Total CVEs

137,287

Critical Severity

3,310

High Severity

12,270

Last 7 Days

1,339
Quick preset (or use dates below)
Clear Filters
๐Ÿ“… Showing Year: 2026 (January 1 - December 31, 2026) View All Years โ†’
Showing 2,121 - 2,140 of 33,692 CVEs
CVE-2026-8599 MEDIUM - 6.4

The MailerPress โ€“ Email Marketing, Newsletter, Email Automation & WooCommerce Emails plugin for WordPress is vulnerable to Stored Cross-Site Scripting via Campaign HTML Content Field in all versions up to, and including, 2.0.4 due to insufficient input sanitization and output escaping. This make...

Published: Jun 09, 2026
Source: NVD
CVE-2026-8365 HIGH - 8.8

The Blocksy theme for WordPress is vulnerable to PHP Object Injection leading to Remote Code Execution via the 'blocksy_meta' REST API field and the V200 database migration in versions up to and including 2.1.35. This is due to insufficient input sanitization in the blocksy_sanitize_post_m...

Published: Jun 09, 2026
Source: NVD
CVE-2026-7542 MEDIUM - 6.5

The Slider Revolution plugin for WordPress is vulnerable to Sensitive Information Disclosure in versions up to and including 7.0.10. This is due to three compounding design flaws: (1) the plugin leaks a valid backend AJAX nonce (revslider_actions) to all authenticated users including Subscribers via...

Published: Jun 09, 2026
Source: NVD
CVE-2026-6899 MEDIUM - 5.6

Check for certificate revocation only considers the first matching CRL and ignores other valid CRLs of the same CA in the CycloneCrypto cryptographic wrapper of S2OPC library. It might allow connection between an OPC UA client and server using a revoked certificate.

Published: Jun 09, 2026
Source: NVD
CVE-2026-49818 MEDIUM - 6.5

The Apache Airflow Samba provider's `GCSToSambaOperator` joined GCS object names to the SMB destination path without a containment check, so an object named with `../` segments resolved a write path outside the configured `destination_path`. An attacker able to write objects into the source GCS...

Vendor: Apache Software Foundation
Product: Apache Airflow Samba provider
Published: Jun 09, 2026
Source: NVD

In the Linux kernel, the following vulnerability has been resolved: io_uring/waitid: clear waitid info before copying it to userspace IORING_OP_WAITID stores its result fields in struct io_waitid::info and later copies them to userspace siginfo. The prep path initializes the request arguments, but...

Vendor: Linux
Product: Linux
Published: Jun 09, 2026
Source: NVD
CVE-2026-34905 MEDIUM - 6.5

Exposure of Sensitive Information to an Unauthorized Actor vulnerability in Apache Answer. This issue affects Apache Answer: through 2.0.0. The unlisted question feature did not enforce access restrictions on direct API endpoints, allowing authenticated users to discover and access unlisted questi...

Vendor: Apache Software Foundation
Product: Apache Answer
Published: Jun 09, 2026
Source: NVD
CVE-2026-34033 MEDIUM - 5.4

Improper Neutralization of Script-Related HTML Tags in a Web Page (Basic XSS) vulnerability in Apache Answer. This issue affects Apache Answer: through 2.0.0. User-supplied content was included in notification emails without proper escaping, allowing authenticated users to inject arbitrary HTML in...

Vendor: Apache Software Foundation
Product: Apache Answer
Published: Jun 09, 2026
Source: NVD
CVE-2026-34031 MEDIUM - 6.5

Unrestricted Upload of File with Dangerous Type vulnerability in Apache Answer. This issue affects Apache Answer: through 2.0.0. The server did not sufficiently validate user-supplied image URLs, allowing arbitrary external content to be embedded as profile images, which could expose users to unin...

Vendor: Apache Software Foundation
Product: Apache Answer
Published: Jun 09, 2026
Source: NVD
CVE-2026-33582 MEDIUM - 6.5

Unrestricted Upload of File with Dangerous Type vulnerability in Apache Answer. This issue affects Apache Answer: through 2.0.0. A crafted TIFF image could trigger excessive memory allocation during image decoding, allowing an authenticated user to cause the server process to crash. Users are reco...

Vendor: Apache Software Foundation
Product: Apache Answer
Published: Jun 09, 2026
Source: NVD
CVE-2026-28262 MEDIUM - 6.0

Dell iDRAC Tools, versions prior to 11.4.1.0, contains an Improper Link Resolution Before File Access ('Link Following') vulnerability. A low privileged attacker with local access could potentially exploit this vulnerability, leading to Information tampering.

Vendor: Dell
Product: iDRAC Tools
Published: Jun 09, 2026
Source: NVD
CVE-2026-25699 MEDIUM - 6.1

Exposure of Private Personal Information to an Unauthorized Actor vulnerability in Apache Answer. This issue affects Apache Answer: through 2.0.0. Timeline-related APIs lacked proper authorization checks, allowing regular authenticated users to access deleted, private, or unapproved content and it...

Vendor: Apache Software Foundation
Product: Apache Answer
Published: Jun 09, 2026
Source: NVD
CVE-2026-25688 MEDIUM - 6.1

Improper Neutralization of Alternate XSS Syntax vulnerability in Apache Answer. This issue affects Apache Answer: through 2.0.0. AI-generated response content was rendered in the browser without proper sanitization, allowing malicious scripts to be executed when the content was viewed. Users are r...

Vendor: Apache Software Foundation
Product: Apache Answer
Published: Jun 09, 2026
Source: NVD
CVE-2026-11616 HIGH - 8.8

The Events Calendar for GeoDirectory plugin for WordPress is vulnerable to Privilege Escalation in versions up to and including 2.3.28. This is due to the ajax_ayi_action() handler only applying strip_tags(esc_sql()) โ€” with no allow-list โ€” to the attacker-controlled $_POST['type'] and $_P...

Vendor: stiofansisland
Product: Events Calendar for GeoDirectory
Published: Jun 09, 2026
Source: NVD
CVE-2009-10007 CRITICAL - 9.1

Catalyst::Plugin::Authentication versions before 0.10_027 for Perl is susceptible to session fixation attacks. Catalyst::Plugin::Authentication does not automatically change the session id after authentication. An attacker that obtains a session id cookie can use this to impersonate the victim.

Vendor: ETHER
Product: Catalyst::Plugin::Authentication
Published: Jun 09, 2026
Source: NVD
CVE-2026-9698 CRITICAL - 9.8

DBI versions before 1.648 for Perl saved errors in a limited-sized buffer. Error messages that were returned when RaiseError, PrintError or HandleError were set were written to a 200-byte buffer without a length limit. Attackers that can influence the error text in an application can trigger a buf...

Vendor: perl
Product: dbi
Published: Jun 09, 2026
Source: NVD
CVE-2026-5068 HIGH - 7.6

A remote, unauthenticated BLE peer can trigger a 2-byte out-of-bounds write in the Bluetooth host during L2CAP LE CoC SDU reassembly. When the application enables segmentation (via chan_ops.alloc_buf) and the chosen RX pool has a user_data_size smaller than 2 bytes, the segmentation counter stored i...

Published: Jun 09, 2026
Source: NVD
CVE-2026-44083 CRITICAL - 9.8

An authorization bypass through user-controlled key vulnerability has been reported to affect QuMagie. The remote attackers can then exploit the vulnerability to gain unintended privileges. We have already fixed the vulnerability in the following version: QuMagie 2.9.1 and later

Vendor: QNAP Systems Inc.
Product: QuMagie
Published: Jun 09, 2026
Source: NVD

Logic bypass vulnerability in the file system. Impact: Successful exploitation of this vulnerability may affect availability.

Vendor: Huawei
Product: HarmonyOS
Published: Jun 09, 2026
Source: NVD
CVE-2026-41985 MEDIUM - 5.1

UAF vulnerability in the package management module.ย Impact: Successful exploitation of this vulnerability may affect service integrity.

Vendor: Huawei
Product: HarmonyOS
Published: Jun 09, 2026
Source: NVD