Total CVEs

150,798

Critical Severity

4,991

High Severity

17,614

Last 7 Days

2,037
Quick preset (or use dates below)
Clear Filters
Showing 1,981 - 2,000 of 150,798 CVEs
CVE-2026-15464 MEDIUM - 6.4

The WP Hotel Booking plugin for WordPress is vulnerable to Stored Cross-Site Scripting via 'widget_search' Shortcode Attribute in all versions up to, and including, 2.3.2 due to insufficient input sanitization and output escaping. This makes it possible for authenticated attackers, with co...

Vendor: thimpress
Product: WP Hotel Booking
Published: Jul 24, 2026
Source: NVD
CVE-2026-15334 MEDIUM - 6.4

The Cozy Blocks – Page Builder for Gutenberg Editor & FSE with 600+ Patterns, 58 Blocks & Templates plugin for WordPress is vulnerable to Stored Cross-Site Scripting via 'icon.view' Block Attribute in all versions up to, and including, 2.2.11 due to insufficient input sanitization ...

Vendor: cozythemes
Product: Cozy Blocks – Page Builder for Gutenberg Editor & FSE with 600+ Patterns, 58 Blocks & Templates
Published: Jul 24, 2026
Source: NVD
CVE-2026-15333 MEDIUM - 6.4

The Cozy Blocks – Page Builder for Gutenberg Editor & FSE with 600+ Patterns, 58 Blocks & Templates plugin for WordPress is vulnerable to Stored Cross-Site Scripting via 'cozyCustomFont' Block Attribute in all versions up to, and including, 2.2.11 due to insufficient input sanitiza...

Vendor: cozythemes
Product: Cozy Blocks – Page Builder for Gutenberg Editor & FSE with 600+ Patterns, 58 Blocks & Templates
Published: Jul 24, 2026
Source: NVD
CVE-2026-12654 MEDIUM - 5.3

The Payment Plugins for Stripe WooCommerce plugin for WordPress is vulnerable to authorization bypass in all versions up to, and including, 4.0.7. This is due to the plugin not properly verifying that a user is authorized to perform an action. This makes it possible for unauthenticated attackers to ...

Vendor: paymentplugins
Product: Payment Plugins for Stripe WooCommerce
Published: Jul 24, 2026
Source: NVD
CVE-2026-14603 HIGH - 7.5

The WowOptin: Next-Gen Popup Maker WordPress plugin before 1.4.38 does not have proper authorization on a REST endpoint, allowing unauthenticated users to disable all of the site's opt-in forms and insert new template-based opt-in rows into the database.

Vendor: Unknown
Product: WowOptin: Next-Gen Popup Maker
Published: Jul 24, 2026
Source: NVD
CVE-2026-14172 HIGH - 7.8

Rapid7 InsightVM, Nexpose, and the Insight Agent execute discovered executables during authenticated assessment without validating file ownership, allowing a local low-privileged user to run code as the scan credential (Scan Engine) or as root/SYSTEM (Insight Agent). Fixed in Scan Engine content 1.1...

Vendor: Rapid7
Product: InsightVM, Nexpose, Insight Agent
Published: Jul 24, 2026
Source: NVD
CVE-2026-12981 HIGH - 7.5

The CAFEHAUS API WordPress plugin through 1.0.0 does not have any authentication or authorisation when updating user passwords, allowing unauthenticated attackers to set the password of any user, including administrators, and fully take over their accounts.

Vendor: Unknown
Product: CAFEHAUS API
Published: Jul 24, 2026
Source: NVD
CVE-2026-12877 CRITICAL - 9.1

The Project Management, Bug and Issue Tracking Plugin WordPress plugin before 5.1.0 does not sanitise and escape user supplied input before using it in a SQL query, allowing unauthenticated attackers to perform SQL injection attacks. This is exploitable in the Project Management, Bug and Issue Trac...

Vendor: Unknown
Product: Project Management, Bug and Issue Tracking Plugin
Published: Jul 24, 2026
Source: NVD

The ProfileGrid WordPress plugin before 5.9.9.7 does not perform a capability check on its license management actions, relying only on a nonce that is exposed to any logged-in user, allowing authenticated users with Subscriber-level access and above to overwrite the site's premium license sett...

Vendor: Unknown
Product: ProfileGrid
Published: Jul 24, 2026
Source: NVD
CVE-2026-12689 MEDIUM - 5.4

The ProfileGrid WordPress plugin before 5.9.9.7 does not perform any authorization or ownership check on some of its private-message thread actions, allowing authenticated users with Subscriber-level access and above to soft-delete, tamper with the metadata of, and mark as read other users' pr...

Vendor: Unknown
Product: ProfileGrid
Published: Jul 24, 2026
Source: NVD
CVE-2026-12688 MEDIUM - 6.5

The ProfileGrid WordPress plugin before 5.9.9.7 does not verify PayPal IPN notifications before granting paid group membership, allowing unauthenticated attackers to forge a payment notification and mark any user as a paid member of any group without any payment being made.

Vendor: Unknown
Product: ProfileGrid
Published: Jul 24, 2026
Source: NVD
CVE-2026-12497 HIGH - 7.5

The Paid Membership Plugin, Ecommerce, User Registration Form, Login Form, User Profile & Restrict Content WordPress plugin before 4.16.18 does not consistently enforce the role restriction configured on its front-end registration role-selection field. The set of roles offered to the visitor an...

Vendor: Unknown
Product: Paid Membership Plugin, Ecommerce, User Registration Form, Login Form, User Profile & Restrict Content
Published: Jul 24, 2026
Source: NVD
CVE-2026-16870 HIGH - 8.8

Multiple security vulnerabilities in Snowflake libsnowflakeclient versions prior to 2.9.2 could allow remote code execution and credential exfiltration. A stack-based buffer overflow in the file download path could allow remote code execution on a victim host. An attacker could exploit this by uploa...

Vendor: Snowflake
Product: Snowflake libsnowflakeclient
Published: Jul 24, 2026
Source: NVD
CVE-2026-66141 HIGH - 7.4

Exim before 4.99.5 allows .forward privilege escalation because force_command for a pipe transport is mishandled.

Vendor: Exim
Product: Exim
Published: Jul 24, 2026
Source: NVD
CVE-2026-66140 HIGH - 8.4

Exim before 4.99.5 allows directory traversal to access files outside of the spool area, and consequently gain privileges, because arguments related to queue-name are mishandled.

Vendor: Exim
Product: Exim
Published: Jul 24, 2026
Source: NVD
CVE-2026-66139 MEDIUM - 4.8

OpenStack Zaqar through 22.0.0 allows authentication bypass via an EXTRA-SPEC header when a UUID is known.

Vendor: OpenStack
Product: Zaqar
Published: Jul 24, 2026
Source: NVD
CVE-2026-66138 HIGH - 7.2

In OpenStack Ironic Python Agent through 11.6.0, a project-scoped user with the manager role can achieve arbitrary code execution on a running Ironic-Python-Agent via a maliciously constructed configuration, because the value of ntp_server is passed to a shell.

Vendor: OpenStack
Product: Ironic Python Agent
Published: Jul 24, 2026
Source: NVD
CVE-2026-54422 MEDIUM - 5.5

In OpenStack Ironic Python Agent through 11.5.0, a malicious bootc container, when deployed using ironic-python-agent, may be able to extract the credentials used to download it.

Vendor: OpenStack
Product: Ironic Python Agent
Published: Jul 24, 2026
Source: NVD
CVE-2026-6454 MEDIUM - 6.4

The Firelight Lightbox plugin for WordPress is vulnerable to Stored DOM Cross-Site Scripting in versions up to and including 2.3.20. This is due to insufficient sanitization of the href attribute value within the FancyBox V2 PDF beforeLoad JavaScript callback generated in inc/fancybox-2.php, where t...

Published: Jul 24, 2026
Source: NVD
CVE-2026-15420 MEDIUM - 4.3

The Nexter Blocks – Gutenberg Blocks, Page Builder & AI Website Builder plugin for WordPress is vulnerable to Directory Traversal in all versions up to, and including, 5.0.0 via the 'plus_name' parameter. This makes it possible for authenticated attackers, with subscriber-level access ...

Vendor: posimyththemes
Product: Nexter Blocks – Gutenberg Blocks, Page Builder & AI Website Builder
Published: Jul 24, 2026
Source: NVD