Total CVEs

138,940

Critical Severity

3,615

High Severity

12,982

Last 7 Days

1,011
Quick preset (or use dates below)
Clear Filters
Showing 2,941 - 2,960 of 12,982 CVEs
CVE-2025-41670 HIGH - 7.8

A local user with low privileges may be able to influence the behavior of a privileged system service by manipulating configuration or application-related files located in user-writable areas of the filesystem. The affected service processes data from locations that are not sufficiently protected ag...

Vendor: Phoenix Contact
Product: AXC F 1152, AXC F 1252, AXC F 2000 EA, AXC F 2152, AXC F 3152, BPC 9102S, EPC 1522, RFC 4072R, RFC 4072S, VL3 UPC 2440 EDGE, VPLCNEXT CONTROL 1000, VPLCNEXT CONTROL 2000, VPLCNEXT CONTROL 3000, VPLCNEXT CONTROL 500
Published: May 27, 2026
Source: NVD
CVE-2025-41669 HIGH - 8.8

The Web-based Management allows a remote low privileged Engineer user to install additional APPs on the device downloaded from the PLCnext Store without implementing any data verification mechanism, leading to the capability for an Engineer user to reach arbitrary code execution with root privileges...

Vendor: Phoenix Contact
Product: AXC F 1152, AXC F 1252, AXC F 2000 EA, AXC F 2152, AXC F 3152, BPC 9102S, EPC 1522, RFC 4072R, RFC 4072S, VL3 UPC 2440 EDGE, VPLCNEXT CONTROL 1000, VPLCNEXT CONTROL 2000, VPLCNEXT CONTROL 3000, VPLCNEXT CONTROL 500
Published: May 27, 2026
Source: NVD
CVE-2026-9200 HIGH - 7.5

The Query Shortcode plugin for WordPress is vulnerable to Local File Inclusion in all versions up to, and including, 0.2.1 via the shortcode function. This makes it possible for authenticated attackers, with contributor-level access and above, to include and execute arbitrary .php files on the serve...

Published: May 27, 2026
Source: NVD
CVE-2026-8994 HIGH - 8.1

The Login with NEAR plugin for WordPress is vulnerable to Authentication Bypass in all versions up to, and including, 0.3.3. The `ajaxLoginWithNear()` function — registered as a `wp_ajax_nopriv` action and therefore reachable by unauthenticated users — accepts an attacker-supplied `account` POST par...

Published: May 27, 2026
Source: NVD
CVE-2026-8787 HIGH - 8.8

The Firebase Support & Chat Management plugin for WordPress is vulnerable to privilege escalation in all versions up to, and including, 3.1.1. This is due to the `firebase_auth()` function authenticating the request as the WordPress user whose email is supplied in the `user_email` POST parameter...

Published: May 27, 2026
Source: NVD
CVE-2026-6268 HIGH - 7.1

The EventPress WordPress theme before 22.2 does not sanitize or escape the 'id' parameter in the eventpress_customizer_notify_dismiss_action AJAX handler before outputting it back in the response, allowing unauthenticated attackers to perform Reflected Cross-Site Scripting attacks against ...

Published: May 27, 2026
Source: NVD
CVE-2026-48962 HIGH - 7.3

IO::Compress versions before 2.220 for Perl can execute arbitrary code in File::GlobMapper via an attacker-controlled output glob. _parseOutputGlob() wraps the caller-supplied output glob string in double quotes and stores it in the parser state; _getFiles() then runs the stored expression through ...

Vendor: PMQS
Product: IO::Compress
Published: May 27, 2026
Source: NVD
CVE-2026-48961 HIGH - 7.3

IO::Compress versions from 2.207 before 2.220 for Perl ship a zipdetails CLI tool that crashes with undefined subroutine on Info-ZIP Unix Extra Field with 8-byte UID or GID. When decode_ux() in bin/zipdetails handles an Info-ZIP Unix Extra Field (tag 0x7875) with UID Size or GID Size set to 8, caus...

Vendor: PMQS
Product: IO::Compress
Published: May 27, 2026
Source: NVD
CVE-2026-48959 HIGH - 7.5

IO::Uncompress::Unzip versions before 2.220 for Perl allow CPU exhaustion via per-byte read loop in fastForward. fastForward() compares length $offset (the digit count of the offset, 1 to 19) against the chunk size $c instead of $offset itself, so $c shrinks from 16 KiB to 1-19 bytes per iteration....

Vendor: PMQS
Product: IO::Uncompress::Unzip
Published: May 27, 2026
Source: NVD
CVE-2026-2253 HIGH - 7.7

Hitachi Vantara Pentaho Data Integration & Analytics versions before 10.2.0.7 and 11.0.0.0, including 9.3.x and 8.3.x, does not prevent certain XML parsers from resolving external entities.

Published: May 27, 2026
Source: NVD
CVE-2026-9632 HIGH - 8.8

A flaw has been found in UTT HiPER 1250GW up to 3.2.7-210907-180535. Affected by this issue is the function strcpy of the file /goform/formGroupConfig of the component Web Management Interface. Executing a manipulation of the argument Profile can lead to stack-based buffer overflow. It is possible t...

Published: May 27, 2026
Source: NVD
CVE-2026-9631 HIGH - 8.8

A vulnerability was detected in UTT HiPER 1250GW up to 3.2.7-210907-180535. Affected by this vulnerability is the function strcpy of the file /goform/formConfigFastDirectionW of the component Web Management Interface. Performing a manipulation of the argument Profile results in stack-based buffer ov...

Published: May 27, 2026
Source: NVD
CVE-2026-9628 HIGH - 8.8

A weakness has been identified in UTT HiPER 1200GW up to 2.5.3-170306. Affected is an unknown function of the file /goform/formPptpClientConfig of the component Web Management Interface. This manipulation of the argument PPTP server address/username/password/tunnel name causes stack-based buffer ove...

Published: May 27, 2026
Source: NVD
CVE-2026-9627 HIGH - 8.8

A security flaw has been discovered in UTT HiPER 1200GW up to 2.5.3-170306. This impacts the function strcpy of the file /goform/setSysAdm of the component Web Management Interface. The manipulation of the argument sysAdmUser/sysAdmPass results in buffer overflow. The attack can be launched remotely...

Published: May 27, 2026
Source: NVD
CVE-2026-9207 HIGH - 8.8

Tanium addressed an unauthorized code execution vulnerability in Connect.

Vendor: tanium
Product: connect
Published: May 27, 2026
Source: NVD
CVE-2026-49014 HIGH - 7.4

In GDAL 3.1.0 through 3.13.0, scanForGeometryContainers in the netCDF driver allows code execution via a stack-based buffer overflow. It reads a geometry attribute into a fixed-size stack buffer without validating the attribute length. The attacker embeds the exploit as an oversized geometry attribu...

Vendor: GDAL
Product: GDAL
Published: May 27, 2026
Source: NVD

@hapi/content header parser has a parameter smuggling issue that allows upload-filter bypass via duplicate parameters

Vendor: npm
Product: @hapi/content
Published: May 27, 2026
Source: GitHub
CVE-2026-44741 HIGH - 8.8

Pimcore Admin Classic Bundle Vulnerable to SQL Injection in Translation Grid Date Filter via Unsanitized Property Parameter

Vendor: composer
Product: pimcore/admin-ui-classic-bundle
Published: May 27, 2026
Source: GitHub
CVE-2026-44739 HIGH - 8.7

Pimcore Vulnerable to SQL Injection in Custom Reports Column Configuration

Vendor: composer
Product: pimcore/pimcore
Published: May 27, 2026
Source: GitHub
CVE-2026-44705 HIGH - 8.2

tmp is a temporary file and directory creator for node.js. Prior to 0.2.6, the tmp npm package contains a path traversal vulnerability that allows escaping the intended temporary directory when untrusted data flows into the prefix, postfix, or dir options. By embedding traversal sequences (e.g., ../...

Vendor: npm
Product: tmp
Published: May 27, 2026
Source: GitHub