Total CVEs

113,593

Critical Severity

1,059

High Severity

3,317

Last 7 Days

955
Quick preset (or use dates below)
Clear Filters
Showing 21 - 40 of 113,593 CVEs
CVE-2026-3395 HIGH - 7.3

A flaw has been found in MaxSite CMS up to 109.1. This impacts the function eval of the file application/maxsite/admin/plugins/editor_markitup/preview-ajax.php of the component MarkItUp Preview AJAX Endpoint. Executing a manipulation can lead to code injection. It is possible to launch the attack re...

Published: Mar 01, 2026
Source: NVD
CVE-2026-3394 LOW - 3.3

A vulnerability was detected in jarikomppa soloud up to 20200207. This affects the function SoLoud::Wav::loadwav of the file src/audiosource/wav/soloud_wav.cpp of the component WAV File Parser. Performing a manipulation results in memory corruption. The attack must be initiated from a local position...

Published: Mar 01, 2026
Source: NVD
CVE-2026-3393 LOW - 3.3

A security vulnerability has been detected in jarikomppa soloud up to 20200207. The impacted element is the function SoLoud::Wav::loadflac of the file src/audiosource/wav/soloud_wav.cpp of the component Audio File Handler. Such manipulation leads to heap-based buffer overflow. The attack must be car...

Published: Mar 01, 2026
Source: NVD
CVE-2026-3392 LOW - 3.3

A weakness has been identified in FascinatedBox lily up to 2.3. The affected element is the function eval_tree of the file src/lily_emitter.c. This manipulation causes null pointer dereference. The attack is restricted to local execution. The exploit has been made available to the public and could b...

Published: Mar 01, 2026
Source: NVD
CVE-2026-3391 LOW - 3.3

A security flaw has been discovered in FascinatedBox lily up to 2.3. Impacted is the function clear_storages of the file src/lily_emitter.c. The manipulation results in out-of-bounds read. The attack is only possible with local access. The exploit has been released to the public and may be used for ...

Published: Mar 01, 2026
Source: NVD
CVE-2026-3390 LOW - 3.3

A vulnerability was identified in FascinatedBox lily up to 2.3. This issue affects the function patch_line_end of the file src/lily_build_error.c of the component Error Reporting. The manipulation leads to out-of-bounds read. The attack can only be performed from a local environment. The exploit is ...

Published: Mar 01, 2026
Source: NVD
CVE-2026-3389 LOW - 3.3

A vulnerability was determined in Squirrel up to 3.2. This vulnerability affects the function sqstd_rex_newnode in the library sqstdlib/sqstdrex.cpp. Executing a manipulation can lead to null pointer dereference. The attack can only be executed locally. The exploit has been publicly disclosed and ma...

Published: Mar 01, 2026
Source: NVD
CVE-2026-3388 LOW - 3.3

A vulnerability was found in Squirrel up to 3.2. This affects the function SQCompiler::Factor/SQCompiler::UnaryOP of the file squirrel/sqcompiler.cpp. Performing a manipulation results in uncontrolled recursion. The attack needs to be approached locally. The exploit has been made public and could be...

Published: Mar 01, 2026
Source: NVD
CVE-2026-3387 LOW - 3.3

A vulnerability has been found in wren-lang wren up to 0.4.0. Affected by this issue is the function getByteCountForArguments of the file src/vm/wren_compiler.c. Such manipulation leads to null pointer dereference. Local access is required to approach this attack. The exploit has been disclosed to t...

Published: Mar 01, 2026
Source: NVD
CVE-2026-3386 LOW - 3.3

A flaw has been found in wren-lang wren up to 0.4.0. Affected by this vulnerability is the function emitOp of the file src/vm/wren_compiler.c. This manipulation causes out-of-bounds read. It is possible to launch the attack on the local host. The exploit has been published and may be used. The proje...

Published: Mar 01, 2026
Source: NVD
CVE-2026-3385 LOW - 3.3

A vulnerability was detected in wren-lang wren up to 0.4.0. Affected is the function resolveLocal of the file src/vm/wren_compiler.c. The manipulation results in uncontrolled recursion. Attacking locally is a requirement. The exploit is now public and may be used. The project was informed of the pro...

Published: Mar 01, 2026
Source: NVD
CVE-2026-3384 LOW - 3.3

A security vulnerability has been detected in ChaiScript up to 6.1.0. This impacts the function chaiscript::eval::AST_Node_Impl::eval/chaiscript::eval::Function_Push_Pop of the file include/chaiscript/language/chaiscript_eval.hpp. The manipulation leads to uncontrolled recursion. An attack has to be...

Published: Mar 01, 2026
Source: NVD
CVE-2026-3383 LOW - 3.3

A weakness has been identified in ChaiScript up to 6.1.0. This affects the function chaiscript::Boxed_Number::go of the file include/chaiscript/dispatchkit/boxed_number.hpp. Executing a manipulation can lead to divide by zero. The attack requires local access. The exploit has been made available to ...

Published: Mar 01, 2026
Source: NVD
CVE-2026-3382 LOW - 3.3

A security flaw has been discovered in ChaiScript up to 6.1.0. The impacted element is the function chaiscript::Boxed_Number::get_as of the file include/chaiscript/dispatchkit/boxed_number.hpp. Performing a manipulation results in memory corruption. The attack requires a local approach. The exploit ...

Published: Mar 01, 2026
Source: NVD
CVE-2026-3380 HIGH - 8.8

A vulnerability was found in Tenda F453 1.0.0.3. This issue affects the function frmL7ImForm of the file /goform/L7Im. The manipulation of the argument page results in buffer overflow. The attack may be launched remotely. The exploit has been made public and could be used.

Published: Mar 01, 2026
Source: NVD
CVE-2026-3379 HIGH - 8.8

A vulnerability has been found in Tenda F453 1.0.0.3. This vulnerability affects the function fromSetIpBind of the file /goform/SetIpBind. The manipulation of the argument page leads to buffer overflow. The attack may be initiated remotely. The exploit has been disclosed to the public and may be use...

Published: Mar 01, 2026
Source: NVD
CVE-2026-3378 HIGH - 8.8

A flaw has been found in Tenda F453 1.0.0.3. This affects the function fromqossetting of the file /goform/qossetting. Executing a manipulation of the argument qos can lead to buffer overflow. The attack can be launched remotely. The exploit has been published and may be used.

Published: Mar 01, 2026
Source: NVD
CVE-2026-3377 HIGH - 8.8

A vulnerability was detected in Tenda F453 1.0.0.3. Affected by this issue is the function fromSafeUrlFilter of the file /goform/SafeUrlFilter. Performing a manipulation of the argument page results in buffer overflow. The attack can be initiated remotely. The exploit is now public and may be used.

Published: Mar 01, 2026
Source: NVD
CVE-2026-3376 HIGH - 8.8

A security vulnerability has been detected in Tenda F453 1.0.0.3. Affected by this vulnerability is the function fromSafeMacFilter of the file /goform/SafeMacFilter. Such manipulation of the argument page leads to buffer overflow. It is possible to launch the attack remotely. The exploit has been di...

Published: Feb 28, 2026
Source: NVD
CVE-2026-28562 HIGH - 8.2

wpForo 2.4.14 contains an unauthenticated SQL injection vulnerability in Topics::get_topics() where the ORDER BY clause relies on ineffective esc_sql() sanitization on unquoted identifiers. Attackers exploit the wpfob parameter with CASE WHEN payloads to perform blind boolean extraction of credentia...

Vendor: gVectors Team
Product: wpForo Forum
Published: Feb 28, 2026
Source: NVD