-94571 22.09.2026 9.4
CVE-2026-94572 21.09.2026 9.4
CVE-2026-58491 Warpgate: Reflected XSS in SSO return endpoint via attacker-controlled next parameter 22.09.2026 9.3
CVE-2026-94403 ColorFul iGameCenter IOCTL ene.sys sub_140001AF0 untrusted pointer dereference 22.09.2026 9.3
CVE-2026-79920 Ajenti: Privilege escalation to root via unauthenticated/unauthorized plugin install task 21.09.2026 9.9
CVE-2026-61674 Fluent Bit: Remote stack buffer overflow in Fluent Bit `out_forward` Secure-Forward `PONG` handler 21.09.2026 9.2
CVE-2026-85751 Mailu: Authentication bypass in header-based proxy authentication via spoofable `X-Forwarded-By` trust 21.09.2026 9.8
CVE-2026-94301 Apache MINA: CVE-2026-47065 resolveProxyClass fix missing from 2.0.X and 2.1.X branches (2.0.30 / 2.1.14) ZDRES-232 22.09.2026 9.8
CVE-2025-12999 22.09.2026 9.1
CVE-2026-94146 BioStar BIOS Update Utility IOCTL BSMEM64_W10.sys sub_110BC write-what-where 22.09.2026 9.3
CVE-2026-94142 BioStar Temperature Monitor Utility IOCTL BS_HWMIO64_W10.sys sub_1105C write-what-where 21.09.2026 9.3
CVE-2026-94128 BioStar VIVID LED DJ IOCTL BS_LED64.sys sub_1105C write-what-where 21.09.2026 9.3
CVE-2026-94129 BioStar VALKYRIE AURORA IOCTL BS_RVSIO64.sys sub_1105C write-what-where 21.09.2026 9.3
CVE-2026-94101 Netcore NBR200V2 routerd vlan_load_form_uci buffer overflow 21.09.2026 9.4
CVE-2026-94098 Netcore NBR200V2 Firmware Upgrade CGI Endpoint upgrade command injection 21.09.2026 9.4
CVE-2026-94099 Netcore NBR200V2 Backup Restore restore.cgi command injection 22.09.2026 9.4
CVE-2026-94100 Netcore NBR200V2 WAN VLAN Reconfiguration routerd wan_config_set_vlan buffer overflow 21.09.2026 9.4
CVE-2026-94097 Netcore NBR200V2 CGI Diagnostic Endpoint network_tools command injection 20.09.2026 10
CVE-2026-94096 Netcore NBR200V2 LAN IP Configuration network_tools command injection 21.09.2026 9.4
CVE-2026-94095 Netcore NBR200V2 Traceroute Diagnostic Feature network_tools command injection 21.09.2026 9.4
CVE-2026-94089 D-Link DIR-868L Authentication webfa_authentication.cgi strcpy stack-based overflow 22.09.2026 10
CVE-2026-88857 Joomla Extension - OrdaSoft.com - Authenticated, Privileged Remote Code Execution in OrdaSoft Joomla Gallery extension for Joomla < 6.2.7 22.09.2026 9.4
CVE-2026-88854 Joomla Extension - OrdaSoft.com - Unauthenticated SQL Injection in OrdaSoft Joomla Gallery extension for Joomla < 6.2.7 22.09.2026 9.3
CVE-2026-88856 Joomla Extension - OrdaSoft.com - Authenticated, Privileged Remote Code Execution in OrdaSoft Joomla Gallery extension for Joomla < 6.2.7 22.09.2026 9.4
CVE-2026-90817 21.09.2026 9.8
CVE-2026-94003 Comfast CF-N1-S Web Management mbox-config get_css_path_from_uri stack-based overflow 20.09.2026 10
CVE-2026-94107 NivoCart through 2.4.0 Predictable Administrator Password Reset Token 21.09.2026 9.2
CVE-2026-93958 D-Link R95 DHMAPI ssi system os command injection 21.09.2026 9.4
CVE-2026-94083 22.09.2026 9.4
CVE-2026-94084 22.09.2026 9.4
CVE-2026-93985 OpenPanel js-runtime JavaScript Template Sandbox Escape RCE 21.09.2026 9.4
CVE-2026-93742 Totolink A3002MU formWsc command injection 21.09.2026 9.4
CVE-2026-93741 Totolink A3002MU formWlWds buffer overflow 22.09.2026 10
CVE-2026-84434 Gravity Forms <= 3.1.0.4 - Unauthenticated Arbitrary File Upload via Hidden File Upload Field 19.09.2026 9.8
CVE-2026-89274 WP Recipe Maker <= 10.8.1 - Unauthenticated Arbitrary Shortcode Execution via Recipe Comment Content 19.09.2026 9.1
CVE-2026-92229 Forminator Forms <= 1.57.2 - Unauthenticated Arbitrary Shortcode Execution via 'current_url' Parameter 19.09.2026 9.1
CVE-2026-75885 Openshift/console: openshift/console: unauthenticated ssrf and resource exhaustion via devfile parser endpoint 21.09.2026 9.3
CVE-2026-93740 Totolink A3002MU formWlEncrypt buffer overflow 21.09.2026 10
CVE-2026-93739 Totolink A3002MU formWlAc buffer overflow 18.09.2026 9.4
CVE-2026-93738 Totolink A3002MU formSchedule buffer overflow 22.09.2026 9.4
CVE-2026-58264 FluidSynth: Heap-based buffer overrun 21.09.2026 9.8
CVE-2026-63647 CordysCRM SSE Notification Stream Hijack via `/sse/subscribe` 18.09.2026 9.3
CVE-2026-93868 Cotonti through 1.0.0 Predictable Password Recovery Token via Weak PRNG 18.09.2026 9.2
CVE-2026-84073 IBM Guardium Data Protection is affected by multiple vulnerabilities. 19.09.2026 9.1
CVE-2026-84075 IBM Guardium Data Protection is affected by multiple vulnerabilities. 19.09.2026 9.9
CVE-2026-84078 IBM Guardium Data Protection is affected by multiple vulnerabilities. 19.09.2026 9.9
CVE-2026-84082 IBM Guardium Data Protection is affected by multiple vulnerabilities. 23.09.2026 9.8
CVE-2026-61781 pg_partman has privilege escalation through SQL injection in create_partition_time() 18.09.2026 9.9
CVE-2026-84064 IBM Guardium Data Protection is affected by multiple vulnerabilities. 23.09.2026 9.9
CVE-2026-82967 IBM Guardium Data Protection is affected by multiple vulnerabilities. 23.09.2026 9.8
CVE-2026-84031 IBM Guardium Data Protection is affected by multiple vulnerabilities. 18.09.2026 9
CVE-2026-81657 IBM Guardium Data Protection is affected by multiple vulnerabilities. 23.09.2026 9.8
CVE-2026-82340 IBM Guardium Data Protection is affected by multiple vulnerabilities. 23.09.2026 9.8
CVE-2026-82832 IBM Guardium Data Protection is affected by multiple vulnerabilities. 19.09.2026 9.6
CVE-2026-75878 IBM Sterling File Gateway is Vulnerable to Authentication Bypass 19.09.2026 9.1
CVE-2026-80441 IBM Guardium Data Protection is affected by multiple vulnerabilities. 23.09.2026 9.8
CVE-2026-80442 IBM Guardium Data Protection is affected by multiple vulnerabilities. 23.09.2026 9.9
CVE-2026-93839 LightLLM through 1.2.0 Missing Authentication in PD Master /pd_register WebSocket Endpoint 22.09.2026 9.3
CVE-2023-54399 Hongjing e-HR < 8.2 SQL Injection via /servlet/codesettree 21.09.2026 9.3
CVE-2026-59163 Mnemosyne has JWT signature verification bypass sync server that allows authentication bypass 18.09.2026 9.1
CVE-2026-61550 Icinga 2: Improper access control for JSON-RPC update certificate messages 21.09.2026 9.8
CVE-2025-66455 LMDeploy has Remote Code Execution by Pickle Deserialization via handle_zmq_recv in lmdeploy/lmdeploy/pytorch/disagg/conn/engine_conn.py 18.09.2026 9.8
CVE-2026-92701 Cocos AI: Intra-handshake attested TLS implementation is vulnerable to session-misbinding attacks for Intel TDX verifier path 21.09.2026 9.1
CVE-2026-92702 Cocos AI: Intra-handshake attested TLS implementation can accept Evidence with nil, empty, or omitted reportData in the AMD SEV-SNP path 22.09.2026 9.1
CVE-2026-93762 Data deletion and attribute disclosure via field-name method injection in in-memory queries 21.09.2026 9.2
CVE-2026-77240 WACRM: Database-layer authorization bypasses 18.09.2026 9.9
CVE-2026-81321 CareCam CM2507 Cleartext Storage of Sensitive Information 19.09.2026 9.3
CVE-2026-85497 CareCam CM2507 Use of Password Hash With Insufficient Computational Effort 21.09.2026 9.3
CVE-2026-10858 IBM MQ for HPE NonStop is vulnerable to a denial of service attack 19.09.2026 9.9
CVE-2026-61682 kcp front-proxy does not strip inbound X-Remote-* identity headers, allowing any authenticated client to inject groups/warrants and impersonate system:masters in any workspace 21.09.2026 9.9
CVE-2026-10747 IBM MQ Appliance is affected by a heap buffer overflow vulnerability in protocol message processing 21.09.2026 10
CVE-2026-84383 libheif: Heap buffer overflow in `scale_nearest_neighbor()` via duplicate Alpha planes from nested `iden`/`auxl` items 18.09.2026 9.8
CVE-2025-15399 Multiple vulnerabilities affect IBM License Key Server Administration and Reporting Tool and IBM LKS Administration Agent 21.09.2026 10
CVE-2025-53837 org.xwiki.rendering:xwiki-rendering-xml has an Eval Injection issue 21.09.2026 9.9
CVE-2026-93659 Concrete CMS Community Store before 2.7.8 Stored XSS 18.09.2026 9.3
CVE-2023-5778 Missing Length Check 18.09.2026 9.2
CVE-2026-93603 vm2 before 3.12.1 Sandbox Escape RCE via Non-Strict Host Function 22.09.2026 10
CVE-2026-93605 vm2 NodeVM before 3.12.1 Remote Code Execution via child_process 21.09.2026 10
CVE-2026-93606 vm2 before 3.12.1 Sandbox Escape via Promise Symbol.species 18.09.2026 10
CVE-2026-28197 Privilege Escalation via Argument Injection in NetBackup Flex OS Shell 18.09.2026 9.4
CVE-2026-28198 Privilege Escalation via Cryptographic Signature Verification Bypass in NetBackup Flex OS Shell 18.09.2026 9.4
CVE-2026-13639 18.09.2026 9.8
CVE-2026-13684 18.09.2026 9.8
CVE-2026-67100 HCL BigFix Service Management is affected by multiple security vulnerabilities. 18.09.2026 9.8
CVE-2026-67101 HCL BigFix Service Management is affected by multiple security vulnerabilities. 21.09.2026 9.3
CVE-2026-93467 HGiga|OAKlouds - Insecure Deserialization 18.09.2026 9.3
CVE-2026-62874 Azure Billing Elevation of Privilege Vulnerability 21.09.2026 10
CVE-2026-69843 Microsoft Fabric Elevation of Privilege Vulnerability 21.09.2026 10
CVE-2026-85878 Azure Database for PostgreSQL Elevation of Privilege Vulnerability 21.09.2026 9.9
CVE-2026-69399 Azure Arc Elevation of Privilege Vulnerability 21.09.2026 10
CVE-2026-69865 Microsoft Container Registry Elevation of Privilege Vulnerability 21.09.2026 10
CVE-2026-70009 Azure Arc Elevation of Privilege Vulnerability 21.09.2026 9.3
CVE-2026-70200 Azure Logic Apps Elevation of Privilege Vulnerability 21.09.2026 10
CVE-2026-77903 Microsoft Dataverse Elevation of Privilege Vulnerability 21.09.2026 9
CVE-2026-83944 Azure Logic Apps Elevation of Privilege Vulnerability 21.09.2026 10
CVE-2026-85885 Microsoft 365 Copilot Elevation of Privilege Vulnerability 21.09.2026 9.9
CVE-2026-85889 Azure AI Foundry Elevation of Privilege Vulnerability 21.09.2026 10
CVE-2026-87701 Azure Cosmos DB Elevation of Privilege Vulnerability 21.09.2026 9.6
CVE-2026-54734 Prebid Server Java: Vulnerability to request forgery allows for possible host environment data extraction 18.09.2026 10
CVE-2026-76949 Remember-me sign-in guard reads a session key that is never written in ash_authentication, allowing session replacement 18.09.2026 9.1
CVE-2026-54670 WeGIA: Unauthenticated Auth Bypass + Local File Inclusion 17.09.2026 9.1
CVE-2026-54767 WeGIA: Hardcoded Secret Key Backdoor — Mass Data Destruction via deletar_socios.php 18.09.2026 9.1
CVE-2026-93393 Heap overflow via oversized decrypted TLS record sequence in Windows Secure Channel stream 18.09.2026 9.2
CVE-2026-45140 Chamilo LMS CStudio upload flow allows unauthenticated remote code execution 18.09.2026 9.8
CVE-2026-45143 Chamilo LMS: Student-to-admin stored XSS in private messages via v-html 17.09.2026 9
CVE-2026-54237 Wavelog: Unauthenticated Remote Code Execution 18.09.2026 9.3
CVE-2026-54460 OpenReception: Unauthenticated WebAuthn passkey injection via `POST /api/auth/passkeys` leads to account takeover 17.09.2026 9.8
CVE-2026-54501 Browsertrix: Arbitrary Command Injection due to Improper Command Sanitization in Git URLs specified as Custom Behaviors 17.09.2026 9.4
CVE-2026-54752 NetBox Device Type Library: Insecure Pickle Deserialization in Test Suite Allows Remote Code Execution via Malicious Pull Request 21.09.2026 9.6
CVE-2026-54618 Obsidian Web MCP: Unauthenticated vault access: /oauth/authorize auto-approves without authenticating the user 17.09.2026 9.4
CVE-2026-54626 SAIL: Heap out-of-bounds write in SAIL TGA decoder (indexed-RLE bpp/stride mismatch) 17.09.2026 9.8
CVE-2026-54627 SAIL: Heap out-of-bounds write in SAIL PSD decoder (Bitmap mode ignores depth) 18.09.2026 9.8
CVE-2026-92943 Improper validation of certificate with host mismatch in AWS IoT Device SDK for Python 17.09.2026 9.2
CVE-2026-54617 GravitLauncher: Unauthenticated path traversal in LaunchServer FileServerHandler 18.09.2026 9.8
CVE-2026-47252 Anyquery: AppleScript/JXA Code Injection via Unescaped URL in macOS plugins (Brave, Chrome, Edge, Reminders, Safari) 17.09.2026 9
CVE-2026-54053 Many Notes: Path Traversal via ZIP import allows arbitrary file write and stored XSS in other users' vaults 17.09.2026 9.6
CVE-2026-90104 NFSv4.1: zero referring call lists before decoding 18.09.2026 9.8
CVE-2026-90110 inetpeer: randomize RB-tree node comparison using SipHash 18.09.2026 9.4
CVE-2026-90151 NFSv4: remove callback IDR entry on client allocation failure 18.09.2026 9.8
CVE-2026-90173 smb: smbdirect: free completion queues with ib_free_cq() 18.09.2026 9.8
CVE-2026-90230 nvmet: fix heap out-of-bounds read in nvmet_auth_negotiate() 18.09.2026 9.1
CVE-2026-90235 sunrpc: xprtsock: annotate shared socket callbacks with READ_ONCE/WRITE_ONCE 18.09.2026 9.8
CVE-2026-90413 IB/isert: reject login PDUs declaring more data than was received 18.09.2026 9.1
CVE-2026-90414 IB/isert: reject PDUs declaring more data than was received 18.09.2026 9.1
CVE-2026-92489 xfrm: Fix skb double-free in xfrm_dev_direct_output() 18.09.2026 9.8
CVE-2026-86863 pgAdmin 4: Authentication bypass via a client-controlled identity header in Webserver authentication mode 17.09.2026 9.3
CVE-2026-76834 b2evolution CMS 6.7.8 through 7.2.5 Object Injection via Negative Integer Array Key 18.09.2026 9.2
CVE-2026-91039 dynamic_oidc identities are not namespaced by connection in ash_authentication, allowing cross-connection account takeover 17.09.2026 9.1
CVE-2026-79752 CakePHP: Multiple methods in FunctionsBuilder vulnerable to SQL injection 17.09.2026 9.2
CVE-2026-63472 Vendure: External-authentication account takeover: external login linked to a pre-existing account by email without verification 17.09.2026 9.1
CVE-2026-88952 OAuth2 sign-in attached to an existing account without an email comparison in AshAuthentication 17.09.2026 9.1
CVE-2026-92934 vm2 before 3.11.8 Sandbox Escape RCE via AggregateError 17.09.2026 9.5
CVE-2026-92935 vm2 NodeVM Remote Code Execution via Array-Shaped Require 17.09.2026 9.5
CVE-2026-92937 vm2 3.11.6 Remote Code Execution via Promise call/apply 18.09.2026 10
CVE-2026-92938 vm2 3.11.3 through 3.11.6 Remote Code Execution via node:sqlite 19.09.2026 9.4
CVE-2026-92939 vm2 3.11.3 through 3.11.6 Native Code Execution via crypto.setEngine 17.09.2026 9.4
CVE-2026-92940 vm2 3.11.3 through 3.11.6 HTTPS Credential Exposure via globalAgent 17.09.2026 10
CVE-2026-92941 vm2 3.11.3 before 3.11.7 TLS Trust Store Manipulation 17.09.2026 10
CVE-2026-92944 vm2 3.10.2 through 3.11.6 Sandbox Escape via Promise Protector 19.09.2026 9.3
CVE-2026-92946 vm2 before 3.11.7 Remote Code Execution via require.external 17.09.2026 10
CVE-2026-92947 vm2 before 3.11.7 Memory Disclosure via Buffer Pool 17.09.2026 10
CVE-2026-92948 vm2 3.9.6 through 3.11.5 Sandbox Escape via node:test 18.09.2026 9.4
CVE-2026-92950 vm2 before 3.11.7 Sandbox Escape via CLI require 17.09.2026 9.3
CVE-2026-92951 vm2 before 3.11.7 Module Allowlist Bypass via Custom Resolver 17.09.2026 9.4
CVE-2026-92953 vm2 3.11.0 through 3.11.7 Prototype Pollution via TypedArray 18.09.2026 9.3
CVE-2026-92954 vm2 3.10.0 through 3.11.5 Denial of Service via Host Promise 21.09.2026 9.2
CVE-2026-92955 vm2 before 3.11.8 Sandbox Escape via NodeVM 17.09.2026 10
CVE-2026-92956 vm2 3.10.1 through 3.11.6 Sandbox Escape via WebAssembly.compileStreaming 17.09.2026 10
CVE-2026-92957 vm2 before 3.11.7 Authentication Bypass via node: Prefix 17.09.2026 9.4
CVE-2026-92960 vm2 before 3.11.6 Process-wide State Exposure via os and dns 17.09.2026 10
CVE-2026-62101 WordPress EduAdmin Booking plugin <= 5.4.2 - Broken Authentication vulnerability 17.09.2026 9.8
CVE-2026-62104 WordPress Migratico Lite plugin <= 2.6.8 - Remote Code Execution (RCE) vulnerability 19.09.2026 10
CVE-2026-62108 WordPress Headless Single Sign On plugin <= 1.7.0 - Broken Authentication vulnerability 17.09.2026 9.8
CVE-2026-82761 Magic link single-use tokens replayable via TOCTOU race in AshAuthentication 17.09.2026 9.1
CVE-2026-85500 `require_confirmed_with` is not enforced on the action and fails open on an unreadable attribute in AshAuthentication 17.09.2026 9.1
CVE-2026-86533 Revoked session accepted because the session jti is never checked in AshAuthentication and AshAuthentication Phoenix 17.09.2026 9.1
CVE-2026-90822 17.09.2026 9.8
CVE-2026-90823 17.09.2026 9.8
CVE-2026-92860 rcourtman Pulse Quick Security Setup quick-setup fmt.Sprintf input validation 19.09.2026 9.4
CVE-2026-92913 AVideo Weak PRNG Activation Code Authentication Bypass 17.09.2026 9.1
CVE-2026-15688 Password Authentication Bypass Vulnerability in GX Works3 and Motion Control Setting 17.09.2026 9.2
CVE-2026-87796 Multi Uploader for Gravity Forms <= 1.1.9 - Unauthenticated Arbitrary File Upload via Chunked File Upload 19.09.2026 9.8
CVE-2026-61594 djust has an authorization bypass on the WebSocket/SSE mount path 17.09.2026 9.1

Latest Updates

CVE Title Updated Score
CVE-2026-79304 23.09.2026 6.5
CVE-2026-79306 23.09.2026 6.5
CVE-2026-19087 IBM Financial Transaction Manager (FTM) is Impacted by Multiple Vulnerabilities 23.09.2026 4.4
CVE-2026-19179 IBM Financial Transaction Manager (FTM) is Impacted by Multiple Vulnerabilities 23.09.2026 8.2
CVE-2026-19267 IBM Financial Transaction Manager (FTM) is Impacted by Multiple Vulnerabilities 23.09.2026 6.2
CVE-2026-3626 Multiple Vulnerabilities in IBM Concert Software 23.09.2026 5.3
CVE-2026-4921 IBM Guardium Data Protection is affected by multiple vulnerabilities. 23.09.2026 2.7
CVE-2026-6327 Multiple Vulnerabilities in IBM Concert Software 23.09.2026 4.3
CVE-2026-93769 HumHub 1.18.5 - Stored XSS in Profile Field Category title via HForm#renderForm leading to System Administrator account takeover 23.09.2026
CVE-2026-18180 IBM Financial Transaction Manager (FTM) is Impacted by Multiple Vulnerabilities 23.09.2026 6.5
CVE-2026-18181 IBM Financial Transaction Manager (FTM) is Impacted by Multiple Vulnerabilities 23.09.2026 8.1
CVE-2026-18184 IBM Financial Transaction Manager (FTM) is Impacted by Multiple Vulnerabilities 23.09.2026 7.4
CVE-2026-18185 IBM Financial Transaction Manager (FTM) is Impacted by Multiple Vulnerabilities 23.09.2026 7.3
CVE-2026-18490 IBM Financial Transaction Manager (FTM) is Impacted by Multiple Vulnerabilities 23.09.2026 8.8
CVE-2026-18505 IBM Financial Transaction Manager (FTM) is Impacted by Multiple Vulnerabilities 23.09.2026 5.4
CVE-2026-18872 IBM Financial Transaction Manager (FTM) is Impacted by Multiple Vulnerabilities 23.09.2026 9.3
CVE-2026-18875 IBM Financial Transaction Manager (FTM) is Impacted by Multiple Vulnerabilities 23.09.2026 7.3
CVE-2026-79310 23.09.2026
CVE-2026-96672 Frappe ERPNext before 16.34.1 Unauthorized Method Invocation 23.09.2026
CVE-2026-96673 Photoview through 2.4.0 SQL Injection via album download route 23.09.2026
CVE-2026-96674 alsa-lib through 1.2.16.1 Integer Overflow via Topology File 23.09.2026
CVE-2026-96675 alsa-lib through 1.2.16.1 Denial of Service via pcm_multi 23.09.2026
CVE-2026-96275 Flatpak: flatpak: arbitrary write access as root via extra-data extraction 23.09.2026
CVE-2026-96276 Flatpak: flatpak: arbitrary write in host context via flatpak build-init 23.09.2026
CVE-2026-96599 Isotope eCommerce through 2.9.10 Weak Order Identifier Generation 23.09.2026
CVE-2026-96600 Isotope eCommerce through 2.9.10 SQL Injection via Backend Callbacks 23.09.2026
CVE-2026-55610 InvoiceShelf has cross-company user read/update IDOR that enables cross-tenant account takeover 23.09.2026 8.7
CVE-2026-73591 23.09.2026 7.5
CVE-2026-92419 IDOR in WEBCON BPS 23.09.2026
CVE-2026-73588 23.09.2026 7.4
CVE-2026-73589 23.09.2026 6.3
CVE-2026-73858 Solspace Freeform: Limited Twig template injection via submitted field values 23.09.2026 5.3
CVE-2026-92164 Streamlink: HTTPSession follows HTTP redirects into file:// URLs, reading local files 23.09.2026 6.5
CVE-2026-61413 23.09.2026 6.8
CVE-2026-61834 scim-patch: Mutation of Inherited Built-in Method Objects 23.09.2026 4.3
CVE-2026-62998 REDAXO: Unwhitelisted ORDER BY Column in rex_list Allows Authenticated Column Enumeration 23.09.2026 4.3
CVE-2026-63000 REDAXO: Missing CSRF Protection on Package Update Action Allows Forced Addon Updates 23.09.2026 6.4
CVE-2026-63001 REDAXO: Stored XSS via Unescaped Media Manager Type Name in `mediaIsInUse()` 23.09.2026 4.8
CVE-2026-63002 REDAXO: Stored XSS in Mediapool Sync Page via Unescaped Filesystem Filenames 23.09.2026 4.8
CVE-2026-71177 23.09.2026 5.4
CVE-2026-71178 23.09.2026 3.7
CVE-2026-73586 23.09.2026 6.4
CVE-2026-73587 23.09.2026 6.8
CVE-2026-88974 WPGraphQL: Contributor can publish and modify posts without the required capabilities via updatePost 23.09.2026 5.4
CVE-2026-96609 23.09.2026
CVE-2026-96611 23.09.2026 6.9
CVE-2026-18177 IBM Financial Transaction Manager (FTM) is Impacted by Multiple Vulnerabilities 23.09.2026 7.1
CVE-2026-18179 IBM Financial Transaction Manager (FTM) is Impacted by Multiple Vulnerabilities 23.09.2026 6.5
CVE-2026-59167 SunEditor: Critical XSS vulnerability - sanitizer bypass 23.09.2026 10
CVE-2026-86677 Broken Authentication vulnerability 23.09.2026 8.8
CVE-2026-86678 Broken Authentication vulnerability 23.09.2026 8.8
CVE-2026-12974 Security Policy Bypass in Forcepoint Security Engine (NGFW) 23.09.2026
CVE-2026-86679 Broken Access Control vulnerability 23.09.2026 7.1
CVE-2026-86683 Broken Authentication Vulnerability 23.09.2026 8.1
CVE-2026-96512 Sudo: sudo: tz environment variable allows bypass of notbefore/notafter time-based authorization 23.09.2026
CVE-2026-96560 LightLLM through 1.2.0 Unauthenticated Remote Code Execution via NCCL PD RPyC Control Channel 23.09.2026
CVE-2026-86681 Broken Access Control vulnerability 23.09.2026 7.6
CVE-2026-86708 Sensitive data exposure 23.09.2026 10
CVE-2026-96559 23.09.2026
CVE-2026-95676 AuthPoint Gateway Improper Authentication in LDAP Sync Allows First-Factor Authentication Bypass 23.09.2026
CVE-2026-19599 Remote Code Execution vulnerability 23.09.2026 9.9
CVE-2026-75825 Authentication Bypass vulnerability 23.09.2026 8.8
CVE-2026-76978 Command Injection vulnerability 23.09.2026 8.8
CVE-2026-76979 XML Injection vulnerability 23.09.2026 7.7
CVE-2026-86243 Apache Tomcat Native: DoS via TLS handshake 23.09.2026
CVE-2026-86246 Apache Tomcat Native: Insecure OpenSSL options enabled 23.09.2026
CVE-2026-86247 Apache Tomcat Native: Client certificate requirements can be down-graded 23.09.2026
CVE-2026-76980 Data Exposure vulnerability 23.09.2026 7.4
CVE-2026-77112 SSRF Leading to JWT Token Disclosure in Global IT Informatics' Weoll 23.09.2026 6.5
CVE-2026-84091 SUMIT Payment Gateway for WooCommerce < 4.0.0 - Unauthenticated Payment Confirmation Forgery via bit IPN 23.09.2026 5.3
CVE-2026-84787 Privilege Escalation vulnerability 23.09.2026 8.1
CVE-2026-84789 Broken Access Control vulnerability 23.09.2026 7.1
CVE-2026-80444 Unauthenticated Open Redirect Vulnerability in Abis Technology's AVESİS 23.09.2026 5.4
CVE-2026-84791 Broken Access Control vulnerability 23.09.2026 7.1
CVE-2026-15358 Path Traversal Vulnerability 23.09.2026 7.5
CVE-2026-78253 Denial-of-service (stack-exhaustion) vulnerability in QXmlStreamReader::readElementText() impacts Qt 23.09.2026
CVE-2026-86350 Apache Tomcat: Regression in fix for CVE-2026-41293 can trigger request header mix-up 23.09.2026
CVE-2026-87022 Apache Tomcat: WebSocket message smuggling with per-message-deflate 23.09.2026
CVE-2026-14913 SQL Injection vulnerability 23.09.2026 8.8
CVE-2026-77791 Apache Tomcat: DoS via busy wait during WebSocket close 23.09.2026
CVE-2026-78383 Apache Tomcat: AJP DoS via missing request body 23.09.2026
CVE-2026-78437 Apache Tomcat: HTTP/2 DoS via malformed request 23.09.2026
CVE-2026-79677 Apache Tomcat: WebSocket DoS due to lost asynchronous write timeout 23.09.2026
CVE-2026-86248 Apache Tomcat: Fix for CVE-2026-34500 was incomplete. OCSP checks sometimes soft-fail with FFM even when soft-fail is disabled 23.09.2026
CVE-2026-12370 Remote Code Execution Vulnerability 23.09.2026 7.6
CVE-2026-73581 Apache Tomcat: OpenSSL and OpenSSL-FFM TLS implementations ignore CRLs when certificate uses a keystore 23.09.2026
CVE-2026-75973 Apache Tomcat: Cross-context authentication mix-up with Jakarta Authentication configured 23.09.2026
CVE-2026-76183 Apache Tomcat: Bypass of security constraints for WebSocket endpoints 23.09.2026
CVE-2026-77756 Apache Tomcat: Transfer-Encoding honored for HTTP/1.0 requests 23.09.2026
CVE-2026-77762 Apache Tomcat: Stale HPACK emitter injects trailers into recycled pooled Request 23.09.2026
CVE-2026-96445 Keycloak-services: keycloak-services: conditional otp skip-header policy evaluated against untrusted proxy headers 23.09.2026
CVE-2026-96446 Keycloak-services: keycloak-services: par single-use bypass via prompt=none silent authentication path 23.09.2026
CVE-2026-5695 Multiple vulnerabilities in the Microweber administration panel 23.09.2026
CVE-2026-5696 Multiple vulnerabilities in the Microweber administration panel 23.09.2026
CVE-2026-86601 WP Recipe Maker < 10.8.2 - Unauthenticated Arbitrary Shortcode Execution via Comment Content 23.09.2026 6.5
CVE-2026-86604 GTranslate < 5.0.1 - Unauthenticated Arbitrary Shortcode Execution via Email Translation 23.09.2026 4.8
CVE-2026-86612 Ninja Tables < 5.2.17 - Unauthenticated Arbitrary Shortcode Execution via Fluent Forms Data Source 23.09.2026 5.6
CVE-2026-87070 Forminator Forms < 1.57.2.1 - Unauthenticated Poll Vote Limit Bypass via IP Spoofing 23.09.2026 5.3
CVE-2026-87071 Forminator Forms < 1.57.2.1 - Unauthenticated Post Meta Injection on Submitted Posts 23.09.2026 5.3
CVE-2026-87848 MPCX Lightbox 1.2.2 - 1.2.5 - Unauthenticated Non-Public Post Content Disclosure 23.09.2026 3.7
CVE-2026-87978 Paymob for WooCommerce < 4.1.14 - Unauthenticated Payment Bypass via Unverified Subscription Transaction Callback 23.09.2026 5.3
CVE-2026-90950 Paid Member Subscriptions < 3.1.0 - Unauthenticated reCAPTCHA Bypass via Registration Form 23.09.2026 5.3
CVE-2026-96442 Emacs: emacs: arbitrary code execution, incomplete fix for cve-2024-53920 23.09.2026
CVE-2026-96455 Reachy Mini daemon allows unauthenticated remote code execution through the app installation endpoint 23.09.2026 8.8
CVE-2026-96456 Reachy Mini Bluetooth PIN authentication can be bypassed by racing an authenticated device 23.09.2026 6.3
CVE-2026-96454 Pake grants unrestricted IPC access to every HTTPS origin loaded in generated applications 23.09.2026 8.2
CVE-2026-79616 Out-of-bounds read vulnerability in Context2D.path and PathSvg.path properties impacts Qt Quick 23.09.2026
CVE-2026-91928 Apache Sling XSS: Sanitizer bypass, uncontrolled resource consumption and failure pf protection mechanisms 23.09.2026
CVE-2026-94243 Apache Sling Security Bundle: RefererFilter accepts weaker-than-origin evidence 23.09.2026
CVE-2026-94251 Apache Sling Security Bundle: ContentDispositionFilter mediates only one address/API shape of a resource 23.09.2026
CVE-2026-95627 Tauri framework v2 Dialog plugin auto-expands the filesystem scope with attacker-controlled recursion 23.09.2026 7.7
CVE-2026-91852 Apache Sling XSS: CWE-79 multiple raw-string break-outs and ReDOS in XSSImpl 23.09.2026
CVE-2026-95626 Tauri framework v2 CSP nonce protection bypass via data and blob URI schemes allows an XSS to RCE chains 23.09.2026 8.3
CVE-2026-96443 Apache Doris: JDBC driver URL validation bypass leads to remote code execution 23.09.2026
CVE-2026-73192 Apache Sling XSS: XSS possible through XSSAPI.getValidHref() 23.09.2026
CVE-2026-91999 Apache Sling XSS: Improper escaping in the XSS Webconsole plugin 23.09.2026
CVE-2026-92001 Apache Sling XSS: Missing parser resource limits 23.09.2026
CVE-2026-31377 Apache Doris: Improper Authentication Allows Unauthorized Access to FE Meta Service 23.09.2026
CVE-2026-42801 Deference after null check in as_rrc 23.09.2026 7.4
CVE-2026-95625 Tauri framework v2 missing updater signature version number validation can be exploited into forced downgrade 23.09.2026 5.9
CVE-2026-15027 Changing|CGServiSign - OS Command Injection 23.09.2026
CVE-2026-93368 Rename wp-login.php to anything you want <= 2.0.1 - Unauthenticated SQL Injection via 'log' (Username) Parameter 23.09.2026 7.5
CVE-2026-91788 Foxit PDF Editor/Reader Missing Authorization Information Disclosure Vulnerability 23.09.2026 4.7
CVE-2026-91789 Foxit PDF Editor/Reader U3D File Parsing Integer Overflow Remote Code Execution Vulnerability 23.09.2026 7.8
CVE-2026-91790 Foxit PDF Editor/Reader Doc Object Use-After-Free Information Disclosure Vulnerability 23.09.2026 7.8
CVE-2026-91791 Foxit PDF Editor/Reader Annotation Use-After-Free Remote Code Execution Vulnerability 23.09.2026 7.8
CVE-2026-91792 Foxit PDF Editor/Reader Annotation Use-After-Free Remote Code Execution Vulnerability 23.09.2026 7.8
CVE-2026-91793 Foxit PDF Editor/Reader Doc Object Use-After-Free Information Disclosure Vulnerability 23.09.2026 7.8
CVE-2026-91794 Foxit PDF Editor/Reader DeviceN Colorspace Out-Of-Bounds Write Remote Code Execution Vulnerability 23.09.2026 7.8
CVE-2026-91795 Foxit PDF Editor/Reader FileOpen Uninitialized Variable Remote Code Execution Vulnerability 23.09.2026 7.8
CVE-2026-91796 Foxit PDF Editor/Reader importIcon NTLM Response Information Disclosure Vulnerability 23.09.2026 6.1
CVE-2026-91797 Foxit PDF Editor/Reader Portfolio Directory Traversal Remote Code Execution Vulnerability 23.09.2026 7.8
CVE-2026-91798 Foxit PDF Editor/Reader Updater Privilege Escalation 23.09.2026 8.8
CVE-2026-91799 Foxit Editor/Reader Array resetForm Use-After-Free Vulnerability 23.09.2026 7.8
CVE-2026-91800 Foxit PDF Editor installer local privilege escalation 23.09.2026 8.8
CVE-2026-91801 Foxit PDF Editor/Reader RichMedia Annotation Directory Traversal Remote Code Execution Vulnerability 23.09.2026 7.8
CVE-2026-91802 Foxit PDF Editor/Reader — Heap Buffer Overflow in WebP Image Decoding via Bitmap Stride Confusion 23.09.2026 7.8
CVE-2026-91803 Security Vulnerability Report – Foxit PDF Editor/Reader Updater DLL Search Path Hijacking 23.09.2026 8.8
CVE-2026-91804 Foxit PDF Editor/Reader Out-of-bounds Write Vulnerability While Rendering 23.09.2026 7.8
CVE-2026-91805 Use-after-free Vulnerability in Foxit PDF Editor/Reader Page-tree Handling 23.09.2026 7.8
CVE-2026-91806 Foxit PDF Editor/Reader Doc Object Use-After-Free Information Disclosure Vulnerability 23.09.2026 7.8
CVE-2026-91807 Foxit PDF Editor/Reader PDF File Parsing Out-Of-Bounds Read Information Disclosure Vulnerability 23.09.2026 6.1
CVE-2026-91808 Foxit PDF Editor/Reader JPEG File Parsing Out-Of-Bounds Read Information Disclosure Vulnerability 23.09.2026 6.1
CVE-2026-91809 Foxit PDF Editor/Reader Annotation Use-After-Free Information Disclosure Vulnerability 23.09.2026 7.8
CVE-2026-91810 Foxit PDF Editor/Reader Doc Object Out-Of-Bounds Read Information Disclosure Vulnerability 23.09.2026 6.1
CVE-2026-91811 Foxit PDF Editor/Reader PRC Stream Parsing Out-Of-Bounds Write Remote Code Execution Vulnerability 23.09.2026 7.8
CVE-2026-91812 Foxit PDF Editor/Reader FoxitUpdater Improper Certificate Validation Local Privilege Escalation Vulnerability 23.09.2026 7.9
CVE-2026-91813 Foxit PDF Editor/Reader FoxitUpdater Race Condition Local Privilege Escalation Vulnerability 23.09.2026 8.8
CVE-2026-91814 Security vulnerability: Foxit PDF Editor/Reader Fails to Detect Modifications to Signed Documents Displaying Newly Added Content 23.09.2026 5.3
CVE-2026-91815 Foxit PDF Editor/Reader JPEG2000 Parsing Memory Corruption Remote Code Execution Vulnerability 23.09.2026 7.8
CVE-2026-91816 Foxit PDF Editor/Reader AcroForm Use-After-Free Remote Code Execution Vulnerability 23.09.2026 7.8
CVE-2026-91817 Foxit PDF Editor/Reader AcroForm Out-of-Bounds Read Remote Code Execution Vulnerability 23.09.2026 6.1
CVE-2026-91818 Foxit PDF Editor/Reader Annotation Use-After-Free Remote Code Execution Vulnerability 23.09.2026 7.8
CVE-2026-50227 MQTT WebSocket Command Execution Vulnerability in NitroSense 23.09.2026
CVE-2026-50228 Electron DevTools Arbitrary Code Execution Vulnerability in NitroSense 23.09.2026
CVE-2026-92378 uniFLOW Online Legacy UI Previous login session retained when entering Reduced Function Login 23.09.2026
CVE-2026-82331 Apache BuildStream: tar source extraction escape 23.09.2026
CVE-2026-5924 Getwid <= 2.1.3 - Authenticated (Contributor+) Stored Cross-Site Scripting via Google Maps 'customStyle' 23.09.2026 6.4
CVE-2026-6831 Advanced Contact form 7 DB <= 2.1.1 - Missing Authorization to Authenticated (Contributor+) Information Disclosure via 'acf7db' Shortcode 23.09.2026 6.5
CVE-2022-4997 JetFormBuilder Stripe Gateway < 1.1.0 - Unauthenticated Blind SQLi via Payment Token 23.09.2026
CVE-2025-15696 Real3D Flipbook Lite < 5.4 - Author+ Stored XSS 23.09.2026
CVE-2026-14321 Divi Dash < 1.0.7 - Unauthenticated Denial of Service via IP Address Spoofing 23.09.2026
CVE-2026-16264 Newsletters < 4.18.1 - Unauthenticated Subscriber Record Overwrite and PII Disclosure via IDOR 23.09.2026
CVE-2026-18364 Zportals < 6.4.2 - Subscriber+ Arbitrary Plugin Settings Update 23.09.2026
CVE-2026-18365 Zportals < 6.4.2 - Subscriber+ User Email Disclosure 23.09.2026
CVE-2026-75799 YAHMAN Add-ons < 0.9.31 - Unauthenticated Arbitrary File Upload via Blog Card Cache 23.09.2026
CVE-2026-77765 Better Payment < 2.3.4 - Unauthenticated Payment Amount Manipulation 23.09.2026
CVE-2026-77766 Directorist 8.5 - 8.9.4 - Subscriber+ Order and Financial Record Disclosure via REST Orders Endpoint 23.09.2026
CVE-2026-80342 Payment Plugins for PayPal WooCommerce < 2.0.27 - Unauthenticated Payment Hijacking via Unvalidated PayPal Order ID 23.09.2026
CVE-2026-81338 MasterStudy LMS < 3.7.50 - Subscriber+ Stored HTML Injection via Course Discussions 23.09.2026
CVE-2026-81339 MasterStudy LMS < 3.7.50 - Subscriber+ Quiz Attempt Grade Disclosure via IDOR 23.09.2026
CVE-2026-82843 WP OAuth Server < 6.4.0 - Subscriber+ Cross-User Account Takeover via OIDC ID Token Substitution 23.09.2026
CVE-2026-83555 Email Subscribers by Icegram Express < 5.9.35 - Unauthenticated Subscription Status Change via Missing Token Verification 23.09.2026
CVE-2026-84026 Directorist 8.1 - 8.9.4 - Unauthenticated Sensitive Data Disclosure via REST Users Endpoint 23.09.2026
CVE-2026-84027 Directorist 8.9.1 - 8.9.4 - Subscriber+ Paid Order and Payment Record Forgery via REST Orders Endpoint 23.09.2026
CVE-2026-84046 Directorist < 8.9.5 - Subscriber+ SSRF via Avatar URL 23.09.2026
CVE-2026-84098 Directorist 3.1.0 - 8.9.4 - Subscriber+ Arbitrary Listing Deletion via remove_listing 23.09.2026
CVE-2026-84150 Directorist < 8.9.5 - Subscriber+ Cross-User Favorites Read and Write via REST Favorites Endpoint 23.09.2026
CVE-2026-84168 Easy Hide Login < 1.7 - Login Page Protection Bypass / Hidden URL Disclosure 23.09.2026
CVE-2026-84741 The Events Calendar 4.5 - 6.17.4.1 - Unauthenticated Non-Public Venue and Organizer Disclosure via REST API 23.09.2026
CVE-2026-84742 The Events Calendar 6.15.0 - 6.17.4.1 - Contributor+ Content Publication via TEC V1 REST API 23.09.2026
CVE-2026-84743 The Events Calendar 6.15.16.1 - 6.17.4.1 - Contributor+ Event/Venue/Organizer Update, Trash and Ownership Takeover via by-slug REST Routes 23.09.2026
CVE-2026-85006 Happy Addons for Elementor < 3.50.0 - Contributor+ Stored XSS via Creative Button Widget 23.09.2026
CVE-2026-86602 WP Recipe Maker 10.3.0 - 10.8.1 - Subscriber+ Draft and Private Recipe Content Disclosure via wprm_shortcode_preview 23.09.2026
CVE-2026-86603 WP Recipe Maker < 10.8.2 - Subscriber+ Non-Public List Title Disclosure via wprm_search_lists 23.09.2026
CVE-2026-86608 WP Recipe Maker 9.8.0 - 10.8.1 - Unauthenticated DoS via Unbounded User Meta Insertion 23.09.2026
CVE-2026-86783 PostX < 5.0.41 - Unauthenticated Custom Field Key Disclosure via REST API 23.09.2026
CVE-2026-86785 Social Commerce for WooCommerce <= 2.5.4 - Unauthenticated Plugin Option and Product Sync Status Update 23.09.2026
CVE-2026-86842 Real3D Flipbook Lite < 5.4 - Author+ Content Deletion and Stored XSS via Global Settings Overwrite 23.09.2026
CVE-2026-87069 Forminator Forms < 1.57.2.1 - Subscriber+ Form Stripe Field Migration via migrate_stripe 23.09.2026
CVE-2026-87074 Forminator Forms < 1.57.2.1 - Unauthenticated Arbitrary Recipient Email Sending with Attacker-Controlled Link 23.09.2026
CVE-2026-87979 Paymob for WooCommerce < 4.1.14 - Unauthenticated Saved Card Token Write to Any User via Webhook 23.09.2026
CVE-2026-87981 Paymob for WooCommerce < 4.1.14 - Contributor+ Payment Gateway Configuration Deletion and Modification via Multiple AJAX Actions 23.09.2026
CVE-2026-88929 Sale Booster 7.0.0 - 7.5.1 - Unauthenticated Non-Public Product Disclosure 23.09.2026
CVE-2026-88997 JSM Show Post Metadata < 4.9.1 - Contributor+ Stored XSS via Custom Field Meta Key 23.09.2026
CVE-2026-89331 FluentBoards 1.95 - 2.0.15 - Unauthenticated Board Member Email Address Disclosure via Public Board Endpoints 23.09.2026
CVE-2026-90951 Paid Member Subscriptions < 3.1.0 - Unauthenticated In-Flight Checkout State Deletion via pms_process_payment 23.09.2026
CVE-2026-90985 WPC Smart Compare for WooCommerce < 6.6.1 - Unauthenticated Password-Protected Product Description Disclosure via woosc_load 23.09.2026
CVE-2026-91024 Booking Manager < 2.1.21 - Author+ SQLi via ICS Import Feed UID (sync_gid) 23.09.2026
CVE-2026-91025 Booking Manager < 2.1.21 - Subscriber+ Arbitrary User Plugin Meta Modification via IDOR 23.09.2026
CVE-2026-91073 Subscribe Forms 1.4.1 - 1.6.2 - Author+ Stored XSS via Attention Effect Form Setting 23.09.2026
CVE-2026-91077 Event Booking Manager for WooCommerce 5.3.6 - 5.7.2 - Contributor+ Unpublished Event Disclosure via mpwem_load_event_list 23.09.2026
CVE-2026-93507 WC Fields Factory < 4.1.11 - Contributor+ Arbitrary Post Cloning and Private Content Disclosure 23.09.2026
CVE-2026-93508 WC Fields Factory < 4.1.11 - Subscriber+ Arbitrary Post Meta Manipulation via AJAX 23.09.2026
CVE-2026-93510 Points and Rewards for WooCommerce < 2.10.4 - Subscriber+ Arbitrary Points and Wallet Balance Manipulation via assign_claim_points 23.09.2026
CVE-2026-93511 Premium Packages < 7.2.1 - Unauthenticated PayPal Webhook Signature Verification Bypass 23.09.2026
CVE-2026-93528 NP Quote Request for WooCommerce < 2.4.16 - Unauthenticated Order Data Disclosure via Quote Request Page 23.09.2026
CVE-2026-19438 Mint Workbench I Path traversal Vulnerability 23.09.2026 7.5
CVE-2026-96258 onSite internet GmbH Auktion NG Auktionssoftware Public Password Reset Endpoint forgotpasswd.html cross site scripting 23.09.2026
CVE-2026-96257 Fast FAC1203R Gigabit Edition Device Discovery Service copy_msg_element stack-based overflow 23.09.2026
CVE-2026-95958 JusticeRage Manalyze PE Parser pe.cpp _parse_relocations integer underflow 23.09.2026
CVE-2026-95957 SourceCodester Smart Attendance System with QR Code Scanner Self-Registration student_signup.php prepend cross site scripting 23.09.2026
CVE-2026-89425 jackson-core: UTF8DataInputJsonParser._reportInvalidToken() does not honor maxErrorTokenLength, allowing unbounded StringBuilder growth 23.09.2026 7.5
CVE-2026-91776 jackson-databind: unbounded growth of the type id cache in TypeDeserializerBase retains every unknown raw type ID 23.09.2026 7.5
CVE-2026-91777 jackson-databind: quadratic forward-reference completion in Collection and Map deserializers 23.09.2026 7.5
CVE-2026-95929 iFlytek astron-agent getBotList API endpoint ChatBotMarketMapper.xml sql injection 23.09.2026
CVE-2026-95930 iFlytek astron-agent debugToolV2 API endpoint UrlCheckTool.checkUrl server-side request forgery 23.09.2026
CVE-2026-95928 recommenders-team recommenders Dict Loading mind_iterator.py pickle.load deserialization 23.09.2026
CVE-2026-95926 SourceCodester Online Reviewer Management System btn_functions.php update sql injection 23.09.2026
CVE-2026-95927 SourceCodester Online Reviewer Management System exam-delete.php sql injection 23.09.2026
CVE-2026-95925 SourceCodester Online Reviewer Management System btn_functions.php update sql injection 23.09.2026
CVE-2026-95897 Dask Loader core.py from_npy_stack deserialization 23.09.2026
CVE-2026-95924 SourceCodester Online Reviewer Management System btn_functions.php add sql injection 23.09.2026
CVE-2026-96271 Photoview through 2.4.0 Authorization Bypass via shareAlbum 23.09.2026
CVE-2026-96272 ClipBucket v5 before 5.5.3-#182 SQL Injection via search_result.php 23.09.2026
CVE-2026-96273 Ghidra before 12.1.4 Denial of Service via Crafted Database 23.09.2026
CVE-2026-95868 AdithyaYelloju Restaurant-Management-System Search Form display_menu.php mysqli_query sql injection 23.09.2026
CVE-2026-95833 itsourcecode Leave Management System index.php sql injection 23.09.2026
CVE-2026-95830 theRealSain Pixtream post_upload.php unrestricted upload 23.09.2026
CVE-2026-92928 23.09.2026 6.5
CVE-2026-92929 23.09.2026 5.3
CVE-2026-92930 23.09.2026 6.2
CVE-2026-94367 23.09.2026 7.2
CVE-2026-95829 TDuckCloud tduck-platform Pagination Inner Interceptor MybatisPlusConfig.java PaginationInnerInterceptor.concatOrderBy sql injection 22.09.2026
CVE-2026-57576 plone.app.dexterity and plone.app.contenttypes have a Denial of Service due to excessive title or description length 22.09.2026 6.5
CVE-2026-61685 ReactPress has SQL injection via dynamic column names in TypeORM query builders 23.09.2026 7.5
CVE-2026-95828 Mstfakts College-Management-System Authentication server.php session_start session fixiation 23.09.2026
CVE-2026-95820 anirbandutta9 College-Notes-Gallery userprofile.php admin1 unrestricted upload 22.09.2026
CVE-2026-18162 IBM Financial Transaction Manager (FTM) is Impacted by Multiple Vulnerabilities 22.09.2026 9.8
CVE-2026-18163 IBM Financial Transaction Manager (FTM) is Impacted by Multiple Vulnerabilities 22.09.2026 9.8
CVE-2026-18169 IBM Financial Transaction Manager (FTM) is Impacted by Multiple Vulnerabilities 23.09.2026 9.9
CVE-2026-18170 IBM Financial Transaction Manager (FTM) is Impacted by Multiple Vulnerabilities 23.09.2026 6.5
CVE-2026-18172 IBM Financial Transaction Manager (FTM) is Impacted by Multiple Vulnerabilities 23.09.2026 7.4
CVE-2026-18173 IBM Financial Transaction Manager (FTM) is Impacted by Multiple Vulnerabilities 22.09.2026 3.7
CVE-2026-18176 IBM Financial Transaction Manager (FTM) is Impacted by Multiple Vulnerabilities 22.09.2026 7.4
CVE-2026-18134 IBM Financial Transaction Manager (FTM) is Impacted by Multiple Vulnerabilities 23.09.2026 7.5
CVE-2026-18137 IBM Financial Transaction Manager (FTM) is Impacted by Multiple Vulnerabilities 23.09.2026 8.1
CVE-2026-18152 IBM Financial Transaction Manager (FTM) is Impacted by Multiple Vulnerabilities 22.09.2026 7.4
CVE-2026-18153 IBM Financial Transaction Manager (FTM) is Impacted by Multiple Vulnerabilities 22.09.2026 5.4
CVE-2026-18154 IBM Financial Transaction Manager (FTM) is Impacted by Multiple Vulnerabilities 23.09.2026 8
CVE-2026-18156 IBM Financial Transaction Manager (FTM) is Impacted by Multiple Vulnerabilities 23.09.2026 6.5
CVE-2026-18161 IBM Financial Transaction Manager (FTM) is Impacted by Multiple Vulnerabilities 23.09.2026 4.3
CVE-2026-95819 anirbandutta9 College-Notes-Gallery login.php sql injection 23.09.2026
CVE-2026-18132 IBM Financial Transaction Manager (FTM) is Impacted by Multiple Vulnerabilities 22.09.2026 6.5
CVE-2026-18133 IBM Financial Transaction Manager (FTM) is Impacted by Multiple Vulnerabilities 23.09.2026 5.4
CVE-2026-19202 Token Cache Reuse in mcp-toolbox-sdk-python 23.09.2026