Total CVEs

138,754

Critical Severity

3,601

High Severity

12,905

Last 7 Days

1,541
Quick preset (or use dates below)
Clear Filters
๐Ÿ“… Showing Year: 2026 (January 1 - December 31, 2026) View All Years โ†’
Showing 2,201 - 2,220 of 13,065 CVEs
CVE-2026-48735 MEDIUM - 5.5

pypdf is a free and open-source pure-python PDF library. Prior to 6.12.1, an attacker who uses this vulnerability can craft a PDF which leads to large memory usage. This requires parsing large XMP metadata, possibly with lots of unnecessary elements. This vulnerability is fixed in 6.12.1.

Vendor: py-pdf
Product: pypdf
Published: May 28, 2026
Source: NVD
CVE-2026-48525 MEDIUM - 5.3

PyJWT is a JSON Web Token implementation in Python. From 2.8.0 to 2.12.1, when verifying detached JWS tokens using the unencoded-payload option ("b64": false, RFC 7797), PyJWT performs Base64URL decoding of the compact-serialization payload segment before enforcing the detached-payload rul...

Vendor: jpadilla
Product: pyjwt
Published: May 28, 2026
Source: NVD
CVE-2026-48523 MEDIUM - 5.4

PyJWT is a JSON Web Token implementation in Python. From 2.9.0 to 2.12.1, there is a verifier-side algorithm allow-list bypass when jwt.decode() or jwt.decode_complete() are called with a PyJWK key. The token header alg is checked against the caller-supplied algorithms allow-list, but signature veri...

Vendor: jpadilla
Product: pyjwt
Published: May 28, 2026
Source: NVD
CVE-2026-48522 MEDIUM - 4.2

PyJWT is a JSON Web Token implementation in Python. Prior to 2.13.0, PyJWKClient passes its uri argument directly to urllib.request.urlopen() which uses Python stdlib's default OpenerDirector registering HTTPHandler, HTTPSHandler, FTPHandler, FileHandler, and DataHandler. There is currently no ...

Vendor: jpadilla
Product: pyjwt
Published: May 28, 2026
Source: NVD
CVE-2026-48155 MEDIUM - 5.5

pypdf is a free and open-source pure-python PDF library. Prior to 6.12.0, an attacker who uses this vulnerability can craft a PDF which leads to large memory usage. This requires extracting text in layout mode with large character offsets. This vulnerability is fixed in 6.12.0.

Vendor: py-pdf
Product: pypdf
Published: May 28, 2026
Source: NVD
CVE-2026-9818 MEDIUM - 4.7

Roundcube's HTML sanitization path for message rendering allows loopback, localhost, RFC1918, link-local, and ULA URLs even when remote content loading is disabled. A remote attacker can send an HTML email that causes the victim's browser to issue requests to local or private-network servi...

Published: May 28, 2026
Source: NVD
CVE-2026-40914 MEDIUM - 4.3

A vulnerability exists in Apache Artemis whereby an application using the STOMP protocol with security credentials that grant either the consume or send permission on an address can augment the routing-type supported by that address even if said user doesn't have the createAddress permission fo...

Vendor: Apache Software Foundation
Product: Apache Artemis Stomp Protocol, Apache ActiveMQ Artemis Stomp Protocol
Published: May 28, 2026
Source: NVD
CVE-2025-48977 MEDIUM - 6.5

Relative Path Traversal vulnerability in Apache Ignite REST API. Authenticated REST API users can read any file on the server with "cmd=log" command and a log path crafted in a certain way. This issue affects Apache Ignite: from 2.0.0 through 2.17.0. Users are recommended to upgrade to v...

Vendor: Apache Software Foundation
Product: Apache Ignite
Published: May 28, 2026
Source: NVD
CVE-2026-9807 MEDIUM - 4.3

GitLab has remediated an issue in GitLab CE/EE affecting all versions from 18.9 before 18.10.7, 18.11 before 18.11.4, and 19.0 before 19.0.1 that under certain conditions could have allowed a blocked Project Access Token to continue accessing private resources due to incorrect authorization enforcem...

Vendor: gitlab
Product: gitlab
Published: May 28, 2026
Source: NVD
CVE-2026-9015 MEDIUM - 4.3

The Equalize Digital Accessibility Checker โ€“ WCAG, ADA, EAA and Section 508 compliance plugin for WordPress is vulnerable to authorization bypass in all versions up to, and including, 1.42.0. This is due to the plugin not properly verifying that a user is authorized to perform an action. This makes ...

Published: May 28, 2026
Source: NVD
CVE-2026-8689 MEDIUM - 4.3

The Visualizer: Tables and Charts Manager for WordPress plugin for WordPress is vulnerable to Missing Authorization in all versions up to, and including, 3.11.14. This is due to a missing capability check on the renderChartPages() and uploadData() functions, where the wp_ajax_visualizer-create-chart...

Published: May 28, 2026
Source: NVD
CVE-2026-7526 MEDIUM - 4.3

The PDF Embedder plugin for WordPress is vulnerable to Sensitive Information Exposure in all versions up to, and including, 4.9.3 via the enqueue_block_assets. This makes it possible for authenticated attackers, with contributor-level access and above, to extract configuration data. License key expo...

Published: May 28, 2026
Source: NVD
CVE-2026-7048 MEDIUM - 6.5

The Photo Gallery by 10Web โ€“ Mobile-Friendly Image Gallery plugin for WordPress is vulnerable to time-based blind SQL Injection via the 'order_by' parameter in all versions up to, and including, 1.8.40 due to insufficient escaping on the user supplied parameter and lack of sufficient prepa...

Published: May 28, 2026
Source: NVD
CVE-2026-6937 MEDIUM - 5.3

The Appointment Booking Calendar โ€” Simply Schedule Appointments Booking Plugin plugin for WordPress is vulnerable to Missing Authorization in all versions up to, and including, 1.6.11.8 due to the plugin not properly verifying that a user is authorized to perform an action via the bulk appointments ...

Published: May 28, 2026
Source: NVD
CVE-2026-4334 MEDIUM - 6.4

The Shariff Wrapper plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the 'headline' parameter in the [shariff] shortcode in all versions up to, and including, 4.6.20 due to insufficient input sanitization and output escaping. This makes it possible for authenticated at...

Published: May 28, 2026
Source: NVD
CVE-2026-9618 MEDIUM - 4.3

The PeachPay โ€” Payments & Express Checkout for WooCommerce (supports Stripe, PayPal, Square, Authorize.net, NMI) plugin for WordPress is vulnerable to Cross-Site Request Forgery in all versions up to, and including, 1.120.46. This is due to missing or incorrect nonce validation on the peachpay_s...

Published: May 28, 2026
Source: NVD
CVE-2026-8682 MEDIUM - 4.3

The 3D Viewer โ€“ 3D Model Viewer โ€“ Augmented Reality โ€“ Virtual Try On plugin for WordPress is vulnerable to authorization bypass in all versions up to, and including, 2.0.1. This is due to the plugin not properly verifying that a user is authorized to perform an action. This makes it possible for aut...

Published: May 28, 2026
Source: NVD
CVE-2026-7660 MEDIUM - 6.1

The Easy Updates Manager plugin for WordPress is vulnerable to Reflected Cross-Site Scripting via the 'paged' parameter in versions up to, and including, 9.0.20 This is due to insufficient input sanitization and output escaping in the pagination() function. This makes it possible for attac...

Published: May 28, 2026
Source: NVD
CVE-2026-7651 MEDIUM - 5.3

The User Registration & Membership โ€“ Free & Paid Memberships, Subscriptions, Content Restriction, User Profile, Custom User Registration & Login Builder plugin for WordPress is vulnerable to Insecure Direct Object Reference in all versions up to, and including, 5.1.5. This is due to miss...

Published: May 28, 2026
Source: NVD
CVE-2026-7621 MEDIUM - 4.3

The SMTP2GO for WordPress โ€“ Email Made Easy plugin for WordPress is vulnerable to unauthorized access in all versions up to, and including, 1.16.0. This is due to the plugin not properly verifying that a user is authorized to perform an action. This makes it possible for authenticated attackers, wit...

Published: May 28, 2026
Source: NVD