Total CVEs

138,728

Critical Severity

3,597

High Severity

12,893

Last 7 Days

1,758
Quick preset (or use dates below)
Clear Filters
๐Ÿ“… Showing Year: 2026 (January 1 - December 31, 2026) View All Years โ†’
Showing 2,761 - 2,780 of 3,470 CVEs
CVE-2026-25548 CRITICAL - 9.1

InvoicePlane is a self-hosted open source application for managing invoices, clients, and payments. A critical Remote Code Execution (RCE) vulnerability exists in InvoicePlane 1.7.0 through a chained Local File Inclusion (LFI) and Log Poisoning attack. An authenticated administrator can execute arbi...

Vendor: InvoicePlane
Product: InvoicePlane
Published: Feb 18, 2026
Source: NVD
CVE-2026-27180 CRITICAL - 9.8

MajorDoMo (aka Major Domestic Module) is vulnerable to unauthenticated remote code execution through supply chain compromise via update URL poisoning. The saverestore module exposes its admin() method through the /objects/?module=saverestore endpoint without authentication because it uses gr('m...

Vendor: sergejey
Product: MajorDoMo
Published: Feb 18, 2026
Source: NVD
CVE-2026-27175 CRITICAL - 9.8

MajorDoMo (aka Major Domestic Module) is vulnerable to unauthenticated OS command injection via rc/index.php. The $param variable from user input is interpolated into a command string within double quotes without sanitization via escapeshellarg(). The command is inserted into a database queue by saf...

Vendor: sergejey
Product: MajorDoMo
Published: Feb 18, 2026
Source: NVD
CVE-2026-27174 CRITICAL - 9.8

MajorDoMo (aka Major Domestic Module) allows unauthenticated remote code execution via the admin panel's PHP console feature. An include order bug in modules/panel.class.php causes execution to continue past a redirect() call that lacks an exit statement, allowing unauthenticated requests to re...

Vendor: sergejey
Product: MajorDoMo
Published: Feb 18, 2026
Source: NVD
CVE-2019-25365 CRITICAL - 9.8

ChaosPro 2.0 contains a buffer overflow vulnerability in the configuration file path handling that allows attackers to execute arbitrary code by overwriting the Structured Exception Handler. Attackers can craft a malicious configuration file with carefully constructed payload to overwrite memory and...

Vendor: Chaospro
Product: ChaosPro
Published: Feb 18, 2026
Source: NVD
CVE-2019-25364 CRITICAL - 9.8

MailCarrier 2.51 contains a buffer overflow vulnerability in the POP3 USER command that allows remote attackers to execute arbitrary code. Attackers can send a crafted oversized buffer to the POP3 service, overwriting memory and potentially gaining remote system access.

Vendor: TABS Laboratories Corporation
Product: Win10 MailCarrier
Published: Feb 18, 2026
Source: NVD
CVE-2019-25362 CRITICAL - 9.8

WMV to AVI MPEG DVD WMV Convertor 4.6.1217 contains a buffer overflow vulnerability that allows attackers to execute arbitrary code by overwriting the license name and license code fields. Attackers can craft a malicious payload of 6000 bytes to trigger a bind shell on port 4444 by exploiting a stac...

Vendor: Alloksoft
Product: WMV to AVI MPEG DVD WMV Convertor
Published: Feb 18, 2026
Source: NVD
CVE-2019-25361 CRITICAL - 9.8

Ayukov NFTP client 1.71 contains a buffer overflow vulnerability in the SYST command handling that allows remote attackers to execute arbitrary code. Attackers can send a specially crafted SYST command with oversized payload to trigger a buffer overflow and execute a bind shell on port 5150.

Vendor: Ayukov
Product: Ayukov NFTP client
Published: Feb 18, 2026
Source: NVD
CVE-2019-25360 CRITICAL - 9.8

Aida64 Engineer 6.10.5200 contains a buffer overflow vulnerability in the CSV logging configuration that allows attackers to execute malicious code by crafting a specially designed payload. Attackers can exploit the vulnerability by creating a malformed log file with carefully constructed SEH (Struc...

Vendor: FinalWire Ltd.
Product: Aida64
Published: Feb 18, 2026
Source: NVD
CVE-2026-26980 CRITICAL - 9.4

Ghost is a Node.js content management system. Versions 3.24.0 through 6.19.0 allow unauthenticated attackers to perform arbitrary reads from the database. This issue has been fixed in version 6.19.1.

Vendor: npm
Product: ghost
Published: Feb 18, 2026
Source: GitHub
CVE-2026-0573 CRITICAL - 9.0

An URL redirection vulnerability was identified in GitHub Enterprise Server that allowed attacker-controlled redirects to leak sensitive authorization tokens. The repository_pages API insecurely followed HTTP redirects when fetching artifact URLs, preserving the authorization header containing a pri...

Vendor: github
Product: enterprise_server
Published: Feb 18, 2026
Source: NVD
CVE-2025-70152 CRITICAL - 9.8

code-projects Community Project Scholars Tracking System 1.0 is vulnerable to SQL Injection in the admin user management endpoints /admin/save_user.php and /admin/update_user.php. These endpoints lack authentication checks and directly concatenate user-supplied POST parameters (firstname, lastname, ...

Vendor: fabian
Product: scholars_tracking_system
Published: Feb 18, 2026
Source: NVD
CVE-2025-70150 CRITICAL - 9.8

CodeAstro Membership Management System 1.0 contains a missing authentication vulnerability in delete_members.php that allows unauthenticated attackers to delete arbitrary member records via the id parameter.

Vendor: codeastro
Product: membership_management_system
Published: Feb 18, 2026
Source: NVD
CVE-2025-14009 CRITICAL - 10.0

A critical vulnerability exists in the NLTK downloader component of nltk/nltk, affecting all versions. The _unzip_iter function in nltk/downloader.py uses zipfile.extractall() without performing path validation or security checks. This allows attackers to craft malicious zip packages that, when down...

Vendor: nltk
Product: nltk/nltk
Published: Feb 18, 2026
Source: NVD
CVE-2025-70149 CRITICAL - 9.8

CodeAstro Membership Management System 1.0 is vulnerable to SQL Injection in print_membership_card.php via the ID parameter.

Vendor: codeastro
Product: membership_management_system
Published: Feb 18, 2026
Source: NVD
CVE-2025-70146 CRITICAL - 9.1

Missing authentication in multiple administrative action scripts under /admin/ in ProjectWorlds Online Time Table Generator 1.0 allows remote attackers to perform unauthorized administrative operations (e.g.,adding records, deleting records) via direct HTTP requests to affected endpoints without a v...

Vendor: projectworlds
Product: online_time_table_generator
Published: Feb 18, 2026
Source: NVD
CVE-2025-70141 CRITICAL - 9.4

SourceCodester Customer Support System 1.0 contains an incorrect access control vulnerability in ajax.php. The AJAX dispatcher does not enforce authentication or authorization before invoking administrative methods in admin_class.php based on the action parameter. An unauthenticated remote attacker ...

Vendor: oretnom23
Product: customer_support_system
Published: Feb 18, 2026
Source: NVD
CVE-2025-70998 CRITICAL - 9.8

UTT HiPER 810 / nv810v4 router firmware v1.5.0-140603 was discovered to contain insecure default credentials for the telnet service, possibly allowing a remote attacker to gain root access via a crafted script.

Vendor: utt
Product: 810_firmware
Published: Feb 18, 2026
Source: NVD
CVE-2025-65791 CRITICAL - 9.8

ZoneMinder v1.36.34 is vulnerable to Command Injection in web/views/image.php. The application passes unsanitized user input directly to the exec() function.

Vendor: zoneminder
Product: zoneminder
Published: Feb 18, 2026
Source: NVD
CVE-2026-2329 CRITICAL - 9.8

An unauthenticated stack-based buffer overflow vulnerability exists in the HTTP API endpoint /cgi-bin/api.values.get. A remote attacker can leverage this vulnerability to achieve unauthenticated remote code execution (RCE) with root privileges on a target device. The vulnerability affects all six de...

Vendor: grandstream
Product: gxp1610_firmware
Published: Feb 18, 2026
Source: NVD