Security Database
All CVEs
Browse all security vulnerabilities from 1999 to present
CVEs published in 2026-01
| CVE ID | Published | Updated | Assigner | Description | |
|---|---|---|---|---|---|
| CVE-2026-21720 | 2026-01-27 09:07:04 | 2026-07-29 14:00:29 | GRAFANA | Every uncached /avatar/:hash request spawns a goroutine that… | Details |
| CVE-2026-21721 | 2026-01-27 09:07:55 | 2026-07-29 14:00:04 | GRAFANA | The dashboard permissions API does not verify the… | Details |
| CVE-2026-24049 | 2026-01-22 04:02:08 | 2026-07-29 12:04:49 | GitHub_M | wheel is a command line tool for manipulating… | Details |
| CVE-2025-69223 | 2026-01-05 22:00:17 | 2026-07-29 12:04:42 | GitHub_M | AIOHTTP is an asynchronous HTTP client/server framework for… | Details |
| CVE-2025-61726 | 2026-01-28 19:30:31 | 2026-07-29 12:04:41 | Go | The net/url package does not set a limit… | Details |
| CVE-2025-12543 | 2026-01-07 16:04:22 | 2026-07-28 12:04:52 | redhat | A flaw was found in the Undertow HTTP… | Details |
| CVE-2026-0603 | 2026-01-23 06:31:38 | 2026-07-28 12:04:52 | redhat | A flaw was found in Hibernate. A remote… | Details |
| CVE-2025-15467 | 2026-01-27 16:01:19 | 2026-07-28 12:04:49 | openssl | Issue summary: Parsing CMS AuthEnvelopedData or EnvelopedData message… | Details |
| CVE-2025-61140 | 2026-01-28 00:00:00 | 2026-07-28 12:04:45 | mitre | The value function in jsonpath 1.1.1 lib/index.js is… | Details |
| CVE-2025-13465 | 2026-01-21 19:05:28 | 2026-07-28 12:04:42 | openjs | Lodash versions 4.0.0 through 4.17.22 are vulnerable to… | Details |
| CVE-2026-22029 | 2026-01-10 02:42:32 | 2026-07-28 12:04:37 | GitHub_M | React Router is a router for React. In… | Details |
| CVE-2025-69426 | 2026-01-09 16:15:01 | 2026-07-28 01:48:13 | VulnCheck | The Ruckus vRIoT IoT Controller firmware versions prior… | Details |
| CVE-2025-69425 | 2026-01-09 16:14:32 | 2026-07-28 01:48:12 | VulnCheck | The Ruckus vRIoT IoT Controller firmware versions prior to… | Details |
| CVE-2024-58339 | 2026-01-12 23:04:25 | 2026-07-28 01:47:43 | VulnCheck | LlamaIndex (run-llama/llama_index) versions up to and including 0.12.2… | Details |
| CVE-2024-14021 | 2026-01-12 23:04:43 | 2026-07-28 01:47:42 | VulnCheck | LlamaIndex (run-llama/llama_index) versions up to and including 0.11.6… | Details |
| CVE-2022-50932 | 2026-01-13 22:51:59 | 2026-07-28 01:47:35 | VulnCheck | Kyocera Command Center RX ECOSYS M2035dn contains a… | Details |
| CVE-2021-47904 | 2026-01-23 16:47:43 | 2026-07-28 01:47:27 | VulnCheck | PhreeBooks 5.2.3 contains an authenticated file upload vulnerability… | Details |
| CVE-2021-47894 | 2026-01-23 16:47:38 | 2026-07-28 01:47:26 | VulnCheck | Managed Switch Port Mapping Tool 2.85.2 contains a… | Details |
| CVE-2021-47816 | 2026-01-16 19:09:26 | 2026-07-28 01:47:25 | VulnCheck | Thecus N4800Eco NAS Server Control Panel contains a… | Details |
| CVE-2021-47854 | 2026-01-21 17:27:38 | 2026-07-28 01:47:25 | VulnCheck | DD-WRT version 45723 contains a buffer overflow vulnerability… | Details |
| CVE-2021-47807 | 2026-01-15 23:25:51 | 2026-07-28 01:47:24 | VulnCheck | Sync Breeze 13.6.18 contains an unquoted service path… | Details |
| CVE-2021-47799 | 2026-01-15 15:52:15 | 2026-07-28 01:47:23 | VulnCheck | Visual Tools DVR VX16 version 4.2.28 contains a… | Details |
| CVE-2021-47806 | 2026-01-15 23:25:49 | 2026-07-28 01:47:23 | VulnCheck | Dup Scout 13.5.28 contains an unquoted service path… | Details |
| CVE-2021-47782 | 2026-01-15 23:25:37 | 2026-07-28 01:47:22 | VulnCheck | Odine Solutions GateKeeper 1.0 contains a SQL injection… | Details |
| CVE-2021-47772 | 2026-01-15 15:52:11 | 2026-07-28 01:47:21 | VulnCheck | 10-Strike Network Inventory Explorer Pro 9.31 contains a… | Details |
| CVE-2021-47751 | 2026-01-13 22:51:39 | 2026-07-28 01:47:20 | VulnCheck | CuteEditor for PHP (now referred to as Rich… | Details |
| CVE-2021-47767 | 2026-01-15 15:52:09 | 2026-07-28 01:47:20 | VulnCheck | 10-Strike Network Inventory Explorer Pro 9.31 contains an… | Details |
| CVE-2021-47748 | 2026-01-21 17:27:31 | 2026-07-28 01:47:19 | VulnCheck | Hasura GraphQL 1.3.3 contains a remote code execution… | Details |
| CVE-2020-37056 | 2026-01-30 22:07:19 | 2026-07-28 01:47:08 | VulnCheck | Crystal Shard http-protection 0.2.0 contains an IP spoofing… | Details |
| CVE-2020-37040 | 2026-01-30 22:07:14 | 2026-07-28 01:47:07 | VulnCheck | Code Blocks 17.12 contains a local buffer overflow… | Details |
| CVE-2020-37038 | 2026-01-30 22:07:14 | 2026-07-28 01:47:07 | VulnCheck | Code Blocks 20.03 contains a denial of service… | Details |
| CVE-2020-36987 | 2026-01-28 12:29:00 | 2026-07-28 01:47:06 | VulnCheck | Program Access Controller 1.2.0.0 contains an unquoted service… | Details |
| CVE-2020-36963 | 2026-01-28 17:35:08 | 2026-07-28 01:47:05 | VulnCheck | Intelbras Router RF 301K firmware version 1.1.2 contains… | Details |
| CVE-2026-24842 | 2026-01-28 00:20:13 | 2026-07-27 12:05:40 | GitHub_M | node-tar,a Tar for Node.js, contains a vulnerability in… | Details |
| CVE-2026-21441 | 2026-01-07 22:09:01 | 2026-07-27 12:05:39 | GitHub_M | urllib3 is an HTTP client library for Python.… | Details |
| CVE-2026-22797 | 2026-01-19 00:00:00 | 2026-07-27 12:05:37 | mitre | An issue was discovered in OpenStack keystonemiddleware 10.5… | Details |
| CVE-2026-23490 | 2026-01-16 19:03:36 | 2026-07-27 12:05:34 | GitHub_M | pyasn1 is a generic ASN.1 library for Python.… | Details |
| CVE-2025-61731 | 2026-01-28 19:30:30 | 2026-07-27 12:05:33 | Go | Building a malicious file with cmd/go can cause… | Details |
| CVE-2026-23745 | 2026-01-16 22:00:08 | 2026-07-27 12:05:30 | GitHub_M | node-tar is a Tar for Node.js. The node-tar… | Details |
| CVE-2026-21618 | 2026-01-19 14:22:46 | 2026-07-24 14:16:04 | EEF | Improper Neutralization of Input During Web Page Generation… | Details |
| CVE-2026-24486 | 2026-01-27 00:34:06 | 2026-07-24 12:05:35 | GitHub_M | Python-Multipart is a streaming multipart parser for Python.… | Details |
| CVE-2026-0770 | 2026-01-23 03:28:52 | 2026-07-22 03:55:44 | zdi | Langflow exec_globals Inclusion of Functionality from Untrusted Control… | Details |
| CVE-2026-22807 | 2026-01-21 21:13:11 | 2026-07-21 12:05:15 | GitHub_M | vLLM is an inference and serving engine for… | Details |
| CVE-2026-24779 | 2026-01-27 22:01:13 | 2026-07-21 12:04:59 | GitHub_M | vLLM is an inference and serving engine for… | Details |
| CVE-2025-3660 | 2026-01-03 23:33:04 | 2026-07-20 22:14:11 | VulnCheck | Petlibro Smart Pet Feeder Platform versions up to… | Details |
| CVE-2025-3653 | 2026-01-03 23:33:03 | 2026-07-20 22:14:10 | VulnCheck | Petlibro Smart Pet Feeder Platform versions up to… | Details |
| CVE-2025-3654 | 2026-01-03 23:33:04 | 2026-07-20 22:14:10 | VulnCheck | Petlibro Smart Pet Feeder Platform versions up to… | Details |
| CVE-2025-3652 | 2026-01-03 23:33:03 | 2026-07-20 22:14:09 | VulnCheck | Petlibro Smart Pet Feeder Platform versions up to… | Details |
| CVE-2025-3646 | 2026-01-03 23:33:02 | 2026-07-20 22:14:08 | VulnCheck | Petlibro Smart Pet Feeder Platform versions up to… | Details |
| CVE-2025-15115 | 2026-01-03 23:33:02 | 2026-07-20 22:14:08 | VulnCheck | Petlibro Smart Pet Feeder Platform versions up to… | Details |
| CVE-2025-56005 | 2026-01-20 00:00:00 | 2026-07-20 12:04:51 | mitre | An undocumented and unsafe feature in the PLY… | Details |
| CVE-2025-68428 | 2026-01-05 21:43:55 | 2026-07-20 12:04:42 | GitHub_M | jsPDF is a library to generate PDFs in… | Details |
| CVE-2026-0877 | 2026-01-13 13:30:52 | 2026-07-15 11:47:47 | mozilla | Mitigation bypass in the DOM: Security component. This… | Details |
| CVE-2025-70974 | 2026-01-09 06:43:23 | 2026-07-15 11:47:44 | mitre | Fastjson before 1.2.48 mishandles autoType because, when an… | Details |
| CVE-2026-24869 | 2026-01-27 15:58:48 | 2026-07-15 02:49:24 | mozilla | Use-after-free in the Layout: Scrolling and Overflow component.… | Details |
| CVE-2021-47839 | 2026-01-16 19:09:37 | 2026-07-15 01:28:03 | VulnCheck | Marky 0.0.1 contains a persistent cross-site scripting vulnerability… | Details |
| CVE-2024-4027 | 2026-01-30 14:25:54 | 2026-07-15 01:27:47 | redhat | A flaw was found in Undertow. Servlets using… | Details |
| CVE-2025-11157 | 2026-01-01 07:03:57 | 2026-07-15 01:27:39 | @huntr_ai | A high-severity remote code execution vulnerability exists in… | Details |
| CVE-2025-13761 | 2026-01-09 10:04:01 | 2026-07-15 01:27:30 | GitLab | GitLab has remediated an issue in GitLab CE/EE… | Details |
| CVE-2025-13772 | 2026-01-09 10:04:06 | 2026-07-15 01:27:27 | GitLab | GitLab has remediated an issue in GitLab EE… | Details |
| CVE-2025-13878 | 2026-01-21 14:43:27 | 2026-07-15 01:27:25 | isc | Malformed BRID/HHIT records can cause `named` to terminate… | Details |
| CVE-2025-14459 | 2026-01-26 19:36:29 | 2026-07-15 01:27:15 | redhat | A flaw was found in KubeVirt Containerized Data… | Details |
| CVE-2025-15059 | 2026-01-23 02:49:52 | 2026-07-15 01:27:02 | zdi | GIMP PSP File Parsing Heap-based Buffer Overflow Remote… | Details |
| CVE-2025-15514 | 2026-01-12 23:03:52 | 2026-07-15 01:26:52 | VulnCheck | Ollama 0.11.5-rc0 through current version 0.13.5 contain a… | Details |
| CVE-2025-24293 | 2026-01-30 20:11:15 | 2026-07-15 01:26:46 | hackerone | # Active Storage allowed transformation methods potentially unsafe Active… | Details |
| CVE-2025-50334 | 2026-01-08 00:00:00 | 2026-07-15 01:26:12 | mitre | An issue in Technitium DNS Server v.13.5 allows… | Details |
| CVE-2025-55130 | 2026-01-20 20:41:55 | 2026-07-15 01:26:03 | hackerone | A flaw in Node.js’s Permissions model allows attackers… | Details |
| CVE-2025-55131 | 2026-01-20 20:41:55 | 2026-07-15 01:26:01 | hackerone | A flaw in Node.js's buffer allocation logic can… | Details |
| CVE-2025-57283 | 2026-01-28 00:00:00 | 2026-07-15 01:25:55 | mitre | The Node.js package browserstack-local 1.5.8 contains a command… | Details |
| CVE-2025-59057 | 2026-01-10 02:40:25 | 2026-07-15 01:25:51 | GitHub_M | React Router is a router for React. In… | Details |
| CVE-2025-59465 | 2026-01-20 20:41:55 | 2026-07-15 01:25:48 | hackerone | A malformed `HTTP/2 HEADERS` frame with oversized, invalid… | Details |
| CVE-2025-61686 | 2026-01-10 02:41:22 | 2026-07-15 01:25:34 | GitHub_M | React Router is a router for React. In… | Details |
| CVE-2025-65518 | 2026-01-08 00:00:00 | 2026-07-15 01:25:17 | mitre | Plesk Obsidian versions 8.0.1 through 18.0.73 are vulnerable… | Details |
| CVE-2025-67268 | 2026-01-02 00:00:00 | 2026-07-15 01:25:11 | mitre | gpsd before commit dc966aa contains a heap-based out-of-bounds… | Details |
| CVE-2025-67269 | 2026-01-02 00:00:00 | 2026-07-15 01:25:09 | mitre | An integer underflow vulnerability exists in the `nextstate()`… | Details |
| CVE-2025-68493 | 2026-01-11 13:05:36 | 2026-07-15 01:25:02 | apache | Missing XML Validation vulnerability in Apache Struts, Apache… | Details |
| CVE-2025-68616 | 2026-01-19 15:20:23 | 2026-07-15 01:24:59 | GitHub_M | WeasyPrint helps web developers to create PDF documents.… | Details |
| CVE-2023-7335 | 2026-01-22 16:55:25 | 2026-07-15 01:24:59 | VulnCheck | EduSoho versions prior to 22.4.7 contain an arbitrary… | Details |
| CVE-2025-69263 | 2026-01-07 21:31:07 | 2026-07-15 01:24:52 | GitHub_M | pnpm is a package manager. Versions 10.26.2 and… | Details |
| CVE-2025-69264 | 2026-01-07 21:53:09 | 2026-07-15 01:24:50 | GitHub_M | pnpm is a package manager. Versions 10.0.0 through… | Details |
| CVE-2022-50895 | 2026-01-13 22:51:43 | 2026-07-15 01:24:43 | VulnCheck | Aero CMS 0.0.1 contains a SQL injection vulnerability… | Details |
| CVE-2021-47903 | 2026-01-23 16:47:42 | 2026-07-15 01:24:38 | VulnCheck | LiteSpeed Web Server Enterprise 5.4.11 contains an authenticated… | Details |
| CVE-2021-47895 | 2026-01-23 16:47:39 | 2026-07-15 01:24:37 | VulnCheck | Nsauditor 3.2.2.0 contains a denial of service vulnerability… | Details |
| CVE-2021-47815 | 2026-01-15 23:25:55 | 2026-07-15 01:24:36 | VulnCheck | Nsauditor 3.2.3 contains a denial of service vulnerability… | Details |
| CVE-2021-47889 | 2026-01-23 16:47:35 | 2026-07-15 01:24:36 | VulnCheck | Softros LAN Messenger 9.6.4 contains an unquoted service… | Details |
| CVE-2021-47778 | 2026-01-21 17:29:48 | 2026-07-15 01:24:35 | VulnCheck | GetSimple CMS My SMTP Contact Plugin 1.1.2 contains… | Details |
| CVE-2025-9222 | 2026-01-09 10:04:36 | 2026-07-15 01:24:25 | GitLab | GitLab has remediated an issue in GitLab CE/EE… | Details |
| CVE-2026-0532 | 2026-01-14 10:14:57 | 2026-07-15 01:24:22 | elastic | External Control of File Name or Path (CWE-73)… | Details |
| CVE-2020-37004 | 2026-01-29 14:28:28 | 2026-07-15 01:24:22 | VulnCheck | The Ultimate Project Manager CRM PRO version 2.0.5… | Details |
| CVE-2020-37010 | 2026-01-29 14:28:30 | 2026-07-15 01:24:22 | VulnCheck | BearShare Lite 5.2.5 contains a buffer overflow vulnerability… | Details |
| CVE-2020-36975 | 2026-01-27 18:51:02 | 2026-07-15 01:24:21 | VulnCheck | EPSON Status Monitor 3 version 8.0 contains an… | Details |
| CVE-2020-36957 | 2026-01-26 17:43:02 | 2026-07-15 01:24:20 | VulnCheck | PDF Complete 3.5.310.2002 contains an unquoted service path… | Details |
| CVE-2020-36970 | 2026-01-28 17:35:11 | 2026-07-15 01:24:20 | VulnCheck | PMB 5.6 contains a local file disclosure vulnerability… | Details |
| CVE-2020-36910 | 2026-01-06 15:52:22 | 2026-07-15 01:24:19 | VulnCheck | Cayin Signage Media Player 3.0 contains an authenticated… | Details |
| CVE-2020-36908 | 2026-01-06 15:52:21 | 2026-07-15 01:24:18 | VulnCheck | SnapGear Management Console SG560 version 3.1.5 contains a… | Details |
| CVE-2020-36909 | 2026-01-06 15:52:22 | 2026-07-15 01:24:18 | VulnCheck | SnapGear Management Console SG560 3.1.5 contains a file… | Details |
| CVE-2026-0719 | 2026-01-08 12:38:30 | 2026-07-15 01:24:12 | redhat | A flaw was identified in the NTLM authentication… | Details |
| CVE-2026-0775 | 2026-01-23 03:29:14 | 2026-07-15 01:24:10 | zdi | npm cli Incorrect Permission Assignment Local Privilege Escalation… | Details |
| CVE-2026-0878 | 2026-01-13 13:30:53 | 2026-07-15 01:23:57 | mozilla | Sandbox escape due to incorrect boundary conditions in… | Details |
| CVE-2026-0879 | 2026-01-13 13:30:54 | 2026-07-15 01:23:54 | mozilla | Sandbox escape due to incorrect boundary conditions in… | Details |
| CVE-2026-0880 | 2026-01-13 13:30:54 | 2026-07-15 01:23:52 | mozilla | Sandbox escape due to integer overflow in the… | Details |
| CVE-2026-0881 | 2026-01-13 13:30:55 | 2026-07-15 01:23:49 | mozilla | Sandbox escape in the Messaging System component. This… | Details |
| CVE-2019-25280 | 2026-01-07 23:11:07 | 2026-07-15 01:23:46 | VulnCheck | Yahei-PHP Prober 0.4.7 contains a remote HTML injection… | Details |
| CVE-2026-0882 | 2026-01-13 13:30:55 | 2026-07-15 01:23:46 | mozilla | Use-after-free in the IPC component. This vulnerability was… | Details |
| CVE-2019-25279 | 2026-01-07 23:10:00 | 2026-07-15 01:23:45 | VulnCheck | FaceSentry Access Control System 6.4.8 contains a cleartext… | Details |
| CVE-2019-25278 | 2026-01-07 23:09:59 | 2026-07-15 01:23:44 | VulnCheck | FaceSentry Access Control System 6.4.8 contains a cleartext… | Details |
| CVE-2026-0891 | 2026-01-13 13:30:59 | 2026-07-15 01:23:44 | mozilla | Memory safety bugs present in Firefox ESR 140.6,… | Details |
| CVE-2026-0897 | 2026-01-15 14:09:53 | 2026-07-15 01:23:41 | Allocation of Resources Without Limits or Throttling in… | Details | |
| CVE-2026-0994 | 2026-01-23 14:55:16 | 2026-07-15 01:23:39 | A denial-of-service (DoS) vulnerability exists in google.protobuf.json_format.ParseDict() in… | Details | |
| CVE-2026-1260 | 2026-01-22 17:06:17 | 2026-07-15 01:22:12 | Invalid memory access in Sentencepiece versions less than… | Details | |
| CVE-2026-20736 | 2026-01-22 22:01:49 | 2026-07-15 01:20:18 | Gitea | Gitea does not properly verify repository context when… | Details |
| CVE-2026-20750 | 2026-01-22 22:01:49 | 2026-07-15 01:20:16 | Gitea | Gitea does not properly validate project ownership in… | Details |
| CVE-2026-20897 | 2026-01-22 22:01:51 | 2026-07-15 01:20:11 | Gitea | Gitea does not properly validate repository ownership when… | Details |
| CVE-2026-20912 | 2026-01-22 22:01:52 | 2026-07-15 01:20:07 | Gitea | Gitea does not properly validate repository ownership when… | Details |
| CVE-2026-21884 | 2026-01-10 02:41:44 | 2026-07-15 01:19:46 | GitHub_M | React Router is a router for React. In… | Details |
| CVE-2026-21932 | 2026-01-20 21:56:23 | 2026-07-15 01:19:44 | oracle | Vulnerability in the Oracle Java SE, Oracle GraalVM… | Details |
| CVE-2026-21945 | 2026-01-20 21:56:27 | 2026-07-15 01:19:42 | oracle | Vulnerability in the Oracle Java SE, Oracle GraalVM… | Details |
| CVE-2026-22184 | 2026-01-07 20:25:19 | 2026-07-15 01:19:34 | VulnCheck | zlib versions up to and including 1.3.1.2 include… | Details |
| CVE-2026-22771 | 2026-01-12 18:08:22 | 2026-07-15 01:19:24 | GitHub_M | Envoy Gateway is an open source project for… | Details |
| CVE-2026-22774 | 2026-01-15 18:53:21 | 2026-07-15 01:19:21 | GitHub_M | Svelte devalue is a JavaScript library that serializes… | Details |
| CVE-2026-22775 | 2026-01-15 18:59:37 | 2026-07-15 01:19:19 | GitHub_M | Svelte devalue is a JavaScript library that serializes… | Details |
| CVE-2026-22822 | 2026-01-21 21:22:05 | 2026-07-15 01:19:08 | GitHub_M | External Secrets Operator reads information from a third-party… | Details |
| CVE-2026-22853 | 2026-01-14 17:46:50 | 2026-07-15 01:19:06 | GitHub_M | FreeRDP is a free implementation of the Remote… | Details |
| CVE-2026-22855 | 2026-01-14 17:50:06 | 2026-07-15 01:19:03 | GitHub_M | FreeRDP is a free implementation of the Remote… | Details |
| CVE-2026-22858 | 2026-01-14 17:56:29 | 2026-07-15 01:19:01 | GitHub_M | FreeRDP is a free implementation of the Remote… | Details |
| CVE-2026-22859 | 2026-01-14 17:57:37 | 2026-07-15 01:18:59 | GitHub_M | FreeRDP is a free implementation of the Remote… | Details |
| CVE-2026-23530 | 2026-01-19 16:58:46 | 2026-07-15 01:18:34 | GitHub_M | FreeRDP is a free implementation of the Remote… | Details |
| CVE-2026-23531 | 2026-01-19 17:01:01 | 2026-07-15 01:18:32 | GitHub_M | FreeRDP is a free implementation of the Remote… | Details |
| CVE-2026-23532 | 2026-01-19 17:03:51 | 2026-07-15 01:18:30 | GitHub_M | FreeRDP is a free implementation of the Remote… | Details |
| CVE-2026-23533 | 2026-01-19 17:07:18 | 2026-07-15 01:18:27 | GitHub_M | FreeRDP is a free implementation of the Remote… | Details |
| CVE-2026-23534 | 2026-01-19 17:09:55 | 2026-07-15 01:18:25 | GitHub_M | FreeRDP is a free implementation of the Remote… | Details |
| CVE-2026-23864 | 2026-01-26 19:16:38 | 2026-07-15 01:18:01 | Meta | Multiple denial of service vulnerabilities exist in React… | Details |
| CVE-2026-23876 | 2026-01-20 01:01:38 | 2026-07-15 01:17:54 | GitHub_M | ImageMagick is free and open-source software used for… | Details |
| CVE-2026-23883 | 2026-01-19 17:15:55 | 2026-07-15 01:17:52 | GitHub_M | FreeRDP is a free implementation of the Remote… | Details |
| CVE-2026-23884 | 2026-01-19 17:20:40 | 2026-07-15 01:17:49 | GitHub_M | FreeRDP is a free implementation of the Remote… | Details |
| CVE-2026-23950 | 2026-01-20 00:40:48 | 2026-07-15 01:17:44 | GitHub_M | node-tar,a Tar for Node.js, has a race condition… | Details |
| CVE-2026-23960 | 2026-01-21 22:02:50 | 2026-07-15 01:17:42 | GitHub_M | Argo Workflows is an open source container-native workflow… | Details |
| CVE-2026-24001 | 2026-01-22 02:23:44 | 2026-07-15 01:17:39 | GitHub_M | jsdiff is a JavaScript text differencing implementation. Prior… | Details |
| CVE-2026-24046 | 2026-01-21 22:36:30 | 2026-07-15 01:17:34 | GitHub_M | Backstage is an open framework for building developer… | Details |
| CVE-2026-24747 | 2026-01-27 21:13:46 | 2026-07-15 01:17:00 | GitHub_M | PyTorch is a Python package that provides tensor… | Details |
| CVE-2026-24881 | 2026-01-27 18:36:56 | 2026-07-15 01:16:45 | mitre | In GnuPG before 2.5.17, a crafted CMS (S/MIME)… | Details |
| CVE-2026-24882 | 2026-01-27 18:40:18 | 2026-07-15 01:16:43 | mitre | In GnuPG before 2.5.17, a stack-based buffer overflow… | Details |
| CVE-2026-25153 | 2026-01-30 21:31:58 | 2026-07-15 01:16:35 | GitHub_M | Backstage is an open framework for building developer… | Details |
| CVE-2024-58340 | 2026-01-12 23:05:00 | 2026-07-14 22:54:52 | VulnCheck | LangChain versions up to and including 0.3.1 contain… | Details |
| CVE-2025-9611 | 2026-01-07 04:24:13 | 2026-07-14 22:26:10 | VulnCheck | Microsoft Playwright MCP Server versions prior to 0.0.40… | Details |
| CVE-2025-71177 | 2026-01-23 16:40:56 | 2026-07-14 22:26:06 | VulnCheck | LavaLite CMS versions up to and including 10.1.0… | Details |
| CVE-2025-71166 | 2026-01-14 18:28:40 | 2026-07-14 22:26:05 | VulnCheck | Typesetter CMS versions up to and including 5.1… | Details |
| CVE-2025-71165 | 2026-01-14 18:28:21 | 2026-07-14 22:26:04 | VulnCheck | Typesetter CMS versions up to and including 5.1… | Details |
| CVE-2025-71164 | 2026-01-14 18:27:45 | 2026-07-14 22:26:03 | VulnCheck | Typesetter CMS versions up to and including 5.1… | Details |
| CVE-2025-34171 | 2026-01-03 21:18:51 | 2026-07-14 22:25:48 | VulnCheck | CasaOS versions up to and including 0.4.15 expose… | Details |
| CVE-2026-25069 | 2026-01-31 23:46:59 | 2026-07-14 15:53:39 | VulnCheck | SunFounder Pironman Dashboard (pm_dashboard) version 1.3.13 and prior… | Details |
| CVE-2026-22219 | 2026-01-19 23:15:08 | 2026-07-14 15:53:20 | VulnCheck | Chainlit versions prior to 2.9.4 contain a server-side… | Details |
| CVE-2026-22214 | 2026-01-12 23:03:23 | 2026-07-14 15:53:19 | VulnCheck | RIOT OS versions up to and including 2026.01-devel-317… | Details |
| CVE-2026-22218 | 2026-01-19 23:14:52 | 2026-07-14 15:53:19 | VulnCheck | Chainlit versions prior to 2.9.4 contain an arbitrary… | Details |
| CVE-2026-22213 | 2026-01-12 23:03:05 | 2026-07-14 15:53:18 | VulnCheck | RIOT OS versions up to and including 2026.01-devel-317… | Details |
| CVE-2026-22212 | 2026-01-12 23:02:45 | 2026-07-14 15:53:17 | VulnCheck | TinyOS versions up to and including 2.1.2 contain… | Details |
| CVE-2026-22211 | 2026-01-14 15:19:54 | 2026-07-14 15:53:17 | VulnCheck | TinyOS versions up to and including 2.1.2 contain… | Details |
| CVE-2026-22200 | 2026-01-12 18:34:12 | 2026-07-14 15:53:14 | VulnCheck | Enhancesoft osTicket versions 1.18.x prior to 1.18.3 and… | Details |
| CVE-2026-22190 | 2026-01-07 20:25:56 | 2026-07-14 15:53:12 | VulnCheck | The egg-mkfont utility in Panda3D versions up to… | Details |
| CVE-2026-22189 | 2026-01-07 20:25:37 | 2026-07-14 15:53:11 | VulnCheck | The egg-mkfont utility in Panda3D versions up to… | Details |
| CVE-2026-22188 | 2026-01-07 20:26:13 | 2026-07-14 15:53:10 | VulnCheck | The deploy-stub component in Panda3D versions up to… | Details |
| CVE-2026-22187 | 2026-01-07 20:27:06 | 2026-07-14 15:53:10 | VulnCheck | Bio-Formats versions up to and including 8.3.0 perform… | Details |
| CVE-2026-22186 | 2026-01-07 20:26:48 | 2026-07-14 15:53:09 | VulnCheck | Bio-Formats versions up to and including 8.3.0 contain… | Details |
| CVE-2026-0621 | 2026-01-05 20:57:14 | 2026-07-14 15:53:01 | VulnCheck | Anthropic's MCP TypeScript SDK versions up to and… | Details |
| CVE-2026-0650 | 2026-01-07 04:29:56 | 2026-07-14 15:53:01 | VulnCheck | OpenFlagr versions prior to and including 1.1.18 contain… | Details |
| CVE-2026-23038 | 2026-01-31 11:42:32 | 2026-07-14 12:45:51 | Linux | In the Linux kernel, the following vulnerability has… | Details |
| CVE-2026-23026 | 2026-01-31 11:42:05 | 2026-07-14 12:45:49 | Linux | In the Linux kernel, the following vulnerability has… | Details |
| CVE-2026-23019 | 2026-01-31 11:39:03 | 2026-07-14 12:45:48 | Linux | In the Linux kernel, the following vulnerability has… | Details |
| CVE-2026-23011 | 2026-01-25 14:36:24 | 2026-07-14 12:45:47 | Linux | In the Linux kernel, the following vulnerability has… | Details |
| CVE-2026-23010 | 2026-01-25 14:36:23 | 2026-07-14 12:45:45 | Linux | In the Linux kernel, the following vulnerability has… | Details |
| CVE-2026-23005 | 2026-01-25 14:36:19 | 2026-07-14 12:45:44 | Linux | In the Linux kernel, the following vulnerability has… | Details |
| CVE-2026-23003 | 2026-01-25 14:36:17 | 2026-07-14 12:45:43 | Linux | In the Linux kernel, the following vulnerability has… | Details |
| CVE-2026-22994 | 2026-01-23 15:24:14 | 2026-07-14 12:45:42 | Linux | In the Linux kernel, the following vulnerability has… | Details |
| CVE-2026-22992 | 2026-01-23 15:24:12 | 2026-07-14 12:45:40 | Linux | In the Linux kernel, the following vulnerability has… | Details |
| CVE-2026-22982 | 2026-01-23 15:24:04 | 2026-07-14 12:45:39 | Linux | In the Linux kernel, the following vulnerability has… | Details |
| CVE-2026-22980 | 2026-01-23 15:24:02 | 2026-07-14 12:45:38 | Linux | In the Linux kernel, the following vulnerability has… | Details |
| CVE-2026-22979 | 2026-01-23 15:24:01 | 2026-07-14 12:45:36 | Linux | In the Linux kernel, the following vulnerability has… | Details |
| CVE-2026-22977 | 2026-01-21 13:08:54 | 2026-07-14 12:45:35 | Linux | In the Linux kernel, the following vulnerability has… | Details |
| CVE-2025-71191 | 2026-01-31 11:42:03 | 2026-07-14 12:44:57 | Linux | In the Linux kernel, the following vulnerability has… | Details |
| CVE-2025-71190 | 2026-01-31 11:42:01 | 2026-07-14 12:44:56 | Linux | In the Linux kernel, the following vulnerability has… | Details |
| CVE-2025-71189 | 2026-01-31 11:42:00 | 2026-07-14 12:44:54 | Linux | In the Linux kernel, the following vulnerability has… | Details |
| CVE-2025-71186 | 2026-01-31 11:41:57 | 2026-07-14 12:44:53 | Linux | In the Linux kernel, the following vulnerability has… | Details |
| CVE-2025-71185 | 2026-01-31 11:41:57 | 2026-07-14 12:44:52 | Linux | In the Linux kernel, the following vulnerability has… | Details |
| CVE-2025-71163 | 2026-01-25 14:36:10 | 2026-07-14 12:44:51 | Linux | In the Linux kernel, the following vulnerability has… | Details |
| CVE-2025-71162 | 2026-01-25 14:36:09 | 2026-07-14 12:44:49 | Linux | In the Linux kernel, the following vulnerability has… | Details |
| CVE-2025-71161 | 2026-01-23 15:23:59 | 2026-07-14 12:44:48 | Linux | In the Linux kernel, the following vulnerability has… | Details |
| CVE-2025-71131 | 2026-01-14 15:07:47 | 2026-07-14 12:44:47 | Linux | In the Linux kernel, the following vulnerability has… | Details |
| CVE-2025-71123 | 2026-01-14 15:06:09 | 2026-07-14 12:44:45 | Linux | In the Linux kernel, the following vulnerability has… | Details |
| CVE-2025-71120 | 2026-01-14 15:06:07 | 2026-07-14 12:44:44 | Linux | In the Linux kernel, the following vulnerability has… | Details |
| CVE-2025-71114 | 2026-01-14 15:06:00 | 2026-07-14 12:44:43 | Linux | In the Linux kernel, the following vulnerability has… | Details |
| CVE-2025-71113 | 2026-01-14 15:05:59 | 2026-07-14 12:44:41 | Linux | In the Linux kernel, the following vulnerability has… | Details |
| CVE-2025-71112 | 2026-01-14 15:05:59 | 2026-07-14 12:44:40 | Linux | In the Linux kernel, the following vulnerability has… | Details |
| CVE-2025-71104 | 2026-01-14 15:05:53 | 2026-07-14 12:44:39 | Linux | In the Linux kernel, the following vulnerability has… | Details |
| CVE-2025-71098 | 2026-01-13 15:34:57 | 2026-07-14 12:44:37 | Linux | In the Linux kernel, the following vulnerability has… | Details |
| CVE-2025-71097 | 2026-01-13 15:34:56 | 2026-07-14 12:44:36 | Linux | In the Linux kernel, the following vulnerability has… | Details |
| CVE-2025-71095 | 2026-01-13 15:34:55 | 2026-07-14 12:44:35 | Linux | In the Linux kernel, the following vulnerability has… | Details |
| CVE-2025-71088 | 2026-01-13 15:34:50 | 2026-07-14 12:44:33 | Linux | In the Linux kernel, the following vulnerability has… | Details |
| CVE-2025-71086 | 2026-01-13 15:34:49 | 2026-07-14 12:44:32 | Linux | In the Linux kernel, the following vulnerability has… | Details |
| CVE-2025-71085 | 2026-01-13 15:34:48 | 2026-07-14 12:44:31 | Linux | In the Linux kernel, the following vulnerability has… | Details |
| CVE-2025-71079 | 2026-01-13 15:34:44 | 2026-07-14 12:44:29 | Linux | In the Linux kernel, the following vulnerability has… | Details |
| CVE-2025-71075 | 2026-01-13 15:31:28 | 2026-07-14 12:44:28 | Linux | In the Linux kernel, the following vulnerability has… | Details |
| CVE-2025-71064 | 2026-01-13 15:31:20 | 2026-07-14 12:44:27 | Linux | In the Linux kernel, the following vulnerability has… | Details |
| CVE-2025-68820 | 2026-01-13 15:29:23 | 2026-07-14 12:44:25 | Linux | In the Linux kernel, the following vulnerability has… | Details |
| CVE-2025-68818 | 2026-01-13 15:29:22 | 2026-07-14 12:44:24 | Linux | In the Linux kernel, the following vulnerability has… | Details |
| CVE-2025-68816 | 2026-01-13 15:29:20 | 2026-07-14 12:44:23 | Linux | In the Linux kernel, the following vulnerability has… | Details |
| CVE-2025-68814 | 2026-01-13 15:29:19 | 2026-07-14 12:44:21 | Linux | In the Linux kernel, the following vulnerability has… | Details |
| CVE-2025-68803 | 2026-01-13 15:29:11 | 2026-07-14 12:44:20 | Linux | In the Linux kernel, the following vulnerability has… | Details |
| CVE-2025-68798 | 2026-01-13 15:29:08 | 2026-07-14 12:44:19 | Linux | In the Linux kernel, the following vulnerability has… | Details |
| CVE-2025-68788 | 2026-01-13 15:29:01 | 2026-07-14 12:44:18 | Linux | In the Linux kernel, the following vulnerability has… | Details |
| CVE-2025-68787 | 2026-01-13 15:29:00 | 2026-07-14 12:44:15 | Linux | In the Linux kernel, the following vulnerability has… | Details |
| CVE-2025-68782 | 2026-01-13 15:28:56 | 2026-07-14 12:44:14 | Linux | In the Linux kernel, the following vulnerability has… | Details |
| CVE-2025-68776 | 2026-01-13 15:28:52 | 2026-07-14 12:44:13 | Linux | In the Linux kernel, the following vulnerability has… | Details |
| CVE-2025-68773 | 2026-01-13 15:28:50 | 2026-07-14 12:44:11 | Linux | In the Linux kernel, the following vulnerability has… | Details |
| CVE-2025-68764 | 2026-01-05 09:44:12 | 2026-07-14 12:44:10 | Linux | In the Linux kernel, the following vulnerability has… | Details |
| CVE-2025-25249 | 2026-01-13 16:32:35 | 2026-07-14 12:40:58 | fortinet | A heap-based buffer overflow vulnerability in Fortinet FortiOS… | Details |
| CVE-2025-15366 | 2026-01-20 21:40:24 | 2026-07-09 17:20:02 | PSF | The imaplib module, when passed a user-controlled command,… | Details |
| CVE-2025-66177 | 2026-01-13 01:47:54 | 2026-07-09 06:22:08 | hikvision | There is a Buffer overflow Vulnerability in the… | Details |
| CVE-2025-66176 | 2026-01-13 01:47:27 | 2026-07-09 06:21:34 | hikvision | There is a Buffer overflow Vulnerability in the… | Details |
| CVE-2025-52023 | 2026-01-23 00:00:00 | 2026-07-05 16:13:48 | mitre | A vulnerability in the PHP backend of gemscms.aptsys.com.sg… | Details |
| CVE-2025-66698 | 2026-01-13 00:00:00 | 2026-07-05 16:13:45 | mitre | An issue in Semantic machines v5.4.8 allows attackers… | Details |
| CVE-2025-65784 | 2026-01-13 00:00:00 | 2026-07-05 16:13:41 | mitre | Insecure permissions in Hubert Imoveis e Administracao Ltda… | Details |
| CVE-2025-65783 | 2026-01-13 00:00:00 | 2026-07-05 16:13:37 | mitre | An arbitrary file upload vulnerability in the /utils/uploadFile… | Details |
| CVE-2025-65397 | 2026-01-14 00:00:00 | 2026-07-05 16:13:33 | mitre | An insecure authentication mechanism in the safe_exec.sh startup… | Details |
| CVE-2025-65396 | 2026-01-14 00:00:00 | 2026-07-05 16:13:28 | mitre | A vulnerability in the boot process of Blurams… | Details |
| CVE-2025-63314 | 2026-01-12 00:00:00 | 2026-07-05 16:13:25 | mitre | A static password reset token in the password… | Details |
| CVE-2025-29329 | 2026-01-12 00:00:00 | 2026-07-05 16:13:21 | mitre | Buffer Overflow in the ippprint (Internet Printing Protocol)… | Details |
| CVE-2024-54855 | 2026-01-13 00:00:00 | 2026-07-05 16:13:17 | mitre | fabricators Ltd Vanilla OS 2 Core image v1.1.0… | Details |
| CVE-2025-67316 | 2026-01-05 00:00:00 | 2026-07-05 14:15:34 | mitre | An issue in realme Internet browser v.45.13.4.1 allows… | Details |
| CVE-2025-67246 | 2026-01-15 00:00:00 | 2026-07-05 01:33:45 | mitre | A local information disclosure vulnerability exists in the… | Details |
| CVE-2025-69929 | 2026-01-29 00:00:00 | 2026-07-05 01:29:14 | mitre | An issue in N3uron Web User Interface v.1.21.7-240207.1047… | Details |
| CVE-2025-71001 | 2026-01-28 00:00:00 | 2026-07-05 01:28:21 | mitre | A segmentation violation in the flow.column_stack component of… | Details |
| CVE-2025-71000 | 2026-01-28 00:00:00 | 2026-07-05 01:28:17 | mitre | An issue in the flow.cuda.BoolTensor component of OneFlow… | Details |
| CVE-2025-70999 | 2026-01-28 00:00:00 | 2026-07-05 01:28:13 | mitre | A GPU device-ID validation flaw in the flow.cuda.get_device_capability()… | Details |
| CVE-2025-69604 | 2026-01-29 00:00:00 | 2026-07-05 01:28:09 | mitre | An issue in Shirt Pocket's SuperDuper! 3.11 and… | Details |
| CVE-2025-65891 | 2026-01-28 00:00:00 | 2026-07-05 01:28:05 | mitre | A GPU device-ID validation flaw in OneFlow v0.9.0… | Details |
| CVE-2025-65890 | 2026-01-28 00:00:00 | 2026-07-05 01:28:00 | mitre | A device-ID validation flaw in OneFlow v0.9.0 allows… | Details |
| CVE-2025-65889 | 2026-01-28 00:00:00 | 2026-07-05 01:27:57 | mitre | A type validation flaw in the flow.dstack() component… | Details |
| CVE-2025-65888 | 2026-01-28 00:00:00 | 2026-07-05 01:27:53 | mitre | A dimension validation flaw in the flow.empty() component… | Details |
| CVE-2025-65887 | 2026-01-28 00:00:00 | 2026-07-05 01:27:48 | mitre | A division-by-zero vulnerability in the flow.floor_divide() component of… | Details |
| CVE-2025-65886 | 2026-01-28 00:00:00 | 2026-07-05 01:27:43 | mitre | A shape mismatch vulnerability in OneFlow v0.9.0 allows… | Details |
| CVE-2025-69612 | 2026-01-22 00:00:00 | 2026-07-05 01:27:31 | mitre | A path traversal vulnerability exists in TMS Management… | Details |
| CVE-2025-67264 | 2026-01-23 00:00:00 | 2026-07-05 01:27:27 | mitre | An OS command injection vulnerability in the com.sprd.engineermode… | Details |
| CVE-2025-56590 | 2026-01-22 00:00:00 | 2026-07-05 01:27:23 | mitre | An issue was discovered in the InsertFromURL() function… | Details |
| CVE-2025-56589 | 2026-01-22 00:00:00 | 2026-07-05 01:27:19 | mitre | A Local File Inclusion (LFI) and a Server-Side… | Details |
| CVE-2025-52026 | 2026-01-23 00:00:00 | 2026-07-05 01:27:14 | mitre | An information disclosure vulnerability exists in the /srvs/membersrv/getCashiers… | Details |
| CVE-2025-52025 | 2026-01-23 00:00:00 | 2026-07-05 01:27:09 | mitre | An SQL Injection vulnerability exists in the GetServiceByRestaurantID… | Details |
| CVE-2025-52024 | 2026-01-23 00:00:00 | 2026-07-05 01:27:05 | mitre | A vulnerability exists in the Aptsys POS Platform… | Details |
| CVE-2025-52022 | 2026-01-23 00:00:00 | 2026-07-05 01:26:56 | mitre | A vulnerability in the PHP backend of gemsloyalty.aptsys.com.sg… | Details |
| CVE-2025-67399 | 2026-01-14 00:00:00 | 2026-07-05 01:26:52 | mitre | An issue in AIRTH SMART HOME AQI MONITOR… | Details |
| CVE-2025-67158 | 2026-01-02 00:00:00 | 2026-07-05 01:26:48 | mitre | An authentication bypass in the /cgi-bin/jvsweb.cgi endpoint of… | Details |
| CVE-2025-65553 | 2026-01-12 00:00:00 | 2026-07-05 01:26:32 | mitre | D3D Wi-Fi Home Security System ZX-G12 v2.1.17 is… | Details |
| CVE-2025-65552 | 2026-01-12 00:00:00 | 2026-07-05 01:26:28 | mitre | D3D Wi-Fi Home Security System ZX-G12 v2.1.1 is… | Details |
| CVE-2025-60534 | 2026-01-06 00:00:00 | 2026-07-05 01:26:07 | mitre | Blue Access Cobalt v02.000.195 suffers from an authentication… | Details |
| CVE-2025-55462 | 2026-01-13 00:00:00 | 2026-07-05 01:26:02 | mitre | A CORS misconfiguration in Eramba Community and Enterprise… | Details |
| CVE-2025-67160 | 2026-01-02 00:00:00 | 2026-07-05 01:25:28 | mitre | An issue in Vatilon v1.12.37-20240124 allows attackers to… | Details |
| CVE-2025-67159 | 2026-01-02 00:00:00 | 2026-07-05 01:25:24 | mitre | Vatilon v1.12.37-20240124 was discovered to transmit user credentials… | Details |
| CVE-2024-55374 | 2026-01-02 00:00:00 | 2026-07-05 01:24:25 | mitre | REDCap 14.3.13 allows an attacker to enumerate usernames… | Details |
| CVE-2025-9820 | 2026-01-26 19:58:32 | 2026-06-30 10:40:21 | redhat | A flaw was found in the GnuTLS library,… | Details |
| CVE-2025-9615 | 2026-01-26 19:58:17 | 2026-06-30 07:37:54 | redhat | A flaw was found in NetworkManager. The NetworkManager… | Details |
| CVE-2025-14242 | 2026-01-14 15:23:03 | 2026-06-29 23:29:46 | redhat | A flaw was found in vsftpd. This vulnerability… | Details |
| CVE-2025-11065 | 2026-01-26 19:36:28 | 2026-06-29 23:28:27 | redhat | A flaw was found in github.com/go-viper/mapstructure/v2, in the… | Details |
| CVE-2026-21509 | 2026-01-26 17:06:35 | 2026-06-25 03:55:21 | microsoft | Reliance on untrusted inputs in a security decision… | Details |
| CVE-2020-36993 | 2026-01-28 12:29:03 | 2026-06-23 16:13:03 | VulnCheck | LimeSurvey 4.3.10 contains a stored cross-site scripting vulnerability… | Details |
| CVE-2020-37019 | 2026-01-30 16:16:39 | 2026-06-23 16:13:03 | VulnCheck | Orchard Core RC1 contains a persistent cross-site scripting… | Details |
| CVE-2025-68768 | 2026-01-13 15:28:47 | 2026-06-19 11:57:29 | Linux | In the Linux kernel, the following vulnerability has… | Details |
| CVE-2026-22990 | 2026-01-23 15:24:11 | 2026-06-16 20:38:37 | Linux | In the Linux kernel, the following vulnerability has… | Details |
| CVE-2026-22998 | 2026-01-25 14:36:12 | 2026-06-16 20:38:12 | Linux | In the Linux kernel, the following vulnerability has… | Details |
| CVE-2026-22997 | 2026-01-25 14:36:12 | 2026-06-16 20:36:36 | Linux | In the Linux kernel, the following vulnerability has… | Details |
| CVE-2026-22999 | 2026-01-25 14:36:13 | 2026-06-16 20:36:05 | Linux | In the Linux kernel, the following vulnerability has… | Details |
| CVE-2026-22991 | 2026-01-23 15:24:12 | 2026-06-16 20:35:39 | Linux | In the Linux kernel, the following vulnerability has… | Details |
| CVE-2026-22984 | 2026-01-23 15:24:06 | 2026-06-16 20:35:08 | Linux | In the Linux kernel, the following vulnerability has… | Details |
| CVE-2026-23001 | 2026-01-25 14:36:15 | 2026-06-16 20:17:28 | Linux | In the Linux kernel, the following vulnerability has… | Details |
| CVE-2025-68785 | 2026-01-13 15:28:58 | 2026-06-16 19:22:11 | Linux | In the Linux kernel, the following vulnerability has… | Details |
| CVE-2025-68813 | 2026-01-13 15:29:18 | 2026-06-16 19:15:49 | Linux | In the Linux kernel, the following vulnerability has… | Details |
| CVE-2025-68795 | 2026-01-13 15:29:06 | 2026-06-16 16:53:15 | Linux | In the Linux kernel, the following vulnerability has… | Details |
| CVE-2025-68800 | 2026-01-13 15:29:09 | 2026-06-16 16:50:24 | Linux | In the Linux kernel, the following vulnerability has… | Details |
| CVE-2025-68811 | 2026-01-13 15:29:17 | 2026-06-16 16:29:00 | Linux | In the Linux kernel, the following vulnerability has… | Details |
| CVE-2025-71089 | 2026-01-13 15:34:51 | 2026-06-16 16:20:14 | Linux | In the Linux kernel, the following vulnerability has… | Details |
| CVE-2025-71096 | 2026-01-13 15:34:56 | 2026-06-11 18:44:24 | Linux | In the Linux kernel, the following vulnerability has… | Details |
| CVE-2025-71125 | 2026-01-14 15:06:10 | 2026-06-11 18:44:24 | Linux | In the Linux kernel, the following vulnerability has… | Details |
| CVE-2025-71094 | 2026-01-13 15:34:54 | 2026-06-11 18:44:23 | Linux | In the Linux kernel, the following vulnerability has… | Details |
| CVE-2025-71116 | 2026-01-14 15:06:04 | 2026-06-11 18:44:23 | Linux | In the Linux kernel, the following vulnerability has… | Details |
| CVE-2026-22976 | 2026-01-21 06:57:23 | 2026-06-11 18:44:22 | Linux | In the Linux kernel, the following vulnerability has… | Details |
| CVE-2025-71084 | 2026-01-13 15:34:47 | 2026-06-11 18:44:21 | Linux | In the Linux kernel, the following vulnerability has… | Details |
| CVE-2025-71093 | 2026-01-13 15:34:53 | 2026-06-11 18:44:20 | Linux | In the Linux kernel, the following vulnerability has… | Details |
| CVE-2025-71111 | 2026-01-14 15:05:58 | 2026-06-11 18:44:20 | Linux | In the Linux kernel, the following vulnerability has… | Details |
| CVE-2025-71132 | 2026-01-14 15:07:47 | 2026-06-11 18:44:20 | Linux | In the Linux kernel, the following vulnerability has… | Details |
| CVE-2025-71154 | 2026-01-23 14:25:53 | 2026-06-11 18:44:19 | Linux | In the Linux kernel, the following vulnerability has… | Details |
| CVE-2025-71182 | 2026-01-31 11:38:55 | 2026-06-11 18:44:19 | Linux | In the Linux kernel, the following vulnerability has… | Details |
| CVE-2025-71147 | 2026-01-23 14:15:13 | 2026-06-11 18:44:18 | Linux | In the Linux kernel, the following vulnerability has… | Details |
| CVE-2025-71087 | 2026-01-13 15:34:49 | 2026-06-11 18:44:14 | Linux | In the Linux kernel, the following vulnerability has… | Details |
| CVE-2025-71127 | 2026-01-14 15:07:44 | 2026-06-11 18:44:14 | Linux | In the Linux kernel, the following vulnerability has… | Details |
| CVE-2025-71108 | 2026-01-14 15:05:56 | 2026-06-11 18:44:12 | Linux | In the Linux kernel, the following vulnerability has… | Details |
| CVE-2025-71118 | 2026-01-14 15:06:05 | 2026-06-11 18:44:12 | Linux | In the Linux kernel, the following vulnerability has… | Details |
| CVE-2025-71082 | 2026-01-13 15:34:46 | 2026-06-11 18:44:11 | Linux | In the Linux kernel, the following vulnerability has… | Details |
| CVE-2025-71068 | 2026-01-13 15:31:23 | 2026-06-11 18:44:08 | Linux | In the Linux kernel, the following vulnerability has… | Details |
| CVE-2026-23021 | 2026-01-31 11:39:05 | 2026-06-11 18:44:08 | Linux | In the Linux kernel, the following vulnerability has… | Details |
| CVE-2025-71133 | 2026-01-14 15:07:48 | 2026-06-11 18:44:07 | Linux | In the Linux kernel, the following vulnerability has… | Details |
| CVE-2025-71091 | 2026-01-13 15:34:52 | 2026-06-11 18:44:06 | Linux | In the Linux kernel, the following vulnerability has… | Details |
| CVE-2025-71077 | 2026-01-13 15:31:29 | 2026-06-11 18:44:05 | Linux | In the Linux kernel, the following vulnerability has… | Details |
| CVE-2025-71083 | 2026-01-13 15:34:46 | 2026-06-11 18:44:01 | Linux | In the Linux kernel, the following vulnerability has… | Details |
| CVE-2026-24858 | 2026-01-27 19:18:23 | 2026-06-09 14:27:53 | fortinet | An Authentication Bypass Using an Alternate Path or… | Details |
| CVE-2025-40944 | 2026-01-13 09:44:05 | 2026-06-09 08:46:51 | siemens | A vulnerability has been identified in SIMATIC ET… | Details |
| CVE-2025-59381 | 2026-01-02 15:19:09 | 2026-06-09 06:17:22 | qnap | A path traversal vulnerability has been reported to… | Details |
| CVE-2026-0707 | 2026-01-08 03:41:27 | 2026-06-08 10:21:07 | redhat | A flaw was found in Keycloak. The Keycloak… | Details |
| CVE-2025-1395 | 2026-01-30 08:31:53 | 2026-06-06 06:53:06 | TR-CERT | Generation of Error Message Containing Sensitive Information vulnerability… | Details |
| CVE-2025-2204 | 2026-01-23 11:55:25 | 2026-06-06 06:19:25 | TR-CERT | Improper Neutralization of Input During Web Page Generation… | Details |
| CVE-2025-4319 | 2026-01-23 12:23:24 | 2026-06-05 14:52:53 | TR-CERT | Improper Restriction of Excessive Authentication Attempts, Weak Password… | Details |
| CVE-2025-4320 | 2026-01-23 12:26:46 | 2026-06-05 14:51:52 | TR-CERT | Authentication Bypass by Primary Weakness, Weak Password Recovery… | Details |
| CVE-2025-4686 | 2026-01-30 15:54:05 | 2026-06-05 14:47:25 | TR-CERT | Improper Neutralization of Special Elements used in an… | Details |
| CVE-2025-4763 | 2026-01-22 09:10:16 | 2026-06-05 14:41:32 | TR-CERT | Improper Neutralization of Input During Web Page Generation… | Details |
| CVE-2025-4764 | 2026-01-22 09:13:49 | 2026-06-05 14:40:32 | TR-CERT | Improper Neutralization of Special Elements used in an… | Details |
| CVE-2025-7013 | 2026-01-29 13:40:57 | 2026-06-05 13:54:41 | TR-CERT | Authorization Bypass Through User-Controlled Key vulnerability in QR… | Details |
| CVE-2025-7014 | 2026-01-29 13:47:31 | 2026-06-05 13:52:28 | TR-CERT | Session Fixation vulnerability in QR Menu Pro Smart… | Details |
| CVE-2025-7015 | 2026-01-29 11:40:47 | 2026-06-05 13:51:33 | TR-CERT | Session Fixation vulnerability in Akın Software Computer Import… | Details |
| CVE-2025-7016 | 2026-01-29 11:45:06 | 2026-06-05 13:50:31 | TR-CERT | Improper Access Control vulnerability in Akın Software Computer… | Details |
| CVE-2025-7713 | 2026-01-29 14:38:40 | 2026-06-05 13:39:25 | TR-CERT | Improper Neutralization of Input During Web Page Generation… | Details |
| CVE-2025-7714 | 2026-01-29 14:44:12 | 2026-06-05 13:38:20 | TR-CERT | Improper Neutralization of Special Elements used in an… | Details |
| CVE-2025-10024 | 2026-01-22 11:45:10 | 2026-06-05 10:51:09 | TR-CERT | Authorization Bypass Through User-Controlled Key vulnerability in EXERT… | Details |
| CVE-2025-10855 | 2026-01-22 12:13:30 | 2026-06-05 08:28:42 | TR-CERT | Authorization Bypass Through User-Controlled Key vulnerability in Solvera… | Details |
| CVE-2025-10856 | 2026-01-22 12:19:03 | 2026-06-05 06:42:10 | TR-CERT | Unrestricted Upload of File with Dangerous Type vulnerability… | Details |
| CVE-2025-62582 | 2026-01-16 02:03:22 | 2026-06-04 14:58:57 | Deltaww | Delta Electronics DIAView has multiple vulnerabilities.… | Details |
| CVE-2025-62581 | 2026-01-16 02:20:04 | 2026-06-04 08:28:41 | Deltaww | Delta Electronics DIAView has multiple vulnerabilities.… | Details |
| CVE-2025-62182 | 2026-01-13 16:37:06 | 2026-06-03 19:46:43 | Pega | Pega Customer Service Framework versions 8.7.0 through 25.1.0… | Details |
| CVE-2026-0535 | 2026-01-22 16:59:34 | 2026-06-03 13:30:24 | autodesk | A maliciously crafted HTML payload, stored in a… | Details |
| CVE-2026-0534 | 2026-01-22 16:59:01 | 2026-06-03 13:29:45 | autodesk | A maliciously crafted HTML payload, stored in a… | Details |
| CVE-2026-0533 | 2026-01-22 16:58:43 | 2026-06-03 13:27:57 | autodesk | A maliciously crafted HTML payload in a design… | Details |
| CVE-2026-25210 | 2026-01-30 06:40:27 | 2026-06-02 13:01:11 | mitre | In libexpat before 2.7.4, the doContent function does… | Details |
| CVE-2026-24515 | 2026-01-23 07:46:36 | 2026-06-02 13:01:10 | mitre | In libexpat before 2.7.4, XML_ExternalEntityParserCreate does not copy… | Details |
| CVE-2026-23037 | 2026-01-31 11:42:31 | 2026-06-02 13:00:55 | Linux | In the Linux kernel, the following vulnerability has… | Details |
| CVE-2026-23033 | 2026-01-31 11:42:28 | 2026-06-02 13:00:54 | Linux | In the Linux kernel, the following vulnerability has… | Details |
| CVE-2026-23032 | 2026-01-31 11:42:11 | 2026-06-02 13:00:53 | Linux | In the Linux kernel, the following vulnerability has… | Details |
| CVE-2026-23031 | 2026-01-31 11:42:09 | 2026-06-02 13:00:52 | Linux | In the Linux kernel, the following vulnerability has… | Details |
| CVE-2026-23030 | 2026-01-31 11:42:08 | 2026-06-02 13:00:51 | Linux | In the Linux kernel, the following vulnerability has… | Details |
| CVE-2026-23025 | 2026-01-31 11:42:04 | 2026-06-02 13:00:48 | Linux | In the Linux kernel, the following vulnerability has… | Details |
| CVE-2026-22610 | 2026-01-10 03:35:40 | 2026-06-02 13:00:45 | GitHub_M | Angular is a development platform for building mobile… | Details |
| CVE-2026-1489 | 2026-01-27 14:26:47 | 2026-06-02 13:00:42 | redhat | A flaw was found in GLib. An integer… | Details |
| CVE-2026-1484 | 2026-01-27 13:41:54 | 2026-06-02 13:00:41 | redhat | A flaw was found in the GLib Base64… | Details |
| CVE-2025-71188 | 2026-01-31 11:41:59 | 2026-06-02 13:00:36 | Linux | In the Linux kernel, the following vulnerability has… | Details |
| CVE-2025-68823 | 2026-01-13 15:29:25 | 2026-06-01 16:05:45 | Linux | In the Linux kernel, the following vulnerability has… | Details |
| CVE-2025-71140 | 2026-01-14 15:07:53 | 2026-05-27 09:28:15 | Linux | In the Linux kernel, the following vulnerability has… | Details |
| CVE-2026-20817 | 2026-01-13 17:56:14 | 2026-05-26 18:12:13 | microsoft | Improper handling of insufficient permissions or privileges in… | Details |
| CVE-2026-20921 | 2026-01-13 17:56:39 | 2026-05-26 18:08:18 | microsoft | Concurrent execution using shared resource with improper synchronization… | Details |
| CVE-2026-20864 | 2026-01-13 17:56:33 | 2026-05-26 17:08:08 | microsoft | Heap-based buffer overflow in Connected Devices Platform Service… | Details |
| CVE-2026-20931 | 2026-01-13 17:57:03 | 2026-05-26 17:02:49 | microsoft | External control of file name or path in… | Details |
| CVE-2020-37015 | 2026-01-29 14:28:32 | 2026-05-26 11:51:41 | VulnCheck | The Ruijie Networks Switch eWeb S29_RGOS version 11.4… | Details |
| CVE-2020-37011 | 2026-01-29 14:28:31 | 2026-05-26 11:51:40 | VulnCheck | Gnome Fonts Viewer 3.34.0 contains a heap corruption… | Details |
| CVE-2026-25068 | 2026-01-29 19:08:03 | 2026-05-25 23:41:42 | VulnCheck | alsa-lib versions 1.2.2 up to and including 1.2.15.2,… | Details |
| CVE-2026-22185 | 2026-01-07 20:26:30 | 2026-05-25 23:41:35 | VulnCheck | OpenLDAP Lightning Memory-Mapped Database (LMDB) versions up to… | Details |
| CVE-2026-22194 | 2026-01-09 16:17:55 | 2026-05-25 23:41:35 | VulnCheck | GestSup versions up to and including 3.2.60 contain… | Details |
| CVE-2026-0625 | 2026-01-05 21:14:48 | 2026-05-25 23:41:34 | VulnCheck | Multiple D-Link DSL/DIR/DNS devices contain an authentication bypass… | Details |
| CVE-2021-47836 | 2026-01-16 19:09:36 | 2026-05-25 23:41:15 | VulnCheck | Markdown Explorer 0.1.1 contains a cross-site scripting vulnerability… | Details |
| CVE-2021-47817 | 2026-01-21 17:27:33 | 2026-05-25 23:41:14 | VulnCheck | OpenEMR 5.0.2.1 contains a cross-site scripting vulnerability in… | Details |
| CVE-2020-37002 | 2026-01-29 14:28:28 | 2026-05-25 23:41:10 | VulnCheck | Ajenti 2.1.36 contains a post-authenticated remote command execution… | Details |
| CVE-2023-54332 | 2026-01-13 22:56:39 | 2026-05-24 01:37:37 | VulnCheck | Jetpack 11.4 contains a cross-site scripting vulnerability in… | Details |
| CVE-2023-53985 | 2026-01-13 22:56:33 | 2026-05-24 01:37:36 | VulnCheck | Zstore, now referred to as Zippy CRM, 6.5.4… | Details |
| CVE-2022-50896 | 2026-01-13 22:56:27 | 2026-05-24 01:37:21 | VulnCheck | Testa 3.5.1 contains a reflected cross-site scripting vulnerability… | Details |
| CVE-2021-47750 | 2026-01-13 22:56:03 | 2026-05-24 01:37:01 | VulnCheck | YouPHPTube <= 7.8 contains a cross-site scripting vulnerability… | Details |
| CVE-2020-36919 | 2026-01-13 22:55:56 | 2026-05-24 01:36:51 | VulnCheck | WPForms 1.7.8 contains a cross-site scripting vulnerability in… | Details |
| CVE-2019-25284 | 2026-01-07 23:11:08 | 2026-05-24 01:36:22 | VulnCheck | V-SOL GPON/EPON OLT Platform v2.03 contains multiple reflected… | Details |
| CVE-2019-25277 | 2026-01-07 23:11:06 | 2026-05-24 01:36:20 | VulnCheck | FaceSentry Access Control System 6.4.8 contains a cross-site… | Details |
| CVE-2019-25270 | 2026-01-07 23:11:06 | 2026-05-24 01:36:20 | VulnCheck | SOCA Access Control System 180612 contains a cross-site… | Details |
| CVE-2026-23020 | 2026-01-31 11:39:04 | 2026-05-23 16:03:43 | Linux | In the Linux kernel, the following vulnerability has… | Details |
| CVE-2026-23018 | 2026-01-31 11:39:02 | 2026-05-23 16:03:42 | Linux | In the Linux kernel, the following vulnerability has… | Details |
| CVE-2026-23014 | 2026-01-28 14:24:44 | 2026-05-23 16:03:41 | Linux | In the Linux kernel, the following vulnerability has… | Details |
| CVE-2025-71183 | 2026-01-31 11:38:56 | 2026-05-23 16:03:29 | Linux | In the Linux kernel, the following vulnerability has… | Details |
| CVE-2025-71155 | 2026-01-23 14:25:54 | 2026-05-23 16:03:28 | Linux | In the Linux kernel, the following vulnerability has… | Details |
| CVE-2025-71153 | 2026-01-23 14:25:52 | 2026-05-23 16:03:27 | Linux | In the Linux kernel, the following vulnerability has… | Details |
| CVE-2025-71151 | 2026-01-23 14:15:17 | 2026-05-23 16:03:26 | Linux | In the Linux kernel, the following vulnerability has… | Details |
| CVE-2025-71150 | 2026-01-23 14:15:16 | 2026-05-23 16:03:25 | Linux | In the Linux kernel, the following vulnerability has… | Details |
| CVE-2025-71146 | 2026-01-23 14:15:12 | 2026-05-23 16:03:24 | Linux | In the Linux kernel, the following vulnerability has… | Details |
| CVE-2025-71145 | 2026-01-23 13:39:17 | 2026-05-23 16:03:22 | Linux | In the Linux kernel, the following vulnerability has… | Details |
| CVE-2025-71144 | 2026-01-14 15:08:56 | 2026-05-23 16:03:21 | Linux | In the Linux kernel, the following vulnerability has… | Details |
| CVE-2025-71141 | 2026-01-14 15:07:54 | 2026-05-23 16:03:20 | Linux | In the Linux kernel, the following vulnerability has… | Details |
| CVE-2025-71135 | 2026-01-14 15:07:49 | 2026-05-23 16:03:18 | Linux | In the Linux kernel, the following vulnerability has… | Details |
| CVE-2025-71126 | 2026-01-14 15:06:11 | 2026-05-23 16:03:17 | Linux | In the Linux kernel, the following vulnerability has… | Details |
| CVE-2025-71121 | 2026-01-14 15:06:07 | 2026-05-23 16:03:15 | Linux | In the Linux kernel, the following vulnerability has… | Details |
| CVE-2025-71119 | 2026-01-14 15:06:06 | 2026-05-23 16:03:13 | Linux | In the Linux kernel, the following vulnerability has… | Details |
| CVE-2025-71107 | 2026-01-14 15:05:55 | 2026-05-23 16:03:12 | Linux | In the Linux kernel, the following vulnerability has… | Details |
| CVE-2025-71076 | 2026-01-13 15:31:28 | 2026-05-23 16:03:05 | Linux | In the Linux kernel, the following vulnerability has… | Details |
| CVE-2025-71071 | 2026-01-13 15:31:25 | 2026-05-23 16:03:04 | Linux | In the Linux kernel, the following vulnerability has… | Details |
| CVE-2025-71070 | 2026-01-13 15:31:24 | 2026-05-23 16:03:03 | Linux | In the Linux kernel, the following vulnerability has… | Details |
| CVE-2025-71066 | 2026-01-13 15:31:21 | 2026-05-23 16:03:01 | Linux | In the Linux kernel, the following vulnerability has… | Details |
| CVE-2025-68821 | 2026-01-13 15:29:24 | 2026-05-23 16:03:00 | Linux | In the Linux kernel, the following vulnerability has… | Details |
| CVE-2025-68817 | 2026-01-13 15:29:21 | 2026-05-23 16:02:57 | Linux | In the Linux kernel, the following vulnerability has… | Details |
| CVE-2025-68815 | 2026-01-13 15:29:19 | 2026-05-23 16:02:56 | Linux | In the Linux kernel, the following vulnerability has… | Details |
| CVE-2025-68806 | 2026-01-13 15:29:13 | 2026-05-23 16:02:54 | Linux | In the Linux kernel, the following vulnerability has… | Details |
| CVE-2025-68769 | 2026-01-13 15:28:47 | 2026-05-23 16:02:51 | Linux | In the Linux kernel, the following vulnerability has… | Details |
| CVE-2026-23956 | 2026-01-22 01:23:58 | 2026-05-20 00:53:15 | GitHub_M | seroval facilitates JS value stringification, including complex structures… | Details |
| CVE-2026-24440 | 2026-01-26 17:38:44 | 2026-05-14 02:09:39 | VulnCheck | Shenzhen Tenda W30E V2 firmware versions up to… | Details |
| CVE-2026-24439 | 2026-01-26 17:48:37 | 2026-05-14 02:09:38 | VulnCheck | Shenzhen Tenda W30E V2 firmware versions up to… | Details |
| CVE-2026-24436 | 2026-01-26 17:40:04 | 2026-05-14 02:09:37 | VulnCheck | Shenzhen Tenda W30E V2 firmware versions up to… | Details |
| CVE-2026-24437 | 2026-01-26 17:40:22 | 2026-05-14 02:09:37 | VulnCheck | Shenzhen Tenda W30E V2 firmware versions up to… | Details |
| CVE-2026-24435 | 2026-01-26 17:49:03 | 2026-05-14 02:09:36 | VulnCheck | Shenzhen Tenda W30E V2 firmware versions up to… | Details |
| CVE-2026-24433 | 2026-01-26 17:40:59 | 2026-05-14 02:09:34 | VulnCheck | Shenzhen Tenda W30E V2 firmware versions up to… | Details |
| CVE-2026-24431 | 2026-01-26 17:40:41 | 2026-05-14 02:09:33 | VulnCheck | Shenzhen Tenda W30E V2 firmware versions up to… | Details |
| CVE-2026-24432 | 2026-01-26 17:46:54 | 2026-05-14 02:09:33 | VulnCheck | Shenzhen Tenda W30E V2 firmware versions up to… | Details |
| CVE-2026-24430 | 2026-01-26 17:39:14 | 2026-05-14 02:09:32 | VulnCheck | Shenzhen Tenda W30E V2 firmware versions up to… | Details |
| CVE-2026-24429 | 2026-01-26 17:39:02 | 2026-05-14 02:09:31 | VulnCheck | Shenzhen Tenda W30E V2 firmware versions up to… | Details |
| CVE-2026-24428 | 2026-01-26 17:39:45 | 2026-05-14 02:09:30 | VulnCheck | Shenzhen Tenda W30E V2 firmware versions up to… | Details |
| CVE-2026-23764 | 2026-01-22 16:16:51 | 2026-05-14 02:09:28 | VulnCheck | VB-Audio Voicemeeter, Voicemeeter Banana, and Voicemeeter Potato (versions… | Details |
| CVE-2026-23763 | 2026-01-22 16:17:12 | 2026-05-14 02:09:27 | VulnCheck | VB-Audio Matrix and Matrix Coconut (versions ending in… | Details |
| CVE-2026-23762 | 2026-01-22 16:17:31 | 2026-05-14 02:09:26 | VulnCheck | VB-Audio Voicemeeter, Voicemeeter Banana, and Voicemeeter Potato (versions… | Details |
| CVE-2026-23761 | 2026-01-22 16:17:49 | 2026-05-14 02:09:25 | VulnCheck | VB-Audio Voicemeeter, Voicemeeter Banana, and Voicemeeter Potato (versions… | Details |
| CVE-2026-23755 | 2026-01-21 18:02:30 | 2026-05-14 02:09:24 | VulnCheck | D-Link D-View 8 versions 2.0.1.107 and below contain… | Details |
| CVE-2026-23754 | 2026-01-21 18:02:45 | 2026-05-14 02:09:23 | VulnCheck | D-Link D-View 8 versions 2.0.1.107 and below contain… | Details |
| CVE-2026-23746 | 2026-01-15 19:44:53 | 2026-05-14 02:09:22 | VulnCheck | Entrust Instant Financial Issuance (IFI) On Premise software… | Details |
| CVE-2025-71178 | 2026-01-26 17:55:02 | 2026-05-14 02:08:57 | VulnCheck | Crucial Storage Executive installer versions prior to 11.08.082025.00… | Details |
| CVE-2023-7334 | 2026-01-15 21:44:58 | 2026-05-14 02:07:07 | VulnCheck | Changjetong T+ versions up to and including 16.x… | Details |
| CVE-2022-50899 | 2026-01-13 22:51:45 | 2026-05-14 02:07:00 | VulnCheck | Geonetwork 3.10 through 4.2.0 contains an XML external… | Details |
| CVE-2022-50693 | 2026-01-13 22:51:39 | 2026-05-14 02:06:59 | VulnCheck | Splashtop 8.71.12001.0 contains an unquoted service path vulnerability… | Details |
| CVE-2021-47749 | 2026-01-13 22:51:38 | 2026-05-14 02:06:52 | VulnCheck | YouPHPTube <= 7.8 contains a local file inclusion… | Details |
| CVE-2020-37014 | 2026-01-30 16:16:38 | 2026-05-14 02:06:48 | VulnCheck | Tryton 5.4 contains a persistent cross-site scripting vulnerability… | Details |
| CVE-2020-37003 | 2026-01-30 16:16:38 | 2026-05-14 02:06:47 | VulnCheck | Sellacious eCommerce 4.6 contains a persistent cross-site scripting… | Details |
| CVE-2020-36998 | 2026-01-30 16:16:37 | 2026-05-14 02:06:46 | VulnCheck | Forma.lms The E-Learning Suite 2.3.0.2 contains a persistent… | Details |
| CVE-2020-36996 | 2026-01-30 16:16:37 | 2026-05-14 02:06:45 | VulnCheck | PHPFusion 9.03.50 contains a persistent cross-site scripting vulnerability… | Details |
| CVE-2020-36960 | 2026-01-26 17:43:22 | 2026-05-14 02:06:44 | VulnCheck | Forma LMS 2.3 contains a stored cross-site scripting… | Details |
| CVE-2020-36988 | 2026-01-28 12:29:00 | 2026-05-14 02:06:44 | VulnCheck | PDW File Browser version 1.3 contains stored and… | Details |
| CVE-2020-36959 | 2026-01-26 17:43:15 | 2026-05-14 02:06:43 | VulnCheck | IDT PC Audio 1.0.6499.0 contains an unquoted service… | Details |
| CVE-2020-36958 | 2026-01-26 17:43:08 | 2026-05-14 02:06:42 | VulnCheck | Kite 1.2020.1119.0 contains an unquoted service path vulnerability… | Details |
| CVE-2020-36953 | 2026-01-26 17:42:27 | 2026-05-14 02:06:40 | VulnCheck | MiniTool ShadowMaker 3.2 contains an unquoted service path… | Details |
| CVE-2020-36954 | 2026-01-26 17:42:35 | 2026-05-14 02:06:40 | VulnCheck | Xeroneit Library Management System 3.1 contains a stored… | Details |
| CVE-2020-36932 | 2026-01-25 13:04:16 | 2026-05-14 02:06:39 | VulnCheck | SeaCMS 11.1 contains a stored cross-site scripting vulnerability… | Details |
| CVE-2020-36911 | 2026-01-13 22:51:37 | 2026-05-14 02:06:38 | VulnCheck | Covenant 0.1.3 - 0.5 contains a remote code… | Details |
| CVE-2011-10041 | 2026-01-15 21:44:33 | 2026-05-14 02:06:03 | VulnCheck | Uploadify WordPress plugin versions up to and including… | Details |
| CVE-2020-37013 | 2026-01-29 14:28:31 | 2026-05-12 20:46:26 | VulnCheck | Audio Playback Recorder 3.2.2 contains a local buffer… | Details |
| CVE-2020-37008 | 2026-01-29 14:28:30 | 2026-05-12 20:46:24 | VulnCheck | EasyPMS 1.0.0 contains an authentication bypass vulnerability that… | Details |
| CVE-2020-37006 | 2026-01-29 14:28:29 | 2026-05-12 20:46:23 | VulnCheck | berliCRM 1.0.24 contains a SQL injection vulnerability in… | Details |
| CVE-2020-37001 | 2026-01-29 14:28:27 | 2026-05-12 20:46:21 | VulnCheck | Frigate Professional 3.36.0.9 contains a local buffer overflow… | Details |
| CVE-2020-37000 | 2026-01-29 14:28:27 | 2026-05-12 20:46:20 | VulnCheck | Free MP3 CD Ripper 2.8 contains a stack… | Details |
| CVE-2020-36997 | 2026-01-29 14:28:26 | 2026-05-12 20:46:19 | VulnCheck | BacklinkSpeed 2.4 contains a buffer overflow vulnerability that… | Details |
| CVE-2020-36994 | 2026-01-29 14:28:25 | 2026-05-12 20:46:18 | VulnCheck | QlikView 12.50.20000.0 contains a denial of service vulnerability… | Details |
| CVE-2020-36995 | 2026-01-29 14:28:26 | 2026-05-12 20:46:18 | VulnCheck | Mocha Telnet Lite for iOS 4.2 contains a… | Details |
| CVE-2021-47870 | 2026-01-21 17:32:09 | 2026-05-12 20:45:13 | VulnCheck | GetSimple CMS My SMTP Contact Plugin 1.1.2 suffers… | Details |
| CVE-2026-22796 | 2026-01-27 16:01:28 | 2026-05-12 12:08:55 | openssl | Issue summary: A type confusion vulnerability exists in… | Details |
| CVE-2026-22795 | 2026-01-27 16:01:27 | 2026-05-12 12:08:53 | openssl | Issue summary: An invalid or NULL pointer dereference… | Details |
| CVE-2026-21947 | 2026-01-20 21:56:28 | 2026-05-12 12:08:52 | oracle | Vulnerability in Oracle Java SE (component: JavaFX). … | Details |
| CVE-2026-21933 | 2026-01-20 21:56:24 | 2026-05-12 12:08:50 | oracle | Vulnerability in the Oracle Java SE, Oracle GraalVM… | Details |
| CVE-2026-21925 | 2026-01-20 21:56:21 | 2026-05-12 12:08:47 | oracle | Vulnerability in the Oracle Java SE, Oracle GraalVM… | Details |
| CVE-2025-69421 | 2026-01-27 16:01:26 | 2026-05-12 12:08:44 | openssl | Issue summary: Processing a malformed PKCS#12 file can… | Details |
| CVE-2025-69420 | 2026-01-27 16:01:25 | 2026-05-12 12:08:43 | openssl | Issue summary: A type confusion vulnerability exists in… | Details |
| CVE-2025-69419 | 2026-01-27 16:01:24 | 2026-05-12 12:08:41 | openssl | Issue summary: Calling PKCS12_get_friendlyname() function on a maliciously crafted… | Details |
| CVE-2025-69418 | 2026-01-27 16:01:23 | 2026-05-12 12:08:40 | openssl | Issue summary: When using the low-level OCB API… | Details |
| CVE-2025-68160 | 2026-01-27 16:01:23 | 2026-05-12 12:08:39 | openssl | Issue summary: Writing large, newline-free data into a… | Details |
| CVE-2025-15549 | 2026-01-29 19:41:36 | 2026-05-12 11:08:47 | VulnCheck | FluentCMS 2026 contains a stored cross-site scripting vulnerability… | Details |
| CVE-2025-40805 | 2026-01-13 09:44:03 | 2026-05-12 08:20:44 | siemens | Affected devices do not properly enforce user authentication… | Details |
| CVE-2026-22920 | 2026-01-15 13:09:04 | 2026-05-12 07:30:49 | SICK AG | This CVE ID has been rejected or withdrawn… | Details |
| CVE-2025-49335 | 2026-01-07 14:12:43 | 2026-05-12 01:07:58 | Patchstack | Server-Side Request Forgery (SSRF) vulnerability in minnur External… | Details |
| CVE-2026-23039 | 2026-01-31 11:42:33 | 2026-05-11 21:58:49 | Linux | In the Linux kernel, the following vulnerability has… | Details |
| CVE-2026-23036 | 2026-01-31 11:42:30 | 2026-05-11 21:58:45 | Linux | In the Linux kernel, the following vulnerability has… | Details |
| CVE-2026-23035 | 2026-01-31 11:42:29 | 2026-05-11 21:58:44 | Linux | In the Linux kernel, the following vulnerability has… | Details |
| CVE-2026-23034 | 2026-01-31 11:42:29 | 2026-05-11 21:58:43 | Linux | In the Linux kernel, the following vulnerability has… | Details |
| CVE-2026-23029 | 2026-01-31 11:42:07 | 2026-05-11 21:58:37 | Linux | In the Linux kernel, the following vulnerability has… | Details |
| CVE-2026-23028 | 2026-01-31 11:42:06 | 2026-05-11 21:58:36 | Linux | In the Linux kernel, the following vulnerability has… | Details |
| CVE-2026-23027 | 2026-01-31 11:42:06 | 2026-05-11 21:58:35 | Linux | In the Linux kernel, the following vulnerability has… | Details |
| CVE-2026-23024 | 2026-01-31 11:39:07 | 2026-05-11 21:58:31 | Linux | In the Linux kernel, the following vulnerability has… | Details |
| CVE-2026-23023 | 2026-01-31 11:39:06 | 2026-05-11 21:58:30 | Linux | In the Linux kernel, the following vulnerability has… | Details |
| CVE-2026-23022 | 2026-01-31 11:39:05 | 2026-05-11 21:58:29 | Linux | In the Linux kernel, the following vulnerability has… | Details |
| CVE-2026-23017 | 2026-01-31 11:39:01 | 2026-05-11 21:58:23 | Linux | In the Linux kernel, the following vulnerability has… | Details |
| CVE-2026-23016 | 2026-01-31 11:38:59 | 2026-05-11 21:58:22 | Linux | In the Linux kernel, the following vulnerability has… | Details |
| CVE-2026-23015 | 2026-01-31 11:38:57 | 2026-05-11 21:58:21 | Linux | In the Linux kernel, the following vulnerability has… | Details |
| CVE-2026-23013 | 2026-01-25 14:36:26 | 2026-05-11 21:58:18 | Linux | In the Linux kernel, the following vulnerability has… | Details |
| CVE-2026-23012 | 2026-01-25 14:36:25 | 2026-05-11 21:58:17 | Linux | In the Linux kernel, the following vulnerability has… | Details |
| CVE-2026-23009 | 2026-01-25 14:36:22 | 2026-05-11 21:58:14 | Linux | In the Linux kernel, the following vulnerability has… | Details |
| CVE-2026-23008 | 2026-01-25 14:36:21 | 2026-05-11 21:58:13 | Linux | In the Linux kernel, the following vulnerability has… | Details |
| CVE-2026-23007 | 2026-01-25 14:36:20 | 2026-05-11 21:58:12 | Linux | In the Linux kernel, the following vulnerability has… | Details |
| CVE-2026-23006 | 2026-01-25 14:36:19 | 2026-05-11 21:58:10 | Linux | In the Linux kernel, the following vulnerability has… | Details |
| CVE-2026-23004 | 2026-01-25 14:36:18 | 2026-05-11 21:58:08 | Linux | In the Linux kernel, the following vulnerability has… | Details |
| CVE-2026-23002 | 2026-01-25 14:36:16 | 2026-05-11 21:58:06 | Linux | In the Linux kernel, the following vulnerability has… | Details |
| CVE-2026-23000 | 2026-01-25 14:36:14 | 2026-05-11 21:58:04 | Linux | In the Linux kernel, the following vulnerability has… | Details |
| CVE-2026-22996 | 2026-01-25 14:36:11 | 2026-05-11 21:57:59 | Linux | In the Linux kernel, the following vulnerability has… | Details |
| CVE-2026-22995 | 2026-01-23 15:24:15 | 2026-05-11 21:57:58 | Linux | In the Linux kernel, the following vulnerability has… | Details |
| CVE-2026-22993 | 2026-01-23 15:24:13 | 2026-05-11 21:57:55 | Linux | In the Linux kernel, the following vulnerability has… | Details |
| CVE-2026-22989 | 2026-01-23 15:24:10 | 2026-05-11 21:57:50 | Linux | In the Linux kernel, the following vulnerability has… | Details |
| CVE-2026-22988 | 2026-01-23 15:24:09 | 2026-05-11 21:57:49 | Linux | In the Linux kernel, the following vulnerability has… | Details |
| CVE-2026-22987 | 2026-01-23 15:24:08 | 2026-05-11 21:57:48 | Linux | In the Linux kernel, the following vulnerability has… | Details |
| CVE-2026-22986 | 2026-01-23 15:24:07 | 2026-05-11 21:57:47 | Linux | In the Linux kernel, the following vulnerability has… | Details |
| CVE-2026-22985 | 2026-01-23 15:24:07 | 2026-05-11 21:57:46 | Linux | In the Linux kernel, the following vulnerability has… | Details |
| CVE-2026-22983 | 2026-01-23 15:24:05 | 2026-05-11 21:57:43 | Linux | In the Linux kernel, the following vulnerability has… | Details |
| CVE-2026-22981 | 2026-01-23 15:24:03 | 2026-05-11 21:57:41 | Linux | In the Linux kernel, the following vulnerability has… | Details |
| CVE-2026-22978 | 2026-01-23 15:24:00 | 2026-05-11 21:57:37 | Linux | In the Linux kernel, the following vulnerability has… | Details |
| CVE-2025-71187 | 2026-01-31 11:41:58 | 2026-05-11 21:56:20 | Linux | In the Linux kernel, the following vulnerability has… | Details |
| CVE-2025-71184 | 2026-01-31 11:38:57 | 2026-05-11 21:56:17 | Linux | In the Linux kernel, the following vulnerability has… | Details |
| CVE-2025-71181 | 2026-01-31 11:38:54 | 2026-05-11 21:56:13 | Linux | In the Linux kernel, the following vulnerability has… | Details |
| CVE-2025-71180 | 2026-01-31 11:38:52 | 2026-05-11 21:56:12 | Linux | In the Linux kernel, the following vulnerability has… | Details |
| CVE-2025-71160 | 2026-01-23 15:23:58 | 2026-05-11 21:56:07 | Linux | In the Linux kernel, the following vulnerability has… | Details |
| CVE-2025-71159 | 2026-01-23 15:23:57 | 2026-05-11 21:56:06 | Linux | In the Linux kernel, the following vulnerability has… | Details |
| CVE-2025-71158 | 2026-01-23 15:23:57 | 2026-05-11 21:56:05 | Linux | In the Linux kernel, the following vulnerability has… | Details |
| CVE-2025-71157 | 2026-01-23 14:25:56 | 2026-05-11 21:56:04 | Linux | In the Linux kernel, the following vulnerability has… | Details |
| CVE-2025-71156 | 2026-01-23 14:25:55 | 2026-05-11 21:56:02 | Linux | In the Linux kernel, the following vulnerability has… | Details |
| CVE-2025-71152 | 2026-01-23 14:25:52 | 2026-05-11 21:55:58 | Linux | In the Linux kernel, the following vulnerability has… | Details |
| CVE-2025-71148 | 2026-01-23 14:15:14 | 2026-05-11 21:55:54 | Linux | In the Linux kernel, the following vulnerability has… | Details |
| CVE-2025-71143 | 2026-01-14 15:07:55 | 2026-05-11 21:55:48 | Linux | In the Linux kernel, the following vulnerability has… | Details |
| CVE-2025-71142 | 2026-01-14 15:07:55 | 2026-05-11 21:55:47 | Linux | In the Linux kernel, the following vulnerability has… | Details |
| CVE-2025-71139 | 2026-01-14 15:07:52 | 2026-05-11 21:55:43 | Linux | In the Linux kernel, the following vulnerability has… | Details |
| CVE-2025-71138 | 2026-01-14 15:07:51 | 2026-05-11 21:55:42 | Linux | In the Linux kernel, the following vulnerability has… | Details |
| CVE-2025-71137 | 2026-01-14 15:07:51 | 2026-05-11 21:55:41 | Linux | In the Linux kernel, the following vulnerability has… | Details |
| CVE-2025-71136 | 2026-01-14 15:07:50 | 2026-05-11 21:55:40 | Linux | In the Linux kernel, the following vulnerability has… | Details |
| CVE-2025-71134 | 2026-01-14 15:07:49 | 2026-05-11 21:55:38 | Linux | In the Linux kernel, the following vulnerability has… | Details |
| CVE-2025-71130 | 2026-01-14 15:07:46 | 2026-05-11 21:55:33 | Linux | In the Linux kernel, the following vulnerability has… | Details |
| CVE-2025-71129 | 2026-01-14 15:07:45 | 2026-05-11 21:55:32 | Linux | In the Linux kernel, the following vulnerability has… | Details |
| CVE-2025-71128 | 2026-01-14 15:07:44 | 2026-05-11 21:55:31 | Linux | In the Linux kernel, the following vulnerability has… | Details |
| CVE-2025-71124 | 2026-01-14 15:06:09 | 2026-05-11 21:55:26 | Linux | In the Linux kernel, the following vulnerability has… | Details |
| CVE-2025-71122 | 2026-01-14 15:06:08 | 2026-05-11 21:55:23 | Linux | In the Linux kernel, the following vulnerability has… | Details |
| CVE-2025-71117 | 2026-01-14 15:06:05 | 2026-05-11 21:55:11 | Linux | In the Linux kernel, the following vulnerability has… | Details |
| CVE-2025-71115 | 2026-01-14 15:06:02 | 2026-05-11 21:55:09 | Linux | In the Linux kernel, the following vulnerability has… | Details |
| CVE-2025-71110 | 2026-01-14 15:05:57 | 2026-05-11 21:55:00 | Linux | In the Linux kernel, the following vulnerability has… | Details |
| CVE-2025-71109 | 2026-01-14 15:05:57 | 2026-05-11 21:54:59 | Linux | In the Linux kernel, the following vulnerability has… | Details |
| CVE-2025-71106 | 2026-01-14 15:05:55 | 2026-05-11 21:54:56 | Linux | In the Linux kernel, the following vulnerability has… | Details |
| CVE-2025-71105 | 2026-01-14 15:05:54 | 2026-05-11 21:54:54 | Linux | In the Linux kernel, the following vulnerability has… | Details |
| CVE-2025-71103 | 2026-01-14 15:05:53 | 2026-05-11 21:54:48 | Linux | In the Linux kernel, the following vulnerability has… | Details |
| CVE-2025-71102 | 2026-01-14 15:05:52 | 2026-05-11 21:54:47 | Linux | In the Linux kernel, the following vulnerability has… | Details |
| CVE-2025-71101 | 2026-01-13 15:34:59 | 2026-05-11 21:54:45 | Linux | In the Linux kernel, the following vulnerability has… | Details |
| CVE-2025-71100 | 2026-01-13 15:34:59 | 2026-05-11 21:54:44 | Linux | In the Linux kernel, the following vulnerability has… | Details |
| CVE-2025-71099 | 2026-01-13 15:34:58 | 2026-05-11 21:54:43 | Linux | In the Linux kernel, the following vulnerability has… | Details |
| CVE-2025-71092 | 2026-01-13 15:34:53 | 2026-05-11 21:54:35 | Linux | In the Linux kernel, the following vulnerability has… | Details |
| CVE-2025-71090 | 2026-01-13 15:34:51 | 2026-05-11 21:54:33 | Linux | In the Linux kernel, the following vulnerability has… | Details |
| CVE-2025-71081 | 2026-01-13 15:34:45 | 2026-05-11 21:54:22 | Linux | In the Linux kernel, the following vulnerability has… | Details |
| CVE-2025-71080 | 2026-01-13 15:34:44 | 2026-05-11 21:54:21 | Linux | In the Linux kernel, the following vulnerability has… | Details |
| CVE-2025-71078 | 2026-01-13 15:34:43 | 2026-05-11 21:54:18 | Linux | In the Linux kernel, the following vulnerability has… | Details |
| CVE-2025-71074 | 2026-01-13 15:31:27 | 2026-05-11 21:54:14 | Linux | In the Linux kernel, the following vulnerability has… | Details |
| CVE-2025-71073 | 2026-01-13 15:31:26 | 2026-05-11 21:54:13 | Linux | In the Linux kernel, the following vulnerability has… | Details |
| CVE-2025-71072 | 2026-01-13 15:31:26 | 2026-05-11 21:54:11 | Linux | In the Linux kernel, the following vulnerability has… | Details |
| CVE-2025-71069 | 2026-01-13 15:31:23 | 2026-05-11 21:54:08 | Linux | In the Linux kernel, the following vulnerability has… | Details |
| CVE-2025-71067 | 2026-01-13 15:31:22 | 2026-05-11 21:54:05 | Linux | In the Linux kernel, the following vulnerability has… | Details |
| CVE-2025-71065 | 2026-01-13 15:31:21 | 2026-05-11 21:54:03 | Linux | In the Linux kernel, the following vulnerability has… | Details |
| CVE-2025-68822 | 2026-01-13 15:29:24 | 2026-05-11 21:53:59 | Linux | In the Linux kernel, the following vulnerability has… | Details |
| CVE-2025-68819 | 2026-01-13 15:29:22 | 2026-05-11 21:53:56 | Linux | In the Linux kernel, the following vulnerability has… | Details |
| CVE-2025-68810 | 2026-01-13 15:29:16 | 2026-05-11 21:53:46 | Linux | In the Linux kernel, the following vulnerability has… | Details |
| CVE-2025-68809 | 2026-01-13 15:29:15 | 2026-05-11 21:53:45 | Linux | In the Linux kernel, the following vulnerability has… | Details |
| CVE-2025-68808 | 2026-01-13 15:29:15 | 2026-05-11 21:53:44 | Linux | In the Linux kernel, the following vulnerability has… | Details |
| CVE-2025-68807 | 2026-01-13 15:29:14 | 2026-05-11 21:53:43 | Linux | In the Linux kernel, the following vulnerability has… | Details |
| CVE-2025-68805 | 2026-01-13 15:29:13 | 2026-05-11 21:53:40 | Linux | In the Linux kernel, the following vulnerability has… | Details |
| CVE-2025-68804 | 2026-01-13 15:29:12 | 2026-05-11 21:53:39 | Linux | In the Linux kernel, the following vulnerability has… | Details |
| CVE-2025-68802 | 2026-01-13 15:29:11 | 2026-05-11 21:53:37 | Linux | In the Linux kernel, the following vulnerability has… | Details |
| CVE-2025-68801 | 2026-01-13 15:29:10 | 2026-05-11 21:53:36 | Linux | In the Linux kernel, the following vulnerability has… | Details |
| CVE-2025-68799 | 2026-01-13 15:29:09 | 2026-05-11 21:53:33 | Linux | In the Linux kernel, the following vulnerability has… | Details |
| CVE-2025-68797 | 2026-01-13 15:29:07 | 2026-05-11 21:53:31 | Linux | In the Linux kernel, the following vulnerability has… | Details |
| CVE-2025-68796 | 2026-01-13 15:29:06 | 2026-05-11 21:53:30 | Linux | In the Linux kernel, the following vulnerability has… | Details |
| CVE-2025-68794 | 2026-01-13 15:29:05 | 2026-05-11 21:53:27 | Linux | In the Linux kernel, the following vulnerability has… | Details |
| CVE-2025-68793 | 2026-01-13 15:29:04 | 2026-05-11 21:53:26 | Linux | In the Linux kernel, the following vulnerability has… | Details |
| CVE-2025-68792 | 2026-01-13 15:29:04 | 2026-05-11 21:53:25 | Linux | In the Linux kernel, the following vulnerability has… | Details |
| CVE-2025-68791 | 2026-01-13 15:29:03 | 2026-05-11 21:53:24 | Linux | In the Linux kernel, the following vulnerability has… | Details |
| CVE-2025-68790 | 2026-01-13 15:29:02 | 2026-05-11 21:53:23 | Linux | In the Linux kernel, the following vulnerability has… | Details |
| CVE-2025-68786 | 2026-01-13 15:28:59 | 2026-05-11 21:53:19 | Linux | In the Linux kernel, the following vulnerability has… | Details |
| CVE-2025-68784 | 2026-01-13 15:28:58 | 2026-05-11 21:53:17 | Linux | In the Linux kernel, the following vulnerability has… | Details |
| CVE-2025-68783 | 2026-01-13 15:28:57 | 2026-05-11 21:53:16 | Linux | In the Linux kernel, the following vulnerability has… | Details |
| CVE-2025-68781 | 2026-01-13 15:28:56 | 2026-05-11 21:53:13 | Linux | In the Linux kernel, the following vulnerability has… | Details |
| CVE-2025-68780 | 2026-01-13 15:28:55 | 2026-05-11 21:53:12 | Linux | In the Linux kernel, the following vulnerability has… | Details |
| CVE-2025-68779 | 2026-01-13 15:28:54 | 2026-05-11 21:53:11 | Linux | In the Linux kernel, the following vulnerability has… | Details |
| CVE-2025-68778 | 2026-01-13 15:28:54 | 2026-05-11 21:53:10 | Linux | In the Linux kernel, the following vulnerability has… | Details |
| CVE-2025-68777 | 2026-01-13 15:28:53 | 2026-05-11 21:53:09 | Linux | In the Linux kernel, the following vulnerability has… | Details |
| CVE-2025-68775 | 2026-01-13 15:28:52 | 2026-05-11 21:53:06 | Linux | In the Linux kernel, the following vulnerability has… | Details |
| CVE-2025-68774 | 2026-01-13 15:28:51 | 2026-05-11 21:53:05 | Linux | In the Linux kernel, the following vulnerability has… | Details |
| CVE-2025-68772 | 2026-01-13 15:28:49 | 2026-05-11 21:53:03 | Linux | In the Linux kernel, the following vulnerability has… | Details |
| CVE-2025-68771 | 2026-01-13 15:28:49 | 2026-05-11 21:53:02 | Linux | In the Linux kernel, the following vulnerability has… | Details |
| CVE-2025-68770 | 2026-01-13 15:28:48 | 2026-05-11 21:53:00 | Linux | In the Linux kernel, the following vulnerability has… | Details |
| CVE-2025-68767 | 2026-01-13 15:28:46 | 2026-05-11 21:52:57 | Linux | In the Linux kernel, the following vulnerability has… | Details |
| CVE-2025-68766 | 2026-01-05 09:44:13 | 2026-05-11 21:52:56 | Linux | In the Linux kernel, the following vulnerability has… | Details |
| CVE-2025-68765 | 2026-01-05 09:44:13 | 2026-05-11 21:52:55 | Linux | In the Linux kernel, the following vulnerability has… | Details |
| CVE-2025-68763 | 2026-01-05 09:32:35 | 2026-05-11 21:52:52 | Linux | In the Linux kernel, the following vulnerability has… | Details |
| CVE-2025-68762 | 2026-01-05 09:32:34 | 2026-05-11 21:52:51 | Linux | In the Linux kernel, the following vulnerability has… | Details |
| CVE-2025-68761 | 2026-01-05 09:32:33 | 2026-05-11 21:52:50 | Linux | In the Linux kernel, the following vulnerability has… | Details |
| CVE-2025-68760 | 2026-01-05 09:32:32 | 2026-05-11 21:52:49 | Linux | In the Linux kernel, the following vulnerability has… | Details |
| CVE-2025-68759 | 2026-01-05 09:32:32 | 2026-05-11 21:52:48 | Linux | In the Linux kernel, the following vulnerability has… | Details |
| CVE-2025-68758 | 2026-01-05 09:32:31 | 2026-05-11 21:52:46 | Linux | In the Linux kernel, the following vulnerability has… | Details |
| CVE-2025-68757 | 2026-01-05 09:32:30 | 2026-05-11 21:52:45 | Linux | In the Linux kernel, the following vulnerability has… | Details |
| CVE-2025-68756 | 2026-01-05 09:32:29 | 2026-05-11 21:52:44 | Linux | In the Linux kernel, the following vulnerability has… | Details |
| CVE-2025-68755 | 2026-01-05 09:32:29 | 2026-05-11 21:52:43 | Linux | In the Linux kernel, the following vulnerability has… | Details |
| CVE-2025-68754 | 2026-01-05 09:32:27 | 2026-05-11 21:52:42 | Linux | In the Linux kernel, the following vulnerability has… | Details |
| CVE-2025-68753 | 2026-01-05 09:32:27 | 2026-05-11 21:52:41 | Linux | In the Linux kernel, the following vulnerability has… | Details |
| CVE-2025-68752 | 2026-01-05 09:32:26 | 2026-05-11 21:52:39 | Linux | In the Linux kernel, the following vulnerability has… | Details |
| CVE-2025-68751 | 2026-01-05 09:32:25 | 2026-05-11 21:52:38 | Linux | In the Linux kernel, the following vulnerability has… | Details |
| CVE-2026-0674 | 2026-01-08 09:17:55 | 2026-05-11 12:55:14 | Patchstack | Missing Authorization vulnerability in Campaign Monitor Campaign Monitor… | Details |
| CVE-2025-37166 | 2026-01-13 17:42:09 | 2026-05-10 13:24:33 | hpe | A vulnerability affecting HPE Networking Instant On Access… | Details |
| CVE-2025-68900 | 2026-01-22 16:52:12 | 2026-05-08 12:14:13 | Patchstack | Improper Neutralization of Input During Web Page Generation… | Details |
| CVE-2026-24806 | 2026-01-27 08:42:04 | 2026-05-06 17:01:25 | GovTech CSG | Improper Control of Generation of Code ('Code Injection')… | Details |
| CVE-2026-24807 | 2026-01-27 08:43:51 | 2026-05-06 16:58:44 | GovTech CSG | Improper Verification of Cryptographic Signature vulnerability in liuyueyi… | Details |
| CVE-2025-71149 | 2026-01-23 14:15:15 | 2026-05-02 06:18:09 | Linux | This CVE ID has been rejected or withdrawn… | Details |
| CVE-2026-24905 | 2026-01-29 21:29:24 | 2026-04-30 19:21:40 | GitHub_M | Inspektor Gadget is a set of tools and… | Details |
| CVE-2025-14017 | 2026-01-08 10:07:05 | 2026-04-30 03:56:00 | curl | When doing multi-threaded LDAPS transfers (LDAP over TLS)… | Details |
| CVE-2026-22583 | 2026-01-24 00:20:54 | 2026-04-29 19:25:53 | Salesforce | Improper Neutralization of Argument Delimiters in a Command… | Details |
| CVE-2026-22582 | 2026-01-24 00:19:26 | 2026-04-29 19:24:51 | Salesforce | Improper Neutralization of Argument Delimiters in a Command… | Details |
| CVE-2026-22585 | 2026-01-24 00:15:02 | 2026-04-29 19:22:03 | Salesforce | Use of a Broken or Risky Cryptographic Algorithm… | Details |
| CVE-2026-22586 | 2026-01-24 00:17:08 | 2026-04-29 19:19:33 | Salesforce | Hard-coded Cryptographic Key vulnerability in Salesforce Marketing Cloud… | Details |
| CVE-2026-0919 | 2026-01-27 17:52:39 | 2026-04-29 16:14:38 | TPLink | The HTTP parser of Tapo C210 v3, C220… | Details |
| CVE-2025-68864 | 2026-01-22 16:52:10 | 2026-04-29 14:32:38 | Patchstack | Improper Neutralization of Input During Web Page Generation… | Details |
| CVE-2026-22486 | 2026-01-08 16:46:02 | 2026-04-29 14:32:17 | Patchstack | Missing Authorization vulnerability in Re Gallery allows Exploiting… | Details |
| CVE-2026-0861 | 2026-01-14 21:01:11 | 2026-04-29 13:28:15 | glibc | Passing too large an alignment to the memalign… | Details |
| CVE-2025-14359 | 2026-01-08 09:17:37 | 2026-04-29 11:37:56 | Patchstack | Improper Control of Filename for Include/Require Statement in… | Details |
| CVE-2025-68029 | 2026-01-05 10:37:18 | 2026-04-29 09:56:32 | Patchstack | Insertion of Sensitive Information Into Sent Data vulnerability… | Details |
| CVE-2025-68850 | 2026-01-05 10:43:35 | 2026-04-29 09:51:56 | Patchstack | Missing Authorization vulnerability in codepeople Sell Downloads sell-downloads… | Details |
| CVE-2025-67931 | 2026-01-08 09:17:48 | 2026-04-29 09:51:56 | Patchstack | Insertion of Sensitive Information Into Sent Data vulnerability… | Details |
| CVE-2025-68016 | 2026-01-22 16:52:03 | 2026-04-29 09:51:56 | Patchstack | Missing Authorization vulnerability in Onepay Sri Lanka onepay… | Details |
| CVE-2025-46434 | 2026-01-07 12:35:32 | 2026-04-29 09:51:55 | Patchstack | Missing Authorization vulnerability in POSIMYTH Innovation The Plus… | Details |
| CVE-2025-67956 | 2026-01-22 16:51:56 | 2026-04-29 09:51:55 | Patchstack | Missing Authorization vulnerability in wpeverest User Registration user-registration… | Details |
| CVE-2026-0918 | 2026-01-27 17:52:04 | 2026-04-29 00:05:42 | TPLink | The Tapo C100 v5, C220 v1 and C520WS… | Details |
| CVE-2025-69361 | 2026-01-06 16:36:42 | 2026-04-28 20:55:11 | Patchstack | Missing Authorization vulnerability in PublishPress Post Expirator post-expirator… | Details |
| CVE-2025-69360 | 2026-01-06 16:36:41 | 2026-04-28 20:55:02 | Patchstack | Improper Neutralization of Input During Web Page Generation… | Details |
| CVE-2025-69357 | 2026-01-06 16:36:41 | 2026-04-28 20:54:53 | Patchstack | Improper Neutralization of Input During Web Page Generation… | Details |
| CVE-2025-69356 | 2026-01-06 16:36:41 | 2026-04-28 20:54:43 | Patchstack | Improper Control of Filename for Include/Require Statement in… | Details |
| CVE-2025-69342 | 2026-01-06 16:36:39 | 2026-04-28 20:54:24 | Patchstack | Improper Control of Filename for Include/Require Statement in… | Details |
| CVE-2025-69336 | 2026-01-06 16:36:38 | 2026-04-28 20:53:47 | Patchstack | Missing Authorization vulnerability in bdthemes Ultimate Store Kit… | Details |
| CVE-2025-69334 | 2026-01-06 16:36:38 | 2026-04-28 20:53:36 | Patchstack | Improper Neutralization of Input During Web Page Generation… | Details |
| CVE-2025-69331 | 2026-01-06 16:36:38 | 2026-04-28 20:53:28 | Patchstack | Missing Authorization vulnerability in Jeroen Schmit Theater for… | Details |
| CVE-2025-69321 | 2026-01-22 16:52:33 | 2026-04-28 20:51:57 | Patchstack | Improper Neutralization of Input During Web Page Generation… | Details |
| CVE-2025-69320 | 2026-01-22 16:52:33 | 2026-04-28 20:51:30 | Patchstack | Improper Neutralization of Input During Web Page Generation… | Details |
| CVE-2025-69319 | 2026-01-22 16:52:33 | 2026-04-28 20:49:04 | Patchstack | Improper Control of Generation of Code ('Code Injection')… | Details |
| CVE-2025-69318 | 2026-01-22 16:52:33 | 2026-04-28 20:48:54 | Patchstack | Improper Neutralization of Input During Web Page Generation… | Details |
| CVE-2025-69315 | 2026-01-22 16:52:32 | 2026-04-28 20:48:45 | Patchstack | Missing Authorization vulnerability in NSquared Simply Schedule Appointments… | Details |
| CVE-2025-69314 | 2026-01-22 16:52:32 | 2026-04-28 20:48:34 | Patchstack | Improper Control of Filename for Include/Require Statement in… | Details |
| CVE-2025-69313 | 2026-01-22 16:52:32 | 2026-04-28 20:48:25 | Patchstack | Missing Authorization vulnerability in WPXPO PostX ultimate-post allows… | Details |
| CVE-2025-69312 | 2026-01-22 16:52:31 | 2026-04-28 20:48:14 | Patchstack | Unrestricted Upload of File with Dangerous Type vulnerability… | Details |
| CVE-2025-69311 | 2026-01-22 16:52:31 | 2026-04-28 20:48:04 | Patchstack | Missing Authorization vulnerability in Broadstreet Broadstreet Ads broadstreet… | Details |
| CVE-2025-69293 | 2026-01-22 16:52:31 | 2026-04-28 20:45:32 | Patchstack | Incorrect Privilege Assignment vulnerability in e-plugins Final User… | Details |
| CVE-2025-69292 | 2026-01-22 16:52:30 | 2026-04-28 20:45:22 | Patchstack | Incorrect Privilege Assignment vulnerability in e-plugins WP Membership… | Details |
| CVE-2025-69193 | 2026-01-22 16:52:30 | 2026-04-28 20:45:12 | Patchstack | Missing Authorization vulnerability in e-plugins WP Membership wp-membership… | Details |
| CVE-2025-69192 | 2026-01-22 16:52:30 | 2026-04-28 20:45:02 | Patchstack | Missing Authorization vulnerability in e-plugins Real Estate Pro… | Details |
| CVE-2025-69191 | 2026-01-22 16:52:30 | 2026-04-28 20:44:52 | Patchstack | Missing Authorization vulnerability in e-plugins ListingHub listinghub allows… | Details |
| CVE-2025-69190 | 2026-01-22 16:52:30 | 2026-04-28 20:44:42 | Patchstack | Missing Authorization vulnerability in e-plugins Listihub listihub allows… | Details |
| CVE-2025-69188 | 2026-01-22 16:52:29 | 2026-04-28 20:44:31 | Patchstack | Missing Authorization vulnerability in e-plugins fitness-trainer fitness-trainer allows… | Details |
| CVE-2025-69187 | 2026-01-22 16:52:29 | 2026-04-28 20:44:22 | Patchstack | Missing Authorization vulnerability in e-plugins Final User final-user… | Details |
| CVE-2025-69186 | 2026-01-22 16:52:29 | 2026-04-28 20:44:12 | Patchstack | Missing Authorization vulnerability in e-plugins Hospital Doctor Directory… | Details |
| CVE-2025-69185 | 2026-01-22 16:52:29 | 2026-04-28 20:44:02 | Patchstack | Missing Authorization vulnerability in e-plugins Hotel Listing hotel-listing… | Details |
| CVE-2025-69184 | 2026-01-22 16:52:29 | 2026-04-28 20:43:52 | Patchstack | Missing Authorization vulnerability in e-plugins Institutions Directory institutions-directory… | Details |
| CVE-2025-69183 | 2026-01-22 16:52:28 | 2026-04-28 20:43:42 | Patchstack | Incorrect Privilege Assignment vulnerability in e-plugins Hospital Doctor… | Details |
| CVE-2025-69182 | 2026-01-22 16:52:28 | 2026-04-28 20:43:30 | Patchstack | Incorrect Privilege Assignment vulnerability in e-plugins Institutions Directory… | Details |
| CVE-2025-69181 | 2026-01-22 16:52:28 | 2026-04-28 20:43:20 | Patchstack | Missing Authorization vulnerability in e-plugins Lawyer Directory lawyer-directory… | Details |
| CVE-2025-69102 | 2026-01-22 16:52:27 | 2026-04-28 20:43:09 | Patchstack | Improper Neutralization of Input During Web Page Generation… | Details |
| CVE-2025-69101 | 2026-01-22 16:52:27 | 2026-04-28 20:42:58 | Patchstack | Authentication Bypass Using an Alternate Path or Channel… | Details |
| CVE-2025-69100 | 2026-01-22 16:52:27 | 2026-04-28 20:42:48 | Patchstack | Improper Control of Filename for Include/Require Statement in… | Details |
| CVE-2025-69099 | 2026-01-22 16:52:26 | 2026-04-28 20:42:37 | Patchstack | Deserialization of Untrusted Data vulnerability in fuelthemes North… | Details |
| CVE-2025-69079 | 2026-01-22 16:52:25 | 2026-04-28 20:41:27 | Patchstack | Deserialization of Untrusted Data vulnerability in ThemeREX Sound… | Details |
| CVE-2025-69078 | 2026-01-22 16:52:25 | 2026-04-28 20:41:16 | Patchstack | Improper Control of Filename for Include/Require Statement in… | Details |
| CVE-2025-69077 | 2026-01-22 16:52:25 | 2026-04-28 20:41:07 | Patchstack | Improper Control of Filename for Include/Require Statement in… | Details |
| CVE-2025-69076 | 2026-01-22 16:52:25 | 2026-04-28 20:40:55 | Patchstack | Improper Control of Filename for Include/Require Statement in… | Details |
| CVE-2025-69075 | 2026-01-22 16:52:25 | 2026-04-28 20:40:45 | Patchstack | Improper Control of Filename for Include/Require Statement in… | Details |
| CVE-2025-69073 | 2026-01-22 16:52:24 | 2026-04-28 20:39:41 | Patchstack | Improper Control of Filename for Include/Require Statement in… | Details |
| CVE-2025-69072 | 2026-01-22 16:52:24 | 2026-04-28 20:39:29 | Patchstack | Improper Control of Filename for Include/Require Statement in… | Details |
| CVE-2025-69071 | 2026-01-22 16:52:24 | 2026-04-28 20:39:20 | Patchstack | Improper Control of Filename for Include/Require Statement in… | Details |
| CVE-2025-69070 | 2026-01-22 16:52:23 | 2026-04-28 20:39:09 | Patchstack | Improper Control of Filename for Include/Require Statement in… | Details |
| CVE-2025-69068 | 2026-01-22 16:52:23 | 2026-04-28 20:39:00 | Patchstack | Improper Control of Filename for Include/Require Statement in… | Details |
| CVE-2025-69067 | 2026-01-22 16:52:23 | 2026-04-28 20:38:50 | Patchstack | Improper Control of Filename for Include/Require Statement in… | Details |
| CVE-2025-69066 | 2026-01-22 16:52:23 | 2026-04-28 20:38:40 | Patchstack | Improper Control of Filename for Include/Require Statement in… | Details |
| CVE-2025-69065 | 2026-01-22 16:52:23 | 2026-04-28 20:38:30 | Patchstack | Improper Control of Filename for Include/Require Statement in… | Details |
| CVE-2025-69064 | 2026-01-22 16:52:22 | 2026-04-28 20:38:21 | Patchstack | Improper Control of Filename for Include/Require Statement in… | Details |
| CVE-2025-69062 | 2026-01-22 16:52:22 | 2026-04-28 20:38:10 | Patchstack | Improper Control of Filename for Include/Require Statement in… | Details |
| CVE-2025-69061 | 2026-01-22 16:52:22 | 2026-04-28 20:38:00 | Patchstack | Improper Control of Filename for Include/Require Statement in… | Details |
| CVE-2025-69060 | 2026-01-22 16:52:22 | 2026-04-28 20:37:49 | Patchstack | Improper Control of Filename for Include/Require Statement in… | Details |
| CVE-2025-69059 | 2026-01-22 16:52:22 | 2026-04-28 20:37:40 | Patchstack | Improper Control of Filename for Include/Require Statement in… | Details |
| CVE-2025-69058 | 2026-01-22 16:52:21 | 2026-04-28 20:37:29 | Patchstack | Improper Control of Filename for Include/Require Statement in… | Details |
| CVE-2025-69057 | 2026-01-22 16:52:21 | 2026-04-28 20:37:19 | Patchstack | Improper Control of Filename for Include/Require Statement in… | Details |
| CVE-2025-69056 | 2026-01-22 16:52:21 | 2026-04-28 20:37:09 | Patchstack | Improper Neutralization of Input During Web Page Generation… | Details |
| CVE-2025-69055 | 2026-01-22 16:52:21 | 2026-04-28 20:36:59 | Patchstack | Improper Limitation of a Pathname to a Restricted… | Details |
| CVE-2025-69054 | 2026-01-22 16:52:20 | 2026-04-28 20:36:49 | Patchstack | Improper Neutralization of Input During Web Page Generation… | Details |
| CVE-2025-69053 | 2026-01-22 16:52:20 | 2026-04-28 20:36:39 | Patchstack | Improper Neutralization of Input During Web Page Generation… | Details |
| CVE-2025-69052 | 2026-01-22 16:52:20 | 2026-04-28 20:36:29 | Patchstack | Missing Authorization vulnerability in FmeAddons Registration & Login… | Details |
| CVE-2025-69051 | 2026-01-22 16:52:20 | 2026-04-28 20:36:18 | Patchstack | Improper Neutralization of Input During Web Page Generation… | Details |
| CVE-2025-69050 | 2026-01-22 16:52:20 | 2026-04-28 20:36:08 | Patchstack | Improper Control of Filename for Include/Require Statement in… | Details |
| CVE-2025-69049 | 2026-01-22 16:52:19 | 2026-04-28 20:35:57 | Patchstack | Improper Control of Filename for Include/Require Statement in… | Details |
| CVE-2025-69048 | 2026-01-22 16:52:19 | 2026-04-28 20:35:48 | Patchstack | Improper Neutralization of Input During Web Page Generation… | Details |
| CVE-2025-69047 | 2026-01-22 16:52:19 | 2026-04-28 20:35:37 | Patchstack | Improper Control of Filename for Include/Require Statement in… | Details |
| CVE-2025-69046 | 2026-01-22 16:52:19 | 2026-04-28 20:35:28 | Patchstack | Improper Control of Filename for Include/Require Statement in… | Details |
| CVE-2025-69045 | 2026-01-22 16:52:19 | 2026-04-28 20:35:17 | Patchstack | Improper Neutralization of Special Elements used in an… | Details |
| CVE-2025-69044 | 2026-01-22 16:52:18 | 2026-04-28 20:35:07 | Patchstack | Improper Control of Filename for Include/Require Statement in… | Details |
| CVE-2025-69041 | 2026-01-22 16:52:18 | 2026-04-28 20:34:56 | Patchstack | Improper Control of Filename for Include/Require Statement in… | Details |
| CVE-2025-69038 | 2026-01-22 16:52:17 | 2026-04-28 20:34:46 | Patchstack | Improper Control of Filename for Include/Require Statement in… | Details |
| CVE-2025-69037 | 2026-01-22 16:52:17 | 2026-04-28 20:34:36 | Patchstack | Improper Control of Filename for Include/Require Statement in… | Details |
| CVE-2025-69036 | 2026-01-22 16:52:17 | 2026-04-28 20:34:26 | Patchstack | Deserialization of Untrusted Data vulnerability in strongholdthemes Tech… | Details |
| CVE-2025-69035 | 2026-01-22 16:52:16 | 2026-04-28 20:34:16 | Patchstack | Deserialization of Untrusted Data vulnerability in strongholdthemes Dental… | Details |
| CVE-2025-69005 | 2026-01-22 16:52:16 | 2026-04-28 20:31:46 | Patchstack | Improper Control of Filename for Include/Require Statement in… | Details |
| CVE-2025-69004 | 2026-01-22 16:52:16 | 2026-04-28 20:31:33 | Patchstack | Improper Control of Filename for Include/Require Statement in… | Details |
| CVE-2025-69003 | 2026-01-22 16:52:16 | 2026-04-28 20:31:21 | Patchstack | Improper Neutralization of Input During Web Page Generation… | Details |
| CVE-2025-69002 | 2026-01-22 16:52:16 | 2026-04-28 20:29:55 | Patchstack | Deserialization of Untrusted Data vulnerability in designthemes OneLife… | Details |
| CVE-2025-69001 | 2026-01-22 16:52:15 | 2026-04-28 20:29:45 | Patchstack | Improper Control of Generation of Code ('Code Injection')… | Details |
| CVE-2025-68986 | 2026-01-22 16:52:15 | 2026-04-28 20:13:10 | Patchstack | Unrestricted Upload of File with Dangerous Type vulnerability… | Details |
| CVE-2025-68913 | 2026-01-22 16:52:15 | 2026-04-28 20:08:56 | Patchstack | Improper Control of Filename for Include/Require Statement in… | Details |
| CVE-2025-68910 | 2026-01-22 16:52:14 | 2026-04-28 20:08:46 | Patchstack | Unrestricted Upload of File with Dangerous Type vulnerability… | Details |
| CVE-2025-68909 | 2026-01-22 16:52:14 | 2026-04-28 20:08:36 | Patchstack | Unrestricted Upload of File with Dangerous Type vulnerability… | Details |
| CVE-2025-68906 | 2026-01-22 16:52:13 | 2026-04-28 20:08:27 | Patchstack | Improper Neutralization of Input During Web Page Generation… | Details |
| CVE-2025-68905 | 2026-01-22 16:52:13 | 2026-04-28 20:08:18 | Patchstack | Improper Control of Filename for Include/Require Statement in… | Details |
| CVE-2025-68904 | 2026-01-22 16:52:13 | 2026-04-28 20:08:09 | Patchstack | Improper Neutralization of Input During Web Page Generation… | Details |
| CVE-2025-68903 | 2026-01-22 16:52:13 | 2026-04-28 20:08:00 | Patchstack | Deserialization of Untrusted Data vulnerability in AivahThemes Anona… | Details |
| CVE-2025-68899 | 2026-01-22 16:52:12 | 2026-04-28 20:07:42 | Patchstack | Deserialization of Untrusted Data vulnerability in designthemes Vivagh… | Details |
| CVE-2025-68898 | 2026-01-22 16:52:12 | 2026-04-28 20:07:32 | Patchstack | Improper Neutralization of Input During Web Page Generation… | Details |
| CVE-2025-68896 | 2026-01-22 16:52:11 | 2026-04-28 20:07:23 | Patchstack | Missing Authorization vulnerability in vrpr WDV One Page… | Details |
| CVE-2025-68894 | 2026-01-22 16:52:11 | 2026-04-28 20:07:04 | Patchstack | Improper Neutralization of Input During Web Page Generation… | Details |
| CVE-2025-68891 | 2026-01-08 09:17:54 | 2026-04-28 20:06:55 | Patchstack | Improper Neutralization of Input During Web Page Generation… | Details |
| CVE-2025-68889 | 2026-01-08 09:17:53 | 2026-04-28 20:06:47 | Patchstack | Improper Neutralization of Input During Web Page Generation… | Details |
| CVE-2025-68887 | 2026-01-08 09:17:53 | 2026-04-28 20:06:38 | Patchstack | Improper Neutralization of Input During Web Page Generation… | Details |
| CVE-2025-68884 | 2026-01-22 16:52:11 | 2026-04-28 20:06:29 | Patchstack | Improper Neutralization of Input During Web Page Generation… | Details |
| CVE-2025-68883 | 2026-01-22 16:52:11 | 2026-04-28 20:06:20 | Patchstack | Improper Neutralization of Input During Web Page Generation… | Details |
| CVE-2025-68881 | 2026-01-22 16:52:10 | 2026-04-28 20:06:11 | Patchstack | Improper Neutralization of Special Elements used in an… | Details |
| CVE-2025-68874 | 2026-01-08 09:17:52 | 2026-04-28 20:05:52 | Patchstack | Improper Neutralization of Input During Web Page Generation… | Details |
| CVE-2025-68873 | 2026-01-08 09:17:51 | 2026-04-28 20:05:43 | Patchstack | Improper Neutralization of Input During Web Page Generation… | Details |
| CVE-2025-68871 | 2026-01-22 16:52:10 | 2026-04-28 20:05:33 | Patchstack | Improper Neutralization of Input During Web Page Generation… | Details |
| CVE-2025-68869 | 2026-01-22 16:52:10 | 2026-04-28 20:05:24 | Patchstack | Incorrect Privilege Assignment vulnerability in LazyCoders LLC LazyTasks… | Details |
| CVE-2025-68867 | 2026-01-08 09:17:51 | 2026-04-28 20:05:15 | Patchstack | Improper Neutralization of Input During Web Page Generation… | Details |
| CVE-2025-68866 | 2026-01-22 16:52:10 | 2026-04-28 20:05:06 | Patchstack | Improper Neutralization of Input During Web Page Generation… | Details |
| CVE-2025-68859 | 2026-01-22 16:52:09 | 2026-04-28 20:04:38 | Patchstack | Improper Neutralization of Input During Web Page Generation… | Details |
| CVE-2025-68858 | 2026-01-22 16:52:09 | 2026-04-28 20:04:28 | Patchstack | Improper Neutralization of Input During Web Page Generation… | Details |
| CVE-2025-68857 | 2026-01-22 16:52:09 | 2026-04-28 20:04:19 | Patchstack | Improper Neutralization of Special Elements used in an… | Details |
| CVE-2025-68849 | 2026-01-22 16:52:09 | 2026-04-28 20:03:53 | Patchstack | Improper Neutralization of Input During Web Page Generation… | Details |
| CVE-2025-68839 | 2026-01-22 16:52:09 | 2026-04-28 20:02:31 | Patchstack | Improper Neutralization of Input During Web Page Generation… | Details |
| CVE-2025-68838 | 2026-01-22 16:52:08 | 2026-04-28 20:02:23 | Patchstack | Improper Neutralization of Input During Web Page Generation… | Details |
| CVE-2025-68835 | 2026-01-22 16:52:08 | 2026-04-28 20:02:13 | Patchstack | Improper Neutralization of Input During Web Page Generation… | Details |
| CVE-2025-68538 | 2026-01-22 16:52:08 | 2026-04-28 20:00:48 | Patchstack | Improper Neutralization of Input During Web Page Generation… | Details |
| CVE-2025-68520 | 2026-01-22 16:52:08 | 2026-04-28 20:00:11 | Patchstack | Improper Neutralization of Input During Web Page Generation… | Details |
| CVE-2025-68518 | 2026-01-22 16:52:07 | 2026-04-28 20:00:05 | Patchstack | Improper Neutralization of Input During Web Page Generation… | Details |
| CVE-2025-68510 | 2026-01-22 16:52:07 | 2026-04-28 19:59:53 | Patchstack | Improper Control of Filename for Include/Require Statement in… | Details |
| CVE-2025-68072 | 2026-01-22 16:52:06 | 2026-04-28 19:58:03 | Patchstack | Missing Authorization vulnerability in Merv Barrett Easy Property… | Details |
| CVE-2025-68047 | 2026-01-22 16:52:06 | 2026-04-28 19:56:58 | Patchstack | Deserialization of Untrusted Data vulnerability in Arraytics Eventin… | Details |
| CVE-2025-68046 | 2026-01-22 16:52:05 | 2026-04-28 19:56:49 | Patchstack | Exposure of Sensitive System Information to an Unauthorized… | Details |
| CVE-2025-68041 | 2026-01-22 16:52:05 | 2026-04-28 19:56:21 | Patchstack | Improper Neutralization of Input During Web Page Generation… | Details |
| CVE-2025-68035 | 2026-01-22 16:52:05 | 2026-04-28 19:56:09 | Patchstack | Insertion of Sensitive Information Into Sent Data vulnerability… | Details |
| CVE-2025-68030 | 2026-01-22 16:52:04 | 2026-04-28 19:55:49 | Patchstack | Server-Side Request Forgery (SSRF) vulnerability in WP Messiah… | Details |
| CVE-2025-68027 | 2026-01-22 16:52:04 | 2026-04-28 19:55:40 | Patchstack | Incorrect Privilege Assignment vulnerability in Themefic Hydra Booking… | Details |
| CVE-2025-68019 | 2026-01-22 16:52:04 | 2026-04-28 19:55:11 | Patchstack | Missing Authorization vulnerability in cleverplugins SEO Booster seo-booster… | Details |
| CVE-2025-68018 | 2026-01-22 16:52:03 | 2026-04-28 19:55:02 | Patchstack | Missing Authorization vulnerability in StackWC Order Listener for… | Details |
| CVE-2025-68015 | 2026-01-22 16:52:03 | 2026-04-28 19:54:52 | Patchstack | Improper Control of Generation of Code ('Code Injection')… | Details |
| CVE-2025-68012 | 2026-01-22 16:52:02 | 2026-04-28 19:54:42 | Patchstack | Improper Neutralization of Input During Web Page Generation… | Details |
| CVE-2025-68011 | 2026-01-22 16:52:02 | 2026-04-28 19:54:33 | Patchstack | Improper Neutralization of Input During Web Page Generation… | Details |
| CVE-2025-68010 | 2026-01-22 16:52:01 | 2026-04-28 19:54:24 | Patchstack | Improper Neutralization of Input During Web Page Generation… | Details |
| CVE-2025-68008 | 2026-01-22 16:52:01 | 2026-04-28 19:54:14 | Patchstack | Improper Neutralization of Input During Web Page Generation… | Details |
| CVE-2025-68006 | 2026-01-22 16:52:00 | 2026-04-28 19:54:05 | Patchstack | Insertion of Sensitive Information Into Sent Data vulnerability… | Details |
| CVE-2025-68004 | 2026-01-22 16:51:59 | 2026-04-28 19:52:43 | Patchstack | Improper Neutralization of Input During Web Page Generation… | Details |
| CVE-2025-63051 | 2026-01-22 16:51:48 | 2026-04-28 19:35:33 | Patchstack | Exposure of Sensitive System Information to an Unauthorized… | Details |
| CVE-2025-63017 | 2026-01-22 16:51:47 | 2026-04-28 19:34:09 | Patchstack | Improper Control of Filename for Include/Require Statement in… | Details |
| CVE-2025-67968 | 2026-01-22 16:51:58 | 2026-04-28 19:30:14 | Patchstack | Unrestricted Upload of File with Dangerous Type vulnerability… | Details |
| CVE-2025-67967 | 2026-01-22 16:51:58 | 2026-04-28 19:30:05 | Patchstack | Missing Authorization vulnerability in e-plugins Lawyer Directory lawyer-directory… | Details |
| CVE-2025-67966 | 2026-01-22 16:51:58 | 2026-04-28 19:29:55 | Patchstack | Incorrect Privilege Assignment vulnerability in e-plugins Lawyer Directory… | Details |
| CVE-2025-67964 | 2026-01-22 16:51:58 | 2026-04-28 19:29:46 | Patchstack | Improper Neutralization of Input During Web Page Generation… | Details |
| CVE-2025-67963 | 2026-01-22 16:51:58 | 2026-04-28 19:29:35 | Patchstack | Improper Limitation of a Pathname to a Restricted… | Details |
| CVE-2025-67961 | 2026-01-22 16:51:57 | 2026-04-28 19:29:26 | Patchstack | Server-Side Request Forgery (SSRF) vulnerability in Marco van… | Details |
| CVE-2025-67960 | 2026-01-22 16:51:57 | 2026-04-28 19:29:16 | Patchstack | Improper Neutralization of Input During Web Page Generation… | Details |
| CVE-2025-67959 | 2026-01-22 16:51:57 | 2026-04-28 19:29:07 | Patchstack | Improper Neutralization of Input During Web Page Generation… | Details |
| CVE-2025-67957 | 2026-01-22 16:51:56 | 2026-04-28 19:28:56 | Patchstack | Improper Control of Filename for Include/Require Statement in… | Details |
| CVE-2025-67954 | 2026-01-22 16:51:55 | 2026-04-28 19:28:47 | Patchstack | Exposure of Sensitive System Information to an Unauthorized… | Details |
| CVE-2025-67953 | 2026-01-22 16:51:55 | 2026-04-28 19:28:38 | Patchstack | Incorrect Privilege Assignment vulnerability in Booking Activities Team… | Details |
| CVE-2025-67952 | 2026-01-22 16:51:55 | 2026-04-28 19:28:29 | Patchstack | Improper Neutralization of Input During Web Page Generation… | Details |
| CVE-2025-67949 | 2026-01-22 16:51:54 | 2026-04-28 19:28:10 | Patchstack | Improper Neutralization of Input During Web Page Generation… | Details |
| CVE-2025-67947 | 2026-01-22 16:51:54 | 2026-04-28 19:27:51 | Patchstack | Improper Neutralization of Input During Web Page Generation… | Details |
| CVE-2025-67946 | 2026-01-22 16:51:54 | 2026-04-28 19:27:42 | Patchstack | Improper Control of Filename for Include/Require Statement in… | Details |
| CVE-2025-67943 | 2026-01-22 16:51:53 | 2026-04-28 19:27:33 | Patchstack | Improper Neutralization of Input During Web Page Generation… | Details |
| CVE-2025-67941 | 2026-01-22 16:51:53 | 2026-04-28 19:27:24 | Patchstack | Improper Control of Filename for Include/Require Statement in… | Details |
| CVE-2025-67940 | 2026-01-22 16:51:53 | 2026-04-28 19:27:15 | Patchstack | Improper Control of Filename for Include/Require Statement in… | Details |
| CVE-2025-67938 | 2026-01-22 16:51:52 | 2026-04-28 19:27:06 | Patchstack | Improper Control of Filename for Include/Require Statement in… | Details |
| CVE-2025-67937 | 2026-01-08 09:17:50 | 2026-04-28 19:26:57 | Patchstack | Improper Control of Filename for Include/Require Statement in… | Details |
| CVE-2025-67936 | 2026-01-08 09:17:49 | 2026-04-28 19:26:48 | Patchstack | Improper Control of Filename for Include/Require Statement in… | Details |
| CVE-2025-67935 | 2026-01-08 09:17:49 | 2026-04-28 19:26:37 | Patchstack | Improper Control of Filename for Include/Require Statement in… | Details |
| CVE-2025-67923 | 2026-01-22 16:51:52 | 2026-04-28 19:26:28 | Patchstack | Improper Neutralization of Input During Web Page Generation… | Details |
| CVE-2025-67911 | 2026-01-08 09:17:44 | 2026-04-28 19:26:10 | Patchstack | Deserialization of Untrusted Data vulnerability in Tribulant Software… | Details |
| CVE-2025-67626 | 2026-01-22 16:51:52 | 2026-04-28 19:26:00 | Patchstack | Cross-Site Request Forgery (CSRF) vulnerability in Angel Costa… | Details |
| CVE-2025-67620 | 2026-01-22 16:51:52 | 2026-04-28 19:25:50 | Patchstack | Improper Neutralization of Input During Web Page Generation… | Details |
| CVE-2025-67619 | 2026-01-22 16:51:52 | 2026-04-28 19:25:40 | Patchstack | Deserialization of Untrusted Data vulnerability in designthemes Kids… | Details |
| CVE-2025-67617 | 2026-01-22 16:51:51 | 2026-04-28 19:25:31 | Patchstack | Deserialization of Untrusted Data vulnerability in themeton Consult… | Details |
| CVE-2025-67616 | 2026-01-22 16:51:51 | 2026-04-28 19:25:22 | Patchstack | Improper Control of Filename for Include/Require Statement in… | Details |
| CVE-2025-67615 | 2026-01-22 16:51:51 | 2026-04-28 19:25:12 | Patchstack | Improper Control of Filename for Include/Require Statement in… | Details |
| CVE-2025-67614 | 2026-01-22 16:51:51 | 2026-04-28 19:25:03 | Patchstack | Improper Neutralization of Input During Web Page Generation… | Details |
| CVE-2025-66143 | 2026-01-22 16:51:50 | 2026-04-28 19:09:34 | Patchstack | Missing Authorization vulnerability in merkulove Crumber crumber-elementor allows… | Details |
| CVE-2025-66140 | 2026-01-22 16:51:50 | 2026-04-28 19:09:23 | Patchstack | Missing Authorization vulnerability in merkulove Uper for Elementor… | Details |
| CVE-2025-23504 | 2026-01-08 09:17:40 | 2026-04-28 19:01:21 | Patchstack | Authentication Bypass Using an Alternate Path or Channel… | Details |
| CVE-2025-62077 | 2026-01-22 16:51:46 | 2026-04-28 18:53:40 | Patchstack | Improper Neutralization of Input During Web Page Generation… | Details |
| CVE-2025-62056 | 2026-01-22 16:51:46 | 2026-04-28 18:51:43 | Patchstack | Unrestricted Upload of File with Dangerous Type vulnerability… | Details |
| CVE-2025-62050 | 2026-01-22 16:51:46 | 2026-04-28 18:51:12 | Patchstack | Unrestricted Upload of File with Dangerous Type vulnerability… | Details |
| CVE-2025-64252 | 2026-01-22 16:51:49 | 2026-04-28 18:27:38 | Patchstack | Server-Side Request Forgery (SSRF) vulnerability in Marco Milesi… | Details |
| CVE-2025-50007 | 2026-01-22 16:51:44 | 2026-04-28 18:22:28 | Patchstack | Incorrect Privilege Assignment vulnerability in Jthemes xSmart xsmart… | Details |
| CVE-2026-22359 | 2026-01-22 16:56:49 | 2026-04-28 17:48:30 | Patchstack | Cross-Site Request Forgery (CSRF) vulnerability in AA-Team Wordpress… | Details |
| CVE-2026-0834 | 2026-01-21 17:14:55 | 2026-04-28 17:46:59 | TPLink | Logic vulnerability in TP-Link Archer C20 v5, 6.0,… | Details |
| CVE-2026-0676 | 2026-01-08 09:17:55 | 2026-04-28 17:24:16 | Patchstack | Missing Authorization vulnerability in G5Theme Zorka zorka allows… | Details |
| CVE-2026-22483 | 2026-01-22 16:52:42 | 2026-04-28 17:19:27 | Patchstack | Cross-Site Request Forgery (CSRF) vulnerability in winkm89 teachPress… | Details |
| CVE-2026-22482 | 2026-01-22 16:52:41 | 2026-04-28 17:19:18 | Patchstack | Server-Side Request Forgery (SSRF) vulnerability in wbolt.com IMGspider… | Details |
| CVE-2026-22481 | 2026-01-22 16:52:41 | 2026-04-28 17:19:10 | Patchstack | Missing Authorization vulnerability in Rasedul Haque Rumi BD… | Details |
| CVE-2026-22472 | 2026-01-22 16:52:41 | 2026-04-28 17:17:52 | Patchstack | Missing Authorization vulnerability in hassantafreshi Easy Form Builder… | Details |
| CVE-2026-22470 | 2026-01-22 16:52:41 | 2026-04-28 17:17:35 | Patchstack | Improper Neutralization of Special Elements used in an… | Details |
| CVE-2026-22469 | 2026-01-22 16:52:41 | 2026-04-28 17:17:26 | Patchstack | Improper Neutralization of Script-Related HTML Tags in a… | Details |
| CVE-2026-22468 | 2026-01-22 16:52:40 | 2026-04-28 17:17:18 | Patchstack | Missing Authorization vulnerability in AbsolutePlugins Absolute Addons For… | Details |
| CVE-2026-22466 | 2026-01-22 16:52:40 | 2026-04-28 17:17:01 | Patchstack | Missing Authorization vulnerability in Chandni Patel WP MapIt… | Details |
| CVE-2026-22464 | 2026-01-22 16:52:40 | 2026-04-28 17:16:43 | Patchstack | Improper Control of Filename for Include/Require Statement in… | Details |
| CVE-2026-22463 | 2026-01-22 16:52:40 | 2026-04-28 17:16:34 | Patchstack | Improper Neutralization of Input During Web Page Generation… | Details |
| CVE-2026-22462 | 2026-01-22 16:52:40 | 2026-04-28 17:16:26 | Patchstack | Cross-Site Request Forgery (CSRF) vulnerability in richardevcom Add… | Details |
| CVE-2026-22461 | 2026-01-22 16:52:39 | 2026-04-28 17:16:18 | Patchstack | Missing Authorization vulnerability in WebAppick CTX Feed webappick-product-feed-for-woocommerce… | Details |
| CVE-2026-22458 | 2026-01-22 16:52:39 | 2026-04-28 17:15:52 | Patchstack | Missing Authorization vulnerability in Mikado-Themes Wanderland wanderland allows… | Details |
| CVE-2026-22450 | 2026-01-22 16:52:39 | 2026-04-28 17:14:43 | Patchstack | Missing Authorization vulnerability in Select-Themes Don Peppe donpeppe… | Details |
| CVE-2026-22447 | 2026-01-22 16:52:39 | 2026-04-28 17:11:59 | Patchstack | Missing Authorization vulnerability in Select-Themes Prowess prowess allows… | Details |
| CVE-2026-22445 | 2026-01-22 16:52:38 | 2026-04-28 17:11:42 | Patchstack | Missing Authorization vulnerability in Proptech Plugin Apimo Connector… | Details |
| CVE-2026-22430 | 2026-01-22 16:52:38 | 2026-04-28 17:09:45 | Patchstack | Authorization Bypass Through User-Controlled Key vulnerability in Mikado-Themes… | Details |
| CVE-2026-22426 | 2026-01-22 16:52:38 | 2026-04-28 17:09:10 | Patchstack | Authorization Bypass Through User-Controlled Key vulnerability in Elated-Themes… | Details |
| CVE-2026-22411 | 2026-01-22 16:52:38 | 2026-04-28 17:06:59 | Patchstack | Authorization Bypass Through User-Controlled Key vulnerability in Mikado-Themes… | Details |
| CVE-2026-22409 | 2026-01-22 16:52:38 | 2026-04-28 17:06:41 | Patchstack | Authorization Bypass Through User-Controlled Key vulnerability in Mikado-Themes… | Details |
| CVE-2026-22407 | 2026-01-22 16:52:37 | 2026-04-28 16:56:45 | Patchstack | Authorization Bypass Through User-Controlled Key vulnerability in Mikado-Themes… | Details |
| CVE-2026-22406 | 2026-01-22 16:52:37 | 2026-04-28 16:56:36 | Patchstack | Authorization Bypass Through User-Controlled Key vulnerability in Mikado-Themes… | Details |
| CVE-2026-22404 | 2026-01-22 16:52:37 | 2026-04-28 16:56:20 | Patchstack | Authorization Bypass Through User-Controlled Key vulnerability in Mikado-Themes… | Details |
| CVE-2026-22402 | 2026-01-22 16:52:37 | 2026-04-28 16:56:03 | Patchstack | Improper Control of Filename for Include/Require Statement in… | Details |
| CVE-2026-22401 | 2026-01-22 16:52:37 | 2026-04-28 16:55:54 | Patchstack | Improper Control of Filename for Include/Require Statement in… | Details |
| CVE-2026-22400 | 2026-01-22 16:52:36 | 2026-04-28 16:55:45 | Patchstack | Authorization Bypass Through User-Controlled Key vulnerability in Mikado-Themes… | Details |
| CVE-2026-22398 | 2026-01-22 16:52:36 | 2026-04-28 16:55:29 | Patchstack | Authorization Bypass Through User-Controlled Key vulnerability in Mikado-Themes… | Details |
| CVE-2026-22396 | 2026-01-22 16:52:36 | 2026-04-28 16:55:12 | Patchstack | Authorization Bypass Through User-Controlled Key vulnerability in Mikado-Themes… | Details |
| CVE-2026-22393 | 2026-01-22 16:52:36 | 2026-04-28 16:54:47 | Patchstack | Authorization Bypass Through User-Controlled Key vulnerability in Mikado-Themes… | Details |
| CVE-2026-22391 | 2026-01-22 16:52:35 | 2026-04-28 16:54:29 | Patchstack | Authorization Bypass Through User-Controlled Key vulnerability in Mikado-Themes… | Details |
| CVE-2026-22388 | 2026-01-22 16:52:35 | 2026-04-28 16:54:03 | Patchstack | Improper Neutralization of Input During Web Page Generation… | Details |
| CVE-2026-22382 | 2026-01-22 16:52:35 | 2026-04-28 16:53:22 | Patchstack | Cross-Site Request Forgery (CSRF) vulnerability in Mikado-Themes PawFriends… | Details |
| CVE-2026-22360 | 2026-01-22 16:52:35 | 2026-04-28 16:49:02 | Patchstack | Cross-Site Request Forgery (CSRF) vulnerability in AA-Team SearchAzon… | Details |
| CVE-2026-22358 | 2026-01-22 16:52:34 | 2026-04-28 16:48:54 | Patchstack | Server-Side Request Forgery (SSRF) vulnerability in SmartDataSoft Electrician… | Details |
| CVE-2026-22355 | 2026-01-22 16:52:34 | 2026-04-28 16:48:28 | Patchstack | Cross-Site Request Forgery (CSRF) vulnerability in gregmolnar Simple… | Details |
| CVE-2026-22353 | 2026-01-22 16:52:34 | 2026-04-28 16:48:11 | Patchstack | Improper Neutralization of Input During Web Page Generation… | Details |
| CVE-2026-22349 | 2026-01-22 16:52:34 | 2026-04-28 16:47:37 | Patchstack | Improper Neutralization of Input During Web Page Generation… | Details |
| CVE-2026-22348 | 2026-01-22 16:52:34 | 2026-04-28 16:47:29 | Patchstack | Missing Authorization vulnerability in Tasos Fel Civic Cookie… | Details |
| CVE-2026-22347 | 2026-01-22 16:52:34 | 2026-04-28 16:47:20 | Patchstack | Improper Neutralization of Input During Web Page Generation… | Details |
| CVE-2026-24633 | 2026-01-23 14:29:08 | 2026-04-28 16:14:51 | Patchstack | Missing Authorization vulnerability in Passionate Brains Add Expires… | Details |
| CVE-2026-24612 | 2026-01-23 14:29:04 | 2026-04-28 16:14:50 | Patchstack | Missing Authorization vulnerability in themebeez Orchid Store orchid-store… | Details |
| CVE-2026-24621 | 2026-01-23 14:29:06 | 2026-04-28 16:14:50 | Patchstack | Improper Neutralization of Input During Web Page Generation… | Details |
| CVE-2026-24600 | 2026-01-23 14:29:02 | 2026-04-28 16:14:50 | Patchstack | Improper Neutralization of Input During Web Page Generation… | Details |
| CVE-2026-24626 | 2026-01-23 14:29:07 | 2026-04-28 16:14:50 | Patchstack | Improper Neutralization of Input During Web Page Generation… | Details |
| CVE-2026-24604 | 2026-01-23 14:29:03 | 2026-04-28 16:14:50 | Patchstack | Missing Authorization vulnerability in themebeez Simple GDPR Cookie… | Details |
| CVE-2026-24613 | 2026-01-23 14:29:04 | 2026-04-28 16:14:50 | Patchstack | Missing Authorization vulnerability in Ecwid by Lightspeed Ecommerce… | Details |
| CVE-2026-24623 | 2026-01-23 14:29:07 | 2026-04-28 16:14:50 | Patchstack | Improper Neutralization of Input During Web Page Generation… | Details |
| CVE-2026-24619 | 2026-01-23 14:29:05 | 2026-04-28 16:14:50 | Patchstack | Missing Authorization vulnerability in PopCash PopCash.Net Code Integration… | Details |
| CVE-2026-24617 | 2026-01-23 14:29:05 | 2026-04-28 16:14:50 | Patchstack | Improper Neutralization of Input During Web Page Generation… | Details |
| CVE-2026-24616 | 2026-01-23 14:29:05 | 2026-04-28 16:14:50 | Patchstack | Missing Authorization vulnerability in Damian WP Popups wp-popups-lite… | Details |
| CVE-2026-24599 | 2026-01-23 14:29:02 | 2026-04-28 16:14:50 | Patchstack | Authorization Bypass Through User-Controlled Key vulnerability in XLPlugins… | Details |
| CVE-2026-24609 | 2026-01-23 14:29:04 | 2026-04-28 16:14:50 | Patchstack | Improper Control of Filename for Include/Require Statement in… | Details |
| CVE-2026-24627 | 2026-01-23 14:29:07 | 2026-04-28 16:14:50 | Patchstack | Missing Authorization vulnerability in Trusona Trusona for WordPress… | Details |
| CVE-2026-24614 | 2026-01-23 14:29:05 | 2026-04-28 16:14:50 | Patchstack | Improper Neutralization of Input During Web Page Generation… | Details |
| CVE-2026-24624 | 2026-01-23 14:29:07 | 2026-04-28 16:14:50 | Patchstack | Improper Neutralization of Special Elements used in an… | Details |
| CVE-2026-24630 | 2026-01-23 14:29:08 | 2026-04-28 16:14:50 | Patchstack | Improper Neutralization of Input During Web Page Generation… | Details |
| CVE-2026-24635 | 2026-01-23 14:29:09 | 2026-04-28 16:14:50 | Patchstack | Improper Control of Filename for Include/Require Statement in… | Details |
| CVE-2026-24608 | 2026-01-23 14:29:04 | 2026-04-28 16:14:50 | Patchstack | Improper Control of Filename for Include/Require Statement in… | Details |
| CVE-2026-24629 | 2026-01-23 14:29:08 | 2026-04-28 16:14:50 | Patchstack | Improper Neutralization of Input During Web Page Generation… | Details |
| CVE-2026-24625 | 2026-01-23 14:29:07 | 2026-04-28 16:14:50 | Patchstack | Missing Authorization vulnerability in Imaginate Solutions File Uploads… | Details |
| CVE-2026-24631 | 2026-01-23 14:29:08 | 2026-04-28 16:14:50 | Patchstack | Authorization Bypass Through User-Controlled Key vulnerability in Mikado-Themes… | Details |
| CVE-2026-24606 | 2026-01-23 14:29:04 | 2026-04-28 16:14:50 | Patchstack | Missing Authorization vulnerability in Web Impian Bayarcash WooCommerce… | Details |
| CVE-2026-24605 | 2026-01-23 14:29:03 | 2026-04-28 16:14:50 | Patchstack | Missing Authorization vulnerability in pencilwp X Addons for… | Details |
| CVE-2026-24607 | 2026-01-23 14:29:04 | 2026-04-28 16:14:50 | Patchstack | Missing Authorization vulnerability in wptravelengine Travel Monster travel-monster… | Details |
| CVE-2026-24634 | 2026-01-23 14:29:08 | 2026-04-28 16:14:50 | Patchstack | Authorization Bypass Through User-Controlled Key vulnerability in Rustaurius… | Details |
| CVE-2026-24622 | 2026-01-23 14:29:06 | 2026-04-28 16:14:50 | Patchstack | Missing Authorization vulnerability in Sergiy Dzysyak Suggestion Toolkit… | Details |
| CVE-2026-24615 | 2026-01-23 14:29:05 | 2026-04-28 16:14:50 | Patchstack | Missing Authorization vulnerability in themebeez Cream Magazine cream-magazine… | Details |
| CVE-2026-24598 | 2026-01-23 14:29:02 | 2026-04-28 16:14:50 | Patchstack | Missing Authorization vulnerability in bestwebsoft Multilanguage by BestWebSoft… | Details |
| CVE-2026-24632 | 2026-01-23 14:29:08 | 2026-04-28 16:14:50 | Patchstack | Improper Neutralization of Input During Web Page Generation… | Details |
| CVE-2026-24636 | 2026-01-23 14:29:09 | 2026-04-28 16:14:50 | Patchstack | Missing Authorization vulnerability in Syed Balkhi Sugar Calendar… | Details |
| CVE-2026-24620 | 2026-01-23 14:29:06 | 2026-04-28 16:14:50 | Patchstack | Improper Neutralization of Input During Web Page Generation… | Details |
| CVE-2026-24603 | 2026-01-23 14:29:03 | 2026-04-28 16:14:50 | Patchstack | Missing Authorization vulnerability in themebeez Universal Google Adsense… | Details |
| CVE-2026-24601 | 2026-01-23 14:29:03 | 2026-04-28 16:14:50 | Patchstack | Improper Neutralization of Input During Web Page Generation… | Details |
| CVE-2026-24571 | 2026-01-23 14:28:56 | 2026-04-28 16:14:49 | Patchstack | Missing Authorization vulnerability in boxnow BOX NOW Delivery… | Details |
| CVE-2026-24572 | 2026-01-23 14:28:57 | 2026-04-28 16:14:49 | Patchstack | Improper Neutralization of Special Elements used in an… | Details |
| CVE-2026-24567 | 2026-01-23 14:28:56 | 2026-04-28 16:14:49 | Patchstack | Missing Authorization vulnerability in briarinc Anything Order by… | Details |
| CVE-2026-24548 | 2026-01-23 14:28:52 | 2026-04-28 16:14:49 | Patchstack | Server-Side Request Forgery (SSRF) vulnerability in princeahmed Radio… | Details |
| CVE-2026-24563 | 2026-01-23 14:28:55 | 2026-04-28 16:14:49 | Patchstack | Missing Authorization vulnerability in Ashan Perera LifePress lifepress… | Details |
| CVE-2026-24562 | 2026-01-23 14:28:55 | 2026-04-28 16:14:49 | Patchstack | Missing Authorization vulnerability in Ryviu Ryviu – Product… | Details |
| CVE-2026-24591 | 2026-01-23 14:29:00 | 2026-04-28 16:14:49 | Patchstack | Improper Neutralization of Input During Web Page Generation… | Details |
| CVE-2026-24568 | 2026-01-23 14:28:56 | 2026-04-28 16:14:49 | Patchstack | Missing Authorization vulnerability in WP Travel WP Travel… | Details |
| CVE-2026-24564 | 2026-01-23 14:28:55 | 2026-04-28 16:14:49 | Patchstack | Improper Neutralization of Script-Related HTML Tags in a… | Details |
| CVE-2026-24585 | 2026-01-23 14:28:59 | 2026-04-28 16:14:49 | Patchstack | Missing Authorization vulnerability in Hyyan Abo Fakher Hyyan… | Details |
| CVE-2026-24593 | 2026-01-23 14:29:01 | 2026-04-28 16:14:49 | Patchstack | Exposure of Sensitive System Information to an Unauthorized… | Details |
| CVE-2026-24565 | 2026-01-23 14:28:55 | 2026-04-28 16:14:49 | Patchstack | Insertion of Sensitive Information Into Sent Data vulnerability… | Details |
| CVE-2026-24560 | 2026-01-23 14:28:54 | 2026-04-28 16:14:49 | Patchstack | Missing Authorization vulnerability in Cloudinary Cloudinary cloudinary-image-management-and-manipulation-in-the-cloud-cdn allows… | Details |
| CVE-2026-24589 | 2026-01-23 14:29:00 | 2026-04-28 16:14:49 | Patchstack | Insertion of Sensitive Information Into Sent Data vulnerability… | Details |
| CVE-2026-24544 | 2026-01-23 14:28:52 | 2026-04-28 16:14:49 | Patchstack | Missing Authorization vulnerability in Harmonic Design HD Quiz… | Details |
| CVE-2026-24587 | 2026-01-23 14:29:00 | 2026-04-28 16:14:49 | Patchstack | Missing Authorization vulnerability in kutsy AJAX Hits Counter… | Details |
| CVE-2026-24559 | 2026-01-23 14:28:54 | 2026-04-28 16:14:49 | Patchstack | Insertion of Sensitive Information Into Sent Data vulnerability… | Details |
| CVE-2026-24553 | 2026-01-23 14:28:53 | 2026-04-28 16:14:49 | Patchstack | Exposure of Sensitive System Information to an Unauthorized… | Details |
| CVE-2026-24556 | 2026-01-23 14:28:53 | 2026-04-28 16:14:49 | Patchstack | Missing Authorization vulnerability in wpdive ElementCamp element-camp allows… | Details |
| CVE-2026-24551 | 2026-01-23 14:28:53 | 2026-04-28 16:14:49 | Patchstack | Missing Authorization vulnerability in monetagwp Monetag Official Plugin… | Details |
| CVE-2026-24557 | 2026-01-23 14:28:54 | 2026-04-28 16:14:49 | Patchstack | Insertion of Sensitive Information Into Sent Data vulnerability… | Details |
| CVE-2026-24576 | 2026-01-23 14:28:57 | 2026-04-28 16:14:49 | Patchstack | Improper Neutralization of Input During Web Page Generation… | Details |
| CVE-2026-24584 | 2026-01-23 14:28:59 | 2026-04-28 16:14:49 | Patchstack | Improper Neutralization of Input During Web Page Generation… | Details |
| CVE-2026-24583 | 2026-01-23 14:28:59 | 2026-04-28 16:14:49 | Patchstack | Missing Authorization vulnerability in sumup SumUp Payment Gateway… | Details |
| CVE-2026-24594 | 2026-01-23 14:29:01 | 2026-04-28 16:14:49 | Patchstack | Improper Neutralization of Input During Web Page Generation… | Details |
| CVE-2026-24578 | 2026-01-23 14:28:58 | 2026-04-28 16:14:49 | Patchstack | Missing Authorization vulnerability in Jahid Hasan Admin login… | Details |
| CVE-2026-24579 | 2026-01-23 14:28:58 | 2026-04-28 16:14:49 | Patchstack | Missing Authorization vulnerability in WP Messiah Ai Image… | Details |
| CVE-2026-24570 | 2026-01-23 14:28:56 | 2026-04-28 16:14:49 | Patchstack | Missing Authorization vulnerability in WisdmLabs Edwiser Bridge edwiser-bridge… | Details |
| CVE-2026-24549 | 2026-01-23 14:28:52 | 2026-04-28 16:14:49 | Patchstack | Cross-Site Request Forgery (CSRF) vulnerability in Paolo GeoDirectory… | Details |
| CVE-2026-24561 | 2026-01-23 14:28:55 | 2026-04-28 16:14:49 | Patchstack | Missing Authorization vulnerability in Mahmudul Hasan Arif FluentBoards… | Details |
| CVE-2026-24588 | 2026-01-23 14:29:00 | 2026-04-28 16:14:49 | Patchstack | Missing Authorization vulnerability in topdevs Smart Product Viewer… | Details |
| CVE-2026-24596 | 2026-01-23 14:29:02 | 2026-04-28 16:14:49 | Patchstack | Cross-Site Request Forgery (CSRF) vulnerability in marynixie Related… | Details |
| CVE-2026-24558 | 2026-01-23 14:28:54 | 2026-04-28 16:14:49 | Patchstack | Improper Neutralization of Input During Web Page Generation… | Details |
| CVE-2026-24566 | 2026-01-23 14:28:56 | 2026-04-28 16:14:49 | Patchstack | Missing Authorization vulnerability in iNET iNET Webkit inet-webkit… | Details |
| CVE-2026-24577 | 2026-01-23 14:28:57 | 2026-04-28 16:14:49 | Patchstack | Missing Authorization vulnerability in Genetech Products Pie Register… | Details |
| CVE-2026-24555 | 2026-01-23 14:28:53 | 2026-04-28 16:14:49 | Patchstack | Improper Neutralization of Input During Web Page Generation… | Details |
| CVE-2026-24581 | 2026-01-23 14:28:59 | 2026-04-28 16:14:49 | Patchstack | Missing Authorization vulnerability in WP Swings Points and… | Details |
| CVE-2026-24595 | 2026-01-23 14:29:01 | 2026-04-28 16:14:49 | Patchstack | Missing Authorization vulnerability in zohocrm Zoho CRM Lead… | Details |
| CVE-2026-24569 | 2026-01-23 14:28:56 | 2026-04-28 16:14:49 | Patchstack | Missing Authorization vulnerability in Sully Media Library File… | Details |
| CVE-2026-24550 | 2026-01-23 14:28:53 | 2026-04-28 16:14:49 | Patchstack | Improper Neutralization of Input During Web Page Generation… | Details |
| CVE-2026-24580 | 2026-01-23 14:28:59 | 2026-04-28 16:14:49 | Patchstack | Missing Authorization vulnerability in Ecwid by Lightspeed Ecommerce… | Details |
| CVE-2026-24377 | 2026-01-22 16:52:46 | 2026-04-28 16:14:48 | Patchstack | Exposure of Sensitive System Information to an Unauthorized… | Details |
| CVE-2026-24361 | 2026-01-22 16:52:44 | 2026-04-28 16:14:48 | Patchstack | Improper Neutralization of Input During Web Page Generation… | Details |
| CVE-2026-24379 | 2026-01-22 16:52:46 | 2026-04-28 16:14:48 | Patchstack | Authorization Bypass Through User-Controlled Key vulnerability in wpjobportal… | Details |
| CVE-2026-24383 | 2026-01-22 16:52:46 | 2026-04-28 16:14:48 | Patchstack | Improper Neutralization of Input During Web Page Generation… | Details |
| CVE-2026-24389 | 2026-01-22 16:52:47 | 2026-04-28 16:14:48 | Patchstack | Improper Neutralization of Input During Web Page Generation… | Details |
| CVE-2026-24386 | 2026-01-22 16:52:47 | 2026-04-28 16:14:48 | Patchstack | Missing Authorization vulnerability in Element Invader Element Invader… | Details |
| CVE-2026-24367 | 2026-01-22 16:52:45 | 2026-04-28 16:14:48 | Patchstack | Improper Neutralization of Special Elements used in an… | Details |
| CVE-2026-24388 | 2026-01-22 16:52:47 | 2026-04-28 16:14:48 | Patchstack | Missing Authorization vulnerability in Ludwig You WPMasterToolKit wpmastertoolkit… | Details |
| CVE-2026-24368 | 2026-01-22 16:52:45 | 2026-04-28 16:14:48 | Patchstack | Missing Authorization vulnerability in Theme-one The Grid the-grid… | Details |
| CVE-2026-24380 | 2026-01-22 16:52:46 | 2026-04-28 16:14:48 | Patchstack | Missing Authorization vulnerability in Metagauss EventPrime eventprime-event-calendar-management allows… | Details |
| CVE-2026-24384 | 2026-01-22 16:52:47 | 2026-04-28 16:14:48 | Patchstack | Cross-Site Request Forgery (CSRF) vulnerability in launchinteractive Merge… | Details |
| CVE-2026-24390 | 2026-01-22 16:52:48 | 2026-04-28 16:14:48 | Patchstack | Improper Control of Filename for Include/Require Statement in… | Details |
| CVE-2026-24387 | 2026-01-22 16:52:47 | 2026-04-28 16:14:48 | Patchstack | Missing Authorization vulnerability in Arul Prasad J WP… | Details |
| CVE-2026-24381 | 2026-01-22 16:52:46 | 2026-04-28 16:14:48 | Patchstack | Server-Side Request Forgery (SSRF) vulnerability in ThemeGoods PhotoMe… | Details |
| CVE-2026-24534 | 2026-01-23 14:28:50 | 2026-04-28 16:14:48 | Patchstack | Missing Authorization vulnerability in uPress Booter booter-bots-crawlers-manager allows… | Details |
| CVE-2026-24529 | 2026-01-23 14:28:49 | 2026-04-28 16:14:48 | Patchstack | Missing Authorization vulnerability in Alejandro Quick Restaurant Reservations… | Details |
| CVE-2026-24539 | 2026-01-23 14:28:51 | 2026-04-28 16:14:48 | Patchstack | Missing Authorization vulnerability in ABCdatos Protección de datos… | Details |
| CVE-2026-24521 | 2026-01-23 14:28:48 | 2026-04-28 16:14:48 | Patchstack | Cross-Site Request Forgery (CSRF) vulnerability in Timur Kamaev… | Details |
| CVE-2026-24523 | 2026-01-23 14:28:48 | 2026-04-28 16:14:48 | Patchstack | Exposure of Sensitive System Information to an Unauthorized… | Details |
| CVE-2026-24524 | 2026-01-23 14:28:48 | 2026-04-28 16:14:48 | Patchstack | Missing Authorization vulnerability in Essekia Tablesome tablesome allows… | Details |
| CVE-2026-24542 | 2026-01-23 14:28:52 | 2026-04-28 16:14:48 | Patchstack | Cross-Site Request Forgery (CSRF) vulnerability in John James… | Details |
| CVE-2026-24538 | 2026-01-23 14:28:51 | 2026-04-28 16:14:48 | Patchstack | Improper Control of Filename for Include/Require Statement in… | Details |
| CVE-2026-24531 | 2026-01-23 14:28:50 | 2026-04-28 16:14:48 | Patchstack | Improper Control of Filename for Include/Require Statement in… | Details |
| CVE-2026-24522 | 2026-01-23 14:28:48 | 2026-04-28 16:14:48 | Patchstack | Missing Authorization vulnerability in MyThemeShop WP Subscribe wp-subscribe… | Details |
| CVE-2026-24528 | 2026-01-23 14:28:49 | 2026-04-28 16:14:48 | Patchstack | Improper Neutralization of Input During Web Page Generation… | Details |
| CVE-2026-24541 | 2026-01-23 14:28:52 | 2026-04-28 16:14:48 | Patchstack | Missing Authorization vulnerability in mkscripts Download After Email… | Details |
| CVE-2026-24536 | 2026-01-23 14:28:51 | 2026-04-28 16:14:48 | Patchstack | Exposure of Sensitive System Information to an Unauthorized… | Details |
| CVE-2026-24532 | 2026-01-23 14:28:50 | 2026-04-28 16:14:48 | Patchstack | Missing Authorization vulnerability in SiteLock SiteLock Security –… | Details |
| CVE-2026-24526 | 2026-01-23 14:28:49 | 2026-04-28 16:14:48 | Patchstack | Improper Neutralization of Input During Web Page Generation… | Details |
| CVE-2026-24535 | 2026-01-23 14:28:51 | 2026-04-28 16:14:48 | Patchstack | Missing Authorization vulnerability in webdevstudios Automatic Featured Images… | Details |
| CVE-2026-24543 | 2026-01-23 14:28:52 | 2026-04-28 16:14:48 | Patchstack | Missing Authorization vulnerability in Horea Radu Materialis Companion… | Details |
| CVE-2026-24540 | 2026-01-23 14:28:51 | 2026-04-28 16:14:48 | Patchstack | Missing Authorization vulnerability in princeahmed Integrate Google Drive… | Details |
| CVE-2026-24525 | 2026-01-23 14:28:49 | 2026-04-28 16:14:48 | Patchstack | Missing Authorization vulnerability in CloudPanel CLP Varnish Cache… | Details |
| CVE-2026-24530 | 2026-01-23 14:28:50 | 2026-04-28 16:14:48 | Patchstack | Missing Authorization vulnerability in sheepfish WebP Conversion webp-conversion… | Details |
| CVE-2026-23800 | 2026-01-16 20:40:13 | 2026-04-28 16:14:47 | Patchstack | Incorrect Privilege Assignment vulnerability in Modular DS modular-connector… | Details |
| CVE-2026-24374 | 2026-01-22 16:52:45 | 2026-04-28 16:14:47 | Patchstack | Cross-Site Request Forgery (CSRF) vulnerability in Metagauss RegistrationMagic… | Details |
| CVE-2026-24366 | 2026-01-22 16:52:44 | 2026-04-28 16:14:47 | Patchstack | Missing Authorization vulnerability in YITHEMES YITH WooCommerce Request… | Details |
| CVE-2026-24357 | 2026-01-22 16:52:43 | 2026-04-28 16:14:47 | Patchstack | Missing Authorization vulnerability in Brecht WP Recipe Maker… | Details |
| CVE-2026-24356 | 2026-01-22 16:52:43 | 2026-04-28 16:14:47 | Patchstack | Missing Authorization vulnerability in Roxnor GetGenie getgenie allows… | Details |
| CVE-2026-24354 | 2026-01-22 16:52:43 | 2026-04-28 16:14:47 | Patchstack | Improper Neutralization of Input During Web Page Generation… | Details |
| CVE-2026-24371 | 2026-01-22 16:52:45 | 2026-04-28 16:14:47 | Patchstack | Missing Authorization vulnerability in bookingalgorithms BA Book Everything… | Details |
| CVE-2026-24353 | 2026-01-22 16:52:43 | 2026-04-28 16:14:47 | Patchstack | Missing Authorization vulnerability in wpeverest User Registration user-registration… | Details |
| CVE-2026-24358 | 2026-01-22 16:52:44 | 2026-04-28 16:14:47 | Patchstack | Missing Authorization vulnerability in ExpressTech Systems Quiz And… | Details |
| CVE-2026-24355 | 2026-01-22 16:52:43 | 2026-04-28 16:14:47 | Patchstack | Improper Neutralization of Input During Web Page Generation… | Details |
| CVE-2026-24365 | 2026-01-22 16:52:44 | 2026-04-28 16:14:47 | Patchstack | Cross-Site Request Forgery (CSRF) vulnerability in storeapps Stock… | Details |
| CVE-2026-24360 | 2026-01-22 16:52:44 | 2026-04-28 16:14:47 | Patchstack | Server-Side Request Forgery (SSRF) vulnerability in Craig Hewitt… | Details |
| CVE-2026-23976 | 2026-01-22 16:52:42 | 2026-04-28 16:14:47 | Patchstack | Improper Neutralization of Input During Web Page Generation… | Details |
| CVE-2026-23974 | 2026-01-22 16:52:42 | 2026-04-28 16:14:47 | Patchstack | Missing Authorization vulnerability in uxper Golo golo allows… | Details |
| CVE-2026-23978 | 2026-01-22 16:52:42 | 2026-04-28 16:14:47 | Patchstack | Improper Control of Filename for Include/Require Statement in… | Details |
| CVE-2026-23975 | 2026-01-22 16:52:42 | 2026-04-28 16:14:47 | Patchstack | Improper Control of Filename for Include/Require Statement in… | Details |
| CVE-2026-22488 | 2026-01-08 16:35:04 | 2026-04-28 16:14:46 | Patchstack | Missing Authorization vulnerability in IdeaBox Creations Dashboard Welcome… | Details |
| CVE-2026-22521 | 2026-01-08 16:18:28 | 2026-04-28 16:14:46 | Patchstack | Improper Control of Filename for Include/Require Statement in… | Details |
| CVE-2026-22522 | 2026-01-08 16:17:02 | 2026-04-28 16:14:46 | Patchstack | Missing Authorization vulnerability in Munir Kamal Block Slider… | Details |
| CVE-2026-22492 | 2026-01-08 16:23:26 | 2026-04-28 16:14:46 | Patchstack | Missing Authorization vulnerability in Nawawi Jamili Docket Cache… | Details |
| CVE-2026-22519 | 2026-01-08 16:19:54 | 2026-04-28 16:14:46 | Patchstack | Improper Neutralization of Input During Web Page Generation… | Details |
| CVE-2026-22518 | 2026-01-08 16:21:08 | 2026-04-28 16:14:46 | Patchstack | Improper Neutralization of Input During Web Page Generation… | Details |
| CVE-2026-22517 | 2026-01-08 16:22:10 | 2026-04-28 16:14:46 | Patchstack | Missing Authorization vulnerability in Passionate Brains GA4WP: Google… | Details |
| CVE-2026-23550 | 2026-01-14 08:44:25 | 2026-04-28 16:14:46 | Patchstack | Incorrect Privilege Assignment vulnerability in Modular DS Modular… | Details |
| CVE-2026-22487 | 2026-01-08 16:37:41 | 2026-04-28 16:14:45 | Patchstack | Missing Authorization vulnerability in baqend Speed Kit baqend… | Details |
| CVE-2026-22490 | 2026-01-08 16:24:37 | 2026-04-28 16:14:45 | Patchstack | Missing Authorization vulnerability in niklaslindemann Bulk Landing Page… | Details |
| CVE-2026-22489 | 2026-01-08 16:33:34 | 2026-04-28 16:14:45 | Patchstack | Authorization Bypass Through User-Controlled Key vulnerability in Wptexture… | Details |
| CVE-2025-69364 | 2026-01-06 16:36:42 | 2026-04-28 16:14:38 | Patchstack | Missing Authorization vulnerability in Cloudways Breeze breeze allows… | Details |
| CVE-2025-69348 | 2026-01-06 16:36:39 | 2026-04-28 16:14:38 | Patchstack | Missing Authorization vulnerability in CoolHappy The Events Calendar… | Details |
| CVE-2025-69359 | 2026-01-06 16:36:41 | 2026-04-28 16:14:38 | Patchstack | Missing Authorization vulnerability in WPFunnels Creator LMS creatorlms… | Details |
| CVE-2025-69355 | 2026-01-06 16:36:41 | 2026-04-28 16:14:38 | Patchstack | Missing Authorization vulnerability in Tickera Tickera tickera-event-ticketing-system allows… | Details |
| CVE-2025-69353 | 2026-01-06 16:36:40 | 2026-04-28 16:14:38 | Patchstack | Missing Authorization vulnerability in Proxy & VPN Blocker… | Details |
| CVE-2025-69352 | 2026-01-06 16:36:40 | 2026-04-28 16:14:38 | Patchstack | Missing Authorization vulnerability in StellarWP The Events Calendar… | Details |
| CVE-2025-69349 | 2026-01-06 16:36:39 | 2026-04-28 16:14:38 | Patchstack | Missing Authorization vulnerability in Fahad Mahmood RSS Feed… | Details |
| CVE-2025-69350 | 2026-01-06 16:36:40 | 2026-04-28 16:14:38 | Patchstack | Improper Neutralization of Input During Web Page Generation… | Details |
| CVE-2025-69346 | 2026-01-06 16:36:39 | 2026-04-28 16:14:38 | Patchstack | Missing Authorization vulnerability in WPCenter AffiliateX affiliatex allows… | Details |
| CVE-2025-69362 | 2026-01-06 16:36:42 | 2026-04-28 16:14:38 | Patchstack | Improper Neutralization of Input During Web Page Generation… | Details |
| CVE-2025-69351 | 2026-01-06 16:36:40 | 2026-04-28 16:14:38 | Patchstack | Improper Neutralization of Special Elements used in an… | Details |
| CVE-2025-69354 | 2026-01-06 16:36:41 | 2026-04-28 16:14:38 | Patchstack | Missing Authorization vulnerability in BBR Plugins Better Business… | Details |
| CVE-2025-69363 | 2026-01-06 16:36:42 | 2026-04-28 16:14:38 | Patchstack | Missing Authorization vulnerability in CyberChimps Responsive Addons for… | Details |
| CVE-2025-69344 | 2026-01-07 11:51:22 | 2026-04-28 16:14:38 | Patchstack | Missing Authorization vulnerability in themehunk Oneline Lite oneline-lite… | Details |
| CVE-2025-69327 | 2026-01-06 16:36:37 | 2026-04-28 16:14:37 | Patchstack | Missing Authorization vulnerability in magepeopleteam Car Rental Manager… | Details |
| CVE-2025-69335 | 2026-01-06 16:36:38 | 2026-04-28 16:14:37 | Patchstack | Improper Neutralization of Input During Web Page Generation… | Details |
| CVE-2025-69345 | 2026-01-06 16:36:39 | 2026-04-28 16:14:37 | Patchstack | Missing Authorization vulnerability in BoldGrid Post and Page… | Details |
| CVE-2025-69341 | 2026-01-06 16:36:38 | 2026-04-28 16:14:37 | Patchstack | Missing Authorization vulnerability in BuddhaThemes WeDesignTech Ultimate Booking… | Details |
| CVE-2025-69333 | 2026-01-07 11:52:24 | 2026-04-28 16:14:37 | Patchstack | Missing Authorization vulnerability in Crocoblock JetEngine jet-engine allows… | Details |
| CVE-2025-69316 | 2026-01-22 16:52:32 | 2026-04-28 16:14:37 | Patchstack | Improper Neutralization of Input During Web Page Generation… | Details |
| CVE-2025-69300 | 2026-01-22 16:52:31 | 2026-04-28 16:14:37 | Patchstack | Missing Authorization vulnerability in Leap13 Premium Addons for… | Details |
| CVE-2025-69317 | 2026-01-22 16:52:33 | 2026-04-28 16:14:37 | Patchstack | Improper Neutralization of Input During Web Page Generation… | Details |
| CVE-2025-69087 | 2026-01-05 10:18:16 | 2026-04-28 16:14:36 | Patchstack | Improper Control of Filename for Include/Require Statement in… | Details |
| CVE-2025-69086 | 2026-01-06 16:26:05 | 2026-04-28 16:14:36 | Patchstack | Improper Control of Filename for Include/Require Statement in… | Details |
| CVE-2025-69083 | 2026-01-06 16:43:57 | 2026-04-28 16:14:36 | Patchstack | Improper Control of Filename for Include/Require Statement in… | Details |
| CVE-2025-69084 | 2026-01-06 16:28:38 | 2026-04-28 16:14:36 | Patchstack | Improper Neutralization of Input During Web Page Generation… | Details |
| CVE-2025-69085 | 2026-01-06 16:27:11 | 2026-04-28 16:14:36 | Patchstack | Improper Neutralization of Input During Web Page Generation… | Details |
| CVE-2025-69082 | 2026-01-07 11:54:31 | 2026-04-28 16:14:36 | Patchstack | Improper Neutralization of Input During Web Page Generation… | Details |
| CVE-2025-69081 | 2026-01-07 11:56:19 | 2026-04-28 16:14:36 | Patchstack | Improper Control of Filename for Include/Require Statement in… | Details |
| CVE-2025-69080 | 2026-01-07 11:59:55 | 2026-04-28 16:14:36 | Patchstack | Improper Control of Filename for Include/Require Statement in… | Details |
| CVE-2025-69169 | 2026-01-08 09:17:54 | 2026-04-28 16:14:36 | Patchstack | Improper Neutralization of Script-Related HTML Tags in a… | Details |
| CVE-2025-69095 | 2026-01-22 16:52:26 | 2026-04-28 16:14:36 | Patchstack | Missing Authorization vulnerability in designthemes Reservation Plugin dt-reservation-plugin… | Details |
| CVE-2025-69180 | 2026-01-22 16:52:28 | 2026-04-28 16:14:36 | Patchstack | Improper Neutralization of Special Elements used in an… | Details |
| CVE-2025-69074 | 2026-01-22 16:52:24 | 2026-04-28 16:14:36 | Patchstack | Improper Control of Filename for Include/Require Statement in… | Details |
| CVE-2025-69098 | 2026-01-22 16:52:26 | 2026-04-28 16:14:36 | Patchstack | Improper Neutralization of Input During Web Page Generation… | Details |
| CVE-2025-69097 | 2026-01-22 16:52:26 | 2026-04-28 16:14:36 | Patchstack | Improper Limitation of a Pathname to a Restricted… | Details |
| CVE-2025-69039 | 2026-01-22 16:52:17 | 2026-04-28 16:14:35 | Patchstack | Improper Control of Filename for Include/Require Statement in… | Details |
| CVE-2025-69040 | 2026-01-22 16:52:17 | 2026-04-28 16:14:35 | Patchstack | Improper Control of Filename for Include/Require Statement in… | Details |
| CVE-2025-69042 | 2026-01-22 16:52:18 | 2026-04-28 16:14:35 | Patchstack | Improper Control of Filename for Include/Require Statement in… | Details |
| CVE-2025-69043 | 2026-01-22 16:52:18 | 2026-04-28 16:14:35 | Patchstack | Improper Control of Filename for Include/Require Statement in… | Details |
| CVE-2025-68908 | 2026-01-22 16:52:14 | 2026-04-28 16:14:33 | Patchstack | Improper Control of Filename for Include/Require Statement in… | Details |
| CVE-2025-68911 | 2026-01-22 16:52:14 | 2026-04-28 16:14:33 | Patchstack | Missing Authorization vulnerability in solacewp Solace solace allows… | Details |
| CVE-2025-68907 | 2026-01-22 16:52:13 | 2026-04-28 16:14:33 | Patchstack | Improper Limitation of a Pathname to a Restricted… | Details |
| CVE-2025-68999 | 2026-01-22 16:52:15 | 2026-04-28 16:14:33 | Patchstack | Improper Neutralization of Special Elements used in an… | Details |
| CVE-2025-68912 | 2026-01-22 16:52:15 | 2026-04-28 16:14:33 | Patchstack | Improper Limitation of a Pathname to a Restricted… | Details |
| CVE-2025-68865 | 2026-01-05 10:44:34 | 2026-04-28 16:14:32 | Patchstack | Improper Neutralization of Special Elements used in an… | Details |
| CVE-2025-68875 | 2026-01-08 09:17:52 | 2026-04-28 16:14:32 | Patchstack | Improper Neutralization of Input During Web Page Generation… | Details |
| CVE-2025-68890 | 2026-01-08 09:17:54 | 2026-04-28 16:14:32 | Patchstack | Improper Neutralization of Input During Web Page Generation… | Details |
| CVE-2025-68892 | 2026-01-08 09:17:54 | 2026-04-28 16:14:32 | Patchstack | Improper Neutralization of Input During Web Page Generation… | Details |
| CVE-2025-68902 | 2026-01-22 16:52:12 | 2026-04-28 16:14:32 | Patchstack | Improper Limitation of a Pathname to a Restricted… | Details |
| CVE-2025-68901 | 2026-01-22 16:52:12 | 2026-04-28 16:14:32 | Patchstack | Improper Limitation of a Pathname to a Restricted… | Details |
| CVE-2025-68882 | 2026-01-22 16:52:11 | 2026-04-28 16:14:32 | Patchstack | Missing Authorization vulnerability in Scalenut Scalenut scalenut allows… | Details |
| CVE-2025-68547 | 2026-01-05 10:42:04 | 2026-04-28 16:14:30 | Patchstack | Missing Authorization vulnerability in wpweb Follow My Blog… | Details |
| CVE-2025-68558 | 2026-01-22 16:52:08 | 2026-04-28 16:14:30 | Patchstack | Missing Authorization vulnerability in averta Depicter Slider depicter… | Details |
| CVE-2025-68507 | 2026-01-22 16:52:07 | 2026-04-28 16:14:29 | Patchstack | Missing Authorization vulnerability in Icegram Icegram icegram allows… | Details |
| CVE-2025-68073 | 2026-01-22 16:52:07 | 2026-04-28 16:14:28 | Patchstack | Missing Authorization vulnerability in Ninja Team GDPR CCPA… | Details |
| CVE-2025-68044 | 2026-01-05 10:40:55 | 2026-04-28 16:14:27 | Patchstack | Authorization Bypass Through User-Controlled Key vulnerability in Rustaurius… | Details |
| CVE-2025-68033 | 2026-01-05 10:39:01 | 2026-04-28 16:14:27 | Patchstack | Insertion of Sensitive Information Into Sent Data vulnerability… | Details |
| CVE-2025-68034 | 2026-01-22 16:52:05 | 2026-04-28 16:14:27 | Patchstack | Improper Neutralization of Special Elements used in an… | Details |
| CVE-2025-68058 | 2026-01-22 16:52:06 | 2026-04-28 16:14:27 | Patchstack | Missing Authorization vulnerability in e-plugins Institutions Directory institutions-directory… | Details |
| CVE-2025-68059 | 2026-01-22 16:52:06 | 2026-04-28 16:14:27 | Patchstack | Missing Authorization vulnerability in e-plugins Hotel Listing hotel-listing… | Details |
| CVE-2025-68039 | 2026-01-22 16:52:05 | 2026-04-28 16:14:27 | Patchstack | Missing Authorization vulnerability in Chris Simmons WP BackItUp… | Details |
| CVE-2025-68057 | 2026-01-22 16:52:06 | 2026-04-28 16:14:27 | Patchstack | Missing Authorization vulnerability in e-plugins Hospital Doctor Directory… | Details |
| CVE-2025-68009 | 2026-01-22 16:52:01 | 2026-04-28 16:14:26 | Patchstack | Missing Authorization vulnerability in Codeless Slider Templates slider-templates… | Details |
| CVE-2025-68017 | 2026-01-22 16:52:03 | 2026-04-28 16:14:26 | Patchstack | Improper Neutralization of Special Elements used in an… | Details |
| CVE-2025-68020 | 2026-01-22 16:52:04 | 2026-04-28 16:14:26 | Patchstack | Missing Authorization vulnerability in WANotifier Notifier notifier allows… | Details |
| CVE-2025-68013 | 2026-01-22 16:52:02 | 2026-04-28 16:14:26 | Patchstack | Missing Authorization vulnerability in cardpaysolutions Payment Gateway Authorize.Net… | Details |
| CVE-2025-68014 | 2026-01-05 10:36:24 | 2026-04-28 16:14:25 | Patchstack | Insertion of Sensitive Information Into Sent Data vulnerability… | Details |
| CVE-2025-68001 | 2026-01-22 16:51:59 | 2026-04-28 16:14:25 | Patchstack | Unrestricted Upload of File with Dangerous Type vulnerability… | Details |
| CVE-2025-68003 | 2026-01-22 16:51:59 | 2026-04-28 16:14:25 | Patchstack | Missing Authorization vulnerability in renatoatshown Shown Connector shown-connector… | Details |
| CVE-2025-68007 | 2026-01-22 16:52:00 | 2026-04-28 16:14:25 | Patchstack | Missing Authorization vulnerability in Event Espresso Event Espresso… | Details |
| CVE-2025-67934 | 2026-01-08 09:17:49 | 2026-04-28 16:14:24 | Patchstack | Improper Control of Filename for Include/Require Statement in… | Details |
| CVE-2025-67933 | 2026-01-08 09:17:49 | 2026-04-28 16:14:24 | Patchstack | Improper Neutralization of Input During Web Page Generation… | Details |
| CVE-2025-67926 | 2026-01-08 09:17:47 | 2026-04-28 16:14:24 | Patchstack | Missing Authorization vulnerability in Shahjahan Jewel Fluent Support… | Details |
| CVE-2025-67927 | 2026-01-08 09:17:48 | 2026-04-28 16:14:24 | Patchstack | Improper Neutralization of Input During Web Page Generation… | Details |
| CVE-2025-67945 | 2026-01-22 16:51:54 | 2026-04-28 16:14:24 | Patchstack | Improper Neutralization of Special Elements used in an… | Details |
| CVE-2025-67955 | 2026-01-22 16:51:56 | 2026-04-28 16:14:24 | Patchstack | Improper Control of Filename for Include/Require Statement in… | Details |
| CVE-2025-67944 | 2026-01-22 16:51:54 | 2026-04-28 16:14:24 | Patchstack | Improper Control of Generation of Code ('Code Injection')… | Details |
| CVE-2025-67958 | 2026-01-22 16:51:56 | 2026-04-28 16:14:24 | Patchstack | Missing Authorization vulnerability in Taxcloud TaxCloud for WooCommerce… | Details |
| CVE-2025-67939 | 2026-01-22 16:51:53 | 2026-04-28 16:14:24 | Patchstack | Missing Authorization vulnerability in Tickera Tickera tickera-event-ticketing-system allows… | Details |
| CVE-2025-67942 | 2026-01-22 16:51:53 | 2026-04-28 16:14:24 | Patchstack | Missing Authorization vulnerability in peachpayments Peach Payments Gateway… | Details |
| CVE-2025-67924 | 2026-01-08 09:17:47 | 2026-04-28 16:14:23 | Patchstack | Unrestricted Upload of File with Dangerous Type vulnerability… | Details |
| CVE-2025-67920 | 2026-01-08 09:17:46 | 2026-04-28 16:14:23 | Patchstack | Improper Control of Filename for Include/Require Statement in… | Details |
| CVE-2025-67919 | 2026-01-08 09:17:46 | 2026-04-28 16:14:23 | Patchstack | Authorization Bypass Through User-Controlled Key vulnerability in WofficeIO… | Details |
| CVE-2025-67921 | 2026-01-08 09:17:46 | 2026-04-28 16:14:23 | Patchstack | Improper Neutralization of Special Elements used in an… | Details |
| CVE-2025-67915 | 2026-01-08 09:17:45 | 2026-04-28 16:14:23 | Patchstack | Authentication Bypass Using an Alternate Path or Channel… | Details |
| CVE-2025-67928 | 2026-01-08 09:17:48 | 2026-04-28 16:14:23 | Patchstack | Improper Neutralization of Special Elements used in an… | Details |
| CVE-2025-67922 | 2026-01-08 09:17:47 | 2026-04-28 16:14:23 | Patchstack | Improper Neutralization of Input During Web Page Generation… | Details |
| CVE-2025-67932 | 2026-01-08 09:17:49 | 2026-04-28 16:14:23 | Patchstack | Improper Neutralization of Input During Web Page Generation… | Details |
| CVE-2025-67918 | 2026-01-08 09:17:45 | 2026-04-28 16:14:23 | Patchstack | Improper Neutralization of Input During Web Page Generation… | Details |
| CVE-2025-67916 | 2026-01-08 09:17:45 | 2026-04-28 16:14:23 | Patchstack | Improper Neutralization of Input During Web Page Generation… | Details |
| CVE-2025-67930 | 2026-01-08 09:17:48 | 2026-04-28 16:14:23 | Patchstack | Improper Neutralization of Input During Web Page Generation… | Details |
| CVE-2025-67925 | 2026-01-08 09:17:47 | 2026-04-28 16:14:23 | Patchstack | Improper Control of Filename for Include/Require Statement in… | Details |
| CVE-2025-67917 | 2026-01-08 09:17:45 | 2026-04-28 16:14:23 | Patchstack | Missing Authorization vulnerability in shinetheme Traveler traveler allows… | Details |
| CVE-2025-67910 | 2026-01-08 09:17:44 | 2026-04-28 16:14:22 | Patchstack | Unrestricted Upload of File with Dangerous Type vulnerability… | Details |
| CVE-2025-67913 | 2026-01-08 09:17:44 | 2026-04-28 16:14:22 | Patchstack | Missing Authorization vulnerability in Aruba.it Dev Aruba HiSpeed… | Details |
| CVE-2025-67914 | 2026-01-08 09:17:44 | 2026-04-28 16:14:22 | Patchstack | Path Traversal: '.../...//' vulnerability in beeteam368 VidMov vidmov… | Details |
| CVE-2025-66139 | 2026-01-22 16:51:50 | 2026-04-28 16:14:17 | Patchstack | Missing Authorization vulnerability in merkulove Audier For Elementor… | Details |
| CVE-2025-66136 | 2026-01-22 16:51:49 | 2026-04-28 16:14:17 | Patchstack | Missing Authorization vulnerability in merkulove Carter for Elementor… | Details |
| CVE-2025-66137 | 2026-01-22 16:51:49 | 2026-04-28 16:14:17 | Patchstack | Missing Authorization vulnerability in merkulove Searcher for Elementor… | Details |
| CVE-2025-66141 | 2026-01-22 16:51:50 | 2026-04-28 16:14:17 | Patchstack | Missing Authorization vulnerability in merkulove Scroller scroller allows… | Details |
| CVE-2025-66142 | 2026-01-22 16:51:50 | 2026-04-28 16:14:17 | Patchstack | Missing Authorization vulnerability in merkulove Comparimager for Elementor… | Details |
| CVE-2025-66135 | 2026-01-22 16:51:49 | 2026-04-28 16:14:17 | Patchstack | Missing Authorization vulnerability in merkulove Imager for Elementor… | Details |
| CVE-2025-66138 | 2026-01-22 16:51:49 | 2026-04-28 16:14:17 | Patchstack | Missing Authorization vulnerability in merkulove Motionger for Elementor… | Details |
| CVE-2025-63018 | 2026-01-22 16:51:48 | 2026-04-28 16:14:08 | Patchstack | Missing Authorization vulnerability in wproyal Bard bard allows… | Details |
| CVE-2025-63019 | 2026-01-22 16:51:48 | 2026-04-28 16:14:08 | Patchstack | Insertion of Sensitive Information Into Sent Data vulnerability… | Details |
| CVE-2025-63026 | 2026-01-22 16:51:48 | 2026-04-28 16:14:08 | Patchstack | Improper Neutralization of Input During Web Page Generation… | Details |
| CVE-2025-62754 | 2026-01-22 16:51:47 | 2026-04-28 16:14:04 | Patchstack | Missing Authorization vulnerability in Kapil Paul Payment Gateway… | Details |
| CVE-2025-62741 | 2026-01-22 16:51:47 | 2026-04-28 16:14:03 | Patchstack | Server-Side Request Forgery (SSRF) vulnerability in SmartDataSoft Pool… | Details |
| CVE-2025-62106 | 2026-01-22 16:51:47 | 2026-04-28 16:14:01 | Patchstack | Missing Authorization vulnerability in Mario Peshev WP-CRM System… | Details |
| CVE-2025-5805 | 2026-01-22 16:51:46 | 2026-04-28 16:13:41 | Patchstack | Missing Authorization vulnerability in Ninetheme Electron electron allows… | Details |
| CVE-2025-54002 | 2026-01-22 16:51:45 | 2026-04-28 16:13:28 | Patchstack | Missing Authorization vulnerability in Jthemes xSmart xsmart allows… | Details |
| CVE-2025-54003 | 2026-01-22 16:51:45 | 2026-04-28 16:13:28 | Patchstack | Improper Control of Filename for Include/Require Statement in… | Details |
| CVE-2025-53344 | 2026-01-05 16:42:57 | 2026-04-28 16:13:24 | Patchstack | Cross-Site Request Forgery (CSRF) vulnerability in ThimPress Thim… | Details |
| CVE-2025-53240 | 2026-01-22 16:51:45 | 2026-04-28 16:13:21 | Patchstack | Improper Neutralization of Input During Web Page Generation… | Details |
| CVE-2025-52746 | 2026-01-22 16:51:44 | 2026-04-28 16:13:18 | Patchstack | Improper Neutralization of Input During Web Page Generation… | Details |
| CVE-2025-52762 | 2026-01-22 16:51:45 | 2026-04-28 16:13:18 | Patchstack | Improper Neutralization of Input During Web Page Generation… | Details |
| CVE-2025-50003 | 2026-01-22 16:51:43 | 2026-04-28 16:13:15 | Patchstack | Improper Control of Filename for Include/Require Statement in… | Details |
| CVE-2025-50002 | 2026-01-22 16:51:43 | 2026-04-28 16:13:15 | Patchstack | Unrestricted Upload of File with Dangerous Type vulnerability… | Details |
| CVE-2025-50004 | 2026-01-22 16:51:44 | 2026-04-28 16:13:15 | Patchstack | Deserialization of Untrusted Data vulnerability in artbees JupiterX… | Details |
| CVE-2025-50006 | 2026-01-22 16:51:44 | 2026-04-28 16:13:15 | Patchstack | Improper Neutralization of Input During Web Page Generation… | Details |
| CVE-2025-50005 | 2026-01-22 16:51:44 | 2026-04-28 16:13:15 | Patchstack | Improper Neutralization of Input During Web Page Generation… | Details |
| CVE-2025-49994 | 2026-01-22 16:51:43 | 2026-04-28 16:13:15 | Patchstack | Improper Control of Filename for Include/Require Statement in… | Details |
| CVE-2025-49375 | 2026-01-22 16:51:43 | 2026-04-28 16:13:02 | Patchstack | Missing Authorization vulnerability in cozythemes HomeLancer homelancer allows… | Details |
| CVE-2025-49336 | 2026-01-22 16:51:43 | 2026-04-28 16:13:01 | Patchstack | Improper Neutralization of Input During Web Page Generation… | Details |
| CVE-2025-49066 | 2026-01-22 16:51:42 | 2026-04-28 16:12:58 | Patchstack | Improper Neutralization of Input During Web Page Generation… | Details |
| CVE-2025-49045 | 2026-01-22 16:51:41 | 2026-04-28 16:12:58 | Patchstack | Improper Neutralization of Input During Web Page Generation… | Details |
| CVE-2025-49055 | 2026-01-22 16:51:42 | 2026-04-28 16:12:58 | Patchstack | Improper Neutralization of Special Elements used in an… | Details |
| CVE-2025-49249 | 2026-01-22 16:51:42 | 2026-04-28 16:12:58 | Patchstack | Improper Neutralization of Input During Web Page Generation… | Details |
| CVE-2025-49043 | 2026-01-22 16:51:41 | 2026-04-28 16:12:57 | Patchstack | Improper Neutralization of Input During Web Page Generation… | Details |
| CVE-2025-49049 | 2026-01-22 16:51:42 | 2026-04-28 16:12:57 | Patchstack | Improper Neutralization of Special Elements used in an… | Details |
| CVE-2025-49046 | 2026-01-22 16:51:41 | 2026-04-28 16:12:57 | Patchstack | Improper Neutralization of Input During Web Page Generation… | Details |
| CVE-2025-49050 | 2026-01-22 16:51:42 | 2026-04-28 16:12:57 | Patchstack | Improper Neutralization of Special Elements used in an… | Details |
| CVE-2025-48094 | 2026-01-22 16:51:41 | 2026-04-28 16:12:51 | Patchstack | Improper Neutralization of Input During Web Page Generation… | Details |
| CVE-2025-47666 | 2026-01-22 16:51:41 | 2026-04-28 16:12:48 | Patchstack | Improper Neutralization of Input During Web Page Generation… | Details |
| CVE-2025-47600 | 2026-01-22 16:51:40 | 2026-04-28 16:12:46 | Patchstack | Improper Neutralization of Script-Related HTML Tags in a… | Details |
| CVE-2025-47555 | 2026-01-22 16:51:40 | 2026-04-28 16:12:45 | Patchstack | Authorization Bypass Through User-Controlled Key vulnerability in Themeum… | Details |
| CVE-2025-47553 | 2026-01-06 16:47:40 | 2026-04-28 16:12:44 | Patchstack | Deserialization of Untrusted Data vulnerability in Digital zoom… | Details |
| CVE-2025-47552 | 2026-01-07 12:38:11 | 2026-04-28 16:12:44 | Patchstack | Deserialization of Untrusted Data vulnerability in Digital zoom… | Details |
| CVE-2025-47500 | 2026-01-22 16:51:40 | 2026-04-28 16:12:43 | Patchstack | Improper Neutralization of Input During Web Page Generation… | Details |
| CVE-2025-47474 | 2026-01-22 16:51:39 | 2026-04-28 16:12:42 | Patchstack | Improper Control of Filename for Include/Require Statement in… | Details |
| CVE-2025-46494 | 2026-01-07 12:37:15 | 2026-04-28 16:12:39 | Patchstack | Improper Neutralization of Input During Web Page Generation… | Details |
| CVE-2025-46255 | 2026-01-05 16:44:34 | 2026-04-28 16:12:37 | Patchstack | Missing Authorization vulnerability in Marketing Fire LLC LoginWP… | Details |
| CVE-2025-46256 | 2026-01-07 12:34:04 | 2026-04-28 16:12:37 | Patchstack | Path Traversal: '.../...//' vulnerability in SigmaPlugin Advanced Database… | Details |
| CVE-2025-39561 | 2026-01-05 16:50:25 | 2026-04-28 16:12:34 | Patchstack | Missing Authorization vulnerability in Marketing Fire, LLC LoginWP… | Details |
| CVE-2025-39497 | 2026-01-05 16:51:39 | 2026-04-28 16:12:33 | Patchstack | Improper Neutralization of Input During Web Page Generation… | Details |
| CVE-2025-39484 | 2026-01-05 16:53:28 | 2026-04-28 16:12:32 | Patchstack | Improper Neutralization of Special Elements used in an… | Details |
| CVE-2025-39477 | 2026-01-06 16:54:40 | 2026-04-28 16:12:32 | Patchstack | Missing Authorization vulnerability in Sfwebservice InWave Jobs allows… | Details |
| CVE-2025-32304 | 2026-01-06 17:34:06 | 2026-04-28 16:12:21 | Patchstack | Improper Control of Filename for Include/Require Statement in… | Details |
| CVE-2025-32300 | 2026-01-07 12:06:37 | 2026-04-28 16:12:21 | Patchstack | Improper Neutralization of Input During Web Page Generation… | Details |
| CVE-2025-32303 | 2026-01-07 12:32:24 | 2026-04-28 16:12:21 | Patchstack | Improper Neutralization of Special Elements used in an… | Details |
| CVE-2025-32123 | 2026-01-22 16:51:39 | 2026-04-28 16:12:16 | Patchstack | Improper Neutralization of Input During Web Page Generation… | Details |
| CVE-2025-31642 | 2026-01-06 21:14:52 | 2026-04-28 16:12:10 | Patchstack | Improper Neutralization of Input During Web Page Generation… | Details |
| CVE-2025-31643 | 2026-01-07 12:05:17 | 2026-04-28 16:12:10 | Patchstack | Incorrect Privilege Assignment vulnerability in Dasinfomedia WPCHURCH allows… | Details |
| CVE-2025-31413 | 2026-01-22 16:51:38 | 2026-04-28 16:12:06 | Patchstack | Cross-Site Request Forgery (CSRF) vulnerability in bdthemes Element… | Details |
| CVE-2025-31047 | 2026-01-05 10:26:04 | 2026-04-28 16:12:04 | Patchstack | Deserialization of Untrusted Data vulnerability in Themify Themify… | Details |
| CVE-2025-31048 | 2026-01-05 10:27:01 | 2026-04-28 16:12:04 | Patchstack | Unrestricted Upload of File with Dangerous Type vulnerability… | Details |
| CVE-2025-31044 | 2026-01-05 10:23:17 | 2026-04-28 16:12:04 | Patchstack | Improper Neutralization of Special Elements used in an… | Details |
| CVE-2025-31046 | 2026-01-05 10:24:56 | 2026-04-28 16:12:04 | Patchstack | Missing Authorization vulnerability in WPvibes AnyWhere Elementor Pro… | Details |
| CVE-2025-31051 | 2026-01-06 21:13:02 | 2026-04-28 16:12:04 | Patchstack | Exposure of Sensitive System Information to an Unauthorized… | Details |
| CVE-2025-30996 | 2026-01-06 20:56:29 | 2026-04-28 16:12:03 | Patchstack | Unrestricted Upload of File with Dangerous Type vulnerability… | Details |
| CVE-2025-30633 | 2026-01-05 10:21:09 | 2026-04-28 16:11:56 | Patchstack | Improper Neutralization of Special Elements used in an… | Details |
| CVE-2025-30631 | 2026-01-06 20:30:33 | 2026-04-28 16:11:56 | Patchstack | Improper Neutralization of Input During Web Page Generation… | Details |
| CVE-2025-29004 | 2026-01-06 20:25:59 | 2026-04-28 16:11:52 | Patchstack | Incorrect Privilege Assignment vulnerability in AA-Team Premium Age… | Details |
| CVE-2025-27004 | 2026-01-08 09:17:41 | 2026-04-28 16:11:46 | Patchstack | Improper Neutralization of Input During Web Page Generation… | Details |
| CVE-2025-27002 | 2026-01-08 09:17:41 | 2026-04-28 16:11:46 | Patchstack | Improper Neutralization of Input During Web Page Generation… | Details |
| CVE-2025-27005 | 2026-01-22 16:51:38 | 2026-04-28 16:11:46 | Patchstack | Improper Neutralization of Input During Web Page Generation… | Details |
| CVE-2025-23993 | 2026-01-08 09:17:41 | 2026-04-28 16:11:27 | Patchstack | Improper Neutralization of Special Elements used in an… | Details |
| CVE-2025-22712 | 2026-01-08 09:17:39 | 2026-04-28 16:11:05 | Patchstack | Improper Control of Filename for Include/Require Statement in… | Details |
| CVE-2025-22715 | 2026-01-08 09:17:39 | 2026-04-28 16:11:05 | Patchstack | Missing Authorization vulnerability in loopus WP Attractive Donations… | Details |
| CVE-2025-22728 | 2026-01-08 09:17:40 | 2026-04-28 16:11:05 | Patchstack | Improper Neutralization of Special Elements used in an… | Details |
| CVE-2025-22725 | 2026-01-08 09:17:39 | 2026-04-28 16:11:05 | Patchstack | Improper Neutralization of Input During Web Page Generation… | Details |
| CVE-2025-22708 | 2026-01-08 09:17:38 | 2026-04-28 16:11:05 | Patchstack | Improper Control of Filename for Include/Require Statement in… | Details |
| CVE-2025-22726 | 2026-01-08 09:17:40 | 2026-04-28 16:11:05 | Patchstack | Server-Side Request Forgery (SSRF) vulnerability in _nK nK… | Details |
| CVE-2025-22713 | 2026-01-08 09:17:39 | 2026-04-28 16:11:05 | Patchstack | Improper Neutralization of Special Elements used in an… | Details |
| CVE-2025-22707 | 2026-01-08 09:17:38 | 2026-04-28 16:11:04 | Patchstack | Improper Control of Filename for Include/Require Statement in… | Details |
| CVE-2025-22509 | 2026-01-08 09:17:38 | 2026-04-28 16:11:00 | Patchstack | Improper Control of Filename for Include/Require Statement in… | Details |
| CVE-2025-12551 | 2026-01-08 09:17:36 | 2026-04-28 16:10:57 | Patchstack | Improper Neutralization of Input During Web Page Generation… | Details |
| CVE-2025-12550 | 2026-01-08 09:17:36 | 2026-04-28 16:10:57 | Patchstack | Improper Control of Filename for Include/Require Statement in… | Details |
| CVE-2025-12549 | 2026-01-08 09:17:36 | 2026-04-28 16:10:57 | Patchstack | Improper Control of Filename for Include/Require Statement in… | Details |
| CVE-2025-13504 | 2026-01-08 09:17:36 | 2026-04-28 16:10:57 | Patchstack | Improper Neutralization of Input During Web Page Generation… | Details |
| CVE-2025-14430 | 2026-01-08 09:17:38 | 2026-04-28 16:10:57 | Patchstack | Improper Control of Filename for Include/Require Statement in… | Details |
| CVE-2025-14429 | 2026-01-08 09:17:37 | 2026-04-28 16:10:57 | Patchstack | Improper Control of Filename for Include/Require Statement in… | Details |
| CVE-2025-14358 | 2026-01-08 09:17:37 | 2026-04-28 16:10:57 | Patchstack | Missing Authorization vulnerability in sizam REHub Framework rehub-framework… | Details |
| CVE-2025-14431 | 2026-01-08 09:17:38 | 2026-04-28 16:10:57 | Patchstack | Improper Control of Filename for Include/Require Statement in… | Details |
| CVE-2025-14360 | 2026-01-08 09:17:37 | 2026-04-28 16:10:57 | Patchstack | Missing Authorization vulnerability in Kaira Blockons blockons allows… | Details |
| CVE-2024-53735 | 2026-01-05 16:41:08 | 2026-04-28 16:10:44 | Patchstack | Improper Neutralization of Input During Web Page Generation… | Details |
| CVE-2024-31088 | 2026-01-06 16:52:53 | 2026-04-28 16:09:26 | Patchstack | Improper Neutralization of Input During Web Page Generation… | Details |
| CVE-2024-30547 | 2026-01-06 16:51:31 | 2026-04-28 16:09:26 | Patchstack | Improper Neutralization of Input During Web Page Generation… | Details |
| CVE-2024-30516 | 2026-01-05 16:38:43 | 2026-04-28 16:09:25 | Patchstack | Improper Validation of Specified Quantity in Input vulnerability… | Details |
| CVE-2024-30461 | 2026-01-05 16:36:41 | 2026-04-28 16:09:24 | Patchstack | Improper Neutralization of Input During Web Page Generation… | Details |
| CVE-2024-23511 | 2026-01-05 13:33:57 | 2026-04-28 16:09:09 | Patchstack | Improper Neutralization of Input During Web Page Generation… | Details |
| CVE-2023-52212 | 2026-01-05 13:32:30 | 2026-04-28 16:09:06 | Patchstack | Cross-Site Request Forgery (CSRF) vulnerability in Automattic WP… | Details |
| CVE-2023-51513 | 2026-01-05 13:30:44 | 2026-04-28 16:09:03 | Patchstack | Improper Neutralization of Input During Web Page Generation… | Details |
| CVE-2023-50897 | 2026-01-05 13:29:13 | 2026-04-28 16:09:00 | Patchstack | Unrestricted Upload of File with Dangerous Type vulnerability… | Details |
| CVE-2023-49186 | 2026-01-05 13:27:52 | 2026-04-28 16:08:56 | Patchstack | Improper Neutralization of Input During Web Page Generation… | Details |
| CVE-2026-0988 | 2026-01-21 11:38:39 | 2026-04-24 20:38:24 | redhat | A flaw was found in glib. Missing validation… | Details |
| CVE-2026-0992 | 2026-01-15 14:20:24 | 2026-04-22 09:31:04 | redhat | A flaw was found in the libxml2 library.… | Details |
| CVE-2026-0989 | 2026-01-15 14:20:23 | 2026-04-22 09:31:01 | redhat | A flaw was identified in the RelaxNG parser… | Details |
| CVE-2026-0990 | 2026-01-15 14:20:06 | 2026-04-22 09:30:55 | redhat | A flaw was found in libxml2, an XML… | Details |
| CVE-2025-69662 | 2026-01-30 00:00:00 | 2026-04-21 18:22:26 | mitre | SQL injection vulnerability in geopandas before v.1.1.2 allows… | Details |
| CVE-2025-15056 | 2026-01-13 20:39:29 | 2026-04-20 14:10:18 | Fluid Attacks | A lack of data validation vulnerability in the… | Details |
| CVE-2026-0810 | 2026-01-26 19:36:45 | 2026-04-20 01:39:46 | redhat | A flaw was found in gix-date. The `gix_date::parse::TimeBuf::as_str`… | Details |
| CVE-2025-62224 | 2026-01-07 22:54:54 | 2026-04-16 14:18:41 | microsoft | User interface (ui) misrepresentation of critical information in… | Details |
| CVE-2026-0820 | 2026-01-17 03:24:23 | 2026-04-16 13:54:59 | Wordfence | The RepairBuddy – Repair Shop CRM & Booking… | Details |
| CVE-2025-13753 | 2026-01-09 07:22:12 | 2026-04-14 15:56:21 | Wordfence | The WP Table Builder – Drag & Drop… | Details |
| CVE-2025-15527 | 2026-01-16 04:44:33 | 2026-04-14 15:30:23 | Wordfence | The WP Recipe Maker plugin for WordPress is… | Details |
| CVE-2025-14283 | 2026-01-28 11:23:40 | 2026-04-14 15:08:54 | Wordfence | The BlockArt Blocks – Gutenberg Blocks, Page Builder… | Details |
| CVE-2025-14063 | 2026-01-28 11:23:40 | 2026-04-14 15:08:26 | Wordfence | The SEO Links Interlinking plugin for WordPress is… | Details |
| CVE-2026-0844 | 2026-01-28 11:23:39 | 2026-04-14 15:08:02 | Wordfence | The Simple User Registration plugin for WordPress is… | Details |
| CVE-2025-15347 | 2026-01-20 14:26:33 | 2026-04-14 15:07:39 | Wordfence | The Creator LMS – The LMS for Creators,… | Details |
| CVE-2026-0726 | 2026-01-20 14:26:31 | 2026-04-14 15:07:20 | Wordfence | The Nexter Extension – Site Enhancements Toolkit plugin… | Details |
| CVE-2025-67133 | 2026-01-09 00:00:00 | 2026-04-14 14:07:23 | mitre | An issue in Hero Motocorp Vida V1 Pro… | Details |
| CVE-2026-23527 | 2026-01-15 19:24:20 | 2026-04-13 16:48:19 | GitHub_M | H3 is a minimal H(TTP) framework built for… | Details |
| CVE-2026-24868 | 2026-01-27 15:58:48 | 2026-04-13 13:53:06 | mozilla | Mitigation bypass in the Privacy: Anti-Tracking component. This… | Details |
| CVE-2026-0818 | 2026-01-28 07:39:17 | 2026-04-13 13:52:14 | mozilla | When a user explicitly requested Thunderbird to decrypt… | Details |
| CVE-2026-0892 | 2026-01-13 13:30:59 | 2026-04-13 13:52:12 | mozilla | Memory safety bugs present in Firefox 146 and… | Details |
| CVE-2026-0890 | 2026-01-13 13:30:59 | 2026-04-13 13:52:07 | mozilla | Spoofing issue in the DOM: Copy & Paste… | Details |
| CVE-2026-0889 | 2026-01-13 13:30:58 | 2026-04-13 13:52:05 | mozilla | Denial-of-service in the DOM: Service Workers component. This… | Details |
| CVE-2026-0888 | 2026-01-13 13:30:58 | 2026-04-13 13:52:02 | mozilla | Information disclosure in the XML component. This vulnerability… | Details |
| CVE-2026-0887 | 2026-01-13 13:30:57 | 2026-04-13 13:51:59 | mozilla | Clickjacking issue, information disclosure in the PDF Viewer… | Details |
| CVE-2026-0886 | 2026-01-13 13:30:57 | 2026-04-13 13:51:57 | mozilla | Incorrect boundary conditions in the Graphics component. This… | Details |
| CVE-2026-0885 | 2026-01-13 13:30:56 | 2026-04-13 13:51:54 | mozilla | Use-after-free in the JavaScript: GC component. This vulnerability… | Details |
| CVE-2026-0884 | 2026-01-13 13:30:56 | 2026-04-13 13:51:52 | mozilla | Use-after-free in the JavaScript Engine component. This vulnerability… | Details |
| CVE-2026-0883 | 2026-01-13 13:30:56 | 2026-04-13 13:51:51 | mozilla | Information disclosure in the Networking component. This vulnerability… | Details |
| CVE-2026-21876 | 2026-01-08 13:55:37 | 2026-04-09 15:41:17 | GitHub_M | The OWASP core rule set (CRS) is a… | Details |
| CVE-2026-1340 | 2026-01-29 21:33:11 | 2026-04-09 03:55:54 | ivanti | A code injection in Ivanti Endpoint Manager Mobile… | Details |
| CVE-2025-15018 | 2026-01-07 08:21:57 | 2026-04-08 17:35:18 | Wordfence | The Optional Email plugin for WordPress is vulnerable… | Details |
| CVE-2025-13895 | 2026-01-09 09:19:48 | 2026-04-08 17:34:51 | Wordfence | The Top Position Google Finance plugin for WordPress… | Details |
| CVE-2025-13521 | 2026-01-07 08:21:57 | 2026-04-08 17:34:38 | Wordfence | The WP Status Notifier plugin for WordPress is… | Details |
| CVE-2025-15158 | 2026-01-07 08:21:56 | 2026-04-08 17:34:21 | Wordfence | The WP Enable WebP plugin for WordPress is… | Details |
| CVE-2026-0832 | 2026-01-28 06:43:45 | 2026-04-08 17:33:57 | Wordfence | The New User Approve plugin for WordPress is… | Details |
| CVE-2025-14948 | 2026-01-10 07:03:55 | 2026-04-08 17:33:56 | Wordfence | The miniOrange OTP Verification and SMS Notification for… | Details |
| CVE-2025-13722 | 2026-01-07 09:21:06 | 2026-04-08 17:33:50 | Wordfence | The Fluent Forms – Customizable Contact Forms, Survey,… | Details |
| CVE-2025-15486 | 2026-01-14 05:28:13 | 2026-04-08 17:33:47 | Wordfence | The Kunze Law plugin for WordPress is vulnerable… | Details |
| CVE-2026-1398 | 2026-01-28 11:23:42 | 2026-04-08 17:33:25 | Wordfence | The Change WP URL plugin for WordPress is… | Details |
| CVE-2025-14867 | 2026-01-07 06:36:04 | 2026-04-08 17:33:15 | Wordfence | The Flashcard plugin for WordPress is vulnerable to… | Details |
| CVE-2025-14792 | 2026-01-07 07:17:34 | 2026-04-08 17:33:10 | Wordfence | The Key Figures plugin for WordPress is vulnerable… | Details |
| CVE-2025-14384 | 2026-01-16 04:44:36 | 2026-04-08 17:33:09 | Wordfence | The All in One SEO – Powerful SEO… | Details |
| CVE-2026-1088 | 2026-01-24 07:26:48 | 2026-04-08 17:33:04 | Wordfence | The Login Page Editor plugin for WordPress is… | Details |
| CVE-2026-1399 | 2026-01-28 11:23:42 | 2026-04-08 17:32:45 | Wordfence | The WP Google Ad Manager Plugin plugin for… | Details |
| CVE-2025-14057 | 2026-01-07 09:21:06 | 2026-04-08 17:32:25 | Wordfence | The Multi-column Tag Map plugin for WordPress is… | Details |
| CVE-2025-13676 | 2026-01-24 07:26:48 | 2026-04-08 17:32:24 | Wordfence | The JustClick registration plugin for WordPress is vulnerable… | Details |
| CVE-2025-13746 | 2026-01-06 03:21:41 | 2026-04-08 17:32:20 | Wordfence | The ForumWP – Forum & Discussion Board plugin… | Details |
| CVE-2025-8615 | 2026-01-17 08:24:32 | 2026-04-08 17:32:03 | Wordfence | The CubeWP plugin for WordPress is vulnerable to… | Details |
| CVE-2025-13497 | 2026-01-07 08:21:56 | 2026-04-08 17:31:59 | Wordfence | The Recras WordPress plugin for WordPress is vulnerable… | Details |
| CVE-2025-14610 | 2026-01-28 05:30:19 | 2026-04-08 17:31:53 | Wordfence | The TableMaster for Elementor plugin for WordPress is… | Details |
| CVE-2025-13496 | 2026-01-07 08:21:55 | 2026-04-08 17:31:48 | Wordfence | The Moosend Landing Pages plugin for WordPress is… | Details |
| CVE-2025-14555 | 2026-01-10 12:23:16 | 2026-04-08 17:31:48 | Wordfence | The Countdown Timer – Widget Countdown plugin for… | Details |
| CVE-2025-12002 | 2026-01-17 02:22:33 | 2026-04-08 17:30:55 | Wordfence | The Feeds for YouTube Pro plugin for WordPress… | Details |
| CVE-2025-13520 | 2026-01-07 08:21:55 | 2026-04-08 17:30:40 | Wordfence | The MTCaptcha WordPress Plugin for WordPress is vulnerable… | Details |
| CVE-2025-14034 | 2026-01-06 03:21:40 | 2026-04-08 17:30:21 | Wordfence | The ilGhera Support System for WooCommerce plugin for… | Details |
| CVE-2026-1280 | 2026-01-28 11:23:41 | 2026-04-08 17:30:20 | Wordfence | The Frontend File Manager Plugin for WordPress is… | Details |
| CVE-2025-9318 | 2026-01-06 09:20:59 | 2026-04-08 17:30:10 | Wordfence | The Quiz and Survey Master (QSM) – Easy… | Details |
| CVE-2025-13493 | 2026-01-07 08:21:54 | 2026-04-08 17:30:06 | Wordfence | The Latest Registered Users plugin for WordPress is… | Details |
| CVE-2025-14976 | 2026-01-10 08:22:57 | 2026-04-08 17:29:48 | Wordfence | The User Registration & Membership – Custom Registration… | Details |
| CVE-2026-1310 | 2026-01-28 06:43:45 | 2026-04-08 17:29:46 | Wordfence | The Simple calendar for Elementor plugin for WordPress… | Details |
| CVE-2025-14657 | 2026-01-09 07:22:12 | 2026-04-08 17:29:31 | Wordfence | The Eventin – Event Manager, Events Calendar, Event… | Details |
| CVE-2026-0554 | 2026-01-20 14:26:34 | 2026-04-08 17:29:28 | Wordfence | The NotificationX plugin for WordPress is vulnerable to… | Details |
| CVE-2025-14077 | 2026-01-07 09:21:05 | 2026-04-08 17:29:25 | Wordfence | The Simcast plugin for WordPress is vulnerable to… | Details |
| CVE-2026-1000 | 2026-01-16 04:44:35 | 2026-04-08 17:29:06 | Wordfence | The MailerLite - WooCommerce integration plugin for WordPress… | Details |
| CVE-2025-15058 | 2026-01-07 09:21:05 | 2026-04-08 17:29:05 | Wordfence | The Responsive Pricing Table plugin for WordPress is… | Details |
| CVE-2025-13205 | 2026-01-24 09:08:09 | 2026-04-08 17:28:53 | Wordfence | The SurveyJS: Drag & Drop WordPress Form Builder… | Details |
| CVE-2025-15475 | 2026-01-14 06:40:08 | 2026-04-08 17:28:47 | Wordfence | The PayHere Payment Gateway Plugin for WooCommerce plugin… | Details |
| CVE-2025-14502 | 2026-01-14 05:28:13 | 2026-04-08 17:28:40 | Wordfence | The News and Blog Designer Bundle plugin for… | Details |
| CVE-2026-1099 | 2026-01-24 07:26:48 | 2026-04-08 17:28:21 | Wordfence | The Administrative Shortcodes plugin for WordPress is vulnerable… | Details |
| CVE-2025-15510 | 2026-01-31 01:23:02 | 2026-04-08 17:28:13 | Wordfence | The NEX-Forms – Ultimate Forms Plugin for WordPress… | Details |
| CVE-2025-14114 | 2026-01-07 09:21:04 | 2026-04-08 17:28:12 | Wordfence | The 1180px Shortcodes plugin for WordPress is vulnerable… | Details |
| CVE-2025-15376 | 2026-01-14 06:40:08 | 2026-04-08 17:28:06 | Wordfence | The Stopwords for comments plugin for WordPress is… | Details |
| CVE-2025-14745 | 2026-01-23 05:29:51 | 2026-04-08 17:27:58 | Wordfence | The RSS Aggregator – RSS Import, News Feeds,… | Details |
| CVE-2025-12718 | 2026-01-17 02:22:32 | 2026-04-08 17:27:48 | Wordfence | The Quick Contact Form plugin for WordPress is… | Details |
| CVE-2026-1054 | 2026-01-28 07:27:35 | 2026-04-08 17:27:26 | Wordfence | The RegistrationMagic plugin for WordPress is vulnerable to… | Details |
| CVE-2026-1098 | 2026-01-24 08:26:36 | 2026-04-08 17:27:24 | Wordfence | The CM CSS Columns plugin for WordPress is… | Details |
| CVE-2025-14854 | 2026-01-14 05:28:12 | 2026-04-08 17:27:19 | Wordfence | The WP-CRM System plugin for WordPress is vulnerable… | Details |
| CVE-2025-12178 | 2026-01-14 05:28:12 | 2026-04-08 17:27:11 | Wordfence | The SpiceForms Form Builder plugin for WordPress is… | Details |
| CVE-2025-14609 | 2026-01-24 07:26:47 | 2026-04-08 17:27:03 | Wordfence | The Wise Analytics plugin for WordPress is vulnerable… | Details |
| CVE-2025-5919 | 2026-01-06 08:21:49 | 2026-04-08 17:26:57 | Wordfence | The Appointment Booking and Scheduling Calendar Plugin –… | Details |
| CVE-2025-14460 | 2026-01-07 09:21:04 | 2026-04-08 17:26:39 | Wordfence | The Piraeus Bank WooCommerce Payment Gateway plugin for… | Details |
| CVE-2025-15370 | 2026-01-16 04:44:35 | 2026-04-08 17:26:36 | Wordfence | The Shield: Blocks Bots, Protects Users, and Prevents… | Details |
| CVE-2026-0633 | 2026-01-24 08:26:35 | 2026-04-08 17:26:32 | Wordfence | The MetForm – Contact Form, Survey, Quiz, &… | Details |
| CVE-2025-14122 | 2026-01-07 09:21:04 | 2026-04-08 17:26:26 | Wordfence | The AD Sliding FAQ plugin for WordPress is… | Details |
| CVE-2025-11453 | 2026-01-09 11:15:36 | 2026-04-08 17:26:20 | Wordfence | The Header and Footer Scripts plugin for WordPress… | Details |
| CVE-2025-13527 | 2026-01-07 08:21:54 | 2026-04-08 17:26:15 | Wordfence | The xShare plugin for WordPress is vulnerable to… | Details |
| CVE-2026-1400 | 2026-01-28 08:26:56 | 2026-04-08 17:25:58 | Wordfence | The AI Engine – The Chatbot and AI… | Details |
| CVE-2025-14533 | 2026-01-20 09:25:00 | 2026-04-08 17:25:47 | Wordfence | The Advanced Custom Fields: Extended plugin for WordPress… | Details |
| CVE-2025-11370 | 2026-01-06 03:21:40 | 2026-04-08 17:25:35 | Wordfence | The Popup and Slider Builder by Depicter –… | Details |
| CVE-2025-13908 | 2026-01-09 11:15:35 | 2026-04-08 17:25:24 | Wordfence | The The Tooltip plugin for WordPress is vulnerable… | Details |
| CVE-2025-15525 | 2026-01-31 04:35:15 | 2026-04-08 17:24:49 | Wordfence | The Ajax Load More – Infinite Scroll, Load… | Details |
| CVE-2025-13862 | 2026-01-09 11:15:35 | 2026-04-08 17:24:31 | Wordfence | The Menu Card plugin for WordPress is vulnerable… | Details |
| CVE-2026-1053 | 2026-01-28 08:26:55 | 2026-04-08 17:24:13 | Wordfence | The Ivory Search – WordPress Search Plugin plugin… | Details |
| CVE-2025-14574 | 2026-01-09 06:34:56 | 2026-04-08 17:23:36 | Wordfence | The weDocs plugin for WordPress is vulnerable to… | Details |
| CVE-2026-0746 | 2026-01-27 18:27:55 | 2026-04-08 17:23:35 | Wordfence | The AI Engine plugin for WordPress is vulnerable… | Details |
| CVE-2025-14173 | 2026-01-14 06:40:07 | 2026-04-08 17:23:24 | Wordfence | The Perfit WooCommerce plugin for WordPress is vulnerable… | Details |
| CVE-2026-1097 | 2026-01-24 07:26:47 | 2026-04-08 17:22:10 | Wordfence | The ThemeRuby Multi Authors – Assign Multiple Writers… | Details |
| CVE-2025-12958 | 2026-01-07 08:21:54 | 2026-04-08 17:21:51 | Wordfence | The Rankology SEO and Analytics Tool plugin for… | Details |
| CVE-2025-14941 | 2026-01-24 07:26:46 | 2026-04-08 17:21:44 | Wordfence | The GZSEO plugin for WordPress is vulnerable to… | Details |
| CVE-2025-14842 | 2026-01-07 06:36:03 | 2026-04-08 17:21:26 | Wordfence | The Drag and Drop Multiple File Upload –… | Details |
| CVE-2025-13974 | 2026-01-07 09:21:03 | 2026-04-08 17:21:13 | Wordfence | The Email Customizer for WooCommerce plugin for WordPress… | Details |
| CVE-2025-14172 | 2026-01-09 11:15:34 | 2026-04-08 17:20:58 | Wordfence | The WP Page Permalink Extension plugin for WordPress… | Details |
| CVE-2025-14506 | 2026-01-10 11:22:38 | 2026-04-08 17:20:54 | Wordfence | The ConvertForce Popup Builder plugin for WordPress is… | Details |
| CVE-2025-13921 | 2026-01-23 13:24:24 | 2026-04-08 17:20:52 | Wordfence | The weDocs: AI Powered Knowledge Base, Docs, Documentation,… | Details |
| CVE-2025-14039 | 2026-01-28 06:43:44 | 2026-04-08 17:20:20 | Wordfence | The Simple Folio plugin for WordPress is vulnerable… | Details |
| CVE-2025-14632 | 2026-01-17 02:22:32 | 2026-04-08 17:19:52 | Wordfence | The Filr – Secure document library plugin for… | Details |
| CVE-2026-1084 | 2026-01-24 07:26:46 | 2026-04-08 17:19:52 | Wordfence | The Cookie consent for developers plugin for WordPress… | Details |
| CVE-2025-13900 | 2026-01-09 09:19:47 | 2026-04-08 17:19:48 | Wordfence | The WP Popup Magic plugin for WordPress is… | Details |
| CVE-2025-12449 | 2026-01-07 07:17:34 | 2026-04-08 17:19:47 | Wordfence | The aBlocks – WordPress Gutenberg Blocks plugin for… | Details |
| CVE-2025-14121 | 2026-01-07 09:21:03 | 2026-04-08 17:19:34 | Wordfence | The EDD Download Info plugin for WordPress is… | Details |
| CVE-2026-0808 | 2026-01-17 06:42:20 | 2026-04-08 17:19:33 | Wordfence | The Spin Wheel plugin for WordPress is vulnerable… | Details |
| CVE-2025-14947 | 2026-01-23 17:26:06 | 2026-04-08 17:19:20 | Wordfence | The All-in-One Video Gallery plugin for WordPress is… | Details |
| CVE-2025-13717 | 2026-01-09 11:15:34 | 2026-04-08 17:19:03 | Wordfence | The Contact Form vCard Generator plugin for WordPress… | Details |
| CVE-2025-14846 | 2026-01-14 06:40:07 | 2026-04-08 17:19:00 | Wordfence | The SocialChamp with WordPress plugin for WordPress is… | Details |
| CVE-2026-1302 | 2026-01-24 08:26:35 | 2026-04-08 17:18:31 | Wordfence | The Meta-box GalleryMeta plugin for WordPress is vulnerable… | Details |
| CVE-2025-14630 | 2026-01-24 08:26:35 | 2026-04-08 17:18:29 | Wordfence | The AdminQuickbar plugin for WordPress is vulnerable to… | Details |
| CVE-2026-1127 | 2026-01-24 09:08:08 | 2026-04-08 17:18:14 | Wordfence | The Timeline Event History plugin for WordPress is… | Details |
| CVE-2025-14757 | 2026-01-16 08:38:29 | 2026-04-08 17:17:46 | Wordfence | The Cost Calculator Builder plugin for WordPress is… | Details |
| CVE-2025-14613 | 2026-01-14 05:28:12 | 2026-04-08 17:17:45 | Wordfence | The GetContentFromURL plugin for WordPress is vulnerable to… | Details |
| CVE-2025-13393 | 2026-01-10 13:47:35 | 2026-04-08 17:17:36 | Wordfence | The Featured Image from URL (FIFU) plugin for… | Details |
| CVE-2025-14843 | 2026-01-24 07:26:46 | 2026-04-08 17:17:28 | Wordfence | The Wizit Gateway for WooCommerce plugin for WordPress… | Details |
| CVE-2025-13529 | 2026-01-07 08:21:53 | 2026-04-08 17:17:19 | Wordfence | The Unify plugin for WordPress is vulnerable to… | Details |
| CVE-2025-15021 | 2026-01-14 05:28:11 | 2026-04-08 17:17:03 | Wordfence | The Gotham Block Extra Light plugin for WordPress… | Details |
| CVE-2025-12825 | 2026-01-17 04:34:02 | 2026-04-08 17:16:59 | Wordfence | The User Registration Using Contact Form 7 plugin… | Details |
| CVE-2025-15266 | 2026-01-14 05:28:11 | 2026-04-08 17:16:35 | Wordfence | The GeekyBot — Generate AI Content Without Prompt,… | Details |
| CVE-2025-15513 | 2026-01-14 06:40:07 | 2026-04-08 17:16:31 | Wordfence | The Float Payment Gateway plugin for WordPress is… | Details |
| CVE-2025-14893 | 2026-01-09 06:34:55 | 2026-04-08 17:16:28 | Wordfence | The IndieWeb plugin for WordPress is vulnerable to… | Details |
| CVE-2025-14478 | 2026-01-17 07:27:37 | 2026-04-08 17:16:27 | Wordfence | The Demo Importer Plus plugin for WordPress is… | Details |
| CVE-2025-15020 | 2026-01-14 05:28:10 | 2026-04-08 17:16:16 | Wordfence | The Gotham Block Extra Light plugin for WordPress… | Details |
| CVE-2025-14147 | 2026-01-07 09:21:03 | 2026-04-08 17:16:08 | Wordfence | The Easy GitHub Gist Shortcodes plugin for WordPress… | Details |
| CVE-2025-14153 | 2026-01-06 03:21:39 | 2026-04-08 17:16:01 | Wordfence | The Page Expire Popup/Redirection for WordPress plugin for… | Details |
| CVE-2025-14793 | 2026-01-16 06:43:21 | 2026-04-08 17:15:53 | Wordfence | The DK PDF – WordPress PDF Generator plugin… | Details |
| CVE-2025-15055 | 2026-01-09 06:34:55 | 2026-04-08 17:15:39 | Wordfence | The SlimStat Analytics plugin for WordPress is vulnerable… | Details |
| CVE-2025-14998 | 2026-01-02 01:48:20 | 2026-04-08 17:15:21 | Wordfence | The Branda plugin for WordPress is vulnerable to… | Details |
| CVE-2025-13964 | 2026-01-06 08:21:49 | 2026-04-08 17:15:21 | Wordfence | The LearnPress – WordPress LMS Plugin plugin for… | Details |
| CVE-2019-25296 | 2026-01-08 02:21:17 | 2026-04-08 17:15:21 | Wordfence | The WP Cost Estimation plugin for WordPress is… | Details |
| CVE-2025-13841 | 2026-01-07 09:21:02 | 2026-04-08 17:15:13 | Wordfence | The Smart App Banners plugin for WordPress is… | Details |
| CVE-2025-13801 | 2026-01-07 09:21:02 | 2026-04-08 17:15:10 | Wordfence | The Yoco Payments plugin for WordPress is vulnerable… | Details |
| CVE-2025-12957 | 2026-01-16 04:44:35 | 2026-04-08 17:15:08 | Wordfence | The All-in-One Video Gallery plugin for WordPress is… | Details |
| CVE-2025-13812 | 2026-01-06 07:22:12 | 2026-04-08 17:15:00 | Wordfence | The GamiPress – Gamification plugin to reward points,… | Details |
| CVE-2026-0604 | 2026-01-06 03:21:39 | 2026-04-08 17:14:55 | Wordfence | The FastDup – Fastest WordPress Migration & Duplicator… | Details |
| CVE-2025-12640 | 2026-01-08 02:21:16 | 2026-04-08 17:14:52 | Wordfence | The Folders – Unlimited Folders to Organize Media… | Details |
| CVE-2025-12709 | 2026-01-28 06:43:44 | 2026-04-08 17:14:40 | Wordfence | The Interactions – Create Interactive Experiences in the… | Details |
| CVE-2025-13194 | 2026-01-24 09:08:08 | 2026-04-08 17:14:39 | Wordfence | The SurveyJS: Drag & Drop WordPress Form Builder… | Details |
| CVE-2025-13652 | 2026-01-06 03:21:39 | 2026-04-08 17:13:54 | Wordfence | The CBX Bookmark & Favorite plugin for WordPress… | Details |
| CVE-2026-0683 | 2026-01-31 05:52:46 | 2026-04-08 17:13:40 | Wordfence | The SupportCandy – Helpdesk & Customer Support Ticket… | Details |
| CVE-2025-13704 | 2026-01-09 11:15:34 | 2026-04-08 17:13:27 | Wordfence | The Autogen Headers Menu plugin for WordPress is… | Details |
| CVE-2026-0702 | 2026-01-28 08:26:55 | 2026-04-08 17:13:25 | Wordfence | The VidShop – Shoppable Videos for WooCommerce plugin… | Details |
| CVE-2025-11723 | 2026-01-06 03:21:38 | 2026-04-08 17:13:22 | Wordfence | The Appointment Booking Calendar — Simply Schedule Appointments… | Details |
| CVE-2026-1083 | 2026-01-28 05:30:19 | 2026-04-08 17:13:20 | Wordfence | The Appointment Hour Booking – Booking Calendar plugin… | Details |
| CVE-2025-12641 | 2026-01-16 04:44:34 | 2026-04-08 17:13:18 | Wordfence | The Awesome Support - WordPress HelpDesk & Support… | Details |
| CVE-2025-4776 | 2026-01-06 06:36:26 | 2026-04-08 17:13:06 | Wordfence | The Phlox theme for WordPress is vulnerable to… | Details |
| CVE-2026-0741 | 2026-01-14 06:40:06 | 2026-04-08 17:12:35 | Wordfence | The Electric Studio Download Counter plugin for WordPress… | Details |
| CVE-2026-1075 | 2026-01-24 07:26:45 | 2026-04-08 17:12:03 | Wordfence | The ZT Captcha plugin for WordPress is vulnerable… | Details |
| CVE-2025-14078 | 2026-01-17 08:24:31 | 2026-04-08 17:11:40 | Wordfence | The PAYGENT for WooCommerce plugin for WordPress is… | Details |
| CVE-2025-14070 | 2026-01-07 09:21:01 | 2026-04-08 17:11:37 | Wordfence | The Reviewify plugin for WordPress is vulnerable to… | Details |
| CVE-2025-12648 | 2026-01-07 02:21:46 | 2026-04-08 17:11:30 | Wordfence | The WP-Members Membership Plugin for WordPress is vulnerable… | Details |
| CVE-2025-15380 | 2026-01-20 14:26:33 | 2026-04-08 17:11:27 | Wordfence | The NotificationX – FOMO, Live Sales Notification, WooCommerce… | Details |
| CVE-2025-15526 | 2026-01-16 04:44:34 | 2026-04-08 17:11:13 | Wordfence | The Fancy Product Designer plugin for WordPress is… | Details |
| CVE-2025-9082 | 2026-01-28 06:43:43 | 2026-04-08 17:10:57 | Wordfence | The WPBITS Addons For Elementor plugin for WordPress… | Details |
| CVE-2025-13369 | 2026-01-07 07:17:33 | 2026-04-08 17:10:54 | Wordfence | The Premmerce WooCommerce Customers Manager plugin for WordPress… | Details |
| CVE-2025-15512 | 2026-01-14 06:40:06 | 2026-04-08 17:10:31 | Wordfence | The Aplazo Payment Gateway plugin for WordPress is… | Details |
| CVE-2026-1191 | 2026-01-24 09:08:07 | 2026-04-08 17:10:25 | Wordfence | The JavaScript Notifier plugin for WordPress is vulnerable… | Details |
| CVE-2025-14971 | 2026-01-27 06:44:13 | 2026-04-08 17:10:16 | Wordfence | The Link Invoice Payment for WooCommerce plugin for… | Details |
| CVE-2026-0608 | 2026-01-20 14:26:33 | 2026-04-08 17:10:04 | Wordfence | The Head Meta Data plugin for WordPress is… | Details |
| CVE-2026-1081 | 2026-01-24 07:26:45 | 2026-04-08 17:09:58 | Wordfence | The Set Bulk Post Categories plugin for WordPress… | Details |
| CVE-2025-12067 | 2026-01-06 07:22:12 | 2026-04-08 17:09:47 | Wordfence | The Table Field Add-on for ACF and SCF… | Details |
| CVE-2025-14853 | 2026-01-16 06:43:21 | 2026-04-08 17:09:46 | Wordfence | The LEAV Last Email Address Validator plugin for… | Details |
| CVE-2025-14059 | 2026-01-07 03:21:03 | 2026-04-08 17:09:19 | Wordfence | The EmailKit plugin for WordPress is vulnerable to… | Details |
| CVE-2025-15057 | 2026-01-09 06:34:55 | 2026-04-08 17:06:47 | Wordfence | The SlimStat Analytics plugin for WordPress is vulnerable… | Details |
| CVE-2025-14275 | 2026-01-08 02:21:16 | 2026-04-08 17:06:38 | Wordfence | The Jeg Elementor Kit plugin for WordPress is… | Details |
| CVE-2025-13990 | 2026-01-07 09:21:00 | 2026-04-08 17:06:17 | Wordfence | The Mamurjor Employee Info plugin for WordPress is… | Details |
| CVE-2026-1051 | 2026-01-20 01:22:45 | 2026-04-08 17:06:15 | Wordfence | The Newsletter – Send awesome emails from WordPress… | Details |
| CVE-2025-13853 | 2026-01-09 09:19:47 | 2026-04-08 17:06:14 | Wordfence | The Nearby Now Reviews plugin for WordPress is… | Details |
| CVE-2025-14464 | 2026-01-14 05:28:10 | 2026-04-08 17:05:41 | Wordfence | The PDF Resume Parser plugin for WordPress is… | Details |
| CVE-2026-1251 | 2026-01-31 06:39:23 | 2026-04-08 17:05:35 | Wordfence | The SupportCandy – Helpdesk & Customer Support Ticket… | Details |
| CVE-2025-14448 | 2026-01-15 05:24:19 | 2026-04-08 17:05:34 | Wordfence | The WP-Members Membership Plugin plugin for WordPress is… | Details |
| CVE-2025-14997 | 2026-01-06 04:31:57 | 2026-04-08 17:05:31 | Wordfence | The BuddyPress Xprofile Custom Field Types plugin for… | Details |
| CVE-2025-13920 | 2026-01-24 12:27:15 | 2026-04-08 17:05:24 | Wordfence | The WP Directory Kit plugin for WordPress is… | Details |
| CVE-2025-14891 | 2026-01-07 03:21:03 | 2026-04-08 17:05:20 | Wordfence | The Customer Reviews for WooCommerce plugin for WordPress… | Details |
| CVE-2025-13627 | 2026-01-14 05:28:10 | 2026-04-08 17:05:20 | Wordfence | The Makesweat plugin for WordPress is vulnerable to… | Details |
| CVE-2025-9637 | 2026-01-06 09:20:58 | 2026-04-08 17:05:18 | Wordfence | The Quiz and Survey Master (QSM) – Easy… | Details |
| CVE-2025-14802 | 2026-01-07 07:17:33 | 2026-04-08 17:05:15 | Wordfence | The LearnPress – WordPress LMS Plugin for WordPress… | Details |
| CVE-2026-1295 | 2026-01-28 06:43:43 | 2026-04-08 17:05:10 | Wordfence | The Buy Now Plus – Buy Now buttons… | Details |
| CVE-2025-13419 | 2026-01-07 09:21:00 | 2026-04-08 17:05:06 | Wordfence | The Guest posting / Frontend Posting / Front… | Details |
| CVE-2026-0687 | 2026-01-24 08:26:34 | 2026-04-08 17:05:00 | Wordfence | The Meta-box GalleryMeta plugin for WordPress is vulnerable… | Details |
| CVE-2025-14120 | 2026-01-06 04:31:56 | 2026-04-08 17:04:58 | Wordfence | The URL Image Importer plugin for WordPress is… | Details |
| CVE-2025-14627 | 2026-01-01 16:19:31 | 2026-04-08 17:04:57 | Wordfence | The WP Import – Ultimate CSV XML Importer… | Details |
| CVE-2025-14629 | 2026-01-24 07:26:45 | 2026-04-08 17:04:46 | Wordfence | The Alchemist Ajax Upload plugin for WordPress is… | Details |
| CVE-2025-13892 | 2026-01-09 11:15:33 | 2026-04-08 17:04:44 | Wordfence | The MG AdvancedOptions plugin for WordPress is vulnerable… | Details |
| CVE-2026-0813 | 2026-01-14 06:40:05 | 2026-04-08 17:04:43 | Wordfence | The Short Link plugin for WordPress is vulnerable… | Details |
| CVE-2026-0913 | 2026-01-16 08:23:38 | 2026-04-08 17:04:39 | Wordfence | The User Submitted Posts – Enable Users to… | Details |
| CVE-2026-1103 | 2026-01-24 07:26:44 | 2026-04-08 17:04:25 | Wordfence | The AIKTP plugin for WordPress is vulnerable to… | Details |
| CVE-2025-14999 | 2026-01-07 08:21:53 | 2026-04-08 17:04:08 | Wordfence | The Latest Tabs plugin for WordPress is vulnerable… | Details |
| CVE-2025-14552 | 2026-01-06 09:20:58 | 2026-04-08 17:04:01 | Wordfence | The MediaPress plugin for WordPress is vulnerable to… | Details |
| CVE-2025-14465 | 2026-01-07 09:20:59 | 2026-04-08 17:04:00 | Wordfence | The Sticky Action Buttons plugin for WordPress is… | Details |
| CVE-2026-0691 | 2026-01-17 06:42:20 | 2026-04-08 17:03:54 | Wordfence | The CM E-Mail Blacklist – Simple email filtering… | Details |
| CVE-2025-14718 | 2026-01-09 06:34:54 | 2026-04-08 17:03:47 | Wordfence | The Schedule Post Changes With PublishPress Future plugin… | Details |
| CVE-2025-14463 | 2026-01-17 03:24:24 | 2026-04-08 17:03:43 | Wordfence | The Payment Button for PayPal plugin for WordPress… | Details |
| CVE-2025-13725 | 2026-01-17 03:24:24 | 2026-04-08 17:03:39 | Wordfence | The Gutenberg Thim Blocks – Page Builder, Gutenberg… | Details |
| CVE-2025-13215 | 2026-01-06 06:36:25 | 2026-04-08 17:03:19 | Wordfence | The Shortcodes and extra features for Phlox theme… | Details |
| CVE-2026-0593 | 2026-01-24 16:25:51 | 2026-04-08 17:03:17 | Wordfence | The WP Go Maps (formerly WP Google Maps)… | Details |
| CVE-2026-1060 | 2026-01-28 14:25:11 | 2026-04-08 17:03:16 | Wordfence | The WP Adminify plugin for WordPress is vulnerable… | Details |
| CVE-2026-0656 | 2026-01-07 06:36:03 | 2026-04-08 17:03:07 | Wordfence | The iPaymu Payment Gateway for WooCommerce plugin for… | Details |
| CVE-2025-13935 | 2026-01-09 07:22:11 | 2026-04-08 17:02:31 | Wordfence | The Tutor LMS – eLearning and online course… | Details |
| CVE-2025-14984 | 2026-01-08 09:20:52 | 2026-04-08 17:02:07 | Wordfence | The Gutenverse Form plugin for WordPress is vulnerable… | Details |
| CVE-2025-13371 | 2026-01-07 06:36:02 | 2026-04-08 17:01:46 | Wordfence | The MoneySpace plugin for WordPress is vulnerable to… | Details |
| CVE-2026-0831 | 2026-01-10 09:22:18 | 2026-04-08 17:01:43 | Wordfence | The Templately plugin for WordPress is vulnerable to… | Details |
| CVE-2025-14720 | 2026-01-09 06:34:54 | 2026-04-08 17:01:39 | Wordfence | The Booking for Appointments and Events Calendar –… | Details |
| CVE-2026-0682 | 2026-01-17 03:24:24 | 2026-04-08 17:01:39 | Wordfence | The Church Admin plugin for WordPress is vulnerable… | Details |
| CVE-2025-14985 | 2026-01-24 07:26:44 | 2026-04-08 17:01:08 | Wordfence | The Alpha Blocks plugin for WordPress is vulnerable… | Details |
| CVE-2026-0862 | 2026-01-24 15:34:06 | 2026-04-08 17:01:05 | Wordfence | The Save as PDF Plugin by PDFCrowd plugin… | Details |
| CVE-2026-1042 | 2026-01-20 05:30:18 | 2026-04-08 17:00:59 | Wordfence | The WP Hello Bar plugin for WordPress is… | Details |
| CVE-2025-14943 | 2026-01-10 06:32:34 | 2026-04-08 17:00:56 | Wordfence | The Blog2Social: Social Media Auto Post & Scheduler… | Details |
| CVE-2025-12984 | 2026-01-17 06:42:19 | 2026-04-08 17:00:47 | Wordfence | The Advanced Ads – Ad Manager & AdSense plugin… | Details |
| CVE-2025-14438 | 2026-01-06 04:31:56 | 2026-04-08 17:00:45 | Wordfence | The Xagio SEO – AI Powered SEO plugin… | Details |
| CVE-2026-0939 | 2026-01-16 06:43:20 | 2026-04-08 17:00:41 | Wordfence | The Rede Itaú for WooCommerce plugin for WordPress… | Details |
| CVE-2025-14554 | 2026-01-31 13:24:23 | 2026-04-08 17:00:40 | Wordfence | The Sell BTC - Cryptocurrency Selling Calculator plugin… | Details |
| CVE-2025-14797 | 2026-01-24 07:26:43 | 2026-04-08 17:00:19 | Wordfence | The Same Category Posts plugin for WordPress is… | Details |
| CVE-2026-0734 | 2026-01-14 06:40:05 | 2026-04-08 17:00:16 | Wordfence | The WP Allowed Hosts plugin for WordPress is… | Details |
| CVE-2025-14798 | 2026-01-20 03:25:17 | 2026-04-08 16:59:58 | Wordfence | The LearnPress – WordPress LMS Plugin for WordPress… | Details |
| CVE-2026-1095 | 2026-01-24 07:26:43 | 2026-04-08 16:59:51 | Wordfence | The Canto Testimonials plugin for WordPress is vulnerable… | Details |
| CVE-2025-14047 | 2026-01-02 01:48:19 | 2026-04-08 16:59:43 | Wordfence | The Registration, User Profile, Membership, Content Restriction, User… | Details |
| CVE-2025-14144 | 2026-01-07 09:20:59 | 2026-04-08 16:59:43 | Wordfence | The Mstoic Shortcodes plugin for WordPress is vulnerable… | Details |
| CVE-2026-1208 | 2026-01-24 09:08:07 | 2026-04-08 16:59:16 | Wordfence | The Friendly Functions for Welcart plugin for WordPress… | Details |
| CVE-2025-14880 | 2026-01-14 05:28:09 | 2026-04-08 16:59:13 | Wordfence | The Netcash WooCommerce Payment Gateway plugin for WordPress… | Details |
| CVE-2026-0725 | 2026-01-17 08:24:31 | 2026-04-08 16:58:57 | Wordfence | The Integrate Dynamics 365 CRM plugin for WordPress… | Details |
| CVE-2025-10484 | 2026-01-17 08:24:30 | 2026-04-08 16:58:55 | Wordfence | The Registration & Login with Mobile Phone Number… | Details |
| CVE-2025-14131 | 2026-01-07 09:20:58 | 2026-04-08 16:58:40 | Wordfence | The WP Widget Changer plugin for WordPress is… | Details |
| CVE-2025-15403 | 2026-01-17 02:22:32 | 2026-04-08 16:58:32 | Wordfence | The RegistrationMagic plugin for WordPress is vulnerable to… | Details |
| CVE-2025-12540 | 2026-01-07 08:21:52 | 2026-04-08 16:58:14 | Wordfence | The ShareThis Dashboard for Google Analytics plugin for… | Details |
| CVE-2025-14436 | 2026-01-08 21:21:54 | 2026-04-08 16:58:08 | Wordfence | The Brevo for WooCommerce plugin for WordPress is… | Details |
| CVE-2025-15521 | 2026-01-21 01:23:31 | 2026-04-08 16:58:00 | Wordfence | The Academy LMS – WordPress LMS Plugin for… | Details |
| CVE-2026-0920 | 2026-01-22 06:47:19 | 2026-04-08 16:57:54 | Wordfence | The LA-Studio Element Kit for Elementor plugin for… | Details |
| CVE-2026-0806 | 2026-01-24 07:26:43 | 2026-04-08 16:57:52 | Wordfence | The WP-ClanWars plugin for WordPress is vulnerable to… | Details |
| CVE-2019-25295 | 2026-01-08 01:50:10 | 2026-04-08 16:57:51 | Wordfence | The WP Cost Estimation plugin for WordPress is… | Details |
| CVE-2025-14069 | 2026-01-23 05:29:51 | 2026-04-08 16:57:44 | Wordfence | The Schema & Structured Data for WP &… | Details |
| CVE-2025-14453 | 2026-01-07 09:20:58 | 2026-04-08 16:57:29 | Wordfence | The My Album Gallery plugin for WordPress is… | Details |
| CVE-2026-0833 | 2026-01-17 06:42:19 | 2026-04-08 16:57:17 | Wordfence | The Team Section Block plugin for WordPress is… | Details |
| CVE-2025-14113 | 2026-01-07 09:20:58 | 2026-04-08 16:56:47 | Wordfence | The Viitor Button Shortcodes plugin for WordPress is… | Details |
| CVE-2025-14351 | 2026-01-20 03:25:16 | 2026-04-08 16:56:41 | Wordfence | The Custom Fonts – Host Your Fonts Locally… | Details |
| CVE-2025-14001 | 2026-01-13 11:21:19 | 2026-04-08 16:56:38 | Wordfence | The WP Duplicate Page plugin for WordPress is… | Details |
| CVE-2025-14112 | 2026-01-07 09:20:57 | 2026-04-08 16:56:25 | Wordfence | The Snillrik Restaurant plugin for WordPress is vulnerable… | Details |
| CVE-2025-14482 | 2026-01-14 05:28:09 | 2026-04-08 16:56:11 | Wordfence | The Crush.pics Image Optimizer - Image Compression and… | Details |
| CVE-2025-13934 | 2026-01-09 07:22:11 | 2026-04-08 16:56:00 | Wordfence | The Tutor LMS – eLearning and online course… | Details |
| CVE-2025-13374 | 2026-01-24 07:26:42 | 2026-04-08 16:56:00 | Wordfence | The Kalrav AI Agent plugin for WordPress is… | Details |
| CVE-2025-14795 | 2026-01-28 13:26:14 | 2026-04-08 16:55:49 | Wordfence | The Stop Spammers Classic plugin for WordPress is… | Details |
| CVE-2025-13418 | 2026-01-07 09:20:57 | 2026-04-08 16:55:47 | Wordfence | The Responsive Pricing Table plugin for WordPress is… | Details |
| CVE-2025-13897 | 2026-01-09 11:15:33 | 2026-04-08 16:55:30 | Wordfence | The Client Testimonial Slider plugin for WordPress is… | Details |
| CVE-2025-14626 | 2026-01-07 09:20:57 | 2026-04-08 16:55:18 | Wordfence | The QR Code for WooCommerce order emails, PDF… | Details |
| CVE-2025-12030 | 2026-01-07 08:21:52 | 2026-04-08 16:55:13 | Wordfence | The ACF to REST API plugin for WordPress… | Details |
| CVE-2025-13519 | 2026-01-07 08:21:51 | 2026-04-08 16:55:11 | Wordfence | The SVG Map Plugin plugin for WordPress is… | Details |
| CVE-2026-1389 | 2026-01-28 07:27:34 | 2026-04-08 16:54:55 | Wordfence | The Document Embedder – Embed PDFs, Word, Excel,… | Details |
| CVE-2025-14348 | 2026-01-20 04:35:46 | 2026-04-08 16:54:54 | Wordfence | The weMail - Email Marketing, Lead Generation, Optin… | Details |
| CVE-2025-14130 | 2026-01-07 09:20:56 | 2026-04-08 16:54:50 | Wordfence | The Post Like Dislike plugin for WordPress is… | Details |
| CVE-2025-13849 | 2026-01-07 09:20:56 | 2026-04-08 16:54:41 | Wordfence | The Cool YT Player plugin for WordPress is… | Details |
| CVE-2026-1165 | 2026-01-31 14:22:29 | 2026-04-08 16:54:35 | Wordfence | The Popup Box plugin for WordPress is vulnerable… | Details |
| CVE-2025-13887 | 2026-01-07 09:20:55 | 2026-04-08 16:53:39 | Wordfence | The AI BotKit – AI Chatbot & Live… | Details |
| CVE-2026-0635 | 2026-01-14 05:28:08 | 2026-04-08 16:53:34 | Wordfence | The Responsive Accordion Slider plugin for WordPress is… | Details |
| CVE-2025-9294 | 2026-01-06 08:21:49 | 2026-04-08 16:53:30 | Wordfence | The Quiz and Survey Master (QSM) – Easy… | Details |
| CVE-2025-13749 | 2026-01-09 05:25:20 | 2026-04-08 16:53:29 | Wordfence | The Clearfy Cache – WordPress optimization plugin, Minify… | Details |
| CVE-2026-1076 | 2026-01-24 07:26:42 | 2026-04-08 16:53:23 | Wordfence | The Star Review Manager plugin for WordPress is… | Details |
| CVE-2025-14978 | 2026-01-20 01:22:45 | 2026-04-08 16:53:21 | Wordfence | The PeachPay — Payments & Express Checkout for… | Details |
| CVE-2025-14741 | 2026-01-09 07:22:11 | 2026-04-08 16:53:08 | Wordfence | The Frontend Admin by DynamiApps plugin for WordPress… | Details |
| CVE-2025-14906 | 2026-01-24 07:26:42 | 2026-04-08 16:53:04 | Wordfence | The WP Youtube Video Gallery plugin for WordPress… | Details |
| CVE-2025-14145 | 2026-01-07 09:20:55 | 2026-04-08 16:52:46 | Wordfence | The Niche Hero | Beautifully-designed blocks in seconds… | Details |
| CVE-2025-12166 | 2026-01-14 22:23:50 | 2026-04-08 16:52:43 | Wordfence | The Appointment Booking Calendar — Simply Schedule Appointments… | Details |
| CVE-2026-1266 | 2026-01-24 08:26:34 | 2026-04-08 16:52:28 | Wordfence | The Postalicious plugin for WordPress is vulnerable to… | Details |
| CVE-2025-14352 | 2026-01-07 09:20:55 | 2026-04-08 16:52:09 | Wordfence | The Awesome Hotel Booking plugin for WordPress is… | Details |
| CVE-2026-0627 | 2026-01-09 08:20:46 | 2026-04-08 16:51:53 | Wordfence | The AMP for WP plugin for WordPress is… | Details |
| CVE-2026-1036 | 2026-01-21 23:23:27 | 2026-04-08 16:51:50 | Wordfence | The Photo Gallery by 10Web – Mobile-Friendly Image… | Details |
| CVE-2025-14865 | 2026-01-28 12:28:37 | 2026-04-08 16:51:48 | Wordfence | The Passster – Password Protect Pages and Content… | Details |
| CVE-2025-12836 | 2026-01-24 07:26:41 | 2026-04-08 16:51:40 | Wordfence | The VK Google Job Posting Manager plugin for… | Details |
| CVE-2025-15378 | 2026-01-14 05:28:08 | 2026-04-08 16:51:32 | Wordfence | The AJS Footnotes plugin for WordPress is vulnerable… | Details |
| CVE-2025-14886 | 2026-01-09 04:31:05 | 2026-04-08 16:51:07 | Wordfence | The Japanized for WooCommerce plugin for WordPress is… | Details |
| CVE-2025-14907 | 2026-01-24 08:26:33 | 2026-04-08 16:51:03 | Wordfence | The Moderate Selected Posts plugin for WordPress is… | Details |
| CVE-2025-14507 | 2026-01-13 13:49:13 | 2026-04-08 16:50:55 | Wordfence | The EventPrime - Events Calendar, Bookings and Tickets… | Details |
| CVE-2026-0678 | 2026-01-14 05:28:08 | 2026-04-08 16:50:48 | Wordfence | The Flat Shipping Rate by City for WooCommerce… | Details |
| CVE-2025-14977 | 2026-01-20 04:35:45 | 2026-04-08 16:50:47 | Wordfence | The Dokan: AI Powered WooCommerce Multivendor Marketplace Solution… | Details |
| CVE-2026-0942 | 2026-01-16 06:43:20 | 2026-04-08 16:50:25 | Wordfence | The Rede Itaú for WooCommerce — Payment PIX,… | Details |
| CVE-2025-14441 | 2026-01-06 04:31:55 | 2026-04-08 16:50:20 | Wordfence | The Popupkit plugin for WordPress is vulnerable to… | Details |
| CVE-2026-0927 | 2026-01-23 05:29:50 | 2026-04-08 16:50:16 | Wordfence | The KiviCare – Clinic & Patient Management System… | Details |
| CVE-2025-13854 | 2026-01-09 11:15:32 | 2026-04-08 16:50:11 | Wordfence | The Curved Text plugin for WordPress is vulnerable… | Details |
| CVE-2025-13628 | 2026-01-09 07:22:10 | 2026-04-08 16:49:55 | Wordfence | The Tutor LMS – eLearning and online course… | Details |
| CVE-2025-14937 | 2026-01-09 07:22:10 | 2026-04-08 16:49:53 | Wordfence | The Frontend Admin by DynamiApps plugin for WordPress… | Details |
| CVE-2025-14450 | 2026-01-17 02:22:31 | 2026-04-08 16:49:48 | Wordfence | The Wallet System for WooCommerce plugin for WordPress… | Details |
| CVE-2026-0914 | 2026-01-23 12:26:59 | 2026-04-08 16:49:22 | Wordfence | The WP DSGVO Tools (GDPR) plugin for WordPress… | Details |
| CVE-2025-15522 | 2026-01-23 04:34:58 | 2026-04-08 16:48:47 | Wordfence | The Uncanny Automator – Easy Automation, Integration, Webhooks… | Details |
| CVE-2026-0825 | 2026-01-28 06:43:42 | 2026-04-08 16:48:22 | Wordfence | The Database for Contact Form 7, WPforms, Elementor… | Details |
| CVE-2025-14110 | 2026-01-07 09:20:54 | 2026-04-08 16:48:13 | Wordfence | The WP Js List Pages Shortcodes plugin for… | Details |
| CVE-2026-1381 | 2026-01-28 08:26:54 | 2026-04-08 16:48:10 | Wordfence | The Order Minimum/Maximum Amount Limits for WooCommerce plugin… | Details |
| CVE-2026-0694 | 2026-01-14 05:28:07 | 2026-04-08 16:47:51 | Wordfence | The SearchWiz plugin for WordPress is vulnerable to… | Details |
| CVE-2026-1244 | 2026-01-28 06:43:41 | 2026-04-08 16:47:47 | Wordfence | The Forms Bridge – Infinite integrations plugin for… | Details |
| CVE-2025-14375 | 2026-01-16 07:23:09 | 2026-04-08 16:47:38 | Wordfence | The RSS Aggregator – RSS Import, News Feeds,… | Details |
| CVE-2025-15283 | 2026-01-14 05:28:07 | 2026-04-08 16:47:29 | Wordfence | The Name Directory plugin for WordPress is vulnerable… | Details |
| CVE-2026-1380 | 2026-01-28 11:23:39 | 2026-04-08 16:47:28 | Wordfence | The Bitcoin Donate Button plugin for WordPress is… | Details |
| CVE-2025-14845 | 2026-01-07 06:36:01 | 2026-04-08 16:47:22 | Wordfence | The NS IE Compatibility Fixer plugin for WordPress… | Details |
| CVE-2025-13701 | 2026-01-09 11:15:32 | 2026-04-08 16:47:03 | Wordfence | The Shabat Keeper plugin for WordPress is vulnerable… | Details |
| CVE-2026-1189 | 2026-01-24 09:08:06 | 2026-04-08 16:46:57 | Wordfence | The LeadBI Plugin for WordPress plugin for WordPress… | Details |
| CVE-2026-1391 | 2026-01-28 11:23:38 | 2026-04-08 16:46:45 | Wordfence | The Vzaar Media Management plugin for WordPress is… | Details |
| CVE-2025-12168 | 2026-01-17 04:34:01 | 2026-04-08 16:46:43 | Wordfence | The Phrase TMS Integration for WordPress plugin for… | Details |
| CVE-2025-13848 | 2026-01-07 09:20:54 | 2026-04-08 16:46:41 | Wordfence | The STM Gallery 1.9 plugin for WordPress is… | Details |
| CVE-2026-1003 | 2026-01-16 07:23:09 | 2026-04-08 16:46:39 | Wordfence | The GetGenie plugin for WordPress is vulnerable to… | Details |
| CVE-2025-15377 | 2026-01-14 05:28:06 | 2026-04-08 16:46:35 | Wordfence | The Sosh Share Buttons plugin for WordPress is… | Details |
| CVE-2026-1056 | 2026-01-28 12:28:36 | 2026-04-08 16:46:24 | Wordfence | The Snow Monkey Forms plugin for WordPress is… | Details |
| CVE-2025-14888 | 2026-01-07 06:36:00 | 2026-04-08 16:46:19 | Wordfence | The Simple User Meta Editor plugin for WordPress… | Details |
| CVE-2024-11976 | 2026-01-23 06:45:11 | 2026-04-08 16:45:50 | Wordfence | The The BuddyPress plugin for WordPress is vulnerable… | Details |
| CVE-2025-15043 | 2026-01-20 14:26:32 | 2026-04-08 16:45:45 | Wordfence | The The Events Calendar plugin for WordPress is… | Details |
| CVE-2025-14301 | 2026-01-14 05:28:05 | 2026-04-08 16:45:44 | Wordfence | The Integration Opvius AI for WooCommerce plugin for… | Details |
| CVE-2025-13657 | 2026-01-07 06:35:59 | 2026-04-08 16:45:42 | Wordfence | The HelpDesk contact form plugin for WordPress is… | Details |
| CVE-2026-0680 | 2026-01-14 05:28:05 | 2026-04-08 16:45:17 | Wordfence | The Real Post Slider Lite plugin for WordPress… | Details |
| CVE-2026-0807 | 2026-01-24 07:26:41 | 2026-04-08 16:45:16 | Wordfence | The Frontis Blocks plugin for WordPress is vulnerable… | Details |
| CVE-2026-1300 | 2026-01-24 09:08:06 | 2026-04-08 16:44:51 | Wordfence | The Responsive Header plugin for WordPress is vulnerable… | Details |
| CVE-2025-14118 | 2026-01-07 09:20:54 | 2026-04-08 16:44:29 | Wordfence | The Starred Review plugin for WordPress is vulnerable… | Details |
| CVE-2025-13531 | 2026-01-07 08:21:51 | 2026-04-08 16:44:13 | Wordfence | The Stylish Order Form Builder plugin for WordPress… | Details |
| CVE-2025-15000 | 2026-01-07 08:21:50 | 2026-04-08 16:44:07 | Wordfence | The Page Keys plugin for WordPress is vulnerable… | Details |
| CVE-2025-14028 | 2026-01-07 09:20:53 | 2026-04-08 16:43:54 | Wordfence | The Contact Us Simple Form plugin for WordPress… | Details |
| CVE-2026-0563 | 2026-01-09 06:34:53 | 2026-04-08 16:43:43 | Wordfence | The WP Google Street View (with 360° virtual… | Details |
| CVE-2025-14782 | 2026-01-09 06:34:53 | 2026-04-08 16:43:38 | Wordfence | The Forminator Forms – Contact Form, Payment Form… | Details |
| CVE-2025-13409 | 2026-01-06 03:21:37 | 2026-04-08 16:43:14 | Wordfence | The Form Vibes – Database Manager for Forms… | Details |
| CVE-2026-0684 | 2026-01-13 13:49:12 | 2026-04-08 16:43:13 | Wordfence | The CP Image Store with Slideshow plugin for… | Details |
| CVE-2025-14146 | 2026-01-09 07:22:09 | 2026-04-08 16:43:02 | Wordfence | The Booking Calendar plugin for WordPress is vulnerable… | Details |
| CVE-2026-1298 | 2026-01-28 05:30:18 | 2026-04-08 16:42:52 | Wordfence | The Easy Replace Image plugin for WordPress is… | Details |
| CVE-2025-13766 | 2026-01-06 08:21:48 | 2026-04-08 16:42:51 | Wordfence | The MasterStudy LMS WordPress Plugin – for Online… | Details |
| CVE-2025-8072 | 2026-01-28 05:30:17 | 2026-04-08 16:42:50 | Wordfence | The Target Video Easy Publish plugin for WordPress… | Details |
| CVE-2025-11877 | 2026-01-07 08:21:49 | 2026-04-08 16:42:09 | Wordfence | The User Activity Log plugin is vulnerable to… | Details |
| CVE-2026-0911 | 2026-01-24 12:27:15 | 2026-04-08 16:41:45 | Wordfence | The Hustle – Email Marketing, Lead Generation, Optins,… | Details |
| CVE-2025-15001 | 2026-01-06 04:31:55 | 2026-04-08 16:41:37 | Wordfence | The FS Registration Password plugin for WordPress is… | Details |
| CVE-2025-14887 | 2026-01-07 06:35:59 | 2026-04-08 16:41:37 | Wordfence | The twinklesmtp – Email Service Provider For WordPress… | Details |
| CVE-2025-12129 | 2026-01-17 07:27:37 | 2026-04-08 16:41:09 | Wordfence | The CubeWP – All-in-One Dynamic Content Framework plugin… | Details |
| CVE-2025-14725 | 2026-01-14 05:28:05 | 2026-04-08 16:41:08 | Wordfence | The Internal Link Builder plugin for WordPress is… | Details |
| CVE-2025-14075 | 2026-01-17 02:22:30 | 2026-04-08 16:41:05 | Wordfence | The WP Hotel Booking plugin for WordPress is… | Details |
| CVE-2025-14371 | 2026-01-06 07:22:11 | 2026-04-08 16:40:55 | Wordfence | The Tag, Category, and Taxonomy Manager – AI… | Details |
| CVE-2026-0800 | 2026-01-24 08:26:32 | 2026-04-08 16:40:53 | Wordfence | The User Submitted Posts – Enable Users to… | Details |
| CVE-2025-14370 | 2026-01-07 06:35:58 | 2026-04-08 16:40:51 | Wordfence | The Quote Comments plugin for WordPress is vulnerable… | Details |
| CVE-2025-14796 | 2026-01-07 09:20:53 | 2026-04-08 16:40:41 | Wordfence | The My Album Gallery plugin for WordPress is… | Details |
| CVE-2025-13967 | 2026-01-09 11:15:31 | 2026-04-08 16:40:39 | Wordfence | The Woodpecker for WordPress plugin for WordPress is… | Details |
| CVE-2026-0812 | 2026-01-14 06:40:05 | 2026-04-08 16:39:42 | Wordfence | The LinkedIn SC plugin for WordPress is vulnerable… | Details |
| CVE-2025-13852 | 2026-01-09 11:15:31 | 2026-04-08 16:38:18 | Wordfence | The Debt.com Business in a Box plugin for… | Details |
| CVE-2025-14428 | 2026-01-01 16:19:30 | 2026-04-08 16:38:15 | Wordfence | The All-in-one Sticky Floating Contact Form, Call, Click… | Details |
| CVE-2025-15511 | 2026-01-28 11:23:38 | 2026-04-08 16:38:11 | Wordfence | The Rupantorpay plugin for WordPress is vulnerable to… | Details |
| CVE-2026-1070 | 2026-01-24 07:26:40 | 2026-04-08 16:38:04 | Wordfence | The Alex User Counter plugin for WordPress is… | Details |
| CVE-2025-14457 | 2026-01-15 06:45:04 | 2026-04-08 16:37:59 | Wordfence | The Drag and Drop Multiple File Upload for… | Details |
| CVE-2025-14128 | 2026-01-07 09:20:52 | 2026-04-08 16:37:57 | Wordfence | The Stumble! for WordPress plugin for WordPress is… | Details |
| CVE-2026-0717 | 2026-01-14 05:28:04 | 2026-04-08 16:37:55 | Wordfence | The LottieFiles – Lottie block for Gutenberg plugin… | Details |
| CVE-2025-14903 | 2026-01-24 07:26:40 | 2026-04-08 16:37:41 | Wordfence | The Simple Crypto Shortcodes plugin for WordPress is… | Details |
| CVE-2025-13893 | 2026-01-09 11:15:30 | 2026-04-08 16:37:37 | Wordfence | The Lesson Plan Book plugin for WordPress is… | Details |
| CVE-2025-13062 | 2026-01-15 13:23:24 | 2026-04-08 16:37:34 | Wordfence | The Supreme Modules Lite plugin for WordPress is… | Details |
| CVE-2025-14982 | 2026-01-16 04:44:33 | 2026-04-08 16:37:05 | Wordfence | The Booking Calendar plugin for WordPress is vulnerable… | Details |
| CVE-2025-14127 | 2026-01-07 09:20:52 | 2026-04-08 16:37:03 | Wordfence | The Testimonial Master plugin for WordPress is vulnerable… | Details |
| CVE-2025-14980 | 2026-01-09 06:34:52 | 2026-04-08 16:36:59 | Wordfence | The BetterDocs plugin for WordPress is vulnerable to… | Details |
| CVE-2026-0690 | 2026-01-20 14:26:32 | 2026-04-08 16:36:51 | Wordfence | The FlatPM – Ad Manager, AdSense and Custom… | Details |
| CVE-2025-14389 | 2026-01-14 05:28:04 | 2026-04-08 16:36:45 | Wordfence | The WPBlogSyn plugin for WordPress is vulnerable to… | Details |
| CVE-2026-1045 | 2026-01-20 05:30:17 | 2026-04-08 16:36:35 | Wordfence | The Viet contact plugin for WordPress is vulnerable… | Details |
| CVE-2025-13667 | 2026-01-07 09:20:52 | 2026-04-08 16:36:29 | Wordfence | The WP Recipe Manager plugin for WordPress is… | Details |
| CVE-2025-14770 | 2026-01-14 06:40:04 | 2026-04-08 16:36:19 | Wordfence | The Shipping Rate By Cities plugin for WordPress… | Details |
| CVE-2026-1257 | 2026-01-24 07:26:39 | 2026-04-08 16:36:15 | Wordfence | The Administrative Shortcodes plugin for WordPress is vulnerable… | Details |
| CVE-2025-12379 | 2026-01-10 13:47:35 | 2026-04-08 16:36:14 | Wordfence | The Shortcodes and extra features for Phlox theme… | Details |
| CVE-2025-14615 | 2026-01-14 05:28:03 | 2026-04-08 16:35:58 | Wordfence | The DASHBOARD BUILDER – WordPress plugin for Charts… | Details |
| CVE-2026-1377 | 2026-01-28 11:23:37 | 2026-04-08 16:35:52 | Wordfence | The imwptip plugin for WordPress is vulnerable to… | Details |
| CVE-2025-6461 | 2026-01-25 02:22:37 | 2026-04-08 16:35:33 | Wordfence | The CubeWP – All-in-One Dynamic Content Framework plugin… | Details |
| CVE-2025-13729 | 2026-01-09 09:19:46 | 2026-04-08 16:35:29 | Wordfence | The Entry Views plugin for WordPress is vulnerable… | Details |
| CVE-2025-12895 | 2026-01-15 13:23:24 | 2026-04-08 16:35:28 | Wordfence | The Kalium 3 | Creative WordPress & WooCommerce… | Details |
| CVE-2026-0548 | 2026-01-20 14:26:31 | 2026-04-08 16:35:25 | Wordfence | The Tutor LMS – eLearning and online course… | Details |
| CVE-2025-14468 | 2026-01-07 04:32:04 | 2026-04-08 16:35:14 | Wordfence | The AMP for WP – Accelerated Mobile Pages… | Details |
| CVE-2025-14844 | 2026-01-16 09:23:46 | 2026-04-08 16:35:02 | Wordfence | The Membership Plugin – Restrict Content plugin for… | Details |
| CVE-2025-13139 | 2026-01-24 09:08:05 | 2026-04-08 16:34:58 | Wordfence | The SurveyJS: Drag & Drop WordPress Form Builder… | Details |
| CVE-2026-1431 | 2026-01-31 04:35:14 | 2026-04-08 16:34:56 | Wordfence | The Booking Calendar plugin for WordPress is vulnerable… | Details |
| CVE-2025-14109 | 2026-01-07 09:20:51 | 2026-04-08 16:34:52 | Wordfence | The AH Shortcodes plugin for WordPress is vulnerable… | Details |
| CVE-2025-15466 | 2026-01-19 23:21:52 | 2026-04-08 16:34:47 | Wordfence | The Image Photo Gallery Final Tiles Grid plugin… | Details |
| CVE-2025-15019 | 2026-01-09 06:34:52 | 2026-04-08 16:34:46 | Wordfence | The BIALTY - Bulk Image Alt Text (Alt… | Details |
| CVE-2025-13903 | 2026-01-09 11:15:30 | 2026-04-08 16:34:35 | Wordfence | The PullQuote plugin for WordPress is vulnerable to… | Details |
| CVE-2025-14029 | 2026-01-17 04:34:00 | 2026-04-08 16:34:30 | Wordfence | The Community Events plugin for WordPress is vulnerable… | Details |
| CVE-2025-14835 | 2026-01-07 05:25:55 | 2026-04-08 16:34:22 | Wordfence | The WP Photo Album Plus plugin for WordPress… | Details |
| CVE-2025-13679 | 2026-01-08 07:04:12 | 2026-04-08 16:34:11 | Wordfence | The Tutor LMS – eLearning and online course… | Details |
| CVE-2025-14736 | 2026-01-09 06:34:51 | 2026-04-08 16:34:05 | Wordfence | The Frontend Admin by DynamiApps plugin for WordPress… | Details |
| CVE-2026-1004 | 2026-01-16 08:23:37 | 2026-04-08 16:33:51 | Wordfence | The Essential Addons for Elementor plugin for WordPress… | Details |
| CVE-2025-15364 | 2026-01-06 01:50:12 | 2026-04-08 16:33:45 | Wordfence | The Download Manager plugin for WordPress is vulnerable… | Details |
| CVE-2025-14875 | 2026-01-07 06:35:58 | 2026-04-08 16:33:39 | Wordfence | The HBLPAY Payment Gateway for WooCommerce plugin for… | Details |
| CVE-2025-14996 | 2026-01-06 04:31:54 | 2026-04-08 16:33:37 | Wordfence | The AS Password Field In Default Registration Form… | Details |
| CVE-2026-0916 | 2026-01-16 06:43:19 | 2026-04-08 16:33:23 | Wordfence | The Related Posts by Taxonomy plugin for WordPress… | Details |
| CVE-2025-14866 | 2026-01-23 12:26:59 | 2026-04-08 16:33:17 | Wordfence | The Melapress Role Editor plugin for WordPress is… | Details |
| CVE-2025-14901 | 2026-01-07 06:35:57 | 2026-04-08 16:33:04 | Wordfence | The Bit Form – Contact Form Plugin plugin… | Details |
| CVE-2026-0739 | 2026-01-14 06:40:04 | 2026-04-08 16:32:56 | Wordfence | The WMF Mobile Redirector plugin for WordPress is… | Details |
| CVE-2025-13694 | 2026-01-07 09:20:51 | 2026-04-08 16:32:55 | Wordfence | The AA Block Country plugin for WordPress is… | Details |
| CVE-2025-14053 | 2026-01-07 09:20:51 | 2026-04-08 16:32:43 | Wordfence | The Wish To Go plugin for WordPress is… | Details |
| CVE-2026-0594 | 2026-01-14 05:28:02 | 2026-04-08 16:32:41 | Wordfence | The List Site Contributors plugin for WordPress is… | Details |
| CVE-2025-14904 | 2026-01-07 06:35:57 | 2026-04-08 16:32:23 | Wordfence | The Newsletter Email Subscribe plugin for WordPress is… | Details |
| CVE-2025-13847 | 2026-01-07 09:20:50 | 2026-04-08 16:32:17 | Wordfence | The PhotoFade plugin for WordPress is vulnerable to… | Details |
| CVE-2023-54340 | 2026-01-13 22:52:10 | 2026-04-07 14:08:23 | VulnCheck | WorkOrder CMS 0.1.0 contains a SQL injection vulnerability… | Details |
| CVE-2023-54338 | 2026-01-13 22:52:09 | 2026-04-07 14:08:23 | VulnCheck | Tftpd32 SE 4.60 contains an unquoted service path… | Details |
| CVE-2023-54335 | 2026-01-13 22:52:08 | 2026-04-07 14:08:22 | VulnCheck | eXtplorer 2.1.14 contains an authentication bypass vulnerability that… | Details |
| CVE-2023-54333 | 2026-01-13 22:56:45 | 2026-04-07 14:08:21 | VulnCheck | Social-Share-Buttons 2.2.3 contains a critical SQL injection vulnerability… | Details |
| CVE-2023-53984 | 2026-01-13 22:52:04 | 2026-04-07 14:08:20 | VulnCheck | Clevo HotKey Clipboard 2.1.0.6 contains an unquoted service… | Details |
| CVE-2022-50939 | 2026-01-13 22:52:03 | 2026-04-07 14:06:43 | VulnCheck | e107 CMS version 3.2.1 contains a critical file… | Details |
| CVE-2022-50937 | 2026-01-13 22:52:02 | 2026-04-07 14:06:42 | VulnCheck | Ametys CMS v4.4.1 contains a persistent cross-site scripting… | Details |
| CVE-2022-50925 | 2026-01-13 22:51:56 | 2026-04-07 14:06:41 | VulnCheck | Prowise Reflect version 1.0.9 contains a remote keystroke… | Details |
| CVE-2022-50927 | 2026-01-13 22:51:57 | 2026-04-07 14:06:41 | VulnCheck | Cyclades Serial Console Server 3.3.0 contains a local… | Details |
| CVE-2022-50917 | 2026-01-13 22:51:53 | 2026-04-07 14:06:40 | VulnCheck | ProtonVPN 1.26.0 contains an unquoted service path vulnerability… | Details |
| CVE-2022-50916 | 2026-01-13 22:51:52 | 2026-04-07 14:06:39 | VulnCheck | e107 CMS version 3.2.1 contains a file upload… | Details |
| CVE-2022-50915 | 2026-01-13 22:51:52 | 2026-04-07 14:06:39 | VulnCheck | PTPublisher 2.3.4 contains an unquoted service path vulnerability… | Details |
| CVE-2022-50914 | 2026-01-13 22:51:52 | 2026-04-07 14:06:38 | VulnCheck | EaseUS Data Recovery 15.1.0.0 contains an unquoted service… | Details |
| CVE-2022-50908 | 2026-01-13 22:51:49 | 2026-04-07 14:06:37 | VulnCheck | Mailhog 1.0.1 contains a stored cross-site scripting vulnerability… | Details |
| CVE-2022-50907 | 2026-01-13 22:51:49 | 2026-04-07 14:06:36 | VulnCheck | e107 CMS version 3.2.1 contains a file upload… | Details |
| CVE-2022-50906 | 2026-01-13 22:51:48 | 2026-04-07 14:06:36 | VulnCheck | e107 CMS 3.2.1 contains an upload restriction bypass… | Details |
| CVE-2022-50905 | 2026-01-13 22:51:48 | 2026-04-07 14:06:35 | VulnCheck | e107 CMS version 3.2.1 contains multiple vulnerabilities that… | Details |
| CVE-2022-50894 | 2026-01-13 22:56:20 | 2026-04-07 14:06:32 | VulnCheck | VIAVIWEB Wallpaper Admin 1.0 contains an SQL injection… | Details |
| CVE-2022-50893 | 2026-01-13 22:56:15 | 2026-04-07 14:06:31 | VulnCheck | VIAVIWEB Wallpaper Admin 1.0 contains an unauthenticated remote… | Details |
| CVE-2022-50892 | 2026-01-13 22:56:08 | 2026-04-07 14:06:30 | VulnCheck | VIAVIWEB Wallpaper Admin 1.0 contains a SQL injection… | Details |
| CVE-2022-50891 | 2026-01-13 22:51:42 | 2026-04-07 14:06:29 | VulnCheck | Owlfiles File Manager 12.0.1 contains a cross-site scripting… | Details |
| CVE-2022-50890 | 2026-01-13 22:51:41 | 2026-04-07 14:06:28 | VulnCheck | Owlfiles File Manager 12.0.1 contains a path traversal… | Details |
| CVE-2022-50806 | 2026-01-13 22:51:40 | 2026-04-07 14:06:27 | VulnCheck | 4images 1.9 contains a remote command execution vulnerability… | Details |
| CVE-2021-47891 | 2026-01-23 16:47:36 | 2026-04-07 14:06:24 | VulnCheck | Unified Remote 3.9.0.2463 contains a remote code execution… | Details |
| CVE-2021-47872 | 2026-01-21 17:27:47 | 2026-04-07 14:06:23 | VulnCheck | SEO Panel versions prior to 4.9.0 contain a… | Details |
| CVE-2021-47865 | 2026-01-21 17:27:44 | 2026-04-07 14:06:22 | VulnCheck | ProFTPD 1.3.7a contains a denial of service vulnerability… | Details |
| CVE-2021-47864 | 2026-01-21 17:27:43 | 2026-04-07 14:06:21 | VulnCheck | OSAS Traverse Extension 11 contains an unquoted service… | Details |
| CVE-2021-47863 | 2026-01-21 17:27:43 | 2026-04-07 14:06:20 | VulnCheck | MacPaw Encrypto 1.0.1 contains an unquoted service path… | Details |
| CVE-2021-47860 | 2026-01-21 17:29:56 | 2026-04-07 14:06:20 | VulnCheck | GetSimple CMS Custom JS 0.1 plugin contains a… | Details |
| CVE-2021-47848 | 2026-01-21 17:27:35 | 2026-04-07 14:06:19 | VulnCheck | Blitar Tourism 1.0 contains an authentication bypass vulnerability… | Details |
| CVE-2021-47846 | 2026-01-21 17:27:34 | 2026-04-07 14:06:18 | VulnCheck | Digital Crime Report Management System 1.0 contains a… | Details |
| CVE-2021-47844 | 2026-01-16 19:09:40 | 2026-04-07 14:06:17 | VulnCheck | Xmind 2020 contains a cross-site scripting vulnerability that… | Details |
| CVE-2021-47830 | 2026-01-21 17:27:34 | 2026-04-07 14:06:16 | VulnCheck | GetSimple CMS My SMTP Contact Plugin 1.1.1 contains… | Details |
| CVE-2021-47808 | 2026-01-15 23:25:51 | 2026-04-07 14:06:15 | VulnCheck | Cotonti Siena 0.9.19 contains a stored cross-site scripting… | Details |
| CVE-2021-47812 | 2026-01-15 23:25:54 | 2026-04-07 14:06:15 | VulnCheck | GravCMS 1.10.7 contains an unauthenticated vulnerability that allows… | Details |
| CVE-2021-47800 | 2026-01-15 23:25:46 | 2026-04-07 14:06:13 | VulnCheck | b2evolution 7.2.2 contains a cross-site request forgery vulnerability… | Details |
| CVE-2021-47795 | 2026-01-15 23:25:44 | 2026-04-07 14:06:12 | VulnCheck | GeoVision GeoWebServer 5.3.3 contains multiple vulnerabilities including local… | Details |
| CVE-2021-47796 | 2026-01-15 23:25:44 | 2026-04-07 14:06:12 | VulnCheck | Denver SHC-150 Smart Wifi Camera contains a hardcoded… | Details |
| CVE-2021-47789 | 2026-01-15 23:25:40 | 2026-04-07 14:06:11 | VulnCheck | Yenkee Hornet Gaming Mouse driver GM312Fltr.sys contains a… | Details |
| CVE-2021-47787 | 2026-01-15 23:25:39 | 2026-04-07 14:06:10 | VulnCheck | TotalAV 5.15.69 contains an unquoted service path vulnerability… | Details |
| CVE-2021-47786 | 2026-01-15 23:25:39 | 2026-04-07 14:06:10 | VulnCheck | Redragon Gaming Mouse driver contains a kernel-level vulnerability… | Details |
| CVE-2021-47783 | 2026-01-15 23:25:38 | 2026-04-07 14:06:09 | VulnCheck | Phpwcms 1.9.30 contains a file upload vulnerability that… | Details |
| CVE-2021-47779 | 2026-01-15 23:25:36 | 2026-04-07 14:06:08 | VulnCheck | Dolibarr ERP-CRM 14.0.2 contains a stored cross-site scripting… | Details |
| CVE-2021-47777 | 2026-01-15 15:52:14 | 2026-04-07 14:06:06 | VulnCheck | Build Smart ERP 21.0817 contains an unauthenticated SQL… | Details |
| CVE-2021-47776 | 2026-01-15 15:52:13 | 2026-04-07 14:06:05 | VulnCheck | Umbraco CMS v8.14.1 contains a server-side request forgery… | Details |
| CVE-2021-47770 | 2026-01-21 17:27:32 | 2026-04-07 14:06:05 | VulnCheck | OpenPLC v3 contains an authenticated remote code execution… | Details |
| CVE-2021-47763 | 2026-01-15 15:52:07 | 2026-04-07 14:06:00 | VulnCheck | Aimeos 2021.10 LTS contains a SQL injection vulnerability… | Details |
| CVE-2021-47762 | 2026-01-15 15:52:07 | 2026-04-07 14:05:59 | VulnCheck | HTTPDebuggerPro 9.11 contains an unquoted service path vulnerability… | Details |
| CVE-2021-47756 | 2026-01-15 23:25:35 | 2026-04-07 14:05:58 | VulnCheck | Laravel Valet versions 1.1.4 to 2.0.3 contain a… | Details |
| CVE-2021-47754 | 2026-01-15 15:52:03 | 2026-04-07 14:05:57 | VulnCheck | Arunna 1.0.0 contains a cross-site request forgery vulnerability… | Details |
| CVE-2021-47755 | 2026-01-15 15:52:04 | 2026-04-07 14:05:57 | VulnCheck | Oliver Library Server v5 contains a file download… | Details |
| CVE-2021-47753 | 2026-01-15 15:52:03 | 2026-04-07 14:05:56 | VulnCheck | phpKF CMS 3.00 Beta y6 contains an unauthenticated… | Details |
| CVE-2021-47752 | 2026-01-15 15:52:02 | 2026-04-07 14:05:55 | VulnCheck | AWebServer GhostBuilding 18 contains a denial of service… | Details |
| CVE-2020-37005 | 2026-01-29 14:28:28 | 2026-04-07 14:05:15 | VulnCheck | TimeClock Software 1.01 contains an authenticated time-based SQL… | Details |
| CVE-2020-36983 | 2026-01-27 18:52:02 | 2026-04-07 14:05:12 | VulnCheck | Quick 'n Easy FTP Service 3.2 contains an… | Details |
| CVE-2020-36967 | 2026-01-28 17:35:09 | 2026-04-07 14:05:11 | VulnCheck | Zortam Mp3 Media Studio 27.60 contains a buffer… | Details |
| CVE-2020-36956 | 2026-01-26 17:42:53 | 2026-04-07 14:05:09 | VulnCheck | Openfire 4.6.0 contains a stored cross-site scripting vulnerability… | Details |
| CVE-2020-36952 | 2026-01-26 16:00:24 | 2026-04-07 14:05:07 | VulnCheck | IObit Uninstaller 10 Pro contains an unquoted service… | Details |
| CVE-2020-36950 | 2026-01-27 15:23:50 | 2026-04-07 14:05:07 | VulnCheck | Laravel Nova 3.7.0 contains a denial of service… | Details |
| CVE-2020-36946 | 2026-01-27 15:23:49 | 2026-04-07 14:05:06 | VulnCheck | SyncBreeze 10.0.28 contains a denial of service vulnerability… | Details |
| CVE-2020-36939 | 2026-01-27 15:23:47 | 2026-04-07 14:05:04 | VulnCheck | Cassandra Web 0.5.0 contains a directory traversal vulnerability… | Details |
| CVE-2020-36926 | 2026-01-15 23:25:33 | 2026-04-07 14:05:01 | VulnCheck | SmarterTrack 7922 contains an information disclosure vulnerability in… | Details |
| CVE-2017-20215 | 2026-01-07 23:09:56 | 2026-04-07 14:03:40 | VulnCheck | FLIR Thermal Camera FC-S/PT firmware version 8.0.0.64 contains… | Details |
| CVE-2017-20216 | 2026-01-07 23:09:56 | 2026-04-07 14:03:40 | VulnCheck | FLIR Thermal Camera PT-Series firmware version 8.0.0.64 contains… | Details |
| CVE-2017-20214 | 2026-01-07 23:09:55 | 2026-04-07 14:03:39 | VulnCheck | FLIR Thermal Camera F/FC/PT/D firmware version 8.0.0.64 contains… | Details |
| CVE-2017-20213 | 2026-01-07 23:09:55 | 2026-04-07 14:03:38 | VulnCheck | FLIR Thermal Camera F/FC/PT/D Stream firmware version 8.0.0.64… | Details |
| CVE-2017-20212 | 2026-01-07 23:09:54 | 2026-04-07 14:03:37 | VulnCheck | FLIR Thermal Camera F/FC/PT/D firmware version 8.0.0.64 contains… | Details |
| CVE-2012-10064 | 2026-01-16 20:10:13 | 2026-04-07 14:02:55 | VulnCheck | Omni Secure Files plugin versions prior to 0.1.14… | Details |
| CVE-2025-67315 | 2026-01-05 00:00:00 | 2026-04-07 13:18:08 | mitre | DO NOT USE THIS CVE RECORD. ConsultIDs: none.… | Details |
| CVE-2024-48077 | 2026-01-15 00:00:00 | 2026-04-03 16:11:25 | mitre | NanoMQ v0.22.7 is vulnerable to Denial of Service… | Details |
| CVE-2025-68812 | 2026-01-13 15:29:17 | 2026-04-03 15:32:22 | Linux | This CVE ID has been rejected or withdrawn… | Details |
| CVE-2026-24477 | 2026-01-26 23:22:27 | 2026-04-03 13:16:06 | GitHub_M | AnythingLLM is an application that turns pieces of… | Details |
| CVE-2025-46297 | 2026-01-09 21:18:39 | 2026-04-02 18:25:22 | apple | A permissions issue was addressed with additional restrictions.… | Details |
| CVE-2025-31186 | 2026-01-16 17:06:10 | 2026-04-02 18:24:28 | apple | A permissions issue was addressed with additional restrictions.… | Details |
| CVE-2025-46306 | 2026-01-28 17:26:19 | 2026-04-02 18:24:08 | apple | The issue was addressed with improved bounds checks.… | Details |
| CVE-2025-24090 | 2026-01-16 17:06:09 | 2026-04-02 18:22:24 | apple | A permissions issue was addressed with additional restrictions.… | Details |
| CVE-2025-43508 | 2026-01-16 17:06:08 | 2026-04-02 18:20:43 | apple | A logging issue was addressed with improved data… | Details |
| CVE-2024-44210 | 2026-01-16 17:06:08 | 2026-04-02 18:18:30 | apple | This issue was addressed with improved permissions checking.… | Details |
| CVE-2025-46286 | 2026-01-09 21:14:39 | 2026-04-02 18:18:29 | apple | A logic issue was addressed with improved validation.… | Details |
| CVE-2025-46316 | 2026-01-28 17:26:19 | 2026-04-02 18:17:30 | apple | An out-of-bounds read was addressed with improved input… | Details |
| CVE-2025-24089 | 2026-01-16 17:06:07 | 2026-04-02 18:14:40 | apple | A permissions issue was addressed with additional restrictions.… | Details |
| CVE-2025-46299 | 2026-01-09 21:15:50 | 2026-04-02 18:12:05 | apple | A memory initialization issue was addressed with improved… | Details |
| CVE-2024-54556 | 2026-01-16 17:06:06 | 2026-04-02 18:09:44 | apple | This issue was addressed through improved state management.… | Details |
| CVE-2024-44238 | 2026-01-16 17:06:05 | 2026-04-02 18:09:05 | apple | The issue was addressed with improved bounds checks.… | Details |
| CVE-2025-46298 | 2026-01-09 21:16:30 | 2026-04-02 18:07:19 | apple | The issue was addressed with improved memory handling.… | Details |
| CVE-2026-1035 | 2026-01-21 05:52:22 | 2026-04-02 16:47:18 | redhat | A flaw was found in the Keycloak server… | Details |
| CVE-2025-14083 | 2026-01-21 12:04:12 | 2026-04-02 16:47:15 | redhat | A flaw was found in the Keycloak Admin… | Details |
| CVE-2026-1180 | 2026-01-20 12:33:00 | 2026-04-02 16:39:39 | redhat | A flaw was identified in Keycloak’s OpenID Connect… | Details |
| CVE-2025-14524 | 2026-01-08 10:07:25 | 2026-04-02 13:20:16 | curl | When an OAuth2 bearer token is used for… | Details |
| CVE-2025-14829 | 2026-01-13 06:00:07 | 2026-04-02 12:39:54 | WPScan | The E-xact | Hosted Payment | WordPress plugin… | Details |
| CVE-2025-14316 | 2026-01-26 06:00:13 | 2026-04-02 12:39:54 | WPScan | The AhaChat Messenger Marketing WordPress plugin through 1.1… | Details |
| CVE-2025-13471 | 2026-01-28 06:00:03 | 2026-04-02 12:39:54 | WPScan | The User Activity Log WordPress plugin through 2.2… | Details |
| CVE-2025-12685 | 2026-01-02 06:00:10 | 2026-04-02 12:39:52 | WPScan | The WPBookit WordPress plugin through 1.0.7 lacks a… | Details |
| CVE-2025-12573 | 2026-01-20 06:00:06 | 2026-04-02 12:39:52 | WPScan | The Bookingor WordPress plugin through 1.0.12 exposes… | Details |
| CVE-2025-10915 | 2026-01-13 06:00:05 | 2026-04-02 12:39:50 | WPScan | The Dreamer Blog WordPress theme through 1.2 is… | Details |
| CVE-2026-20963 | 2026-01-13 17:56:49 | 2026-04-02 03:55:34 | microsoft | Deserialization of untrusted data in Microsoft Office SharePoint… | Details |
| CVE-2026-21521 | 2026-01-22 22:47:38 | 2026-04-01 13:49:27 | microsoft | Improper neutralization of escape, meta, or control sequences… | Details |
| CVE-2026-21264 | 2026-01-22 22:47:38 | 2026-04-01 13:49:27 | microsoft | Improper neutralization of input during web page generation… | Details |
| CVE-2026-21227 | 2026-01-22 22:47:37 | 2026-04-01 13:49:26 | microsoft | Improper limitation of a pathname to a restricted… | Details |
| CVE-2026-24305 | 2026-01-22 22:47:36 | 2026-04-01 13:49:25 | microsoft | Azure Entra ID Elevation of Privilege Vulnerability… | Details |
| CVE-2026-24307 | 2026-01-22 22:47:36 | 2026-04-01 13:49:25 | microsoft | Improper validation of specified type of input in… | Details |
| CVE-2026-21524 | 2026-01-22 22:47:35 | 2026-04-01 13:49:24 | microsoft | Exposure of sensitive information to an unauthorized actor… | Details |
| CVE-2026-24306 | 2026-01-22 22:47:34 | 2026-04-01 13:49:23 | microsoft | Improper access control in Azure Front Door (AFD)… | Details |
| CVE-2026-24304 | 2026-01-23 01:18:55 | 2026-04-01 13:49:23 | microsoft | Improper access control in Azure Resource Manager allows… | Details |
| CVE-2026-21520 | 2026-01-22 22:47:33 | 2026-04-01 13:49:22 | microsoft | Exposure of Sensitive Information to an Unauthorized Actor… | Details |
| CVE-2026-21226 | 2026-01-13 18:04:55 | 2026-04-01 13:49:21 | microsoft | Deserialization of untrusted data in Azure Core shared… | Details |
| CVE-2026-21223 | 2026-01-16 21:28:30 | 2026-04-01 13:49:21 | microsoft | Improper privilege management in Microsoft Edge (Chromium-based) allows… | Details |
| CVE-2026-20958 | 2026-01-13 17:57:09 | 2026-04-01 13:49:20 | microsoft | Server-side request forgery (ssrf) in Microsoft Office SharePoint… | Details |
| CVE-2026-20941 | 2026-01-13 17:57:10 | 2026-04-01 13:49:20 | microsoft | Improper link resolution before file access ('link following')… | Details |
| CVE-2026-20957 | 2026-01-13 17:57:09 | 2026-04-01 13:49:19 | microsoft | Integer underflow (wrap or wraparound) in Microsoft Office… | Details |
| CVE-2026-20950 | 2026-01-13 17:57:07 | 2026-04-01 13:49:18 | microsoft | Use after free in Microsoft Office Excel allows… | Details |
| CVE-2026-20952 | 2026-01-13 17:57:08 | 2026-04-01 13:49:18 | microsoft | Use after free in Microsoft Office allows an… | Details |
| CVE-2026-20948 | 2026-01-13 17:57:06 | 2026-04-01 13:49:17 | microsoft | Untrusted pointer dereference in Microsoft Office Word allows… | Details |
| CVE-2026-20949 | 2026-01-13 17:57:07 | 2026-04-01 13:49:17 | microsoft | Improper access control in Microsoft Office Excel allows… | Details |
| CVE-2026-20939 | 2026-01-13 17:57:05 | 2026-04-01 13:49:16 | microsoft | Exposure of sensitive information to an unauthorized actor… | Details |
| CVE-2026-20936 | 2026-01-13 17:57:04 | 2026-04-01 13:49:15 | microsoft | Out-of-bounds read in Windows NDIS allows an authorized… | Details |
| CVE-2026-20937 | 2026-01-13 17:57:05 | 2026-04-01 13:49:15 | microsoft | Exposure of sensitive information to an unauthorized actor… | Details |
| CVE-2026-20935 | 2026-01-13 17:57:03 | 2026-04-01 13:49:14 | microsoft | Untrusted pointer dereference in Windows Virtualization-Based Security (VBS)… | Details |
| CVE-2026-20929 | 2026-01-13 17:57:02 | 2026-04-01 13:49:12 | microsoft | Improper access control in Windows HTTP.sys allows an… | Details |
| CVE-2026-20874 | 2026-01-13 17:57:02 | 2026-04-01 13:49:12 | microsoft | Concurrent execution using shared resource with improper synchronization… | Details |
| CVE-2026-20872 | 2026-01-13 17:57:00 | 2026-04-01 13:49:11 | microsoft | External control of file name or path in… | Details |
| CVE-2026-20873 | 2026-01-13 17:57:01 | 2026-04-01 13:49:11 | microsoft | Concurrent execution using shared resource with improper synchronization… | Details |
| CVE-2026-20871 | 2026-01-13 17:57:00 | 2026-04-01 13:49:10 | microsoft | Use after free in Desktop Windows Manager allows… | Details |
| CVE-2026-20870 | 2026-01-13 17:56:59 | 2026-04-01 13:49:10 | microsoft | Use after free in Windows Win32K - ICOMP… | Details |
| CVE-2026-20868 | 2026-01-13 17:56:58 | 2026-04-01 13:49:09 | microsoft | Heap-based buffer overflow in Windows Routing and Remote… | Details |
| CVE-2026-20866 | 2026-01-13 17:56:57 | 2026-04-01 13:49:08 | microsoft | Concurrent execution using shared resource with improper synchronization… | Details |
| CVE-2026-20867 | 2026-01-13 17:56:58 | 2026-04-01 13:49:08 | microsoft | Concurrent execution using shared resource with improper synchronization… | Details |
| CVE-2026-20862 | 2026-01-13 17:56:56 | 2026-04-01 13:49:07 | microsoft | Exposure of sensitive information to an unauthorized actor… | Details |
| CVE-2026-20863 | 2026-01-13 17:56:57 | 2026-04-01 13:49:07 | microsoft | Double free in Windows Win32K - ICOMP allows… | Details |
| CVE-2026-20861 | 2026-01-13 17:56:55 | 2026-04-01 13:49:06 | microsoft | Concurrent execution using shared resource with improper synchronization… | Details |
| CVE-2026-21219 | 2026-01-13 17:56:55 | 2026-04-01 13:49:05 | microsoft | Use after free in Inbox COM Objects allows… | Details |
| CVE-2026-20854 | 2026-01-13 17:56:54 | 2026-04-01 13:49:05 | microsoft | Use after free in Windows Local Security Authority… | Details |
| CVE-2026-20853 | 2026-01-13 17:56:54 | 2026-04-01 13:49:04 | microsoft | Concurrent execution using shared resource with improper synchronization… | Details |
| CVE-2026-20849 | 2026-01-13 17:56:53 | 2026-04-01 13:49:04 | microsoft | Reliance on untrusted inputs in a security decision… | Details |
| CVE-2026-20848 | 2026-01-13 17:56:53 | 2026-04-01 13:49:03 | microsoft | Concurrent execution using shared resource with improper synchronization… | Details |
| CVE-2026-20843 | 2026-01-13 17:56:52 | 2026-04-01 13:49:02 | microsoft | Improper access control in Windows Routing and Remote… | Details |
| CVE-2026-20960 | 2026-01-16 21:28:10 | 2026-04-01 13:49:02 | microsoft | Improper authorization in Microsoft Power Apps allows an… | Details |
| CVE-2026-20947 | 2026-01-13 17:56:52 | 2026-04-01 13:49:01 | microsoft | Improper neutralization of special elements used in an… | Details |
| CVE-2026-21224 | 2026-01-13 17:56:51 | 2026-04-01 13:49:00 | microsoft | Stack-based buffer overflow in Azure Connected Machine Agent… | Details |
| CVE-2026-21221 | 2026-01-13 17:56:50 | 2026-04-01 13:49:00 | microsoft | Concurrent execution using shared resource with improper synchronization… | Details |
| CVE-2026-20830 | 2026-01-13 17:56:50 | 2026-04-01 13:48:59 | microsoft | Concurrent execution using shared resource with improper synchronization… | Details |
| CVE-2026-20956 | 2026-01-13 17:56:48 | 2026-04-01 13:48:58 | microsoft | Untrusted pointer dereference in Microsoft Office Excel allows… | Details |
| CVE-2026-20959 | 2026-01-13 17:56:49 | 2026-04-01 13:48:58 | microsoft | Improper neutralization of input during web page generation… | Details |
| CVE-2026-20955 | 2026-01-13 17:56:47 | 2026-04-01 13:48:57 | microsoft | Untrusted pointer dereference in Microsoft Office Excel allows… | Details |
| CVE-2026-20953 | 2026-01-13 17:56:47 | 2026-04-01 13:48:57 | microsoft | Use after free in Microsoft Office allows an… | Details |
| CVE-2026-20946 | 2026-01-13 17:56:46 | 2026-04-01 13:48:56 | microsoft | Out-of-bounds read in Microsoft Office Excel allows an… | Details |
| CVE-2026-20951 | 2026-01-13 17:56:47 | 2026-04-01 13:48:56 | microsoft | Improper input validation in Microsoft Office SharePoint allows… | Details |
| CVE-2026-20943 | 2026-01-13 17:56:45 | 2026-04-01 13:48:55 | microsoft | Untrusted search path in Microsoft Office allows an… | Details |
| CVE-2026-20944 | 2026-01-13 17:56:45 | 2026-04-01 13:48:55 | microsoft | Out-of-bounds read in Microsoft Office Word allows an… | Details |
| CVE-2026-20940 | 2026-01-13 17:56:44 | 2026-04-01 13:48:54 | microsoft | Heap-based buffer overflow in Windows Cloud Files Mini… | Details |
| CVE-2026-20934 | 2026-01-13 17:56:43 | 2026-04-01 13:48:53 | microsoft | Concurrent execution using shared resource with improper synchronization… | Details |
| CVE-2026-20938 | 2026-01-13 17:56:44 | 2026-04-01 13:48:53 | microsoft | Untrusted pointer dereference in Windows Virtualization-Based Security (VBS)… | Details |
| CVE-2026-20932 | 2026-01-13 17:56:43 | 2026-04-01 13:48:52 | microsoft | Exposure of sensitive information to an unauthorized actor… | Details |
| CVE-2026-20927 | 2026-01-13 17:56:42 | 2026-04-01 13:48:52 | microsoft | Concurrent execution using shared resource with improper synchronization… | Details |
| CVE-2026-20926 | 2026-01-13 17:56:42 | 2026-04-01 13:48:51 | microsoft | Concurrent execution using shared resource with improper synchronization… | Details |
| CVE-2026-20924 | 2026-01-13 17:56:41 | 2026-04-01 13:48:50 | microsoft | Use after free in Windows Management Services allows… | Details |
| CVE-2026-20925 | 2026-01-13 17:56:41 | 2026-04-01 13:48:50 | microsoft | External control of file name or path in… | Details |
| CVE-2026-20923 | 2026-01-13 17:56:40 | 2026-04-01 13:48:49 | microsoft | Use after free in Windows Management Services allows… | Details |
| CVE-2026-20922 | 2026-01-13 17:56:40 | 2026-04-01 13:48:49 | microsoft | Heap-based buffer overflow in Windows NTFS allows an… | Details |
| CVE-2026-20920 | 2026-01-13 17:56:38 | 2026-04-01 13:48:48 | microsoft | Use after free in Windows Win32K - ICOMP… | Details |
| CVE-2026-20919 | 2026-01-13 17:56:38 | 2026-04-01 13:48:47 | microsoft | Concurrent execution using shared resource with improper synchronization… | Details |
| CVE-2026-20918 | 2026-01-13 17:56:37 | 2026-04-01 13:48:46 | microsoft | Concurrent execution using shared resource with improper synchronization… | Details |
| CVE-2026-20876 | 2026-01-13 17:56:36 | 2026-04-01 13:48:45 | microsoft | Heap-based buffer overflow in Windows Virtualization-Based Security (VBS)… | Details |
| CVE-2026-20877 | 2026-01-13 17:56:36 | 2026-04-01 13:48:45 | microsoft | Use after free in Windows Management Services allows… | Details |
| CVE-2026-20869 | 2026-01-13 17:56:35 | 2026-04-01 13:48:44 | microsoft | Concurrent execution using shared resource with improper synchronization… | Details |
| CVE-2026-20875 | 2026-01-13 17:56:35 | 2026-04-01 13:48:44 | microsoft | Null pointer dereference in Windows Local Security Authority… | Details |
| CVE-2026-20865 | 2026-01-13 17:56:34 | 2026-04-01 13:48:43 | microsoft | Use after free in Windows Management Services allows… | Details |
| CVE-2026-20859 | 2026-01-13 17:56:32 | 2026-04-01 13:48:42 | microsoft | Use after free in Windows Kernel-Mode Drivers allows… | Details |
| CVE-2026-20860 | 2026-01-13 17:56:33 | 2026-04-01 13:48:42 | microsoft | Access of resource using incompatible type ('type confusion')… | Details |
| CVE-2026-20858 | 2026-01-13 17:56:31 | 2026-04-01 13:48:41 | microsoft | Use after free in Windows Management Services allows… | Details |
| CVE-2026-20857 | 2026-01-13 17:56:31 | 2026-04-01 13:48:40 | microsoft | Untrusted pointer dereference in Windows Cloud Files Mini… | Details |
| CVE-2026-20856 | 2026-01-13 17:56:30 | 2026-04-01 13:48:40 | microsoft | Improper input validation in Windows Server Update Service… | Details |
| CVE-2026-20852 | 2026-01-13 17:56:29 | 2026-04-01 13:48:39 | microsoft | Incorrect privilege assignment in Windows Hello allows an… | Details |
| CVE-2026-20851 | 2026-01-13 17:56:29 | 2026-04-01 13:48:39 | microsoft | Out-of-bounds read in Capability Access Management Service (camsvc)… | Details |
| CVE-2026-20847 | 2026-01-13 17:56:28 | 2026-04-01 13:48:38 | microsoft | Exposure of sensitive information to an unauthorized actor… | Details |
| CVE-2026-20842 | 2026-01-13 17:56:27 | 2026-04-01 13:48:37 | microsoft | Use after free in Windows DWM allows an… | Details |
| CVE-2026-20844 | 2026-01-13 17:56:28 | 2026-04-01 13:48:37 | microsoft | Use after free in Windows Clipboard Server allows… | Details |
| CVE-2026-20840 | 2026-01-13 17:56:27 | 2026-04-01 13:48:36 | microsoft | Heap-based buffer overflow in Windows NTFS allows an… | Details |
| CVE-2026-20838 | 2026-01-13 17:56:25 | 2026-04-01 13:48:35 | microsoft | Generation of error message containing sensitive information in… | Details |
| CVE-2026-20839 | 2026-01-13 17:56:26 | 2026-04-01 13:48:35 | microsoft | Improper access control in Windows Client-Side Caching (CSC)… | Details |
| CVE-2026-20837 | 2026-01-13 17:56:25 | 2026-04-01 13:48:34 | microsoft | Heap-based buffer overflow in Windows Media allows an… | Details |
| CVE-2026-20836 | 2026-01-13 17:56:24 | 2026-04-01 13:48:33 | microsoft | Concurrent execution using shared resource with improper synchronization… | Details |
| CVE-2026-20835 | 2026-01-13 17:56:24 | 2026-04-01 13:48:33 | microsoft | Out-of-bounds read in Capability Access Management Service (camsvc)… | Details |
| CVE-2026-20834 | 2026-01-13 17:56:23 | 2026-04-01 13:48:32 | microsoft | Absolute path traversal in Windows Shell allows an… | Details |
| CVE-2026-20832 | 2026-01-13 17:56:22 | 2026-04-01 13:48:31 | microsoft | Windows Remote Procedure Call Interface Definition Language (IDL)… | Details |
| CVE-2026-20833 | 2026-01-13 17:56:23 | 2026-04-01 13:48:31 | microsoft | Use of a broken or risky cryptographic algorithm… | Details |
| CVE-2026-20829 | 2026-01-13 17:56:21 | 2026-04-01 13:48:30 | microsoft | Out-of-bounds read in Windows TPM allows an authorized… | Details |
| CVE-2026-20831 | 2026-01-13 17:56:21 | 2026-04-01 13:48:30 | microsoft | Time-of-check time-of-use (toctou) race condition in Windows Ancillary… | Details |
| CVE-2026-20828 | 2026-01-13 17:56:20 | 2026-04-01 13:48:29 | microsoft | Out-of-bounds read in Windows Internet Connection Sharing (ICS)… | Details |
| CVE-2026-20827 | 2026-01-13 17:56:20 | 2026-04-01 13:48:29 | microsoft | Exposure of sensitive information to an unauthorized actor… | Details |
| CVE-2026-20826 | 2026-01-13 17:56:19 | 2026-04-01 13:48:28 | microsoft | Concurrent execution using shared resource with improper synchronization… | Details |
| CVE-2026-20824 | 2026-01-13 17:56:18 | 2026-04-01 13:48:27 | microsoft | Protection mechanism failure in Windows Remote Assistance allows… | Details |
| CVE-2026-20825 | 2026-01-13 17:56:18 | 2026-04-01 13:48:27 | microsoft | Improper access control in Windows Hyper-V allows an… | Details |
| CVE-2026-20823 | 2026-01-13 17:56:17 | 2026-04-01 13:48:26 | microsoft | Exposure of sensitive information to an unauthorized actor… | Details |
| CVE-2026-20821 | 2026-01-13 17:56:16 | 2026-04-01 13:48:25 | microsoft | Exposure of sensitive information to an unauthorized actor… | Details |
| CVE-2026-20822 | 2026-01-13 17:56:17 | 2026-04-01 13:48:25 | microsoft | Use after free in Microsoft Graphics Component allows… | Details |
| CVE-2026-20819 | 2026-01-13 17:56:15 | 2026-04-01 13:48:24 | microsoft | Untrusted pointer dereference in Windows Virtualization-Based Security (VBS)… | Details |
| CVE-2026-20820 | 2026-01-13 17:56:15 | 2026-04-01 13:48:24 | microsoft | Heap-based buffer overflow in Windows Common Log File… | Details |
| CVE-2026-20818 | 2026-01-13 17:56:14 | 2026-04-01 13:48:23 | microsoft | Insertion of sensitive information into log file in… | Details |
| CVE-2026-20816 | 2026-01-13 17:56:13 | 2026-04-01 13:48:22 | microsoft | Time-of-check time-of-use (toctou) race condition in Windows Installer… | Details |
| CVE-2026-20815 | 2026-01-13 17:56:12 | 2026-04-01 13:48:21 | microsoft | Concurrent execution using shared resource with improper synchronization… | Details |
| CVE-2026-20814 | 2026-01-13 17:56:12 | 2026-04-01 13:48:21 | microsoft | Concurrent execution using shared resource with improper synchronization… | Details |
| CVE-2026-20811 | 2026-01-13 17:56:11 | 2026-04-01 13:48:20 | microsoft | Access of resource using incompatible type ('type confusion')… | Details |
| CVE-2026-20812 | 2026-01-13 17:56:11 | 2026-04-01 13:48:20 | microsoft | Improper input validation in Windows LDAP - Lightweight… | Details |
| CVE-2026-20810 | 2026-01-13 17:56:10 | 2026-04-01 13:48:19 | microsoft | Free of memory not on the heap in… | Details |
| CVE-2026-20809 | 2026-01-13 17:56:09 | 2026-04-01 13:48:18 | microsoft | Time-of-check time-of-use (toctou) race condition in Windows Kernel… | Details |
| CVE-2026-20805 | 2026-01-13 17:56:08 | 2026-04-01 13:48:17 | microsoft | Exposure of sensitive information to an unauthorized actor… | Details |
| CVE-2026-20808 | 2026-01-13 17:56:09 | 2026-04-01 13:48:17 | microsoft | Concurrent execution using shared resource with improper synchronization… | Details |
| CVE-2026-20804 | 2026-01-13 17:56:07 | 2026-04-01 13:48:16 | microsoft | Incorrect privilege assignment in Windows Hello allows an… | Details |
| CVE-2026-20965 | 2026-01-13 17:56:06 | 2026-04-01 13:48:15 | microsoft | Improper verification of cryptographic signature in Windows Admin… | Details |
| CVE-2026-20803 | 2026-01-13 17:56:06 | 2026-04-01 13:48:15 | microsoft | Missing authentication for critical function in SQL Server… | Details |
| CVE-2026-0386 | 2026-01-13 17:56:05 | 2026-04-01 13:48:14 | microsoft | Improper access control in Windows Deployment Services allows… | Details |
| CVE-2026-21265 | 2026-01-13 17:56:04 | 2026-04-01 13:48:13 | microsoft | Windows Secure Boot stores Microsoft certificates in the… | Details |
| CVE-2026-20962 | 2026-01-13 17:56:03 | 2026-04-01 13:48:12 | microsoft | Use of uninitialized resource in Dynamic Root of… | Details |
| CVE-2025-20807 | 2026-01-06 01:47:42 | 2026-03-30 13:05:11 | MediaTek | In dpe, there is a possible out of… | Details |
| CVE-2025-20806 | 2026-01-06 01:47:16 | 2026-03-30 13:05:02 | MediaTek | In dpe, there is a possible memory corruption… | Details |
| CVE-2025-20805 | 2026-01-06 01:47:14 | 2026-03-30 13:04:59 | MediaTek | In dpe, there is a possible memory corruption… | Details |
| CVE-2025-20804 | 2026-01-06 01:47:12 | 2026-03-30 13:04:56 | MediaTek | In dpe, there is a possible memory corruption… | Details |
| CVE-2025-20803 | 2026-01-06 01:47:10 | 2026-03-30 13:04:53 | MediaTek | In dpe, there is a possible memory corruption… | Details |
| CVE-2025-20787 | 2026-01-06 01:47:09 | 2026-03-30 13:04:51 | MediaTek | In display, there is a possible memory corruption… | Details |
| CVE-2025-20786 | 2026-01-06 01:47:07 | 2026-03-30 13:04:48 | MediaTek | In display, there is a possible memory corruption… | Details |
| CVE-2025-20785 | 2026-01-06 01:47:05 | 2026-03-30 13:04:45 | MediaTek | In display, there is a possible memory corruption… | Details |
| CVE-2025-20784 | 2026-01-06 01:47:03 | 2026-03-30 13:04:42 | MediaTek | In display, there is a possible memory corruption… | Details |
| CVE-2025-20783 | 2026-01-06 01:47:01 | 2026-03-30 13:04:40 | MediaTek | In display, there is a possible out of… | Details |
| CVE-2025-20782 | 2026-01-06 01:46:59 | 2026-03-30 13:04:37 | MediaTek | In display, there is a possible out of… | Details |
| CVE-2025-20781 | 2026-01-06 01:46:57 | 2026-03-30 13:04:35 | MediaTek | In display, there is a possible memory corruption… | Details |
| CVE-2025-20780 | 2026-01-06 01:46:55 | 2026-03-30 13:04:32 | MediaTek | In display, there is a possible memory corruption… | Details |
| CVE-2025-20779 | 2026-01-06 01:46:54 | 2026-03-30 13:04:29 | MediaTek | In display, there is a possible use after… | Details |
| CVE-2025-20778 | 2026-01-06 01:46:52 | 2026-03-30 13:04:26 | MediaTek | In display, there is a possible out of… | Details |
| CVE-2025-20802 | 2026-01-06 01:46:50 | 2026-03-30 13:04:24 | MediaTek | In geniezone, there is a possible memory corruption… | Details |
| CVE-2025-20801 | 2026-01-06 01:46:49 | 2026-03-30 13:04:21 | MediaTek | In seninf, there is a possible memory corruption… | Details |
| CVE-2025-20800 | 2026-01-06 01:46:47 | 2026-03-30 13:04:19 | MediaTek | In mminfra, there is a possible out of… | Details |
| CVE-2025-20799 | 2026-01-06 01:46:45 | 2026-03-30 13:04:16 | MediaTek | In c2ps, there is a possible memory corruption… | Details |
| CVE-2025-20798 | 2026-01-06 01:46:43 | 2026-03-30 13:04:13 | MediaTek | In battery, there is a possible out of… | Details |
| CVE-2025-20797 | 2026-01-06 01:46:41 | 2026-03-30 13:04:10 | MediaTek | In battery, there is a possible out of… | Details |
| CVE-2025-20796 | 2026-01-06 01:46:40 | 2026-03-30 13:04:08 | MediaTek | In imgsys, there is a possible out of… | Details |
| CVE-2025-20760 | 2026-01-06 01:46:38 | 2026-03-30 13:04:05 | MediaTek | In Modem, there is a possible read of… | Details |
| CVE-2025-20761 | 2026-01-06 01:46:36 | 2026-03-30 13:04:02 | MediaTek | In Modem, there is a possible system crash… | Details |
| CVE-2025-20762 | 2026-01-06 01:46:34 | 2026-03-30 13:03:59 | MediaTek | In Modem, there is a possible system crash… | Details |
| CVE-2025-20793 | 2026-01-06 01:46:33 | 2026-03-30 13:03:56 | MediaTek | In Modem, there is a possible system crash… | Details |
| CVE-2025-20794 | 2026-01-06 01:46:31 | 2026-03-30 13:03:54 | MediaTek | In Modem, there is a possible system crash… | Details |
| CVE-2025-20795 | 2026-01-06 01:46:29 | 2026-03-30 13:03:51 | MediaTek | In KeyInstall, there is a possible out of… | Details |
| CVE-2025-68158 | 2026-01-08 17:58:17 | 2026-03-30 12:20:39 | GitHub_M | Authlib is a Python library which builds OAuth… | Details |
| CVE-2026-0962 | 2026-01-14 20:23:38 | 2026-03-27 13:56:59 | GitLab | SOME/IP-SD protocol dissector crash in Wireshark 4.6.0 to… | Details |
| CVE-2026-0959 | 2026-01-14 20:23:28 | 2026-03-27 13:56:59 | GitLab | IEEE 802.11 protocol dissector crash in Wireshark 4.6.0… | Details |
| CVE-2026-0960 | 2026-01-14 20:23:33 | 2026-03-27 13:56:59 | GitLab | HTTP3 protocol dissector infinite loop in Wireshark 4.6.0… | Details |
| CVE-2026-0961 | 2026-01-14 20:23:48 | 2026-03-27 13:56:59 | GitLab | BLF file parser crash in Wireshark 4.6.0 to… | Details |
| CVE-2026-1467 | 2026-01-27 09:17:44 | 2026-03-25 14:34:12 | redhat | A flaw was found in libsoup, an HTTP… | Details |
| CVE-2026-1536 | 2026-01-28 15:15:46 | 2026-03-25 14:21:34 | redhat | A flaw was found in libsoup. An attacker… | Details |
| CVE-2026-1539 | 2026-01-28 15:15:48 | 2026-03-25 14:12:27 | redhat | A flaw was found in the libsoup HTTP… | Details |
| CVE-2026-24061 | 2026-01-21 06:42:17 | 2026-03-25 13:31:53 | mitre | telnetd in GNU Inetutils through 2.7 allows remote… | Details |
| CVE-2026-1197 | 2026-01-20 00:32:08 | 2026-03-25 12:33:15 | VulDB | A vulnerability was detected in MineAdmin 1.x/2.x. Affected… | Details |
| CVE-2026-1196 | 2026-01-20 00:32:06 | 2026-03-25 12:32:45 | VulDB | A security vulnerability has been detected in MineAdmin… | Details |
| CVE-2026-1195 | 2026-01-20 00:02:07 | 2026-03-25 12:32:32 | VulDB | A weakness has been identified in MineAdmin 1.x/2.x.… | Details |
| CVE-2026-1194 | 2026-01-19 23:32:05 | 2026-03-25 12:32:13 | VulDB | A security flaw has been discovered in MineAdmin… | Details |
| CVE-2026-1193 | 2026-01-19 23:02:11 | 2026-03-25 12:31:53 | VulDB | A vulnerability was identified in MineAdmin 1.x/2.x. The… | Details |
| CVE-2026-1478 | 2026-01-27 16:30:35 | 2026-03-24 15:40:06 | INCIBE | An out-of-band SQL injection vulnerability (OOB SQLi) has… | Details |
| CVE-2025-51602 | 2026-01-16 00:00:00 | 2026-03-23 20:12:18 | mitre | mmstu.c in VideoLAN VLC media player before 3.0.22… | Details |
| CVE-2020-36907 | 2026-01-06 15:52:21 | 2026-03-23 15:43:28 | VulnCheck | Aerohive HiveOS contains a denial of service vulnerability… | Details |
| CVE-2019-25291 | 2026-01-07 23:10:05 | 2026-03-23 15:43:27 | VulnCheck | INIM Electronics Smartliving SmartLAN/G/SI <=6.x contains hard-coded credentials… | Details |
| CVE-2019-25290 | 2026-01-07 23:10:04 | 2026-03-23 15:43:26 | VulnCheck | Smartliving SmartLAN/G/SI <=6.x contains an unauthenticated server-side request… | Details |
| CVE-2019-25289 | 2026-01-07 23:10:04 | 2026-03-23 15:43:25 | VulnCheck | SmartLiving SmartLAN <=6.x contains an authenticated remote command… | Details |
| CVE-2025-11187 | 2026-01-27 15:59:41 | 2026-03-20 14:07:14 | openssl | Issue summary: PBMAC1 parameters in PKCS#12 files are… | Details |
| CVE-2025-66376 | 2026-01-05 00:00:00 | 2026-03-19 03:55:17 | mitre | Zimbra Collaboration (ZCS) 10 before 10.0.18 and 10.1… | Details |
| CVE-2026-1485 | 2026-01-27 13:43:18 | 2026-03-18 16:44:23 | redhat | A flaw was found in Glib's content type… | Details |
| CVE-2025-15471 | 2026-01-06 21:32:06 | 2026-03-18 14:38:49 | VulDB | A vulnerability was detected in TRENDnet TEW-713RE 1.02.… | Details |
| CVE-2025-60007 | 2026-01-15 20:16:22 | 2026-03-16 18:18:52 | juniper | A NULL Pointer Dereference vulnerability in the chassis… | Details |
| CVE-2025-6723 | 2026-01-30 14:09:41 | 2026-03-11 14:30:44 | ProgressSoftware | Chef InSpec versions up to 5.23 and before… | Details |
| CVE-2026-0203 | 2026-01-15 20:17:24 | 2026-03-10 22:44:14 | juniper | An Improper Handling of Exceptional Conditions vulnerability in… | Details |
| CVE-2025-68947 | 2026-01-13 21:19:55 | 2026-03-10 20:39:54 | cisa-cg | NSecsoft 'NSecKrnl' is a Windows driver that allows… | Details |
| CVE-2026-22234 | 2026-01-08 17:12:39 | 2026-03-10 20:39:28 | cisa-cg | OPEXUS eCasePortal before version 9.0.45.0 allows an unauthenticated… | Details |
| CVE-2026-22687 | 2026-01-10 03:41:43 | 2026-03-10 18:34:41 | GitHub_M | WeKnora is an LLM-powered framework designed for deep… | Details |
| CVE-2025-67078 | 2026-01-15 00:00:00 | 2026-03-10 17:10:16 | mitre | Cross site scripting (XSS) vulnerability in Omnispace Agora… | Details |
| CVE-2026-1190 | 2026-01-26 19:36:53 | 2026-03-06 03:31:19 | redhat | A flaw was found in Keycloak's SAML brokering… | Details |
| CVE-2026-25067 | 2026-01-29 03:38:02 | 2026-03-05 01:30:42 | VulnCheck | SmarterTools SmarterMail versions prior to build 9518 … | Details |
| CVE-2026-24423 | 2026-01-23 16:53:34 | 2026-03-05 01:30:27 | VulnCheck | SmarterTools SmarterMail versions prior to build 9511 contain… | Details |
| CVE-2026-23760 | 2026-01-22 14:35:17 | 2026-03-05 01:30:23 | VulnCheck | SmarterTools SmarterMail versions prior to build 9511 contain… | Details |
| CVE-2026-22197 | 2026-01-09 16:18:48 | 2026-03-05 01:30:15 | VulnCheck | GestSup versions prior to 3.2.60 contain multiple SQL injection… | Details |
| CVE-2026-22198 | 2026-01-09 16:19:11 | 2026-03-05 01:30:15 | VulnCheck | GestSup versions prior to 3.2.60 contain a pre-authentication stored… | Details |
| CVE-2026-22196 | 2026-01-09 16:23:24 | 2026-03-05 01:30:14 | VulnCheck | GestSup versions prior to 3.2.60 contain a SQL injection… | Details |
| CVE-2026-22195 | 2026-01-09 16:18:27 | 2026-03-05 01:30:13 | VulnCheck | GestSup versions prior to 3.2.60 contain a SQL injection… | Details |
| CVE-2025-15550 | 2026-01-29 19:41:52 | 2026-03-05 01:29:50 | VulnCheck | birkir prime <= 0.4.0.beta.0 contains a cross-site request… | Details |
| CVE-2023-54341 | 2026-01-13 22:52:10 | 2026-03-05 01:29:46 | VulnCheck | Webgrind 1.1 and before contains a reflected cross-site… | Details |
| CVE-2023-54339 | 2026-01-13 22:52:09 | 2026-03-05 01:29:45 | VulnCheck | Webgrind 1.1 contains a remote command execution vulnerability… | Details |
| CVE-2023-54337 | 2026-01-13 22:52:08 | 2026-03-05 01:29:45 | VulnCheck | Sysax Multi Server 6.95 contains a denial of… | Details |
| CVE-2023-54331 | 2026-01-13 22:52:06 | 2026-03-05 01:29:42 | VulnCheck | Outline 1.6.0 contains an unquoted service path vulnerability… | Details |
| CVE-2023-54330 | 2026-01-13 22:52:05 | 2026-03-05 01:29:41 | VulnCheck | Inbit Messenger versions 4.6.0 to 4.9.0 contain a… | Details |
| CVE-2023-54329 | 2026-01-13 22:52:05 | 2026-03-05 01:29:40 | VulnCheck | Inbit Messenger 4.6.0 - 4.9.0 contains a remote… | Details |
| CVE-2022-50936 | 2026-01-13 22:52:02 | 2026-03-05 01:29:37 | VulnCheck | WBCE CMS version 1.5.2 contains an authenticated remote… | Details |
| CVE-2022-50931 | 2026-01-13 22:51:59 | 2026-03-05 01:29:36 | VulnCheck | TeamSpeak 3.5.6 contains an insecure file permissions vulnerability… | Details |
| CVE-2022-50924 | 2026-01-13 22:51:56 | 2026-03-05 01:29:35 | VulnCheck | Private Internet Access 3.3 contains an unquoted service… | Details |
| CVE-2022-50920 | 2026-01-13 22:51:54 | 2026-03-05 01:29:34 | VulnCheck | Sandboxie-Plus 5.50.2 contains an unquoted service path vulnerability… | Details |
| CVE-2022-50923 | 2026-01-13 22:51:55 | 2026-03-05 01:29:34 | VulnCheck | Cobian Backup 0.9 contains an unquoted service path… | Details |
| CVE-2022-50919 | 2026-01-13 22:51:54 | 2026-03-05 01:29:33 | VulnCheck | Tdarr 2.00.15 contains an unauthenticated remote code execution… | Details |
| CVE-2022-50912 | 2026-01-13 22:51:51 | 2026-03-05 01:29:30 | VulnCheck | ImpressCMS 1.4.4 contains a file upload vulnerability with… | Details |
| CVE-2022-50910 | 2026-01-13 22:51:50 | 2026-03-05 01:29:29 | VulnCheck | Beehive Forum 1.5.2 contains a host header injection… | Details |
| CVE-2022-50903 | 2026-01-13 22:51:47 | 2026-03-05 01:29:26 | VulnCheck | Wondershare MobileTrans 3.5.9 contains an unquoted service path… | Details |
| CVE-2022-50901 | 2026-01-13 22:51:46 | 2026-03-05 01:29:25 | VulnCheck | Wondershare Dr.Fone 11.4.9 contains an unquoted service path… | Details |
| CVE-2022-50900 | 2026-01-13 22:51:45 | 2026-03-05 01:29:24 | VulnCheck | Wondershare Dr.Fone 12.0.18 contains an unquoted service path… | Details |
| CVE-2022-50897 | 2026-01-13 22:51:44 | 2026-03-05 01:29:23 | VulnCheck | mPDF 7.0 contains a local file inclusion vulnerability… | Details |
| CVE-2022-50805 | 2026-01-13 22:51:39 | 2026-03-05 01:29:21 | VulnCheck | Senayan Library Management System 9.0.0 contains a SQL… | Details |
| CVE-2021-47906 | 2026-01-23 16:47:44 | 2026-03-05 01:29:13 | VulnCheck | BloofoxCMS 0.5.2.1 contains a stored cross-site scripting vulnerability… | Details |
| CVE-2021-47902 | 2026-01-27 15:23:52 | 2026-03-05 01:29:12 | VulnCheck | Testa Online Test Management System 3.4.7 contains a… | Details |
| CVE-2021-47900 | 2026-01-27 15:23:51 | 2026-03-05 01:29:11 | VulnCheck | Gila CMS versions prior to 2.0.0 contain a… | Details |
| CVE-2021-47898 | 2026-01-23 16:47:41 | 2026-03-05 01:29:10 | VulnCheck | Epson USB Display 1.6.0.0 contains an unquoted service… | Details |
| CVE-2021-47892 | 2026-01-23 16:47:37 | 2026-03-05 01:29:09 | VulnCheck | PEEL Shopping 9.3.0 contains a stored cross-site scripting… | Details |
| CVE-2021-47897 | 2026-01-23 16:47:40 | 2026-03-05 01:29:09 | VulnCheck | PEEL Shopping 9.3.0 contains a stored cross-site scripting… | Details |
| CVE-2021-47888 | 2026-01-23 16:47:34 | 2026-03-05 01:29:07 | VulnCheck | Textpattern versions prior to 4.8.3 contain an authenticated… | Details |
| CVE-2021-47884 | 2026-01-21 17:27:53 | 2026-03-05 01:29:06 | VulnCheck | OKI Configuration Tool 1.6.53 contains an unquoted service… | Details |
| CVE-2021-47882 | 2026-01-21 17:27:52 | 2026-03-05 01:29:05 | VulnCheck | FreeLAN 2.2 contains an unquoted service path vulnerability… | Details |
| CVE-2021-47883 | 2026-01-21 17:27:52 | 2026-03-05 01:29:05 | VulnCheck | Sandboxie Plus 0.7.2 contains an unquoted service path… | Details |
| CVE-2021-47873 | 2026-01-21 17:27:48 | 2026-03-05 01:29:04 | VulnCheck | VestaCP versions prior to 0.9.8-25 contain a cross-site… | Details |
| CVE-2021-47871 | 2026-01-21 17:27:47 | 2026-03-05 01:29:02 | VulnCheck | Hestia Control Panel 1.3.2 contains an arbitrary file… | Details |
| CVE-2021-47868 | 2026-01-21 17:27:45 | 2026-03-05 01:29:00 | VulnCheck | WIN-PACK PRO 4.8 contains an unquoted service path… | Details |
| CVE-2021-47866 | 2026-01-21 17:27:44 | 2026-03-05 01:28:59 | VulnCheck | WIN-PACK PRO 4.8 contains an unquoted service path… | Details |
| CVE-2021-47861 | 2026-01-21 17:27:42 | 2026-03-05 01:28:57 | VulnCheck | Event Log Explorer 4.9.3 contains an unquoted service… | Details |
| CVE-2021-47859 | 2026-01-21 17:27:40 | 2026-03-05 01:28:56 | VulnCheck | ActivIdentity 8.2 contains an unquoted service path vulnerability… | Details |
| CVE-2021-47858 | 2026-01-21 17:27:40 | 2026-03-05 01:28:55 | VulnCheck | Genexis Platinum-4410 P4410-V2-1.31A contains a stored cross-site scripting… | Details |
| CVE-2021-47857 | 2026-01-21 17:27:39 | 2026-03-05 01:28:54 | VulnCheck | Moodle 3.10.3 contains a persistent cross-site scripting vulnerability… | Details |
| CVE-2021-47847 | 2026-01-16 19:09:41 | 2026-03-05 01:28:53 | VulnCheck | Disk Sorter Server 13.6.12 contains an unquoted service… | Details |
| CVE-2021-47855 | 2026-01-21 17:27:38 | 2026-03-05 01:28:53 | VulnCheck | Openlitespeed 1.7.9 contains a stored cross-site scripting vulnerability… | Details |
| CVE-2021-47843 | 2026-01-15 15:52:16 | 2026-03-05 01:28:51 | VulnCheck | Tagstoo 2.0.1 contains a stored cross-site scripting vulnerability… | Details |
| CVE-2021-47837 | 2026-01-16 19:09:36 | 2026-03-05 01:28:49 | VulnCheck | Markdownify 1.2.0 contains a persistent cross-site scripting vulnerability… | Details |
| CVE-2021-47834 | 2026-01-16 19:09:35 | 2026-03-05 01:28:48 | VulnCheck | Schlix CMS 2.2.6-6 contains a persistent cross-site scripting… | Details |
| CVE-2021-47831 | 2026-01-16 19:09:33 | 2026-03-05 01:28:48 | VulnCheck | Sandboxie 5.49.7 contains a denial of service vulnerability… | Details |
| CVE-2021-47819 | 2026-01-15 15:52:16 | 2026-03-05 01:28:46 | VulnCheck | ProjeQtOr Project Management 9.1.4 contains a file upload… | Details |
| CVE-2021-47814 | 2026-01-15 23:25:55 | 2026-03-05 01:28:44 | VulnCheck | NBMonitor 1.6.8 contains a denial of service vulnerability… | Details |
| CVE-2021-47811 | 2026-01-15 23:25:53 | 2026-03-05 01:28:42 | VulnCheck | Grocery Crud 1.6.4 contains a SQL injection vulnerability… | Details |
| CVE-2021-47809 | 2026-01-15 23:25:52 | 2026-03-05 01:28:41 | VulnCheck | Disk Sorter Enterprise 13.6.12 contains an unquoted service… | Details |
| CVE-2021-47810 | 2026-01-15 23:25:53 | 2026-03-05 01:28:41 | VulnCheck | WibuKey Runtime 6.51 contains an unquoted service path… | Details |
| CVE-2021-47805 | 2026-01-15 23:25:49 | 2026-03-05 01:28:39 | VulnCheck | Disk Savvy 13.6.14 contains an unquoted service path… | Details |
| CVE-2021-47804 | 2026-01-15 23:25:47 | 2026-03-05 01:28:38 | VulnCheck | Wise Care 365 5.6.7.568 contains an unquoted service… | Details |
| CVE-2021-47794 | 2026-01-15 23:25:43 | 2026-03-05 01:28:36 | VulnCheck | ZesleCP 3.1.9 contains an authenticated remote code execution… | Details |
| CVE-2021-47793 | 2026-01-15 23:25:43 | 2026-03-05 01:28:35 | VulnCheck | Telegram Desktop 2.9.2 contains a denial of service… | Details |
| CVE-2021-47788 | 2026-01-15 23:25:40 | 2026-03-05 01:28:34 | VulnCheck | WebsiteBaker 2.13.0 contains an authenticated remote code execution… | Details |
| CVE-2021-47780 | 2026-01-15 23:25:37 | 2026-03-05 01:28:32 | VulnCheck | Macro Expert 4.7 contains an unquoted service path… | Details |
| CVE-2021-47758 | 2026-01-15 15:52:05 | 2026-03-05 01:28:30 | VulnCheck | Chikitsa Patient Management System 2.0.2 contains an authenticated… | Details |
| CVE-2021-47757 | 2026-01-15 15:52:04 | 2026-03-05 01:28:29 | VulnCheck | Chikitsa Patient Management System 2.0.2 contains an authenticated… | Details |
| CVE-2021-47746 | 2026-01-21 17:27:31 | 2026-03-05 01:28:27 | VulnCheck | NodeBB Plugin Emoji 3.2.1 contains an arbitrary file… | Details |
| CVE-2020-37059 | 2026-01-30 16:16:41 | 2026-03-05 01:27:45 | VulnCheck | Popcorn Time 6.2.1.14 contains an unquoted service path… | Details |
| CVE-2020-37057 | 2026-01-30 22:07:20 | 2026-03-05 01:27:44 | VulnCheck | Online-Exam-System 2015 contains a SQL injection vulnerability in… | Details |
| CVE-2020-37054 | 2026-01-30 22:07:19 | 2026-03-05 01:27:43 | VulnCheck | Navigate CMS 2.8.7 contains a cross-site request forgery… | Details |
| CVE-2020-37053 | 2026-01-30 22:07:19 | 2026-03-05 01:27:43 | VulnCheck | Navigate CMS 2.8.7 contains an authenticated SQL injection… | Details |
| CVE-2020-37051 | 2026-01-30 22:07:18 | 2026-03-05 01:27:42 | VulnCheck | Online-Exam-System 2015 contains a time-based blind SQL injection… | Details |
| CVE-2020-37049 | 2026-01-30 22:07:17 | 2026-03-05 01:27:41 | VulnCheck | Frigate 3.36.0.9 contains a local buffer overflow vulnerability… | Details |
| CVE-2020-37044 | 2026-01-30 22:07:16 | 2026-03-05 01:27:39 | VulnCheck | OpenCTI 3.3.1 is vulnerable to a reflected cross-site… | Details |
| CVE-2020-37042 | 2026-01-30 22:07:15 | 2026-03-05 01:27:38 | VulnCheck | Frigate Professional 3.36.0.9 contains a local buffer overflow… | Details |
| CVE-2020-37043 | 2026-01-30 22:07:16 | 2026-03-05 01:27:38 | VulnCheck | 10-Strike Bandwidth Monitor 3.9 contains a buffer overflow… | Details |
| CVE-2020-37041 | 2026-01-30 22:07:15 | 2026-03-05 01:27:37 | VulnCheck | OpenCTI 3.3.1 is vulnerable to a directory traversal… | Details |
| CVE-2020-37039 | 2026-01-30 22:07:14 | 2026-03-05 01:27:36 | VulnCheck | Frigate 2.02 contains a denial of service vulnerability… | Details |
| CVE-2020-37032 | 2026-01-30 22:07:12 | 2026-03-05 01:27:34 | VulnCheck | Wing FTP Server 6.3.8 contains a remote code… | Details |
| CVE-2020-37030 | 2026-01-30 16:16:40 | 2026-03-05 01:27:33 | VulnCheck | Outline Service 1.3.3 contains an unquoted service path… | Details |
| CVE-2020-37028 | 2026-01-30 22:07:10 | 2026-03-05 01:27:32 | VulnCheck | Socusoft Photo to Video Converter Professional 8.07 contains… | Details |
| CVE-2020-37022 | 2026-01-30 16:16:39 | 2026-03-05 01:27:31 | VulnCheck | OpenZ ERP 3.6.60 contains a persistent cross-site scripting… | Details |
| CVE-2020-37021 | 2026-01-29 14:28:34 | 2026-03-05 01:27:30 | VulnCheck | 10-Strike Bandwidth Monitor 3.9 contains an unquoted service… | Details |
| CVE-2020-37020 | 2026-01-29 14:28:33 | 2026-03-05 01:27:29 | VulnCheck | SonarQube 8.3.1 contains an unquoted service path vulnerability… | Details |
| CVE-2020-37018 | 2026-01-29 14:28:33 | 2026-03-05 01:27:28 | VulnCheck | GOautodial 4.0 contains a persistent cross-site scripting vulnerability… | Details |
| CVE-2020-37017 | 2026-01-29 14:28:33 | 2026-03-05 01:27:27 | VulnCheck | CodeMeter 6.60 contains an unquoted service path vulnerability… | Details |
| CVE-2020-37009 | 2026-01-29 14:28:30 | 2026-03-05 01:27:24 | VulnCheck | MedDream PACS Server 6.8.3.751 contains an authenticated remote… | Details |
| CVE-2020-37007 | 2026-01-29 14:28:29 | 2026-03-05 01:27:24 | VulnCheck | Liman 0.7 contains a cross-site request forgery vulnerability… | Details |
| CVE-2020-36992 | 2026-01-28 12:29:03 | 2026-03-05 01:27:18 | VulnCheck | Nord VPN 6.31.13.0 contains an unquoted service path… | Details |
| CVE-2020-36985 | 2026-01-28 12:28:59 | 2026-03-05 01:27:17 | VulnCheck | IP Watcher 3.0.0.30 contains an unquoted service path… | Details |
| CVE-2020-36978 | 2026-01-27 18:51:04 | 2026-03-05 01:27:16 | VulnCheck | Froxlor Server Management Panel 0.10.16 contains a persistent… | Details |
| CVE-2020-36974 | 2026-01-27 18:51:01 | 2026-03-05 01:27:15 | VulnCheck | Realtek Andrea RT Filters 1.0.64.7 contains an unquoted… | Details |
| CVE-2020-36972 | 2026-01-28 17:35:11 | 2026-03-05 01:27:14 | VulnCheck | SmartBlog 2.0.1 contains a blind SQL injection vulnerability… | Details |
| CVE-2020-36969 | 2026-01-28 17:35:10 | 2026-03-05 01:27:13 | VulnCheck | M/Monit 3.7.4 contains a privilege escalation vulnerability that… | Details |
| CVE-2020-36968 | 2026-01-28 17:35:10 | 2026-03-05 01:27:12 | VulnCheck | M/Monit 3.7.4 contains an authentication vulnerability that allows… | Details |
| CVE-2020-36966 | 2026-01-30 16:16:37 | 2026-03-05 01:27:12 | VulnCheck | Dolibarr 11.0.3 contains a persistent cross-site scripting vulnerability… | Details |
| CVE-2020-36962 | 2026-01-28 17:35:08 | 2026-03-05 01:27:11 | VulnCheck | Tendenci 12.3.1 contains a CSV formula injection vulnerability… | Details |
| CVE-2020-36961 | 2026-01-28 17:35:07 | 2026-03-05 01:27:10 | VulnCheck | 10-Strike Network Inventory Explorer 8.65 contains a buffer… | Details |
| CVE-2020-36955 | 2026-01-26 17:42:45 | 2026-03-05 01:27:07 | VulnCheck | Grav CMS 1.6.30 with Admin Plugin 1.9.18 contains… | Details |
| CVE-2020-36948 | 2026-01-27 15:23:50 | 2026-03-05 01:27:04 | VulnCheck | VestaCP 0.9.8-26 contains a session token vulnerability in… | Details |
| CVE-2020-36947 | 2026-01-27 15:23:49 | 2026-03-05 01:27:03 | VulnCheck | LibreNMS 1.46 contains an authenticated SQL injection vulnerability… | Details |
| CVE-2020-36944 | 2026-01-28 17:35:07 | 2026-03-05 01:27:01 | VulnCheck | ILIAS Learning Management System 4.3 contains a server-side… | Details |
| CVE-2020-36941 | 2026-01-27 15:23:48 | 2026-03-05 01:27:00 | VulnCheck | Knockpy 4.1.1 contains a CSV injection vulnerability that… | Details |
| CVE-2020-36930 | 2026-01-15 23:25:35 | 2026-03-05 01:26:58 | VulnCheck | SysGauge Server 7.9.18 contains an unquoted service path… | Details |
| CVE-2020-36927 | 2026-01-15 23:25:33 | 2026-03-05 01:26:57 | VulnCheck | DiskPulse Enterprise 13.6.14 contains an unquoted service path… | Details |
| CVE-2020-36905 | 2026-01-06 15:52:20 | 2026-03-05 01:26:54 | VulnCheck | FIBARO System Home Center 5.021 contains a remote… | Details |
| CVE-2020-36875 | 2026-01-09 16:41:06 | 2026-03-05 01:26:53 | VulnCheck | AccessAlly WordPress plugin versions prior to 3.3.2 contain an… | Details |
| CVE-2025-59109 | 2026-01-26 10:06:45 | 2026-03-03 18:11:39 | SEC-VLab | The dormakaba registration units 9002 (PIN Pad Units)… | Details |
| CVE-2025-37184 | 2026-01-14 16:19:45 | 2026-03-03 17:48:58 | hpe | A vulnerability exists in an Orchestrator service that… | Details |
| CVE-2025-14979 | 2026-01-06 15:15:30 | 2026-03-03 16:20:07 | Fluid Attacks | AirVPN Eddie on MacOS contains an insecure XPC… | Details |
| CVE-2026-24801 | 2026-01-27 08:36:25 | 2026-03-03 15:57:24 | GovTech CSG | Vulnerability in Ralim IronOS (source/Core/BSP/Pinecilv2/bl_mcu_sdk/components/ble/ble_stack/common/tinycrypt/source modules). This vulnerability… | Details |
| CVE-2026-24812 | 2026-01-27 08:48:31 | 2026-03-03 15:56:14 | GovTech CSG | Vulnerability in root-project root (builtins/zlib modules). This vulnerability… | Details |
| CVE-2026-21927 | 2026-01-20 21:56:21 | 2026-03-03 15:54:39 | oracle | Vulnerability in the Oracle Solaris product of Oracle… | Details |
| CVE-2026-21928 | 2026-01-20 21:56:22 | 2026-03-03 15:53:41 | oracle | Vulnerability in the Oracle Solaris product of Oracle… | Details |
| CVE-2026-1299 | 2026-01-23 16:27:13 | 2026-03-03 14:43:35 | PSF | The email module, specifically the "BytesGenerator" class, didn’t… | Details |
| CVE-2026-0865 | 2026-01-20 21:26:15 | 2026-03-03 14:43:30 | PSF | User-controlled header names and values containing newlines can… | Details |
| CVE-2026-0672 | 2026-01-20 21:52:33 | 2026-03-03 14:43:20 | PSF | When using http.cookies.Morsel, user-controlled cookie values and parameters… | Details |
| CVE-2025-15282 | 2026-01-20 21:35:13 | 2026-03-03 14:42:00 | PSF | User-controlled data URLs parsed by urllib.request.DataHandler allow injecting… | Details |
| CVE-2025-11468 | 2026-01-20 21:09:11 | 2026-03-03 14:41:28 | PSF | When folding a long comment in an email… | Details |
| CVE-2025-37186 | 2026-01-13 20:16:33 | 2026-03-02 17:39:27 | hpe | A local privilege-escalation vulnerability has been discovered in… | Details |
| CVE-2025-37165 | 2026-01-13 17:40:56 | 2026-03-02 17:38:10 | hpe | A vulnerability in the router mode configuration of… | Details |
| CVE-2026-0709 | 2026-01-30 11:01:55 | 2026-02-27 14:49:22 | hikvision | Some Hikvision Wireless Access Points are vulnerable to… | Details |
| CVE-2026-22623 | 2026-01-30 11:02:26 | 2026-02-27 14:45:19 | hikvision | Due to insufficient input parameter validation on the… | Details |
| CVE-2026-22624 | 2026-01-30 11:03:02 | 2026-02-27 14:44:15 | hikvision | Due to inadequate access control, authenticated users of… | Details |
| CVE-2026-22625 | 2026-01-30 11:03:14 | 2026-02-27 14:42:08 | hikvision | Improper handling of filenames in certain HIKSEMI NAS… | Details |
| CVE-2026-22626 | 2026-01-30 11:03:29 | 2026-02-27 14:37:37 | hikvision | Due to insufficient input parameter validation on the… | Details |
| CVE-2026-23592 | 2026-01-27 17:57:57 | 2026-02-27 14:33:27 | hpe | Insecure file operations in HPE Aruba Networking Fabric… | Details |
| CVE-2026-23593 | 2026-01-27 17:58:35 | 2026-02-27 14:32:15 | hpe | A vulnerability in the web-based management interface of… | Details |
| CVE-2025-40553 | 2026-01-28 07:35:41 | 2026-02-27 04:55:46 | SolarWinds | SolarWinds Web Help Desk was found to be… | Details |
| CVE-2025-40552 | 2026-01-28 07:34:37 | 2026-02-27 04:55:45 | SolarWinds | SolarWinds Web Help Desk was found to be… | Details |
| CVE-2025-12007 | 2026-01-16 08:39:41 | 2026-02-26 21:39:58 | Supermicro | There is a vulnerability in the Supermicro BMC… | Details |
| CVE-2025-41081 | 2026-01-20 12:11:33 | 2026-02-26 21:37:18 | INCIBE | Reflected Cross-Site Scripting (XSS) vulnerability in IsMyGym by… | Details |
| CVE-2025-14911 | 2026-01-27 17:29:21 | 2026-02-26 21:36:11 | mongodb | User-controlled chunkSize metadata from MongoDB lacks appropriate validation… | Details |
| CVE-2025-15528 | 2026-01-16 22:02:07 | 2026-02-26 15:59:48 | VulDB | A vulnerability has been found in Open5GS up… | Details |
| CVE-2025-15532 | 2026-01-17 16:32:07 | 2026-02-26 15:58:53 | VulDB | A security flaw has been discovered in Open5GS… | Details |
| CVE-2026-1048 | 2026-01-17 17:02:06 | 2026-02-26 15:57:18 | VulDB | A weakness has been identified in LigeroSmart up… | Details |
| CVE-2026-1049 | 2026-01-17 17:32:05 | 2026-02-26 15:56:50 | VulDB | A security vulnerability has been detected in LigeroSmart… | Details |
| CVE-2026-1050 | 2026-01-17 18:02:05 | 2026-02-26 15:56:28 | VulDB | A flaw has been found in risesoft-y9 Digital-Infrastructure… | Details |
| CVE-2026-21445 | 2026-01-02 19:11:24 | 2026-02-26 15:04:59 | GitHub_M | Langflow is a tool for building and deploying… | Details |
| CVE-2025-46696 | 2026-01-06 15:01:17 | 2026-02-26 15:04:56 | dell | Dell Secure Connect Gateway (SCG) 5.0 Appliance and… | Details |
| CVE-2026-0628 | 2026-01-06 23:57:00 | 2026-02-26 15:04:55 | Chrome | Insufficient policy enforcement in WebView tag in Google… | Details |
| CVE-2025-69262 | 2026-01-07 22:30:07 | 2026-02-26 15:04:55 | GitHub_M | pnpm is a package manager. Versions 6.25.0 through… | Details |
| CVE-2026-22035 | 2026-01-08 00:10:28 | 2026-02-26 15:04:55 | GitHub_M | Greenshot is an open source Windows screenshot utility.… | Details |
| CVE-2025-69258 | 2026-01-08 12:50:25 | 2026-02-26 15:04:54 | trendmicro | A LoadLibraryEX vulnerability in Trend Micro Apex Central… | Details |
| CVE-2025-14025 | 2026-01-08 13:44:04 | 2026-02-26 15:04:54 | redhat | A flaw was found in Ansible Automation Platform… | Details |
| CVE-2026-21638 | 2026-01-08 16:14:22 | 2026-02-26 15:04:54 | hackerone | A malicious actor in Wi-Fi range of the… | Details |
| CVE-2025-59470 | 2026-01-08 16:18:20 | 2026-02-26 15:04:54 | hackerone | This vulnerability allows a Backup Operator to perform… | Details |
| CVE-2025-59468 | 2026-01-08 16:18:20 | 2026-02-26 15:04:54 | hackerone | This vulnerability allows a Backup Administrator to perform… | Details |
| CVE-2025-59469 | 2026-01-08 16:18:20 | 2026-02-26 15:04:54 | hackerone | This vulnerability allows a Backup or Tape Operator… | Details |
| CVE-2026-20968 | 2026-01-09 06:15:41 | 2026-02-26 15:04:54 | SamsungMobile | Use after free in DualDAR prior to SMR… | Details |
| CVE-2026-20970 | 2026-01-09 06:16:03 | 2026-02-26 15:04:53 | SamsungMobile | Improper access control in SLocation prior to SMR… | Details |
| CVE-2026-20971 | 2026-01-09 06:16:15 | 2026-02-26 15:04:53 | SamsungMobile | Use After Free in PROCA driver prior to… | Details |
| CVE-2025-69194 | 2026-01-09 07:53:48 | 2026-02-26 15:04:53 | fedora | A security issue was discovered in GNU Wget2… | Details |
| CVE-2025-69195 | 2026-01-09 07:57:17 | 2026-02-26 15:04:52 | fedora | A flaw was found in GNU Wget2. This… | Details |
| CVE-2026-1283 | 2026-01-26 13:25:04 | 2026-02-26 15:04:52 | 3DS | A Heap-based Buffer Overflow vulnerability affecting the EPRT… | Details |
| CVE-2025-46644 | 2026-01-09 15:31:19 | 2026-02-26 15:04:51 | dell | Dell PowerProtect Data Domain with Data Domain Operating… | Details |
| CVE-2025-46645 | 2026-01-09 16:14:35 | 2026-02-26 15:04:51 | dell | Dell PowerProtect Data Domain with Data Domain Operating… | Details |
| CVE-2026-1284 | 2026-01-26 13:25:12 | 2026-02-26 15:04:51 | 3DS | An Out-Of-Bounds Write vulnerability affecting the EPRT file… | Details |
| CVE-2025-14756 | 2026-01-26 18:17:09 | 2026-02-26 15:04:51 | TPLink | Command injection vulnerability was found in the admin… | Details |
| CVE-2026-23683 | 2026-01-27 00:22:13 | 2026-02-26 15:04:51 | sap | SAP Fiori App Intercompany Balance Reconciliation does not… | Details |
| CVE-2025-12420 | 2026-01-12 21:29:37 | 2026-02-26 15:04:50 | SN | A vulnerability has been identified in the ServiceNow… | Details |
| CVE-2026-0498 | 2026-01-13 01:13:41 | 2026-02-26 15:04:49 | sap | SAP S/4HANA (Private Cloud and On-Premise) allows an… | Details |
| CVE-2026-0491 | 2026-01-13 01:12:53 | 2026-02-26 15:04:49 | sap | SAP Landscape Transformation allows an attacker with admin… | Details |
| CVE-2026-0492 | 2026-01-13 01:13:00 | 2026-02-26 15:04:49 | sap | SAP HANA database is vulnerable to privilege escalation… | Details |
| CVE-2025-40537 | 2026-01-28 07:31:41 | 2026-02-26 15:04:49 | SolarWinds | SolarWinds Web Help Desk was found to be… | Details |
| CVE-2025-40551 | 2026-01-28 07:33:09 | 2026-02-26 15:04:49 | SolarWinds | SolarWinds Web Help Desk was found to be… | Details |
| CVE-2025-40536 | 2026-01-28 07:30:09 | 2026-02-26 15:04:49 | SolarWinds | SolarWinds Web Help Desk was found to be… | Details |
| CVE-2026-0501 | 2026-01-13 01:14:05 | 2026-02-26 15:04:48 | sap | Due to insufficient input validation in SAP S/4HANA… | Details |
| CVE-2026-0511 | 2026-01-13 01:15:50 | 2026-02-26 15:04:48 | sap | SAP Fiori App Intercompany Balance Reconciliation does not… | Details |
| CVE-2026-0507 | 2026-01-13 01:15:36 | 2026-02-26 15:04:48 | sap | Due to an OS Command Injection vulnerability in… | Details |
| CVE-2025-40554 | 2026-01-28 07:36:50 | 2026-02-26 15:04:48 | SolarWinds | SolarWinds Web Help Desk was found to be… | Details |
| CVE-2025-13774 | 2026-01-13 12:59:51 | 2026-02-26 15:04:47 | ProgressSoftware | A vulnerability exists in Progress Flowmon ADS versions… | Details |
| CVE-2025-13918 | 2026-01-28 16:35:43 | 2026-02-26 15:04:47 | symantec | Symantec Endpoint Protection, prior to 14.3 RU10 Patch… | Details |
| CVE-2025-13444 | 2026-01-13 14:26:50 | 2026-02-26 15:04:46 | ProgressSoftware | OS Command Injection Remote Code Execution Vulnerability in… | Details |
| CVE-2025-11669 | 2026-01-13 14:10:55 | 2026-02-26 15:04:46 | Zohocorp | Zohocorp ManageEngine PAM360 versions before 8202; Password Manager Pro versions… | Details |
| CVE-2025-33219 | 2026-01-28 17:48:07 | 2026-02-26 15:04:46 | nvidia | NVIDIA Display Driver for Linux contains a vulnerability… | Details |
| CVE-2025-33218 | 2026-01-28 17:47:25 | 2026-02-26 15:04:46 | nvidia | NVIDIA GPU Display Driver for Windows contains a… | Details |
| CVE-2025-33217 | 2026-01-28 17:46:41 | 2026-02-26 15:04:46 | nvidia | NVIDIA Display Driver for Windows contains a vulnerability… | Details |
| CVE-2025-13447 | 2026-01-13 14:31:56 | 2026-02-26 15:04:45 | ProgressSoftware | OS Command Injection Remote Code Execution Vulnerability in… | Details |
| CVE-2025-36640 | 2026-01-13 15:05:19 | 2026-02-26 15:04:45 | tenable | A vulnerability has been identified in the installation/uninstallation… | Details |
| CVE-2026-0403 | 2026-01-13 16:00:25 | 2026-02-26 15:04:45 | NETGEAR | An insufficient input validation vulnerability in NETGEAR Orbi… | Details |
| CVE-2025-33220 | 2026-01-28 17:48:40 | 2026-02-26 15:04:45 | nvidia | NVIDIA vGPU software contains a vulnerability in the… | Details |
| CVE-2025-68119 | 2026-01-28 19:30:30 | 2026-02-26 15:04:45 | Go | Downloading and building modules with malicious version strings… | Details |
| CVE-2026-0406 | 2026-01-13 16:00:59 | 2026-02-26 15:04:44 | NETGEAR | An insufficient input validation vulnerability in the NETGEAR… | Details |
| CVE-2026-0407 | 2026-01-13 16:01:04 | 2026-02-26 15:04:44 | NETGEAR | An insufficient authentication vulnerability in NETGEAR WiFi range… | Details |
| CVE-2026-0405 | 2026-01-13 16:00:48 | 2026-02-26 15:04:44 | NETGEAR | An authentication bypass vulnerability in NETGEAR Orbi devices… | Details |
| CVE-2025-15545 | 2026-01-29 17:31:10 | 2026-02-26 15:04:44 | TPLink | The backup restore function does not properly validate… | Details |
| CVE-2025-13399 | 2026-01-29 18:05:28 | 2026-02-26 15:04:44 | TPLink | A weakness in the web interface’s application layer… | Details |
| CVE-2026-1457 | 2026-01-29 18:52:39 | 2026-02-26 15:04:44 | TPLink | An authenticated buffer handling flaw in TP-Link VIGI… | Details |
| CVE-2026-0408 | 2026-01-13 16:01:11 | 2026-02-26 15:04:43 | NETGEAR | A path traversal vulnerability in NETGEAR WiFi range… | Details |
| CVE-2026-0404 | 2026-01-13 16:01:14 | 2026-02-26 15:04:43 | NETGEAR | An insufficient input validation vulnerability in NETGEAR Orbi… | Details |
| CVE-2026-1281 | 2026-01-29 21:31:17 | 2026-02-26 15:04:43 | ivanti | A code injection in Ivanti Endpoint Manager Mobile… | Details |
| CVE-2026-22277 | 2026-01-30 08:27:02 | 2026-02-26 15:04:43 | dell | Dell UnityVSA, version(s) 5.4 and prior, contain(s) an… | Details |
| CVE-2025-46685 | 2026-01-13 16:36:41 | 2026-02-26 15:04:42 | dell | Dell SupportAssist OS Recovery, versions prior to 5.5.15.1,… | Details |
| CVE-2025-64155 | 2026-01-13 16:32:28 | 2026-02-26 15:04:42 | fortinet | An improper neutralization of special elements used in… | Details |
| CVE-2026-21418 | 2026-01-30 08:38:59 | 2026-02-26 15:04:42 | dell | Dell Unity, version(s) 5.5.2 and prior, contain(s) an… | Details |
| CVE-2025-62349 | 2026-01-30 18:59:21 | 2026-02-26 15:04:42 | vmware | Salt contains an authentication protocol version downgrade weakness… | Details |
| CVE-2025-62348 | 2026-01-30 18:57:52 | 2026-02-26 15:04:42 | vmware | Salt's junos execution module contained an unsafe YAML… | Details |
| CVE-2026-1723 | 2026-01-30 20:52:09 | 2026-02-26 15:04:41 | palo_alto | Improper Neutralization of Special Elements used in an… | Details |
| CVE-2025-36365 | 2026-01-30 21:27:54 | 2026-02-26 15:04:41 | ibm | IBM Db2 for Linux, UNIX and Windows (includes… | Details |
| CVE-2025-36384 | 2026-01-30 21:27:48 | 2026-02-26 15:04:41 | ibm | IBM Db2 for Windows 12.1.0 - 12.1.3 could… | Details |
| CVE-2025-36184 | 2026-01-30 21:28:00 | 2026-02-26 15:04:40 | ibm | IBM Db2 for Linux, UNIX and Windows (includes… | Details |
| CVE-2026-21274 | 2026-01-13 18:25:35 | 2026-02-26 15:04:17 | adobe | Dreamweaver Desktop versions 21.6 and earlier are affected… | Details |
| CVE-2026-21272 | 2026-01-13 18:25:34 | 2026-02-26 15:04:17 | adobe | Dreamweaver Desktop versions 21.6 and earlier are affected… | Details |
| CVE-2026-21268 | 2026-01-13 18:25:34 | 2026-02-26 15:04:17 | adobe | Dreamweaver Desktop versions 21.6 and earlier are affected… | Details |
| CVE-2026-21276 | 2026-01-13 18:35:35 | 2026-02-26 15:04:16 | adobe | InDesign Desktop versions 21.0, 19.5.5 and earlier are… | Details |
| CVE-2026-21271 | 2026-01-13 18:25:36 | 2026-02-26 15:04:16 | adobe | Dreamweaver Desktop versions 21.6 and earlier are affected… | Details |
| CVE-2026-21267 | 2026-01-13 18:25:37 | 2026-02-26 15:04:16 | adobe | Dreamweaver Desktop versions 21.6 and earlier are affected… | Details |
| CVE-2026-21304 | 2026-01-13 18:35:37 | 2026-02-26 15:04:15 | adobe | InDesign Desktop versions 21.0, 19.5.5 and earlier are… | Details |
| CVE-2026-21277 | 2026-01-13 18:35:38 | 2026-02-26 15:04:15 | adobe | InDesign Desktop versions 21.0, 19.5.5 and earlier are… | Details |
| CVE-2026-21275 | 2026-01-13 18:35:36 | 2026-02-26 15:04:15 | adobe | InDesign Desktop versions 21.0, 19.5.5 and earlier are… | Details |
| CVE-2026-21281 | 2026-01-13 18:45:30 | 2026-02-26 15:04:14 | adobe | InCopy versions 21.0, 19.5.5 and earlier are affected… | Details |
| CVE-2026-21283 | 2026-01-13 18:48:13 | 2026-02-26 15:04:14 | adobe | Bridge versions 15.1.2, 16.0 and earlier are affected… | Details |
| CVE-2026-21280 | 2026-01-13 18:41:21 | 2026-02-26 15:04:14 | adobe | Illustrator versions 29.8.3, 30.0 and earlier are affected… | Details |
| CVE-2026-21305 | 2026-01-13 19:33:09 | 2026-02-26 15:04:14 | adobe | Substance3D - Painter versions 11.0.3 and earlier are… | Details |
| CVE-2026-21287 | 2026-01-13 19:44:45 | 2026-02-26 15:04:13 | adobe | Substance3D - Stager versions 3.1.5 and earlier are… | Details |
| CVE-2026-21306 | 2026-01-13 19:54:56 | 2026-02-26 15:04:13 | adobe | Substance3D - Sampler versions 5.1.0 and earlier are… | Details |
| CVE-2025-37169 | 2026-01-13 20:03:33 | 2026-02-26 15:04:13 | hpe | A stack overflow vulnerability exists in the AOS-10… | Details |
| CVE-2025-37172 | 2026-01-13 20:04:38 | 2026-02-26 15:04:12 | hpe | Authenticated command injection vulnerabilities exist in the web-based… | Details |
| CVE-2025-37171 | 2026-01-13 20:04:22 | 2026-02-26 15:04:12 | hpe | Authenticated command injection vulnerabilities exist in the web-based… | Details |
| CVE-2025-37170 | 2026-01-13 20:04:03 | 2026-02-26 15:04:12 | hpe | Authenticated command injection vulnerabilities exist in the web-based… | Details |
| CVE-2025-37175 | 2026-01-13 20:07:34 | 2026-02-26 15:04:11 | hpe | Arbitrary file upload vulnerability exists in the web-based… | Details |
| CVE-2025-37173 | 2026-01-13 20:04:57 | 2026-02-26 15:04:11 | hpe | An improper input handling vulnerability exists in the… | Details |
| CVE-2025-37176 | 2026-01-13 20:07:50 | 2026-02-26 15:04:11 | hpe | A command injection vulnerability in AOS-8 allows an… | Details |
| CVE-2025-37174 | 2026-01-13 20:05:33 | 2026-02-26 15:04:11 | hpe | Authenticated arbitrary file write vulnerability exists in the… | Details |
| CVE-2026-21298 | 2026-01-13 20:20:19 | 2026-02-26 15:04:10 | adobe | Substance3D - Modeler versions 1.22.4 and earlier are… | Details |
| CVE-2026-21299 | 2026-01-13 20:20:19 | 2026-02-26 15:04:10 | adobe | Substance3D - Modeler versions 1.22.4 and earlier are… | Details |
| CVE-2026-22852 | 2026-01-14 17:45:22 | 2026-02-26 15:04:10 | GitHub_M | FreeRDP is a free implementation of the Remote… | Details |
| CVE-2026-22856 | 2026-01-14 17:53:04 | 2026-02-26 15:04:09 | GitHub_M | FreeRDP is a free implementation of the Remote… | Details |
| CVE-2026-22854 | 2026-01-14 17:47:49 | 2026-02-26 15:04:09 | GitHub_M | FreeRDP is a free implementation of the Remote… | Details |
| CVE-2026-22857 | 2026-01-14 17:53:54 | 2026-02-26 15:04:08 | GitHub_M | FreeRDP is a free implementation of the Remote… | Details |
| CVE-2025-33206 | 2026-01-14 18:30:41 | 2026-02-26 15:04:08 | nvidia | NVIDIA NSIGHT Graphics for Linux contains a vulnerability… | Details |
| CVE-2025-11224 | 2026-01-14 18:58:03 | 2026-02-26 15:04:08 | GitLab | GitLab has remediated an issue in GitLab CE/EE… | Details |
| CVE-2026-0421 | 2026-01-14 22:18:56 | 2026-02-26 15:04:07 | lenovo | A potential vulnerability was reported in the BIOS… | Details |
| CVE-2025-61973 | 2026-01-15 15:19:48 | 2026-02-26 15:04:07 | talos | A local privilege escalation vulnerability exists during the… | Details |
| CVE-2026-20076 | 2026-01-15 16:32:03 | 2026-02-26 15:04:07 | cisco | A vulnerability in the web-based management interface of… | Details |
| CVE-2026-20047 | 2026-01-15 16:32:15 | 2026-02-26 15:04:06 | cisco | A vulnerability in the web-based management interface of… | Details |
| CVE-2026-21908 | 2026-01-15 20:21:41 | 2026-02-26 15:04:06 | juniper | A Use After Free vulnerability was identified in… | Details |
| CVE-2025-14231 | 2026-01-15 23:35:27 | 2026-02-26 15:04:06 | Canon | Buffer overflow in print job processing by WSD… | Details |
| CVE-2025-14234 | 2026-01-15 23:38:13 | 2026-02-26 15:04:05 | Canon | Buffer overflow in CPCA list processing on Small… | Details |
| CVE-2025-14232 | 2026-01-15 23:36:27 | 2026-02-26 15:04:05 | Canon | Buffer overflow in XML processing of XPS file… | Details |
| CVE-2025-14233 | 2026-01-15 23:37:29 | 2026-02-26 15:04:05 | Canon | Invalid free in CPCA file deletion processing on… | Details |
| CVE-2025-14235 | 2026-01-15 23:38:53 | 2026-02-26 15:04:04 | Canon | Buffer overflow in XPS font fpgm data processing… | Details |
| CVE-2025-14236 | 2026-01-15 23:39:50 | 2026-02-26 15:04:03 | Canon | Buffer overflow in Address Book attribute tag processing… | Details |
| CVE-2025-14237 | 2026-01-15 23:40:35 | 2026-02-26 15:04:03 | Canon | Buffer overflow in XPS font parse processing on… | Details |
| CVE-2025-12006 | 2026-01-16 08:36:33 | 2026-02-26 15:04:03 | Supermicro | There is a vulnerability in the Supermicro BMC… | Details |
| CVE-2025-60021 | 2026-01-16 08:39:23 | 2026-02-26 15:04:02 | apache | Remote command injection vulnerability in heap profiler builtin… | Details |
| CVE-2025-68666 | 2026-01-28 19:14:09 | 2026-02-26 14:58:41 | GitHub_M | Discourse is an open source discussion platform. In… | Details |
| CVE-2026-0629 | 2026-01-16 17:24:39 | 2026-02-26 14:44:46 | TPLink | Authentication bypass in the password recovery feature of… | Details |
| CVE-2025-48647 | 2026-01-16 18:19:02 | 2026-02-26 14:44:46 | google_android | In cpm_fwtp_msg_handler of cpm/google/lib/tracepoint/cpm_fwtp_ipc.c, there is a possible… | Details |
| CVE-2026-0899 | 2026-01-20 04:14:13 | 2026-02-26 14:44:45 | Chrome | Out of bounds memory access in V8 in… | Details |
| CVE-2026-0900 | 2026-01-20 04:14:14 | 2026-02-26 14:44:45 | Chrome | Inappropriate implementation in V8 in Google Chrome prior… | Details |
| CVE-2026-0908 | 2026-01-20 04:14:17 | 2026-02-26 14:44:44 | Chrome | Use after free in ANGLE in Google Chrome… | Details |
| CVE-2025-14115 | 2026-01-20 14:59:15 | 2026-02-26 14:44:44 | ibm | IBM Sterling Connect:Direct for UNIX Container 6.3.0.0 through… | Details |
| CVE-2025-33015 | 2026-01-20 15:04:21 | 2026-02-26 14:44:43 | ibm | IBM Concert 1.0.0 through 2.1.0 is vulnerable to… | Details |
| CVE-2025-33229 | 2026-01-20 17:44:47 | 2026-02-26 14:44:43 | nvidia | NVIDIA Nsight Visual Studio for Windows contains a… | Details |
| CVE-2025-33230 | 2026-01-20 17:55:28 | 2026-02-26 14:44:43 | nvidia | NVIDIA Nsight Systems for Linux contains a vulnerability… | Details |
| CVE-2025-33228 | 2026-01-20 17:44:19 | 2026-02-26 14:44:43 | nvidia | NVIDIA Nsight Systems contains a vulnerability in the… | Details |
| CVE-2025-33231 | 2026-01-20 17:55:55 | 2026-02-26 14:44:42 | nvidia | NVIDIA Nsight Systems for Windows contains a vulnerability… | Details |
| CVE-2025-15367 | 2026-01-20 21:47:09 | 2026-02-26 14:44:41 | PSF | The poplib module, when passed a user-controlled command,… | Details |
| CVE-2026-21939 | 2026-01-20 21:56:26 | 2026-02-26 14:44:40 | oracle | Vulnerability in the SQLcl component of Oracle Database… | Details |
| CVE-2026-21935 | 2026-01-20 21:56:24 | 2026-02-26 14:44:40 | oracle | Vulnerability in the Oracle Solaris product of Oracle… | Details |
| CVE-2026-21955 | 2026-01-20 21:56:30 | 2026-02-26 14:44:40 | oracle | Vulnerability in the Oracle VM VirtualBox product of… | Details |
| CVE-2026-21957 | 2026-01-20 21:56:31 | 2026-02-26 14:44:39 | oracle | Vulnerability in the Oracle VM VirtualBox product of… | Details |
| CVE-2026-21956 | 2026-01-20 21:56:31 | 2026-02-26 14:44:39 | oracle | Vulnerability in the Oracle VM VirtualBox product of… | Details |
| CVE-2026-21976 | 2026-01-20 21:56:37 | 2026-02-26 14:44:38 | oracle | Vulnerability in the Oracle Business Intelligence Enterprise Edition… | Details |
| CVE-2026-21969 | 2026-01-20 21:56:34 | 2026-02-26 14:44:38 | oracle | Vulnerability in the Oracle Agile Product Lifecycle Management… | Details |
| CVE-2026-21960 | 2026-01-20 21:56:31 | 2026-02-26 14:44:38 | oracle | Vulnerability in the Oracle Applications DBA product of… | Details |
| CVE-2026-21982 | 2026-01-20 21:56:39 | 2026-02-26 14:44:37 | oracle | Vulnerability in the Oracle VM VirtualBox product of… | Details |
| CVE-2026-21984 | 2026-01-20 21:56:40 | 2026-02-26 14:44:37 | oracle | Vulnerability in the Oracle VM VirtualBox product of… | Details |
| CVE-2026-21983 | 2026-01-20 21:56:39 | 2026-02-26 14:44:37 | oracle | Vulnerability in the Oracle VM VirtualBox product of… | Details |
| CVE-2026-21988 | 2026-01-20 21:56:41 | 2026-02-26 14:44:36 | oracle | Vulnerability in the Oracle VM VirtualBox product of… | Details |
| CVE-2026-21987 | 2026-01-20 21:56:41 | 2026-02-26 14:44:36 | oracle | Vulnerability in the Oracle VM VirtualBox product of… | Details |
| CVE-2026-21990 | 2026-01-20 21:56:42 | 2026-02-26 14:44:36 | oracle | Vulnerability in the Oracle VM VirtualBox product of… | Details |
| CVE-2026-21989 | 2026-01-20 21:56:41 | 2026-02-26 14:44:36 | oracle | Vulnerability in the Oracle VM VirtualBox product of… | Details |
| CVE-2026-20092 | 2026-01-21 16:26:05 | 2026-02-26 14:44:35 | cisco | A vulnerability in the read-only maintenance shell of… | Details |
| CVE-2026-20045 | 2026-01-21 16:26:20 | 2026-02-26 14:44:34 | cisco | A vulnerability in Cisco Unified Communications Manager (Unified… | Details |
| CVE-2026-23526 | 2026-01-21 21:40:25 | 2026-02-26 14:44:33 | GitHub_M | CVAT is an open source interactive video and… | Details |
| CVE-2026-23516 | 2026-01-21 21:38:32 | 2026-02-26 14:44:33 | GitHub_M | CVAT is an open source interactive video and… | Details |
| CVE-2026-0723 | 2026-01-22 13:34:08 | 2026-02-26 14:44:33 | GitLab | GitLab has remediated an issue in GitLab CE/EE… | Details |
| CVE-2025-36588 | 2026-01-22 15:52:01 | 2026-02-26 14:44:32 | dell | Dell Unisphere for PowerMax, version(s) 10.2.0.x, contain(s) an… | Details |
| CVE-2026-22278 | 2026-01-22 16:16:51 | 2026-02-26 14:44:32 | dell | Dell PowerScale OneFS versions prior to 9.13.0.0 contains… | Details |
| CVE-2026-24124 | 2026-01-22 22:20:20 | 2026-02-26 14:44:30 | GitHub_M | Dragonfly is an open source P2P-based file distribution… | Details |
| CVE-2025-11002 | 2026-01-23 02:47:05 | 2026-02-26 14:44:28 | zdi | 7-Zip ZIP File Parsing Directory Traversal Remote Code… | Details |
| CVE-2026-0766 | 2026-01-23 03:28:35 | 2026-02-26 14:44:27 | zdi | Open WebUI load_tool_module_by_id Command Injection Remote Code Execution… | Details |
| CVE-2026-0768 | 2026-01-23 03:28:43 | 2026-02-26 14:44:27 | zdi | Langflow code Code Injection Remote Code Execution Vulnerability.… | Details |
| CVE-2026-0765 | 2026-01-23 03:28:32 | 2026-02-26 14:44:27 | zdi | Open WebUI PIP install_frontmatter_requirements Command Injection Remote Code… | Details |
| CVE-2026-0769 | 2026-01-23 03:28:47 | 2026-02-26 14:44:26 | zdi | Langflow eval_custom_component_code Eval Injection Remote Code Execution Vulnerability.… | Details |
| CVE-2026-0771 | 2026-01-23 03:28:56 | 2026-02-26 14:44:26 | zdi | Langflow PythonFunction Code Injection Remote Code Execution Vulnerability.… | Details |
| CVE-2026-0772 | 2026-01-23 03:29:01 | 2026-02-26 14:44:25 | zdi | Langflow Disk Cache Deserialization of Untrusted Data Remote… | Details |
| CVE-2026-0776 | 2026-01-23 03:29:18 | 2026-02-26 14:44:25 | zdi | Discord Client Uncontrolled Search Path Element Local Privilege… | Details |
| CVE-2025-67847 | 2026-01-23 04:35:12 | 2026-02-26 14:44:24 | fedora | A flaw was found in Moodle. An attacker… | Details |
| CVE-2026-22271 | 2026-01-23 08:54:16 | 2026-02-26 14:44:24 | dell | Dell ECS, versions 3.8.1.0 through 3.8.1.7, and Dell… | Details |
| CVE-2026-22273 | 2026-01-23 09:14:38 | 2026-02-26 14:44:23 | dell | Dell ECS, versions 3.8.1.0 through 3.8.1.7, and Dell… | Details |
| CVE-2025-13454 | 2026-01-14 22:18:18 | 2026-02-25 21:31:27 | lenovo | A potential vulnerability was reported in ThinkPlus configuration… | Details |
| CVE-2025-13453 | 2026-01-14 22:18:13 | 2026-02-25 21:31:21 | lenovo | A potential vulnerability was reported in some ThinkPlus… | Details |
| CVE-2026-1144 | 2026-01-19 07:32:10 | 2026-02-25 16:46:28 | VulDB | A vulnerability was detected in quickjs-ng quickjs up… | Details |
| CVE-2026-1145 | 2026-01-19 08:02:08 | 2026-02-25 16:45:03 | VulDB | A flaw has been found in quickjs-ng quickjs… | Details |
| CVE-2026-24016 | 2026-01-21 07:19:03 | 2026-02-24 14:51:46 | jpcert | The installer of ServerView Agents for Windows provided… | Details |
| CVE-2025-68675 | 2026-01-16 10:23:25 | 2026-02-24 05:48:05 | apache | In Apache Airflow versions before 3.1.6, and 2.11.1… | Details |
| CVE-2026-0663 | 2026-01-21 10:29:57 | 2026-02-23 10:39:26 | M-Files Corporation | Denial-of-service vulnerability in M-Files Server versions before 26.1.15632.3 allows an… | Details |
| CVE-2026-1705 | 2026-01-30 21:32:08 | 2026-02-23 09:11:22 | VulDB | A vulnerability was detected in D-Link DSL-6641K N8.TR069.20131126.… | Details |
| CVE-2026-1702 | 2026-01-30 17:32:09 | 2026-02-23 09:11:04 | VulDB | A vulnerability was detected in SourceCodester Pet Grooming… | Details |
| CVE-2026-1701 | 2026-01-30 17:32:06 | 2026-02-23 09:10:49 | VulDB | A security vulnerability has been detected in itsourcecode… | Details |
| CVE-2026-1700 | 2026-01-30 17:02:07 | 2026-02-23 09:10:35 | VulDB | A weakness has been identified in projectworlds House… | Details |
| CVE-2026-1691 | 2026-01-30 17:02:06 | 2026-02-23 09:10:21 | VulDB | A vulnerability has been found in bolo-solo up… | Details |
| CVE-2026-1690 | 2026-01-30 16:32:11 | 2026-02-23 09:10:09 | VulDB | A flaw has been found in Tenda HG10… | Details |
| CVE-2026-1689 | 2026-01-30 16:32:08 | 2026-02-23 09:09:54 | VulDB | A vulnerability was detected in Tenda HG10 US_HG7_HG9_HG10re_300001138_en_xpon.… | Details |
| CVE-2026-1688 | 2026-01-30 16:02:11 | 2026-02-23 09:09:41 | VulDB | A security vulnerability has been detected in itsourcecode… | Details |
| CVE-2026-1687 | 2026-01-30 16:02:09 | 2026-02-23 09:09:26 | VulDB | A weakness has been identified in Tenda HG10… | Details |
| CVE-2026-1686 | 2026-01-30 15:02:08 | 2026-02-23 09:09:13 | VulDB | A security flaw has been discovered in Totolink… | Details |
| CVE-2026-1685 | 2026-01-30 14:32:10 | 2026-02-23 09:08:58 | VulDB | A vulnerability was identified in D-Link DIR-823X 250416.… | Details |
| CVE-2026-1684 | 2026-01-30 14:32:07 | 2026-02-23 09:08:43 | VulDB | A vulnerability was found in Free5GC SMF up… | Details |
| CVE-2026-1683 | 2026-01-30 14:02:09 | 2026-02-23 09:08:30 | VulDB | A vulnerability has been found in Free5GC SMF… | Details |
| CVE-2026-1682 | 2026-01-30 14:02:07 | 2026-02-23 09:08:18 | VulDB | A flaw has been found in Free5GC SMF… | Details |
| CVE-2026-1638 | 2026-01-29 23:32:11 | 2026-02-23 09:08:03 | VulDB | A security flaw has been discovered in Tenda… | Details |
| CVE-2026-1637 | 2026-01-29 22:32:07 | 2026-02-23 09:07:49 | VulDB | A vulnerability was identified in Tenda AC21 16.03.08.16.… | Details |
| CVE-2026-1625 | 2026-01-29 22:02:13 | 2026-02-23 09:07:33 | VulDB | A vulnerability was detected in D-Link DWR-M961 1.1.47.… | Details |
| CVE-2026-1624 | 2026-01-29 22:02:10 | 2026-02-23 09:07:19 | VulDB | A security vulnerability has been detected in D-Link… | Details |
| CVE-2026-1623 | 2026-01-29 20:32:08 | 2026-02-23 09:07:06 | VulDB | A weakness has been identified in Totolink A7000R… | Details |
| CVE-2026-1610 | 2026-01-29 19:02:08 | 2026-02-23 09:06:50 | VulDB | A vulnerability was found in Tenda AX12 Pro… | Details |
| CVE-2026-1601 | 2026-01-29 18:32:07 | 2026-02-23 09:06:35 | VulDB | A weakness has been identified in Totolink A7000R… | Details |
| CVE-2026-1600 | 2026-01-29 18:02:06 | 2026-02-23 09:06:22 | VulDB | A vulnerability was identified in Bdtask Bhojon All-In-One… | Details |
| CVE-2026-1599 | 2026-01-29 17:32:06 | 2026-02-23 09:06:08 | VulDB | A vulnerability was determined in Bdtask Bhojon All-In-One… | Details |
| CVE-2026-1598 | 2026-01-29 17:02:06 | 2026-02-23 09:05:54 | VulDB | A vulnerability was found in Bdtask Bhojon All-In-One… | Details |
| CVE-2026-1597 | 2026-01-29 16:32:05 | 2026-02-23 09:05:43 | VulDB | A vulnerability has been found in Bdtask SalesERP… | Details |
| CVE-2026-1596 | 2026-01-29 15:32:11 | 2026-02-23 09:05:29 | VulDB | A flaw has been found in D-Link DWR-M961… | Details |
| CVE-2026-1595 | 2026-01-29 15:32:08 | 2026-02-23 09:05:13 | VulDB | A vulnerability was detected in itsourcecode Society Management… | Details |
| CVE-2026-1594 | 2026-01-29 14:32:08 | 2026-02-23 09:05:00 | VulDB | A security vulnerability has been detected in itsourcecode… | Details |
| CVE-2026-1593 | 2026-01-29 14:32:06 | 2026-02-23 09:04:46 | VulDB | A weakness has been identified in itsourcecode Society… | Details |
| CVE-2026-1590 | 2026-01-29 14:02:09 | 2026-02-23 09:04:32 | VulDB | A vulnerability was identified in itsourcecode School Management… | Details |
| CVE-2026-1589 | 2026-01-29 14:02:07 | 2026-02-23 09:04:20 | VulDB | A vulnerability was determined in itsourcecode School Management… | Details |
| CVE-2026-1588 | 2026-01-29 13:32:06 | 2026-02-23 09:04:07 | VulDB | A vulnerability was found in jishenghua jshERP up… | Details |
| CVE-2026-1587 | 2026-01-29 12:32:08 | 2026-02-23 09:03:54 | VulDB | A vulnerability has been found in Open5GS up… | Details |
| CVE-2026-1586 | 2026-01-29 12:32:06 | 2026-02-23 09:03:40 | VulDB | A flaw has been found in Open5GS up… | Details |
| CVE-2026-1552 | 2026-01-29 00:02:06 | 2026-02-23 09:03:26 | VulDB | A security vulnerability has been detected in SEMCMS… | Details |
| CVE-2026-1551 | 2026-01-28 23:32:15 | 2026-02-23 09:03:14 | VulDB | A weakness has been identified in itsourcecode School… | Details |
| CVE-2026-1550 | 2026-01-28 23:02:10 | 2026-02-23 09:03:01 | VulDB | A security flaw has been discovered in PHPGurukul… | Details |
| CVE-2026-1549 | 2026-01-28 23:02:07 | 2026-02-23 09:02:48 | VulDB | A vulnerability was identified in jishenghua jshERP up… | Details |
| CVE-2026-1548 | 2026-01-28 22:32:08 | 2026-02-23 09:02:35 | VulDB | A flaw has been found in Totolink A7000R… | Details |
| CVE-2026-1547 | 2026-01-28 22:02:10 | 2026-02-23 09:02:20 | VulDB | A vulnerability was detected in Totolink A7000R 4.1cu.4154.… | Details |
| CVE-2026-1546 | 2026-01-28 22:02:06 | 2026-02-23 09:02:07 | VulDB | A security vulnerability has been detected in jishenghua… | Details |
| CVE-2026-1545 | 2026-01-28 21:32:12 | 2026-02-23 09:01:53 | VulDB | A weakness has been identified in itsourcecode School… | Details |
| CVE-2026-1544 | 2026-01-28 21:32:09 | 2026-02-23 09:01:40 | VulDB | A security flaw has been discovered in D-Link… | Details |
| CVE-2026-1535 | 2026-01-28 21:02:09 | 2026-02-23 09:01:24 | VulDB | A security vulnerability has been detected in code-projects… | Details |
| CVE-2026-1534 | 2026-01-28 21:02:07 | 2026-02-23 09:01:11 | VulDB | A weakness has been identified in code-projects Online… | Details |
| CVE-2026-1533 | 2026-01-28 20:32:10 | 2026-02-23 09:00:58 | VulDB | A security flaw has been discovered in code-projects… | Details |
| CVE-2026-1532 | 2026-01-28 20:32:09 | 2026-02-23 09:00:44 | VulDB | A vulnerability was identified in D-Link DCS-700L 1.03.09.… | Details |
| CVE-2026-1522 | 2026-01-28 16:32:07 | 2026-02-23 09:00:29 | VulDB | A weakness has been identified in Open5GS up… | Details |
| CVE-2026-1521 | 2026-01-28 14:32:10 | 2026-02-23 09:00:17 | VulDB | A security flaw has been discovered in Open5GS… | Details |
| CVE-2026-1520 | 2026-01-28 14:32:06 | 2026-02-23 09:00:04 | VulDB | A vulnerability was identified in rethinkdb up to… | Details |
| CVE-2026-1506 | 2026-01-28 02:32:09 | 2026-02-23 08:59:48 | VulDB | A vulnerability was determined in D-Link DIR-615 4.10.… | Details |
| CVE-2026-1505 | 2026-01-28 01:32:08 | 2026-02-23 08:59:34 | VulDB | A vulnerability was found in D-Link DIR-615 4.10.… | Details |
| CVE-2026-1449 | 2026-01-26 23:32:10 | 2026-02-23 08:59:17 | VulDB | A flaw has been found in Hisense TransTech… | Details |
| CVE-2026-1448 | 2026-01-26 23:32:08 | 2026-02-23 08:59:03 | VulDB | A vulnerability was detected in D-Link DIR-615 up… | Details |
| CVE-2026-1445 | 2026-01-26 22:02:05 | 2026-02-23 08:58:47 | VulDB | A vulnerability was found in iJason-Liu Books_Manager up… | Details |
| CVE-2026-1444 | 2026-01-26 21:32:05 | 2026-02-23 08:58:35 | VulDB | A vulnerability has been found in iJason-Liu Books_Manager… | Details |
| CVE-2026-1443 | 2026-01-26 20:02:06 | 2026-02-23 08:58:20 | VulDB | A flaw has been found in code-projects Online… | Details |
| CVE-2026-1425 | 2026-01-26 07:32:06 | 2026-02-23 08:58:07 | VulDB | A security flaw has been discovered in pymumu… | Details |
| CVE-2026-1424 | 2026-01-26 07:02:07 | 2026-02-23 08:57:53 | VulDB | A vulnerability was identified in PHPGurukul News Portal… | Details |
| CVE-2026-1423 | 2026-01-26 06:32:07 | 2026-02-23 08:57:38 | VulDB | A vulnerability was determined in code-projects Online Examination… | Details |
| CVE-2026-1422 | 2026-01-26 06:02:06 | 2026-02-23 08:57:24 | VulDB | A vulnerability was found in code-projects Online Examination… | Details |
| CVE-2026-1421 | 2026-01-26 05:32:06 | 2026-02-23 08:57:11 | VulDB | A vulnerability has been found in code-projects Online… | Details |
| CVE-2026-1420 | 2026-01-26 05:02:07 | 2026-02-23 08:56:57 | VulDB | A flaw has been found in Tenda AC23… | Details |
| CVE-2026-1419 | 2026-01-26 04:32:08 | 2026-02-23 08:56:42 | VulDB | A weakness has been identified in D-Link DCS700l… | Details |
| CVE-2026-1418 | 2026-01-26 04:02:06 | 2026-02-23 08:56:25 | VulDB | A security vulnerability has been detected in GPAC… | Details |
| CVE-2026-1417 | 2026-01-26 03:32:07 | 2026-02-23 08:56:11 | VulDB | A weakness has been identified in GPAC up… | Details |
| CVE-2026-1416 | 2026-01-26 03:02:07 | 2026-02-23 08:55:57 | VulDB | A security flaw has been discovered in GPAC… | Details |
| CVE-2026-1415 | 2026-01-26 02:32:08 | 2026-02-23 08:55:44 | VulDB | A vulnerability was identified in GPAC up to… | Details |
| CVE-2026-1414 | 2026-01-26 02:02:06 | 2026-02-23 08:55:31 | VulDB | A vulnerability was determined in Sangfor Operation and… | Details |
| CVE-2026-1413 | 2026-01-26 01:32:06 | 2026-02-23 08:55:17 | VulDB | A vulnerability was found in Sangfor Operation and… | Details |
| CVE-2026-1412 | 2026-01-26 01:02:05 | 2026-02-23 08:55:04 | VulDB | A vulnerability has been found in Sangfor Operation… | Details |
| CVE-2026-1411 | 2026-01-26 00:32:06 | 2026-02-23 08:54:50 | VulDB | A flaw has been found in Beetel 777VR1… | Details |
| CVE-2026-1410 | 2026-01-26 00:02:05 | 2026-02-23 08:54:37 | VulDB | A vulnerability was detected in Beetel 777VR1 up… | Details |
| CVE-2026-1409 | 2026-01-25 23:32:06 | 2026-02-23 08:54:25 | VulDB | A security vulnerability has been detected in Beetel… | Details |
| CVE-2026-1408 | 2026-01-25 23:02:06 | 2026-02-23 08:54:12 | VulDB | A weakness has been identified in Beetel 777VR1… | Details |
| CVE-2026-1407 | 2026-01-25 22:02:06 | 2026-02-23 08:54:00 | VulDB | A security flaw has been discovered in Beetel… | Details |
| CVE-2026-1406 | 2026-01-25 12:02:05 | 2026-02-23 08:53:49 | VulDB | A vulnerability was determined in lcg0124 BootDo up… | Details |
| CVE-2026-1329 | 2026-01-22 14:32:18 | 2026-02-23 08:53:35 | VulDB | A flaw has been found in Tenda AX1803… | Details |
| CVE-2026-1328 | 2026-01-22 14:32:13 | 2026-02-23 08:53:16 | VulDB | A vulnerability was detected in Totolink NR1800X 9.1.0u.6279_B20210910.… | Details |
| CVE-2026-1327 | 2026-01-22 14:02:10 | 2026-02-23 08:53:00 | VulDB | A security vulnerability has been detected in Totolink… | Details |
| CVE-2026-1326 | 2026-01-22 13:32:08 | 2026-02-23 08:52:44 | VulDB | A weakness has been identified in Totolink NR1800X… | Details |
| CVE-2026-1325 | 2026-01-22 13:02:11 | 2026-02-23 08:52:29 | VulDB | A security flaw has been discovered in Sangfor… | Details |
| CVE-2026-1324 | 2026-01-22 13:02:08 | 2026-02-23 08:52:16 | VulDB | A vulnerability was identified in Sangfor Operation and… | Details |
| CVE-2026-1218 | 2026-01-20 05:32:07 | 2026-02-23 08:52:03 | VulDB | A vulnerability was detected in Bjskzy Zhiyou ERP… | Details |
| CVE-2026-1203 | 2026-01-20 01:02:08 | 2026-02-23 08:51:51 | VulDB | A weakness has been identified in CRMEB up… | Details |
| CVE-2026-1202 | 2026-01-20 01:02:06 | 2026-02-23 08:51:37 | VulDB | A security flaw has been discovered in CRMEB… | Details |
| CVE-2026-1192 | 2026-01-19 23:02:09 | 2026-02-23 08:50:22 | VulDB | A vulnerability was determined in Tosei Online Store… | Details |
| CVE-2026-1179 | 2026-01-19 22:32:06 | 2026-02-23 08:49:59 | VulDB | A vulnerability was detected in Yonyou KSOA 9.0.… | Details |
| CVE-2026-1178 | 2026-01-19 22:02:06 | 2026-02-23 08:49:45 | VulDB | A security vulnerability has been detected in Yonyou… | Details |
| CVE-2026-1177 | 2026-01-19 21:32:05 | 2026-02-23 08:49:34 | VulDB | A weakness has been identified in Yonyou KSOA… | Details |
| CVE-2026-1176 | 2026-01-19 21:02:07 | 2026-02-23 08:49:21 | VulDB | A security flaw has been discovered in itsourcecode… | Details |
| CVE-2026-1175 | 2026-01-19 20:32:08 | 2026-02-23 08:49:09 | VulDB | A vulnerability was identified in birkir prime up… | Details |
| CVE-2026-1174 | 2026-01-19 20:02:05 | 2026-02-23 08:48:57 | VulDB | A vulnerability was determined in birkir prime up… | Details |
| CVE-2026-1173 | 2026-01-19 19:32:06 | 2026-02-23 08:48:43 | VulDB | A vulnerability was found in birkir prime up… | Details |
| CVE-2026-1172 | 2026-01-19 19:02:06 | 2026-02-23 08:48:31 | VulDB | A vulnerability has been found in birkir prime… | Details |
| CVE-2026-1171 | 2026-01-19 18:32:06 | 2026-02-23 08:48:18 | VulDB | A flaw has been found in birkir prime… | Details |
| CVE-2026-1170 | 2026-01-19 18:02:06 | 2026-02-23 08:48:06 | VulDB | A vulnerability was detected in birkir prime up… | Details |
| CVE-2026-1169 | 2026-01-19 17:32:05 | 2026-02-23 08:47:53 | VulDB | A security vulnerability has been detected in birkir… | Details |
| CVE-2026-1162 | 2026-01-19 16:32:06 | 2026-02-23 08:47:39 | VulDB | A flaw has been found in UTT HiPER… | Details |
| CVE-2026-1161 | 2026-01-19 16:02:07 | 2026-02-23 08:47:27 | VulDB | A vulnerability was detected in pbrong hrms 1.0.1.… | Details |
| CVE-2026-1160 | 2026-01-19 15:32:07 | 2026-02-23 08:47:15 | VulDB | A security vulnerability has been detected in PHPGurukul… | Details |
| CVE-2026-1159 | 2026-01-19 15:02:07 | 2026-02-23 08:47:03 | VulDB | A weakness has been identified in itsourcecode Online… | Details |
| CVE-2026-1158 | 2026-01-19 14:32:08 | 2026-02-23 08:46:49 | VulDB | A security flaw has been discovered in Totolink… | Details |
| CVE-2026-1157 | 2026-01-19 14:02:10 | 2026-02-23 08:46:34 | VulDB | A vulnerability was identified in Totolink LR350 9.3.5u.6369_B20220309.… | Details |
| CVE-2026-1156 | 2026-01-19 13:32:11 | 2026-02-23 08:46:20 | VulDB | A vulnerability was determined in Totolink LR350 9.3.5u.6369_B20220309.… | Details |
| CVE-2026-1155 | 2026-01-19 13:02:15 | 2026-02-23 08:46:05 | VulDB | A vulnerability was found in Totolink LR350 9.3.5u.6369_B20220309.… | Details |
| CVE-2026-1154 | 2026-01-19 12:32:06 | 2026-02-23 08:45:51 | VulDB | A flaw has been found in SourceCodester E-Learning… | Details |
| CVE-2026-1153 | 2026-01-19 12:02:06 | 2026-02-23 08:45:38 | VulDB | A vulnerability was detected in technical-laohu mpay up… | Details |
| CVE-2026-1152 | 2026-01-19 11:32:05 | 2026-02-23 08:45:24 | VulDB | A security vulnerability has been detected in technical-laohu… | Details |
| CVE-2026-1151 | 2026-01-19 11:02:05 | 2026-02-23 08:45:12 | VulDB | A weakness has been identified in technical-laohu mpay… | Details |
| CVE-2026-1150 | 2026-01-19 10:32:07 | 2026-02-23 08:45:01 | VulDB | A security flaw has been discovered in Totolink… | Details |
| CVE-2026-1149 | 2026-01-19 10:02:09 | 2026-02-23 08:44:46 | VulDB | A vulnerability was identified in Totolink LR350 9.3.5u.6369_B20220309.… | Details |
| CVE-2026-1148 | 2026-01-19 09:32:05 | 2026-02-23 08:44:31 | VulDB | A vulnerability was determined in SourceCodester/Patrick Mvuma Patients… | Details |
| CVE-2026-1147 | 2026-01-19 09:02:07 | 2026-02-23 08:44:20 | VulDB | A vulnerability was found in SourceCodester/Patrick Mvuma Patients… | Details |
| CVE-2026-1146 | 2026-01-19 08:32:05 | 2026-02-23 08:44:08 | VulDB | A vulnerability has been found in SourceCodester/Patrick Mvuma… | Details |
| CVE-2026-1143 | 2026-01-19 07:02:08 | 2026-02-23 08:43:26 | VulDB | A weakness has been identified in TOTOLINK A3700R… | Details |
| CVE-2026-1142 | 2026-01-19 06:32:07 | 2026-02-23 08:43:11 | VulDB | A security flaw has been discovered in PHPGurukul… | Details |
| CVE-2026-1141 | 2026-01-19 06:02:07 | 2026-02-23 08:42:58 | VulDB | A vulnerability was identified in PHPGurukul News Portal… | Details |
| CVE-2025-15539 | 2026-01-18 23:32:06 | 2026-02-23 08:42:45 | VulDB | A vulnerability was determined in Open5GS up to… | Details |
| CVE-2026-1140 | 2026-01-19 05:32:05 | 2026-02-23 08:42:31 | VulDB | A vulnerability was found in UTT 进取 520W… | Details |
| CVE-2026-1139 | 2026-01-19 05:02:06 | 2026-02-23 08:42:17 | VulDB | A vulnerability has been found in UTT 进取… | Details |
| CVE-2026-1138 | 2026-01-19 04:32:06 | 2026-02-23 08:42:05 | VulDB | A flaw has been found in UTT 进取… | Details |
| CVE-2026-1137 | 2026-01-19 04:02:08 | 2026-02-23 08:41:52 | VulDB | A vulnerability was detected in UTT 进取 520W… | Details |
| CVE-2025-15538 | 2026-01-18 23:02:07 | 2026-02-23 08:41:38 | VulDB | A security vulnerability has been detected in Open… | Details |
| CVE-2026-1136 | 2026-01-19 03:32:05 | 2026-02-23 08:41:22 | VulDB | A weakness has been identified in lcg0124 BootDo… | Details |
| CVE-2026-1135 | 2026-01-19 03:02:06 | 2026-02-23 08:41:10 | VulDB | A security flaw has been discovered in itsourcecode… | Details |
| CVE-2026-1134 | 2026-01-19 02:32:06 | 2026-02-23 08:40:57 | VulDB | A vulnerability was identified in itsourcecode Society Management… | Details |
| CVE-2026-1133 | 2026-01-19 02:02:06 | 2026-02-23 08:40:44 | VulDB | A vulnerability was determined in Yonyou KSOA 9.0.… | Details |
| CVE-2026-1132 | 2026-01-19 01:32:06 | 2026-02-23 08:40:32 | VulDB | A vulnerability was found in Yonyou KSOA 9.0.… | Details |
| CVE-2026-1131 | 2026-01-19 01:02:06 | 2026-02-23 08:40:21 | VulDB | A vulnerability has been found in Yonyou KSOA… | Details |
| CVE-2026-1130 | 2026-01-19 00:32:06 | 2026-02-23 08:40:08 | VulDB | A flaw has been found in Yonyou KSOA… | Details |
| CVE-2026-1129 | 2026-01-19 00:02:05 | 2026-02-23 08:39:56 | VulDB | A vulnerability was detected in Yonyou KSOA 9.0.… | Details |
| CVE-2026-1126 | 2026-01-18 16:32:09 | 2026-02-23 08:39:44 | VulDB | A security vulnerability has been detected in lwj… | Details |
| CVE-2026-1125 | 2026-01-18 16:02:08 | 2026-02-23 08:39:23 | VulDB | A weakness has been identified in D-Link DIR-823X… | Details |
| CVE-2026-1124 | 2026-01-18 15:32:05 | 2026-02-23 08:39:07 | VulDB | A security flaw has been discovered in Yonyou… | Details |
| CVE-2026-1123 | 2026-01-18 15:02:05 | 2026-02-23 08:38:54 | VulDB | A vulnerability was identified in Yonyou KSOA 9.0.… | Details |
| CVE-2026-1122 | 2026-01-18 14:02:06 | 2026-02-23 08:38:42 | VulDB | A vulnerability was determined in Yonyou KSOA 9.0.… | Details |
| CVE-2026-1121 | 2026-01-18 13:32:06 | 2026-02-23 08:38:29 | VulDB | A vulnerability was found in Yonyou KSOA 9.0.… | Details |
| CVE-2026-1120 | 2026-01-18 13:02:06 | 2026-02-23 08:38:18 | VulDB | A vulnerability has been found in Yonyou KSOA… | Details |
| CVE-2026-1119 | 2026-01-18 11:32:06 | 2026-02-23 08:38:04 | VulDB | A flaw has been found in itsourcecode Society… | Details |
| CVE-2026-1118 | 2026-01-18 10:32:07 | 2026-02-23 08:37:51 | VulDB | A vulnerability was detected in itsourcecode Society Management… | Details |
| CVE-2025-15537 | 2026-01-18 10:02:07 | 2026-02-23 08:37:39 | VulDB | A security vulnerability has been detected in Mapnik… | Details |
| CVE-2025-15536 | 2026-01-18 09:02:12 | 2026-02-23 08:37:24 | VulDB | A weakness has been identified in BYVoid OpenCC… | Details |
| CVE-2025-15535 | 2026-01-18 07:32:05 | 2026-02-23 08:37:09 | VulDB | A security flaw has been discovered in nicbarker… | Details |
| CVE-2025-15534 | 2026-01-18 06:32:06 | 2026-02-23 08:36:56 | VulDB | A vulnerability was identified in raysan5 raylib up… | Details |
| CVE-2025-15533 | 2026-01-18 05:02:08 | 2026-02-23 08:36:44 | VulDB | A vulnerability was determined in raysan5 raylib up… | Details |
| CVE-2026-1112 | 2026-01-18 06:02:06 | 2026-02-23 08:36:29 | VulDB | A vulnerability was found in Sanluan PublicCMS up… | Details |
| CVE-2026-1111 | 2026-01-18 05:32:05 | 2026-02-23 08:36:16 | VulDB | A vulnerability has been found in Sanluan PublicCMS… | Details |
| CVE-2026-1110 | 2026-01-18 04:32:05 | 2026-02-23 08:36:03 | VulDB | A flaw has been found in cijliu librtsp… | Details |
| CVE-2026-1109 | 2026-01-18 03:02:06 | 2026-02-23 08:35:50 | VulDB | A vulnerability was detected in cijliu librtsp up… | Details |
| CVE-2026-1108 | 2026-01-18 01:32:06 | 2026-02-23 08:35:36 | VulDB | A security vulnerability has been detected in cijliu… | Details |
| CVE-2026-1107 | 2026-01-18 00:32:06 | 2026-02-23 08:35:22 | VulDB | A weakness has been identified in EyouCMS up… | Details |
| CVE-2026-1106 | 2026-01-18 00:02:09 | 2026-02-23 08:35:10 | VulDB | A security flaw has been discovered in Chamilo… | Details |
| CVE-2026-1105 | 2026-01-17 23:32:05 | 2026-02-23 08:34:54 | VulDB | A vulnerability was identified in EasyCMS up to… | Details |
| CVE-2026-1066 | 2026-01-17 21:02:06 | 2026-02-23 08:34:40 | VulDB | A vulnerability was detected in kalcaddle kodbox up… | Details |
| CVE-2026-1064 | 2026-01-17 20:32:05 | 2026-02-23 08:34:26 | VulDB | A vulnerability was found in bastillion-io Bastillion up… | Details |
| CVE-2026-1063 | 2026-01-17 20:02:05 | 2026-02-23 08:34:14 | VulDB | A vulnerability has been found in bastillion-io Bastillion… | Details |
| CVE-2026-1062 | 2026-01-17 19:32:05 | 2026-02-23 08:34:02 | VulDB | A flaw has been found in xiweicheng TMS… | Details |
| CVE-2026-1061 | 2026-01-17 19:02:05 | 2026-02-23 08:33:50 | VulDB | A vulnerability was detected in xiweicheng TMS up… | Details |
| CVE-2026-1059 | 2026-01-17 18:32:06 | 2026-02-23 08:33:38 | VulDB | A security vulnerability has been detected in FeMiner… | Details |
| CVE-2025-15531 | 2026-01-17 16:02:07 | 2026-02-23 08:32:32 | VulDB | A vulnerability was identified in Open5GS up to… | Details |
| CVE-2025-15530 | 2026-01-17 11:02:06 | 2026-02-23 08:32:20 | VulDB | A vulnerability was determined in Open5GS up to… | Details |
| CVE-2025-15529 | 2026-01-16 22:02:10 | 2026-02-23 08:32:06 | VulDB | A vulnerability was found in Open5GS up to… | Details |
| CVE-2026-0852 | 2026-01-12 00:02:06 | 2026-02-23 08:31:40 | VulDB | A security flaw has been discovered in code-projects… | Details |
| CVE-2026-0851 | 2026-01-11 23:32:07 | 2026-02-23 08:31:27 | VulDB | A vulnerability was identified in code-projects Online Music… | Details |
| CVE-2026-0850 | 2026-01-11 23:02:06 | 2026-02-23 08:31:13 | VulDB | A vulnerability was determined in code-projects Intern Membership… | Details |
| CVE-2025-15506 | 2026-01-11 11:02:09 | 2026-02-23 08:31:01 | VulDB | A vulnerability was found in AcademySoftwareFoundation OpenColorIO up… | Details |
| CVE-2026-0843 | 2026-01-11 09:02:05 | 2026-02-23 08:30:43 | VulDB | A vulnerability has been found in jiujiujia/victor123/wxw850227 jjjfood… | Details |
| CVE-2026-0842 | 2026-01-11 08:02:06 | 2026-02-23 08:30:28 | VulDB | A flaw has been found in Flycatcher Toys… | Details |
| CVE-2026-0841 | 2026-01-11 07:32:07 | 2026-02-23 08:30:15 | VulDB | A vulnerability was detected in UTT 进取 520W… | Details |
| CVE-2026-0840 | 2026-01-11 06:32:06 | 2026-02-23 08:30:04 | VulDB | A security vulnerability has been detected in UTT… | Details |
| CVE-2026-0839 | 2026-01-11 06:02:05 | 2026-02-23 08:29:48 | VulDB | A weakness has been identified in UTT 进取… | Details |
| CVE-2026-0838 | 2026-01-11 05:32:06 | 2026-02-23 08:29:35 | VulDB | A security flaw has been discovered in UTT… | Details |
| CVE-2026-0837 | 2026-01-11 05:02:06 | 2026-02-23 08:29:23 | VulDB | A vulnerability was identified in UTT 进取 520W… | Details |
| CVE-2026-0836 | 2026-01-11 04:32:06 | 2026-02-23 08:29:10 | VulDB | A vulnerability was determined in UTT 进取 520W… | Details |
| CVE-2025-15505 | 2026-01-11 01:32:07 | 2026-02-23 08:28:56 | VulDB | A vulnerability was found in Luxul XWR-600 up… | Details |
| CVE-2025-15504 | 2026-01-10 11:32:06 | 2026-02-23 08:28:41 | VulDB | A security flaw has been discovered in lief-project… | Details |
| CVE-2026-0824 | 2026-01-10 14:32:08 | 2026-02-23 08:28:25 | VulDB | A security flaw has been discovered in questdb… | Details |
| CVE-2026-0822 | 2026-01-10 13:32:08 | 2026-02-23 08:28:11 | VulDB | A vulnerability was identified in quickjs-ng quickjs up… | Details |
| CVE-2026-0821 | 2026-01-10 13:02:07 | 2026-02-23 08:27:54 | VulDB | A vulnerability was determined in quickjs-ng quickjs up… | Details |
| CVE-2025-15503 | 2026-01-10 09:02:06 | 2026-02-23 08:27:38 | VulDB | A security flaw has been discovered in Sangfor… | Details |
| CVE-2025-15502 | 2026-01-10 08:02:06 | 2026-02-23 08:27:26 | VulDB | A vulnerability was identified in Sangfor Operation and… | Details |
| CVE-2025-15501 | 2026-01-09 22:32:05 | 2026-02-23 08:27:14 | VulDB | A vulnerability was determined in Sangfor Operation and… | Details |
| CVE-2025-15500 | 2026-01-09 21:32:08 | 2026-02-23 08:27:00 | VulDB | A vulnerability was found in Sangfor Operation and… | Details |
| CVE-2025-15499 | 2026-01-09 21:32:06 | 2026-02-23 08:26:48 | VulDB | A vulnerability has been found in Sangfor Operation… | Details |
| CVE-2025-15496 | 2026-01-09 17:02:12 | 2026-02-23 08:26:36 | VulDB | A vulnerability was determined in guchengwuyue yshopmall up… | Details |
| CVE-2025-15495 | 2026-01-09 17:02:09 | 2026-02-23 08:26:22 | VulDB | A vulnerability was found in BiggiDroid Simple PHP… | Details |
| CVE-2025-15494 | 2026-01-09 16:32:08 | 2026-02-23 08:26:07 | VulDB | A vulnerability has been found in RainyGao DocSys… | Details |
| CVE-2025-15493 | 2026-01-09 16:32:06 | 2026-02-23 08:25:53 | VulDB | A flaw has been found in RainyGao DocSys… | Details |
| CVE-2025-15492 | 2026-01-09 16:02:07 | 2026-02-23 08:25:40 | VulDB | A vulnerability was detected in RainyGao DocSys up… | Details |
| CVE-2026-0803 | 2026-01-09 15:32:09 | 2026-02-23 08:25:26 | VulDB | A vulnerability was found in PHPGurukul Online Course… | Details |
| CVE-2026-0733 | 2026-01-08 23:32:13 | 2026-02-23 08:25:04 | VulDB | A vulnerability was determined in PHPGurukul Online Course… | Details |
| CVE-2026-0732 | 2026-01-08 23:32:08 | 2026-02-23 08:24:48 | VulDB | A vulnerability was found in D-Link DI-8200G 17.12.20A1.… | Details |
| CVE-2026-0731 | 2026-01-08 23:02:10 | 2026-02-23 08:24:32 | VulDB | A vulnerability has been found in TOTOLINK WA1200… | Details |
| CVE-2026-0730 | 2026-01-08 22:02:09 | 2026-02-23 08:24:15 | VulDB | A flaw has been found in PHPGurukul Staff… | Details |
| CVE-2026-0729 | 2026-01-08 21:32:06 | 2026-02-23 08:24:00 | VulDB | A vulnerability was detected in code-projects Intern Membership… | Details |
| CVE-2026-0728 | 2026-01-08 20:32:08 | 2026-02-23 08:23:48 | VulDB | A security vulnerability has been detected in code-projects… | Details |
| CVE-2026-0701 | 2026-01-08 08:02:05 | 2026-02-23 08:23:36 | VulDB | A vulnerability was identified in code-projects Intern Membership… | Details |
| CVE-2026-0700 | 2026-01-08 07:02:08 | 2026-02-23 08:23:23 | VulDB | A vulnerability was determined in code-projects Intern Membership… | Details |
| CVE-2026-0699 | 2026-01-08 06:32:05 | 2026-02-23 08:23:09 | VulDB | A vulnerability was found in code-projects Intern Membership… | Details |
| CVE-2026-0698 | 2026-01-08 05:32:04 | 2026-02-23 08:22:57 | VulDB | A vulnerability has been found in code-projects Intern… | Details |
| CVE-2026-0697 | 2026-01-08 04:32:06 | 2026-02-23 08:22:43 | VulDB | A flaw has been found in code-projects Intern… | Details |
| CVE-2025-15472 | 2026-01-06 22:02:06 | 2026-02-23 08:22:29 | VulDB | A flaw has been found in TRENDnet TEW-811DRU… | Details |
| CVE-2026-0649 | 2026-01-07 00:32:07 | 2026-02-23 08:22:03 | VulDB | A security vulnerability has been detected in invoiceninja… | Details |
| CVE-2026-0643 | 2026-01-06 23:32:05 | 2026-02-23 08:21:46 | VulDB | A flaw has been found in projectworlds House… | Details |
| CVE-2026-0642 | 2026-01-06 22:32:07 | 2026-02-23 08:21:32 | VulDB | A vulnerability was detected in projectworlds House Rental… | Details |
| CVE-2026-0641 | 2026-01-06 19:02:07 | 2026-02-23 08:21:20 | VulDB | A security vulnerability has been detected in TOTOLINK… | Details |
| CVE-2026-0640 | 2026-01-06 15:32:08 | 2026-02-23 08:21:03 | VulDB | A weakness has been identified in Tenda AC23… | Details |
| CVE-2023-7333 | 2026-01-07 23:02:10 | 2026-02-23 08:20:49 | VulDB | A weakness has been identified in bluelabsio records-mover… | Details |
| CVE-2026-0607 | 2026-01-05 23:32:06 | 2026-02-23 08:20:32 | VulDB | A flaw has been found in code-projects Online… | Details |
| CVE-2026-0606 | 2026-01-05 23:02:05 | 2026-02-23 08:20:19 | VulDB | A vulnerability was detected in code-projects Online Music… | Details |
| CVE-2026-0605 | 2026-01-05 20:32:08 | 2026-02-23 08:20:05 | VulDB | A security vulnerability has been detected in code-projects… | Details |
| CVE-2026-0597 | 2026-01-05 14:32:06 | 2026-02-23 08:19:52 | VulDB | A flaw has been found in Campcodes Supplier… | Details |
| CVE-2024-14020 | 2026-01-07 00:02:07 | 2026-02-23 08:19:40 | VulDB | A weakness has been identified in carboneio carbone… | Details |
| CVE-2026-0592 | 2026-01-05 13:32:06 | 2026-02-23 08:19:25 | VulDB | A security flaw has been discovered in code-projects… | Details |
| CVE-2026-0591 | 2026-01-05 13:02:06 | 2026-02-23 08:19:12 | VulDB | A vulnerability was identified in code-projects Online Product… | Details |
| CVE-2026-0590 | 2026-01-05 12:32:06 | 2026-02-23 08:18:59 | VulDB | A vulnerability was determined in code-projects Online Product… | Details |
| CVE-2026-0589 | 2026-01-05 12:02:06 | 2026-02-23 08:18:46 | VulDB | A vulnerability was found in code-projects Online Product… | Details |
| CVE-2025-15462 | 2026-01-05 07:02:06 | 2026-02-23 08:18:32 | VulDB | A vulnerability has been found in UTT 进取… | Details |
| CVE-2025-15461 | 2026-01-05 06:32:06 | 2026-02-23 08:18:19 | VulDB | A flaw has been found in UTT 进取… | Details |
| CVE-2025-15460 | 2026-01-05 06:02:05 | 2026-02-23 08:18:06 | VulDB | A vulnerability was detected in UTT 进取 520W… | Details |
| CVE-2025-15459 | 2026-01-05 05:32:06 | 2026-02-23 08:17:53 | VulDB | A security vulnerability has been detected in UTT… | Details |
| CVE-2026-0588 | 2026-01-05 11:32:05 | 2026-02-23 08:17:40 | VulDB | A weakness has been identified in Xinhu Rainrock… | Details |
| CVE-2026-0587 | 2026-01-05 11:02:05 | 2026-02-23 08:17:24 | VulDB | A security flaw has been discovered in Xinhu… | Details |
| CVE-2025-15458 | 2026-01-05 05:02:06 | 2026-02-23 08:17:12 | VulDB | A vulnerability was determined in bg5sbk MiniCMS up… | Details |
| CVE-2025-15457 | 2026-01-05 04:32:05 | 2026-02-23 08:16:59 | VulDB | A vulnerability was found in bg5sbk MiniCMS up… | Details |
| CVE-2025-15456 | 2026-01-05 04:02:06 | 2026-02-23 08:16:46 | VulDB | A vulnerability has been found in bg5sbk MiniCMS… | Details |
| CVE-2025-15455 | 2026-01-05 03:32:06 | 2026-02-23 08:16:35 | VulDB | A flaw has been found in bg5sbk MiniCMS… | Details |
| CVE-2025-15454 | 2026-01-05 03:02:06 | 2026-02-23 08:16:22 | VulDB | A vulnerability was detected in zhanglun lettura up… | Details |
| CVE-2025-15453 | 2026-01-05 02:32:06 | 2026-02-23 08:16:08 | VulDB | A security vulnerability has been detected in milvus… | Details |
| CVE-2025-15452 | 2026-01-05 02:02:09 | 2026-02-23 08:15:53 | VulDB | A weakness has been identified in xnx3 wangmarket… | Details |
| CVE-2025-15451 | 2026-01-05 01:32:09 | 2026-02-23 08:15:32 | VulDB | A security flaw has been discovered in xnx3… | Details |
| CVE-2025-15450 | 2026-01-05 01:02:07 | 2026-02-23 08:15:11 | VulDB | A vulnerability was identified in sfturing hosp_order up… | Details |
| CVE-2025-15449 | 2026-01-05 00:32:06 | 2026-02-23 08:14:57 | VulDB | A vulnerability was determined in cld378632668 JavaMall up… | Details |
| CVE-2025-15448 | 2026-01-05 00:02:08 | 2026-02-23 08:14:46 | VulDB | A vulnerability was found in cld378632668 JavaMall up… | Details |
| CVE-2026-0586 | 2026-01-05 10:32:06 | 2026-02-23 08:14:33 | VulDB | A vulnerability was detected in code-projects Online Product… | Details |
| CVE-2026-0585 | 2026-01-05 10:02:06 | 2026-02-23 08:14:20 | VulDB | A security vulnerability has been detected in code-projects… | Details |
| CVE-2026-0584 | 2026-01-05 09:32:05 | 2026-02-23 08:14:07 | VulDB | A weakness has been identified in code-projects Online… | Details |
| CVE-2026-0583 | 2026-01-05 09:02:06 | 2026-02-23 08:13:53 | VulDB | A security flaw has been discovered in code-projects… | Details |
| CVE-2026-0582 | 2026-01-05 08:32:06 | 2026-02-23 08:13:39 | VulDB | A vulnerability was identified in itsourcecode Society Management… | Details |
| CVE-2026-0581 | 2026-01-05 08:02:08 | 2026-02-23 08:13:25 | VulDB | A vulnerability was determined in Tenda AC1206 15.03.06.23.… | Details |
| CVE-2026-0580 | 2026-01-05 07:32:06 | 2026-02-23 08:13:12 | VulDB | A vulnerability was found in SourceCodester API Key… | Details |
| CVE-2025-15443 | 2026-01-04 11:32:06 | 2026-02-23 08:12:58 | VulDB | A vulnerability was identified in CRMEB up to… | Details |
| CVE-2025-15442 | 2026-01-04 11:02:06 | 2026-02-23 08:12:46 | VulDB | A vulnerability was determined in CRMEB up to… | Details |
| CVE-2026-0579 | 2026-01-04 12:32:07 | 2026-02-23 08:12:35 | VulDB | A vulnerability was found in code-projects Online Product… | Details |
| CVE-2026-0578 | 2026-01-04 12:02:07 | 2026-02-23 08:12:22 | VulDB | A vulnerability has been found in code-projects Online… | Details |
| CVE-2026-0577 | 2026-01-04 09:32:06 | 2026-02-23 08:12:08 | VulDB | A flaw has been found in code-projects Online… | Details |
| CVE-2026-0576 | 2026-01-04 09:02:06 | 2026-02-23 08:11:56 | VulDB | A vulnerability was detected in code-projects Online Product… | Details |
| CVE-2026-0575 | 2026-01-04 06:02:05 | 2026-02-23 08:11:44 | VulDB | A security vulnerability has been detected in code-projects… | Details |
| CVE-2026-0574 | 2026-01-04 02:02:05 | 2026-02-23 08:11:31 | VulDB | A weakness has been identified in yeqifu warehouse… | Details |
| CVE-2026-0571 | 2026-01-02 20:02:06 | 2026-02-23 08:11:19 | VulDB | A security flaw has been discovered in yeqifu… | Details |
| CVE-2025-15439 | 2026-01-02 17:02:07 | 2026-02-23 08:11:06 | VulDB | A vulnerability was identified in Daptin 0.10.3. Affected… | Details |
| CVE-2025-15438 | 2026-01-02 14:32:11 | 2026-02-23 08:10:50 | VulDB | A vulnerability was determined in PluXml up to… | Details |
| CVE-2026-0570 | 2026-01-02 19:02:06 | 2026-02-23 08:10:32 | VulDB | A vulnerability was found in code-projects Online Music… | Details |
| CVE-2026-0569 | 2026-01-02 18:32:06 | 2026-02-23 08:10:21 | VulDB | A vulnerability has been found in code-projects Online… | Details |
| CVE-2026-0568 | 2026-01-02 18:02:06 | 2026-02-23 08:10:07 | VulDB | A flaw has been found in code-projects Online… | Details |
| CVE-2026-0567 | 2026-01-02 17:32:05 | 2026-02-23 08:09:55 | VulDB | A vulnerability was detected in code-projects Content Management… | Details |
| CVE-2026-0566 | 2026-01-02 16:32:05 | 2026-02-23 08:09:41 | VulDB | A security vulnerability has been detected in code-projects… | Details |
| CVE-2026-0565 | 2026-01-02 14:02:07 | 2026-02-23 08:09:29 | VulDB | A weakness has been identified in code-projects Content… | Details |
| CVE-2025-15437 | 2026-01-02 08:32:06 | 2026-02-23 08:09:16 | VulDB | A vulnerability was found in LigeroSmart up to… | Details |
| CVE-2025-15436 | 2026-01-02 08:02:06 | 2026-02-23 08:09:01 | VulDB | A vulnerability has been found in Yonyou KSOA… | Details |
| CVE-2025-15435 | 2026-01-02 07:32:05 | 2026-02-23 08:08:48 | VulDB | A flaw has been found in Yonyou KSOA… | Details |
| CVE-2025-15434 | 2026-01-02 07:02:04 | 2026-02-23 08:08:36 | VulDB | A vulnerability was detected in Yonyou KSOA 9.0.… | Details |
| CVE-2026-0547 | 2026-01-02 09:32:07 | 2026-02-23 08:08:25 | VulDB | A vulnerability was found in PHPGurukul Online Course… | Details |
| CVE-2025-15432 | 2026-01-02 06:32:06 | 2026-02-23 08:08:12 | VulDB | A vulnerability has been found in yeqifu carRental… | Details |
| CVE-2025-15431 | 2026-01-02 06:02:05 | 2026-02-23 08:07:59 | VulDB | A flaw has been found in UTT 进取… | Details |
| CVE-2025-15430 | 2026-01-02 05:32:06 | 2026-02-23 08:07:45 | VulDB | A vulnerability was detected in UTT 进取 512W… | Details |
| CVE-2025-15429 | 2026-01-02 05:02:06 | 2026-02-23 08:07:32 | VulDB | A security vulnerability has been detected in UTT… | Details |
| CVE-2025-15428 | 2026-01-02 04:32:06 | 2026-02-23 08:07:19 | VulDB | A weakness has been identified in UTT 进取… | Details |
| CVE-2025-15426 | 2026-01-02 03:32:05 | 2026-02-23 08:07:07 | VulDB | A vulnerability was identified in jackying H-ui.admin up… | Details |
| CVE-2025-15425 | 2026-01-02 03:02:07 | 2026-02-23 08:06:55 | VulDB | A vulnerability was determined in Yonyou KSOA 9.0.… | Details |
| CVE-2025-15424 | 2026-01-02 02:32:05 | 2026-02-23 08:06:43 | VulDB | A vulnerability was found in Yonyou KSOA 9.0.… | Details |
| CVE-2025-15423 | 2026-01-02 02:02:09 | 2026-02-23 08:06:29 | VulDB | A vulnerability has been found in EmpireSoft EmpireCMS… | Details |
| CVE-2025-15422 | 2026-01-02 01:32:07 | 2026-02-23 08:06:13 | VulDB | A flaw has been found in EmpireSoft EmpireCMS… | Details |
| CVE-2025-15421 | 2026-01-02 01:02:05 | 2026-02-23 08:05:57 | VulDB | A vulnerability was detected in Yonyou KSOA 9.0.… | Details |
| CVE-2025-15420 | 2026-01-02 00:32:08 | 2026-02-23 08:05:44 | VulDB | A security vulnerability has been detected in Yonyou… | Details |
| CVE-2025-15419 | 2026-01-02 00:02:08 | 2026-02-23 08:05:31 | VulDB | A weakness has been identified in Open5GS up… | Details |
| CVE-2025-15418 | 2026-01-01 23:32:07 | 2026-02-23 08:05:17 | VulDB | A security flaw has been discovered in Open5GS… | Details |
| CVE-2025-15417 | 2026-01-01 23:02:07 | 2026-02-23 08:05:03 | VulDB | A vulnerability was identified in Open5GS up to… | Details |
| CVE-2026-0546 | 2026-01-02 09:02:06 | 2026-02-23 08:04:48 | VulDB | A vulnerability was determined in code-projects Content Management… | Details |
| CVE-2025-15416 | 2026-01-01 22:32:06 | 2026-02-23 08:04:37 | VulDB | A vulnerability was found in xnx3 wangmarket up… | Details |
| CVE-2025-15415 | 2026-01-01 22:02:06 | 2026-02-23 08:04:24 | VulDB | A vulnerability has been found in xnx3 wangmarket… | Details |
| CVE-2025-15414 | 2026-01-01 21:32:08 | 2026-02-23 08:04:10 | VulDB | A flaw has been found in go-sonic sonic… | Details |
| CVE-2025-15413 | 2026-01-01 21:02:06 | 2026-02-23 08:03:55 | VulDB | A vulnerability was detected in wasm3 up to… | Details |
| CVE-2025-15412 | 2026-01-01 20:32:06 | 2026-02-23 08:03:40 | VulDB | A security vulnerability has been detected in WebAssembly… | Details |
| CVE-2025-15411 | 2026-01-01 19:32:07 | 2026-02-23 08:03:27 | VulDB | A weakness has been identified in WebAssembly wabt… | Details |
| CVE-2026-0544 | 2026-01-01 09:02:10 | 2026-02-23 08:03:13 | VulDB | A security flaw has been discovered in itsourcecode… | Details |
| CVE-2025-15410 | 2026-01-01 19:02:05 | 2026-02-23 08:02:59 | VulDB | A vulnerability was identified in code-projects Online Guitar… | Details |
| CVE-2025-15409 | 2026-01-01 18:32:06 | 2026-02-23 08:02:47 | VulDB | A vulnerability was determined in code-projects Online Guitar… | Details |
| CVE-2025-15408 | 2026-01-01 18:02:06 | 2026-02-23 08:02:35 | VulDB | A vulnerability was found in code-projects Online Guitar… | Details |
| CVE-2025-15407 | 2026-01-01 17:32:05 | 2026-02-23 08:02:24 | VulDB | A vulnerability has been found in code-projects Online… | Details |
| CVE-2025-15406 | 2026-01-01 17:02:07 | 2026-02-23 08:02:11 | VulDB | A flaw has been found in PHPGurukul Online… | Details |
| CVE-2025-15405 | 2026-01-01 15:02:06 | 2026-02-23 08:01:57 | VulDB | A vulnerability was detected in PHPEMS up to… | Details |
| CVE-2025-15404 | 2026-01-01 13:32:06 | 2026-02-23 08:01:46 | VulDB | A security vulnerability has been detected in campcodes… | Details |
| CVE-2025-68472 | 2026-01-12 16:53:47 | 2026-02-20 16:17:22 | GitHub_M | MindsDB is a platform for building artificial intelligence… | Details |
| CVE-2026-24811 | 2026-01-27 08:47:52 | 2026-02-19 16:10:51 | GovTech CSG | Vulnerability in root-project root (builtins/zlib modules). This vulnerability… | Details |
| CVE-2021-47764 | 2026-01-15 15:52:08 | 2026-02-18 20:27:17 | VulnCheck | AbsoluteTelnet 11.24 contains a denial of service vulnerability… | Details |
| CVE-2025-69565 | 2026-01-27 00:00:00 | 2026-02-18 14:37:49 | mitre | code-projects Mobile Shop Management System 1.0 is vulnerable… | Details |
| CVE-2026-23766 | 2026-01-15 19:18:50 | 2026-02-14 17:44:48 | mitre | DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none.… | Details |
| CVE-2025-15548 | 2026-01-29 18:07:08 | 2026-02-13 17:21:03 | TPLink | Some VX800v v1.0 web interface endpoints transmit sensitive… | Details |
| CVE-2026-20026 | 2026-01-07 16:23:43 | 2026-02-12 18:48:34 | cisco | Multiple Cisco products are affected by a vulnerability in… | Details |
| CVE-2026-20027 | 2026-01-07 16:23:43 | 2026-02-12 18:48:32 | cisco | Multiple Cisco products are affected by a vulnerability… | Details |
| CVE-2025-41768 | 2026-01-20 08:02:53 | 2026-02-12 09:00:27 | CERTVDE | An high privileged remote attacker can inject arbitrary… | Details |
| CVE-2026-25128 | 2026-01-30 15:14:58 | 2026-02-11 18:38:40 | GitHub_M | fast-xml-parser allows users to validate XML, parse XML… | Details |
| CVE-2025-61546 | 2026-01-08 00:00:00 | 2026-02-11 15:46:53 | mitre | There is an issue on the /PSP/appNET/Store/CartV12.aspx/GetUnitPrice endpoint… | Details |
| CVE-2025-36407 | 2026-01-30 21:27:41 | 2026-02-10 21:27:04 | ibm | IBM® Db2® is vulnerable to a denial of… | Details |
| CVE-2026-25061 | 2026-01-29 21:42:47 | 2026-02-10 20:14:00 | GitHub_M | tcpflow is a TCP/IP packet demultiplexer. In versions… | Details |
| CVE-2025-61550 | 2026-01-08 00:00:00 | 2026-02-10 18:01:32 | mitre | Cross-Site Scripting (XSS) is present on the ctl00_Content01_fieldValue… | Details |
| CVE-2025-61549 | 2026-01-08 00:00:00 | 2026-02-10 18:00:23 | mitre | Cross-Site Scripting (XSS) is present on the LoginID… | Details |
| CVE-2025-61548 | 2026-01-08 00:00:00 | 2026-02-10 17:59:06 | mitre | SQL Injection is present on the hfInventoryDistFormID parameter… | Details |
| CVE-2025-61547 | 2026-01-08 00:00:00 | 2026-02-10 17:27:59 | mitre | Cross-Site Request Forgery (CSRF) is present on all… | Details |
| CVE-2026-25063 | 2026-01-29 21:47:16 | 2026-02-10 14:55:17 | GitHub_M | gradle-completion provides Bash and Zsh completion support for… | Details |
| CVE-2025-68789 | 2026-01-13 15:29:02 | 2026-02-10 11:47:55 | Linux | This CVE ID has been rejected or withdrawn… | Details |
| CVE-2025-14559 | 2026-01-21 06:13:31 | 2026-02-10 01:04:33 | redhat | A flaw was found in the keycloak-services component… | Details |
| CVE-2026-24765 | 2026-01-27 21:35:54 | 2026-02-06 12:09:45 | GitHub_M | PHPUnit is a testing framework for PHP. A… | Details |
| CVE-2026-1446 | 2026-01-26 17:24:12 | 2026-02-06 06:04:15 | Esri | There is a Cross‑Site Scripting (XSS) issue in… | Details |
| CVE-2026-1010 | 2026-01-15 23:00:18 | 2026-02-05 22:07:23 | Altium | A stored cross-site scripting (XSS) vulnerability exists in… | Details |
| CVE-2025-15344 | 2026-01-28 23:46:49 | 2026-02-05 16:01:05 | Tanium | Tanium addressed a SQL injection vulnerability in Asset.… | Details |
| CVE-2025-15322 | 2026-01-30 00:20:57 | 2026-02-05 16:00:17 | Tanium | Tanium addressed an improper access controls vulnerability in… | Details |
| CVE-2025-15288 | 2026-01-29 20:10:48 | 2026-02-05 15:57:07 | Tanium | Tanium addressed an improper access controls vulnerability in… | Details |
| CVE-2025-14969 | 2026-01-26 19:36:40 | 2026-02-05 14:53:48 | redhat | A flaw was found in Hibernate Reactive. When… | Details |
| CVE-2025-41717 | 2026-01-13 07:48:19 | 2026-02-05 06:19:46 | CERTVDE | An unauthenticated remote attacker can trick a high… | Details |
| CVE-2026-24872 | 2026-01-27 15:51:45 | 2026-02-04 17:56:00 | GovTech CSG | improper pointer arithmetic vulnerability in ProjectSkyfire SkyFire_548.This issue… | Details |
| CVE-2025-36009 | 2026-01-30 21:28:12 | 2026-02-04 17:28:55 | ibm | IBM Db2 for Linux, UNIX and Windows (includes… | Details |
| CVE-2025-36424 | 2026-01-30 21:27:34 | 2026-02-04 17:28:32 | ibm | IBM Db2 for Linux, UNIX and Windows (includes… | Details |
| CVE-2025-36427 | 2026-01-30 21:27:31 | 2026-02-04 17:27:58 | ibm | IBM Db2 for Linux, UNIX and Windows (includes… | Details |
| CVE-2026-24602 | 2026-01-23 14:29:03 | 2026-02-04 10:28:45 | Patchstack | This CVE ID has been rejected or withdrawn… | Details |
| CVE-2020-37031 | 2026-01-30 22:07:11 | 2026-02-03 20:39:40 | VulnCheck | Simple Startup Manager 1.17 contains a local buffer… | Details |
| CVE-2020-37029 | 2026-01-30 22:07:11 | 2026-02-03 20:39:10 | VulnCheck | FTPDummy 4.80 contains a local buffer overflow vulnerability… | Details |
| CVE-2020-37027 | 2026-01-30 22:07:10 | 2026-02-03 20:37:57 | VulnCheck | Sickbeard alpha contains a remote command injection vulnerability… | Details |
| CVE-2020-37026 | 2026-01-30 22:07:09 | 2026-02-03 20:37:30 | VulnCheck | Sickbeard alpha contains a cross-site request forgery vulnerability… | Details |
| CVE-2020-37025 | 2026-01-30 22:07:09 | 2026-02-03 20:37:01 | VulnCheck | Port Forwarding Wizard 4.8.0 contains a buffer overflow… | Details |
| CVE-2020-37024 | 2026-01-30 22:07:09 | 2026-02-03 20:36:27 | VulnCheck | Nidesoft DVD Ripper 5.2.18 contains a local buffer… | Details |
| CVE-2020-37023 | 2026-01-30 22:07:08 | 2026-02-03 20:35:43 | VulnCheck | Koken CMS 0.22.24 contains a file upload vulnerability… | Details |
| CVE-2019-25232 | 2026-01-30 22:07:07 | 2026-02-03 20:35:10 | VulnCheck | NetPCLinker 1.0.0.0 contains a buffer overflow vulnerability in… | Details |
| CVE-2025-9522 | 2026-01-26 19:35:59 | 2026-02-03 19:08:42 | TPLink | Blind Server-Side Request Forgery (SSRF) in Omada Controllers… | Details |
| CVE-2025-9521 | 2026-01-26 19:35:26 | 2026-02-03 19:02:21 | TPLink | Password Confirmation Bypass vulnerability in Omada Controllers, allowing… | Details |
| CVE-2025-36366 | 2026-01-30 21:27:51 | 2026-02-03 17:15:52 | ibm | IBM Db2 for Linux, UNIX and Windows (includes… | Details |
| CVE-2025-63650 | 2026-01-29 00:00:00 | 2026-02-03 16:43:14 | mitre | An out-of-bounds read in the mk_ptr_to_buf in mk_core… | Details |
| CVE-2025-63651 | 2026-01-29 00:00:00 | 2026-02-03 16:43:09 | mitre | A use-after-free in the mk_string_char_search function (mk_core/mk_string.c) of… | Details |
| CVE-2025-63652 | 2026-01-29 00:00:00 | 2026-02-03 16:42:59 | mitre | A use-after-free in the mk_http_request_end function (mk_server/mk_http.c) of… | Details |
| CVE-2025-63653 | 2026-01-29 00:00:00 | 2026-02-03 16:42:52 | mitre | An out-of-bounds read in the mk_vhost_fdt_close function (mk_server/mk_vhost.c)… | Details |
| CVE-2025-63655 | 2026-01-29 00:00:00 | 2026-02-03 16:42:45 | mitre | A NULL pointer dereference in the mk_http_range_parse function… | Details |
| CVE-2025-63656 | 2026-01-29 00:00:00 | 2026-02-03 16:42:37 | mitre | An out-of-bounds read in the header_cmp function (mk_server/mk_http_parser.c)… | Details |
| CVE-2025-63657 | 2026-01-29 00:00:00 | 2026-02-03 16:42:32 | mitre | An out-of-bounds read in the mk_mimetype_find function (mk_server/mk_mimetype.c)… | Details |
| CVE-2025-63658 | 2026-01-29 00:00:00 | 2026-02-03 16:42:24 | mitre | A stack overflow in the mk_http_index_lookup function (mk_server/mk_http.c)… | Details |
| CVE-2026-25211 | 2026-01-30 07:16:14 | 2026-02-03 16:42:00 | mitre | Llama Stack (aka llama-stack) before 0.4.0rc3 does not… | Details |
| CVE-2025-68670 | 2026-01-27 15:52:41 | 2026-02-03 01:34:11 | GitHub_M | xrdp is an open source RDP server. xrdp… | Details |
| CVE-2026-21962 | 2026-01-20 21:56:32 | 2026-02-02 23:05:30 | oracle | Vulnerability in the Oracle HTTP Server, Oracle Weblogic… | Details |
| CVE-2021-47818 | 2026-01-16 19:09:27 | 2026-02-02 21:09:07 | VulnCheck | DupTerminator 1.4.5639.37199 contains a denial of service vulnerability… | Details |
| CVE-2020-37036 | 2026-01-30 22:07:13 | 2026-02-02 20:14:20 | VulnCheck | RM Downloader 2.50.60 contains a local buffer overflow… | Details |
| CVE-2020-37035 | 2026-01-30 22:07:13 | 2026-02-02 20:13:55 | VulnCheck | e-Learning PHP Script 0.1.0 contains a SQL injection… | Details |
| CVE-2020-37034 | 2026-01-30 22:07:12 | 2026-02-02 20:13:25 | VulnCheck | HelloWeb 2.0 contains an arbitrary file download vulnerability… | Details |
| CVE-2020-37033 | 2026-01-30 22:07:12 | 2026-02-02 20:13:02 | VulnCheck | Infor Storefront B2B 1.0 contains a SQL injection… | Details |
| CVE-2020-37050 | 2026-01-30 22:07:17 | 2026-02-02 20:09:45 | VulnCheck | Quick Player 1.3 contains a buffer overflow vulnerability… | Details |
| CVE-2020-37046 | 2026-01-30 22:07:17 | 2026-02-02 20:08:40 | VulnCheck | Sistem Informasi Pengumuman Kelulusan Online 1.0 contains a… | Details |
| CVE-2020-37052 | 2026-01-30 22:07:18 | 2026-02-02 20:05:43 | VulnCheck | AirControl 1.4.2 contains a pre-authentication remote code execution… | Details |
| CVE-2026-1224 | 2026-01-26 17:36:33 | 2026-02-02 20:01:38 | Tanium | Tanium addressed an uncontrolled resource consumption vulnerability in… | Details |
| CVE-2026-0925 | 2026-01-26 17:51:34 | 2026-02-02 20:01:37 | Tanium | Tanium addressed an improper input validation vulnerability in… | Details |
| CVE-2025-45160 | 2026-01-29 00:00:00 | 2026-02-02 19:37:09 | mitre | A HTML injection vulnerability exists in the file… | Details |
| CVE-2026-1699 | 2026-01-30 09:57:14 | 2026-02-02 19:26:31 | eclipse | In the Eclipse Theia Website repository, the GitHub… | Details |
| CVE-2025-63649 | 2026-01-29 00:00:00 | 2026-02-02 18:58:20 | mitre | An out-of-bounds read in the http_parser_transfer_encoding_chunked function (mk_server/mk_http_parser.c)… | Details |
| CVE-2025-69517 | 2026-01-28 00:00:00 | 2026-02-02 18:55:17 | mitre | An HTML injection vulnerability in Amidaware Inc Tactical… | Details |
| CVE-2025-71007 | 2026-01-28 00:00:00 | 2026-02-02 18:48:44 | mitre | An input validation vulnerability in the oneflow.index_add component… | Details |
| CVE-2026-25130 | 2026-01-30 20:15:51 | 2026-02-02 18:01:06 | GitHub_M | Cybersecurity AI (CAI) is a framework for AI… | Details |
| CVE-2026-25141 | 2026-01-30 20:19:04 | 2026-02-02 18:00:17 | GitHub_M | Orval generates type-safe JS clients (TypeScript) from any… | Details |
| CVE-2025-13986 | 2026-01-28 20:02:53 | 2026-02-02 17:59:32 | drupal | Authentication Bypass Using an Alternate Path or Channel… | Details |
| CVE-2026-25156 | 2026-01-30 22:11:35 | 2026-02-02 17:42:38 | GitHub_M | HotCRP is conference review software. HotCRP versions from… | Details |
| CVE-2025-36123 | 2026-01-30 21:28:03 | 2026-02-02 17:40:46 | ibm | IBM Db2 for Linux, UNIX and Windows (includes… | Details |
| CVE-2025-61730 | 2026-01-28 19:30:30 | 2026-02-02 17:28:49 | Go | During the TLS 1.3 handshake if multiple messages… | Details |
| CVE-2026-25040 | 2026-01-29 21:33:57 | 2026-02-02 16:35:49 | GitHub_M | Budibase is a low code platform for creating… | Details |
| CVE-2026-25046 | 2026-01-29 21:37:02 | 2026-02-02 16:35:37 | GitHub_M | Kimi Agent SDK is a set of libraries… | Details |
| CVE-2026-25047 | 2026-01-29 21:39:48 | 2026-02-02 16:35:22 | GitHub_M | deepHas provides a test for the existence of… | Details |
| CVE-2026-25116 | 2026-01-29 21:49:49 | 2026-02-02 16:34:53 | GitHub_M | Runtipi is a personal homeserver orchestrator. Starting in… | Details |
| CVE-2026-25117 | 2026-01-29 21:53:57 | 2026-02-02 16:34:41 | GitHub_M | pwn.college DOJO is an education platform for learning… | Details |
| CVE-2026-25126 | 2026-01-29 22:06:37 | 2026-02-02 16:34:07 | GitHub_M | PolarLearn is a free and open-source learning program.… | Details |
| CVE-2026-1680 | 2026-01-30 06:00:31 | 2026-02-02 16:33:39 | NCSC-FI | Improper access control in the WCF endpoint in… | Details |
| CVE-2026-0963 | 2026-01-30 06:04:05 | 2026-02-02 16:33:26 | GitLab | An input neutralization vulnerability in the File Operations… | Details |
| CVE-2026-0805 | 2026-01-30 06:04:15 | 2026-02-02 16:33:11 | GitLab | An input neutralization vulnerability in the Backup Configuration… | Details |
| CVE-2025-13176 | 2026-01-30 12:18:58 | 2026-02-02 16:32:58 | ESET | Planting a custom configuration file in ESET Inspect Connector allow load… | Details |
| CVE-2026-1498 | 2026-01-30 13:02:59 | 2026-02-02 16:32:46 | WatchGuard | An LDAP Injection vulnerability in WatchGuard Fireware OS… | Details |
| CVE-2025-9226 | 2026-01-30 13:42:21 | 2026-02-02 16:32:34 | Zohocorp | Zohocorp ManageEngine OpManager, NetFlow Analyzer, and OpUtils versions… | Details |
| CVE-2025-36442 | 2026-01-30 21:18:24 | 2026-02-02 16:32:26 | ibm | IBM Db2 for Linux, UNIX and Windows (includes… | Details |
| CVE-2025-36428 | 2026-01-30 21:27:26 | 2026-02-02 16:32:13 | ibm | IBM Db2 for Linux, UNIX and Windows (includes… | Details |
| CVE-2025-36423 | 2026-01-30 21:27:38 | 2026-02-02 16:31:36 | ibm | IBM Db2 for Linux, UNIX and Windows (includes… | Details |
| CVE-2025-36387 | 2026-01-30 21:27:45 | 2026-02-02 16:31:10 | ibm | IBM Db2 for Linux, UNIX and Windows (includes… | Details |
| CVE-2025-67825 | 2026-01-08 00:00:00 | 2026-02-02 16:30:49 | mitre | An issue was discovered in Nitro PDF Pro… | Details |
| CVE-2025-36353 | 2026-01-30 21:27:57 | 2026-02-02 16:30:48 | ibm | IBM Db2 for Linux, UNIX and Windows (includes… | Details |
| CVE-2025-36098 | 2026-01-30 21:28:06 | 2026-02-02 16:30:33 | ibm | IBM Db2 for Linux, UNIX and Windows (includes… | Details |
| CVE-2025-36070 | 2026-01-30 21:28:09 | 2026-02-02 16:30:26 | ibm | IBM Db2 for Linux, UNIX and Windows (includes… | Details |
| CVE-2025-36001 | 2026-01-30 21:28:15 | 2026-02-02 16:30:00 | ibm | IBM Db2 for Linux, UNIX and Windows (includes… | Details |
| CVE-2025-2668 | 2026-01-30 21:28:18 | 2026-02-02 16:29:47 | ibm | IBM Db2 for Linux, UNIX and Windows (includes… | Details |
| CVE-2026-25152 | 2026-01-30 21:51:22 | 2026-02-02 16:29:27 | GitHub_M | Backstage is an open framework for building developer… | Details |
| CVE-2026-25154 | 2026-01-30 21:59:30 | 2026-02-02 16:29:18 | GitHub_M | LocalSend is a free, open-source app that allows… | Details |
| CVE-2023-54328 | 2026-01-13 22:52:04 | 2026-02-02 15:58:19 | VulnCheck | AimOne Video Converter 2.04 Build 103 contains a… | Details |
| CVE-2022-50933 | 2026-01-13 22:52:00 | 2026-02-02 15:58:18 | VulnCheck | Cain & Abel 4.9.56 contains an unquoted service… | Details |
| CVE-2022-50921 | 2026-01-13 22:51:54 | 2026-02-02 15:58:18 | VulnCheck | WOW21 5.0.1.9 contains an unquoted service path vulnerability… | Details |
| CVE-2022-50928 | 2026-01-13 22:51:57 | 2026-02-02 15:58:18 | VulnCheck | BlueSoleilCS 5.4.277 contains an unquoted service path vulnerability… | Details |
| CVE-2025-69601 | 2026-01-28 00:00:00 | 2026-02-02 15:51:24 | mitre | A directory traversal (Zip Slip) vulnerability exists in… | Details |
| CVE-2026-25129 | 2026-01-30 20:12:48 | 2026-02-02 15:45:55 | GitHub_M | PsySH is a runtime developer console, interactive debugger,… | Details |
| CVE-2025-46691 | 2026-01-28 19:31:27 | 2026-02-02 07:23:00 | dell | Dell PremierColor Panel Driver, versions prior to 1.0.0.1… | Details |
| CVE-2025-15447 | 2026-01-04 23:32:07 | 2026-02-02 06:53:43 | VulDB | ** REJECT ** DO NOT USE THIS CANDIDATE… | Details |
| CVE-2025-15446 | 2026-01-04 23:02:08 | 2026-02-02 06:53:41 | VulDB | ** REJECT ** DO NOT USE THIS CANDIDATE… | Details |
| CVE-2025-15427 | 2026-01-02 04:02:06 | 2026-02-02 06:53:21 | VulDB | ** REJECT ** DO NOT USE THIS CANDIDATE… | Details |
| CVE-2021-47853 | 2026-01-21 17:27:37 | 2026-02-01 12:09:57 | VulnCheck | This CVE ID has been rejected or withdrawn… | Details |
| CVE-2026-0227 | 2026-01-15 18:45:08 | 2026-01-30 23:36:56 | palo_alto | A vulnerability in Palo Alto Networks PAN-OS software… | Details |
| CVE-2026-23835 | 2026-01-30 20:04:23 | 2026-01-30 20:21:57 | GitHub_M | LobeHub is an open source human-and-AI-agent network. Prior… | Details |
| CVE-2024-9432 | 2026-01-30 18:31:31 | 2026-01-30 19:29:53 | OpenText | Cleartext Storage of Sensitive Information vulnerability in OpenText™… | Details |
| CVE-2025-15497 | 2026-01-30 18:06:07 | 2026-01-30 19:29:24 | OpenVPN | Insufficient epoch key slot processing in OpenVPN 2.7_alpha1… | Details |
| CVE-2025-11175 | 2026-01-30 19:12:06 | 2026-01-30 19:29:08 | wikimedia-foundation | Improper Neutralization of Special Elements used in an… | Details |
| CVE-2025-51958 | 2026-01-30 00:00:00 | 2026-01-30 18:58:58 | mitre | aelsantex runcommand 2014-04-01, a plugin for DokuWiki, allows… | Details |
| CVE-2026-1665 | 2026-01-29 23:04:05 | 2026-01-30 18:27:52 | openjs | A command injection vulnerability exists in nvm (Node… | Details |
| CVE-2026-24728 | 2026-01-30 03:48:28 | 2026-01-30 18:19:12 | ZUSO ART | A missing authentication for critical function vulnerability in… | Details |
| CVE-2026-24729 | 2026-01-30 03:50:31 | 2026-01-30 18:06:51 | ZUSO ART | An unrestricted upload of file with dangerous type… | Details |
| CVE-2026-24714 | 2026-01-30 03:53:30 | 2026-01-30 17:59:45 | jpcert | Some end of service NETGEAR products provide "TelnetEnable"… | Details |
| CVE-2020-37060 | 2026-01-30 16:16:41 | 2026-01-30 16:34:14 | VulnCheck | Atomic Alarm Clock 6.3 contains a local privilege… | Details |
| CVE-2020-37058 | 2026-01-30 16:16:40 | 2026-01-30 16:33:33 | VulnCheck | Andrea ST Filters Service 1.0.64.7 contains an unquoted… | Details |
| CVE-2026-24854 | 2026-01-30 15:05:12 | 2026-01-30 15:57:32 | GitHub_M | ChurchCRM is an open-source church management system. A… | Details |
| CVE-2026-24855 | 2026-01-30 15:08:31 | 2026-01-30 15:50:58 | GitHub_M | ChurchCRM is an open-source church management system. Versions… | Details |
| CVE-2026-25050 | 2026-01-30 15:11:40 | 2026-01-30 15:45:50 | GitHub_M | Vendure is an open-source headless commerce platform. Prior… | Details |
| CVE-2025-7964 | 2026-01-30 15:02:53 | 2026-01-30 15:36:46 | Silabs | After receiving a malformed 802.15.4 MAC Data Request … | Details |
| CVE-2025-12899 | 2026-01-30 05:34:19 | 2026-01-30 14:47:21 | zephyr | A flaw in Zephyr’s network stack allows an… | Details |
| CVE-2025-26385 | 2026-01-30 11:05:16 | 2026-01-30 12:38:11 | jci | Johnson Controls Metasys component listed below have … | Details |
| CVE-2025-13919 | 2026-01-28 16:41:02 | 2026-01-30 07:15:39 | symantec | Symantec Endpoint Protection, prior to 14.3 RU10 Patch… | Details |
| CVE-2026-24845 | 2026-01-29 21:02:24 | 2026-01-29 21:40:17 | GitHub_M | malcontent discovers supply-chain compromises through. context, differential analysis,… | Details |
| CVE-2026-24846 | 2026-01-29 21:12:18 | 2026-01-29 21:37:29 | GitHub_M | malcontent discovers supply-chain compromises through. context, differential analysis,… | Details |
| CVE-2026-24904 | 2026-01-29 21:19:53 | 2026-01-29 21:34:31 | GitHub_M | TrustTunnel is an open-source VPN protocol with a… | Details |
| CVE-2026-24902 | 2026-01-29 21:21:38 | 2026-01-29 21:33:10 | GitHub_M | TrustTunnel is an open-source VPN protocol with a… | Details |
| CVE-2025-69516 | 2026-01-29 00:00:00 | 2026-01-29 21:29:11 | mitre | A Server-Side Template Injection (SSTI) vulnerability in the… | Details |
| CVE-2025-62514 | 2026-01-29 15:46:50 | 2026-01-29 21:29:03 | GitHub_M | Parsec is a cloud-based application for cryptographically secure… | Details |
| CVE-2026-23896 | 2026-01-29 17:12:43 | 2026-01-29 21:25:38 | GitHub_M | immich is a high performance self-hosted photo and… | Details |
| CVE-2026-24054 | 2026-01-29 17:16:56 | 2026-01-29 21:24:54 | GitHub_M | Kata Containers is an open source project focusing… | Details |
| CVE-2026-24413 | 2026-01-29 17:21:01 | 2026-01-29 21:23:20 | GitHub_M | Icinga 2 is an open source monitoring system.… | Details |
| CVE-2026-22806 | 2026-01-29 19:54:37 | 2026-01-29 21:19:58 | GitHub_M | vCluster Platform provides a Kubernetes platform for managing… | Details |
| CVE-2026-24414 | 2026-01-29 17:35:43 | 2026-01-29 21:17:16 | GitHub_M | The Icinga PowerShell Framework provides configuration and check… | Details |
| CVE-2025-71006 | 2026-01-28 00:00:00 | 2026-01-29 21:16:47 | mitre | A floating point exception (FPE) in the oneflow.reshape… | Details |
| CVE-2026-24780 | 2026-01-29 17:39:33 | 2026-01-29 21:16:08 | GitHub_M | AutoGPT is a platform that allows users to… | Details |
| CVE-2025-71004 | 2026-01-28 00:00:00 | 2026-01-29 20:57:22 | mitre | A segmentation violation in the oneflow.logical_or component of… | Details |
| CVE-2025-71005 | 2026-01-28 00:00:00 | 2026-01-29 20:50:31 | mitre | A floating point exception (FPE) in the oneflow.view… | Details |
| CVE-2026-24687 | 2026-01-29 19:57:24 | 2026-01-29 20:47:23 | GitHub_M | Umbraco Forms is a form builder that integrates… | Details |
| CVE-2025-71003 | 2026-01-28 00:00:00 | 2026-01-29 20:45:11 | mitre | An input validation vulnerability in the flow.arange() component… | Details |
| CVE-2025-15541 | 2026-01-29 18:05:57 | 2026-01-29 20:37:28 | TPLink | Improper link resolution in the VX800v v1.0 SFTP… | Details |
| CVE-2026-1453 | 2026-01-29 19:02:26 | 2026-01-29 20:28:55 | icscert | A missing authentication for critical function vulnerability in… | Details |
| CVE-2025-71002 | 2026-01-28 00:00:00 | 2026-01-29 20:17:10 | mitre | A floating-point exception (FPE) in the flow.column_stack component… | Details |
| CVE-2025-69602 | 2026-01-28 00:00:00 | 2026-01-29 20:05:59 | mitre | A session fixation vulnerability exists in 66biolinks v62.0.0… | Details |
| CVE-2026-24826 | 2026-01-27 09:11:27 | 2026-01-29 20:03:11 | GovTech CSG | Out-of-bounds Write, Divide By Zero, NULL Pointer Dereference,… | Details |
| CVE-2025-53869 | 2026-01-29 02:40:57 | 2026-01-29 19:56:34 | jpcert | Multiple MFPs provided by Brother Industries, Ltd. does… | Details |
| CVE-2022-40619 | 2026-01-28 00:00:00 | 2026-01-29 18:52:26 | mitre | FunJSQ, a third-party module integrated on some NETGEAR… | Details |
| CVE-2022-40620 | 2026-01-28 00:00:00 | 2026-01-29 18:51:01 | mitre | FunJSQ, a third-party module integrated on some NETGEAR… | Details |
| CVE-2025-69749 | 2026-01-29 00:00:00 | 2026-01-29 18:48:55 | mitre | Cross Site Scripting vulnerability in tale v.2.0.5 allows… | Details |
| CVE-2025-15542 | 2026-01-29 18:06:21 | 2026-01-29 18:47:56 | TPLink | Improper handling of exceptional conditions in VX800v v1.0… | Details |
| CVE-2025-15543 | 2026-01-29 18:06:44 | 2026-01-29 18:47:34 | TPLink | Improper link resolution in USB HTTP access path… | Details |
| CVE-2026-0936 | 2026-01-29 15:30:48 | 2026-01-29 18:45:35 | ABB | An Insertion of Sensitive Information into Log File… | Details |
| CVE-2025-61728 | 2026-01-28 19:30:31 | 2026-01-29 18:30:24 | Go | archive/zip uses a super-linear file name indexing algorithm… | Details |
| CVE-2025-13982 | 2026-01-28 20:01:52 | 2026-01-29 18:26:19 | drupal | Cross-Site Request Forgery (CSRF) vulnerability in Drupal Login… | Details |
| CVE-2025-13984 | 2026-01-28 20:02:22 | 2026-01-29 18:24:28 | drupal | Permissive Cross-domain Security Policy with Untrusted Domains vulnerability… | Details |
| CVE-2025-14472 | 2026-01-28 20:03:09 | 2026-01-29 18:22:18 | drupal | Cross-Site Request Forgery (CSRF) vulnerability in Drupal Acquia… | Details |
| CVE-2020-36943 | 2026-01-28 17:35:06 | 2026-01-29 18:13:30 | VulnCheck | aSc TimeTables 2021.6.2 contains a denial of service… | Details |
| CVE-2020-36945 | 2026-01-28 17:35:07 | 2026-01-29 18:13:14 | VulnCheck | WebDamn User Registration Login System contains a SQL… | Details |
| CVE-2020-36964 | 2026-01-28 17:35:09 | 2026-01-29 18:12:34 | VulnCheck | YATinyWinFTP contains a denial of service vulnerability that… | Details |
| CVE-2020-36965 | 2026-01-28 17:35:09 | 2026-01-29 18:12:24 | VulnCheck | docPrint Pro 8.0 contains a local buffer overflow… | Details |
| CVE-2025-68479 | 2026-01-28 18:34:00 | 2026-01-29 18:11:42 | GitHub_M | Discourse is an open source discussion platform. In… | Details |
| CVE-2023-37525 | 2026-01-28 19:58:49 | 2026-01-29 18:11:32 | HCL | A sensitive information disclosure in HCL BigFix Compliance… | Details |
| CVE-2026-24739 | 2026-01-28 20:25:21 | 2026-01-29 18:01:36 | GitHub_M | Symfony is a PHP framework for web and… | Details |
| CVE-2026-24766 | 2026-01-28 20:27:42 | 2026-01-29 18:01:30 | GitHub_M | NocoDB is software for building databases as spreadsheets.… | Details |
| CVE-2026-24767 | 2026-01-28 20:29:29 | 2026-01-29 18:01:24 | GitHub_M | NocoDB is software for building databases as spreadsheets.… | Details |
| CVE-2026-24768 | 2026-01-28 20:32:03 | 2026-01-29 18:01:18 | GitHub_M | NocoDB is software for building databases as spreadsheets.… | Details |
| CVE-2026-24857 | 2026-01-28 21:30:35 | 2026-01-29 18:01:12 | GitHub_M | `bulk_extractor` is a digital forensics exploitation tool. Starting… | Details |
| CVE-2026-24888 | 2026-01-28 21:35:44 | 2026-01-29 18:00:53 | GitHub_M | Maker.js is a 2D vector line drawing and… | Details |
| CVE-2026-24889 | 2026-01-28 22:01:00 | 2026-01-29 18:00:47 | GitHub_M | soroban-sdk is a Rust SDK for Soroban contracts.… | Details |
| CVE-2025-55704 | 2026-01-29 02:41:30 | 2026-01-29 17:55:42 | jpcert | Hidden functionality issue exists in multiple MFPs provided… | Details |
| CVE-2025-13985 | 2026-01-28 20:02:40 | 2026-01-29 17:53:36 | drupal | Incorrect Authorization vulnerability in Drupal Entity Share allows… | Details |
| CVE-2025-13983 | 2026-01-28 20:02:09 | 2026-01-29 17:52:24 | drupal | Improper Neutralization of Input During Web Page Generation… | Details |
| CVE-2025-13981 | 2026-01-28 20:01:32 | 2026-01-29 17:12:45 | drupal | Improper Neutralization of Input During Web Page Generation… | Details |
| CVE-2025-70336 | 2026-01-28 00:00:00 | 2026-01-29 17:12:29 | mitre | A Stored cross-site scripting (XSS) vulnerability in 'Create… | Details |
| CVE-2025-13980 | 2026-01-28 20:01:16 | 2026-01-29 17:11:46 | drupal | Authentication Bypass Using an Alternate Path or Channel… | Details |
| CVE-2025-13979 | 2026-01-28 20:00:38 | 2026-01-29 17:10:16 | drupal | Privilege Defined With Unsafe Actions vulnerability in Drupal… | Details |
| CVE-2025-71008 | 2026-01-29 00:00:00 | 2026-01-29 17:08:58 | mitre | A segmentation violation in the oneflow._oneflow_internal.autograd.Function.FunctionCtx.mark_non_differentiable component of… | Details |
| CVE-2025-71009 | 2026-01-29 00:00:00 | 2026-01-29 17:00:29 | mitre | An input validation vulnerability in the flow.scatter/flow.scatter_add component… | Details |
| CVE-2025-71011 | 2026-01-29 00:00:00 | 2026-01-29 16:59:06 | mitre | An input validation vulnerability in the flow.Tensor.new_empty/flow.Tensor.new_ones/flow.Tensor.new_zeros component… | Details |
| CVE-2026-24897 | 2026-01-28 22:24:49 | 2026-01-29 16:54:12 | GitHub_M | Erugo is a self-hosted file-sharing platform. In versions… | Details |
| CVE-2025-14975 | 2026-01-29 06:00:02 | 2026-01-29 16:53:48 | WPScan | The Custom Login Page Customizer WordPress plugin before… | Details |
| CVE-2026-23563 | 2026-01-29 08:39:56 | 2026-01-29 16:53:26 | TV | Improper Link Resolution Before File Access (invoked by… | Details |
| CVE-2026-23571 | 2026-01-29 08:41:45 | 2026-01-29 16:53:17 | TV | A command injection vulnerability was discovered in TeamViewer… | Details |
| CVE-2026-23564 | 2026-01-29 08:43:43 | 2026-01-29 16:53:10 | TV | A vulnerability in TeamViewer DEX Client (former 1E… | Details |
| CVE-2026-23565 | 2026-01-29 08:44:58 | 2026-01-29 16:52:56 | TV | A vulnerability in TeamViewer DEX Client (former 1E… | Details |
| CVE-2026-1201 | 2026-01-22 21:52:01 | 2026-01-29 16:51:31 | icscert | An Authorization Bypass Through User-Controlled Key vulnerability in… | Details |
| CVE-2026-1011 | 2026-01-15 23:08:01 | 2026-01-29 16:49:40 | Altium | A stored cross-site scripting (XSS) vulnerability exists in… | Details |
| CVE-2020-36976 | 2026-01-27 18:51:03 | 2026-01-29 16:49:04 | VulnCheck | Acer Global Registration Service 1.0.0.3 contains an unquoted… | Details |
| CVE-2020-36977 | 2026-01-27 18:51:03 | 2026-01-29 16:48:59 | VulnCheck | Wondershare Driver Install Service contains an unquoted service… | Details |
| CVE-2020-36979 | 2026-01-27 18:51:04 | 2026-01-29 16:48:47 | VulnCheck | Atheros Coex Service Application 8.0.0.255 contains an unquoted… | Details |
| CVE-2020-37012 | 2026-01-29 14:28:31 | 2026-01-29 16:48:14 | VulnCheck | Tea LaTex 1.0 contains a remote code execution… | Details |
| CVE-2026-23566 | 2026-01-29 08:46:02 | 2026-01-29 16:44:19 | TV | A vulnerability in TeamViewer DEX Client (former 1E… | Details |
| CVE-2026-23567 | 2026-01-29 08:47:13 | 2026-01-29 16:44:12 | TV | An integer underflow in the UDP command handler… | Details |
| CVE-2026-1616 | 2026-01-29 13:38:35 | 2026-01-29 16:44:01 | redhat-cnalr | The $uri$args concatenation in nginx configuration file present… | Details |
| CVE-2026-1188 | 2026-01-29 08:36:02 | 2026-01-29 16:42:05 | eclipse | In the Eclipse OMR port library component since… | Details |
| CVE-2025-14840 | 2026-01-28 20:03:21 | 2026-01-29 16:30:13 | drupal | Improper Check for Unusual or Exceptional Conditions vulnerability… | Details |
| CVE-2020-36999 | 2026-01-29 14:28:27 | 2026-01-29 16:19:34 | VulnCheck | Elaniin CMS 1.0 contains an authentication bypass vulnerability… | Details |
| CVE-2025-13905 | 2026-01-29 15:20:45 | 2026-01-29 16:10:59 | schneider | CWE-276: Incorrect Default Permissions vulnerability exists that could… | Details |
| CVE-2026-23568 | 2026-01-29 08:48:17 | 2026-01-29 16:04:44 | TV | An out-of-bounds read vulnerability in the TeamViewer DEX… | Details |
| CVE-2026-23569 | 2026-01-29 08:49:32 | 2026-01-29 16:00:12 | TV | An out-of-bounds read vulnerability in the TeamViewer DEX… | Details |
| CVE-2026-23570 | 2026-01-29 08:50:52 | 2026-01-29 15:45:56 | TV | A missing validation of a user-controlled value in… | Details |
| CVE-2026-22764 | 2026-01-29 10:56:36 | 2026-01-29 15:38:13 | dell | Dell OpenManage Network Integration, versions prior to 3.9,… | Details |
| CVE-2026-1469 | 2026-01-29 11:30:49 | 2026-01-29 15:33:17 | INCIBE | Stored Cross-Site Scripting (XSS) in RLE NOVA's PlanManager.… | Details |
| CVE-2026-1513 | 2026-01-28 01:28:23 | 2026-01-29 15:22:06 | naver | billboard.js before 3.18.0 allows an attacker to execute… | Details |
| CVE-2020-37016 | 2026-01-29 14:28:32 | 2026-01-29 15:11:57 | VulnCheck | BarcodeOCR 19.3.6 contains an unquoted service path vulnerability… | Details |
| CVE-2025-66199 | 2026-01-27 16:01:22 | 2026-01-29 15:03:51 | openssl | Issue summary: A TLS 1.3 connection using certificate… | Details |
| CVE-2025-15469 | 2026-01-27 16:01:21 | 2026-01-29 14:54:35 | openssl | Issue summary: The 'openssl dgst' command-line tool silently… | Details |
| CVE-2025-15468 | 2026-01-27 16:01:20 | 2026-01-29 14:53:03 | openssl | Issue summary: If an application using the SSL_CIPHER_find()… | Details |
| CVE-2025-28162 | 2026-01-27 00:00:00 | 2026-01-29 14:45:03 | mitre | Buffer Overflow vulnerability in libpng 1.6.43-1.6.46 allows a… | Details |
| CVE-2026-24769 | 2026-01-28 20:36:23 | 2026-01-29 14:02:12 | GitHub_M | NocoDB is software for building databases as spreadsheets.… | Details |
| CVE-2022-50898 | 2026-01-13 22:51:44 | 2026-01-29 13:43:59 | VulnCheck | NanoCMS 0.4 contains an authenticated file upload vulnerability… | Details |
| CVE-2025-41084 | 2026-01-20 09:14:40 | 2026-01-29 11:33:18 | INCIBE | Stored Cross-Site Scripting (XSS) vulnerability in Sesame web… | Details |
| CVE-2025-14625 | 2026-01-06 21:42:28 | 2026-01-28 22:28:10 | Altera | Uncontrolled Search Path Element vulnerability in Altera Quartus… | Details |
| CVE-2026-24856 | 2026-01-28 21:05:12 | 2026-01-28 21:34:21 | GitHub_M | iccDEV provides a set of libraries and tools… | Details |
| CVE-2026-24835 | 2026-01-28 20:42:29 | 2026-01-28 21:21:17 | GitHub_M | Podman Desktop is a graphical tool for developing… | Details |
| CVE-2020-36971 | 2026-01-28 17:35:11 | 2026-01-28 21:20:44 | VulnCheck | Nidesoft 3GP Video Converter 2.6.18 contains a local… | Details |
| CVE-2026-24910 | 2026-01-27 22:26:26 | 2026-01-28 21:19:54 | mitre | In Bun before 1.3.5, the default trusted dependencies… | Details |
| CVE-2026-24909 | 2026-01-27 22:14:37 | 2026-01-28 21:18:16 | mitre | vlt before 1.0.0-rc.10 mishandles path sanitization for tar,… | Details |
| CVE-2026-24740 | 2026-01-27 20:59:05 | 2026-01-28 21:16:44 | GitHub_M | Dozzle is a realtime log viewer for docker… | Details |
| CVE-2026-24748 | 2026-01-27 21:23:53 | 2026-01-28 21:15:14 | GitHub_M | Kargo manages and automates the promotion of software… | Details |
| CVE-2020-36973 | 2026-01-28 17:35:12 | 2026-01-28 21:12:47 | VulnCheck | PDW File Browser 1.3 contains a remote code… | Details |
| CVE-2026-24770 | 2026-01-27 21:51:44 | 2026-01-28 21:11:58 | GitHub_M | RAGFlow is an open-source RAG (Retrieval-Augmented Generation) engine.… | Details |
| CVE-2026-24778 | 2026-01-27 21:57:45 | 2026-01-28 21:11:19 | GitHub_M | Ghost is an open source content management system.… | Details |
| CVE-2026-24783 | 2026-01-27 22:04:18 | 2026-01-28 21:09:12 | GitHub_M | soroban-fixed-point-math is a fixed-point math library for Soroban… | Details |
| CVE-2026-23743 | 2026-01-28 20:07:21 | 2026-01-28 21:07:37 | GitHub_M | Discourse is an open source discussion platform. In… | Details |
| CVE-2025-54373 | 2026-01-27 23:11:57 | 2026-01-28 21:06:36 | GitHub_M | OpenEMR is a free and open source electronic… | Details |
| CVE-2025-67645 | 2026-01-27 23:20:18 | 2026-01-28 21:05:33 | GitHub_M | OpenEMR is a free and open source electronic… | Details |
| CVE-2026-24833 | 2026-01-27 23:49:25 | 2026-01-28 21:05:02 | GitHub_M | DNN (formerly DotNetNuke) is an open-source web content… | Details |
| CVE-2026-24836 | 2026-01-27 23:51:27 | 2026-01-28 21:04:11 | GitHub_M | DNN (formerly DotNetNuke) is an open-source web content… | Details |
| CVE-2026-24837 | 2026-01-27 23:53:23 | 2026-01-28 21:03:06 | GitHub_M | DNN (formerly DotNetNuke) is an open-source web content… | Details |
| CVE-2026-1466 | 2026-01-28 06:33:15 | 2026-01-28 20:48:25 | GitLab | Jirafeau normally prevents browser preview for text files… | Details |
| CVE-2025-69563 | 2026-01-27 00:00:00 | 2026-01-28 20:37:18 | mitre | code-projects Mobile Shop Management System 1.0 is vulnerable… | Details |
| CVE-2026-24742 | 2026-01-28 20:11:30 | 2026-01-28 20:35:27 | GitHub_M | Discourse is an open source discussion platform. In… | Details |
| CVE-2025-69559 | 2026-01-27 00:00:00 | 2026-01-28 20:35:05 | mitre | code-projects Computer Book Store 1.0 is vulnerable to… | Details |
| CVE-2025-69562 | 2026-01-27 00:00:00 | 2026-01-28 20:29:49 | mitre | code-projects Mobile Shop Management System 1.0 is vulnerable… | Details |
| CVE-2025-69564 | 2026-01-27 00:00:00 | 2026-01-28 20:28:16 | mitre | code-projects Mobile Shop Management System 1.0 is vulnerable… | Details |
| CVE-2025-68662 | 2026-01-28 19:12:24 | 2026-01-28 20:21:50 | GitHub_M | Discourse is an open source discussion platform. In… | Details |
| CVE-2025-68659 | 2026-01-28 18:51:40 | 2026-01-28 20:20:41 | GitHub_M | Discourse is an open source discussion platform. Versions… | Details |
| CVE-2025-68933 | 2026-01-28 19:17:23 | 2026-01-28 20:16:21 | GitHub_M | Discourse is an open source discussion platform. In… | Details |
| CVE-2025-69289 | 2026-01-28 19:33:58 | 2026-01-28 20:15:03 | GitHub_M | Discourse is an open source discussion platform. A… | Details |
| CVE-2026-21865 | 2026-01-28 19:51:37 | 2026-01-28 20:10:06 | GitHub_M | Discourse is an open source discussion platform. In… | Details |
| CVE-2025-68934 | 2026-01-28 19:19:59 | 2026-01-28 19:46:16 | GitHub_M | Discourse is an open source discussion platform. In… | Details |
| CVE-2025-69218 | 2026-01-28 19:30:28 | 2026-01-28 19:45:12 | GitHub_M | Discourse is an open source discussion platform. In… | Details |
| CVE-2025-66488 | 2026-01-28 18:15:52 | 2026-01-28 19:29:11 | GitHub_M | Discourse is an open source discussion platform. A… | Details |
| CVE-2025-67723 | 2026-01-28 18:21:35 | 2026-01-28 19:28:24 | GitHub_M | Discourse is an open source discussion platform. Versions… | Details |
| CVE-2025-68660 | 2026-01-28 18:55:11 | 2026-01-28 19:27:18 | GitHub_M | Discourse is an open source discussion platform. In… | Details |
| CVE-2026-0750 | 2026-01-28 18:53:42 | 2026-01-28 19:25:29 | drupal | Improper Verification of Cryptographic Signature vulnerability in Drupal… | Details |
| CVE-2026-0749 | 2026-01-28 18:56:05 | 2026-01-28 19:12:36 | drupal | Improper Neutralization of Input During Web Page Generation… | Details |
| CVE-2025-57793 | 2026-01-28 17:09:49 | 2026-01-28 18:41:00 | Mandiant | Explorance Blue versions prior to 8.14.9 contain a… | Details |
| CVE-2025-57792 | 2026-01-28 17:26:51 | 2026-01-28 18:36:16 | Mandiant | Explorance Blue versions prior to 8.14.9 contain a… | Details |
| CVE-2026-24772 | 2026-01-28 18:07:02 | 2026-01-28 18:31:44 | GitHub_M | OpenProject is an open-source, web-based project management software.… | Details |
| CVE-2026-24775 | 2026-01-28 18:10:46 | 2026-01-28 18:30:29 | GitHub_M | OpenProject is an open-source, web-based project management software.… | Details |
| CVE-2025-57794 | 2026-01-28 17:33:43 | 2026-01-28 18:25:06 | Mandiant | Explorance Blue versions prior to 8.14.9 contain an… | Details |
| CVE-2025-57795 | 2026-01-28 17:43:08 | 2026-01-28 18:21:45 | Mandiant | Explorance Blue versions prior to 8.14.13 contain an… | Details |
| CVE-2025-57796 | 2026-01-28 17:47:56 | 2026-01-28 18:11:13 | Mandiant | Explorance Blue versions prior to 8.14.12 use reversible… | Details |
| CVE-2025-33237 | 2026-01-28 17:49:02 | 2026-01-28 18:02:25 | nvidia | NVIDIA HD Audio Driver for Windows contains a… | Details |
| CVE-2026-24685 | 2026-01-28 16:47:22 | 2026-01-28 17:54:14 | GitHub_M | OpenProject is an open-source, web-based project management software.… | Details |
| CVE-2025-58150 | 2026-01-28 15:33:17 | 2026-01-28 16:46:04 | XEN | Shadow mode tracing code uses a set of… | Details |
| CVE-2025-13917 | 2026-01-28 16:29:59 | 2026-01-28 16:43:08 | symantec | WSS Agent, prior to 9.8.5, may be susceptible… | Details |
| CVE-2026-23553 | 2026-01-28 15:33:44 | 2026-01-28 16:41:14 | XEN | In the context switch logic Xen attempts to… | Details |
| CVE-2025-28164 | 2026-01-27 00:00:00 | 2026-01-28 16:35:43 | mitre | Buffer Overflow vulnerability in libpng 1.6.43-1.6.46 allows a… | Details |
| CVE-2025-41351 | 2026-01-28 10:43:15 | 2026-01-28 16:33:24 | INCIBE | Vulnerability that allows a Padding Oracle Attack to… | Details |
| CVE-2025-7740 | 2026-01-28 09:02:21 | 2026-01-28 16:32:25 | Hitachi Energy | Default credentials vulnerability exists in SuprOS product. If exploited,… | Details |
| CVE-2020-36980 | 2026-01-27 18:51:04 | 2026-01-28 16:30:39 | VulnCheck | SAntivirus IC 10.0.21.61 contains an unquoted service path… | Details |
| CVE-2026-22243 | 2026-01-28 16:05:35 | 2026-01-28 16:28:24 | GitHub_M | EGroupware is a Web based groupware server written… | Details |
| CVE-2025-14616 | 2026-01-28 11:23:41 | 2026-01-28 15:55:14 | Wordfence | The Recooty – Job Widget (Old Dashboard) plugin… | Details |
| CVE-2026-24883 | 2026-01-27 18:43:18 | 2026-01-28 15:52:11 | mitre | In GnuPG before 2.5.17, a long signature packet… | Details |
| CVE-2025-26386 | 2026-01-28 11:24:46 | 2026-01-28 15:49:08 | jci | Johnson Controls iSTAR Configuration Utility (ICU) has Stack-based Buffer… | Details |
| CVE-2026-0483 | 2026-01-28 11:43:42 | 2026-01-28 15:47:13 | INCIBE | Stored Cross-Site Scripting (XSS) vulnerability in the PDF… | Details |
| CVE-2025-59891 | 2026-01-28 11:52:15 | 2026-01-28 15:46:23 | INCIBE | Cross-Site request forgery (CSRF) vulnerability in Sync Breeze… | Details |
| CVE-2025-59892 | 2026-01-28 11:52:35 | 2026-01-28 15:45:40 | INCIBE | Cross-Site request forgery (CSRF) vulnerability in Sync Breeze… | Details |
| CVE-2020-36984 | 2026-01-28 12:28:58 | 2026-01-28 15:45:05 | VulnCheck | EPSON 1.124 contains an unquoted service path vulnerability… | Details |
| CVE-2025-59893 | 2026-01-28 11:52:51 | 2026-01-28 15:43:40 | INCIBE | Cross-Site request forgery (CSRF) vulnerability in Sync Breeze… | Details |
| CVE-2025-59894 | 2026-01-28 11:53:24 | 2026-01-28 15:40:28 | INCIBE | Cross-Site request forgery (CSRF) vulnerability in Sync Breeze… | Details |
| CVE-2025-59895 | 2026-01-28 11:55:43 | 2026-01-28 15:38:11 | INCIBE | Sync Breeze Enterprise Server v10.4.18 and Disk Pulse… | Details |
| CVE-2025-59896 | 2026-01-28 11:58:13 | 2026-01-28 15:35:37 | INCIBE | Sync Breeze Enterprise Server v10.4.18 and Disk Pulse… | Details |
| CVE-2025-59897 | 2026-01-28 11:58:28 | 2026-01-28 15:34:32 | INCIBE | Sync Breeze Enterprise Server v10.4.18 and Disk Pulse… | Details |
| CVE-2025-59898 | 2026-01-28 11:58:44 | 2026-01-28 15:32:32 | INCIBE | Sync Breeze Enterprise Server v10.4.18 and Disk Pulse… | Details |
| CVE-2025-59899 | 2026-01-28 11:59:02 | 2026-01-28 15:26:31 | INCIBE | Sync Breeze Enterprise Server v10.4.18 and Disk Pulse… | Details |
| CVE-2025-59900 | 2026-01-28 12:00:05 | 2026-01-28 15:23:07 | INCIBE | Sync Breeze Enterprise Server v10.4.18 and Disk Pulse… | Details |
| CVE-2026-24736 | 2026-01-27 20:54:51 | 2026-01-28 15:17:12 | GitHub_M | Squidex is an open source headless content management… | Details |
| CVE-2025-59901 | 2026-01-28 12:01:30 | 2026-01-28 15:16:54 | INCIBE | Disk Pulse Enterprise v10.4.18 has an authenticated reflected… | Details |
| CVE-2026-24738 | 2026-01-27 21:08:29 | 2026-01-28 15:16:31 | GitHub_M | gmrtd is a Go library for reading Machine… | Details |
| CVE-2026-24741 | 2026-01-27 21:11:57 | 2026-01-28 15:14:23 | GitHub_M | ConvertXis a self-hosted online file converter. In versions… | Details |
| CVE-2026-24785 | 2026-01-27 23:38:53 | 2026-01-28 15:10:48 | GitHub_M | Clatter is a no_std compatible, pure Rust implementation… | Details |
| CVE-2025-55292 | 2026-01-27 23:28:28 | 2026-01-28 15:10:48 | GitHub_M | Meshtastic is an open source mesh networking solution.… | Details |
| CVE-2026-23830 | 2026-01-27 23:32:16 | 2026-01-28 15:09:44 | GitHub_M | SandboxJS is a JavaScript sandboxing library. Versions prior… | Details |
| CVE-2026-24134 | 2026-01-27 23:34:55 | 2026-01-28 15:08:38 | GitHub_M | StudioCMS is a server-side-rendered, Astro native, headless content… | Details |
| CVE-2026-24784 | 2026-01-27 23:47:41 | 2026-01-28 15:06:44 | GitHub_M | DNN (formerly DotNetNuke) is an open-source web content… | Details |
| CVE-2026-1237 | 2026-01-28 15:01:46 | 2026-01-28 15:06:23 | canonical | Vulnerable cross-model authorization in juju. If a charm's… | Details |
| CVE-2026-24838 | 2026-01-27 23:58:33 | 2026-01-28 15:03:27 | GitHub_M | DNN (formerly DotNetNuke) is an open-source web content… | Details |
| CVE-2026-24839 | 2026-01-28 00:01:49 | 2026-01-28 15:02:29 | GitHub_M | Dokploy is a free, self-hostable Platform as a… | Details |
| CVE-2026-24840 | 2026-01-28 00:15:57 | 2026-01-28 15:01:06 | GitHub_M | Dokploy is a free, self-hostable Platform as a… | Details |
| CVE-2026-24841 | 2026-01-28 00:18:23 | 2026-01-28 14:59:11 | GitHub_M | Dokploy is a free, self-hostable Platform as a… | Details |
| CVE-2026-24850 | 2026-01-28 00:24:53 | 2026-01-28 14:54:22 | GitHub_M | The ML-DSA crate is a Rust implementation of… | Details |
| CVE-2020-36986 | 2026-01-28 12:28:59 | 2026-01-28 14:54:14 | VulnCheck | Prey 1.9.6 contains an unquoted service path vulnerability… | Details |
| CVE-2026-24852 | 2026-01-28 00:27:11 | 2026-01-28 14:51:35 | GitHub_M | iccDEV provides a set of libraries and tools… | Details |
| CVE-2026-21569 | 2026-01-28 00:30:00 | 2026-01-28 14:49:56 | atlassian | This High severity XXE (XML External Entity Injection)… | Details |
| CVE-2020-36989 | 2026-01-28 12:29:01 | 2026-01-28 14:44:02 | VulnCheck | ForensiT AppX Management Service 2.2.0.4 contains an unquoted… | Details |
| CVE-2026-1514 | 2026-01-28 03:39:56 | 2026-01-28 14:40:49 | twcert | Official Document Management System developed by 2100 Technology… | Details |
| CVE-2025-69820 | 2026-01-22 00:00:00 | 2026-01-28 14:40:20 | mitre | Directory Traversal vulnerability in Beam beta9 v.0.1.521 allows… | Details |
| CVE-2020-36990 | 2026-01-28 12:29:02 | 2026-01-28 14:37:50 | VulnCheck | Input Director 1.4.3 contains an unquoted service path… | Details |
| CVE-2020-36991 | 2026-01-28 12:29:02 | 2026-01-28 14:35:00 | VulnCheck | ShareMouse 5.0.43 contains an unquoted service path vulnerability… | Details |
| CVE-2025-14386 | 2026-01-28 11:23:39 | 2026-01-28 14:34:19 | Wordfence | The Search Atlas SEO – Premier SEO Plugin… | Details |
| CVE-2026-22264 | 2026-01-27 18:33:50 | 2026-01-28 14:02:38 | GitHub_M | Suricata is a network IDS, IPS and NSM… | Details |
| CVE-2025-36911 | 2026-01-15 17:41:57 | 2026-01-28 04:55:59 | Google_Devices | In key-based pairing, there is a possible ID… | Details |
| CVE-2026-22696 | 2026-01-26 21:28:41 | 2026-01-27 21:43:00 | GitHub_M | dcap-qvl implements the quote verification logic for DCAP… | Details |
| CVE-2026-22709 | 2026-01-26 21:32:00 | 2026-01-27 21:42:27 | GitHub_M | vm2 is an open source vm/sandbox for Node.js.… | Details |
| CVE-2026-23888 | 2026-01-26 21:37:17 | 2026-01-27 21:41:06 | GitHub_M | pnpm is a package manager. Prior to version… | Details |
| CVE-2026-23889 | 2026-01-26 21:50:55 | 2026-01-27 21:40:36 | GitHub_M | pnpm is a package manager. Prior to version… | Details |
| CVE-2026-1465 | 2026-01-27 08:15:57 | 2026-01-27 21:40:07 | GovTech CSG | Improper Restriction of Operations within the Bounds of… | Details |
| CVE-2026-23890 | 2026-01-26 21:53:40 | 2026-01-27 21:39:57 | GitHub_M | pnpm is a package manager. Prior to version… | Details |
| CVE-2026-1464 | 2026-01-27 08:18:17 | 2026-01-27 21:39:51 | GovTech CSG | Integer Overflow or Wraparound vulnerability in MuntashirAkon AppManager… | Details |
| CVE-2026-24793 | 2026-01-27 08:19:41 | 2026-01-27 21:39:36 | GovTech CSG | Out-of-bounds Write, Buffer Copy without Checking Size of… | Details |
| CVE-2026-24056 | 2026-01-26 21:59:32 | 2026-01-27 21:39:25 | GitHub_M | pnpm is a package manager. Prior to version… | Details |
| CVE-2026-24794 | 2026-01-27 08:21:22 | 2026-01-27 21:39:21 | GovTech CSG | Improper Restriction of Operations within the Bounds of… | Details |
| CVE-2026-24796 | 2026-01-27 08:22:20 | 2026-01-27 21:39:06 | GovTech CSG | Out-of-bounds Read vulnerability in CloverHackyColor CloverBootloader (MdeModulePkg/Universal/RegularExpressionDxe/Oniguruma modules).… | Details |
| CVE-2026-24795 | 2026-01-27 08:23:47 | 2026-01-27 21:38:51 | GovTech CSG | Out-of-bounds Write vulnerability in CloverHackyColor CloverBootloader (MdeModulePkg/Universal/RegularExpressionDxe/Oniguruma modules).… | Details |
| CVE-2026-24797 | 2026-01-27 08:25:17 | 2026-01-27 21:38:37 | GovTech CSG | Out-of-bounds Write vulnerability in neka-nat cupoch (third_party/libjpeg-turbo/libjpeg-turbo modules).… | Details |
| CVE-2026-24798 | 2026-01-27 08:27:10 | 2026-01-27 21:38:23 | GovTech CSG | Improper Restriction of Operations within the Bounds of… | Details |
| CVE-2020-36938 | 2026-01-27 15:23:46 | 2026-01-27 21:38:08 | VulnCheck | WinAVR version 20100110 contains an insecure permissions vulnerability… | Details |
| CVE-2026-24131 | 2026-01-26 22:03:33 | 2026-01-27 21:37:51 | GitHub_M | pnpm is a package manager. Prior to version… | Details |
| CVE-2020-36940 | 2026-01-27 15:23:47 | 2026-01-27 21:37:38 | VulnCheck | Easy CD & DVD Cover Creator 4.13 contains… | Details |
| CVE-2026-24003 | 2026-01-26 22:12:47 | 2026-01-27 21:37:27 | GitHub_M | EVerest is an EV charging software stack. In… | Details |
| CVE-2020-36942 | 2026-01-27 15:23:48 | 2026-01-27 21:37:09 | VulnCheck | Victor CMS 1.0 contains a file upload vulnerability… | Details |
| CVE-2026-24123 | 2026-01-26 22:14:39 | 2026-01-27 21:37:03 | GitHub_M | BentoML is a Python library for building online… | Details |
| CVE-2026-24400 | 2026-01-26 22:19:02 | 2026-01-27 21:36:26 | GitHub_M | AssertJ provides Fluent testing assertions for Java and… | Details |
| CVE-2020-36949 | 2026-01-27 15:23:50 | 2026-01-27 21:36:11 | VulnCheck | TapinRadio 2.13.7 contains a denial of service vulnerability… | Details |
| CVE-2026-24831 | 2026-01-27 15:40:51 | 2026-01-27 21:35:42 | GovTech CSG | Loop with Unreachable Exit Condition ('Infinite Loop') vulnerability… | Details |
| CVE-2026-24832 | 2026-01-27 15:43:52 | 2026-01-27 21:35:28 | GovTech CSG | Out-of-bounds Write vulnerability in ixray-team ixray-1.6-stcop.This issue affects… | Details |
| CVE-2026-24408 | 2026-01-26 22:21:35 | 2026-01-27 21:35:14 | GitHub_M | sigstore-python is a Python tool for generating and… | Details |
| CVE-2026-24870 | 2026-01-27 15:47:13 | 2026-01-27 21:35:14 | GovTech CSG | Exposure of Sensitive Information to an Unauthorized Actor… | Details |
| CVE-2026-24871 | 2026-01-27 15:50:52 | 2026-01-27 21:34:59 | GovTech CSG | Improper Control of Generation of Code ('Code Injection')… | Details |
| CVE-2026-24875 | 2026-01-27 15:55:48 | 2026-01-27 21:34:47 | GovTech CSG | Integer Overflow or Wraparound vulnerability in yoyofr modizer.This… | Details |
| CVE-2025-30248 | 2026-01-26 22:47:58 | 2026-01-27 21:33:27 | WDC PSIRT | DLL hijacking in the WD Discovery Installer in… | Details |
| CVE-2026-24478 | 2026-01-26 23:23:54 | 2026-01-27 21:29:55 | GitHub_M | AnythingLLM is an application that turns pieces of… | Details |
| CVE-2025-21589 | 2026-01-27 20:32:13 | 2026-01-27 21:28:02 | juniper | An Authentication Bypass Using an Alternate Path or Channel… | Details |
| CVE-2026-1504 | 2026-01-27 20:46:35 | 2026-01-27 21:16:21 | Chrome | Inappropriate implementation in Background Fetch API in Google… | Details |
| CVE-2026-24480 | 2026-01-27 00:32:04 | 2026-01-27 20:54:42 | GitHub_M | QGIS is a free, open source, cross platform… | Details |
| CVE-2026-1472 | 2026-01-27 16:26:46 | 2026-01-27 20:53:03 | INCIBE | An out-of-band SQL injection vulnerability (OOB SQLi) has… | Details |
| CVE-2026-1473 | 2026-01-27 16:27:26 | 2026-01-27 20:52:49 | INCIBE | An out-of-band SQL injection vulnerability (OOB SQLi) has… | Details |
| CVE-2026-1474 | 2026-01-27 16:27:58 | 2026-01-27 20:52:37 | INCIBE | An out-of-band SQL injection vulnerability (OOB SQLi) has… | Details |
| CVE-2026-1475 | 2026-01-27 16:28:31 | 2026-01-27 20:52:26 | INCIBE | An out-of-band SQL injection vulnerability (OOB SQLi) has… | Details |
| CVE-2026-1476 | 2026-01-27 16:29:18 | 2026-01-27 20:52:18 | INCIBE | An out-of-band SQL injection vulnerability (OOB SQLi) has… | Details |
| CVE-2026-1477 | 2026-01-27 16:30:04 | 2026-01-27 20:52:11 | INCIBE | An out-of-band SQL injection vulnerability (OOB SQLi) has… | Details |
| CVE-2026-24472 | 2026-01-27 19:34:33 | 2026-01-27 20:52:05 | GitHub_M | Hono is a Web application framework that provides… | Details |
| CVE-2026-24473 | 2026-01-27 19:37:52 | 2026-01-27 20:51:59 | GitHub_M | Hono is a Web application framework that provides… | Details |
| CVE-2026-24771 | 2026-01-27 19:41:33 | 2026-01-27 20:51:54 | GitHub_M | Hono is a Web application framework that provides… | Details |
| CVE-2026-24688 | 2026-01-27 19:44:06 | 2026-01-27 20:51:48 | GitHub_M | pypdf is a free and open-source pure-python PDF… | Details |
| CVE-2025-12810 | 2026-01-27 19:46:04 | 2026-01-27 20:51:42 | Delinea | Improper Authentication vulnerability in Delinea Inc. Secret Server… | Details |
| CVE-2025-14988 | 2026-01-27 20:08:54 | 2026-01-27 20:51:36 | icscert | A security issue has been identified in ibaPDA… | Details |
| CVE-2026-21408 | 2026-01-27 05:08:20 | 2026-01-27 20:50:14 | jpcert | beat-access for Windows version 3.0.3 and prior contains… | Details |
| CVE-2026-1213 | 2026-01-27 14:04:18 | 2026-01-27 20:48:18 | Fluid Attacks | All versions of askbot before and including 0.12.2… | Details |
| CVE-2026-24805 | 2026-01-27 08:41:18 | 2026-01-27 20:47:37 | GovTech CSG | NULL Pointer Dereference vulnerability in visualfc liteide (liteidex/src/3rdparty/libvterm/src… | Details |
| CVE-2026-24808 | 2026-01-27 08:44:58 | 2026-01-27 20:44:34 | GovTech CSG | Integer Overflow or Wraparound vulnerability in RawTherapee (rtengine… | Details |
| CVE-2026-24809 | 2026-01-27 08:46:04 | 2026-01-27 20:44:12 | GovTech CSG | An issue from the component luaG_runerror in dependencies/lua/src/ldebug.c… | Details |
| CVE-2026-24814 | 2026-01-27 08:50:48 | 2026-01-27 20:42:37 | GovTech CSG | Integer Overflow or Wraparound vulnerability in swoole swoole-src… | Details |
| CVE-2026-24815 | 2026-01-27 08:51:58 | 2026-01-27 20:41:20 | GovTech CSG | Unrestricted Upload of File with Dangerous Type, Deserialization… | Details |
| CVE-2026-24816 | 2026-01-27 08:53:03 | 2026-01-27 20:39:27 | GovTech CSG | Loop with Unreachable Exit Condition ('Infinite Loop') vulnerability… | Details |
| CVE-2025-14830 | 2026-01-04 09:17:34 | 2026-01-27 20:38:54 | JFROG | Improper Neutralization of Input During Web Page Generation… | Details |
| CVE-2025-52517 | 2026-01-05 00:00:00 | 2026-01-27 20:38:42 | mitre | An issue was discovered in the Camera in… | Details |
| CVE-2026-24817 | 2026-01-27 08:53:44 | 2026-01-27 20:36:51 | GovTech CSG | Out-of-bounds Write vulnerability in praydog UEVR (dependencies/lua/src modules).… | Details |
| CVE-2026-24818 | 2026-01-27 08:54:30 | 2026-01-27 20:36:09 | GovTech CSG | Out-of-bounds Read vulnerability in praydog UEVR (dependencies/lua/src modules).… | Details |
| CVE-2020-36981 | 2026-01-27 18:51:05 | 2026-01-27 20:35:16 | VulnCheck | Motorola Device Manager 2.4.5 contains an unquoted service… | Details |
| CVE-2020-36982 | 2026-01-27 18:51:05 | 2026-01-27 20:26:30 | VulnCheck | Motorola Device Manager 2.5.4 contains an unquoted service… | Details |
| CVE-2025-33234 | 2026-01-27 17:58:09 | 2026-01-27 19:59:42 | nvidia | NVIDIA runx contains a vulnerability where an attacker… | Details |
| CVE-2026-22263 | 2026-01-27 18:27:45 | 2026-01-27 19:56:34 | GitHub_M | Suricata is a network IDS, IPS and NSM… | Details |
| CVE-2025-70368 | 2026-01-26 00:00:00 | 2026-01-27 19:56:00 | mitre | Worklenz version 2.1.5 contains a Stored Cross-Site Scripting… | Details |
| CVE-2026-22262 | 2026-01-27 18:18:52 | 2026-01-27 19:30:42 | GitHub_M | Suricata is a network IDS, IPS and NSM… | Details |
| CVE-2026-24116 | 2026-01-27 18:58:52 | 2026-01-27 19:23:09 | GitHub_M | Wasmtime is a runtime for WebAssembly. Starting in… | Details |
| CVE-2026-24398 | 2026-01-27 19:06:42 | 2026-01-27 19:20:35 | GitHub_M | Hono is a Web application framework that provides… | Details |
| CVE-2026-23892 | 2026-01-27 18:35:31 | 2026-01-27 19:14:50 | GitHub_M | OctoPrint provides a web interface for controlling consumer… | Details |
| CVE-2025-65264 | 2026-01-27 00:00:00 | 2026-01-27 19:09:26 | mitre | The kernel driver of CPUID CPU-Z v2.17 and… | Details |
| CVE-2026-1479 | 2026-01-27 16:31:06 | 2026-01-27 18:57:32 | INCIBE | An out-of-band SQL injection vulnerability (OOB SQLi) has… | Details |
| CVE-2026-1480 | 2026-01-27 16:31:51 | 2026-01-27 18:51:54 | INCIBE | An out-of-band SQL injection vulnerability (OOB SQLi) has… | Details |
| CVE-2025-59106 | 2026-01-26 10:06:13 | 2026-01-27 18:44:41 | SEC-VLab | The binary serving the web server and executing… | Details |
| CVE-2026-1482 | 2026-01-27 16:32:53 | 2026-01-27 18:38:09 | INCIBE | An out-of-band SQL injection vulnerability (OOB SQLi) has… | Details |
| CVE-2026-1481 | 2026-01-27 16:32:25 | 2026-01-27 18:32:12 | INCIBE | An out-of-band SQL injection vulnerability (OOB SQLi) has… | Details |
| CVE-2026-22258 | 2026-01-27 16:17:29 | 2026-01-27 18:28:38 | GitHub_M | Suricata is a network IDS, IPS and NSM… | Details |
| CVE-2026-22261 | 2026-01-27 18:10:27 | 2026-01-27 18:24:24 | GitHub_M | Suricata is a network IDS, IPS and NSM… | Details |
| CVE-2026-1483 | 2026-01-27 16:33:21 | 2026-01-27 18:24:19 | INCIBE | An out-of-band SQL injection vulnerability (OOB SQLi) has… | Details |
| CVE-2026-0705 | 2026-01-27 16:43:42 | 2026-01-27 18:22:08 | Acronis | Local privilege escalation due to insecure folder permissions.… | Details |
| CVE-2026-22259 | 2026-01-27 17:13:11 | 2026-01-27 18:16:55 | GitHub_M | Suricata is a network IDS, IPS and NSM… | Details |
| CVE-2026-1315 | 2026-01-27 17:53:29 | 2026-01-27 18:11:48 | TPLink | By sending crafted files to the firmware update… | Details |
| CVE-2026-22260 | 2026-01-27 17:30:39 | 2026-01-27 17:57:27 | GitHub_M | Suricata is a network IDS, IPS and NSM… | Details |
| CVE-2026-24804 | 2026-01-27 08:40:19 | 2026-01-27 17:05:12 | GovTech CSG | Loop with Unreachable Exit Condition ('Infinite Loop') vulnerability… | Details |
| CVE-2026-24803 | 2026-01-27 08:39:39 | 2026-01-27 17:04:27 | GovTech CSG | Loop with Unreachable Exit Condition ('Infinite Loop') vulnerability… | Details |
| CVE-2026-24802 | 2026-01-27 08:38:34 | 2026-01-27 17:03:30 | GovTech CSG | Loop with Unreachable Exit Condition ('Infinite Loop') vulnerability… | Details |
| CVE-2026-24800 | 2026-01-27 08:33:16 | 2026-01-27 17:02:21 | GovTech CSG | Out-of-bounds Write, Buffer Copy without Checking Size of… | Details |
| CVE-2026-24819 | 2026-01-27 08:55:54 | 2026-01-27 17:01:38 | GovTech CSG | Improperly Controlled Sequential Memory Allocation vulnerability in foxinmy… | Details |
| CVE-2026-24820 | 2026-01-27 08:56:34 | 2026-01-27 17:00:59 | GovTech CSG | Out-of-bounds Read vulnerability in turanszkij WickedEngine (WickedEngine/LUA modules).… | Details |
| CVE-2026-24873 | 2026-01-27 15:53:20 | 2026-01-27 17:00:59 | GovTech CSG | Out-of-bounds Read vulnerability in Rinnegatamante lpp-vita.This issue affects… | Details |
| CVE-2026-24821 | 2026-01-27 08:57:26 | 2026-01-27 17:00:23 | GovTech CSG | Out-of-bounds Read vulnerability in turanszkij WickedEngine (WickedEngine/LUA modules).… | Details |
| CVE-2026-24822 | 2026-01-27 08:58:45 | 2026-01-27 16:59:40 | GovTech CSG | Out-of-bounds Write, Heap-based Buffer Overflow vulnerability in ttttupup… | Details |
| CVE-2026-24823 | 2026-01-27 08:59:58 | 2026-01-27 16:59:03 | GovTech CSG | Out-of-bounds Write, Buffer Copy without Checking Size of… | Details |
| CVE-2026-24824 | 2026-01-27 09:01:06 | 2026-01-27 16:58:24 | GovTech CSG | Improper Neutralization of Input During Web Page Generation… | Details |
| CVE-2026-24825 | 2026-01-27 09:02:51 | 2026-01-27 16:57:43 | GovTech CSG | Missing Release of Memory after Effective Lifetime vulnerability… | Details |
| CVE-2026-24828 | 2026-01-27 09:14:16 | 2026-01-27 16:57:01 | GovTech CSG | Missing Release of Memory after Effective Lifetime vulnerability… | Details |
| CVE-2026-24829 | 2026-01-27 09:15:31 | 2026-01-27 16:56:21 | GovTech CSG | Out-of-bounds Write, Heap-based Buffer Overflow vulnerability in Is-Daouda… | Details |
| CVE-2026-24874 | 2026-01-27 15:55:03 | 2026-01-27 16:48:38 | GovTech CSG | Access of Resource Using Incompatible Type ('Type Confusion')… | Details |
| CVE-2026-22039 | 2026-01-27 16:07:19 | 2026-01-27 16:42:49 | GitHub_M | Kyverno is a policy engine designed for cloud… | Details |
| CVE-2026-23881 | 2026-01-27 16:10:44 | 2026-01-27 16:33:03 | GitHub_M | Kyverno is a policy engine designed for cloud… | Details |
| CVE-2021-47901 | 2026-01-27 15:23:52 | 2026-01-27 16:12:06 | VulnCheck | Dirsearch 0.4.1 contains a CSV injection vulnerability when… | Details |
| CVE-2025-55102 | 2026-01-27 15:25:36 | 2026-01-27 15:58:21 | eclipse | A denial-of-service vulnerability exists in the NetX IPv6… | Details |
| CVE-2025-55095 | 2026-01-27 15:34:47 | 2026-01-27 15:58:14 | eclipse | The function _ux_host_class_storage_media_mount() is responsible for mounting partitions on… | Details |
| CVE-2026-0648 | 2026-01-27 15:40:31 | 2026-01-27 15:53:36 | eclipse | The vulnerability stems from an incorrect error-checking logic… | Details |
| CVE-2020-36951 | 2026-01-27 15:23:51 | 2026-01-27 15:50:58 | VulnCheck | Phpscript-sgh 0.1.0 contains a time-based blind SQL injection… | Details |
| CVE-2026-24799 | 2026-01-27 08:31:36 | 2026-01-27 15:29:38 | GovTech CSG | Out-of-bounds Write, Buffer Copy without Checking Size of… | Details |
| CVE-2026-24810 | 2026-01-27 08:47:02 | 2026-01-27 15:25:58 | GovTech CSG | Buffer Copy without Checking Size of Input ('Classic… | Details |
| CVE-2026-24345 | 2026-01-27 09:13:27 | 2026-01-27 15:22:21 | NCSC.ch | Cross-Site Request Forgery in Admin UI of EZCast… | Details |
| CVE-2026-24346 | 2026-01-27 09:18:57 | 2026-01-27 15:21:10 | NCSC.ch | Use of well-known default credentials in Admin UI… | Details |
| CVE-2026-24476 | 2026-01-26 22:26:59 | 2026-01-27 15:20:27 | GitHub_M | Shaarli is a personal bookmarking service. Prior to… | Details |
| CVE-2025-59473 | 2026-01-26 21:43:05 | 2026-01-27 15:08:40 | hackerone | SQL Injection vulnerability in the Structure for Admin… | Details |
| CVE-2026-24827 | 2026-01-27 09:12:55 | 2026-01-27 15:03:10 | GovTech CSG | Out-of-bounds Write vulnerability in gerstrong Commander-Genius.This issue affects… | Details |
| CVE-2025-55423 | 2026-01-20 00:00:00 | 2026-01-27 14:58:59 | mitre | A command injection vulnerability exists in the upnp_relay()… | Details |
| CVE-2026-21417 | 2026-01-27 09:28:01 | 2026-01-27 14:55:45 | dell | Dell CloudBoost Virtual Appliance, versions prior to 19.14.0.0,… | Details |
| CVE-2025-59471 | 2026-01-26 21:43:05 | 2026-01-27 14:55:15 | hackerone | A denial of service vulnerability exists in self-hosted… | Details |
| CVE-2025-59472 | 2026-01-26 21:43:05 | 2026-01-27 14:54:04 | hackerone | A denial of service vulnerability exists in Next.js… | Details |
| CVE-2026-24347 | 2026-01-27 09:22:38 | 2026-01-27 14:53:25 | NCSC.ch | Improper input validation in Admin UI of EZCast… | Details |
| CVE-2026-24470 | 2026-01-26 22:23:43 | 2026-01-27 14:51:35 | GitHub_M | Skipper is an HTTP router and reverse proxy… | Details |
| CVE-2026-24489 | 2026-01-27 00:36:34 | 2026-01-27 14:46:42 | GitHub_M | Gakido is a Python HTTP client focused on… | Details |
| CVE-2026-24813 | 2026-01-27 08:49:23 | 2026-01-27 14:45:40 | GovTech CSG | NULL Pointer Dereference vulnerability in abcz316 SKRoot-linuxKernelRoot (testRoot/jni/utils… | Details |
| CVE-2026-24490 | 2026-01-27 00:40:36 | 2026-01-27 14:43:35 | GitHub_M | MobSF is a mobile application security testing tool… | Details |
| CVE-2026-24479 | 2026-01-27 00:43:42 | 2026-01-27 14:42:04 | GitHub_M | HUSTOF is an open source online judge based… | Details |
| CVE-2026-24686 | 2026-01-27 00:45:43 | 2026-01-27 14:40:01 | GitHub_M | go-tuf is a Go implementation of The Update… | Details |
| CVE-2026-24348 | 2026-01-27 09:31:19 | 2026-01-27 14:37:02 | NCSC.ch | Multiple cross-site scripting vulnerabilities in Admin UI of… | Details |
| CVE-2026-1470 | 2026-01-27 14:23:53 | 2026-01-27 14:36:43 | JFROG | n8n contains a critical Remote Code Execution (RCE)… | Details |
| CVE-2026-24830 | 2026-01-27 09:28:07 | 2026-01-27 14:31:35 | GovTech CSG | Integer Overflow or Wraparound vulnerability in Ralim IronOS.This… | Details |
| CVE-2026-24344 | 2026-01-27 09:04:34 | 2026-01-27 14:25:06 | NCSC.ch | Multiple Buffer Overflows in Admin UI of EZCast Pro… | Details |
| CVE-2026-1361 | 2026-01-27 03:11:57 | 2026-01-27 14:20:21 | Deltaww | ASDA-Soft Stack-based Buffer Overflow Vulnerability… | Details |
| CVE-2025-41726 | 2026-01-27 11:35:37 | 2026-01-27 14:08:37 | CERTVDE | A low privileged remote attacker can execute arbitrary… | Details |
| CVE-2025-41727 | 2026-01-27 11:36:54 | 2026-01-27 13:53:55 | CERTVDE | A local low privileged attacker can bypass the… | Details |
| CVE-2025-41728 | 2026-01-27 11:37:55 | 2026-01-27 13:49:51 | CERTVDE | A low privileged remote attacker may be able… | Details |
| CVE-2025-12386 | 2026-01-27 11:57:50 | 2026-01-27 13:37:44 | CERT-PL | Pix-Link LV-WR21Q does not enforce any form of… | Details |
| CVE-2025-12387 | 2026-01-27 11:57:55 | 2026-01-27 13:37:05 | CERT-PL | A vulnerability in the Pix-Link LV-WR21Q router's language… | Details |
| CVE-2026-0695 | 2026-01-16 13:34:42 | 2026-01-27 12:14:38 | ConnectWise | In ConnectWise PSA versions older than 2026.1, Time… | Details |
| CVE-2026-0696 | 2026-01-16 13:34:49 | 2026-01-27 12:14:05 | ConnectWise | In ConnectWise PSA versions older than 2026.1, certain… | Details |
| CVE-2026-1181 | 2026-01-19 12:00:10 | 2026-01-26 21:20:18 | Altium | Altium 365 workspace endpoints were configured with an… | Details |
| CVE-2025-9520 | 2026-01-26 19:34:44 | 2026-01-26 21:11:52 | TPLink | An IDOR vulnerability exists in Omada Controllers that… | Details |
| CVE-2026-23954 | 2026-01-22 21:45:55 | 2026-01-26 21:02:48 | GitHub_M | Incus is a system container and virtual machine… | Details |
| CVE-2025-11687 | 2026-01-26 19:36:28 | 2026-01-26 21:02:29 | redhat | A flaw was found in the gi-docgen. This… | Details |
| CVE-2025-14751 | 2026-01-22 21:42:50 | 2026-01-26 21:02:09 | icscert | A low-privileged user can bypass account credentials without… | Details |
| CVE-2025-14750 | 2026-01-22 21:40:56 | 2026-01-26 21:01:31 | icscert | The web application does not sufficiently verify inputs… | Details |
| CVE-2026-23953 | 2026-01-22 21:39:41 | 2026-01-26 21:00:46 | GitHub_M | Incus is a system container and virtual machine… | Details |
| CVE-2025-14525 | 2026-01-26 19:36:43 | 2026-01-26 20:59:41 | redhat | A flaw was found in kubevirt. A user… | Details |
| CVE-2025-57783 | 2026-01-26 17:45:36 | 2026-01-26 20:55:04 | certcc | Improper header parsing may lead to request smuggling… | Details |
| CVE-2025-57785 | 2026-01-26 17:46:09 | 2026-01-26 20:54:04 | certcc | A Double Free in XSLT `show_index` has been… | Details |
| CVE-2025-57784 | 2026-01-26 17:47:19 | 2026-01-26 20:52:06 | certcc | Tomahawk auth timing attack due to usage of… | Details |
| CVE-2026-24656 | 2026-01-26 09:41:24 | 2026-01-26 18:35:51 | apache | Deserialization of Untrusted Data vulnerability in Apache Karaf… | Details |
| CVE-2025-27821 | 2026-01-26 09:44:13 | 2026-01-26 18:13:19 | apache | Out-of-bounds Write vulnerability in Apache Hadoop HDFS native… | Details |
| CVE-2016-15057 | 2026-01-26 11:29:03 | 2026-01-26 18:06:06 | apache | ** UNSUPPORTED WHEN ASSIGNED ** Improper Neutralization of… | Details |
| CVE-2025-15516 | 2026-01-24 08:26:33 | 2026-01-26 18:05:35 | Wordfence | The All-in-One Video Gallery plugin for WordPress is… | Details |
| CVE-2025-59091 | 2026-01-26 10:03:34 | 2026-01-26 17:26:08 | SEC-VLab | Multiple hardcoded credentials have been identified, which are… | Details |
| CVE-2025-59092 | 2026-01-26 10:03:44 | 2026-01-26 17:25:26 | SEC-VLab | An RPC service, which is part of exos… | Details |
| CVE-2025-59093 | 2026-01-26 10:03:54 | 2026-01-26 17:24:52 | SEC-VLab | Exos 9300 instances are using a randomly generated… | Details |
| CVE-2025-70982 | 2026-01-26 00:00:00 | 2026-01-26 17:18:42 | mitre | Incorrect access control in the importUser function of… | Details |
| CVE-2025-59094 | 2026-01-26 10:04:05 | 2026-01-26 17:18:41 | SEC-VLab | A local privilege escalation vulnerability has been identified… | Details |
| CVE-2026-24406 | 2026-01-24 01:02:33 | 2026-01-26 17:16:51 | GitHub_M | iccDEV provides libraries and tools for interacting with,… | Details |
| CVE-2025-59095 | 2026-01-26 10:04:15 | 2026-01-26 17:16:38 | SEC-VLab | The program libraries (DLL) and binaries used by… | Details |
| CVE-2026-24407 | 2026-01-24 01:05:52 | 2026-01-26 17:14:24 | GitHub_M | iccDEV provides libraries and tools for interacting with,… | Details |
| CVE-2026-24128 | 2026-01-23 23:18:31 | 2026-01-26 17:12:52 | GitHub_M | XWiki Platform is a generic wiki platform offering… | Details |
| CVE-2026-24136 | 2026-01-23 23:38:31 | 2026-01-26 17:10:16 | GitHub_M | Saleor is an e-commerce platform. Versions 3.2.0 through… | Details |
| CVE-2026-24409 | 2026-01-24 01:09:52 | 2026-01-26 17:10:09 | GitHub_M | iccDEV provides libraries and tools for interacting with,… | Details |
| CVE-2026-24474 | 2026-01-23 23:50:35 | 2026-01-26 17:07:29 | GitHub_M | Dioxus Components is a shadcn-style component library for… | Details |
| CVE-2025-67274 | 2026-01-26 00:00:00 | 2026-01-26 17:01:06 | mitre | An issue in continuous.software aangine v.2025.2 allows a… | Details |
| CVE-2020-36936 | 2026-01-25 14:01:08 | 2026-01-26 16:44:12 | VulnCheck | Magic Mouse 2 Utilities 2.20 contains an unquoted… | Details |
| CVE-2020-36937 | 2026-01-25 14:01:18 | 2026-01-26 16:31:38 | VulnCheck | Microvirt MEMU Play 3.7.0 contains an unquoted service… | Details |
| CVE-2026-23958 | 2026-01-22 01:42:11 | 2026-01-26 16:18:33 | GitHub_M | Dataease is an open source data visualization analysis… | Details |
| CVE-2026-24127 | 2026-01-23 23:01:15 | 2026-01-26 16:18:10 | GitHub_M | Typemill is a flat-file, Markdown-based CMS designed for… | Details |
| CVE-2026-24139 | 2026-01-23 23:55:23 | 2026-01-26 16:18:05 | GitHub_M | MyTube is a self-hosted downloader and player for… | Details |
| CVE-2026-24140 | 2026-01-23 23:59:56 | 2026-01-26 16:17:58 | GitHub_M | MyTube is a self-hosted downloader and player for… | Details |
| CVE-2026-24399 | 2026-01-24 00:05:37 | 2026-01-26 16:17:53 | GitHub_M | ChatterMate is a no-code AI chatbot agent framework.… | Details |
| CVE-2026-24403 | 2026-01-24 00:46:14 | 2026-01-26 16:17:48 | GitHub_M | iccDEV provides libraries and tools for interacting with,… | Details |
| CVE-2026-24404 | 2026-01-24 00:55:26 | 2026-01-26 16:17:43 | GitHub_M | iccDEV provides libraries and tools for interacting with,… | Details |
| CVE-2026-24405 | 2026-01-24 00:59:32 | 2026-01-26 16:17:38 | GitHub_M | iccDEV provides libraries and tools for interacting with,… | Details |
| CVE-2026-24410 | 2026-01-24 01:12:32 | 2026-01-26 16:17:34 | GitHub_M | iccDEV provides libraries and tools for interacting with,… | Details |
| CVE-2026-24411 | 2026-01-24 01:16:31 | 2026-01-26 16:17:29 | GitHub_M | iccDEV provides libraries and tools for interacting with,… | Details |
| CVE-2026-24401 | 2026-01-24 01:25:02 | 2026-01-26 16:17:24 | GitHub_M | Avahi is a system which facilitates service discovery… | Details |
| CVE-2026-24412 | 2026-01-24 01:27:42 | 2026-01-26 16:17:19 | GitHub_M | iccDEV provides libraries and tools for interacting with,… | Details |
| CVE-2026-24421 | 2026-01-24 01:43:10 | 2026-01-26 16:17:14 | GitHub_M | phpMyFAQ is an open source FAQ web application.… | Details |
| CVE-2026-24469 | 2026-01-24 01:50:24 | 2026-01-26 16:17:09 | GitHub_M | C++ HTTP Server is an HTTP/1.1 server built… | Details |
| CVE-2025-50537 | 2026-01-26 00:00:00 | 2026-01-26 16:16:34 | mitre | Stack overflow vulnerability in eslint before 9.26.0 when… | Details |
| CVE-2025-59096 | 2026-01-26 10:04:24 | 2026-01-26 16:10:20 | SEC-VLab | The default password for the extended admin user… | Details |
| CVE-2025-59097 | 2026-01-26 10:04:38 | 2026-01-26 16:09:59 | SEC-VLab | The exos 9300 application can be used to… | Details |
| CVE-2025-59098 | 2026-01-26 10:04:51 | 2026-01-26 16:07:50 | SEC-VLab | The Access Manager is offering a trace functionality… | Details |
| CVE-2025-59099 | 2026-01-26 10:05:02 | 2026-01-26 16:07:15 | SEC-VLab | The Access Manager is using the open source… | Details |
| CVE-2025-59100 | 2026-01-26 10:05:11 | 2026-01-26 16:00:38 | SEC-VLab | The web interface offers a functionality to export… | Details |
| CVE-2025-59101 | 2026-01-26 10:05:20 | 2026-01-26 16:00:07 | SEC-VLab | Instead of typical session tokens or cookies, it… | Details |
| CVE-2021-47771 | 2026-01-15 15:52:11 | 2026-01-26 15:55:03 | VulnCheck | RDP Manager 4.9.9.3 contains a denial of service… | Details |
| CVE-2021-47769 | 2026-01-15 15:52:10 | 2026-01-26 15:55:03 | VulnCheck | Isshue Shopping Cart 3.5 contains a persistent cross-site… | Details |
| CVE-2021-47765 | 2026-01-15 15:52:08 | 2026-01-26 15:55:03 | VulnCheck | AbsoluteTelnet 11.24 contains a denial of service vulnerability… | Details |
| CVE-2020-36924 | 2026-01-06 15:52:28 | 2026-01-26 15:55:01 | VulnCheck | Sony BRAVIA Digital Signage 1.7.8 contains a remote… | Details |
| CVE-2025-70457 | 2026-01-23 00:00:00 | 2026-01-26 15:44:45 | mitre | A Remote Code Execution (RCE) vulnerability exists in… | Details |
| CVE-2025-70458 | 2026-01-23 00:00:00 | 2026-01-26 15:40:53 | mitre | A DOM-based Cross-Site Scripting (XSS) vulnerability exists in… | Details |
| CVE-2025-59090 | 2026-01-26 10:03:21 | 2026-01-26 15:38:17 | SEC-VLab | On the exos 9300 server, a SOAP API… | Details |
| CVE-2025-59107 | 2026-01-26 10:06:22 | 2026-01-26 15:38:11 | SEC-VLab | Dormakaba provides the software FWServiceTool to update the… | Details |
| CVE-2025-59108 | 2026-01-26 10:06:31 | 2026-01-26 15:38:06 | SEC-VLab | By default, the password for the Access Manager's… | Details |
| CVE-2025-59102 | 2026-01-26 10:05:31 | 2026-01-26 15:15:13 | SEC-VLab | The web server of the Access Manager offers… | Details |
| CVE-2025-13952 | 2026-01-24 02:26:49 | 2026-01-26 15:13:20 | imaginationtech | A web page that contains unusual GPU shader… | Details |
| CVE-2025-59103 | 2026-01-26 10:05:45 | 2026-01-26 15:13:19 | SEC-VLab | The Access Manager 92xx in hardware revision K7… | Details |
| CVE-2025-59104 | 2026-01-26 10:05:54 | 2026-01-26 15:12:47 | SEC-VLab | With physical access to the device and enough… | Details |
| CVE-2025-14973 | 2026-01-26 06:00:13 | 2026-01-26 15:07:18 | WPScan | The Recipe Card Blocks Lite WordPress plugin before… | Details |
| CVE-2026-24420 | 2026-01-24 01:57:28 | 2026-01-26 15:01:08 | GitHub_M | phpMyFAQ is an open source FAQ web application.… | Details |
| CVE-2026-24422 | 2026-01-24 02:02:30 | 2026-01-26 14:58:18 | GitHub_M | phpMyFAQ is an open source FAQ web application.… | Details |
| CVE-2025-59105 | 2026-01-26 10:06:02 | 2026-01-26 14:52:15 | SEC-VLab | With physical access to the device and enough… | Details |
| CVE-2026-1427 | 2026-01-26 08:06:49 | 2026-01-26 14:07:52 | twcert | Single Sign-On Portal System developed by WellChoose has… | Details |
| CVE-2026-1428 | 2026-01-26 08:14:58 | 2026-01-26 14:04:40 | twcert | Single Sign-On Portal System developed by WellChoose has… | Details |
| CVE-2026-1429 | 2026-01-26 08:20:46 | 2026-01-26 14:01:19 | twcert | Single Sign-On Portal System developed by WellChoose has… | Details |
| CVE-2025-41082 | 2026-01-26 09:24:20 | 2026-01-26 13:55:47 | INCIBE | Illegal HTTP request traffic vulnerability (CL.0) in Altitude… | Details |
| CVE-2025-41083 | 2026-01-26 09:42:42 | 2026-01-26 13:49:41 | INCIBE | Vulnerability in Altitude Authentication Service and Altitude Communication… | Details |
| CVE-2020-36935 | 2026-01-25 14:01:02 | 2026-01-26 13:48:39 | VulnCheck | KMSpico 17.1.0.0 contains an unquoted service path vulnerability… | Details |
| CVE-2020-36934 | 2026-01-25 14:00:55 | 2026-01-26 13:48:07 | VulnCheck | Deep Instinct Windows Agent 1.2.24.0 contains an unquoted… | Details |
| CVE-2020-36933 | 2026-01-25 14:00:46 | 2026-01-26 13:35:13 | VulnCheck | HTC IPTInstaller 4.0.9 contains an unquoted service path… | Details |
| CVE-2020-36931 | 2026-01-25 12:24:00 | 2026-01-26 13:33:08 | VulnCheck | Click2Magic 1.1.5 contains a stored cross-site scripting vulnerability… | Details |
| CVE-2025-52694 | 2026-01-12 02:27:16 | 2026-01-26 02:50:33 | CSA | Successful exploitation of the SQL injection vulnerability could… | Details |
| CVE-2025-36556 | 2026-01-20 14:49:35 | 2026-01-23 21:55:28 | talos | A reflected cross-site scripting (xss) vulnerability exists in… | Details |
| CVE-2025-58087 | 2026-01-20 14:49:36 | 2026-01-23 21:55:22 | talos | Multiple reflected cross-site scripting (xss) vulnerabilities exist in… | Details |
| CVE-2026-21985 | 2026-01-20 21:56:40 | 2026-01-23 21:55:15 | oracle | Vulnerability in the Oracle VM VirtualBox product of… | Details |
| CVE-2026-21986 | 2026-01-20 21:56:40 | 2026-01-23 21:55:06 | oracle | Vulnerability in the Oracle VM VirtualBox product of… | Details |
| CVE-2026-0933 | 2026-01-20 22:58:05 | 2026-01-23 21:54:58 | cloudflare | SummaryA command injection vulnerability (CWE-78) has been found… | Details |
| CVE-2026-20800 | 2026-01-22 22:01:50 | 2026-01-23 21:54:29 | Gitea | Gitea's notification API does not re-validate repository access… | Details |
| CVE-2026-20883 | 2026-01-22 22:01:50 | 2026-01-23 21:54:21 | Gitea | Gitea's stopwatch API does not re-validate repository access… | Details |
| CVE-2026-20888 | 2026-01-22 22:01:51 | 2026-01-23 21:54:14 | Gitea | Gitea does not properly verify authorization when canceling… | Details |
| CVE-2026-20904 | 2026-01-22 22:01:51 | 2026-01-23 21:53:53 | Gitea | Gitea does not properly validate ownership when toggling… | Details |
| CVE-2025-69907 | 2026-01-23 00:00:00 | 2026-01-23 21:53:33 | mitre | An unauthenticated information disclosure vulnerability exists in Newgen… | Details |
| CVE-2021-47896 | 2026-01-23 16:47:40 | 2026-01-23 21:49:36 | VulnCheck | PDF Complete Corporate Edition 4.1.45 contains an unquoted… | Details |
| CVE-2021-47899 | 2026-01-23 16:47:42 | 2026-01-23 21:47:48 | VulnCheck | YetiShare File Hosting Script 5.1.0 contains a server-side… | Details |
| CVE-2021-47905 | 2026-01-23 16:47:44 | 2026-01-23 21:47:23 | VulnCheck | MyBB Delete Account Plugin 1.4 contains a cross-site… | Details |
| CVE-2026-1386 | 2026-01-23 20:25:02 | 2026-01-23 20:38:50 | AMZN | A UNIX symbolic link following issue in the… | Details |
| CVE-2025-9289 | 2026-01-22 21:48:35 | 2026-01-23 20:16:00 | TPLink | A Cross-Site Scripting (XSS) vulnerability was identified in… | Details |
| CVE-2025-67652 | 2026-01-22 22:17:53 | 2026-01-23 20:15:30 | icscert | An attacker with access to the project file… | Details |
| CVE-2026-24117 | 2026-01-22 22:05:08 | 2026-01-23 20:14:54 | GitHub_M | Rekor is a software supply chain transparency log.… | Details |
| CVE-2026-24058 | 2026-01-22 22:01:22 | 2026-01-23 20:14:08 | GitHub_M | Soft Serve is a self-hostable Git server for… | Details |
| CVE-2026-23988 | 2026-01-22 21:52:26 | 2026-01-23 20:13:25 | GitHub_M | Rufus is a utility that helps format and… | Details |
| CVE-2025-54816 | 2026-01-22 22:40:55 | 2026-01-23 20:12:02 | icscert | This vulnerability occurs when a WebSocket endpoint does… | Details |
| CVE-2025-53968 | 2026-01-22 22:37:36 | 2026-01-23 20:11:29 | icscert | This vulnerability arises because there are no limitations… | Details |
| CVE-2025-55705 | 2026-01-22 22:32:48 | 2026-01-23 20:10:44 | icscert | This vulnerability occurs when the system permits multiple… | Details |
| CVE-2025-25051 | 2026-01-22 22:21:17 | 2026-01-23 20:10:07 | icscert | An attacker could decrypt sensitive data, impersonate legitimate… | Details |
| CVE-2026-24129 | 2026-01-22 22:41:28 | 2026-01-23 20:05:30 | GitHub_M | Runtipi is a Docker-based, personal homeserver orchestrator that… | Details |
| CVE-2025-9290 | 2026-01-22 23:14:45 | 2026-01-23 20:04:29 | TPLink | An authentication weakness was identified in Omada Controllers,… | Details |
| CVE-2026-24130 | 2026-01-22 22:53:34 | 2026-01-23 20:03:49 | GitHub_M | Moonraker is a Python web server providing API… | Details |
| CVE-2026-24132 | 2026-01-22 23:47:45 | 2026-01-23 20:01:12 | GitHub_M | Orval generates type-safe JS clients (TypeScript) from any… | Details |
| CVE-2025-15063 | 2026-01-23 02:47:32 | 2026-01-23 19:58:46 | zdi | Ollama MCP Server execAsync Command Injection Remote Code… | Details |
| CVE-2026-24138 | 2026-01-23 00:19:33 | 2026-01-23 19:56:37 | GitHub_M | FOG is a free open-source cloning/imaging/rescue suite/inventory management… | Details |
| CVE-2026-24137 | 2026-01-23 00:04:19 | 2026-01-23 19:55:42 | GitHub_M | sigstore framework is a common go library shared… | Details |
| CVE-2026-0781 | 2026-01-23 02:58:44 | 2026-01-23 19:52:17 | zdi | ALGO 8180 IP Audio Alerter Web UI Command… | Details |
| CVE-2026-0780 | 2026-01-23 02:57:14 | 2026-01-23 19:51:50 | zdi | ALGO 8180 IP Audio Alerter Web UI Command… | Details |
| CVE-2026-0779 | 2026-01-23 02:57:09 | 2026-01-23 19:51:21 | zdi | ALGO 8180 IP Audio Alerter Ping Command Injection… | Details |
| CVE-2025-66428 | 2026-01-22 00:00:00 | 2026-01-23 19:50:38 | mitre | An issue with WordPress directory names in WebPros… | Details |
| CVE-2026-0796 | 2026-01-23 02:55:04 | 2026-01-23 19:50:16 | zdi | ALGO 8180 IP Audio Alerter Web UI Command… | Details |
| CVE-2026-0786 | 2026-01-23 03:01:05 | 2026-01-23 19:46:44 | zdi | ALGO 8180 IP Audio Alerter SCI Command Injection… | Details |
| CVE-2025-70983 | 2026-01-23 00:00:00 | 2026-01-23 19:46:37 | mitre | Incorrect access control in the authRoutes function of… | Details |
| CVE-2026-0785 | 2026-01-23 03:00:59 | 2026-01-23 19:46:05 | zdi | ALGO 8180 IP Audio Alerter API Command Injection… | Details |
| CVE-2026-0784 | 2026-01-23 02:58:57 | 2026-01-23 19:45:28 | zdi | ALGO 8180 IP Audio Alerter Web UI Command… | Details |
| CVE-2026-0783 | 2026-01-23 02:58:53 | 2026-01-23 19:44:17 | zdi | ALGO 8180 IP Audio Alerter Web UI Command… | Details |
| CVE-2026-0782 | 2026-01-23 02:58:49 | 2026-01-23 19:43:35 | zdi | ALGO 8180 IP Audio Alerter Web UI Command… | Details |
| CVE-2026-0787 | 2026-01-23 03:01:09 | 2026-01-23 19:42:31 | zdi | ALGO 8180 IP Audio Alerter SAC Command Injection… | Details |
| CVE-2026-0788 | 2026-01-23 03:01:12 | 2026-01-23 19:41:10 | zdi | ALGO 8180 IP Audio Alerter Web UI Persistent… | Details |
| CVE-2025-70985 | 2026-01-23 00:00:00 | 2026-01-23 19:39:50 | mitre | Incorrect access control in the update function of… | Details |
| CVE-2026-0789 | 2026-01-23 03:01:16 | 2026-01-23 19:39:25 | zdi | ALGO 8180 IP Audio Alerter Web UI Inclusion… | Details |
| CVE-2026-0790 | 2026-01-23 03:01:20 | 2026-01-23 19:38:42 | zdi | ALGO 8180 IP Audio Alerter Web UI Direct… | Details |
| CVE-2026-0791 | 2026-01-23 03:01:24 | 2026-01-23 19:37:01 | zdi | ALGO 8180 IP Audio Alerter SIP INVITE Replaces… | Details |
| CVE-2025-15061 | 2026-01-23 03:20:19 | 2026-01-23 19:35:55 | zdi | Framelink Figma MCP Server fetchWithRetry Command Injection Remote… | Details |
| CVE-2026-0755 | 2026-01-23 03:26:16 | 2026-01-23 19:35:07 | zdi | gemini-mcp-tool execAsync Command Injection Remote Code Execution Vulnerability.… | Details |
| CVE-2026-0756 | 2026-01-23 03:26:22 | 2026-01-23 19:33:45 | zdi | github-kanban-mcp-server execAsync Command Injection Remote Code Execution Vulnerability.… | Details |
| CVE-2026-0757 | 2026-01-23 03:27:58 | 2026-01-23 19:32:37 | zdi | MCP Manager for Claude Desktop execute-command Command Injection… | Details |
| CVE-2026-0758 | 2026-01-23 03:28:03 | 2026-01-23 19:31:34 | zdi | mcp-server-siri-shortcuts shortcutName Command Injection Privilege Escalation Vulnerability. This… | Details |
| CVE-2018-25116 | 2026-01-23 16:47:32 | 2026-01-23 19:31:27 | VulnCheck | MyBB Thread Redirect Plugin 0.2.1 contains a cross-site… | Details |
| CVE-2025-70986 | 2026-01-23 00:00:00 | 2026-01-23 19:30:44 | mitre | Incorrect access control in the selectDept function of… | Details |
| CVE-2026-0759 | 2026-01-23 03:28:08 | 2026-01-23 19:26:48 | zdi | Katana Network Development Starter Kit executeCommand Command Injection… | Details |
| CVE-2018-25132 | 2026-01-23 16:47:33 | 2026-01-23 19:25:48 | VulnCheck | MyBB Trending Widget Plugin 1.2 contains a cross-site… | Details |
| CVE-2026-0760 | 2026-01-23 03:28:12 | 2026-01-23 19:25:33 | zdi | Foundation Agents MetaGPT deserialize_message Deserialization of Untrusted Data… | Details |
| CVE-2021-47881 | 2026-01-23 16:47:34 | 2026-01-23 19:25:15 | VulnCheck | dataSIMS Avionics ARINC 664-1 version 4.5.3 contains a… | Details |
| CVE-2025-66719 | 2026-01-23 00:00:00 | 2026-01-23 19:24:55 | mitre | An issue was discovered in Free5gc NRF 1.4.0.… | Details |
| CVE-2026-0761 | 2026-01-23 03:28:16 | 2026-01-23 19:24:12 | zdi | Foundation Agents MetaGPT actionoutput_str_to_mapping Code Injection Remote Code… | Details |
| CVE-2026-0762 | 2026-01-23 03:28:19 | 2026-01-23 19:23:27 | zdi | GPT Academic stream_daas Deserialization of Untrusted Data Remote… | Details |
| CVE-2026-0763 | 2026-01-23 03:28:23 | 2026-01-23 19:21:28 | zdi | GPT Academic run_in_subprocess_wrapper_func Deserialization of Untrusted Data Remote… | Details |
| CVE-2026-0764 | 2026-01-23 03:28:27 | 2026-01-23 19:20:21 | zdi | GPT Academic upload Deserialization of Untrusted Data Remote… | Details |
| CVE-2021-47890 | 2026-01-23 16:47:36 | 2026-01-23 19:17:52 | VulnCheck | LogonExpert 8.1 contains an unquoted service path vulnerability… | Details |
| CVE-2021-47893 | 2026-01-23 16:47:37 | 2026-01-23 19:15:43 | VulnCheck | AgataSoft PingMaster Pro 2.1 contains a denial of… | Details |
| CVE-2026-0778 | 2026-01-23 03:29:50 | 2026-01-23 19:15:17 | zdi | Enel X JuiceBox 40 Telnet Service Missing Authentication… | Details |
| CVE-2025-15348 | 2026-01-23 03:30:47 | 2026-01-23 19:14:27 | zdi | Anritsu ShockLine CHX File Parsing Deserialization of Untrusted… | Details |
| CVE-2025-15349 | 2026-01-23 03:31:19 | 2026-01-23 19:06:22 | zdi | Anritsu ShockLine SCPI Race Condition Remote Code Execution… | Details |
| CVE-2025-15350 | 2026-01-23 03:31:26 | 2026-01-23 19:05:28 | zdi | Anritsu VectorStar CHX File Parsing Deserialization of Untrusted… | Details |
| CVE-2025-15351 | 2026-01-23 03:31:31 | 2026-01-23 19:04:54 | zdi | Anritsu VectorStar CHX File Parsing Deserialization of Untrusted… | Details |
| CVE-2026-0710 | 2026-01-23 03:47:44 | 2026-01-23 19:04:04 | fedora | A flaw was found in SIPp. A remote… | Details |
| CVE-2025-66720 | 2026-01-23 00:00:00 | 2026-01-23 18:56:02 | mitre | Null pointer dereference in free5gc pcf 1.4.0 in… | Details |
| CVE-2025-3839 | 2026-01-23 03:55:58 | 2026-01-23 18:54:44 | fedora | A flaw was found in Epiphany, a tool… | Details |
| CVE-2025-67124 | 2026-01-23 00:00:00 | 2026-01-23 18:51:54 | mitre | A TOCTOU and symlink race in svenstaro/miniserve 0.32.0… | Details |
| CVE-2025-67004 | 2026-01-09 00:00:00 | 2026-01-23 18:51:03 | mitre | ** Disputed ** An Information Disclosure vulnerability in… | Details |
| CVE-2025-67229 | 2026-01-23 00:00:00 | 2026-01-23 18:44:31 | mitre | An improper certificate validation vulnerability exists in ToDesktop… | Details |
| CVE-2025-67231 | 2026-01-23 00:00:00 | 2026-01-23 18:32:42 | mitre | A reflected cross-site scripting (XSS) vulnerability in ToDesktop… | Details |
| CVE-2022-25369 | 2026-01-23 00:00:00 | 2026-01-23 18:28:45 | mitre | An issue was discovered in Dynamicweb before 9.12.8.… | Details |
| CVE-2026-22241 | 2026-01-08 15:07:02 | 2026-01-23 18:18:44 | GitHub_M | The Open eClass platform (formerly known as GUnet… | Details |
| CVE-2025-67824 | 2026-01-20 00:00:00 | 2026-01-23 18:17:32 | mitre | The WorklogPRO - Jira Timesheets plugin in the… | Details |
| CVE-2026-0863 | 2026-01-18 15:37:07 | 2026-01-23 17:58:14 | JFROG | Using string formatting and exception handling, an attacker… | Details |
| CVE-2026-0798 | 2026-01-22 22:01:49 | 2026-01-23 16:49:04 | Gitea | Gitea may send release notification emails for private… | Details |
| CVE-2025-67230 | 2026-01-23 00:00:00 | 2026-01-23 16:44:02 | mitre | Improper permissions in the handler for the Custom… | Details |
| CVE-2025-70899 | 2026-01-22 00:00:00 | 2026-01-23 16:40:22 | mitre | PHPgurukul Online Course Registration v3.1 lacks Cross-Site Request… | Details |
| CVE-2026-0792 | 2026-01-23 03:01:28 | 2026-01-23 16:37:17 | zdi | ALGO 8180 IP Audio Alerter SIP INVITE Alert-Info… | Details |
| CVE-2026-0793 | 2026-01-23 03:01:32 | 2026-01-23 16:36:50 | zdi | ALGO 8180 IP Audio Alerter InformaCast Heap-based Buffer… | Details |
| CVE-2026-0794 | 2026-01-23 03:01:36 | 2026-01-23 16:36:15 | zdi | ALGO 8180 IP Audio Alerter SIP Use-After-Free Remote… | Details |
| CVE-2026-0795 | 2026-01-23 03:01:40 | 2026-01-23 16:35:41 | zdi | ALGO 8180 IP Audio Alerter Web UI Command… | Details |
| CVE-2025-15062 | 2026-01-23 03:19:43 | 2026-01-23 16:35:13 | zdi | Trimble SketchUp SKP File Parsing Use-After-Free Remote Code… | Details |
| CVE-2026-0767 | 2026-01-23 03:28:39 | 2026-01-23 16:33:51 | zdi | Open WebUI Cleartext Transmission of Credentials Information Disclosure… | Details |
| CVE-2026-0773 | 2026-01-23 03:29:05 | 2026-01-23 16:26:49 | zdi | Upsonic Cloudpickle Deserialization of Untrusted Data Remote Code… | Details |
| CVE-2026-0774 | 2026-01-23 03:29:09 | 2026-01-23 16:21:59 | zdi | WatchYourLAN Configuration Page Argument Injection Remote Code Execution… | Details |
| CVE-2025-67125 | 2026-01-23 00:00:00 | 2026-01-23 16:14:32 | mitre | A signed integer overflow in docopt.cpp v0.6.2 (LeafPattern::match… | Details |
| CVE-2025-69908 | 2026-01-23 00:00:00 | 2026-01-23 15:43:24 | mitre | An unauthenticated information disclosure vulnerability in Newgen OmniApp… | Details |
| CVE-2026-1363 | 2026-01-23 08:37:32 | 2026-01-23 15:27:56 | twcert | IAQS and I6 developed by JNC has a… | Details |
| CVE-2026-1364 | 2026-01-23 08:41:44 | 2026-01-23 15:22:25 | twcert | IAQS and I6 developed by JNC has a… | Details |
| CVE-2026-22274 | 2026-01-23 09:25:04 | 2026-01-23 15:16:16 | dell | Dell ECS, versions 3.8.1.0 through 3.8.1.7, and Dell… | Details |
| CVE-2026-22275 | 2026-01-23 09:34:34 | 2026-01-23 15:15:44 | dell | Dell ECS, versions 3.8.1.0 through 3.8.1.7, and Dell… | Details |
| CVE-2026-22276 | 2026-01-23 09:42:46 | 2026-01-23 15:14:02 | dell | Dell ECS, versions 3.8.1.0 through 3.8.1.7, and Dell… | Details |
| CVE-2025-46699 | 2026-01-23 09:53:55 | 2026-01-23 15:12:19 | dell | Dell Data Protection Advisor, versions prior to 19.12,… | Details |
| CVE-2026-21883 | 2026-01-08 01:20:53 | 2026-01-23 15:09:19 | GitHub_M | Bokeh is an interactive visualization library written in… | Details |
| CVE-2026-20613 | 2026-01-22 23:58:20 | 2026-01-23 14:56:14 | apple | The ArchiveReader.extractContents() function used by cctl image load… | Details |
| CVE-2026-23831 | 2026-01-22 21:26:22 | 2026-01-23 14:32:43 | GitHub_M | Rekor is a software supply chain transparency log.… | Details |
| CVE-2021-47802 | 2026-01-21 17:27:33 | 2026-01-22 22:10:45 | VulnCheck | Tenda D151 and D301 routers contain an unauthenticated… | Details |
| CVE-2021-47862 | 2026-01-21 17:27:42 | 2026-01-22 22:03:06 | VulnCheck | Hi-Rez Studios 5.1.6.3 contains an unquoted service path… | Details |
| CVE-2025-68138 | 2026-01-21 19:30:49 | 2026-01-22 21:56:29 | GitHub_M | EVerest is an EV charging software stack, and… | Details |
| CVE-2026-23737 | 2026-01-21 23:09:34 | 2026-01-22 21:55:09 | GitHub_M | seroval facilitates JS value stringification, including complex structures… | Details |
| CVE-2026-23873 | 2026-01-21 23:26:21 | 2026-01-22 21:54:23 | GitHub_M | hustoj is an open source online judge based… | Details |
| CVE-2026-23887 | 2026-01-21 23:39:05 | 2026-01-22 21:52:37 | GitHub_M | Group-Office is an enterprise customer relationship management and… | Details |
| CVE-2026-23893 | 2026-01-22 00:01:43 | 2026-01-22 21:52:09 | GitHub_M | openCryptoki is a PKCS#11 library and provides tooling… | Details |
| CVE-2026-23946 | 2026-01-22 00:09:24 | 2026-01-22 21:50:51 | GitHub_M | Tendenci is an open source content management system… | Details |
| CVE-2026-23951 | 2026-01-22 00:17:10 | 2026-01-22 21:44:27 | GitHub_M | SumatraPDF is a multi-format reader for Windows. All… | Details |
| CVE-2026-23952 | 2026-01-22 00:32:52 | 2026-01-22 21:43:42 | GitHub_M | ImageMagick is free and open-source software used for… | Details |
| CVE-2026-23961 | 2026-01-22 01:47:36 | 2026-01-22 21:38:52 | GitHub_M | Mastodon is a free, open-source social network server… | Details |
| CVE-2026-23962 | 2026-01-22 01:51:37 | 2026-01-22 21:35:41 | GitHub_M | Mastodon is a free, open-source social network server… | Details |
| CVE-2025-22234 | 2026-01-22 21:02:23 | 2026-01-22 21:27:13 | vmware | The fix applied in CVE-2025-22228 inadvertently broke the… | Details |
| CVE-2025-67683 | 2026-01-22 11:57:24 | 2026-01-22 21:17:30 | CERT-PL | Quick.Cart is vulnerable to reflected XSS via the… | Details |
| CVE-2021-47760 | 2026-01-15 15:52:06 | 2026-01-22 20:42:51 | VulnCheck | This CVE ID has been rejected or withdrawn… | Details |
| CVE-2025-67684 | 2026-01-22 11:57:28 | 2026-01-22 20:36:55 | CERT-PL | Quick.Cart is vulnerable to Local File Inclusion and… | Details |
| CVE-2025-14295 | 2026-01-22 12:52:14 | 2026-01-22 20:22:40 | Carrier | Storing Passwords in a Recoverable Format vulnerability in… | Details |
| CVE-2025-12738 | 2026-01-22 13:29:11 | 2026-01-22 20:19:52 | Neo4j | Neo4j Enterprise edition versions prior to 2025.11.2 and… | Details |
| CVE-2026-22036 | 2026-01-14 19:07:13 | 2026-01-22 20:17:20 | GitHub_M | Undici is an HTTP/1.1 client for Node.js. Prior… | Details |
| CVE-2025-12781 | 2026-01-21 19:34:47 | 2026-01-22 20:12:56 | PSF | When passing data to the b64decode(), standard_b64decode(), and… | Details |
| CVE-2026-22281 | 2026-01-22 19:11:28 | 2026-01-22 19:35:02 | dell | Dell PowerScale OneFS, versions 9.5.0.0 through 9.5.1.5, versions… | Details |
| CVE-2025-68609 | 2026-01-22 19:06:05 | 2026-01-22 19:33:36 | Palantir | A vulnerability in Palantir's Aries service allowed unauthenticated… | Details |
| CVE-2026-22280 | 2026-01-22 19:01:11 | 2026-01-22 19:23:20 | dell | Dell PowerScale OneFS, versions 9.5.0.0 through 9.5.1.5, versions… | Details |
| CVE-2025-15281 | 2026-01-20 13:22:46 | 2026-01-22 19:21:38 | glibc | Calling wordexp with WRDE_REUSE in conjunction with WRDE_APPEND… | Details |
| CVE-2025-27378 | 2026-01-22 01:06:19 | 2026-01-22 19:20:07 | Altium | AES contains a SQL injection vulnerability due to… | Details |
| CVE-2025-27379 | 2026-01-22 01:17:54 | 2026-01-22 19:19:24 | Altium | A stored cross-site scripting (XSS) vulnerability in the… | Details |
| CVE-2026-22279 | 2026-01-22 18:39:28 | 2026-01-22 18:59:26 | dell | Dell PowerScale OneFS, versions prior 9.13.0.0, contains an… | Details |
| CVE-2026-23957 | 2026-01-22 01:26:53 | 2026-01-22 18:56:49 | GitHub_M | seroval facilitates JS value stringification, including complex structures… | Details |
| CVE-2025-27380 | 2026-01-22 01:28:24 | 2026-01-22 18:55:23 | Altium | HTML injection in Project Release in Altium Enterprise… | Details |
| CVE-2026-23699 | 2026-01-22 01:41:22 | 2026-01-22 17:39:43 | jpcert | AP180 series with firmware versions prior to AP_RGOS… | Details |
| CVE-2026-23963 | 2026-01-22 01:53:49 | 2026-01-22 17:32:13 | GitHub_M | Mastodon is a free, open-source social network server… | Details |
| CVE-2026-22643 | 2026-01-15 13:13:47 | 2026-01-22 17:06:57 | SICK AG | This CVE ID has been rejected or withdrawn… | Details |
| CVE-2026-22642 | 2026-01-15 13:13:30 | 2026-01-22 17:06:43 | SICK AG | This CVE ID has been rejected or withdrawn… | Details |
| CVE-2026-22641 | 2026-01-15 13:13:11 | 2026-01-22 17:05:50 | SICK AG | This CVE ID has been rejected or withdrawn… | Details |
| CVE-2026-22640 | 2026-01-15 13:12:49 | 2026-01-22 17:05:31 | SICK AG | This CVE ID has been rejected or withdrawn… | Details |
| CVE-2025-67221 | 2026-01-22 00:00:00 | 2026-01-22 17:05:17 | mitre | The orjson.dumps function in orjson thru 3.11.4 does… | Details |
| CVE-2026-22639 | 2026-01-15 13:12:03 | 2026-01-22 17:05:11 | SICK AG | This CVE ID has been rejected or withdrawn… | Details |
| CVE-2026-22638 | 2026-01-15 13:11:21 | 2026-01-22 17:04:22 | SICK AG | This CVE ID has been rejected or withdrawn… | Details |
| CVE-2026-22637 | 2026-01-15 13:10:58 | 2026-01-22 17:03:46 | SICK AG | This CVE ID has been rejected or withdrawn… | Details |
| CVE-2026-0713 | 2026-01-15 13:10:37 | 2026-01-22 17:03:07 | SICK AG | This CVE ID has been rejected or withdrawn… | Details |
| CVE-2026-0712 | 2026-01-15 13:10:14 | 2026-01-22 17:02:26 | SICK AG | This CVE ID has been rejected or withdrawn… | Details |
| CVE-2026-23964 | 2026-01-22 01:55:29 | 2026-01-22 17:02:23 | GitHub_M | Mastodon is a free, open-source social network server… | Details |
| CVE-2025-69828 | 2026-01-22 00:00:00 | 2026-01-22 16:56:49 | mitre | File Upload vulnerability in TMS Global Software TMS… | Details |
| CVE-2021-47867 | 2026-01-21 17:27:45 | 2026-01-22 16:52:40 | VulnCheck | WIN-PACK PRO4.8 contains an unquoted service path vulnerability… | Details |
| CVE-2021-47869 | 2026-01-21 17:27:46 | 2026-01-22 16:52:31 | VulnCheck | Brother BRAdmin Professional 3.75 contains an unquoted service… | Details |
| CVE-2021-47874 | 2026-01-21 17:27:48 | 2026-01-22 16:52:12 | VulnCheck | VFS for Git 1.0.21014.1 contains an unquoted service… | Details |
| CVE-2021-47875 | 2026-01-21 17:27:49 | 2026-01-22 16:52:07 | VulnCheck | GeoGebra CAS Calculator 6.0.631.0 contains a denial of… | Details |
| CVE-2021-47876 | 2026-01-21 17:27:49 | 2026-01-22 16:52:01 | VulnCheck | GeoGebra Classic 5.0.631.0-d contains a denial of service… | Details |
| CVE-2021-47877 | 2026-01-21 17:27:50 | 2026-01-22 16:51:56 | VulnCheck | GeoGebra Graphing Calculator 6.0.631.0 contains a denial of… | Details |
| CVE-2021-47878 | 2026-01-21 17:27:50 | 2026-01-22 16:51:51 | VulnCheck | eBeam Education Suite 2.5.0.9 contains an unquoted service… | Details |
| CVE-2021-47879 | 2026-01-21 17:27:51 | 2026-01-22 16:51:46 | VulnCheck | eBeam Interactive Suite 3.6 contains an unquoted service… | Details |
| CVE-2021-47880 | 2026-01-21 17:27:51 | 2026-01-22 16:51:41 | VulnCheck | Realtek Wireless LAN Utility 700.1631 contains an unquoted… | Details |
| CVE-2021-47886 | 2026-01-21 17:27:53 | 2026-01-22 16:51:25 | VulnCheck | Pingzapper 2.3.1 contains an unquoted service path vulnerability… | Details |
| CVE-2021-47887 | 2026-01-21 17:27:54 | 2026-01-22 16:51:20 | VulnCheck | OKI Print Job Accounting 4.4.10 contains an unquoted… | Details |
| CVE-2025-68139 | 2026-01-21 19:36:36 | 2026-01-22 16:50:50 | GitHub_M | EVerest is an EV charging software stack. In… | Details |
| CVE-2025-68140 | 2026-01-21 19:54:51 | 2026-01-22 16:50:45 | GitHub_M | EVerest is an EV charging software stack. Prior… | Details |
| CVE-2025-68141 | 2026-01-21 19:56:14 | 2026-01-22 16:50:38 | GitHub_M | EVerest is an EV charging software stack. Prior… | Details |
| CVE-2026-22808 | 2026-01-21 21:18:26 | 2026-01-22 16:50:28 | GitHub_M | fleetdm/fleet is open source device management software. Prior… | Details |
| CVE-2026-22849 | 2026-01-21 21:31:14 | 2026-01-22 16:50:18 | GitHub_M | Saleor is an e-commerce platform. Starting in version… | Details |
| CVE-2026-23499 | 2026-01-21 21:36:19 | 2026-01-22 16:50:13 | GitHub_M | Saleor is an e-commerce platform. Starting in version… | Details |
| CVE-2026-23517 | 2026-01-21 21:45:34 | 2026-01-22 16:49:56 | GitHub_M | Fleet is open source device management software. A… | Details |
| CVE-2026-23518 | 2026-01-21 21:50:47 | 2026-01-22 16:49:50 | GitHub_M | Fleet is open source device management software. In… | Details |
| CVE-2026-23524 | 2026-01-21 22:07:55 | 2026-01-22 16:49:37 | GitHub_M | Laravel Reverb provides a real-time WebSocket communication backend… | Details |
| CVE-2026-23968 | 2026-01-21 22:13:25 | 2026-01-22 16:49:32 | GitHub_M | Copier is a library and CLI app for… | Details |
| CVE-2026-23986 | 2026-01-21 22:20:37 | 2026-01-22 16:49:26 | GitHub_M | Copier is a library and CLI app for… | Details |
| CVE-2026-23990 | 2026-01-21 22:25:57 | 2026-01-22 16:49:21 | GitHub_M | The Flux Operator is a Kubernetes CRD controller… | Details |
| CVE-2026-23996 | 2026-01-21 22:29:24 | 2026-01-22 16:49:16 | GitHub_M | FastAPI Api Key provides a backend-agnostic library that… | Details |
| CVE-2026-24047 | 2026-01-21 22:45:06 | 2026-01-22 16:49:06 | GitHub_M | Backstage is an open framework for building developer… | Details |
| CVE-2026-23630 | 2026-01-21 22:51:27 | 2026-01-22 16:49:01 | GitHub_M | Docmost is open-source collaborative wiki and documentation software.… | Details |
| CVE-2026-24048 | 2026-01-21 22:51:44 | 2026-01-22 16:48:55 | GitHub_M | Backstage is an open framework for building developer… | Details |
| CVE-2026-23959 | 2026-01-22 01:57:58 | 2026-01-22 16:28:21 | GitHub_M | CoreShop is a Pimcore enhanced eCommerce solution. An… | Details |
| CVE-2025-65098 | 2026-01-22 14:59:20 | 2026-01-22 16:25:45 | GitHub_M | Typebot is an open-source chatbot builder. In versions… | Details |
| CVE-2025-64097 | 2026-01-22 14:57:00 | 2026-01-22 16:16:06 | GitHub_M | NervesHub is a web service that allows users… | Details |
| CVE-2025-69821 | 2026-01-22 00:00:00 | 2026-01-22 16:12:50 | mitre | An issue in Beat XP VEGA Smartwatch (Firmware… | Details |
| CVE-2025-69822 | 2026-01-22 00:00:00 | 2026-01-22 16:09:34 | mitre | An issue in Atomberg Atomberg Erica Smart Fan… | Details |
| CVE-2026-23967 | 2026-01-22 01:59:30 | 2026-01-22 16:03:58 | GitHub_M | sm-crypto provides JavaScript implementations of the Chinese cryptographic… | Details |
| CVE-2025-69764 | 2026-01-22 00:00:00 | 2026-01-22 16:00:37 | mitre | Tenda AX3 firmware v16.03.12.11 contains a stack-based buffer… | Details |
| CVE-2026-24009 | 2026-01-22 15:04:52 | 2026-01-22 15:59:19 | GitHub_M | Docling Core (or docling-core) is a library that… | Details |
| CVE-2026-23965 | 2026-01-22 02:05:43 | 2026-01-22 15:58:10 | GitHub_M | sm-crypto provides JavaScript implementations of the Chinese cryptographic… | Details |
| CVE-2025-69763 | 2026-01-21 00:00:00 | 2026-01-22 15:55:24 | mitre | Tenda AX3 firmware v16.03.12.11 contains a stack overflow… | Details |
| CVE-2021-47849 | 2026-01-21 17:27:35 | 2026-01-22 15:51:58 | VulnCheck | Mini Mouse 9.3.0 contains a path traversal vulnerability… | Details |
| CVE-2025-69762 | 2026-01-21 00:00:00 | 2026-01-22 15:50:36 | mitre | Tenda AX3 firmware v16.03.12.11 contains a stack overflow… | Details |
| CVE-2026-23966 | 2026-01-22 02:06:54 | 2026-01-22 15:49:07 | GitHub_M | sm-crypto provides JavaScript implementations of the Chinese cryptographic… | Details |
| CVE-2021-47850 | 2026-01-21 17:27:36 | 2026-01-22 15:46:05 | VulnCheck | Mini Mouse 9.2.0 contains a path traversal vulnerability… | Details |
| CVE-2025-32056 | 2026-01-22 15:21:21 | 2026-01-22 15:44:40 | ASRG | The anti-theft protection mechanism can be bypassed by… | Details |
| CVE-2025-32057 | 2026-01-22 15:22:21 | 2026-01-22 15:43:11 | ASRG | The Infotainment ECU manufactured by Bosch which is… | Details |
| CVE-2021-47851 | 2026-01-21 17:27:36 | 2026-01-22 15:42:13 | VulnCheck | Mini Mouse 9.2.0 contains a remote code execution… | Details |
| CVE-2025-70644 | 2026-01-21 00:00:00 | 2026-01-22 15:40:00 | mitre | Tenda AX-1806 v1.0.0.1 was discovered to contain a… | Details |
| CVE-2025-70646 | 2026-01-21 00:00:00 | 2026-01-22 15:36:16 | mitre | Tenda AX1803 v1.0.0.1 was discovered to contain a… | Details |
| CVE-2026-23991 | 2026-01-22 02:16:37 | 2026-01-22 15:35:31 | GitHub_M | go-tuf is a Go implementation of The Update… | Details |
| CVE-2026-1102 | 2026-01-22 13:33:53 | 2026-01-22 15:29:45 | GitLab | GitLab has remediated an issue in GitLab CE/EE… | Details |
| CVE-2025-13927 | 2026-01-22 13:34:13 | 2026-01-22 15:27:56 | GitLab | GitLab has remediated an issue in GitLab CE/EE… | Details |
| CVE-2025-13928 | 2026-01-22 13:34:18 | 2026-01-22 15:26:44 | GitLab | GitLab has remediated an issue in GitLab CE/EE… | Details |
| CVE-2026-23992 | 2026-01-22 02:20:06 | 2026-01-22 15:21:21 | GitHub_M | go-tuf is a Go implementation of The Update… | Details |
| CVE-2021-47852 | 2026-01-21 17:27:37 | 2026-01-22 15:19:21 | VulnCheck | Rockstar Games Launcher 1.0.37.349 contains a privilege escalation… | Details |
| CVE-2026-24332 | 2026-01-22 08:10:44 | 2026-01-22 15:11:05 | mitre | Discord through 2026-01-16 allows gathering information about whether… | Details |
| CVE-2025-15523 | 2026-01-22 14:45:26 | 2026-01-22 15:05:37 | CERT-PL | MacOS version of Inkscape bundles a Python interpreter… | Details |
| CVE-2026-1330 | 2026-01-22 08:29:25 | 2026-01-22 15:04:55 | twcert | MeetingHub developed by HAMASTAR Technology has an Arbitrary… | Details |
| CVE-2026-1331 | 2026-01-22 08:57:22 | 2026-01-22 15:01:37 | twcert | MeetingHub developed by HAMASTAR Technology has an Arbitrary… | Details |
| CVE-2025-69766 | 2026-01-21 00:00:00 | 2026-01-22 14:59:23 | mitre | Tenda AX3 firmware v16.03.12.11 contains a stack-based buffer… | Details |
| CVE-2025-70648 | 2026-01-21 00:00:00 | 2026-01-22 14:48:54 | mitre | Tenda AX1803 v1.0.0.1 was discovered to contain a… | Details |
| CVE-2026-23736 | 2026-01-21 23:01:10 | 2026-01-22 14:45:53 | GitHub_M | seroval facilitates JS value stringification, including complex structures… | Details |
| CVE-2025-66959 | 2026-01-21 00:00:00 | 2026-01-22 14:41:22 | mitre | An issue in ollama v.0.12.10 allows a remote… | Details |
| CVE-2025-27377 | 2026-01-22 00:16:04 | 2026-01-22 14:41:16 | Altium | Altium Designer version 24.9.0 does not validate self-signed… | Details |
| CVE-2025-66960 | 2026-01-21 00:00:00 | 2026-01-22 14:37:01 | mitre | An issue in ollama v.0.12.10 allows a remote… | Details |
| CVE-2026-1332 | 2026-01-22 09:18:27 | 2026-01-22 14:18:47 | twcert | MeetingHub developed by HAMASTAR Technology has a Missing… | Details |
| CVE-2026-1225 | 2026-01-22 09:24:14 | 2026-01-22 14:14:17 | NCSC.ch | ACE vulnerability in configuration file processing by… | Details |
| CVE-2025-13335 | 2026-01-22 10:04:27 | 2026-01-22 14:12:36 | GitLab | GitLab has remediated an issue in GitLab CE/EE… | Details |
| CVE-2026-24002 | 2026-01-22 02:26:28 | 2026-01-22 12:54:32 | GitHub_M | Grist is spreadsheet software using Python as its… | Details |
| CVE-2026-24006 | 2026-01-22 02:32:31 | 2026-01-22 12:50:51 | GitHub_M | Seroval facilitates JS value stringification, including complex structures… | Details |
| CVE-2026-24010 | 2026-01-22 02:37:19 | 2026-01-22 12:48:02 | GitHub_M | Horilla is a free and open source Human… | Details |
| CVE-2026-24034 | 2026-01-22 02:41:37 | 2026-01-22 12:44:21 | GitHub_M | Horilla is a free and open source Human… | Details |
| CVE-2026-24035 | 2026-01-22 02:43:10 | 2026-01-22 12:41:56 | GitHub_M | Horilla is a free and open source Human… | Details |
| CVE-2026-24055 | 2026-01-22 03:07:03 | 2026-01-22 12:40:42 | GitHub_M | Langfuse is an open source large language model… | Details |
| CVE-2026-24036 | 2026-01-22 03:21:32 | 2026-01-22 12:38:10 | GitHub_M | Horilla is a free and open source Human… | Details |
| CVE-2026-24037 | 2026-01-22 03:31:37 | 2026-01-22 12:36:02 | GitHub_M | Horilla is a free and open source Human… | Details |
| CVE-2026-24038 | 2026-01-22 03:39:06 | 2026-01-22 12:33:39 | GitHub_M | Horilla is a free and open source Human… | Details |
| CVE-2026-24039 | 2026-01-22 03:43:41 | 2026-01-22 12:30:11 | GitHub_M | Horilla is a free and open source Human… | Details |
| CVE-2026-24042 | 2026-01-22 03:52:54 | 2026-01-22 12:28:28 | GitHub_M | Appsmith is a platform to build admin panels,… | Details |
| CVE-2025-71176 | 2026-01-22 04:59:17 | 2026-01-22 12:26:39 | mitre | pytest through 9.0.2 on UNIX relies on directories… | Details |
| CVE-2026-21427 | 2026-01-08 04:12:21 | 2026-01-22 07:03:11 | jpcert | The installers for multiple products provided by PIONEER… | Details |
| CVE-2025-63644 | 2026-01-14 00:00:00 | 2026-01-22 03:02:07 | mitre | A stored cross-site scripting (XSS) vulnerability exists in… | Details |
| CVE-2025-67084 | 2026-01-15 00:00:00 | 2026-01-22 02:57:13 | mitre | File upload vulnerability in InvoicePlane through 1.6.3 allows… | Details |
| CVE-2025-12548 | 2026-01-13 15:35:01 | 2026-01-21 22:19:04 | redhat | A flaw was found in Eclipse Che che-machine-exec.… | Details |
| CVE-2026-22598 | 2026-01-21 20:51:52 | 2026-01-21 21:35:27 | GitHub_M | ManageIQ is an open-source management platform. A flaw… | Details |
| CVE-2026-21852 | 2026-01-21 20:42:06 | 2026-01-21 21:34:43 | GitHub_M | Claude Code is an agentic coding tool. Prior… | Details |
| CVE-2025-69209 | 2026-01-21 20:00:41 | 2026-01-21 21:28:52 | GitHub_M | ArduinoCore-avr contains the source code and configuration files… | Details |
| CVE-2025-69285 | 2026-01-21 20:05:22 | 2026-01-21 21:27:55 | GitHub_M | SQLBot is an intelligent data query system based… | Details |
| CVE-2026-22792 | 2026-01-21 20:54:18 | 2026-01-21 21:26:47 | GitHub_M | 5ire is a cross-platform desktop artificial intelligence assistant… | Details |
| CVE-2026-22793 | 2026-01-21 21:06:58 | 2026-01-21 21:26:07 | GitHub_M | 5ire is a cross-platform desktop artificial intelligence assistant… | Details |
| CVE-2026-23944 | 2026-01-19 21:16:08 | 2026-01-21 21:17:24 | GitHub_M | Arcane is an interface for managing Docker containers,… | Details |
| CVE-2026-23885 | 2026-01-19 21:09:06 | 2026-01-21 21:12:51 | GitHub_M | Alchemy is an open source content management system… | Details |
| CVE-2026-21938 | 2026-01-20 21:56:25 | 2026-01-21 20:59:06 | oracle | Vulnerability in the PeopleSoft Enterprise PeopleTools product of… | Details |
| CVE-2026-21937 | 2026-01-20 21:56:25 | 2026-01-21 20:58:32 | oracle | Vulnerability in the MySQL Server product of Oracle… | Details |
| CVE-2026-21936 | 2026-01-20 21:56:25 | 2026-01-21 20:57:55 | oracle | Vulnerability in the MySQL Server product of Oracle… | Details |
| CVE-2026-21934 | 2026-01-20 21:56:24 | 2026-01-21 20:56:50 | oracle | Vulnerability in the PeopleSoft Enterprise PeopleTools product of… | Details |
| CVE-2026-21931 | 2026-01-20 21:56:23 | 2026-01-21 20:55:14 | oracle | Vulnerability in the Oracle APEX Sample Applications product… | Details |
| CVE-2026-21929 | 2026-01-20 21:56:22 | 2026-01-21 20:54:43 | oracle | Vulnerability in the MySQL Server product of Oracle… | Details |
| CVE-2026-21930 | 2026-01-20 21:56:22 | 2026-01-21 20:54:21 | oracle | Vulnerability in the Oracle ZFS Storage Appliance Kit… | Details |
| CVE-2026-21926 | 2026-01-20 21:56:21 | 2026-01-21 20:51:46 | oracle | Vulnerability in the Siebel CRM Deployment product of… | Details |
| CVE-2026-21924 | 2026-01-20 21:56:20 | 2026-01-21 20:50:06 | oracle | Vulnerability in the Oracle Utilities Application Framework product… | Details |
| CVE-2026-21923 | 2026-01-20 21:56:20 | 2026-01-21 20:49:28 | oracle | Vulnerability in the Oracle Life Sciences Central Designer… | Details |
| CVE-2026-21922 | 2026-01-20 21:56:19 | 2026-01-21 20:48:53 | oracle | Vulnerability in the Oracle Planning and Budgeting Cloud… | Details |
| CVE-2026-21642 | 2026-01-20 20:48:48 | 2026-01-21 20:47:21 | hackerone | HackerOne community member Patrick Lang (7yr) has reported… | Details |
| CVE-2026-23886 | 2026-01-19 21:01:52 | 2026-01-21 20:47:10 | GitHub_M | Swift W3C TraceContext is a Swift implementation of… | Details |
| CVE-2026-21664 | 2026-01-20 20:48:47 | 2026-01-21 20:45:35 | hackerone | HackerOne community member Huynh Pham Thanh Luc (nigh7c0r3)… | Details |
| CVE-2026-21663 | 2026-01-20 20:48:47 | 2026-01-21 20:42:21 | hackerone | HackerOne community member Patrick Lang (7yr) has reported… | Details |
| CVE-2025-59464 | 2026-01-20 20:41:55 | 2026-01-21 20:41:09 | hackerone | A memory leak in Node.js’s OpenSSL integration occurs… | Details |
| CVE-2026-21637 | 2026-01-20 20:41:55 | 2026-01-21 20:22:51 | hackerone | A flaw in Node.js TLS error handling allows… | Details |
| CVE-2026-22770 | 2026-01-20 00:48:19 | 2026-01-21 20:10:46 | GitHub_M | ImageMagick is free and open-source software used for… | Details |
| CVE-2026-21964 | 2026-01-20 21:56:33 | 2026-01-21 20:04:13 | oracle | Vulnerability in the MySQL Server product of Oracle… | Details |
| CVE-2026-21965 | 2026-01-20 21:56:33 | 2026-01-21 19:57:30 | oracle | Vulnerability in the MySQL Server product of Oracle… | Details |
| CVE-2026-21966 | 2026-01-20 21:56:33 | 2026-01-21 19:54:47 | oracle | Vulnerability in the Oracle Hospitality OPERA 5 Property… | Details |
| CVE-2026-23955 | 2026-01-21 19:25:12 | 2026-01-21 19:53:57 | GitHub_M | EVerest is an EV charging software stack. Prior… | Details |
| CVE-2025-68137 | 2026-01-21 19:20:09 | 2026-01-21 19:51:26 | GitHub_M | EVerest is an EV charging software stack. Prior… | Details |
| CVE-2025-68136 | 2026-01-21 19:18:21 | 2026-01-21 19:47:04 | GitHub_M | EVerest is an EV charging software stack. Prior… | Details |
| CVE-2026-21967 | 2026-01-20 21:56:34 | 2026-01-21 19:32:12 | oracle | Vulnerability in the Oracle Hospitality OPERA 5 product… | Details |
| CVE-2026-21968 | 2026-01-20 21:56:34 | 2026-01-21 19:21:31 | oracle | Vulnerability in the MySQL Server product of Oracle… | Details |
| CVE-2025-68135 | 2026-01-21 18:56:05 | 2026-01-21 19:17:21 | GitHub_M | EVerest is an EV charging software stack. Prior… | Details |
| CVE-2025-68132 | 2026-01-21 18:28:40 | 2026-01-21 19:06:48 | GitHub_M | EVerest is an EV charging software stack. Prior… | Details |
| CVE-2025-68134 | 2026-01-21 18:32:13 | 2026-01-21 19:03:47 | GitHub_M | EVerest is an EV charging software stack. Prior… | Details |
| CVE-2026-21970 | 2026-01-20 21:56:35 | 2026-01-21 18:59:51 | oracle | Vulnerability in the Oracle Life Sciences Central Designer… | Details |
| CVE-2025-58088 | 2026-01-20 14:49:37 | 2026-01-21 18:53:08 | talos | Multiple reflected cross-site scripting (xss) vulnerabilities exist in… | Details |
| CVE-2025-55132 | 2026-01-20 20:41:55 | 2026-01-21 18:53:03 | hackerone | A flaw in Node.js's permission model allows a… | Details |
| CVE-2025-59466 | 2026-01-20 20:41:55 | 2026-01-21 18:52:57 | hackerone | We have identified a bug in Node.js error… | Details |
| CVE-2026-21636 | 2026-01-20 20:41:55 | 2026-01-21 18:52:53 | hackerone | A flaw in Node.js's permission model allows Unix… | Details |
| CVE-2026-21641 | 2026-01-20 20:48:47 | 2026-01-21 18:52:48 | hackerone | HackerOne community member Jad Ghamloush (0xjad) has reported… | Details |
| CVE-2026-21640 | 2026-01-20 20:48:47 | 2026-01-21 18:52:43 | hackerone | HackerOne community member Faraz Ahmed (PakCyberbot) has reported… | Details |
| CVE-2026-21971 | 2026-01-20 21:56:35 | 2026-01-21 18:52:39 | oracle | Vulnerability in the PeopleSoft Enterprise SCM Purchasing product… | Details |
| CVE-2026-21972 | 2026-01-20 21:56:35 | 2026-01-21 18:10:56 | oracle | Vulnerability in the Oracle Configurator product of Oracle… | Details |
| CVE-2026-21973 | 2026-01-20 21:56:36 | 2026-01-21 17:22:59 | oracle | Vulnerability in the Oracle FLEXCUBE Investor Servicing product… | Details |
| CVE-2026-1245 | 2026-01-20 18:50:34 | 2026-01-21 17:10:56 | certcc | A code injection vulnerability in the binary-parser library… | Details |
| CVE-2026-23947 | 2026-01-20 00:19:48 | 2026-01-21 17:09:11 | GitHub_M | Orval generates type-safe JS clients (TypeScript) from any… | Details |
| CVE-2026-21978 | 2026-01-20 21:56:37 | 2026-01-21 17:05:17 | oracle | Vulnerability in the Oracle FLEXCUBE Universal Banking product… | Details |
| CVE-2026-21980 | 2026-01-20 21:56:38 | 2026-01-21 17:00:43 | oracle | Vulnerability in the Oracle Life Sciences Central Coding… | Details |
| CVE-2026-20055 | 2026-01-21 16:26:05 | 2026-01-21 16:50:04 | cisco | Multiple vulnerabilities in the web-based management interface of… | Details |
| CVE-2026-0622 | 2026-01-20 19:56:04 | 2026-01-21 16:47:50 | certcc | Open 5GS WebUI uses a hard-coded JWT signing… | Details |
| CVE-2026-20080 | 2026-01-21 16:26:06 | 2026-01-21 16:47:39 | cisco | A vulnerability in the SSH service of Cisco… | Details |
| CVE-2026-20109 | 2026-01-21 16:26:19 | 2026-01-21 16:46:11 | cisco | Multiple vulnerabilities in the web-based management interface of… | Details |
| CVE-2026-21977 | 2026-01-20 21:56:37 | 2026-01-21 16:42:39 | oracle | Vulnerability in the Oracle Zero Data Loss Recovery… | Details |
| CVE-2021-47832 | 2026-01-16 19:09:34 | 2026-01-21 16:41:46 | VulnCheck | This CVE ID has been rejected or withdrawn… | Details |
| CVE-2025-66692 | 2026-01-20 00:00:00 | 2026-01-21 16:40:24 | mitre | A buffer over-read in the PublicKey::verify() method of… | Details |
| CVE-2025-67261 | 2026-01-20 00:00:00 | 2026-01-21 16:38:37 | mitre | Abacre Retail Point of Sale 14.0.0.396 is vulnerable… | Details |
| CVE-2026-21979 | 2026-01-20 21:56:38 | 2026-01-21 16:37:51 | oracle | Vulnerability in the Oracle Planning and Budgeting Cloud… | Details |
| CVE-2025-58089 | 2026-01-20 14:49:37 | 2026-01-21 16:28:25 | talos | Multiple reflected cross-site scripting (xss) vulnerabilities exist in… | Details |
| CVE-2025-58090 | 2026-01-20 14:49:37 | 2026-01-21 16:27:42 | talos | Multiple reflected cross-site scripting (xss) vulnerabilities exist in… | Details |
| CVE-2025-58091 | 2026-01-20 14:49:37 | 2026-01-21 16:27:08 | talos | Multiple reflected cross-site scripting (xss) vulnerabilities exist in… | Details |
| CVE-2025-58092 | 2026-01-20 14:49:37 | 2026-01-21 16:26:26 | talos | Multiple reflected cross-site scripting (xss) vulnerabilities exist in… | Details |
| CVE-2025-57681 | 2026-01-21 00:00:00 | 2026-01-21 16:26:13 | mitre | The WorklogPRO - Timesheets for Jira plugin in… | Details |
| CVE-2025-58093 | 2026-01-20 14:49:37 | 2026-01-21 16:21:23 | talos | Multiple reflected cross-site scripting (xss) vulnerabilities exist in… | Details |
| CVE-2025-58094 | 2026-01-20 14:49:37 | 2026-01-21 16:17:56 | talos | Multiple reflected cross-site scripting (xss) vulnerabilities exist in… | Details |
| CVE-2025-58095 | 2026-01-20 14:49:38 | 2026-01-21 16:17:35 | talos | Multiple reflected cross-site scripting (xss) vulnerabilities exist in… | Details |
| CVE-2025-44000 | 2026-01-20 14:49:39 | 2026-01-21 16:17:07 | talos | A reflected cross-site scripting (xss) vulnerability exists in… | Details |
| CVE-2025-57786 | 2026-01-20 14:49:41 | 2026-01-21 16:16:42 | talos | A reflected cross-site scripting (xss) vulnerability exists in… | Details |
| CVE-2025-58740 | 2026-01-20 21:36:00 | 2026-01-21 16:14:42 | SRA | The use of a hard-coded encryption key in… | Details |
| CVE-2025-58741 | 2026-01-20 21:36:26 | 2026-01-21 16:14:37 | SRA | Insufficiently Protected Credentials vulnerability in the Credential Field… | Details |
| CVE-2025-58742 | 2026-01-20 21:36:54 | 2026-01-21 16:14:33 | SRA | Insufficiently Protected Credentials, Improper Restriction of Communication Channel… | Details |
| CVE-2025-58743 | 2026-01-20 21:37:25 | 2026-01-21 16:14:28 | SRA | Use of a Broken or Risky Cryptographic Algorithm… | Details |
| CVE-2025-58744 | 2026-01-20 21:38:02 | 2026-01-21 16:14:23 | SRA | Use of Default Credentials, Hard-coded Credentials vulnerability in C2SGlobalSettings.dll… | Details |
| CVE-2025-54853 | 2026-01-20 14:49:43 | 2026-01-21 16:14:16 | talos | A reflected cross-site scripting (xss) vulnerability exists in… | Details |
| CVE-2025-53707 | 2026-01-20 14:49:44 | 2026-01-21 16:13:51 | talos | A reflected cross-site scripting (xss) vulnerability exists in… | Details |
| CVE-2025-57787 | 2026-01-20 14:49:46 | 2026-01-21 16:12:31 | talos | A reflected cross-site scripting (xss) vulnerability exists in… | Details |
| CVE-2025-53854 | 2026-01-20 14:49:48 | 2026-01-21 16:11:44 | talos | A reflected cross-site scripting (xss) vulnerability exists in… | Details |
| CVE-2025-58080 | 2026-01-20 14:49:50 | 2026-01-21 16:10:58 | talos | A reflected cross-site scripting (xss) vulnerability exists in… | Details |
| CVE-2025-57881 | 2026-01-20 14:49:52 | 2026-01-21 16:06:29 | talos | A reflected cross-site scripting (xss) vulnerability exists in… | Details |
| CVE-2025-54861 | 2026-01-20 14:49:54 | 2026-01-21 16:05:52 | talos | A reflected cross-site scripting (xss) vulnerability exists in… | Details |
| CVE-2025-54814 | 2026-01-20 14:49:56 | 2026-01-21 16:05:14 | talos | A reflected cross-site scripting (xss) vulnerability exists in… | Details |
| CVE-2025-54852 | 2026-01-20 14:49:58 | 2026-01-21 16:03:09 | talos | A reflected cross-site scripting (xss) vulnerability exists in… | Details |
| CVE-2025-55071 | 2026-01-20 14:50:00 | 2026-01-21 16:02:27 | talos | A reflected cross-site scripting (xss) vulnerability exists in… | Details |
| CVE-2025-46270 | 2026-01-20 14:50:02 | 2026-01-21 16:01:41 | talos | A reflected cross-site scripting (xss) vulnerability exists in… | Details |
| CVE-2025-54778 | 2026-01-20 14:50:04 | 2026-01-21 16:01:00 | talos | A reflected cross-site scripting (xss) vulnerability exists in… | Details |
| CVE-2025-54157 | 2026-01-20 14:50:06 | 2026-01-21 16:00:16 | talos | A reflected cross-site scripting (xss) vulnerability exists in… | Details |
| CVE-2025-54495 | 2026-01-20 14:50:07 | 2026-01-21 15:59:30 | talos | A reflected cross-site scripting (xss) vulnerability exists in… | Details |
| CVE-2025-53516 | 2026-01-20 14:50:09 | 2026-01-21 15:58:49 | talos | A reflected cross-site scripting (xss) vulnerability exists in… | Details |
| CVE-2025-54817 | 2026-01-20 14:50:10 | 2026-01-21 15:58:22 | talos | A reflected cross-site scripting (xss) vulnerability exists in… | Details |
| CVE-2025-70645 | 2026-01-21 00:00:00 | 2026-01-21 15:57:51 | mitre | Tenda AX-1806 v1.0.0.1 was discovered to contain a… | Details |
| CVE-2026-21959 | 2026-01-20 21:56:31 | 2026-01-21 15:55:20 | oracle | Vulnerability in the Oracle Workflow product of Oracle… | Details |
| CVE-2025-70650 | 2026-01-21 00:00:00 | 2026-01-21 15:53:09 | mitre | Tenda AX-1806 v1.0.0.1 was discovered to contain a… | Details |
| CVE-2026-21961 | 2026-01-20 21:56:32 | 2026-01-21 15:51:52 | oracle | Vulnerability in the PeopleSoft Enterprise HCM Human Resources… | Details |
| CVE-2026-21963 | 2026-01-20 21:56:32 | 2026-01-21 15:49:37 | oracle | Vulnerability in the Oracle VM VirtualBox product of… | Details |
| CVE-2026-1290 | 2026-01-21 15:25:19 | 2026-01-21 15:49:21 | JAMF | Authentication Bypass by Primary Weakness vulnerability in Jamf… | Details |
| CVE-2025-70651 | 2026-01-21 00:00:00 | 2026-01-21 15:45:09 | mitre | Tenda AX-1803 v1.0.0.1 was discovered to contain a… | Details |
| CVE-2026-22444 | 2026-01-21 13:40:24 | 2026-01-21 15:39:04 | apache | The "create core" API of Apache Solr 8.6… | Details |
| CVE-2026-22022 | 2026-01-21 13:41:46 | 2026-01-21 15:35:07 | apache | Deployments of Apache Solr 5.3.0 through 9.10.0 that… | Details |
| CVE-2025-66803 | 2026-01-20 00:00:00 | 2026-01-21 15:26:53 | mitre | Race condition in the turbo-frame element handler in… | Details |
| CVE-2026-21952 | 2026-01-20 21:56:30 | 2026-01-21 15:23:16 | oracle | Vulnerability in the MySQL Server product of Oracle… | Details |
| CVE-2026-21951 | 2026-01-20 21:56:29 | 2026-01-21 15:19:32 | oracle | Vulnerability in the PeopleSoft Enterprise PeopleTools product of… | Details |
| CVE-2026-21950 | 2026-01-20 21:56:29 | 2026-01-21 15:17:33 | oracle | Vulnerability in the MySQL Server product of Oracle… | Details |
| CVE-2026-21949 | 2026-01-20 21:56:29 | 2026-01-21 15:15:52 | oracle | Vulnerability in the MySQL Server product of Oracle… | Details |
| CVE-2026-21948 | 2026-01-20 21:56:29 | 2026-01-21 15:12:07 | oracle | Vulnerability in the MySQL Server product of Oracle… | Details |
| CVE-2025-68133 | 2026-01-21 02:25:03 | 2026-01-21 15:09:48 | GitHub_M | EVerest is an EV charging software stack. In… | Details |
| CVE-2026-21946 | 2026-01-20 21:56:28 | 2026-01-21 15:07:29 | oracle | Vulnerability in the JD Edwards EnterpriseOne Tools product… | Details |
| CVE-2026-21944 | 2026-01-20 21:56:27 | 2026-01-21 15:03:45 | oracle | Vulnerability in the Oracle Agile Product Lifecycle Management… | Details |
| CVE-2026-21943 | 2026-01-20 21:56:27 | 2026-01-21 15:02:26 | oracle | Vulnerability in the Oracle Scripting product of Oracle… | Details |
| CVE-2026-21942 | 2026-01-20 21:56:27 | 2026-01-21 14:59:59 | oracle | Vulnerability in the Oracle Solaris product of Oracle… | Details |
| CVE-2026-21941 | 2026-01-20 21:56:26 | 2026-01-21 14:59:00 | oracle | Vulnerability in the MySQL Server product of Oracle… | Details |
| CVE-2026-21940 | 2026-01-20 21:56:26 | 2026-01-21 14:57:43 | oracle | Vulnerability in the Oracle Agile PLM product of… | Details |
| CVE-2025-63647 | 2026-01-20 00:00:00 | 2026-01-21 14:52:39 | mitre | A NULL pointer dereference in the parse_meta function… | Details |
| CVE-2025-57156 | 2026-01-20 00:00:00 | 2026-01-21 14:50:17 | mitre | NULL pointer dereference in the dacp_reply_playqueueedit_clear function in… | Details |
| CVE-2025-57155 | 2026-01-20 00:00:00 | 2026-01-21 14:47:58 | mitre | NULL pointer dereference in the daap_reply_groups function in… | Details |
| CVE-2025-63648 | 2026-01-20 00:00:00 | 2026-01-21 14:47:18 | mitre | A NULL pointer dereference in the dacp_reply_playqueueedit_move function… | Details |
| CVE-2025-66902 | 2026-01-20 00:00:00 | 2026-01-21 14:45:23 | mitre | An input validation issue in in Pithikos websocket-server… | Details |
| CVE-2025-56353 | 2026-01-20 00:00:00 | 2026-01-21 14:39:58 | mitre | In tinyMQTT commit 6226ade15bd4f97be2d196352e64dd10937c1962 (2024-02-18), a memory leak… | Details |
| CVE-2026-21974 | 2026-01-20 21:56:36 | 2026-01-21 14:38:13 | oracle | Vulnerability in the Oracle Life Sciences Central Designer… | Details |
| CVE-2025-65482 | 2026-01-20 00:00:00 | 2026-01-21 14:36:14 | mitre | An XML External Entity (XXE) vulnerability in opensagres… | Details |
| CVE-2026-21975 | 2026-01-20 21:56:36 | 2026-01-21 14:36:01 | oracle | Vulnerability in the Java VM component of Oracle… | Details |
| CVE-2025-64087 | 2026-01-20 00:00:00 | 2026-01-21 14:34:26 | mitre | A Server-Side Template Injection (SSTI) vulnerability in the… | Details |
| CVE-2026-21981 | 2026-01-20 21:56:38 | 2026-01-21 14:31:45 | oracle | Vulnerability in the Oracle VM VirtualBox product of… | Details |
| CVE-2025-59870 | 2026-01-16 10:12:01 | 2026-01-21 11:12:41 | HCL | HCL MyXalytics is affected by improper management of… | Details |
| CVE-2026-23874 | 2026-01-20 00:52:52 | 2026-01-20 21:43:48 | GitHub_M | ImageMagick is free and open-source software used for… | Details |
| CVE-2026-23839 | 2026-01-19 18:27:25 | 2026-01-20 21:42:05 | GitHub_M | Movary is a web application to track, rate… | Details |
| CVE-2026-23838 | 2026-01-19 18:14:55 | 2026-01-20 21:41:34 | GitHub_M | Tandoor Recipes is a recipe manager than can… | Details |
| CVE-2026-23878 | 2026-01-19 18:08:41 | 2026-01-20 21:40:57 | GitHub_M | HotCRP is conference review software. Starting in commit… | Details |
| CVE-2026-0905 | 2026-01-20 04:14:16 | 2026-01-20 21:40:43 | Chrome | Insufficient policy enforcement in Network in Google Chrome… | Details |
| CVE-2026-23836 | 2026-01-19 18:06:04 | 2026-01-20 21:40:24 | GitHub_M | HotCRP is conference review software. A problem introduced… | Details |
| CVE-2026-23833 | 2026-01-19 17:58:50 | 2026-01-20 21:39:18 | GitHub_M | ESPHome is a system to control microcontrollers remotely… | Details |
| CVE-2026-23522 | 2026-01-19 16:53:32 | 2026-01-20 21:35:39 | GitHub_M | LobeChat is an open source chat application platform.… | Details |
| CVE-2026-22850 | 2026-01-19 16:51:00 | 2026-01-20 21:35:14 | GitHub_M | Koko Analytics is an open-source analytics plugin for… | Details |
| CVE-2026-22037 | 2026-01-19 16:48:10 | 2026-01-20 21:34:44 | GitHub_M | The @fastify/express plugin adds full Express compatibility to… | Details |
| CVE-2026-22755 | 2026-01-13 15:12:53 | 2026-01-20 20:33:02 | larry_cashdollar | Improper Neutralization of Special Elements used in a… | Details |
| CVE-2026-1009 | 2026-01-15 22:51:32 | 2026-01-20 20:15:28 | Altium | A stored cross-site scripting (XSS) vulnerability exists in… | Details |
| CVE-2026-23829 | 2026-01-18 23:23:04 | 2026-01-20 20:08:41 | GitHub_M | Mailpit is an email testing tool and API… | Details |
| CVE-2026-23525 | 2026-01-18 22:10:59 | 2026-01-20 20:07:16 | GitHub_M | 1Panel is an open-source, web-based control panel for… | Details |
| CVE-2026-23626 | 2026-01-18 22:45:35 | 2026-01-20 20:07:08 | GitHub_M | Kimai is a web-based multi-user time-tracking application. Prior… | Details |
| CVE-2026-23644 | 2026-01-18 22:49:29 | 2026-01-20 20:06:58 | GitHub_M | esm.sh is a no-build content delivery network (CDN)… | Details |
| CVE-2026-23733 | 2026-01-18 22:56:15 | 2026-01-20 20:06:51 | GitHub_M | LobeChat is an open source chat application platform.… | Details |
| CVE-2025-11043 | 2026-01-19 15:52:14 | 2026-01-20 20:06:44 | ABB | An Improper Certificate Validation vulnerability in the OPC-UA… | Details |
| CVE-2025-11044 | 2026-01-19 15:57:15 | 2026-01-20 20:06:35 | ABB | An Allocation of Resources Without Limits or Throttling… | Details |
| CVE-2025-52659 | 2026-01-19 17:54:19 | 2026-01-20 20:06:29 | HCL | HCL AION version 2 is affected by a… | Details |
| CVE-2025-55249 | 2026-01-19 18:01:04 | 2026-01-20 20:06:21 | HCL | HCL AION is affected by a Missing Security… | Details |
| CVE-2025-52661 | 2026-01-19 18:04:31 | 2026-01-20 20:06:15 | HCL | HCL AION version 2 is affected by a… | Details |
| CVE-2025-55250 | 2026-01-19 18:09:03 | 2026-01-20 20:06:09 | HCL | HCL AION version 2 is affected by a… | Details |
| CVE-2025-55252 | 2026-01-19 18:13:17 | 2026-01-20 20:06:01 | HCL | HCL AION version 2 is affected by a… | Details |
| CVE-2026-23841 | 2026-01-19 18:35:21 | 2026-01-20 20:05:55 | GitHub_M | Movary is a web application to track, rate… | Details |
| CVE-2026-23842 | 2026-01-19 18:39:37 | 2026-01-20 20:05:48 | GitHub_M | ChatterBot is a machine learning, conversational dialog engine… | Details |
| CVE-2026-23843 | 2026-01-19 18:42:56 | 2026-01-20 20:05:43 | GitHub_M | teklifolustur_app is a web-based PHP application that allows… | Details |
| CVE-2026-23845 | 2026-01-19 19:01:38 | 2026-01-20 20:05:35 | GitHub_M | Mailpit is an email testing tool and API… | Details |
| CVE-2025-69198 | 2026-01-19 19:05:38 | 2026-01-20 20:05:30 | GitHub_M | Pterodactyl is a free, open-source game server management… | Details |
| CVE-2025-69199 | 2026-01-19 19:17:53 | 2026-01-20 20:05:22 | GitHub_M | Wings is the server control plane for Pterodactyl,… | Details |
| CVE-2026-23850 | 2026-01-19 19:52:58 | 2026-01-20 20:05:16 | GitHub_M | SiYuan is a personal knowledge management system. In… | Details |
| CVE-2026-23851 | 2026-01-19 19:57:29 | 2026-01-20 20:05:11 | GitHub_M | SiYuan is a personal knowledge management system. Versions… | Details |
| CVE-2026-23852 | 2026-01-19 20:00:05 | 2026-01-20 20:05:02 | GitHub_M | SiYuan is a personal knowledge management system. Versions… | Details |
| CVE-2026-23848 | 2026-01-19 20:34:40 | 2026-01-20 20:04:56 | GitHub_M | MyTube is a self-hosted downloader and player for… | Details |
| CVE-2026-1221 | 2026-01-20 06:25:46 | 2026-01-20 20:04:39 | twcert | PrismX MX100 AP controller developed by BROWAN COMMUNICATIONS… | Details |
| CVE-2025-67263 | 2026-01-20 00:00:00 | 2026-01-20 18:53:28 | mitre | Abacre Retail Point of Sale 14.0.0.396 is affected… | Details |
| CVE-2025-40679 | 2026-01-20 11:53:39 | 2026-01-20 18:50:40 | INCIBE | HTML Injection vulnerability in Isshue by Bdtask,… | Details |
| CVE-2025-33233 | 2026-01-20 17:43:38 | 2026-01-20 18:47:17 | nvidia | NVIDIA Merlin Transformers4Rec for all platforms contains a… | Details |
| CVE-2026-0519 | 2026-01-17 01:13:59 | 2026-01-20 18:39:13 | Absolute | In Secure Access 12.70 and prior to 14.20,… | Details |
| CVE-2026-0518 | 2026-01-17 01:09:29 | 2026-01-20 18:37:15 | Absolute | CVE-2026-0518 is a cross-site scripting vulnerability in versions… | Details |
| CVE-2026-22787 | 2026-01-14 16:52:38 | 2026-01-20 18:37:09 | GitHub_M | html2pdf.js converts any webpage or element into a… | Details |
| CVE-2026-0517 | 2026-01-17 01:04:55 | 2026-01-20 18:34:14 | Absolute | CVE-2026-0517 is a denial-of-service vulnerability in versions of… | Details |
| CVE-2025-41025 | 2026-01-20 12:04:05 | 2026-01-20 18:29:13 | INCIBE | Stored Cross-Site Scripting (XSS) in Poultry Farm Management… | Details |
| CVE-2026-1222 | 2026-01-20 06:30:52 | 2026-01-20 18:26:15 | twcert | PrismX MX100 AP controller developed by BROWAN COMMUNICATIONS… | Details |
| CVE-2026-1223 | 2026-01-20 06:35:17 | 2026-01-20 18:24:10 | twcert | PrismX MX100 AP controller developed by BROWAN COMMUNICATIONS… | Details |
| CVE-2025-66523 | 2026-01-20 06:51:34 | 2026-01-20 18:08:07 | Foxit | URL parameters are directly embedded into JavaScript code… | Details |
| CVE-2026-0895 | 2026-01-20 07:19:00 | 2026-01-20 18:07:10 | TYPO3 | The extension extends TYPO3’ FileSpool component, which was… | Details |
| CVE-2026-1183 | 2026-01-20 12:09:05 | 2026-01-20 17:51:26 | INCIBE | HTML injection vulnerability in multiple Botble products such… | Details |
| CVE-2026-23840 | 2026-01-19 18:32:50 | 2026-01-20 17:30:24 | GitHub_M | Movary is a web application to track, rate… | Details |
| CVE-2026-21696 | 2026-01-19 19:25:43 | 2026-01-20 17:27:48 | GitHub_M | Wings is the server control plane for Pterodactyl,… | Details |
| CVE-2026-23837 | 2026-01-19 20:09:37 | 2026-01-20 17:24:06 | GitHub_M | MyTube is a self-hosted downloader and player for… | Details |
| CVE-2025-53912 | 2026-01-20 14:49:33 | 2026-01-20 17:08:50 | talos | An arbitrary file read vulnerability exists in the… | Details |
| CVE-2025-13151 | 2026-01-07 21:14:05 | 2026-01-20 17:08:41 | certcc | Stack-based buffer overflow in libtasn1 version: v4.20.0. The… | Details |
| CVE-2026-23949 | 2026-01-20 00:36:23 | 2026-01-20 17:02:50 | GitHub_M | jaraco.context, an open-source software package that provides some… | Details |
| CVE-2025-41024 | 2026-01-20 11:35:31 | 2026-01-20 16:46:49 | INCIBE | Stored Cross-Site Scripting (XSS) in Poultry Farm Management… | Details |
| CVE-2026-22844 | 2026-01-20 13:57:44 | 2026-01-20 16:45:18 | Zoom | A Command Injection vulnerability in Zoom Node Multimedia… | Details |
| CVE-2025-9278 | 2026-01-20 13:55:43 | 2026-01-20 16:42:53 | Rockwell | A security issue exists within ArmorStart® LT that… | Details |
| CVE-2025-9279 | 2026-01-20 13:56:22 | 2026-01-20 16:42:17 | Rockwell | A security issue exists within ArmorStart® LT that… | Details |
| CVE-2025-14027 | 2026-01-20 13:56:43 | 2026-01-20 16:41:44 | Rockwell | Multiple denial-of-service vulnerabilities exist in the affected product.… | Details |
| CVE-2025-36410 | 2026-01-20 15:39:53 | 2026-01-20 16:41:07 | ibm | IBM ApplinX 11.1 could allow an authenticated user… | Details |
| CVE-2025-9280 | 2026-01-20 13:57:02 | 2026-01-20 16:39:32 | Rockwell | A security issue exists within ArmorStart® LT that… | Details |
| CVE-2025-9281 | 2026-01-20 13:58:24 | 2026-01-20 16:38:42 | Rockwell | A security issue exists within ArmorStart® LT that… | Details |
| CVE-2025-36409 | 2026-01-20 15:37:56 | 2026-01-20 16:38:27 | ibm | IBM ApplinX 11.1 is vulnerable to cross-site scripting.… | Details |
| CVE-2025-9282 | 2026-01-20 13:59:14 | 2026-01-20 16:38:19 | Rockwell | A security issue exists within ArmorStart® LT that… | Details |
| CVE-2025-9283 | 2026-01-20 13:59:56 | 2026-01-20 16:37:50 | Rockwell | A security issue exists within ArmorStart® LT that… | Details |
| CVE-2025-36408 | 2026-01-20 15:33:59 | 2026-01-20 16:35:00 | ibm | IBM ApplinX 11.1 is vulnerable to stored cross-site… | Details |
| CVE-2025-71020 | 2026-01-16 00:00:00 | 2026-01-20 16:32:13 | mitre | Tenda AX-1806 v1.0.0.1 was discovered to contain a… | Details |
| CVE-2026-22045 | 2026-01-15 22:44:05 | 2026-01-20 16:29:37 | GitHub_M | Traefik is an HTTP reverse proxy and load… | Details |
| CVE-2025-68671 | 2026-01-15 22:35:44 | 2026-01-20 16:28:55 | GitHub_M | lakeFS is an open-source tool that transforms object… | Details |
| CVE-2025-14376 | 2026-01-20 13:18:32 | 2026-01-20 16:17:16 | Rockwell | A security issue was discovered within the legacy… | Details |
| CVE-2025-14377 | 2026-01-20 13:21:40 | 2026-01-20 16:09:48 | Rockwell | A security issue was discovered within the legacy… | Details |
| CVE-2025-36418 | 2026-01-20 15:50:40 | 2026-01-20 16:09:43 | ibm | IBM ApplinX 11.1 is vulnerable due to a… | Details |
| CVE-2025-36419 | 2026-01-20 15:53:37 | 2026-01-20 16:07:57 | ibm | IBM ApplinX 11.1 could disclose sensitive information about… | Details |
| CVE-2025-36411 | 2026-01-20 15:43:07 | 2026-01-20 16:04:55 | ibm | IBM ApplinX 11.1 is vulnerable to cross-site request… | Details |
| CVE-2026-0915 | 2026-01-15 22:08:41 | 2026-01-20 16:03:52 | glibc | Calling getnetbyaddr or getnetbyaddr_r with a configured nsswitch.conf… | Details |
| CVE-2025-1722 | 2026-01-20 15:02:41 | 2026-01-20 16:02:13 | ibm | IBM Concert 1.0.0 through 2.1.0 could allow a… | Details |
| CVE-2025-9464 | 2026-01-20 13:49:19 | 2026-01-20 16:01:58 | Rockwell | A security issue exists within ArmorStart® LT that… | Details |
| CVE-2025-1719 | 2026-01-20 15:01:08 | 2026-01-20 16:00:34 | ibm | IBM Concert 1.0.0 through 2.1.0 could allow a… | Details |
| CVE-2025-36059 | 2026-01-20 15:07:46 | 2026-01-20 15:54:41 | ibm | IBM Business Automation Workflow containers 25.0.0 through 25.0.0… | Details |
| CVE-2026-23849 | 2026-01-19 20:37:29 | 2026-01-20 15:54:36 | GitHub_M | File Browser provides a file managing interface within… | Details |
| CVE-2026-23844 | 2026-01-19 20:43:29 | 2026-01-20 15:54:02 | GitHub_M | Whisper Money is a personal finance application. Versions… | Details |
| CVE-2025-36058 | 2026-01-20 15:09:07 | 2026-01-20 15:53:20 | ibm | IBM Business Automation Workflow containers 25.0.0 through 25.0.0… | Details |
| CVE-2025-36115 | 2026-01-20 15:18:17 | 2026-01-20 15:51:47 | ibm | IBM Sterling Connect:Express Adapter for Sterling B2B Integrator… | Details |
| CVE-2025-61684 | 2026-01-19 15:18:11 | 2026-01-20 15:49:59 | GitHub_M | Quicly, an IETF QUIC protocol implementation, is susceptible… | Details |
| CVE-2025-36396 | 2026-01-20 15:22:11 | 2026-01-20 15:48:51 | ibm | IBM Application Gateway 23.10 through 25.09 is vulnerable… | Details |
| CVE-2025-36397 | 2026-01-20 15:23:30 | 2026-01-20 15:47:24 | ibm | IBM Application Gateway 23.10 through 25.09 is vulnerable… | Details |
| CVE-2025-13925 | 2026-01-20 14:56:30 | 2026-01-20 15:41:38 | ibm | IBM Aspera Console 3.4.7 stores potentially sensitive information… | Details |
| CVE-2025-36063 | 2026-01-20 15:10:57 | 2026-01-20 15:39:45 | ibm | IBM Sterling Connect:Express Adapter for Sterling B2B Integrator… | Details |
| CVE-2025-36065 | 2026-01-20 15:12:47 | 2026-01-20 15:38:07 | ibm | IBM Sterling Connect:Express Adapter for Sterling B2B Integrator… | Details |
| CVE-2025-36066 | 2026-01-20 15:14:03 | 2026-01-20 15:36:00 | ibm | IBM Sterling Connect:Express Adapter for Sterling B2B Integrator… | Details |
| CVE-2026-23732 | 2026-01-19 17:12:57 | 2026-01-20 15:34:21 | GitHub_M | FreeRDP is a free implementation of the Remote… | Details |
| CVE-2025-36113 | 2026-01-20 15:15:55 | 2026-01-20 15:34:16 | ibm | IBM Sterling Connect:Express Adapter for Sterling B2B Integrator… | Details |
| CVE-2026-23875 | 2026-01-19 20:47:57 | 2026-01-20 15:33:08 | GitHub_M | CrawlChat is an open-source, AI-powered platform that transforms… | Details |
| CVE-2026-0902 | 2026-01-20 04:14:15 | 2026-01-20 15:29:39 | Chrome | Inappropriate implementation in V8 in Google Chrome prior… | Details |
| CVE-2025-43904 | 2026-01-16 00:00:00 | 2026-01-20 15:29:05 | mitre | In SchedMD Slurm before 24.11.5, 24.05.8, and 23.11.11,… | Details |
| CVE-2026-0903 | 2026-01-20 04:14:15 | 2026-01-20 15:28:59 | Chrome | Inappropriate implementation in Downloads in Google Chrome on… | Details |
| CVE-2026-0904 | 2026-01-20 04:14:16 | 2026-01-20 15:26:56 | Chrome | Incorrect security UI in Digital Credentials in Google… | Details |
| CVE-2026-0943 | 2026-01-19 02:46:52 | 2026-01-20 15:25:23 | CPANSec | HarfBuzz::Shaper versions before 0.032 for Perl contains a… | Details |
| CVE-2025-0647 | 2026-01-14 10:58:44 | 2026-01-20 15:21:14 | Arm | In certain Arm CPUs, a CPP RCTX instruction… | Details |
| CVE-2026-23877 | 2026-01-19 20:52:00 | 2026-01-20 15:20:58 | GitHub_M | Swing Music is a self-hosted music player for… | Details |
| CVE-2025-55251 | 2026-01-19 17:39:26 | 2026-01-20 15:13:26 | HCL | HCL AION is affected by an Unrestricted File… | Details |
| CVE-2026-23880 | 2026-01-19 20:55:28 | 2026-01-20 15:12:32 | GitHub_M | OnboardLite is a comprehensive membership lifecycle platform built… | Details |
| CVE-2025-29847 | 2026-01-19 08:36:06 | 2026-01-20 15:12:04 | apache | A vulnerability in Apache Linkis. Problem Description When using the… | Details |
| CVE-2026-23625 | 2026-01-19 17:41:41 | 2026-01-20 15:10:58 | GitHub_M | OpenProject is an open-source, web-based project management software.… | Details |
| CVE-2025-12985 | 2026-01-20 14:50:51 | 2026-01-20 15:10:40 | ibm | IBM Licensing Operator incorrectly assigns privileges to security… | Details |
| CVE-2025-59355 | 2026-01-19 08:37:24 | 2026-01-20 15:07:22 | apache | A vulnerability. When org.apache.linkis.metadata.util.HiveUtils.decode() fails to perform Base64 decoding,… | Details |
| CVE-2025-9465 | 2026-01-20 13:51:36 | 2026-01-20 15:07:13 | Rockwell | A security issue exists within ArmorStart® LT that… | Details |
| CVE-2026-0610 | 2026-01-19 14:31:13 | 2026-01-20 15:05:32 | DEVOLUTIONS | SQL Injection vulnerability in remote-sessions in Devolutions Server.This… | Details |
| CVE-2026-1007 | 2026-01-19 14:32:06 | 2026-01-20 15:02:33 | DEVOLUTIONS | Incorrect Authorization vulnerability in virtual gateway component in… | Details |
| CVE-2025-11743 | 2026-01-20 13:52:16 | 2026-01-20 14:58:13 | Rockwell | A denial-of-service security issue in the affected product.… | Details |
| CVE-2025-69581 | 2026-01-16 00:00:00 | 2026-01-20 14:56:48 | mitre | An issue was discovered in Chamillo LMS 1.11.2.… | Details |
| CVE-2026-23646 | 2026-01-19 17:48:03 | 2026-01-20 14:54:40 | GitHub_M | OpenProject is an open-source, web-based project management software.… | Details |
| CVE-2025-52660 | 2026-01-19 17:49:52 | 2026-01-20 14:51:58 | HCL | HCL AION is affected by an Unrestricted File… | Details |
| CVE-2026-23721 | 2026-01-19 17:52:35 | 2026-01-20 14:51:21 | GitHub_M | OpenProject is an open-source, web-based project management software.… | Details |
| CVE-2026-22816 | 2026-01-16 22:45:48 | 2026-01-20 14:49:32 | GitHub_M | Gradle is a build automation tool, and its… | Details |
| CVE-2026-22865 | 2026-01-16 22:46:19 | 2026-01-20 14:47:41 | GitHub_M | Gradle is a build automation tool, and its… | Details |
| CVE-2026-22031 | 2026-01-19 15:24:45 | 2026-01-20 14:45:31 | GitHub_M | @fastify/middie is the plugin that adds middleware support… | Details |
| CVE-2026-23846 | 2026-01-19 19:42:35 | 2026-01-20 14:40:03 | GitHub_M | Tugtainer is a self-hosted app for automating updates… | Details |
| CVE-2026-0906 | 2026-01-20 04:14:17 | 2026-01-20 14:40:03 | Chrome | Incorrect security UI in Google Chrome on… | Details |
| CVE-2025-40644 | 2026-01-20 11:33:28 | 2026-01-20 14:39:59 | INCIBE | Reflected Cross-Site Scripting (XSS) vulnerability in Riftzilla's QRGen.… | Details |
| CVE-2026-23847 | 2026-01-19 19:46:08 | 2026-01-20 14:37:42 | GitHub_M | SiYuan is a personal knowledge management system. Versions… | Details |
| CVE-2026-0907 | 2026-01-20 04:14:17 | 2026-01-20 14:37:38 | Chrome | Incorrect security UI in Split View in Google… | Details |
| CVE-2025-14369 | 2026-01-20 11:49:08 | 2026-01-20 14:33:15 | certcc | dr_flac, an audio decoder within the dr_libs toolset,… | Details |
| CVE-2025-9466 | 2026-01-20 13:54:48 | 2026-01-20 14:11:53 | Rockwell | A security issue exists within ArmorStart® LT that… | Details |
| CVE-2026-0901 | 2026-01-20 04:14:14 | 2026-01-20 14:06:33 | Chrome | Inappropriate implementation in Blink in Google Chrome on… | Details |
| CVE-2026-1008 | 2026-01-15 22:24:16 | 2026-01-19 11:42:46 | Altium | A stored cross-site scripting (XSS) vulnerability exists in… | Details |
| CVE-2025-56451 | 2026-01-16 00:00:00 | 2026-01-16 21:48:17 | mitre | Cross site scripting vulnerability in seeyon Zhiyuan A8+… | Details |
| CVE-2025-14894 | 2026-01-16 12:43:14 | 2026-01-16 21:44:06 | certcc | Livewire Filemanager, commonly used in Laravel applications, contains… | Details |
| CVE-2026-0612 | 2026-01-16 12:44:59 | 2026-01-16 21:42:52 | certcc | The Librarian contains a information leakage vulnerability through… | Details |
| CVE-2026-0613 | 2026-01-16 12:46:02 | 2026-01-16 21:41:53 | certcc | The Librarian contains an internal port scanning vulnerability,… | Details |
| CVE-2026-0616 | 2026-01-16 12:46:58 | 2026-01-16 21:40:36 | certcc | TheLibrarians web_fetch tool can be used to retrieve… | Details |
| CVE-2026-23634 | 2026-01-16 19:14:46 | 2026-01-16 21:38:59 | GitHub_M | Pepr is a type safe K8s middleware. Prior… | Details |
| CVE-2026-23645 | 2026-01-16 19:20:06 | 2026-01-16 21:37:58 | GitHub_M | SiYuan is self-hosted, open source personal knowledge management… | Details |
| CVE-2026-23723 | 2026-01-16 19:27:26 | 2026-01-16 21:36:57 | GitHub_M | WeGIA is a web manager for charitable institutions.… | Details |
| CVE-2026-23722 | 2026-01-16 19:29:53 | 2026-01-16 21:35:52 | GitHub_M | WeGIA is a Web Manager for Charitable Institutions.… | Details |
| CVE-2026-23724 | 2026-01-16 19:37:06 | 2026-01-16 21:33:07 | GitHub_M | WeGIA is a web manager for charitable institutions.… | Details |
| CVE-2021-47827 | 2026-01-16 19:09:31 | 2026-01-16 21:32:47 | VulnCheck | WebSSH for iOS 14.16.10 contains a denial of… | Details |
| CVE-2021-47826 | 2026-01-16 19:09:31 | 2026-01-16 21:30:42 | VulnCheck | Acer Backup Manager 3.0.0.99 contains an unquoted service… | Details |
| CVE-2021-47825 | 2026-01-16 19:09:30 | 2026-01-16 21:28:43 | VulnCheck | Acer Updater Service 1.2.3500.0 contains an unquoted service… | Details |
| CVE-2021-47824 | 2026-01-16 19:09:30 | 2026-01-16 21:26:31 | VulnCheck | iDailyDiary 4.30 contains a denial of service vulnerability… | Details |
| CVE-2021-47828 | 2026-01-16 19:09:32 | 2026-01-16 21:24:15 | VulnCheck | BOOTP Turbo 2.0.0.1253 contains an unquoted service path… | Details |
| CVE-2026-23643 | 2026-01-16 20:38:45 | 2026-01-16 21:21:56 | GitHub_M | CakePHP is a rapid development framework for PHP.… | Details |
| CVE-2026-23744 | 2026-01-16 20:10:37 | 2026-01-16 21:15:53 | GitHub_M | MCPJam inspector is the local-first development platform for… | Details |
| CVE-2026-23725 | 2026-01-16 19:38:27 | 2026-01-16 21:13:25 | GitHub_M | WeGIA is a web manager for charitable institutions.… | Details |
| CVE-2021-47785 | 2026-01-15 23:25:38 | 2026-01-16 21:12:42 | VulnCheck | Ether MP3 CD Burner 1.3.8 contains a buffer… | Details |
| CVE-2021-47790 | 2026-01-15 23:25:41 | 2026-01-16 21:12:13 | VulnCheck | Active WebCam 11.5 contains an unquoted service path… | Details |
| CVE-2021-47791 | 2026-01-15 23:25:41 | 2026-01-16 21:12:08 | VulnCheck | SmartFTP Client 10.0.2909.0 contains multiple denial of service… | Details |
| CVE-2021-47792 | 2026-01-15 23:25:42 | 2026-01-16 21:11:59 | VulnCheck | Remote Mouse 4.002 contains an unquoted service path… | Details |
| CVE-2021-47820 | 2026-01-16 19:09:28 | 2026-01-16 21:11:04 | VulnCheck | Ubee EVW327 contains a cross-site request forgery vulnerability… | Details |
| CVE-2021-47821 | 2026-01-16 19:09:28 | 2026-01-16 21:10:57 | VulnCheck | RarmaRadio 2.72.8 contains a denial of service vulnerability… | Details |
| CVE-2021-47822 | 2026-01-16 19:09:29 | 2026-01-16 21:10:51 | VulnCheck | DiskBoss Service 12.2.18 contains an unquoted service path… | Details |
| CVE-2021-47823 | 2026-01-16 19:09:29 | 2026-01-16 21:10:45 | VulnCheck | Acer ePowerSvc 6.0.3008.0 contains an unquoted service path… | Details |
| CVE-2021-47829 | 2026-01-16 19:09:33 | 2026-01-16 21:10:39 | VulnCheck | DHCP Broadband 4.1.0.1503 contains an unquoted service path… | Details |
| CVE-2021-47833 | 2026-01-16 19:09:34 | 2026-01-16 21:10:22 | VulnCheck | WifiHotSpot 1.0.0.0 contains an unquoted service path vulnerability… | Details |
| CVE-2021-47835 | 2026-01-16 19:09:35 | 2026-01-16 21:10:09 | VulnCheck | Freeter 1.2.1 contains a persistent cross-site scripting vulnerability… | Details |
| CVE-2021-47838 | 2026-01-16 19:09:37 | 2026-01-16 21:09:48 | VulnCheck | Markright 1.0 contains a persistent cross-site scripting vulnerability… | Details |
| CVE-2026-23726 | 2026-01-16 19:40:05 | 2026-01-16 21:09:43 | GitHub_M | WeGIA is a web manager for charitable institutions.… | Details |
| CVE-2021-47840 | 2026-01-16 19:09:38 | 2026-01-16 21:09:34 | VulnCheck | Moeditor 0.2.0 contains a persistent cross-site scripting vulnerability… | Details |
| CVE-2021-47841 | 2026-01-16 19:09:38 | 2026-01-16 21:09:27 | VulnCheck | SnipCommand 0.1.0 contains a cross-site scripting vulnerability that… | Details |
| CVE-2021-47842 | 2026-01-16 19:09:39 | 2026-01-16 21:09:21 | VulnCheck | StudyMD 0.3.2 contains a persistent cross-site scripting vulnerability… | Details |
| CVE-2021-47845 | 2026-01-16 19:09:40 | 2026-01-16 21:09:09 | VulnCheck | Spy Emergency 25.0.650 contains an unquoted service path… | Details |
| CVE-2019-25297 | 2026-01-16 20:14:10 | 2026-01-16 21:08:52 | VulnCheck | Poll, Survey & Quiz Maker Plugin by Opinion… | Details |
| CVE-2026-23728 | 2026-01-16 19:46:07 | 2026-01-16 21:04:41 | GitHub_M | WeGIA is a web manager for charitable institutions.… | Details |
| CVE-2026-23729 | 2026-01-16 19:47:10 | 2026-01-16 21:02:05 | GitHub_M | WeGIA is a web manager for charitable institutions.… | Details |
| CVE-2026-23730 | 2026-01-16 19:48:23 | 2026-01-16 20:34:21 | GitHub_M | WeGIA is a web manager for charitable institutions.… | Details |
| CVE-2026-23731 | 2026-01-16 19:50:16 | 2026-01-16 20:31:29 | GitHub_M | WeGIA is a web manager for charitable institutions.… | Details |
| CVE-2026-23735 | 2026-01-16 20:04:19 | 2026-01-16 20:28:19 | GitHub_M | GraphQL Modules is a toolset of libraries and… | Details |
| CVE-2026-23742 | 2026-01-16 20:07:46 | 2026-01-16 20:24:12 | GitHub_M | Skipper is an HTTP router and reverse proxy… | Details |
| CVE-2026-23727 | 2026-01-16 19:41:46 | 2026-01-16 19:49:16 | GitHub_M | WeGIA is a web manager for charitable institutions.… | Details |
| CVE-2026-23535 | 2026-01-16 19:08:24 | 2026-01-16 19:21:22 | GitHub_M | wlc is a Weblate command-line client using Weblate's… | Details |
| CVE-2025-62291 | 2026-01-16 00:00:00 | 2026-01-16 19:07:43 | mitre | In the eap-mschapv2 plugin (client-side) in strongSwan before… | Details |
| CVE-2025-68924 | 2026-01-16 00:00:00 | 2026-01-16 19:00:26 | mitre | In Umbraco UmbracoForms through 8.13.16, an authenticated attacker… | Details |
| CVE-2025-15032 | 2026-01-16 18:11:32 | 2026-01-16 18:35:45 | BCNY | Missing about:blank indicator in custom-sized new windows in… | Details |
| CVE-2025-61873 | 2026-01-16 00:00:00 | 2026-01-16 18:31:10 | mitre | Best Practical Request Tracker (RT) before 4.4.9, 5.0.9,… | Details |
| CVE-2025-31510 | 2026-01-16 00:00:00 | 2026-01-16 18:07:24 | mitre | In the portal in LemonLDAP::NG before 2.21.0, cross-site… | Details |
| CVE-2025-24531 | 2026-01-16 00:00:00 | 2026-01-16 18:07:08 | mitre | In OpenSC pam_pkcs11 before 0.6.13, pam_sm_authenticate() wrongly returns… | Details |
| CVE-2025-24528 | 2026-01-16 00:00:00 | 2026-01-16 18:06:59 | mitre | In MIT Kerberos 5 (aka krb5) before 1.22… | Details |
| CVE-2026-22230 | 2026-01-08 17:10:03 | 2026-01-16 18:04:14 | cisa-cg | OPEXUS eCASE Audit allows an authenticated attacker to… | Details |
| CVE-2026-23529 | 2026-01-16 16:53:17 | 2026-01-16 17:24:03 | GitHub_M | Kafka Connect BigQuery Connector is an implementation of… | Details |
| CVE-2026-23528 | 2026-01-16 16:44:28 | 2026-01-16 17:21:36 | GitHub_M | Dask distributed is a distributed task scheduler for… | Details |
| CVE-2026-22863 | 2026-01-15 22:53:15 | 2026-01-16 17:16:41 | GitHub_M | Deno is a JavaScript, TypeScript, and WebAssembly runtime.… | Details |
| CVE-2026-22864 | 2026-01-15 22:58:52 | 2026-01-16 17:16:02 | GitHub_M | Deno is a JavaScript, TypeScript, and WebAssembly runtime.… | Details |
| CVE-2025-52987 | 2026-01-15 20:10:44 | 2026-01-16 17:15:12 | juniper | A clickjacking vulnerability exists in the web portal… | Details |
| CVE-2020-36928 | 2026-01-15 23:25:34 | 2026-01-16 16:53:34 | VulnCheck | Brother BRAgent 1.38 contains an unquoted service path… | Details |
| CVE-2020-36929 | 2026-01-15 23:25:34 | 2026-01-16 16:52:48 | VulnCheck | Brother BRPrint Auditor 3.0.7 contains an unquoted service… | Details |
| CVE-2026-0949 | 2026-01-16 16:29:42 | 2026-01-16 16:49:37 | EDB | PEM versions prior to 9.8.1 are affected by… | Details |
| CVE-2026-23523 | 2026-01-16 16:29:48 | 2026-01-16 16:47:34 | GitHub_M | Dive is an open-source MCP Host Desktop Application… | Details |
| CVE-2025-59959 | 2026-01-15 20:13:21 | 2026-01-16 16:37:24 | juniper | An Untrusted Pointer Dereference vulnerability in the routing… | Details |
| CVE-2026-22782 | 2026-01-16 16:14:15 | 2026-01-16 16:36:08 | GitHub_M | RustFS is a distributed object storage system built… | Details |
| CVE-2025-59960 | 2026-01-15 20:14:00 | 2026-01-16 16:27:58 | juniper | An Improper Check for Unusual or Exceptional Conditions… | Details |
| CVE-2025-70746 | 2026-01-16 00:00:00 | 2026-01-16 16:27:54 | mitre | Tenda AX-1806 v1.0.0.1 was discovered to contain a… | Details |
| CVE-2026-21905 | 2026-01-15 20:19:22 | 2026-01-16 16:26:02 | juniper | A Loop with Unreachable Exit Condition ('Infinite Loop')… | Details |
| CVE-2026-21906 | 2026-01-15 20:20:32 | 2026-01-16 16:20:14 | juniper | An Improper Handling of Exceptional Conditions vulnerability in… | Details |
| CVE-2025-67076 | 2026-01-15 00:00:00 | 2026-01-16 16:11:39 | mitre | Directory traversal vulnerability in Omnispace Agora Project before… | Details |
| CVE-2025-67077 | 2026-01-15 00:00:00 | 2026-01-16 16:11:11 | mitre | File upload vulnerability in Omnispace Agora Project before… | Details |
| CVE-2025-68438 | 2026-01-16 10:06:08 | 2026-01-16 16:10:02 | apache | In Apache Airflow versions before 3.1.6, when rendered… | Details |
| CVE-2021-47797 | 2026-01-15 23:25:45 | 2026-01-16 16:01:44 | VulnCheck | Leawo Prof. Media 11.0.0.1 contains a denial of… | Details |
| CVE-2026-23768 | 2026-01-16 05:20:58 | 2026-01-16 16:01:19 | naver | lucy-xss-filter before commit 7c1de6d allows an attacker to… | Details |
| CVE-2021-47798 | 2026-01-15 23:25:45 | 2026-01-16 15:58:23 | VulnCheck | NoteBurner 2.35 contains a buffer overflow vulnerability in… | Details |
| CVE-2021-47801 | 2026-01-15 23:25:46 | 2026-01-16 15:55:22 | VulnCheck | Vianeos OctoPUS 5 contains a time-based blind SQL… | Details |
| CVE-2025-29943 | 2026-01-16 15:46:08 | 2026-01-16 15:54:30 | AMD | Write what were condition within AMD CPUs may… | Details |
| CVE-2021-47803 | 2026-01-15 23:25:47 | 2026-01-16 15:53:23 | VulnCheck | iFunbox 4.2 contains an unquoted service path vulnerability… | Details |
| CVE-2021-47813 | 2026-01-15 23:25:54 | 2026-01-16 15:48:22 | VulnCheck | Backup Key Recovery 2.2.7 contains a denial of… | Details |
| CVE-2026-21624 | 2026-01-16 15:05:37 | 2026-01-16 15:41:11 | Joomla | Lack of input filterung leads to a persistent… | Details |
| CVE-2025-65118 | 2026-01-16 00:11:12 | 2026-01-16 15:39:37 | icscert | The vulnerability, if exploited, could allow an authenticated… | Details |
| CVE-2026-21623 | 2026-01-16 15:04:36 | 2026-01-16 15:38:27 | Joomla | Lack of input filterung leads to a persistent… | Details |
| CVE-2025-71024 | 2026-01-13 00:00:00 | 2026-01-16 15:36:46 | mitre | Tenda AX-3 v16.03.12.10_CN was discovered to contain a… | Details |
| CVE-2026-21625 | 2026-01-16 15:06:15 | 2026-01-16 15:35:53 | Joomla | User provided uploads to the Easy Discuss component… | Details |
| CVE-2025-71025 | 2026-01-13 00:00:00 | 2026-01-16 15:35:26 | mitre | Tenda AX-3 v16.03.12.10_CN was discovered to contain a… | Details |
| CVE-2025-71026 | 2026-01-13 00:00:00 | 2026-01-16 15:34:39 | mitre | Tenda AX-3 v16.03.12.10_CN was discovered to contain a… | Details |
| CVE-2025-71027 | 2026-01-13 00:00:00 | 2026-01-16 15:33:13 | mitre | Tenda AX-3 v16.03.12.10_CN was discovered to contain a… | Details |
| CVE-2025-70753 | 2026-01-13 00:00:00 | 2026-01-16 15:17:17 | mitre | Tenda AX-1806 v1.0.0.1 was discovered to contain a… | Details |
| CVE-2025-68921 | 2026-01-16 00:00:00 | 2026-01-16 15:15:23 | mitre | SteelSeries Nahimic 3 1.10.7 allows Directory traversal.… | Details |
| CVE-2025-64691 | 2026-01-16 00:06:56 | 2026-01-16 15:12:10 | icscert | The vulnerability, if exploited, could allow an authenticated… | Details |
| CVE-2025-61937 | 2026-01-16 00:04:37 | 2026-01-16 15:10:11 | icscert | The vulnerability, if exploited, could allow an unauthenticated… | Details |
| CVE-2025-61943 | 2026-01-16 00:09:18 | 2026-01-16 15:06:06 | icscert | The vulnerability, if exploited, could allow an authenticated… | Details |
| CVE-2025-67823 | 2026-01-15 00:00:00 | 2026-01-16 15:02:06 | mitre | A vulnerability in the Multimedia Email component of… | Details |
| CVE-2025-67822 | 2026-01-15 00:00:00 | 2026-01-16 14:59:20 | mitre | A vulnerability in the Provisioning Manager component of… | Details |
| CVE-2025-64729 | 2026-01-16 00:12:45 | 2026-01-16 14:53:45 | icscert | The vulnerability, if exploited, could allow an authenticated… | Details |
| CVE-2025-65117 | 2026-01-16 00:14:27 | 2026-01-16 14:53:13 | icscert | The vulnerability, if exploited, could allow an authenticated… | Details |
| CVE-2025-64769 | 2026-01-16 00:16:48 | 2026-01-16 14:52:30 | icscert | The Process Optimization application suite leverages connection channels/protocols… | Details |
| CVE-2026-1018 | 2026-01-16 02:32:48 | 2026-01-16 14:48:17 | twcert | Police Statistics Database System developed by Gotac has an… | Details |
| CVE-2026-1019 | 2026-01-16 02:48:47 | 2026-01-16 14:45:08 | twcert | Police Statistics Database System developed by Gotac has… | Details |
| CVE-2026-1020 | 2026-01-16 02:57:08 | 2026-01-16 14:42:29 | twcert | Police Statistics Database System developed by Gotac has… | Details |
| CVE-2026-1021 | 2026-01-16 03:08:42 | 2026-01-16 14:41:29 | twcert | Police Statistics Database System developed by Gotac has… | Details |
| CVE-2026-0615 | 2026-01-16 12:47:27 | 2026-01-16 14:38:37 | certcc | The Librarian `supervisord` status page can be retrieved… | Details |
| CVE-2025-68707 | 2026-01-13 00:00:00 | 2026-01-16 14:36:10 | mitre | An authentication bypass vulnerability in the Tongyu AX1800… | Details |
| CVE-2022-50911 | 2026-01-13 22:51:50 | 2026-01-16 14:31:21 | VulnCheck | This candidate was withdrawn by its CNA. Further… | Details |
| CVE-2025-15104 | 2026-01-16 14:00:16 | 2026-01-16 14:30:55 | Fluid Attacks | Nu Html Checker (validator.nu) contains a restriction bypass… | Details |
| CVE-2026-0858 | 2026-01-16 05:00:06 | 2026-01-16 14:10:00 | snyk | Versions of the package net.sourceforge.plantuml:plantuml before 1.2026.0 are… | Details |
| CVE-2025-14435 | 2026-01-16 11:25:35 | 2026-01-16 14:09:00 | Mattermost | Mattermost versions 10.11.x <= 10.11.8, 11.1.x <= 11.1.1,… | Details |
| CVE-2025-14510 | 2026-01-16 13:02:30 | 2026-01-16 14:08:21 | ABB | Incorrect Implementation of Authentication Algorithm vulnerability in ABB… | Details |
| CVE-2026-23769 | 2026-01-16 05:23:56 | 2026-01-16 14:05:51 | naver | lucy-xss-filter before commit e5826c0 allows an attacker to… | Details |
| CVE-2026-1022 | 2026-01-16 03:33:46 | 2026-01-16 14:04:31 | twcert | Statistics Database System developed by Gotac has an… | Details |
| CVE-2026-1023 | 2026-01-16 03:43:02 | 2026-01-16 14:04:01 | twcert | Statistics Database System developed by Gotac has a… | Details |
| CVE-2026-0975 | 2026-01-16 06:01:59 | 2026-01-16 14:00:54 | Deltaww | Delta Electronics DIAView has Command Injection vulnerability.… | Details |
| CVE-2026-20759 | 2026-01-16 08:16:45 | 2026-01-16 13:45:56 | jpcert | OS Command Injection vulnerability exists in multiple Network… | Details |
| CVE-2026-20894 | 2026-01-16 08:16:57 | 2026-01-16 13:45:31 | jpcert | Cross-site scripting vulnerability exists in multiple Network Cameras… | Details |
| CVE-2026-22876 | 2026-01-16 08:17:13 | 2026-01-16 13:45:02 | jpcert | Path Traversal vulnerability exists in multiple Network Cameras… | Details |
| CVE-2025-14822 | 2026-01-16 08:52:43 | 2026-01-16 13:00:45 | Mattermost | Mattermost versions 10.11.x <= 10.11.8 fail to validate… | Details |
| CVE-2026-0855 | 2026-01-12 06:44:40 | 2026-01-16 02:09:56 | twcert | Certain IP Camera models developed by Merit LILIN… | Details |
| CVE-2020-36917 | 2026-01-06 15:53:23 | 2026-01-15 21:37:30 | VulnCheck | iDS6 DSSPro Digital Signage System 6.2 contains a… | Details |
| CVE-2026-23622 | 2026-01-15 19:28:58 | 2026-01-15 21:34:43 | GitHub_M | Easy!Appointments is a self hosted appointment scheduler. In… | Details |
| CVE-2025-70892 | 2026-01-15 00:00:00 | 2026-01-15 21:25:50 | mitre | Phpgurukul Cyber Cafe Management System v1.0 contains a… | Details |
| CVE-2025-70893 | 2026-01-15 00:00:00 | 2026-01-15 21:22:19 | mitre | A time-based blind SQL Injection vulnerability exists in… | Details |
| CVE-2026-21918 | 2026-01-15 20:27:54 | 2026-01-15 21:13:00 | juniper | A Double Free vulnerability in the flow processing… | Details |
| CVE-2026-21917 | 2026-01-15 20:27:11 | 2026-01-15 21:12:37 | juniper | An Improper Validation of Syntactic Correctness of Input… | Details |
| CVE-2026-21907 | 2026-01-15 20:21:11 | 2026-01-15 21:12:31 | juniper | A Use of a Broken or Risky Cryptographic… | Details |
| CVE-2026-21903 | 2026-01-15 20:18:36 | 2026-01-15 21:12:08 | juniper | A Stack-based Buffer Overflow vulnerability in the Packet… | Details |
| CVE-2025-60011 | 2026-01-15 20:16:47 | 2026-01-15 21:10:58 | juniper | An Improper Check for Unusual or Exceptional Conditions… | Details |
| CVE-2026-1002 | 2026-01-15 20:50:25 | 2026-01-15 21:09:22 | eclipse | The Vert.x Web static handler component cache can… | Details |
| CVE-2025-60003 | 2026-01-15 20:15:04 | 2026-01-15 21:09:19 | juniper | A Buffer Over-read vulnerability in the routing protocol… | Details |
| CVE-2025-59961 | 2026-01-15 20:14:43 | 2026-01-15 21:08:37 | juniper | An Incorrect Permission Assignment for Critical Resource vulnerability… | Details |
| CVE-2025-67025 | 2026-01-15 00:00:00 | 2026-01-15 21:07:24 | mitre | Cross Site Scripting vulnerability in Anycomment anycomment.io 0.4.4… | Details |
| CVE-2025-70891 | 2026-01-15 00:00:00 | 2026-01-15 21:06:05 | mitre | A stored cross-site scripting (XSS) vulnerability exists in… | Details |
| CVE-2025-70890 | 2026-01-15 00:00:00 | 2026-01-15 21:04:49 | mitre | A stored cross-site scripting (XSS) vulnerability exists in… | Details |
| CVE-2025-65368 | 2026-01-15 00:00:00 | 2026-01-15 21:03:15 | mitre | SparkyFitness v0.15.8.2 is vulnerable to Cross Site Scripting… | Details |
| CVE-2026-21920 | 2026-01-15 20:28:10 | 2026-01-15 20:59:21 | juniper | An Unchecked Return Value vulnerability in the DNS… | Details |
| CVE-2026-21921 | 2026-01-15 20:28:29 | 2026-01-15 20:55:25 | juniper | A Use After Free vulnerability in the chassis… | Details |
| CVE-2026-21909 | 2026-01-15 20:22:44 | 2026-01-15 20:52:42 | juniper | A Missing Release of Memory after Effective Lifetime… | Details |
| CVE-2026-21910 | 2026-01-15 20:23:29 | 2026-01-15 20:51:57 | juniper | An Improper Check for Unusual or Exceptional Conditions… | Details |
| CVE-2026-21911 | 2026-01-15 20:23:54 | 2026-01-15 20:51:32 | juniper | An Incorrect Calculation vulnerability in the Layer 2… | Details |
| CVE-2026-21912 | 2026-01-15 20:24:20 | 2026-01-15 20:50:28 | juniper | A Time-of-check Time-of-use (TOCTOU) Race Condition vulnerability in… | Details |
| CVE-2026-21913 | 2026-01-15 20:25:03 | 2026-01-15 20:45:02 | juniper | An Incorrect Initialization of Resource vulnerability in the… | Details |
| CVE-2026-21914 | 2026-01-15 20:25:35 | 2026-01-15 20:44:30 | juniper | An Improper Locking vulnerability in the GTP plugin… | Details |
| CVE-2025-66169 | 2026-01-14 11:45:20 | 2026-01-15 20:43:58 | apache | Cypher Injection vulnerability in Apache Camel camel-neo4j component. This… | Details |
| CVE-2025-15265 | 2026-01-15 19:59:41 | 2026-01-15 20:28:16 | Fluid Attacks | An SSR XSS exists in async hydration when… | Details |
| CVE-2025-65349 | 2026-01-15 00:00:00 | 2026-01-15 20:25:22 | mitre | A Stored Cross-Site Scripting (XSS) vulnerability in Web… | Details |
| CVE-2025-14379 | 2026-01-14 05:28:07 | 2026-01-15 20:07:54 | Wordfence | The Testimonials Creator plugin for WordPress is vulnerable… | Details |
| CVE-2026-23520 | 2026-01-15 19:20:22 | 2026-01-15 19:58:45 | GitHub_M | Arcane provides modern docker management. Prior to 1.13.0,… | Details |
| CVE-2026-23519 | 2026-01-15 19:13:54 | 2026-01-15 19:57:48 | GitHub_M | RustCrypto CMOV provides conditional move CPU intrinsics which… | Details |
| CVE-2026-23511 | 2026-01-15 19:09:06 | 2026-01-15 19:56:24 | GitHub_M | ZITADEL is an open source identity management platform.… | Details |
| CVE-2026-22249 | 2026-01-15 18:43:56 | 2026-01-15 19:08:26 | GitHub_M | Docmost is an open-source collaborative wiki and documentation… | Details |
| CVE-2026-22803 | 2026-01-15 18:37:57 | 2026-01-15 19:06:13 | GitHub_M | SvelteKit is a framework for rapidly developing robust,… | Details |
| CVE-2026-23493 | 2026-01-15 16:38:23 | 2026-01-15 19:02:08 | GitHub_M | Pimcore is an Open Source Data & Experience… | Details |
| CVE-2025-67647 | 2026-01-15 18:33:25 | 2026-01-15 18:58:01 | GitHub_M | SvelteKit is a framework for rapidly developing robust,… | Details |
| CVE-2025-13844 | 2026-01-15 18:28:37 | 2026-01-15 18:55:41 | schneider | CWE-415: Double Free vulnerability exists that could cause… | Details |
| CVE-2025-13845 | 2026-01-15 18:33:23 | 2026-01-15 18:54:16 | schneider | CWE-416: Use After Free vulnerability that could cause… | Details |
| CVE-2025-70303 | 2026-01-15 00:00:00 | 2026-01-15 18:49:42 | mitre | A heap overflow in the uncv_parse_config() function of… | Details |
| CVE-2025-62193 | 2026-01-15 16:44:15 | 2026-01-15 18:47:34 | cisa-cg | Sites running NOAA PMEL Live Access Server (LAS)… | Details |
| CVE-2025-70307 | 2026-01-15 00:00:00 | 2026-01-15 18:44:51 | mitre | A stack overflow in the dump_ttxt_sample function of… | Details |
| CVE-2025-70305 | 2026-01-15 00:00:00 | 2026-01-15 18:40:18 | mitre | A stack overflow in the dmx_saf function of… | Details |
| CVE-2025-70302 | 2026-01-15 00:00:00 | 2026-01-15 18:36:26 | mitre | A heap overflow in the ghi_dmx_declare_opid_bin() function of… | Details |
| CVE-2021-47768 | 2026-01-15 15:52:10 | 2026-01-15 18:27:03 | VulnCheck | ImportExportTools NG 10.0.4 contains a persistent HTML injection… | Details |
| CVE-2021-47773 | 2026-01-15 15:52:12 | 2026-01-15 18:26:39 | VulnCheck | Dynojet Power Core 2.3.0 contains an unquoted service… | Details |
| CVE-2026-23496 | 2026-01-15 16:58:39 | 2026-01-15 18:26:33 | GitHub_M | Pimcore Web2Print Tools Bundle adds tools for web-to-print… | Details |
| CVE-2025-9014 | 2026-01-15 17:36:06 | 2026-01-15 18:26:28 | TPLink | A Null Pointer Dereference vulnerability exists in the… | Details |
| CVE-2025-70299 | 2026-01-15 00:00:00 | 2026-01-15 18:23:54 | mitre | A heap overflow in the avi_parse_input_file() function of… | Details |
| CVE-2026-20075 | 2026-01-15 16:32:15 | 2026-01-15 18:11:54 | cisco | A vulnerability in the web-based management interface of… | Details |
| CVE-2026-23494 | 2026-01-15 16:52:58 | 2026-01-15 18:08:13 | GitHub_M | Pimcore is an Open Source Data & Experience… | Details |
| CVE-2025-68492 | 2026-01-14 06:27:14 | 2026-01-15 17:24:34 | jpcert | Chainlit versions prior to 2.8.5 contain an authorization… | Details |
| CVE-2026-23495 | 2026-01-15 16:47:07 | 2026-01-15 17:09:32 | GitHub_M | Pimcore's Admin Classic Bundle provides a Backend UI… | Details |
| CVE-2025-70298 | 2026-01-15 00:00:00 | 2026-01-15 17:05:50 | mitre | GPAC v2.4.0 was discovered to contain an out-of-bounds… | Details |
| CVE-2026-22915 | 2026-01-15 13:06:44 | 2026-01-15 17:03:58 | SICK AG | An attacker with low privileges may be able… | Details |
| CVE-2021-47759 | 2026-01-15 15:52:05 | 2026-01-15 17:02:16 | VulnCheck | MTPutty 1.0.1.21 contains a sensitive information disclosure vulnerability… | Details |
| CVE-2025-70656 | 2026-01-15 00:00:00 | 2026-01-15 17:01:05 | mitre | Tenda AX-1806 v1.0.0.1 was discovered to contain a… | Details |
| CVE-2026-22916 | 2026-01-15 13:07:07 | 2026-01-15 16:55:42 | SICK AG | An attacker with low privileges may be able… | Details |
| CVE-2021-47761 | 2026-01-15 15:52:06 | 2026-01-15 16:53:31 | VulnCheck | MilleGPG5 5.7.2 contains a local privilege escalation vulnerability… | Details |
| CVE-2021-47766 | 2026-01-15 15:52:09 | 2026-01-15 16:47:08 | VulnCheck | Kmaleon 1.1.0.205 contains an authenticated SQL injection vulnerability… | Details |
| CVE-2026-22867 | 2026-01-15 16:31:34 | 2026-01-15 16:46:57 | GitHub_M | LaSuite Doc is a collaborative note taking, wiki… | Details |
| CVE-2021-47774 | 2026-01-15 15:52:12 | 2026-01-15 16:46:45 | VulnCheck | Kingdia CD Extractor 3.0.2 contains a buffer overflow… | Details |
| CVE-2026-22265 | 2026-01-15 16:27:52 | 2026-01-15 16:46:11 | GitHub_M | Roxy-WI is a web interface for managing Haproxy,… | Details |
| CVE-2021-47775 | 2026-01-15 15:52:13 | 2026-01-15 16:46:04 | VulnCheck | YouTube Video Grabber, now referred to as YouTube… | Details |
| CVE-2025-66417 | 2026-01-15 16:25:03 | 2026-01-15 16:45:31 | GitHub_M | GLPI is a free asset and IT management… | Details |
| CVE-2025-66292 | 2026-01-15 16:19:55 | 2026-01-15 16:44:51 | GitHub_M | DPanel is an open source server management panel… | Details |
| CVE-2025-70308 | 2026-01-15 00:00:00 | 2026-01-15 16:44:15 | mitre | An out-of-bounds read in the GSF demuxer filter… | Details |
| CVE-2025-70304 | 2026-01-15 00:00:00 | 2026-01-15 16:43:16 | mitre | A buffer overflow in the vobsub_get_subpic_duration() function of… | Details |
| CVE-2025-70310 | 2026-01-15 00:00:00 | 2026-01-15 16:43:01 | mitre | A heap overflow in the vorbis_to_intern() function of… | Details |
| CVE-2021-47781 | 2026-01-15 15:52:14 | 2026-01-15 16:39:37 | VulnCheck | Cmder Console Emulator 1.3.18 contains a buffer overflow… | Details |
| CVE-2021-47784 | 2026-01-15 15:52:15 | 2026-01-15 16:39:13 | VulnCheck | Cyberfox Web Browser 52.9.1 contains a denial of… | Details |
| CVE-2025-70309 | 2026-01-15 00:00:00 | 2026-01-15 16:38:15 | mitre | A stack overflow in the pcmreframe_flush_packet function of… | Details |
| CVE-2026-22914 | 2026-01-15 13:06:19 | 2026-01-15 16:38:01 | SICK AG | An attacker with limited permissions may still be… | Details |
| CVE-2026-22913 | 2026-01-15 13:05:40 | 2026-01-15 16:37:50 | SICK AG | Improper handling of a URL parameter may allow… | Details |
| CVE-2026-22912 | 2026-01-15 13:03:15 | 2026-01-15 16:37:41 | SICK AG | Improper validation of a login parameter may allow… | Details |
| CVE-2026-22862 | 2026-01-13 20:27:10 | 2026-01-15 16:37:30 | GitHub_M | go-ethereum (geth) is a golang execution layer implementation… | Details |
| CVE-2025-68698 | 2026-01-13 19:16:01 | 2026-01-15 16:37:02 | GitHub_M | Jervis is a library for Job DSL plugin… | Details |
| CVE-2025-64516 | 2026-01-15 16:01:03 | 2026-01-15 16:08:18 | GitHub_M | GLPI is a free asset and IT management… | Details |
| CVE-2025-67083 | 2026-01-15 00:00:00 | 2026-01-15 16:08:02 | mitre | Directory traversal vulnerability in InvoicePlane through 1.6.3 allows… | Details |
| CVE-2025-14058 | 2026-01-14 22:20:37 | 2026-01-15 15:56:05 | lenovo | A potential missing authentication vulnerability was reported in… | Details |
| CVE-2025-67079 | 2026-01-15 00:00:00 | 2026-01-15 15:55:11 | mitre | File upload vulnerability in Omnispace Agora Project before… | Details |
| CVE-2025-67082 | 2026-01-15 00:00:00 | 2026-01-15 15:52:21 | mitre | An SQL injection vulnerability in InvoicePlane through 1.6.3… | Details |
| CVE-2025-67081 | 2026-01-15 00:00:00 | 2026-01-15 15:39:02 | mitre | An SQL injection vulnerability in Itflow through 25.06… | Details |
| CVE-2025-13859 | 2026-01-15 13:23:25 | 2026-01-15 15:33:05 | Wordfence | The AffiliateX – Amazon Affiliate Plugin plugin for… | Details |
| CVE-2026-22818 | 2026-01-13 19:49:52 | 2026-01-15 15:29:39 | GitHub_M | Hono is a Web application framework that provides… | Details |
| CVE-2025-70744 | 2026-01-15 00:00:00 | 2026-01-15 15:08:20 | mitre | Tenda AX-1806 v1.0.0.1 was discovered to contain a… | Details |
| CVE-2025-71019 | 2026-01-15 00:00:00 | 2026-01-15 15:04:49 | mitre | Tenda AX-1806 v1.0.0.1 was discovered to contain a… | Details |
| CVE-2026-22032 | 2026-01-08 14:32:06 | 2026-01-15 14:53:09 | GitHub_M | Directus is a real-time API and App dashboard… | Details |
| CVE-2026-22644 | 2026-01-15 13:14:13 | 2026-01-15 14:52:44 | SICK AG | Certain requests pass the authentication token in the… | Details |
| CVE-2026-0600 | 2026-01-14 22:29:09 | 2026-01-15 14:51:42 | Sonatype | Server-Side Request Forgery (SSRF) vulnerability in Sonatype Nexus… | Details |
| CVE-2025-13455 | 2026-01-14 22:18:24 | 2026-01-15 14:49:46 | lenovo | A vulnerability was reported in ThinkPlus configuration software… | Details |
| CVE-2026-0976 | 2026-01-15 12:06:21 | 2026-01-15 14:45:41 | redhat | A flaw was found in Keycloak. This improper… | Details |
| CVE-2026-0601 | 2026-01-14 22:05:17 | 2026-01-15 14:43:42 | Sonatype | A reflected cross-site scripting vulnerability exists in Nexus… | Details |
| CVE-2026-22907 | 2026-01-15 12:59:51 | 2026-01-15 14:43:22 | SICK AG | An attacker may gain unauthorized access to the… | Details |
| CVE-2026-22908 | 2026-01-15 13:00:53 | 2026-01-15 14:42:28 | SICK AG | Uploading unvalidated container images may allow remote attackers… | Details |
| CVE-2026-22645 | 2026-01-15 13:14:38 | 2026-01-15 14:42:15 | SICK AG | The application discloses all used components, versions and… | Details |
| CVE-2026-22909 | 2026-01-15 13:01:27 | 2026-01-15 14:41:39 | SICK AG | Certain system functions may be accessed without proper… | Details |
| CVE-2026-22910 | 2026-01-15 13:02:02 | 2026-01-15 14:40:17 | SICK AG | The device is deployed with weak and publicly… | Details |
| CVE-2026-22911 | 2026-01-15 13:02:29 | 2026-01-15 14:39:02 | SICK AG | Firmware update files may expose password hashes for… | Details |
| CVE-2026-22917 | 2026-01-15 13:07:41 | 2026-01-15 14:38:02 | SICK AG | Improper input handling in a system endpoint may… | Details |
| CVE-2026-22918 | 2026-01-15 13:08:02 | 2026-01-15 14:36:41 | SICK AG | An attacker may exploit missing protection against clickjacking… | Details |
| CVE-2026-22646 | 2026-01-15 13:15:01 | 2026-01-15 14:35:40 | SICK AG | Certain error messages returned by the application expose… | Details |
| CVE-2026-22919 | 2026-01-15 13:08:31 | 2026-01-15 14:34:02 | SICK AG | An attacker with administrative access may inject malicious… | Details |
| CVE-2025-13154 | 2026-01-14 22:16:13 | 2026-01-15 13:44:54 | lenovo | An improper link following vulnerability was reported in… | Details |
| CVE-2025-68963 | 2026-01-14 02:31:32 | 2026-01-14 23:35:36 | huawei | Man-in-the-middle attack vulnerability in the Clone module. Impact: Successful… | Details |
| CVE-2025-68967 | 2026-01-14 02:16:57 | 2026-01-14 23:35:23 | huawei | Vulnerability of improper permission control in the print… | Details |
| CVE-2025-68956 | 2026-01-14 01:56:39 | 2026-01-14 23:35:11 | huawei | Multi-thread race condition vulnerability in the card framework… | Details |
| CVE-2025-68955 | 2026-01-14 01:51:42 | 2026-01-14 23:34:57 | huawei | Multi-thread race condition vulnerability in the card framework… | Details |
| CVE-2025-12053 | 2026-01-14 01:27:11 | 2026-01-14 23:34:48 | Insyde | The drivers in the tool packages use RTL_QUERY_REGISTRY_DIRECT… | Details |
| CVE-2025-12052 | 2026-01-14 01:23:54 | 2026-01-14 23:27:53 | Insyde | The drivers in the tool packages use RTL_QUERY_REGISTRY_DIRECT… | Details |
| CVE-2025-12051 | 2026-01-14 01:17:54 | 2026-01-14 23:27:15 | Insyde | The drivers in the tool packages use RTL_QUERY_REGISTRY_DIRECT… | Details |
| CVE-2025-12050 | 2026-01-14 01:13:33 | 2026-01-14 23:26:28 | Insyde | The drivers in the tool packages use RTL_QUERY_REGISTRY_DIRECT… | Details |
| CVE-2026-22869 | 2026-01-13 20:38:42 | 2026-01-14 23:26:18 | GitHub_M | Eigent is a multi-agent Workforce. A critical security… | Details |
| CVE-2026-22868 | 2026-01-13 20:27:15 | 2026-01-14 23:26:09 | GitHub_M | go-ethereum (geth) is a golang execution layer implementation… | Details |
| CVE-2026-23498 | 2026-01-14 18:31:19 | 2026-01-14 21:15:57 | GitHub_M | Shopware is an open commerce platform. From 6.7.0.0… | Details |
| CVE-2026-23497 | 2026-01-14 18:25:52 | 2026-01-14 21:15:21 | GitHub_M | Frappe Learning Management System (LMS) is a learning… | Details |
| CVE-2026-23492 | 2026-01-14 18:21:55 | 2026-01-14 21:14:46 | GitHub_M | Pimcore is an Open Source Data & Experience… | Details |
| CVE-2026-23477 | 2026-01-14 18:16:05 | 2026-01-14 21:14:08 | GitHub_M | Rocket.Chat is an open-source, secure, fully customizable communications… | Details |
| CVE-2026-22819 | 2026-01-14 18:04:33 | 2026-01-14 21:13:36 | GitHub_M | Outray openSource ngrok alternative. Prior to 0.1.5, this… | Details |
| CVE-2026-23512 | 2026-01-14 20:31:08 | 2026-01-14 21:04:47 | GitHub_M | SumatraPDF is a multi-format reader for Windows. In… | Details |
| CVE-2026-22851 | 2026-01-14 17:43:28 | 2026-01-14 21:03:36 | GitHub_M | FreeRDP is a free implementation of the Remote… | Details |
| CVE-2026-22779 | 2026-01-14 16:49:34 | 2026-01-14 21:01:52 | GitHub_M | BlackSheep is an asynchronous web framework to build… | Details |
| CVE-2025-67835 | 2026-01-14 00:00:00 | 2026-01-14 20:15:34 | mitre | Paessler PRTG Network Monitor before 25.4.114 allows Denial-of-Service… | Details |
| CVE-2025-67834 | 2026-01-14 00:00:00 | 2026-01-14 20:11:32 | mitre | Paessler PRTG Network Monitor before 25.4.114 allows XSS… | Details |
| CVE-2026-22609 | 2026-01-10 01:35:18 | 2026-01-14 19:51:31 | GitHub_M | Fickling is a Python pickling decompiler and static… | Details |
| CVE-2025-71021 | 2026-01-14 00:00:00 | 2026-01-14 19:43:05 | mitre | Tenda AX-1806 v1.0.0.1 was discovered to contain a… | Details |
| CVE-2022-50808 | 2026-01-13 22:51:41 | 2026-01-14 19:21:29 | VulnCheck | CoolerMaster MasterPlus 1.8.5 contains an unquoted service path… | Details |
| CVE-2022-50902 | 2026-01-13 22:51:46 | 2026-01-14 19:20:35 | VulnCheck | Wondershare FamiSafe 1.0 contains an unquoted service path… | Details |
| CVE-2022-50904 | 2026-01-13 22:51:47 | 2026-01-14 19:20:24 | VulnCheck | Wondershare UBackit 2.0.5 contains an unquoted service path… | Details |
| CVE-2022-50922 | 2026-01-13 22:51:55 | 2026-01-14 19:19:58 | VulnCheck | Audio Conversion Wizard v2.01 contains a buffer overflow… | Details |
| CVE-2022-50926 | 2026-01-13 22:51:57 | 2026-01-14 19:19:35 | VulnCheck | WAGO 750-8212 PFC200 G2 2ETH RS firmware contains… | Details |
| CVE-2022-50935 | 2026-01-13 22:52:01 | 2026-01-14 19:19:08 | VulnCheck | Flame II HSPA USB Modem contains an unquoted… | Details |
| CVE-2023-54334 | 2026-01-13 22:52:07 | 2026-01-14 19:18:16 | VulnCheck | Explorer32++ 1.3.5.531 contains a buffer overflow vulnerability in… | Details |
| CVE-2023-54336 | 2026-01-13 22:52:08 | 2026-01-14 19:18:05 | VulnCheck | Mediconta 3.7.27 contains an unquoted service path vulnerability… | Details |
| CVE-2025-14556 | 2026-01-14 18:38:21 | 2026-01-14 19:16:19 | drupal | Improper Neutralization of Input During Web Page Generation… | Details |
| CVE-2025-14557 | 2026-01-14 18:40:34 | 2026-01-14 19:14:30 | drupal | Improper Neutralization of Input During Web Page Generation… | Details |
| CVE-2026-22817 | 2026-01-13 19:49:55 | 2026-01-14 19:12:35 | GitHub_M | Hono is a Web application framework that provides… | Details |
| CVE-2025-70747 | 2026-01-14 00:00:00 | 2026-01-14 19:11:58 | mitre | Tenda AX-1806 v1.0.0.1 was discovered to contain a… | Details |
| CVE-2025-68658 | 2026-01-13 21:25:57 | 2026-01-14 19:11:13 | GitHub_M | Open Source Point of Sale (opensourcepos) is a… | Details |
| CVE-2025-62487 | 2026-01-09 21:17:37 | 2026-01-14 19:10:00 | Palantir | On October 1, 2025, Palantir discovered that images… | Details |
| CVE-2025-67833 | 2026-01-14 00:00:00 | 2026-01-14 19:07:08 | mitre | Paessler PRTG Network Monitor before 25.4.114 allows XSS… | Details |
| CVE-2025-37168 | 2026-01-13 20:03:08 | 2026-01-14 18:56:26 | hpe | Arbitrary file deletion vulnerability have been identified in… | Details |
| CVE-2026-21302 | 2026-01-13 20:20:16 | 2026-01-14 18:53:08 | adobe | Substance3D - Modeler versions 1.22.4 and earlier are… | Details |
| CVE-2026-21300 | 2026-01-13 20:20:18 | 2026-01-14 18:52:48 | adobe | Substance3D - Modeler versions 1.22.4 and earlier are… | Details |
| CVE-2026-21303 | 2026-01-13 20:20:17 | 2026-01-14 18:52:30 | adobe | Substance3D - Modeler versions 1.22.4 and earlier are… | Details |
| CVE-2022-50807 | 2026-01-13 22:51:40 | 2026-01-14 18:51:30 | VulnCheck | This candidate was withdrawn by its CNA. Further… | Details |
| CVE-2022-50934 | 2026-01-13 22:52:00 | 2026-01-14 18:51:13 | VulnCheck | This candidate was withdrawn by its CNA. Further… | Details |
| CVE-2026-22814 | 2026-01-13 19:42:14 | 2026-01-14 17:26:12 | GitHub_M | @adonisjs/lucid is an SQL ORM for AdonisJS built… | Details |
| CVE-2026-22708 | 2026-01-14 16:43:54 | 2026-01-14 16:59:53 | GitHub_M | Cursor is a code editor built for programming… | Details |
| CVE-2026-22694 | 2026-01-14 16:32:36 | 2026-01-14 16:59:24 | GitHub_M | AliasVault is a privacy-first password manager with built-in… | Details |
| CVE-2026-21889 | 2026-01-14 16:28:30 | 2026-01-14 16:58:35 | GitHub_M | Weblate is a web based localization tool. Prior… | Details |
| CVE-2026-23478 | 2026-01-13 21:37:35 | 2026-01-14 16:56:25 | GitHub_M | Cal.com is open-source scheduling software. From 3.1.6 to… | Details |
| CVE-2025-37185 | 2026-01-14 16:20:30 | 2026-01-14 16:47:13 | hpe | Vulnerabilities in the web-based management interface of EdgeConnect… | Details |
| CVE-2025-37181 | 2026-01-14 16:26:00 | 2026-01-14 16:44:42 | hpe | Vulnerabilities in the web-based management interface of EdgeConnect… | Details |
| CVE-2025-37183 | 2026-01-14 16:18:14 | 2026-01-14 16:44:25 | hpe | Vulnerabilities in the web-based management interface of EdgeConnect… | Details |
| CVE-2025-37182 | 2026-01-14 16:17:12 | 2026-01-14 16:40:21 | hpe | Vulnerabilities in the web-based management interface of EdgeConnect… | Details |
| CVE-2025-70968 | 2026-01-14 00:00:00 | 2026-01-14 16:31:37 | mitre | FreeImage 3.18.0 contains a Use After Free in… | Details |
| CVE-2026-0529 | 2026-01-14 10:09:02 | 2026-01-14 16:31:01 | elastic | Improper Validation of Array Index (CWE-129) in Packetbeat’s… | Details |
| CVE-2022-50909 | 2026-01-13 22:51:50 | 2026-01-14 16:28:12 | VulnCheck | Algo 8028 Control Panel version 3.3.3 contains a… | Details |
| CVE-2022-50913 | 2026-01-13 22:51:51 | 2026-01-14 16:12:57 | VulnCheck | ITeC ITeCProteccioAppServer contains an unquoted service path vulnerability… | Details |
| CVE-2025-67859 | 2026-01-14 11:34:12 | 2026-01-14 16:08:41 | suse | A Improper Authentication vulnerability in TLP allows local… | Details |
| CVE-2025-66005 | 2026-01-14 11:53:49 | 2026-01-14 15:46:07 | suse | Lack of authorization of the InputManager D-Bus interface… | Details |
| CVE-2022-50918 | 2026-01-13 22:51:53 | 2026-01-14 15:40:55 | VulnCheck | VIVE Runtime Service 1.0.0.4 contains an unquoted service… | Details |
| CVE-2022-50929 | 2026-01-13 22:51:58 | 2026-01-14 15:35:25 | VulnCheck | Connectify Hotspot 2018 contains an unquoted service path… | Details |
| CVE-2022-50930 | 2026-01-13 22:51:58 | 2026-01-14 15:29:51 | VulnCheck | Emerson PAC Machine Edition 9.80 contains an unquoted… | Details |
| CVE-2022-50938 | 2026-01-13 22:52:03 | 2026-01-14 15:24:09 | VulnCheck | CONTPAQi AdminPAQ 14.0.0 contains an unquoted service path… | Details |
| CVE-2026-22820 | 2026-01-14 15:06:51 | 2026-01-14 15:19:46 | GitHub_M | Outray openSource ngrok alternative. Prior to 0.1.5, a… | Details |
| CVE-2025-58409 | 2026-01-13 16:37:46 | 2026-01-14 15:04:14 | imaginationtech | Software installed and run as a non-privileged user… | Details |
| CVE-2026-22236 | 2026-01-14 14:34:14 | 2026-01-14 15:01:50 | MHV | The vulnerability exists in BLUVOYIX due to improper… | Details |
| CVE-2026-22237 | 2026-01-14 14:36:47 | 2026-01-14 15:00:36 | MHV | The vulnerability exists in BLUVOYIX due to the… | Details |
| CVE-2026-22238 | 2026-01-14 14:38:55 | 2026-01-14 15:00:10 | MHV | The vulnerability exists in BLUVOYIX due to improper… | Details |
| CVE-2026-22240 | 2026-01-14 14:42:09 | 2026-01-14 14:58:59 | MHV | The vulnerability exists in BLUVOYIX due to an… | Details |
| CVE-2025-56226 | 2026-01-14 00:00:00 | 2026-01-14 14:57:00 | mitre | Libsndfile <=1.2.2 contains a memory leak vulnerability in… | Details |
| CVE-2026-22239 | 2026-01-14 14:40:20 | 2026-01-14 14:56:01 | MHV | The vulnerability exists in BLUVOYIX due to design… | Details |
| CVE-2025-14338 | 2026-01-14 11:55:31 | 2026-01-14 14:53:44 | suse | Polkit authentication dis isabled by default and a… | Details |
| CVE-2025-68957 | 2026-01-14 01:58:05 | 2026-01-14 14:53:00 | huawei | Multi-thread race condition vulnerability in the card framework… | Details |
| CVE-2025-68958 | 2026-01-14 01:59:41 | 2026-01-14 14:51:33 | huawei | Multi-thread race condition vulnerability in the card framework… | Details |
| CVE-2025-68960 | 2026-01-14 02:01:03 | 2026-01-14 14:51:07 | huawei | Multi-thread race condition vulnerability in the video framework… | Details |
| CVE-2025-9142 | 2026-01-14 14:30:48 | 2026-01-14 14:50:03 | checkpoint | A local user can trigger Harmony SASE Windows… | Details |
| CVE-2025-69991 | 2026-01-13 00:00:00 | 2026-01-14 14:49:09 | mitre | phpgurukul News Portal Project V4.1 is vulnerable to… | Details |
| CVE-2025-69992 | 2026-01-13 00:00:00 | 2026-01-14 14:47:29 | mitre | phpgurukul News Portal Project V4.1 has File Upload… | Details |
| CVE-2025-68961 | 2026-01-14 02:02:42 | 2026-01-14 14:44:55 | huawei | Multi-thread race condition vulnerability in the camera framework… | Details |
| CVE-2025-58411 | 2026-01-13 16:41:51 | 2026-01-14 14:41:14 | imaginationtech | Software installed and run as a non-privileged user… | Details |
| CVE-2025-25652 | 2026-01-13 00:00:00 | 2026-01-14 14:40:37 | mitre | In Eptura Archibus 2024.03.01.109, the "Run script" and… | Details |
| CVE-2025-25176 | 2026-01-13 16:27:40 | 2026-01-14 14:38:22 | imaginationtech | Intermediate register values of secure workloads can be… | Details |
| CVE-2025-10865 | 2026-01-13 17:26:45 | 2026-01-14 14:36:47 | imaginationtech | Software installed and run as a non-privileged user… | Details |
| CVE-2026-0716 | 2026-01-13 23:07:06 | 2026-01-14 14:36:02 | redhat | A flaw was found in libsoup’s WebSocket frame… | Details |
| CVE-2025-68962 | 2026-01-14 02:04:11 | 2026-01-14 14:34:24 | huawei | Multi-thread race condition vulnerability in the camera framework… | Details |
| CVE-2025-68968 | 2026-01-14 02:05:43 | 2026-01-14 14:33:59 | huawei | Double free vulnerability in the multi-mode input module. Impact:… | Details |
| CVE-2025-68969 | 2026-01-14 02:07:24 | 2026-01-14 14:33:28 | huawei | Multi-thread race condition vulnerability in the thermal management… | Details |
| CVE-2026-22686 | 2026-01-13 23:11:49 | 2026-01-14 14:33:18 | GitHub_M | Enclave is a secure JavaScript sandbox designed for… | Details |
| CVE-2025-68964 | 2026-01-14 02:11:25 | 2026-01-14 14:32:23 | huawei | Data verification vulnerability in the HiView module. Impact: Successful… | Details |
| CVE-2025-68965 | 2026-01-14 02:13:06 | 2026-01-14 14:30:28 | huawei | Permission control vulnerability in the Notepad module. Impact: Successful… | Details |
| CVE-2025-69990 | 2026-01-13 00:00:00 | 2026-01-14 14:30:04 | mitre | phpgurukul News Portal Project V4.1 has an Arbitrary… | Details |
| CVE-2025-68966 | 2026-01-14 02:14:40 | 2026-01-14 14:29:54 | huawei | Permission control vulnerability in the Notepad module. Impact: Successful… | Details |
| CVE-2025-68970 | 2026-01-14 02:35:43 | 2026-01-14 14:21:19 | huawei | Permission verification bypass vulnerability in the media library… | Details |
| CVE-2025-68959 | 2026-01-14 02:38:54 | 2026-01-14 14:20:26 | huawei | Permission verification bypass vulnerability in the media library… | Details |
| CVE-2026-22718 | 2026-01-14 05:10:58 | 2026-01-14 14:19:10 | vmware | The VSCode extension for Spring CLI are vulnerable… | Details |
| CVE-2025-13175 | 2026-01-14 12:19:06 | 2026-01-14 13:58:17 | CERT-PL | Y Soft SafeQ 6 renders the Workflow Connector… | Details |
| CVE-2025-14317 | 2026-01-14 13:28:02 | 2026-01-14 13:57:08 | CERT-PL | In Crazy Bubble Tea mobile application authenticated attacker… | Details |
| CVE-2025-67685 | 2026-01-13 16:32:29 | 2026-01-14 09:19:01 | fortinet | A Server-Side Request Forgery (SSRF) vulnerability [CWE-918] vulnerability… | Details |
| CVE-2025-58693 | 2026-01-13 16:32:29 | 2026-01-14 09:16:23 | fortinet | An improper limitation of a pathname to a… | Details |
| CVE-2025-47855 | 2026-01-13 16:32:29 | 2026-01-14 09:16:17 | fortinet | An exposure of sensitive information to an unauthorized… | Details |
| CVE-2025-59922 | 2026-01-13 16:32:28 | 2026-01-14 09:16:14 | fortinet | An improper neutralization of special elements used in… | Details |
| CVE-2026-22607 | 2026-01-10 01:35:04 | 2026-01-13 21:49:38 | GitHub_M | Fickling is a Python pickling decompiler and static… | Details |
| CVE-2026-22697 | 2026-01-10 00:31:11 | 2026-01-13 21:48:38 | GitHub_M | CryptoLib provides a software-only solution using the CCSDS… | Details |
| CVE-2026-22026 | 2026-01-10 00:22:35 | 2026-01-13 21:47:52 | GitHub_M | CryptoLib provides a software-only solution using the CCSDS… | Details |
| CVE-2026-21308 | 2026-01-13 20:07:01 | 2026-01-13 21:47:08 | adobe | Substance3D - Designer versions 15.0.3 and earlier are… | Details |
| CVE-2026-22861 | 2026-01-13 20:20:39 | 2026-01-13 21:45:47 | GitHub_M | iccDEV provides a set of libraries and tools… | Details |
| CVE-2026-21301 | 2026-01-13 20:20:20 | 2026-01-13 21:44:43 | adobe | Substance3D - Modeler versions 1.22.4 and earlier are… | Details |
| CVE-2025-8090 | 2026-01-13 16:36:21 | 2026-01-13 21:41:51 | blackberry | Null pointer dereference in the MsgRegisterEvent() system call… | Details |
| CVE-2026-21307 | 2026-01-13 20:07:00 | 2026-01-13 21:31:37 | adobe | Substance3D - Designer versions 15.0.3 and earlier are… | Details |
| CVE-2026-0543 | 2026-01-13 21:10:38 | 2026-01-13 21:25:59 | elastic | Improper Input Validation (CWE-20) in Kibana's Email Connector… | Details |
| CVE-2026-0531 | 2026-01-13 21:05:51 | 2026-01-13 21:25:44 | elastic | Allocation of Resources Without Limits or Throttling (CWE-770)… | Details |
| CVE-2026-0530 | 2026-01-13 21:03:13 | 2026-01-13 21:25:28 | elastic | Allocation of Resources Without Limits or Throttling (CWE-770)… | Details |
| CVE-2026-0528 | 2026-01-13 21:02:18 | 2026-01-13 21:25:10 | elastic | Improper Validation of Array Index (CWE-129) exists in… | Details |
| CVE-2026-22871 | 2026-01-13 20:46:57 | 2026-01-13 21:24:07 | GitHub_M | GuardDog is a CLI tool to identify malicious… | Details |
| CVE-2026-22870 | 2026-01-13 20:43:43 | 2026-01-13 21:23:53 | GitHub_M | GuardDog is a CLI tool to identify malicious… | Details |
| CVE-2025-37177 | 2026-01-13 20:08:06 | 2026-01-13 20:54:14 | hpe | An arbitrary file deletion vulnerability has been identified… | Details |
| CVE-2025-37178 | 2026-01-13 20:08:23 | 2026-01-13 20:46:35 | hpe | Multiple out-of-bounds read vulnerabilities were identified in a… | Details |
| CVE-2025-37179 | 2026-01-13 20:08:58 | 2026-01-13 20:32:08 | hpe | Multiple out-of-bounds read vulnerabilities were identified in a… | Details |
| CVE-2026-22025 | 2026-01-10 00:20:59 | 2026-01-13 20:19:08 | GitHub_M | CryptoLib provides a software-only solution using the CCSDS… | Details |
| CVE-2026-22024 | 2026-01-10 00:19:16 | 2026-01-13 20:08:55 | GitHub_M | CryptoLib provides a software-only solution using the CCSDS… | Details |
| CVE-2026-22600 | 2026-01-10 01:06:00 | 2026-01-13 20:07:53 | GitHub_M | OpenProject is an open-source, web-based project management software.… | Details |
| CVE-2026-22602 | 2026-01-10 01:06:12 | 2026-01-13 20:07:25 | GitHub_M | OpenProject is an open-source, web-based project management software.… | Details |
| CVE-2025-68271 | 2026-01-13 18:32:21 | 2026-01-13 20:00:20 | GitHub_M | OpenC3 COSMOS provides the functionality needed to send… | Details |
| CVE-2026-22603 | 2026-01-10 01:06:28 | 2026-01-13 19:59:34 | GitHub_M | OpenProject is an open-source, web-based project management software.… | Details |
| CVE-2026-22606 | 2026-01-10 01:35:00 | 2026-01-13 19:58:14 | GitHub_M | Fickling is a Python pickling decompiler and static… | Details |
| CVE-2026-22608 | 2026-01-10 01:35:11 | 2026-01-13 19:57:12 | GitHub_M | Fickling is a Python pickling decompiler and static… | Details |
| CVE-2025-68931 | 2026-01-13 19:17:26 | 2026-01-13 19:56:21 | GitHub_M | Jervis is a library for Job DSL plugin… | Details |
| CVE-2025-68701 | 2026-01-13 19:21:30 | 2026-01-13 19:55:56 | GitHub_M | Jervis is a library for Job DSL plugin… | Details |
| CVE-2025-68702 | 2026-01-13 19:26:32 | 2026-01-13 19:55:16 | GitHub_M | Jervis is a library for Job DSL plugin… | Details |
| CVE-2025-68703 | 2026-01-13 19:27:33 | 2026-01-13 19:54:40 | GitHub_M | Jervis is a library for Job DSL plugin… | Details |
| CVE-2025-68704 | 2026-01-13 19:29:06 | 2026-01-13 19:54:12 | GitHub_M | Jervis is a library for Job DSL plugin… | Details |
| CVE-2025-68925 | 2026-01-13 19:30:05 | 2026-01-13 19:53:48 | GitHub_M | Jervis is a library for Job DSL plugin… | Details |
| CVE-2026-22809 | 2026-01-13 19:36:21 | 2026-01-13 19:47:24 | GitHub_M | tarteaucitron.js is a compliant and accessible cookie banner.… | Details |
| CVE-2026-22791 | 2026-01-13 19:06:41 | 2026-01-13 19:44:53 | GitHub_M | openCryptoki is a PKCS#11 library and tools for… | Details |
| CVE-2026-22789 | 2026-01-12 21:52:11 | 2026-01-13 19:41:31 | GitHub_M | WebErpMesv2 is a Resource Management and Manufacturing execution… | Details |
| CVE-2026-22801 | 2026-01-12 22:57:58 | 2026-01-13 19:37:45 | GitHub_M | LIBPNG is a reference library for use in… | Details |
| CVE-2026-22786 | 2026-01-12 21:09:01 | 2026-01-13 19:15:06 | GitHub_M | Gin-vue-admin is a backstage management system based on… | Details |
| CVE-2026-0503 | 2026-01-13 01:14:20 | 2026-01-13 19:09:43 | sap | Due to missing authorization check in the SAP… | Details |
| CVE-2026-22788 | 2026-01-12 21:40:11 | 2026-01-13 19:08:34 | GitHub_M | WebErpMesv2 is a Resource Management and Manufacturing execution… | Details |
| CVE-2026-22794 | 2026-01-12 21:54:52 | 2026-01-13 19:08:29 | GitHub_M | Appsmith is a platform to build admin panels,… | Details |
| CVE-2026-22798 | 2026-01-12 22:00:30 | 2026-01-13 19:08:22 | GitHub_M | hermes is an implementation of the HERMES workflow… | Details |
| CVE-2026-22799 | 2026-01-12 22:05:01 | 2026-01-13 19:08:11 | GitHub_M | Emlog is an open source website building system.… | Details |
| CVE-2026-22800 | 2026-01-12 22:09:56 | 2026-01-13 19:08:05 | GitHub_M | PILOS (Platform for Interactive Live-Online Seminars) is a… | Details |
| CVE-2026-22804 | 2026-01-12 22:14:03 | 2026-01-13 19:07:57 | GitHub_M | Termix is a web-based server management platform with… | Details |
| CVE-2026-22805 | 2026-01-12 22:36:35 | 2026-01-13 19:07:47 | GitHub_M | Metabase is an open-source data analytics platform. Prior… | Details |
| CVE-2026-22812 | 2026-01-12 22:49:18 | 2026-01-13 19:07:37 | GitHub_M | OpenCode is an open source AI coding agent.… | Details |
| CVE-2026-22813 | 2026-01-12 22:52:35 | 2026-01-13 19:07:23 | GitHub_M | OpenCode is an open source AI coding agent.… | Details |
| CVE-2026-22695 | 2026-01-12 22:55:40 | 2026-01-13 19:07:10 | GitHub_M | LIBPNG is a reference library for use in… | Details |
| CVE-2026-0493 | 2026-01-13 01:13:06 | 2026-01-13 19:07:00 | sap | Due to a Cross-Site Request Forgery (CSRF) vulnerability… | Details |
| CVE-2026-0504 | 2026-01-13 01:14:27 | 2026-01-13 19:06:11 | sap | Due to insufficient input handling, the SAP Identity… | Details |
| CVE-2026-21278 | 2026-01-13 18:35:36 | 2026-01-13 19:06:06 | adobe | InDesign Desktop versions 21.0, 19.5.5 and earlier are… | Details |
| CVE-2026-21288 | 2026-01-13 18:41:20 | 2026-01-13 19:02:39 | adobe | Illustrator versions 29.8.3, 30.0 and earlier are affected… | Details |
| CVE-2025-68949 | 2026-01-13 18:43:20 | 2026-01-13 19:00:47 | GitHub_M | n8n is an open source workflow automation platform.… | Details |
| CVE-2026-0506 | 2026-01-13 01:14:33 | 2026-01-13 18:58:20 | sap | Due to a Missing Authorization Check vulnerability in… | Details |
| CVE-2026-0510 | 2026-01-13 01:15:43 | 2026-01-13 18:26:48 | sap | The User Management Engine (UME) in NetWeaver Application… | Details |
| CVE-2025-71023 | 2026-01-13 00:00:00 | 2026-01-13 18:17:44 | mitre | Tenda AX-3 v16.03.12.10_CN was discovered to contain a… | Details |
| CVE-2025-40942 | 2026-01-13 09:44:04 | 2026-01-13 17:36:00 | siemens | A vulnerability has been identified in TeleControl Server… | Details |
| CVE-2026-22050 | 2026-01-12 17:15:07 | 2026-01-13 17:30:51 | netapp | ONTAP versions 9.16.1 prior to 9.16.1P9 and 9.17.1… | Details |
| CVE-2026-22023 | 2026-01-10 00:17:03 | 2026-01-13 17:17:39 | GitHub_M | CryptoLib provides a software-only solution using the CCSDS… | Details |
| CVE-2026-21900 | 2026-01-10 00:14:33 | 2026-01-13 17:16:34 | GitHub_M | CryptoLib provides a software-only solution using the CCSDS… | Details |
| CVE-2025-46684 | 2026-01-13 16:19:33 | 2026-01-13 16:45:41 | dell | Dell SupportAssist OS Recovery, versions prior to 5.5.15.1,… | Details |
| CVE-2025-59020 | 2026-01-13 11:53:02 | 2026-01-13 16:43:00 | TYPO3 | By exploiting the defVals parameter, attackers could bypass… | Details |
| CVE-2026-0494 | 2026-01-13 01:13:14 | 2026-01-13 16:19:32 | sap | Under certain conditions SAP Fiori App Intercompany Balance… | Details |
| CVE-2026-0495 | 2026-01-13 01:13:20 | 2026-01-13 15:15:41 | sap | SAP Fiori App Intercompany Balance Reconciliation allows an… | Details |
| CVE-2026-0496 | 2026-01-13 01:13:28 | 2026-01-13 15:15:21 | sap | SAP Fiori App Intercompany Balance Reconciliation allows an… | Details |
| CVE-2026-0497 | 2026-01-13 01:13:35 | 2026-01-13 15:15:00 | sap | SAP Product Designer Web UI of Business Server… | Details |
| CVE-2026-22704 | 2026-01-10 06:22:45 | 2026-01-13 15:09:03 | GitHub_M | HAX CMS helps manage microsite universe with PHP… | Details |
| CVE-2026-0499 | 2026-01-13 01:13:47 | 2026-01-13 14:47:20 | sap | SAP NetWeaver Enterprise Portal allows an unauthenticated attacker… | Details |
| CVE-2026-0500 | 2026-01-13 01:13:57 | 2026-01-13 14:45:07 | sap | Due to the usage of vulnerable third party… | Details |
| CVE-2025-59021 | 2026-01-13 11:53:25 | 2026-01-13 14:44:44 | TYPO3 | Backend users with access to the redirects module… | Details |
| CVE-2026-0513 | 2026-01-13 01:15:57 | 2026-01-13 14:40:20 | sap | Due to an Open Redirect Vulnerability in SAP… | Details |
| CVE-2026-0514 | 2026-01-13 01:16:03 | 2026-01-13 14:38:19 | sap | Due to a Cross-Site Scripting (XSS) vulnerability in… | Details |
| CVE-2025-59022 | 2026-01-13 11:53:45 | 2026-01-13 14:21:59 | TYPO3 | Backend users who had access to the recycler… | Details |
| CVE-2025-11250 | 2026-01-13 13:35:18 | 2026-01-13 14:19:27 | Zohocorp | Zohocorp ManageEngine ADSelfService Plus versions before 6519 are… | Details |
| CVE-2025-9427 | 2026-01-13 13:39:02 | 2026-01-13 14:16:45 | NCSC-FI | Improper Neutralization of Input During Web Page Generation… | Details |
| CVE-2026-0859 | 2026-01-13 11:54:11 | 2026-01-13 14:12:12 | TYPO3 | TYPO3's mail‑file spool deserialization flaw lets local users… | Details |
| CVE-2025-9435 | 2026-01-13 13:14:03 | 2026-01-13 14:01:24 | Zohocorp | Zohocorp ManageEngine ADManager Plus versions below 7230 are vulnerable to Path… | Details |
| CVE-2025-67146 | 2026-01-12 00:00:00 | 2026-01-12 21:25:47 | mitre | Multiple SQL Injection vulnerabilities exist in AbhishekMali21 GYM-MANAGEMENT-SYSTEM… | Details |
| CVE-2025-67147 | 2026-01-12 00:00:00 | 2026-01-12 21:21:52 | mitre | Multiple SQL Injection vulnerabilities exist in amansuryawanshi Gym-Management-System-PHP… | Details |
| CVE-2026-22772 | 2026-01-12 20:58:53 | 2026-01-12 21:17:31 | GitHub_M | Fulcio is a certificate authority for issuing code… | Details |
| CVE-2021-41074 | 2026-01-12 00:00:00 | 2026-01-12 20:24:00 | mitre | A CSRF issue in index.php in QloApps hotel… | Details |
| CVE-2026-21899 | 2026-01-10 00:11:18 | 2026-01-12 20:23:08 | GitHub_M | CryptoLib provides a software-only solution using the CCSDS… | Details |
| CVE-2026-21898 | 2026-01-10 00:10:29 | 2026-01-12 20:22:05 | GitHub_M | CryptoLib provides a software-only solution using the CCSDS… | Details |
| CVE-2026-21897 | 2026-01-10 00:07:16 | 2026-01-12 20:21:22 | GitHub_M | CryptoLib provides a software-only solution using the CCSDS… | Details |
| CVE-2023-36331 | 2026-01-12 00:00:00 | 2026-01-12 20:12:16 | mitre | Incorrect access control in the /member/orderList API of… | Details |
| CVE-2025-51567 | 2026-01-12 00:00:00 | 2026-01-12 20:06:58 | mitre | A SQL Injection was found in the /exam/user/profile.php… | Details |
| CVE-2025-66802 | 2026-01-12 00:00:00 | 2026-01-12 19:37:06 | mitre | Sourcecodester Covid-19 Contact Tracing System 1.0 is vulnerable… | Details |
| CVE-2026-22601 | 2026-01-10 01:06:05 | 2026-01-12 19:16:44 | GitHub_M | OpenProject is an open-source, web-based project management software.… | Details |
| CVE-2026-22604 | 2026-01-10 01:07:02 | 2026-01-12 19:16:12 | GitHub_M | OpenProject is an open-source, web-based project management software.… | Details |
| CVE-2026-22605 | 2026-01-10 01:07:10 | 2026-01-12 19:15:27 | GitHub_M | OpenProject is an open-source, web-based project management software.… | Details |
| CVE-2025-53470 | 2026-01-10 09:46:35 | 2026-01-12 19:12:52 | apache | Out-of-bounds Read vulnerability in Apache NimBLE HCI… | Details |
| CVE-2025-52435 | 2026-01-10 09:47:10 | 2026-01-12 19:07:07 | apache | J2EE Misconfiguration: Data Transmission Without Encryption vulnerability in… | Details |
| CVE-2026-22785 | 2026-01-12 18:43:16 | 2026-01-12 18:56:50 | GitHub_M | orval generates type-safe JS clients (TypeScript) from any… | Details |
| CVE-2026-22784 | 2026-01-12 18:37:55 | 2026-01-12 18:55:55 | GitHub_M | Lychee is a free, open-source photo-management tool. Prior… | Details |
| CVE-2026-22783 | 2026-01-12 18:27:38 | 2026-01-12 18:52:04 | GitHub_M | Iris is a web collaborative platform that helps… | Details |
| CVE-2026-22781 | 2026-01-12 18:23:00 | 2026-01-12 18:50:57 | GitHub_M | TinyWeb is a web server (HTTP, HTTPS) written… | Details |
| CVE-2026-22776 | 2026-01-12 18:18:01 | 2026-01-12 18:49:59 | GitHub_M | cpp-httplib is a C++11 single-file header-only cross platform… | Details |
| CVE-2026-22252 | 2026-01-12 18:01:48 | 2026-01-12 18:48:33 | GitHub_M | LibreChat is a ChatGPT clone with additional features.… | Details |
| CVE-2026-22251 | 2026-01-12 17:55:09 | 2026-01-12 18:43:53 | GitHub_M | wlc is a Weblate command-line client using Weblate's… | Details |
| CVE-2025-68471 | 2026-01-12 17:39:57 | 2026-01-12 18:42:26 | GitHub_M | Avahi is a system which facilitates service discovery… | Details |
| CVE-2025-68468 | 2026-01-12 17:38:10 | 2026-01-12 18:41:50 | GitHub_M | Avahi is a system which facilitates service discovery… | Details |
| CVE-2025-68276 | 2026-01-12 17:31:49 | 2026-01-12 18:41:22 | GitHub_M | Avahi is a system which facilitates service discovery… | Details |
| CVE-2025-68657 | 2026-01-12 17:26:51 | 2026-01-12 18:40:25 | GitHub_M | Espressif ESP-IDF USB Host HID (Human Interface Device)… | Details |
| CVE-2025-68656 | 2026-01-12 17:23:19 | 2026-01-12 18:39:37 | GitHub_M | Espressif ESP-IDF USB Host HID (Human Interface Device)… | Details |
| CVE-2025-68622 | 2026-01-12 17:08:22 | 2026-01-12 18:37:35 | GitHub_M | Espressif ESP-IDF USB Host UVC Class Driver allows… | Details |
| CVE-2026-21858 | 2026-01-07 23:57:52 | 2026-01-12 18:37:27 | GitHub_M | n8n is an open source workflow automation platform.… | Details |
| CVE-2025-66689 | 2026-01-12 00:00:00 | 2026-01-12 18:34:48 | mitre | A path traversal vulnerability exists in Zen MCP… | Details |
| CVE-2025-66939 | 2026-01-12 00:00:00 | 2026-01-12 18:25:32 | mitre | Cross Site Scripting vulnerability in 66biolinks by AltumCode… | Details |
| CVE-2026-22612 | 2026-01-10 01:35:25 | 2026-01-12 18:18:29 | GitHub_M | Fickling is a Python pickling decompiler and static… | Details |
| CVE-2025-68470 | 2026-01-10 02:39:41 | 2026-01-12 18:17:43 | GitHub_M | React Router is a router for React. In… | Details |
| CVE-2026-22033 | 2026-01-12 17:47:34 | 2026-01-12 18:12:36 | GitHub_M | Label Studio is a multi-type data labeling and… | Details |
| CVE-2026-22030 | 2026-01-10 02:42:44 | 2026-01-12 18:09:39 | GitHub_M | React Router is a router for React. In… | Details |
| CVE-2026-22250 | 2026-01-12 17:52:01 | 2026-01-12 18:07:33 | GitHub_M | wlc is a Weblate command-line client using Weblate's… | Details |
| CVE-2026-22594 | 2026-01-10 02:56:47 | 2026-01-12 17:53:57 | GitHub_M | Ghost is a Node.js content management system. In… | Details |
| CVE-2026-22595 | 2026-01-10 02:57:08 | 2026-01-12 17:51:41 | GitHub_M | Ghost is a Node.js content management system. In… | Details |
| CVE-2026-22596 | 2026-01-10 02:57:19 | 2026-01-12 17:37:41 | GitHub_M | Ghost is a Node.js content management system. In… | Details |
| CVE-2025-65090 | 2026-01-10 03:05:06 | 2026-01-12 17:36:38 | GitHub_M | XWiki Full Calendar Macro displays objects from the… | Details |
| CVE-2025-65091 | 2026-01-10 03:06:16 | 2026-01-12 17:35:19 | GitHub_M | XWiki Full Calendar Macro displays objects from the… | Details |
| CVE-2025-61676 | 2026-01-10 03:14:00 | 2026-01-12 17:34:13 | GitHub_M | October is a Content Management System (CMS) and… | Details |
| CVE-2025-61674 | 2026-01-10 03:14:11 | 2026-01-12 17:33:33 | GitHub_M | October is a Content Management System (CMS) and… | Details |
| CVE-2026-22589 | 2026-01-10 03:17:58 | 2026-01-12 17:32:46 | GitHub_M | Spree is an open source e-commerce solution built… | Details |
| CVE-2026-22688 | 2026-01-10 03:41:59 | 2026-01-12 17:20:43 | GitHub_M | WeKnora is an LLM-powered framework designed for deep… | Details |
| CVE-2026-22690 | 2026-01-10 04:41:20 | 2026-01-12 17:07:00 | GitHub_M | pypdf is a free and open-source pure-python PDF… | Details |
| CVE-2025-53477 | 2026-01-10 09:45:27 | 2026-01-12 16:54:48 | apache | NULL Pointer Dereference vulnerability in Apache Nimble. Missing validation… | Details |
| CVE-2025-46068 | 2026-01-12 00:00:00 | 2026-01-12 16:53:21 | mitre | An issue in Automai Director v.25.2.0 allows a… | Details |
| CVE-2025-67813 | 2026-01-12 00:00:00 | 2026-01-12 16:52:58 | mitre | Quest KACE Desktop Authority through 11.3.1 has Insecure… | Details |
| CVE-2025-46070 | 2026-01-12 00:00:00 | 2026-01-12 16:51:39 | mitre | An issue in Automai BotManager v.25.2.0 allows a… | Details |
| CVE-2025-13457 | 2026-01-10 03:21:01 | 2026-01-12 16:49:14 | Wordfence | The WooCommerce Square plugin for WordPress is vulnerable… | Details |
| CVE-2026-22691 | 2026-01-10 04:46:12 | 2026-01-12 16:48:53 | GitHub_M | pypdf is a free and open-source pure-python PDF… | Details |
| CVE-2026-22698 | 2026-01-10 05:17:19 | 2026-01-12 16:48:30 | GitHub_M | RustCrypto: Elliptic Curves is general purpose Elliptic Curve… | Details |
| CVE-2026-22689 | 2026-01-10 05:46:13 | 2026-01-12 16:47:34 | GitHub_M | Mailpit is an email testing tool and API… | Details |
| CVE-2026-22693 | 2026-01-10 05:53:21 | 2026-01-12 16:47:17 | GitHub_M | HarfBuzz is a text shaping engine. Prior to… | Details |
| CVE-2026-22701 | 2026-01-10 05:59:28 | 2026-01-12 16:45:50 | GitHub_M | filelock is a platform-independent file lock for Python.… | Details |
| CVE-2025-62235 | 2026-01-10 09:42:30 | 2026-01-12 16:45:27 | apache | Authentication Bypass by Spoofing vulnerability in Apache NimBLE. Receiving… | Details |
| CVE-2026-22702 | 2026-01-10 06:05:53 | 2026-01-12 16:44:12 | GitHub_M | virtualenv is a tool for creating isolated virtual… | Details |
| CVE-2026-22703 | 2026-01-10 06:11:09 | 2026-01-12 16:43:57 | GitHub_M | Cosign provides code signing and transparency for containers… | Details |
| CVE-2026-22705 | 2026-01-10 06:14:20 | 2026-01-12 16:43:06 | GitHub_M | RustCrypto: Signatures offers support for digital signatures, which… | Details |
| CVE-2025-46066 | 2026-01-12 00:00:00 | 2026-01-12 16:37:34 | mitre | An issue in Automai Director v.25.2.0 allows a… | Details |
| CVE-2025-46067 | 2026-01-12 00:00:00 | 2026-01-12 16:34:11 | mitre | An issue in Automai Director v.25.2.0 allows a… | Details |
| CVE-2025-71063 | 2026-01-12 15:56:26 | 2026-01-12 16:26:36 | mitre | Errands before 46.2.10 does not verify TLS certificates… | Details |
| CVE-2025-56225 | 2026-01-09 00:00:00 | 2026-01-12 16:24:43 | mitre | fluidsynth-2.4.6 and earlier versions is vulnerable to Null… | Details |
| CVE-2025-70161 | 2026-01-09 00:00:00 | 2026-01-12 16:24:37 | mitre | EDIMAX BR-6208AC V2_1.02 is vulnerable to Command Injection.… | Details |
| CVE-2025-69542 | 2026-01-09 00:00:00 | 2026-01-12 16:24:30 | mitre | A Command Injection Vulnerability has been discovered in… | Details |
| CVE-2025-66744 | 2026-01-09 00:00:00 | 2026-01-12 16:24:18 | mitre | In Yonyou YonBIP v3 and before, the LoginWithV8… | Details |
| CVE-2026-22584 | 2026-01-09 22:10:02 | 2026-01-12 16:23:58 | Salesforce | Improper Control of Generation of Code ('Code Injection')… | Details |
| CVE-2026-22027 | 2026-01-10 00:24:58 | 2026-01-12 16:23:53 | GitHub_M | CryptoLib provides a software-only solution using the CCSDS… | Details |
| CVE-2026-22597 | 2026-01-10 02:57:36 | 2026-01-12 16:23:47 | GitHub_M | Ghost is a Node.js content management system. In… | Details |
| CVE-2025-14579 | 2026-01-12 06:00:10 | 2026-01-12 16:23:40 | WPScan | The Quiz Maker WordPress plugin before 6.7.0.89 does… | Details |
| CVE-2025-41005 | 2026-01-12 14:35:20 | 2026-01-12 16:23:34 | INCIBE | Imaster's MEMS Events CRM contains an SQL injection… | Details |
| CVE-2025-41006 | 2026-01-12 14:39:11 | 2026-01-12 16:23:28 | INCIBE | Imaster's MEMS Events CRM contains an SQL injection… | Details |
| CVE-2025-41077 | 2026-01-12 14:54:51 | 2026-01-12 16:23:22 | INCIBE | IDOR vulnerability has been found in Viafirma Inbox… | Details |
| CVE-2025-41078 | 2026-01-12 14:59:26 | 2026-01-12 16:23:16 | INCIBE | Weaknesses in the authorization mechanisms of Viafirma Documents… | Details |
| CVE-2026-0853 | 2026-01-12 03:26:47 | 2026-01-12 15:54:38 | twcert | Certain NVR models developed by A-Plus Video Technologies… | Details |
| CVE-2025-69267 | 2026-01-12 03:53:00 | 2026-01-12 15:53:40 | ca | Improper Limitation of a Pathname to a Restricted… | Details |
| CVE-2025-69268 | 2026-01-12 03:59:17 | 2026-01-12 15:52:46 | ca | Improper Neutralization of Input During Web Page Generation… | Details |
| CVE-2025-69269 | 2026-01-12 04:10:44 | 2026-01-12 15:51:36 | ca | Improper Neutralization of Special Elements used in an… | Details |
| CVE-2025-69270 | 2026-01-12 04:20:13 | 2026-01-12 15:21:09 | ca | Information Exposure Through Query Strings in GET Request… | Details |
| CVE-2025-69271 | 2026-01-12 04:27:55 | 2026-01-12 15:20:41 | ca | Insufficiently Protected Credentials vulnerability in Broadcom DX NetOps… | Details |
| CVE-2025-69272 | 2026-01-12 04:33:37 | 2026-01-12 15:19:26 | ca | Cleartext Transmission of Sensitive Information vulnerability in Broadcom… | Details |
| CVE-2025-69273 | 2026-01-12 04:38:53 | 2026-01-12 15:16:40 | ca | Improper Authentication vulnerability in Broadcom DX NetOps Spectrum… | Details |
| CVE-2026-22699 | 2026-01-10 05:17:22 | 2026-01-12 14:59:18 | GitHub_M | RustCrypto: Elliptic Curves is general purpose Elliptic Curve… | Details |
| CVE-2025-69274 | 2026-01-12 04:42:39 | 2026-01-12 14:58:15 | ca | Authorization Bypass Through User-Controlled Key vulnerability in Broadcom… | Details |
| CVE-2025-69275 | 2026-01-12 04:47:07 | 2026-01-12 14:57:23 | ca | Dependency on Vulnerable Third-Party Component vulnerability in Broadcom… | Details |
| CVE-2025-69276 | 2026-01-12 04:53:09 | 2026-01-12 14:56:58 | ca | Deserialization of Untrusted Data vulnerability in Broadcom DX… | Details |
| CVE-2026-0854 | 2026-01-12 05:58:52 | 2026-01-12 14:56:28 | twcert | Certain DVR/NVR models developed by Merit LILIN has… | Details |
| CVE-2025-14279 | 2026-01-12 08:15:58 | 2026-01-12 14:54:38 | @huntr_ai | MLFlow versions up to and including 3.4.0 are… | Details |
| CVE-2026-22700 | 2026-01-10 05:17:25 | 2026-01-12 14:46:46 | GitHub_M | RustCrypto: Elliptic Curves is general purpose Elliptic Curve… | Details |
| CVE-2026-22611 | 2026-01-10 05:37:08 | 2026-01-12 14:39:57 | GitHub_M | AWS SDK for .NET works with Amazon Web… | Details |
| CVE-2026-22685 | 2026-01-10 05:43:19 | 2026-01-12 14:39:28 | GitHub_M | DevToys is a desktop app for developers. In… | Details |
| CVE-2025-40975 | 2026-01-12 11:26:30 | 2026-01-12 14:38:20 | INCIBE | Stored Cross-Site Scripting (XSS) vulnerability in WorkDo's HRMGo,… | Details |
| CVE-2025-40976 | 2026-01-12 11:27:20 | 2026-01-12 14:37:56 | INCIBE | Stored Cross-Site Scripting (XSS) vulnerability in WorkDo's TicketGo,… | Details |
| CVE-2025-41003 | 2026-01-12 13:50:34 | 2026-01-12 14:29:51 | INCIBE | Imaster's Patient Record Management System contains a stored… | Details |
| CVE-2025-41004 | 2026-01-12 13:55:28 | 2026-01-12 14:20:07 | INCIBE | Imaster's Patient Records Management System is vulnerable to… | Details |
| CVE-2026-22773 | 2026-01-10 06:39:02 | 2026-01-12 13:22:52 | GitHub_M | vLLM is an inference and serving engine for… | Details |
| CVE-2026-22777 | 2026-01-10 06:43:21 | 2026-01-12 13:22:32 | GitHub_M | ComfyUI-Manager is an extension designed to enhance the… | Details |
| CVE-2025-40977 | 2026-01-12 11:28:01 | 2026-01-12 13:10:34 | INCIBE | Stored Cross-Site Scripting (XSS) vulnerability in WorkDo's eCommerceGo… | Details |
| CVE-2025-40978 | 2026-01-12 11:28:35 | 2026-01-12 12:53:10 | INCIBE | Stored Cross-Site Scripting (XSS) vulnerability in WorkDo's eCommerceGo… | Details |
| CVE-2025-67070 | 2026-01-09 00:00:00 | 2026-01-09 21:27:17 | mitre | A vulnerability exists in Intelbras CFTV IP NVD… | Details |
| CVE-2025-67810 | 2026-01-09 00:00:00 | 2026-01-09 21:26:03 | mitre | In Area9 Rhapsode 1.47.3, an authenticated attacker can… | Details |
| CVE-2025-67811 | 2026-01-09 00:00:00 | 2026-01-09 21:24:45 | mitre | Area9 Rhapsode 1.47.3 allows SQL Injection via multiple… | Details |
| CVE-2025-66715 | 2026-01-09 00:00:00 | 2026-01-09 21:23:37 | mitre | A DLL hijacking vulnerability in Axtion ODISSAAS ODIS… | Details |
| CVE-2025-60538 | 2026-01-09 00:00:00 | 2026-01-09 21:21:49 | mitre | A lack of rate limiting in the login… | Details |
| CVE-2025-51626 | 2026-01-09 00:00:00 | 2026-01-09 21:20:33 | mitre | SQL injection vulnerability in pss.sale.com 1.0 via the… | Details |
| CVE-2026-0830 | 2026-01-09 21:10:09 | 2026-01-09 21:18:53 | AMZN | Processing specially crafted workspace folder names could allow… | Details |
| CVE-2026-20972 | 2026-01-09 06:16:26 | 2026-01-09 19:18:11 | SamsungMobile | Improper Export of Android Application Components in UwbTest… | Details |
| CVE-2026-20969 | 2026-01-09 06:15:52 | 2026-01-09 19:18:02 | SamsungMobile | Improper input validation in SecSettings prior to SMR… | Details |
| CVE-2026-22714 | 2026-01-08 23:56:07 | 2026-01-09 19:17:41 | wikimedia-foundation | Improper Neutralization of Input During Web Page Generation… | Details |
| CVE-2026-22713 | 2026-01-09 00:00:57 | 2026-01-09 19:17:27 | wikimedia-foundation | Improper Neutralization of Input During Web Page Generation… | Details |
| CVE-2026-22710 | 2026-01-08 23:48:51 | 2026-01-09 19:16:54 | wikimedia-foundation | Improper Neutralization of Input During Web Page Generation… | Details |
| CVE-2026-22712 | 2026-01-09 00:06:22 | 2026-01-09 19:15:28 | wikimedia-foundation | Improper Encoding or Escaping of Output due to magic… | Details |
| CVE-2025-13781 | 2026-01-09 10:03:51 | 2026-01-09 19:14:05 | GitLab | GitLab has remediated an issue in GitLab EE… | Details |
| CVE-2025-11246 | 2026-01-09 10:04:21 | 2026-01-09 19:13:17 | GitLab | GitLab has remediated an issue in GitLab CE/EE… | Details |
| CVE-2025-10569 | 2026-01-09 10:04:26 | 2026-01-09 19:12:12 | GitLab | GitLab has remediated an issue in GitLab CE/EE… | Details |
| CVE-2026-20976 | 2026-01-09 06:17:10 | 2026-01-09 19:10:00 | SamsungMobile | Improper input validation in Galaxy Store prior to… | Details |
| CVE-2026-20975 | 2026-01-09 06:16:59 | 2026-01-09 19:09:53 | SamsungMobile | Improper handling of insufficient permission in Samsung Cloud… | Details |
| CVE-2026-20974 | 2026-01-09 06:16:48 | 2026-01-09 19:09:42 | SamsungMobile | Improper input validation in data related to network… | Details |
| CVE-2026-20973 | 2026-01-09 06:16:37 | 2026-01-09 19:09:34 | SamsungMobile | Out-of-bounds read in libimagecodec.quram.so prior to SMR Jan-2026… | Details |
| CVE-2026-22539 | 2026-01-07 17:12:01 | 2026-01-09 19:09:20 | S21sec | As the service interaction is performed without authentication,… | Details |
| CVE-2025-56425 | 2026-01-08 00:00:00 | 2026-01-09 18:38:32 | mitre | An issue was discovered in the AppConnector component… | Details |
| CVE-2025-65731 | 2026-01-08 00:00:00 | 2026-01-09 18:38:20 | mitre | An issue was discovered in D-Link Router DIR-605L… | Details |
| CVE-2025-68715 | 2026-01-08 00:00:00 | 2026-01-09 18:38:14 | mitre | An issue was discovered in Panda Wireless PWRU0… | Details |
| CVE-2025-46643 | 2026-01-09 16:07:52 | 2026-01-09 18:38:02 | dell | Dell PowerProtect Data Domain with Data Domain Operating… | Details |
| CVE-2025-15035 | 2026-01-09 17:10:39 | 2026-01-09 18:36:41 | TPLink | Improper Input Validation vulnerability in TP-Link Archer AXE75… | Details |
| CVE-2026-21409 | 2026-01-09 07:15:52 | 2026-01-09 18:11:55 | jpcert | Improper authorization vulnerability exists in RICOH Streamline NX… | Details |
| CVE-2025-64090 | 2026-01-09 09:59:58 | 2026-01-09 18:01:00 | NCSC-NL | This vulnerability allows authenticated attackers to execute commands… | Details |
| CVE-2025-64092 | 2026-01-09 10:03:49 | 2026-01-09 17:59:17 | NCSC-NL | This vulnerability allows unauthenticated attackers to inject an… | Details |
| CVE-2025-64093 | 2026-01-09 10:04:58 | 2026-01-09 17:58:19 | NCSC-NL | Remote Code Execution vulnerability that allows unauthenticated attackers… | Details |
| CVE-2025-64091 | 2026-01-09 10:00:45 | 2026-01-09 17:57:30 | NCSC-NL | This vulnerability allows authenticated attackers to execute commands… | Details |
| CVE-2026-0817 | 2026-01-09 15:50:50 | 2026-01-09 17:37:36 | wikimedia-foundation | Missing Authorization vulnerability in Wikimedia Foundation MediaWiki -… | Details |
| CVE-2026-22081 | 2026-01-09 11:16:21 | 2026-01-09 16:44:56 | CERT-In | This vulnerability exists in Tenda wireless routers (300Mbps… | Details |
| CVE-2026-22082 | 2026-01-09 11:24:54 | 2026-01-09 16:26:14 | CERT-In | This vulnerability exists in Tenda wireless routers (300Mbps… | Details |
| CVE-2025-7072 | 2026-01-09 11:30:24 | 2026-01-09 16:24:39 | CERT-PL | The firmware in KAON CG3000TC and CG3000T routers contains… | Details |
| CVE-2025-66049 | 2026-01-09 11:53:41 | 2026-01-09 16:22:19 | CERT-PL | Vivotek IP7137 camera with firmware version 0200a is vulnerable to an… | Details |
| CVE-2025-67278 | 2026-01-09 00:00:00 | 2026-01-09 16:19:40 | mitre | An issue in TIM Solution GmbH TIM BPM… | Details |
| CVE-2025-67279 | 2026-01-09 00:00:00 | 2026-01-09 16:18:38 | mitre | An issue in TIM Solution GmbH TIM BPM… | Details |
| CVE-2025-67280 | 2026-01-09 00:00:00 | 2026-01-09 16:14:06 | mitre | In TIM BPM Suite/ TIM FLOW through 9.1.2… | Details |
| CVE-2025-67281 | 2026-01-09 00:00:00 | 2026-01-09 16:12:30 | mitre | In TIM BPM Suite/ TIM FLOW through 9.1.2… | Details |
| CVE-2025-67282 | 2026-01-09 00:00:00 | 2026-01-09 16:10:18 | mitre | In TIM BPM Suite/ TIM FLOW through 9.1.2… | Details |
| CVE-2025-46676 | 2026-01-09 15:48:40 | 2026-01-09 16:07:06 | dell | Dell PowerProtect Data Domain with Data Domain Operating… | Details |
| CVE-2025-14598 | 2026-01-09 12:14:06 | 2026-01-09 15:52:06 | certcc | BeeS Software Solutions BET Portal contains an SQL… | Details |
| CVE-2025-14803 | 2026-01-09 06:00:13 | 2026-01-09 15:16:05 | WPScan | The NEX-Forms WordPress plugin before 9.1.8 does… | Details |
| CVE-2026-22079 | 2026-01-09 11:02:50 | 2026-01-09 15:15:27 | CERT-In | This vulnerability exists in Tenda wireless routers (300Mbps… | Details |
| CVE-2026-22080 | 2026-01-09 11:05:07 | 2026-01-09 15:12:48 | CERT-In | This vulnerability exists in Tenda wireless routers (300Mbps… | Details |
| CVE-2025-66315 | 2026-01-09 02:24:58 | 2026-01-09 14:49:28 | zte | There is a configuration defect vulnerability in the… | Details |
| CVE-2025-3950 | 2026-01-09 10:04:51 | 2026-01-09 14:42:21 | GitLab | GitLab has remediated an issue in GitLab CE/EE… | Details |
| CVE-2025-66050 | 2026-01-09 11:53:45 | 2026-01-09 14:08:08 | CERT-PL | Vivotek IP7137 camera with firmware version 0200a by… | Details |
| CVE-2025-66051 | 2026-01-09 11:54:09 | 2026-01-09 14:07:13 | CERT-PL | Vivotek IP7137 camera with firmware version 0200a is… | Details |
| CVE-2025-66052 | 2026-01-09 11:54:16 | 2026-01-09 12:51:10 | CERT-PL | Vivotek IP7137 camera with firmware version 0200a is… | Details |
| CVE-2026-0675 | 2026-01-08 09:17:55 | 2026-01-09 11:01:28 | Patchstack | This CVE ID has been rejected or withdrawn… | Details |
| CVE-2025-15464 | 2026-01-08 21:01:31 | 2026-01-08 23:04:12 | KoreLogic | Exported Activity allows external applications to gain application… | Details |
| CVE-2025-68718 | 2026-01-08 00:00:00 | 2026-01-08 21:22:55 | mitre | KAYSUS KS-WR1200 routers with firmware 107 expose SSH… | Details |
| CVE-2025-14505 | 2026-01-08 21:05:14 | 2026-01-08 21:22:55 | HeroDevs | The ECDSA implementation of the Elliptic package generates… | Details |
| CVE-2026-22588 | 2026-01-08 20:53:37 | 2026-01-08 21:08:53 | GitHub_M | Spree is an open source e-commerce solution built… | Details |
| CVE-2025-68719 | 2026-01-08 00:00:00 | 2026-01-08 20:59:58 | mitre | KAYSUS KS-WR3600 routers with firmware 1.0.5.9.1 mishandle configuration… | Details |
| CVE-2025-68716 | 2026-01-08 00:00:00 | 2026-01-08 20:53:46 | mitre | KAYSUS KS-WR3600 routers with firmware 1.0.5.9.1 enable the… | Details |
| CVE-2025-68717 | 2026-01-08 00:00:00 | 2026-01-08 20:38:47 | mitre | KAYSUS KS-WR3600 routers with firmware 1.0.5.9.1 allow authentication… | Details |
| CVE-2026-21697 | 2026-01-07 22:29:57 | 2026-01-08 20:37:17 | GitHub_M | axios4go is a Go HTTP client library. Prior… | Details |
| CVE-2026-0671 | 2026-01-08 16:21:24 | 2026-01-08 20:13:46 | wikimedia-foundation | Improper Neutralization of Input During Web Page Generation… | Details |
| CVE-2026-21851 | 2026-01-07 22:27:19 | 2026-01-08 20:09:55 | GitHub_M | MONAI (Medical Open Network for AI) is an… | Details |
| CVE-2026-0747 | 2026-01-08 19:55:58 | 2026-01-08 20:07:40 | DEVOLUTIONS | Exposure of sensitive information in the TeamViewer entry… | Details |
| CVE-2026-22047 | 2026-01-07 22:05:49 | 2026-01-08 19:59:52 | GitHub_M | iccDEV provides a set of libraries and tools… | Details |
| CVE-2025-66916 | 2026-01-08 00:00:00 | 2026-01-08 19:53:34 | mitre | The snailjob component in RuoYi-Vue-Plus versions 5.5.1 and… | Details |
| CVE-2025-66913 | 2026-01-08 00:00:00 | 2026-01-08 19:44:30 | mitre | JimuReport thru version 2.1.3 is vulnerable to remote… | Details |
| CVE-2025-56424 | 2026-01-08 00:00:00 | 2026-01-08 19:41:47 | mitre | An issue in Insiders Technologies GmbH e-invoice pro… | Details |
| CVE-2025-61246 | 2026-01-08 00:00:00 | 2026-01-08 19:37:53 | mitre | indieka900 online-shopping-system-php 1.0 is vulnerable to SQL Injection… | Details |
| CVE-2019-25231 | 2026-01-07 23:09:57 | 2026-01-08 19:26:44 | VulnCheck | devolo dLAN Cockpit 4.3.1 contains an unquoted service… | Details |
| CVE-2019-25259 | 2026-01-07 23:09:57 | 2026-01-08 19:26:27 | VulnCheck | Leica Geosystems GR10/GR25/GR30/GR50 GNSS 4.30.063 contains a cross-site… | Details |
| CVE-2019-25268 | 2026-01-07 23:09:58 | 2026-01-08 19:26:09 | VulnCheck | NREL BEopt 2.8.0.0 contains a DLL hijacking vulnerability… | Details |
| CVE-2019-25282 | 2026-01-07 23:10:02 | 2026-01-08 19:25:13 | VulnCheck | V-SOL GPON/EPON OLT Platform v2.03 contains an open… | Details |
| CVE-2026-21694 | 2026-01-07 23:10:48 | 2026-01-08 19:23:48 | GitHub_M | Titra is open source project time tracking software.… | Details |
| CVE-2026-21859 | 2026-01-07 23:24:07 | 2026-01-08 19:23:22 | GitHub_M | Mailpit is an email testing tool and API… | Details |
| CVE-2025-15346 | 2026-01-07 23:32:11 | 2026-01-08 19:22:49 | wolfSSL | A vulnerability in the handling of verify_mode =… | Details |
| CVE-2026-21505 | 2026-01-07 17:10:51 | 2026-01-08 19:18:19 | GitHub_M | iccDEV provides a set of libraries and tools… | Details |
| CVE-2026-21869 | 2026-01-07 23:37:59 | 2026-01-08 19:15:28 | GitHub_M | llama.cpp is an inference of several LLM models… | Details |
| CVE-2026-21875 | 2026-01-07 23:52:18 | 2026-01-08 19:13:03 | GitHub_M | ClipBucket v5 is an open source video sharing… | Details |
| CVE-2026-21868 | 2026-01-08 00:26:46 | 2026-01-08 19:06:16 | GitHub_M | Flag Forge is a Capture The Flag (CTF)… | Details |
| CVE-2025-67325 | 2026-01-08 00:00:00 | 2026-01-08 19:00:01 | mitre | Unrestricted file upload in the hotel review feature… | Details |
| CVE-2026-21877 | 2026-01-08 00:39:58 | 2026-01-08 18:59:10 | GitHub_M | n8n is an open source workflow automation platform.… | Details |
| CVE-2026-22253 | 2026-01-08 18:39:57 | 2026-01-08 18:51:14 | GitHub_M | Soft Serve is a self-hostable Git server for… | Details |
| CVE-2026-21860 | 2026-01-08 18:34:05 | 2026-01-08 18:50:34 | GitHub_M | Werkzeug is a comprehensive WSGI web application library.… | Details |
| CVE-2026-22256 | 2026-01-08 18:21:57 | 2026-01-08 18:39:58 | GitHub_M | Salvo is a Rust web backend framework. Prior… | Details |
| CVE-2026-22257 | 2026-01-08 18:22:05 | 2026-01-08 18:38:12 | GitHub_M | Salvo is a Rust web backend framework. Prior… | Details |
| CVE-2026-21879 | 2026-01-08 00:51:50 | 2026-01-08 18:34:42 | GitHub_M | Kanboard is project management software focused on Kanban… | Details |
| CVE-2026-21880 | 2026-01-08 00:59:20 | 2026-01-08 18:29:16 | GitHub_M | Kanboard is project management software focused on Kanban… | Details |
| CVE-2026-21896 | 2026-01-08 18:09:10 | 2026-01-08 18:20:29 | GitHub_M | Kirby is an open-source content management system. From… | Details |
| CVE-2026-22235 | 2026-01-08 17:13:24 | 2026-01-08 18:19:28 | cisa-cg | OPEXUS eComplaint before version 9.0.45.0 allows an attacker… | Details |
| CVE-2026-21692 | 2026-01-07 21:56:40 | 2026-01-08 18:17:59 | GitHub_M | iccDEV provides a set of libraries and tools… | Details |
| CVE-2026-21693 | 2026-01-07 21:58:57 | 2026-01-08 18:17:54 | GitHub_M | iccDEV provides a set of libraries and tools… | Details |
| CVE-2026-22046 | 2026-01-07 22:02:58 | 2026-01-08 18:17:49 | GitHub_M | iccDEV provides a set of libraries and tools… | Details |
| CVE-2025-12776 | 2026-01-07 22:03:05 | 2026-01-08 18:17:45 | Commvault | The Report Builder component of the application stores… | Details |
| CVE-2026-21857 | 2026-01-07 22:32:15 | 2026-01-08 18:17:35 | GitHub_M | REDAXO is a PHP-based content management system. Prior… | Details |
| CVE-2026-21695 | 2026-01-07 23:19:01 | 2026-01-08 18:16:33 | GitHub_M | Titra is open source project time tracking software.… | Details |
| CVE-2026-22233 | 2026-01-08 17:11:11 | 2026-01-08 17:51:26 | cisa-cg | OPEXUS eCASE Audit allows an authenticated attacker to… | Details |
| CVE-2026-22232 | 2026-01-08 17:10:41 | 2026-01-08 17:51:05 | cisa-cg | OPEXUS eCASE Audit allows an authenticated attacker to… | Details |
| CVE-2026-22231 | 2026-01-08 17:10:26 | 2026-01-08 17:50:43 | cisa-cg | OPEXUS eCASE Audit allows an authenticated attacker to… | Details |
| CVE-2026-22587 | 2026-01-08 17:09:03 | 2026-01-08 17:50:14 | cisa-cg | Ideagen DevonWay contains a stored cross site scripting… | Details |
| CVE-2025-55125 | 2026-01-08 16:18:20 | 2026-01-08 17:33:26 | hackerone | This vulnerability allows a Backup or Tape Operator… | Details |
| CVE-2026-21639 | 2026-01-08 16:14:22 | 2026-01-08 17:21:53 | hackerone | A malicious actor in Wi-Fi range of the… | Details |
| CVE-2026-21881 | 2026-01-08 01:08:01 | 2026-01-08 17:13:05 | GitHub_M | Kanboard is project management software focused on Kanban… | Details |
| CVE-2025-67089 | 2026-01-08 00:00:00 | 2026-01-08 16:52:24 | mitre | A command injection vulnerability exists in the GL-iNet… | Details |
| CVE-2025-67090 | 2026-01-08 00:00:00 | 2026-01-08 16:51:52 | mitre | The LuCI web interface on Gl Inet GL.Inet… | Details |
| CVE-2025-63611 | 2026-01-08 00:00:00 | 2026-01-08 16:37:29 | mitre | Cross-Site Scripting in phpgurukul Hostel Management System v2.1… | Details |
| CVE-2025-67091 | 2026-01-08 00:00:00 | 2026-01-08 16:10:44 | mitre | An issue in GL Inet GL.Inet AX1800 Version… | Details |
| CVE-2025-66002 | 2026-01-08 14:25:44 | 2026-01-08 15:55:57 | suse | An Improper Neutralization of Argument Delimiters in… | Details |
| CVE-2026-21885 | 2026-01-08 13:57:25 | 2026-01-08 15:55:28 | GitHub_M | Miniflux 2 is an open source feed reader.… | Details |
| CVE-2026-21891 | 2026-01-08 14:00:14 | 2026-01-08 15:55:23 | GitHub_M | ZimaOS is a fork of CasaOS, an operating… | Details |
| CVE-2026-21892 | 2026-01-08 14:02:15 | 2026-01-08 15:55:18 | GitHub_M | Parsl is a Python parallel scripting library. A… | Details |
| CVE-2026-21895 | 2026-01-08 14:06:29 | 2026-01-08 15:55:13 | GitHub_M | The `rsa` crate is an RSA implementation written… | Details |
| CVE-2026-22028 | 2026-01-08 14:16:22 | 2026-01-08 15:55:06 | GitHub_M | Preact, a lightweight web development framework, JSON serialization… | Details |
| CVE-2026-22255 | 2026-01-08 15:29:36 | 2026-01-08 15:54:58 | GitHub_M | iccDEV provides a set of libraries and tools… | Details |
| CVE-2026-22041 | 2026-01-08 14:52:37 | 2026-01-08 15:54:57 | GitHub_M | Logging Redactor is a Python library designed to… | Details |
| CVE-2026-22042 | 2026-01-08 14:58:10 | 2026-01-08 15:54:51 | GitHub_M | RustFS is a distributed object storage system built… | Details |
| CVE-2026-22043 | 2026-01-08 15:03:59 | 2026-01-08 15:54:47 | GitHub_M | RustFS is a distributed object storage system built… | Details |
| CVE-2026-22244 | 2026-01-08 15:12:51 | 2026-01-08 15:54:36 | GitHub_M | OpenMetadata is a unified metadata platform. Versions prior… | Details |
| CVE-2026-22245 | 2026-01-08 15:23:13 | 2026-01-08 15:54:30 | GitHub_M | Mastodon is a free, open-source social network server… | Details |
| CVE-2026-22246 | 2026-01-08 15:27:21 | 2026-01-08 15:54:24 | GitHub_M | Mastodon is a free, open-source social network server… | Details |
| CVE-2025-68151 | 2026-01-08 15:33:12 | 2026-01-08 15:50:35 | GitHub_M | CoreDNS is a DNS server that chains plugins.… | Details |
| CVE-2025-66003 | 2026-01-08 14:58:46 | 2026-01-08 15:43:16 | suse | An External Control of File Name or Path… | Details |
| CVE-2025-5965 | 2026-01-05 10:06:05 | 2026-01-08 15:43:03 | Centreon | In the backup parameters, a user with high… | Details |
| CVE-2025-15029 | 2026-01-05 14:34:02 | 2026-01-08 15:42:26 | Centreon | Improper Neutralization of Special Elements used in an… | Details |
| CVE-2025-15026 | 2026-01-05 14:31:34 | 2026-01-08 15:42:06 | Centreon | Missing Authentication for Critical Function vulnerability in Centreon… | Details |
| CVE-2025-13056 | 2026-01-05 10:10:35 | 2026-01-08 15:41:37 | Centreon | Improper Neutralization of Input During Web Page Generation… | Details |
| CVE-2025-67603 | 2026-01-08 15:04:43 | 2026-01-08 15:41:26 | suse | A Improper Authorization vulnerability in Foomuuri llows arbitrary users… | Details |
| CVE-2025-12519 | 2026-01-05 10:15:08 | 2026-01-08 15:41:12 | Centreon | Missing Authorization vulnerability in Centreon Infra Monitoring (Administration… | Details |
| CVE-2025-12513 | 2026-01-05 13:43:42 | 2026-01-08 15:40:41 | Centreon | Improper Neutralization of Input During Web Page Generation… | Details |
| CVE-2025-12511 | 2026-01-05 14:05:52 | 2026-01-08 15:40:12 | Centreon | Improper Neutralization of Input During Web Page Generation… | Details |
| CVE-2025-67858 | 2026-01-08 15:23:46 | 2026-01-08 15:39:49 | suse | A Improper Neutralization of Argument Delimiters vulnerability in… | Details |
| CVE-2025-4596 | 2026-01-08 14:58:23 | 2026-01-08 15:36:32 | CERT-PL | Asseco ADMX system is used for processing medical… | Details |
| CVE-2026-21871 | 2026-01-08 09:49:55 | 2026-01-08 15:15:16 | GitHub_M | NiceGUI is a Python-based UI framework. From versions… | Details |
| CVE-2026-21872 | 2026-01-08 09:50:02 | 2026-01-08 15:13:11 | GitHub_M | NiceGUI is a Python-based UI framework. From versions… | Details |
| CVE-2026-21873 | 2026-01-08 09:50:23 | 2026-01-08 15:11:24 | GitHub_M | NiceGUI is a Python-based UI framework. From versions… | Details |
| CVE-2026-22034 | 2026-01-08 14:49:05 | 2026-01-08 15:06:42 | GitHub_M | Snuffleupagus is a module that raises the cost… | Details |
| CVE-2025-14819 | 2026-01-08 10:07:54 | 2026-01-08 15:02:04 | curl | When doing TLS related transfers with reused easy… | Details |
| CVE-2025-69260 | 2026-01-08 12:50:55 | 2026-01-08 14:58:45 | trendmicro | A message out-of-bounds read vulnerability in Trend Micro… | Details |
| CVE-2025-69259 | 2026-01-08 12:50:43 | 2026-01-08 14:58:32 | trendmicro | A message unchecked NULL return value vulnerability in… | Details |
| CVE-2025-13034 | 2026-01-08 10:00:25 | 2026-01-08 14:58:20 | curl | When using `CURLOPT_PINNEDPUBLICKEY` option with libcurl or `--pinnedpubkey` with… | Details |
| CVE-2025-66001 | 2026-01-08 10:23:18 | 2026-01-08 14:56:07 | suse | NeuVector supports login authentication through OpenID Connect. However,… | Details |
| CVE-2026-21688 | 2026-01-07 21:43:06 | 2026-01-08 14:47:10 | GitHub_M | iccDEV provides a set of libraries and tools… | Details |
| CVE-2025-15079 | 2026-01-08 10:08:13 | 2026-01-08 14:46:47 | curl | When doing SSH-based transfers using either SCP or… | Details |
| CVE-2026-21689 | 2026-01-07 21:46:12 | 2026-01-08 14:46:02 | GitHub_M | iccDEV provides a set of libraries and tools… | Details |
| CVE-2026-21690 | 2026-01-07 21:50:25 | 2026-01-08 14:44:06 | GitHub_M | iccDEV provides a set of libraries and tools… | Details |
| CVE-2026-21874 | 2026-01-08 09:50:47 | 2026-01-08 14:43:50 | GitHub_M | NiceGUI is a Python-based UI framework. From versions… | Details |
| CVE-2025-62877 | 2026-01-08 12:29:07 | 2026-01-08 14:43:34 | suse | Projects using the SUSE Virtualization (Harvester) environment may expose… | Details |
| CVE-2026-21894 | 2026-01-08 09:56:04 | 2026-01-08 14:42:36 | GitHub_M | n8n is an open source workflow automation platform.… | Details |
| CVE-2026-21691 | 2026-01-07 21:53:02 | 2026-01-08 14:40:49 | GitHub_M | iccDEV provides a set of libraries and tools… | Details |
| CVE-2025-15224 | 2026-01-08 10:08:27 | 2026-01-08 14:39:55 | curl | When doing SSH-based transfers using either SCP or… | Details |
| CVE-2026-22242 | 2026-01-08 09:59:24 | 2026-01-08 14:26:19 | GitHub_M | CoreShop is a Pimcore enhanced eCommerce solution. Prior… | Details |
| CVE-2025-8306 | 2026-01-08 13:43:33 | 2026-01-08 14:23:20 | CERT-PL | Asseco InfoMedica is a comprehensive solution used to… | Details |
| CVE-2025-8307 | 2026-01-08 13:43:37 | 2026-01-08 14:18:51 | CERT-PL | Asseco InfoMedica is a comprehensive solution used to… | Details |
| CVE-2026-21503 | 2026-01-07 17:10:44 | 2026-01-07 21:53:35 | GitHub_M | iccDEV provides a set of libraries and tools… | Details |
| CVE-2026-21685 | 2026-01-07 21:23:41 | 2026-01-07 21:42:21 | GitHub_M | iccDEV provides a set of libraries and tools… | Details |
| CVE-2026-21686 | 2026-01-07 21:25:57 | 2026-01-07 21:41:35 | GitHub_M | iccDEV provides a set of libraries and tools… | Details |
| CVE-2026-21687 | 2026-01-07 21:32:13 | 2026-01-07 21:38:17 | GitHub_M | iccDEV provides a set of libraries and tools… | Details |
| CVE-2026-21684 | 2026-01-07 21:18:31 | 2026-01-07 21:35:37 | GitHub_M | iccDEV provides a set of libraries and tools… | Details |
| CVE-2025-69222 | 2026-01-07 21:17:17 | 2026-01-07 21:34:00 | GitHub_M | LibreChat is a ChatGPT clone with additional features.… | Details |
| CVE-2025-69220 | 2026-01-07 20:49:00 | 2026-01-07 21:33:56 | GitHub_M | LibreChat is a ChatGPT clone with additional features.… | Details |
| CVE-2026-21681 | 2026-01-07 20:48:57 | 2026-01-07 21:33:46 | GitHub_M | iccDEV provides a set of libraries and tools… | Details |
| CVE-2026-21683 | 2026-01-07 21:12:45 | 2026-01-07 21:31:28 | GitHub_M | iccDEV provides a set of libraries and tools… | Details |
| CVE-2025-68705 | 2026-01-07 20:31:44 | 2026-01-07 21:28:30 | GitHub_M | RustFS is a distributed object storage system built… | Details |
| CVE-2025-69255 | 2026-01-07 20:34:25 | 2026-01-07 21:25:33 | GitHub_M | RustFS is a distributed object storage system built… | Details |
| CVE-2026-21682 | 2026-01-07 20:58:07 | 2026-01-07 21:11:35 | GitHub_M | iccDEV provides a set of libraries and tools… | Details |
| CVE-2025-69221 | 2026-01-07 21:01:13 | 2026-01-07 21:07:58 | GitHub_M | LibreChat is a ChatGPT clone with additional features.… | Details |
| CVE-2025-64305 | 2026-01-07 20:02:02 | 2026-01-07 20:18:51 | icscert | MicroServer copies parts of the system firmware to… | Details |
| CVE-2025-66620 | 2026-01-07 20:08:33 | 2026-01-07 20:16:28 | icscert | An unused webshell in MicroServer allows unlimited login… | Details |
| CVE-2025-61939 | 2026-01-07 19:56:52 | 2026-01-07 20:07:45 | icscert | An unused function in MicroServer can start a… | Details |
| CVE-2026-21678 | 2026-01-07 17:11:07 | 2026-01-07 19:27:44 | GitHub_M | iccDEV provides a set of libraries and tools… | Details |
| CVE-2026-0670 | 2026-01-07 18:55:42 | 2026-01-07 19:25:36 | wikimedia-foundation | Improper Neutralization of Input During Web Page Generation… | Details |
| CVE-2026-0669 | 2026-01-07 17:46:57 | 2026-01-07 19:21:57 | wikimedia-foundation | Improper Limitation of a Pathname to a Restricted… | Details |
| CVE-2026-0668 | 2026-01-07 17:36:19 | 2026-01-07 19:17:41 | wikimedia-foundation | Inefficient Regular Expression Complexity vulnerability in Wikimedia Foundation… | Details |
| CVE-2025-61492 | 2026-01-07 00:00:00 | 2026-01-07 19:14:01 | mitre | A command injection vulnerability in the execute_command function… | Details |
| CVE-2026-21854 | 2026-01-07 18:14:59 | 2026-01-07 18:41:47 | GitHub_M | The Tarkov Data Manager is a tool to… | Details |
| CVE-2026-21855 | 2026-01-07 18:16:02 | 2026-01-07 18:37:42 | GitHub_M | The Tarkov Data Manager is a tool to… | Details |
| CVE-2026-21856 | 2026-01-07 18:18:22 | 2026-01-07 18:34:40 | GitHub_M | The Tarkov Data Manager is a tool to… | Details |
| CVE-2026-21492 | 2026-01-06 20:23:41 | 2026-01-07 18:32:12 | GitHub_M | iccDEV provides a set of libraries and tools… | Details |
| CVE-2026-21506 | 2026-01-07 17:10:58 | 2026-01-07 18:30:51 | GitHub_M | iccDEV provides a set of libraries and tools… | Details |
| CVE-2026-21679 | 2026-01-07 17:11:16 | 2026-01-07 18:24:47 | GitHub_M | iccDEV provides a set of libraries and tools… | Details |
| CVE-2026-21501 | 2026-01-07 17:09:54 | 2026-01-07 18:22:09 | GitHub_M | iccDEV provides a set of libraries and tools… | Details |
| CVE-2026-21502 | 2026-01-07 17:09:45 | 2026-01-07 18:21:53 | GitHub_M | iccDEV provides a set of libraries and tools… | Details |
| CVE-2025-58441 | 2026-01-07 17:16:44 | 2026-01-07 18:21:35 | GitHub_M | Knowage is an open source analytics and business… | Details |
| CVE-2026-21500 | 2026-01-07 17:09:35 | 2026-01-07 18:21:34 | GitHub_M | iccDEV provides a set of libraries and tools… | Details |
| CVE-2026-21499 | 2026-01-07 17:09:27 | 2026-01-07 18:21:09 | GitHub_M | iccDEV provides a set of libraries and tools… | Details |
| CVE-2026-21498 | 2026-01-07 17:09:20 | 2026-01-07 18:20:17 | GitHub_M | iccDEV provides a set of libraries and tools… | Details |
| CVE-2026-21496 | 2026-01-07 17:09:08 | 2026-01-07 18:19:41 | GitHub_M | iccDEV provides a set of libraries and tools… | Details |
| CVE-2025-4677 | 2026-01-07 17:09:05 | 2026-01-07 18:19:30 | ABB | Insufficient Session Expiration vulnerability in ABB WebPro SNMP… | Details |
| CVE-2026-21497 | 2026-01-07 17:08:59 | 2026-01-07 18:19:19 | GitHub_M | iccDEV provides a set of libraries and tools… | Details |
| CVE-2026-21495 | 2026-01-07 17:08:46 | 2026-01-07 18:19:11 | GitHub_M | iccDEV provides a set of libraries and tools… | Details |
| CVE-2026-21504 | 2026-01-07 17:10:35 | 2026-01-07 18:18:35 | GitHub_M | iccDEV provides a set of libraries and tools… | Details |
| CVE-2025-61782 | 2026-01-07 17:28:53 | 2026-01-07 18:12:58 | GitHub_M | OpenCTI is an open source platform for managing… | Details |
| CVE-2026-21680 | 2026-01-07 17:50:09 | 2026-01-07 18:09:05 | GitHub_M | iccDEV provides a set of libraries and tools… | Details |
| CVE-2025-66560 | 2026-01-07 17:33:22 | 2026-01-07 17:59:59 | GitHub_M | Quarkus is a Cloud Native, (Linux) Container First… | Details |
| CVE-2026-22537 | 2026-01-07 17:05:41 | 2026-01-07 17:23:18 | S21sec | The lack of hardening of the system allows… | Details |
| CVE-2025-4676 | 2026-01-07 17:02:29 | 2026-01-07 17:22:42 | ABB | Incorrect Implementation of Authentication Algorithm vulnerability in ABB… | Details |
| CVE-2026-0618 | 2026-01-07 17:00:21 | 2026-01-07 17:21:44 | DEVOLUTIONS | Cross-site Scripting vulnerability in Devolutions PowerShell Universal.This issue… | Details |
| CVE-2025-4675 | 2026-01-07 16:55:43 | 2026-01-07 17:20:05 | ABB | Improper Check for Unusual or Exceptional Conditions vulnerability… | Details |
| CVE-2026-22536 | 2026-01-07 16:47:13 | 2026-01-07 17:19:18 | S21sec | The absence of permissions control for the user… | Details |
| CVE-2025-67366 | 2026-01-07 00:00:00 | 2026-01-07 17:18:19 | mitre | @sylphxltd/filesystem-mcp v0.5.8 is an MCP server that provides… | Details |
| CVE-2025-66686 | 2026-01-07 00:00:00 | 2026-01-07 17:09:36 | mitre | A stored Cross-Site Scripting (XSS) vulnerability exists in… | Details |
| CVE-2025-61489 | 2026-01-07 00:00:00 | 2026-01-07 17:07:47 | mitre | A command injection vulnerability in the shell_exec function… | Details |
| CVE-2026-22535 | 2026-01-07 16:37:18 | 2026-01-07 16:59:20 | S21sec | An attacker with the ability to interact through… | Details |
| CVE-2026-22543 | 2026-01-07 16:10:57 | 2026-01-07 16:57:16 | S21sec | The credentials required to access the device's web… | Details |
| CVE-2025-67364 | 2026-01-07 00:00:00 | 2026-01-07 16:57:14 | mitre | fast-filesystem-mcp version 3.4.0 contains a critical path traversal… | Details |
| CVE-2025-14612 | 2026-01-06 21:24:33 | 2026-01-07 16:56:08 | Altera | Insecure Temporary File vulnerability in Altera Quartus Prime… | Details |
| CVE-2025-14605 | 2026-01-06 21:15:56 | 2026-01-07 16:55:28 | Altera | Uncontrolled Search Path Element vulnerability in Altera Quartus… | Details |
| CVE-2025-65805 | 2026-01-07 00:00:00 | 2026-01-07 16:54:35 | mitre | OpenAirInterface CN5G AMF<=v2.1.9 has a buffer overflow vulnerability… | Details |
| CVE-2025-66786 | 2026-01-07 00:00:00 | 2026-01-07 16:47:48 | mitre | OpenAirInterface CN5G AMF<=v2.0.1 There is a logical error… | Details |
| CVE-2026-20029 | 2026-01-07 16:23:43 | 2026-01-07 16:40:58 | cisco | A vulnerability in the licensing features of Cisco Identity… | Details |
| CVE-2026-22544 | 2026-01-07 16:23:08 | 2026-01-07 16:38:40 | S21sec | An attacker with a network connection could detect… | Details |
| CVE-2025-66837 | 2026-01-07 00:00:00 | 2026-01-07 16:32:15 | mitre | A file upload vulnerability in ARIS 10.0.23.0.3587512 allows… | Details |
| CVE-2025-11235 | 2026-01-06 22:16:48 | 2026-01-07 16:25:41 | ProgressSoftware | Unverified Password Change vulnerability in Progress MOVEit Transfer… | Details |
| CVE-2025-66838 | 2026-01-07 00:00:00 | 2026-01-07 16:24:03 | mitre | In Aris v10.0.23.0.3587512 and before, the file upload… | Details |
| CVE-2025-47330 | 2026-01-06 22:48:28 | 2026-01-07 16:16:58 | qualcomm | Transient DOS while parsing video packets received from… | Details |
| CVE-2025-47331 | 2026-01-06 22:48:29 | 2026-01-07 16:16:53 | qualcomm | Information disclosure while processing a firmware event.… | Details |
| CVE-2025-47332 | 2026-01-06 22:48:30 | 2026-01-07 16:16:48 | qualcomm | Memory corruption while processing a config call from… | Details |
| CVE-2025-47333 | 2026-01-06 22:48:31 | 2026-01-07 16:16:43 | qualcomm | Memory corruption while handling buffer mapping operations in… | Details |
| CVE-2025-47334 | 2026-01-06 22:48:32 | 2026-01-07 16:16:37 | qualcomm | Memory corruption while processing shared command buffer packet… | Details |
| CVE-2025-47335 | 2026-01-06 22:48:33 | 2026-01-07 16:16:32 | qualcomm | Memory corruption while parsing clock configuration data for… | Details |
| CVE-2025-47336 | 2026-01-06 22:48:34 | 2026-01-07 16:16:27 | qualcomm | Memory corruption while performing sensor register read operations.… | Details |
| CVE-2025-47337 | 2026-01-06 22:48:35 | 2026-01-07 16:16:21 | qualcomm | Memory corruption while accessing a synchronization object during… | Details |
| CVE-2025-47339 | 2026-01-06 22:48:36 | 2026-01-07 16:16:14 | qualcomm | Memory corruption while deinitializing a HDCP session.… | Details |
| CVE-2025-47343 | 2026-01-06 22:48:37 | 2026-01-07 16:16:09 | qualcomm | Memory corruption while processing a video session to… | Details |
| CVE-2025-47344 | 2026-01-06 22:48:38 | 2026-01-07 16:16:04 | qualcomm | Memory corruption while handling sensor utility operations.… | Details |
| CVE-2025-47345 | 2026-01-06 22:48:39 | 2026-01-07 16:15:58 | qualcomm | Cryptographic issue may occur while encrypting license data.… | Details |
| CVE-2025-47346 | 2026-01-06 22:48:40 | 2026-01-07 16:15:53 | qualcomm | Memory corruption while processing a secure logging command… | Details |
| CVE-2025-47348 | 2026-01-06 22:48:41 | 2026-01-07 16:15:48 | qualcomm | Memory corruption while processing identity credential operations in… | Details |
| CVE-2025-47356 | 2026-01-06 22:48:42 | 2026-01-07 16:15:43 | qualcomm | Memory Corruption when multiple threads concurrently access and… | Details |
| CVE-2025-47369 | 2026-01-06 22:48:43 | 2026-01-07 16:15:38 | qualcomm | Information disclosure when a weak hashed value is… | Details |
| CVE-2025-47380 | 2026-01-06 22:48:44 | 2026-01-07 16:15:32 | qualcomm | Memory corruption while preprocessing IOCTLs in sensors.… | Details |
| CVE-2025-47388 | 2026-01-06 22:48:45 | 2026-01-07 16:15:28 | qualcomm | Memory corruption while passing pages to DSP with… | Details |
| CVE-2025-47393 | 2026-01-06 22:48:46 | 2026-01-07 16:15:22 | qualcomm | Memory corruption when accessing resources in kernel driver.… | Details |
| CVE-2025-47394 | 2026-01-06 22:48:47 | 2026-01-07 16:15:17 | qualcomm | Memory corruption when copying overlapping buffers during memory… | Details |
| CVE-2025-47395 | 2026-01-06 22:48:48 | 2026-01-07 16:15:12 | qualcomm | Transient DOS while parsing a WLAN management frame… | Details |
| CVE-2025-47396 | 2026-01-06 22:48:49 | 2026-01-07 16:15:07 | qualcomm | Memory corruption occurs when a secure application is… | Details |
| CVE-2025-31962 | 2026-01-07 06:48:19 | 2026-01-07 16:13:31 | HCL | Insufficient session expiration in the Web UI authentication… | Details |
| CVE-2025-31963 | 2026-01-07 07:05:40 | 2026-01-07 16:13:25 | HCL | Improper authentication and missing CSRF protection in the… | Details |
| CVE-2025-31964 | 2026-01-07 07:18:27 | 2026-01-07 16:12:56 | HCL | Improper service binding configuration in internal service components… | Details |
| CVE-2025-14719 | 2026-01-07 06:00:09 | 2026-01-07 16:12:07 | WPScan | The Relevanssi WordPress plugin before 4.26.0, Relevanssi… | Details |
| CVE-2026-22542 | 2026-01-07 15:24:04 | 2026-01-07 15:38:39 | S21sec | An attacker with access to the system's internal… | Details |
| CVE-2026-22541 | 2026-01-07 15:12:42 | 2026-01-07 15:29:55 | S21sec | The massive sending of ICMP requests causes a… | Details |
| CVE-2025-62327 | 2026-01-07 15:17:32 | 2026-01-07 15:26:29 | HCL | In HCL DevOps Deploy 8.1.2.0 through 8.1.2.3, a… | Details |
| CVE-2026-21635 | 2026-01-05 16:47:39 | 2026-01-07 15:19:03 | hackerone | An Improper Access Control could allow a malicious… | Details |
| CVE-2025-15479 | 2026-01-07 13:23:09 | 2026-01-07 15:03:22 | TCS-CERT | Stored cross-site scripting (XSS, CWE-79) in the survey… | Details |
| CVE-2026-22540 | 2026-01-07 14:16:32 | 2026-01-07 15:02:48 | S21sec | The massive sending of ARP requests causes a… | Details |
| CVE-2025-0980 | 2026-01-07 07:24:46 | 2026-01-07 14:43:24 | Nokia | Nokia SR Linux is vulnerable to an authentication… | Details |
| CVE-2025-68637 | 2026-01-07 09:39:04 | 2026-01-07 14:40:51 | apache | The Uniffle HTTP client is configured to trust… | Details |
| CVE-2026-20893 | 2026-01-07 03:16:19 | 2026-01-07 14:38:27 | jpcert | Origin validation error issue exists in Fujitsu Security… | Details |
| CVE-2025-14804 | 2026-01-07 06:00:09 | 2026-01-07 14:37:09 | WPScan | The Frontend File Manager Plugin WordPress plugin before… | Details |
| CVE-2025-15474 | 2026-01-07 04:33:17 | 2026-01-07 14:23:06 | VulnCheck | AuntyFey Smart Combination Lock firmware versions as of… | Details |
| CVE-2025-6225 | 2026-01-07 13:00:46 | 2026-01-07 14:12:33 | CERT-PL | Kieback&Peter Neutrino-GLT product is used for building management.… | Details |
| CVE-2025-14631 | 2026-01-07 01:04:26 | 2026-01-07 13:46:44 | TPLink | A NULL Pointer Dereference vulnerability in TP-Link Archer… | Details |
| CVE-2025-14614 | 2026-01-06 21:38:05 | 2026-01-06 21:49:00 | Altera | Insecure Temporary File vulnerability in Altera Quartus Prime… | Details |
| CVE-2025-14599 | 2026-01-06 21:30:14 | 2026-01-06 21:47:08 | Altera | Uncontrolled Search Path Element vulnerability in Altera Quartus… | Details |
| CVE-2025-14596 | 2026-01-06 21:06:19 | 2026-01-06 21:26:20 | Altera | Uncontrolled Search Path Element vulnerability in Altera Quartus… | Details |
| CVE-2025-13744 | 2026-01-06 20:44:02 | 2026-01-06 21:02:33 | GitHub_P | An Improper Neutralization of Input During Web Page… | Details |
| CVE-2026-21490 | 2026-01-06 19:04:26 | 2026-01-06 19:59:15 | GitHub_M | iccDEV provides a set of libraries and tools… | Details |
| CVE-2020-36913 | 2026-01-06 15:52:23 | 2026-01-06 19:48:27 | VulnCheck | All-Dynamics Software enlogic:show 2.0.2 contains a session fixation… | Details |
| CVE-2025-7048 | 2026-01-06 19:15:44 | 2026-01-06 19:44:20 | Arista | On affected platforms running Arista EOS with MACsec… | Details |
| CVE-2020-36915 | 2026-01-06 15:52:24 | 2026-01-06 19:42:42 | VulnCheck | Adtec Digital SignEdje Digital Signage Player v2.08.28 contains… | Details |
| CVE-2020-36916 | 2026-01-06 15:52:24 | 2026-01-06 19:38:43 | VulnCheck | TDM Digital Signage PC Player 4.1.0.4 contains an… | Details |
| CVE-2026-21491 | 2026-01-06 19:07:37 | 2026-01-06 19:36:42 | GitHub_M | iccDEV provides a set of libraries and tools… | Details |
| CVE-2020-36918 | 2026-01-06 15:52:25 | 2026-01-06 19:30:54 | VulnCheck | iDS6 DSSPro Digital Signage System 6.2 contains a… | Details |
| CVE-2020-36912 | 2026-01-06 15:52:23 | 2026-01-06 19:29:31 | VulnCheck | Plexus anblick Digital Signage Management 3.1.13 contains an… | Details |
| CVE-2026-21494 | 2026-01-06 19:00:17 | 2026-01-06 19:25:12 | GitHub_M | iccDEV provides a set of libraries and tools… | Details |
| CVE-2025-67397 | 2026-01-05 00:00:00 | 2026-01-06 19:24:29 | mitre | An issue in Passy v.1.6.3 allows a remote… | Details |
| CVE-2020-36920 | 2026-01-06 15:52:26 | 2026-01-06 19:23:38 | VulnCheck | iDS6 DSSPro Digital Signage System 6.2 contains an… | Details |
| CVE-2020-36906 | 2026-01-06 15:52:20 | 2026-01-06 19:15:54 | VulnCheck | P5 FNIP-8x16A FNIP-4xSH 1.0.20 contains a cross-site request… | Details |
| CVE-2020-36914 | 2026-01-06 15:53:22 | 2026-01-06 19:13:29 | VulnCheck | QiHang Media Web Digital Signage 3.0.9 contains a… | Details |
| CVE-2025-27807 | 2026-01-05 00:00:00 | 2026-01-06 19:05:01 | mitre | An issue was discovered in Samsung Mobile Processor,… | Details |
| CVE-2025-68437 | 2026-01-05 21:52:29 | 2026-01-06 19:04:50 | GitHub_M | Craft is a platform for creating digital experiences.… | Details |
| CVE-2025-68953 | 2026-01-05 21:53:39 | 2026-01-06 19:04:38 | GitHub_M | Frappe is a full-stack web application framework. Versions… | Details |
| CVE-2025-68454 | 2026-01-05 21:56:00 | 2026-01-06 19:04:27 | GitHub_M | Craft is a platform for creating digital experiences.… | Details |
| CVE-2025-68455 | 2026-01-05 21:59:00 | 2026-01-06 19:04:15 | GitHub_M | Craft is a platform for creating digital experiences.… | Details |
| CVE-2025-68456 | 2026-01-05 22:03:11 | 2026-01-06 19:03:45 | GitHub_M | Craft is a platform for creating digital experiences.… | Details |
| CVE-2025-69224 | 2026-01-05 22:35:42 | 2026-01-06 19:03:34 | GitHub_M | AIOHTTP is an asynchronous HTTP client/server framework for… | Details |
| CVE-2025-69226 | 2026-01-05 22:52:38 | 2026-01-06 19:03:21 | GitHub_M | AIOHTTP is an asynchronous HTTP client/server framework for… | Details |
| CVE-2025-69225 | 2026-01-05 23:16:19 | 2026-01-06 19:02:59 | GitHub_M | AIOHTTP is an asynchronous HTTP client/server framework for… | Details |
| CVE-2025-69227 | 2026-01-05 23:19:31 | 2026-01-06 19:02:48 | GitHub_M | AIOHTTP is an asynchronous HTTP client/server framework for… | Details |
| CVE-2025-69228 | 2026-01-05 23:30:33 | 2026-01-06 19:02:29 | GitHub_M | AIOHTTP is an asynchronous HTTP client/server framework for… | Details |
| CVE-2025-69229 | 2026-01-05 23:37:52 | 2026-01-06 19:02:09 | GitHub_M | AIOHTTP is an asynchronous HTTP client/server framework for… | Details |
| CVE-2025-69230 | 2026-01-05 23:47:38 | 2026-01-06 19:01:58 | GitHub_M | AIOHTTP is an asynchronous HTTP client/server framework for… | Details |
| CVE-2026-21439 | 2026-01-05 23:51:35 | 2026-01-06 19:01:48 | GitHub_M | badkeys is a tool and library for checking… | Details |
| CVE-2026-21507 | 2026-01-06 00:11:25 | 2026-01-06 19:01:38 | GitHub_M | iccDEV provides a set of libraries and tools… | Details |
| CVE-2025-15444 | 2026-01-06 00:22:50 | 2026-01-06 19:01:27 | CPANSec | Crypt::Sodium::XS module versions prior to 0.000042, for Perl, include a… | Details |
| CVE-2025-68954 | 2026-01-06 00:31:14 | 2026-01-06 19:01:17 | GitHub_M | Pterodactyl is a free, open-source game server management… | Details |
| CVE-2025-69197 | 2026-01-06 00:44:23 | 2026-01-06 19:01:05 | GitHub_M | Pterodactyl is a free, open-source game server management… | Details |
| CVE-2026-21673 | 2026-01-06 01:32:21 | 2026-01-06 19:00:53 | GitHub_M | iccDEV provides a set of libraries and tools… | Details |
| CVE-2026-21674 | 2026-01-06 01:38:12 | 2026-01-06 19:00:41 | GitHub_M | iccDEV provides a set of libraries and tools… | Details |
| CVE-2025-15385 | 2026-01-06 01:39:20 | 2026-01-06 19:00:29 | TECNOMobile | Insufficient Verification of Data Authenticity vulnerability in TECNO… | Details |
| CVE-2026-21675 | 2026-01-06 01:43:24 | 2026-01-06 19:00:17 | GitHub_M | iccDEV provides a set of libraries and tools… | Details |
| CVE-2025-12793 | 2026-01-06 02:14:37 | 2026-01-06 18:57:12 | ASUS | An uncontrolled DLL loading path vulnerability exists in… | Details |
| CVE-2026-21676 | 2026-01-06 03:07:36 | 2026-01-06 18:57:00 | GitHub_M | iccDEV provides a set of libraries and tools… | Details |
| CVE-2026-21677 | 2026-01-06 03:11:30 | 2026-01-06 18:56:50 | GitHub_M | iccDEV provides a set of libraries and tools… | Details |
| CVE-2026-21485 | 2026-01-06 03:17:47 | 2026-01-06 18:56:40 | GitHub_M | iccDEV provides a set of libraries and tools… | Details |
| CVE-2020-36923 | 2026-01-06 15:52:27 | 2026-01-06 18:56:11 | VulnCheck | Sony BRAVIA Digital Signage 1.7.8 contains an insecure… | Details |
| CVE-2025-63083 | 2026-01-06 16:01:15 | 2026-01-06 18:56:00 | Joomla | Lack of output escaping leads to a XSS… | Details |
| CVE-2020-36921 | 2026-01-06 15:52:26 | 2026-01-06 18:36:14 | VulnCheck | RED-V Super Digital Signage System 5.1.1 contains an… | Details |
| CVE-2020-36922 | 2026-01-06 15:52:27 | 2026-01-06 18:24:00 | VulnCheck | Sony BRAVIA Digital Signage 1.7.8 contains an information… | Details |
| CVE-2025-14942 | 2026-01-06 17:26:30 | 2026-01-06 18:15:26 | wolfSSL | wolfSSH’s key exchange state machine can be manipulated… | Details |
| CVE-2025-15382 | 2026-01-06 17:43:44 | 2026-01-06 18:13:28 | wolfSSL | A heap buffer over-read vulnerability exists in the… | Details |
| CVE-2025-63082 | 2026-01-06 16:01:38 | 2026-01-06 17:45:21 | Joomla | Lack of input filtering leads to an XSS… | Details |
| CVE-2025-67732 | 2026-01-05 21:41:01 | 2026-01-06 17:39:15 | GitHub_M | Dify is an open-source LLM app development platform.… | Details |
| CVE-2025-68436 | 2026-01-05 21:46:01 | 2026-01-06 17:38:37 | GitHub_M | Craft is a platform for creating digital experiences.… | Details |
| CVE-2025-65125 | 2026-01-02 00:00:00 | 2026-01-06 17:38:01 | mitre | SQL injection in gosaliajainam/online-movie-booking 5.5 in movie_details.php allows… | Details |
| CVE-2025-45286 | 2026-01-02 00:00:00 | 2026-01-06 17:37:47 | mitre | A cross-site scripting (XSS) vulnerability in mccutchen httpbin… | Details |
| CVE-2025-52519 | 2026-01-05 00:00:00 | 2026-01-06 17:19:53 | mitre | An issue was discovered in the Camera in… | Details |
| CVE-2025-36589 | 2026-01-06 16:20:24 | 2026-01-06 16:55:17 | dell | Dell Unisphere for PowerMax, version(s) 9.2.4.x, contain(s) an… | Details |
| CVE-2020-36925 | 2026-01-06 15:52:28 | 2026-01-06 16:51:48 | VulnCheck | Arteco Web Client DVR/NVR contains a session hijacking… | Details |
| CVE-2025-65212 | 2026-01-06 00:00:00 | 2026-01-06 16:39:03 | mitre | An issue was discovered in NJHYST HY511 POE… | Details |
| CVE-2025-59379 | 2026-01-06 00:00:00 | 2026-01-06 16:32:08 | mitre | DwyerOmega Isensix Advanced Remote Monitoring System (ARMS) 1.5.7… | Details |
| CVE-2025-14026 | 2026-01-06 14:45:29 | 2026-01-06 16:04:41 | certcc | Forcepoint One DLP Client, version 23.04.5642 (and possibly… | Details |
| CVE-2025-60262 | 2026-01-06 00:00:00 | 2026-01-06 15:46:59 | mitre | An issue in H3C M102G HM1A0V200R010 wireless controller… | Details |
| CVE-2025-66648 | 2026-01-05 21:33:14 | 2026-01-06 15:40:18 | GitHub_M | vega-functions provides function implementations for the Vega expression… | Details |
| CVE-2026-21487 | 2026-01-06 03:27:45 | 2026-01-06 14:54:15 | GitHub_M | iccDEV provides a set of libraries and tools… | Details |
| CVE-2026-21411 | 2026-01-06 06:34:11 | 2026-01-06 14:49:01 | jpcert | Authentication bypass issue exists in OpenBlocks series versions… | Details |
| CVE-2026-21486 | 2026-01-06 03:36:45 | 2026-01-06 14:42:20 | GitHub_M | iccDEV provides a set of libraries and tools… | Details |
| CVE-2026-21493 | 2026-01-06 14:11:27 | 2026-01-06 14:33:17 | GitHub_M | iccDEV provides a set of libraries and tools… | Details |
| CVE-2026-21488 | 2026-01-06 13:52:21 | 2026-01-06 14:22:27 | GitHub_M | iccDEV provides a set of libraries and tools… | Details |
| CVE-2026-21489 | 2026-01-06 13:57:42 | 2026-01-06 14:10:18 | GitHub_M | iccDEV provides a set of libraries and tools… | Details |
| CVE-2025-52515 | 2026-01-05 00:00:00 | 2026-01-05 21:49:29 | mitre | An issue was discovered in the Camera in… | Details |
| CVE-2025-49495 | 2026-01-05 00:00:00 | 2026-01-05 21:49:24 | mitre | An issue was discovered in the WiFi driver… | Details |
| CVE-2025-53966 | 2026-01-05 00:00:00 | 2026-01-05 21:49:18 | mitre | An issue was discovered in Samsung Mobile Processor… | Details |
| CVE-2025-43706 | 2026-01-05 00:00:00 | 2026-01-05 21:49:12 | mitre | An issue was discovered in L2 in Samsung… | Details |
| CVE-2025-64423 | 2026-01-05 20:41:37 | 2026-01-05 21:48:48 | GitHub_M | Coolify is an open-source and self-hostable tool for… | Details |
| CVE-2025-64424 | 2026-01-05 20:45:09 | 2026-01-05 21:48:42 | GitHub_M | Coolify is an open-source and self-hostable tool for… | Details |
| CVE-2025-64425 | 2026-01-05 20:49:10 | 2026-01-05 21:48:36 | GitHub_M | Coolify is an open-source and self-hostable tool for… | Details |
| CVE-2025-65110 | 2026-01-05 21:22:35 | 2026-01-05 21:48:24 | GitHub_M | Vega is a visualization grammar, a declarative format… | Details |
| CVE-2025-65922 | 2026-01-05 00:00:00 | 2026-01-05 21:35:02 | mitre | PLANKA 2.0.0 lacks X-Frame-Options and CSP frame-ancestors headers,… | Details |
| CVE-2025-61916 | 2026-01-05 21:14:36 | 2026-01-05 21:30:01 | GitHub_M | Spinnaker is an open source, multi-cloud continuous delivery… | Details |
| CVE-2025-57836 | 2026-01-05 00:00:00 | 2026-01-05 21:28:38 | mitre | An issue was discovered in Samsung Magician 6.3.0… | Details |
| CVE-2025-67427 | 2026-01-05 00:00:00 | 2026-01-05 21:26:10 | mitre | A Blind Server-Side Request Forgery (SSRF) vulnerability in… | Details |
| CVE-2025-14346 | 2026-01-05 15:39:19 | 2026-01-05 21:20:30 | icscert | WHILL Model C2 Electric Wheelchairs and Model F… | Details |
| CVE-2025-15240 | 2026-01-05 08:18:15 | 2026-01-05 21:13:47 | twcert | QOCA aim AI Medical Cloud Platform developed by… | Details |
| CVE-2025-15239 | 2026-01-05 08:10:56 | 2026-01-05 21:13:21 | twcert | QOCA aim AI Medical Cloud Platform developed by… | Details |
| CVE-2025-15238 | 2026-01-05 08:00:09 | 2026-01-05 21:12:11 | twcert | QOCA aim AI Medical Cloud Platform developed by… | Details |
| CVE-2025-15022 | 2026-01-05 07:52:56 | 2026-01-05 21:11:31 | Vaadin | Action captions in Vaadin accept HTML by default… | Details |
| CVE-2025-15237 | 2026-01-05 07:42:58 | 2026-01-05 21:10:36 | twcert | QOCA aim AI Medical Cloud Platform developed by… | Details |
| CVE-2025-15236 | 2026-01-05 07:38:01 | 2026-01-05 21:10:06 | twcert | QOCA aim AI Medical Cloud Platform developed by… | Details |
| CVE-2025-15235 | 2026-01-05 07:25:33 | 2026-01-05 21:08:27 | twcert | QOCA aim AI Medical Cloud Platform developed by… | Details |
| CVE-2025-65328 | 2026-01-05 00:00:00 | 2026-01-05 21:08:06 | mitre | Mega-Fence (webgate-lib.*) 25.1.914 and prior trusts the first… | Details |
| CVE-2026-21633 | 2026-01-05 16:47:38 | 2026-01-05 21:03:40 | hackerone | A malicious actor with access to the adjacent… | Details |
| CVE-2025-55065 | 2026-01-01 18:30:45 | 2026-01-05 21:02:02 | INCD | CWE-89 Improper Neutralization of Special Elements used in… | Details |
| CVE-2025-66398 | 2026-01-01 18:00:38 | 2026-01-05 21:00:41 | GitHub_M | Signal K Server is a server application that… | Details |
| CVE-2025-59467 | 2026-01-05 16:47:38 | 2026-01-05 20:58:05 | hackerone | A Cross-Site Scripting (XSS) vulnerability in the UCRM… | Details |
| CVE-2026-21634 | 2026-01-05 16:47:38 | 2026-01-05 20:42:08 | hackerone | A malicious actor with access to the adjacent… | Details |
| CVE-2025-62857 | 2026-01-02 14:51:49 | 2026-01-05 20:39:30 | qnap | A cross-site scripting (XSS) vulnerability has been reported… | Details |
| CVE-2025-53589 | 2026-01-02 14:55:11 | 2026-01-05 20:39:24 | qnap | A NULL pointer dereference vulnerability has been reported… | Details |
| CVE-2025-53590 | 2026-01-02 14:55:37 | 2026-01-05 20:39:19 | qnap | A NULL pointer dereference vulnerability has been reported… | Details |
| CVE-2025-53591 | 2026-01-02 14:55:54 | 2026-01-05 20:39:12 | qnap | A use of externally-controlled format string vulnerability has… | Details |
| CVE-2025-53592 | 2026-01-02 14:56:13 | 2026-01-05 20:39:07 | qnap | A NULL pointer dereference vulnerability has been reported… | Details |
| CVE-2025-53593 | 2026-01-02 14:56:24 | 2026-01-05 20:39:01 | qnap | A buffer overflow vulnerability has been reported to… | Details |
| CVE-2025-53596 | 2026-01-02 14:56:33 | 2026-01-05 20:38:55 | qnap | A NULL pointer dereference vulnerability has been reported… | Details |
| CVE-2025-59384 | 2026-01-02 15:19:19 | 2026-01-05 20:38:45 | qnap | A path traversal vulnerability has been reported to… | Details |
| CVE-2025-64422 | 2026-01-05 20:29:34 | 2026-01-05 20:38:39 | GitHub_M | Coolify is an open-source and self-hostable tool for… | Details |
| CVE-2025-59387 | 2026-01-02 15:19:30 | 2026-01-05 20:38:38 | qnap | An SQL injection vulnerability has been reported to… | Details |
| CVE-2025-62852 | 2026-01-02 15:19:40 | 2026-01-05 20:38:31 | qnap | A buffer overflow vulnerability has been reported to… | Details |
| CVE-2025-11837 | 2026-01-02 15:51:28 | 2026-01-05 20:38:25 | qnap | An improper control of generation of code vulnerability… | Details |
| CVE-2025-62840 | 2026-01-02 15:51:34 | 2026-01-05 20:38:20 | qnap | A generation of error message containing sensitive information… | Details |
| CVE-2025-62842 | 2026-01-02 15:51:40 | 2026-01-05 20:38:14 | qnap | An external control of file name or path… | Details |
| CVE-2026-21430 | 2026-01-02 18:44:24 | 2026-01-05 20:38:09 | GitHub_M | Emlog is an open source website building system.… | Details |
| CVE-2026-21431 | 2026-01-02 18:49:03 | 2026-01-05 20:38:04 | GitHub_M | Emlog is an open source website building system.… | Details |
| CVE-2026-21432 | 2026-01-02 18:58:38 | 2026-01-05 20:37:57 | GitHub_M | Emlog is an open source website building system.… | Details |
| CVE-2026-21433 | 2026-01-02 19:00:22 | 2026-01-05 20:37:52 | GitHub_M | Emlog is an open source website building system.… | Details |
| CVE-2026-21440 | 2026-01-02 19:02:18 | 2026-01-05 20:37:47 | GitHub_M | AdonisJS is a TypeScript-first web framework. A Path… | Details |
| CVE-2026-21444 | 2026-01-02 19:05:31 | 2026-01-05 20:37:42 | GitHub_M | libtpms, a library that provides software emulation of… | Details |
| CVE-2025-64120 | 2026-01-02 21:33:23 | 2026-01-05 20:37:36 | Dragos | Improper Neutralization of Special Elements used in an… | Details |
| CVE-2025-64121 | 2026-01-02 21:35:53 | 2026-01-05 20:37:31 | Dragos | Authentication Bypass Using an Alternate Path or Channel… | Details |
| CVE-2025-64122 | 2026-01-02 21:39:26 | 2026-01-05 20:37:25 | Dragos | Insufficiently Protected Credentials vulnerability in Nuvation Energy Multi-Stack… | Details |
| CVE-2025-64123 | 2026-01-02 21:41:25 | 2026-01-05 20:37:19 | Dragos | Unintended Proxy or Intermediary vulnerability in Nuvation Energy… | Details |
| CVE-2025-64125 | 2026-01-03 00:21:20 | 2026-01-05 20:37:11 | Dragos | A vulnerability in Nuvation Energy nCloud VPN Service… | Details |
| CVE-2025-64124 | 2026-01-03 00:28:24 | 2026-01-05 20:37:04 | Dragos | Improper Neutralization of Special Elements used in an… | Details |
| CVE-2026-21484 | 2026-01-03 01:21:39 | 2026-01-05 20:36:58 | GitHub_M | AnythingLLM is an application that turns pieces of… | Details |
| CVE-2025-5591 | 2026-01-05 00:02:51 | 2026-01-05 20:34:18 | TML | Kentico Xperience 13 is vulnerable to a stored… | Details |
| CVE-2025-66518 | 2026-01-05 08:46:27 | 2026-01-05 20:27:07 | apache | Any client who can access to Apache Kyuubi… | Details |
| CVE-2025-69284 | 2026-01-02 15:42:05 | 2026-01-05 20:24:05 | GitHub_M | Plane is an an open-source project management tool.… | Details |
| CVE-2025-52516 | 2026-01-05 00:00:00 | 2026-01-05 20:14:27 | mitre | An issue was discovered in the Camera in… | Details |
| CVE-2025-67419 | 2026-01-05 00:00:00 | 2026-01-05 20:11:26 | mitre | A Denial of Service (DoS) vulnerability in evershop… | Details |
| CVE-2025-48769 | 2026-01-01 16:14:33 | 2026-01-05 20:07:09 | apache | Use After Free vulnerability was discovered in fs/vfs/fs_rename… | Details |
| CVE-2025-48768 | 2026-01-01 16:14:00 | 2026-01-05 20:06:13 | apache | Release of Invalid Pointer or Reference vulnerability was… | Details |
| CVE-2025-64421 | 2026-01-05 19:42:46 | 2026-01-05 20:06:08 | GitHub_M | Coolify is an open-source and self-hostable tool for… | Details |
| CVE-2025-66023 | 2026-01-01 15:11:46 | 2026-01-05 20:04:36 | GitHub_M | NanoMQ MQTT Broker (NanoMQ) is an all-around Edge… | Details |
| CVE-2025-68280 | 2026-01-05 13:45:21 | 2026-01-05 20:04:14 | apache | Improper Restriction of XML External Entity Reference vulnerability… | Details |
| CVE-2025-10933 | 2026-01-05 17:07:32 | 2026-01-05 20:00:17 | Silabs | An integer underflow vulnerability in the Silicon Labs… | Details |
| CVE-2025-13820 | 2026-01-01 06:00:03 | 2026-01-05 19:57:21 | WPScan | The Comments WordPress plugin before 7.6.40 does… | Details |
| CVE-2025-69413 | 2026-01-01 04:39:48 | 2026-01-05 19:56:03 | mitre | In Gitea before 1.25.2, /api/v1/user has different responses… | Details |
| CVE-2025-55204 | 2026-01-05 17:37:06 | 2026-01-05 19:55:35 | GitHub_M | muffon is a cross-platform music streaming client for… | Details |
| CVE-2025-59156 | 2026-01-05 17:39:42 | 2026-01-05 19:53:41 | GitHub_M | Coolify is an open-source and self-hostable tool for… | Details |
| CVE-2025-61781 | 2026-01-05 17:53:23 | 2026-01-05 19:43:45 | GitHub_M | OpenCTI is an open source platform for managing… | Details |
| CVE-2025-59157 | 2026-01-05 17:41:29 | 2026-01-05 19:38:25 | GitHub_M | Coolify is an open-source and self-hostable tool for… | Details |
| CVE-2025-64419 | 2026-01-05 19:16:44 | 2026-01-05 19:32:27 | GitHub_M | Coolify is an open-source and self-hostable tool for… | Details |
| CVE-2025-64420 | 2026-01-05 19:20:24 | 2026-01-05 19:30:10 | GitHub_M | Coolify is an open-source and self-hostable tool for… | Details |
| CVE-2025-59158 | 2026-01-05 17:44:41 | 2026-01-05 19:29:34 | GitHub_M | Coolify is an open-source and self-hostable tool for… | Details |
| CVE-2025-67303 | 2026-01-05 00:00:00 | 2026-01-05 19:11:15 | mitre | An issue in ComfyUI-Manager prior to version 3.38… | Details |
| CVE-2025-59955 | 2026-01-05 17:46:56 | 2026-01-05 17:59:28 | GitHub_M | Coolify is an open-source and self-hostable tool for… | Details |
| CVE-2025-14124 | 2026-01-05 06:00:06 | 2026-01-05 16:26:42 | WPScan | The Team WordPress plugin before 5.0.11 does… | Details |
| CVE-2025-9543 | 2026-01-05 06:00:09 | 2026-01-05 16:22:52 | WPScan | The FlexTable WordPress plugin before 3.19.2 does… | Details |
| CVE-2025-64119 | 2026-01-02 21:26:57 | 2026-01-05 16:15:10 | Dragos | A vulnerability in Nuvation Battery Management System allows… | Details |
| CVE-2026-21446 | 2026-01-02 19:18:36 | 2026-01-05 15:54:55 | GitHub_M | Bagisto is an open source laravel eCommerce platform.… | Details |
| CVE-2025-47411 | 2026-01-01 16:41:51 | 2026-01-05 15:15:34 | apache | A user with a legitimate non-administrator account can… | Details |
| CVE-2026-21447 | 2026-01-02 20:15:11 | 2026-01-02 21:30:38 | GitHub_M | Bagisto is an open source laravel eCommerce platform.… | Details |
| CVE-2026-21448 | 2026-01-02 20:18:08 | 2026-01-02 21:29:34 | GitHub_M | Bagisto is an open source laravel eCommerce platform.… | Details |
| CVE-2026-21449 | 2026-01-02 20:35:21 | 2026-01-02 21:27:39 | GitHub_M | Bagisto is an open source laravel eCommerce platform.… | Details |
| CVE-2026-21451 | 2026-01-02 20:37:06 | 2026-01-02 21:25:51 | GitHub_M | Bagisto is an open source laravel eCommerce platform.… | Details |
| CVE-2026-21450 | 2026-01-02 20:38:48 | 2026-01-02 21:24:43 | GitHub_M | Bagisto is an open source laravel eCommerce platform.… | Details |
| CVE-2026-21452 | 2026-01-02 20:47:44 | 2026-01-02 21:22:01 | GitHub_M | MessagePack for Java is a serializer implementation for… | Details |
| CVE-2026-21483 | 2026-01-02 20:57:29 | 2026-01-02 21:18:57 | GitHub_M | listmonk is a standalone, self-hosted, newsletter and mailing… | Details |
| CVE-2025-14072 | 2026-01-02 06:00:12 | 2026-01-02 21:12:38 | WPScan | The Ninja Forms WordPress plugin before 3.13.3… | Details |
| CVE-2025-13456 | 2026-01-02 06:00:11 | 2026-01-02 21:11:51 | WPScan | The ShopBuilder WordPress plugin before 3.2.2 does… | Details |
| CVE-2025-13153 | 2026-01-02 06:00:11 | 2026-01-02 21:11:05 | WPScan | The Logo Slider WordPress plugin before 4.9.0… | Details |
| CVE-2026-21429 | 2026-01-02 17:23:17 | 2026-01-02 21:05:56 | GitHub_M | Emlog is an open source website building system.… | Details |
| CVE-2025-69417 | 2026-01-02 16:55:18 | 2026-01-02 21:04:29 | mitre | In the plex.tv backend for Plex Media Server… | Details |
| CVE-2025-69416 | 2026-01-02 16:52:56 | 2026-01-02 21:03:41 | mitre | In the plex.tv backend for Plex Media Server… | Details |
| CVE-2025-69415 | 2026-01-02 16:49:36 | 2026-01-02 21:02:49 | mitre | In Plex Media Server (PMS) through 1.42.2.10156, ability… | Details |
| CVE-2025-69414 | 2026-01-02 16:43:09 | 2026-01-02 21:01:44 | mitre | Plex Media Server (PMS) through 1.42.2.10156 allows retrieval… | Details |
| CVE-2025-44013 | 2026-01-02 14:52:34 | 2026-01-02 19:26:32 | qnap | A NULL pointer dereference vulnerability has been reported… | Details |
| CVE-2025-47208 | 2026-01-02 14:52:49 | 2026-01-02 19:25:58 | qnap | An allocation of resources without limits or throttling… | Details |
| CVE-2025-52426 | 2026-01-02 14:53:10 | 2026-01-02 19:25:16 | qnap | A NULL pointer dereference vulnerability has been reported… | Details |
| CVE-2025-52430 | 2026-01-02 14:53:23 | 2026-01-02 19:24:13 | qnap | A NULL pointer dereference vulnerability has been reported… | Details |
| CVE-2025-52431 | 2026-01-02 14:53:37 | 2026-01-02 19:23:21 | qnap | A NULL pointer dereference vulnerability has been reported… | Details |
| CVE-2025-52863 | 2026-01-02 14:53:57 | 2026-01-02 19:21:59 | qnap | A buffer overflow vulnerability has been reported to… | Details |
| CVE-2025-52864 | 2026-01-02 14:54:14 | 2026-01-02 19:21:12 | qnap | A buffer overflow vulnerability has been reported to… | Details |
| CVE-2025-52872 | 2026-01-02 14:54:25 | 2026-01-02 19:20:02 | qnap | A buffer overflow vulnerability has been reported to… | Details |
| CVE-2025-53405 | 2026-01-02 14:54:39 | 2026-01-02 19:19:33 | qnap | A NULL pointer dereference vulnerability has been reported… | Details |
| CVE-2025-53414 | 2026-01-02 14:54:54 | 2026-01-02 19:17:55 | qnap | A NULL pointer dereference vulnerability has been reported… | Details |
| CVE-2025-54164 | 2026-01-02 14:56:43 | 2026-01-02 19:17:21 | qnap | An out-of-bounds read vulnerability has been reported to… | Details |
| CVE-2025-54165 | 2026-01-02 14:56:54 | 2026-01-02 19:16:42 | qnap | An out-of-bounds read vulnerability has been reported to… | Details |
| CVE-2025-54166 | 2026-01-02 14:57:05 | 2026-01-02 19:16:09 | qnap | An out-of-bounds read vulnerability has been reported to… | Details |
| CVE-2025-57705 | 2026-01-02 14:57:17 | 2026-01-02 19:15:26 | qnap | An allocation of resources without limits or throttling… | Details |
| CVE-2025-9110 | 2026-01-02 15:17:29 | 2026-01-02 19:14:42 | qnap | An exposure of sensitive system information to an… | Details |
| CVE-2025-48721 | 2026-01-02 15:17:38 | 2026-01-02 19:13:09 | qnap | A buffer overflow vulnerability has been reported to… | Details |
| CVE-2025-52871 | 2026-01-02 15:18:17 | 2026-01-02 19:12:32 | qnap | An out-of-bounds read vulnerability has been reported to… | Details |
| CVE-2025-53594 | 2026-01-02 15:18:26 | 2026-01-02 19:12:02 | qnap | A path traversal vulnerability has been reported to… | Details |
| CVE-2025-53597 | 2026-01-02 15:18:41 | 2026-01-02 19:11:27 | qnap | A buffer overflow vulnerability has been reported to… | Details |
| CVE-2025-59380 | 2026-01-02 15:18:56 | 2026-01-02 19:10:29 | qnap | A path traversal vulnerability has been reported to… | Details |
| CVE-2025-59389 | 2026-01-02 15:51:48 | 2026-01-02 19:09:42 | qnap | An SQL injection vulnerability has been reported to… | Details |
| CVE-2025-69203 | 2026-01-01 18:37:11 | 2026-01-02 19:02:25 | GitHub_M | Signal K Server is a server application that… | Details |
| CVE-2025-68619 | 2026-01-01 18:35:19 | 2026-01-02 19:00:44 | GitHub_M | Signal K Server is a server application that… | Details |
| CVE-2025-68620 | 2026-01-01 18:29:35 | 2026-01-02 18:58:28 | GitHub_M | Signal K Server is a server application that… | Details |
| CVE-2025-68273 | 2026-01-01 18:21:51 | 2026-01-02 18:56:08 | GitHub_M | Signal K Server is a server application that… | Details |
| CVE-2025-68272 | 2026-01-01 18:08:06 | 2026-01-02 18:55:16 | GitHub_M | Signal K Server is a server application that… | Details |
| CVE-2026-21437 | 2026-01-01 18:06:02 | 2026-01-02 18:54:21 | GitHub_M | eopkg is a Solus package manager implemented in… | Details |
| CVE-2026-21436 | 2026-01-01 18:03:17 | 2026-01-02 18:52:58 | GitHub_M | eopkg is a Solus package manager implemented in… | Details |
| CVE-2026-21428 | 2026-01-01 17:54:43 | 2026-01-02 18:50:20 | GitHub_M | cpp-httplib is a C++11 single-file header-only cross platform… | Details |