Total CVEs

138,463

Critical Severity

3,569

High Severity

12,815

Last 7 Days

1,985
Quick preset (or use dates below)
Clear Filters
πŸ“… Showing Year: 2026 (January 1 - December 31, 2026) View All Years β†’
Showing 241 - 260 of 34,868 CVEs

Software installed and run as a non-privileged user may conduct improper GPU system calls to cause an error path leading to UAF of GPU page tables. The vulnerability allows physical memory allocated for MMU page tables to be used after being freed. This was caused by an error path that would not ...

Vendor: Imagination Technologies
Product: Graphics DDK
Published: Jun 19, 2026
Source: NVD
CVE-2026-11576 HIGH - 7.5

The security fix for CVE-2025-0728 in eclipse-threadx NetX Duo refactors error handling in the HTTP server PUT process to use a shared cleanup label, but this unified cleanup path unconditionally callsΒ fx_file_close()Β even when the file was never successfully opened. Multiple error branches jump to ...

Vendor: Eclipse Foundation
Product: Eclipse ThreadX - NetX Duo
Published: Jun 19, 2026
Source: NVD
CVE-2026-6798 MEDIUM - 5.3

The 2Download Connector for 2DL Hosted Checkout plugin for WordPress is vulnerable to unauthorized access in all versions up to, and including, 0.1.5. This is due to the plugin not properly verifying that a user is authorized to perform an action. This makes it possible for unauthenticated attackers...

Published: Jun 19, 2026
Source: NVD
CVE-2026-46461 HIGH - 7.8

Dell Server Hardware Manager, versions prior to 3.2.2, contains an Improper Access Control vulnerability. A low privileged attacker with local access could potentially exploit this vulnerability, leading to Elevation of privileges.

Vendor: Dell
Product: Server Hardware Manager
Published: Jun 19, 2026
Source: NVD
CVE-2026-3640 MEDIUM - 5.3

The STRABL – A checkout solution plugin for WordPress is vulnerable to Missing Authentication in all versions up to and including 4.5. The plugin registers a REST API webhook endpoint at /wp-json/strabl/webhook/order with a permission_callback of __return_true, which allows all incoming requests wit...

Published: Jun 19, 2026
Source: NVD

The WP Hotel Booking WordPress plugin before 2.3.1 does not enforce capability checks in several of its AJAX handlers, allowing authenticated users with Subscriber-level access to read other users' booking line items, enumerate active coupons, and read pricing data.

Published: Jun 19, 2026
Source: NVD
CVE-2026-9013 MEDIUM - 4.3

The Bogo plugin for WordPress is vulnerable to Sensitive Information Exposure in all versions up to, and including, 3.9.1 via the bogo_rest_create_post_translation. This makes it possible for authenticated attackers, with subscriber-level access and above, to extract the raw title, content, excerpt,...

Published: Jun 19, 2026
Source: NVD
CVE-2026-8713 CRITICAL - 9.1

The Avada (Fusion) Builder plugin for WordPress is vulnerable to arbitrary file deletion due to insufficient file path validation in the maybe_delete_files function in all versions up to, and including, 3.15.3. This makes it possible for unauthenticated attackers to delete arbitrary files on the ser...

Published: Jun 19, 2026
Source: NVD
CVE-2026-8118 MEDIUM - 6.5

The Royal Addons for Elementor – Addons and Templates Kit for Elementor plugin for WordPress is vulnerable to Arbitrary File Read in versions 1.7.1058 through 1.7.1059. This is due to the wpr_get_csv_handle() helper (introduced in version 1.7.1058 as part of the patch for CVE-2026-6229) falling back...

Published: Jun 19, 2026
Source: NVD
CVE-2026-7547 MEDIUM - 4.9

The Woosa – Marktplaats for WooCommerce plugin for WordPress is vulnerable to Arbitrary File Read via Path Traversal in versions up to and including 2.0.4. This is due to insufficient path sanitization in the render_logs_ui() function, which accepts a base64-encoded file name from the 'log_file...

Published: Jun 19, 2026
Source: NVD
CVE-2026-7515 CRITICAL - 9.8

The BetterDocs Pro plugin for WordPress is vulnerable to Local File Inclusion in versions up to, and including, 3.8.0 via the `doc_style` parameter. This makes it possible for unauthenticated attackers to include and execute arbitrary .php files on the server, allowing the execution of any PHP code ...

Published: Jun 19, 2026
Source: NVD
CVE-2026-56132 MEDIUM - 6.9

In libexpat before 2.8.2, there is a heap-based buffer overflow in doProlog in xmlparse.c because scaffold backing array reallocation is mishandled when there is data-structure sharing across parsers.

Vendor: libexpat project
Product: libexpat
Published: Jun 19, 2026
Source: NVD
CVE-2026-56131 MEDIUM - 4.9

libexpat before 2.8.2 lacks handler call depth tracking for calls to XML_ResumeParser from within handlers in cases of a policy violation. Thus, a use-after-free can occur (similar to the CVE-2026-50219 situation).

Vendor: libexpat project
Product: libexpat
Published: Jun 19, 2026
Source: NVD
CVE-2026-54414 CRITICAL - 9.8

FileRise before 3.16.0 is vulnerable to path traversal in the shared-folder upload endpoint (/api/folder/uploadToSharedFolder.php), leading to arbitrary file write and administrator account takeover. The upload filename is validated by FolderController with basename() and REGEX_FILE_NAME, which perm...

Vendor: error311
Product: FileRise
Published: Jun 19, 2026
Source: NVD
CVE-2026-4328 MEDIUM - 6.4

The Advanced Import plugin for WordPress is vulnerable to Server-Side Request Forgery in all versions up to, and including, 1.4.6. This is due to the plugin using wp_remote_get() to fetch a user-supplied URL without validating that the URL does not point to internal or private network resources in t...

Published: Jun 19, 2026
Source: NVD
CVE-2026-1856 MEDIUM - 6.4

The Appointment Booking Calendar plugin for WordPress is vulnerable to Stored Cross-Site Scripting via custom booking field labels in all versions up to, and including, 1.4.4 due to insufficient input sanitization and output escaping. This makes it possible for authenticated attackers, with Author-l...

Published: Jun 19, 2026
Source: NVD
CVE-2026-12644 MEDIUM - 5.3

Versions of the package ts-deepmerge before 8.0.0 are vulnerable to Uncaught Exception due to the improper handling of built-in Object.prototype methods (such as toString, valueOf). When user-controlled input contains these keys with non-function values, the resulting merged object becomes broken β€” ...

Product: ts-deepmerge
Published: Jun 19, 2026
Source: NVD
CVE-2026-12430 MEDIUM - 4.4

The Blocksy Companion plugin for WordPress is vulnerable to Stored Cross-Site Scripting via admin settings in all versions up to, and including, 2.1.45 due to insufficient input sanitization and output escaping. This makes it possible for authenticated attackers, with editor-level permissions and ab...

Vendor: creativethemeshq
Product: Blocksy Companion
Published: Jun 19, 2026
Source: NVD
CVE-2026-12157 MEDIUM - 6.4

The BetterDocs - Knowledge Base Docs & FAQ Solution for Elementor & Block Editor plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the blockId attribute of the betterdocs/category-slate-layout Gutenberg block in versions up to, and including, 4.5.3. This is due to insuffi...

Vendor: wpdevteam
Product: BetterDocs – AI Documentation, Knowledge Base, Docs, Wikis, FAQ with Chatbot
Published: Jun 19, 2026
Source: NVD
CVE-2026-11989 MEDIUM - 6.5

The Bit integrations – Form Integration, Webhook, Spreadsheets, CRM, LMS & Email Automation plugin for WordPress is vulnerable to Server-Side Request Forgery in all versions up to, and including, 2.8.7 via the upload_attachment. This makes it possible for unauthenticated attackers to make web re...

Vendor: bitpressadmin
Product: Bit integrations – Form Integration, Webhook, Spreadsheets, CRM, LMS & Email Automation
Published: Jun 19, 2026
Source: NVD