Total CVEs

132,176

Critical Severity

2,835

High Severity

10,141

Last 7 Days

1,647
Quick preset (or use dates below)
Clear Filters
๐Ÿ“… Showing Year: 2026 (January 1 - December 31, 2026) View All Years โ†’
Showing 3,661 - 3,680 of 28,581 CVEs
CVE-2026-4859 MEDIUM - 6.4

The SP Blog Designer plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the 'design' attribute of the `wpsbd_post_carousel` shortcode in all versions up to, and including, 1.0.0 due to insufficient input sanitization and output escaping. This makes it possible for authen...

Published: May 12, 2026
Source: NVD
CVE-2026-4663 MEDIUM - 5.3

The iPOSpays Gateways WC plugin for WordPress is vulnerable to Missing Authorization in versions up to and including 1.3.7. This is due to the plugin exposing a REST API endpoint /wp-json/ipospays/v1/save_settings with 'permission_callback' set to '__return_true', which allows un...

Published: May 12, 2026
Source: NVD
CVE-2026-4301 MEDIUM - 4.3

The Rate Star Review Vote - AJAX Reviews, Votes, Star Ratings plugin for WordPress is vulnerable to Missing Authorization in all versions up to and including 1.6.4. The vwrsr_review() AJAX handler lacks both capability checks and nonce verification. The only access control is an is_user_logged_in() ...

Published: May 12, 2026
Source: NVD
CVE-2026-3604 MEDIUM - 4.9

The WP SEO Structured Data Schema plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the `_kcseo_ative_tab` parameter in all versions up to, and including, 2.8.1 due to insufficient input sanitization and output escaping. This makes it possible for authenticated attackers, with Co...

Published: May 12, 2026
Source: NVD
CVE-2026-39432 HIGH - 8.2

Missing Authorization vulnerability in Arraytics Timetics allows Exploiting Incorrectly Configured Access Control Security Levels. This issue affects Timetics: from n/a through 1.0.53.

Vendor: Arraytics
Product: Timetics
Published: May 12, 2026
Source: NVD
CVE-2026-2993 HIGH - 7.5

The AI Chatbot & Workflow Automation by AIWU plugin for WordPress is vulnerable to SQL Injection in versions up to, and including, 1.4.17 due to insufficient escaping on user supplied parameters and lack of sufficient preparation on the existing SQL query in the getListForTbl() function. This ma...

Published: May 12, 2026
Source: NVD
CVE-2026-2300 MEDIUM - 6.4

The BJ Lazy Load plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the `filter_images()` function in all versions up to, and including, 1.0.9. This is due to the use of regex-based HTML processing (`preg_replace`) that does not properly handle HTML attribute boundaries when repla...

Published: May 12, 2026
Source: NVD

An unauthenticated remote attacker may exhaust all available TCP connections in the CODESYS Modbus TCP Server stack if a race condition in connection handling is successfully exploited, preventing legitimate clients from establishing new connections.

Vendor: CODESYS
Product: CODESYS Modbus
Published: May 12, 2026
Source: NVD
CVE-2026-1681 MEDIUM - 6.1

Issuing an ICMP ping via the `net ping` shell command to a device's own IPv4 address causes the network stack to recursively re-enter the input path on the same system work-queue stack. Because the destination is recognized as a local address, both the echo request and the resulting echo reply ...

Published: May 12, 2026
Source: NVD
CVE-2026-1185 MEDIUM - 5.4

A configuration file on the local file system had improper input validation which could allow code execution and potentially lead to privilege escalation. This vulnerability can only be exploited if an attacker canย log in to the Axis device using SSH.

Vendor: axis
Product: axis_os
Published: May 12, 2026
Source: NVD
CVE-2026-0804 MEDIUM - 6.7

An ACAP configuration file lacked sufficient input validation, which could allow a path traversal attack leading to potential privilege escalation. This vulnerability can only be exploited if the Axis device is configured to allow the installation of unsigned ACAP applications, and if an attacker co...

Vendor: axis
Product: axis_os
Published: May 12, 2026
Source: NVD
CVE-2026-0802 MEDIUM - 6.0

An ACAP configuration file lacked sufficient input validation, which could allow command injection and potentially lead to privilege escalation. This vulnerability can only be exploited if the Axis device is configured to allow the installation of unsigned ACAP applications, and if an attacker convi...

Vendor: axis
Product: axis_os
Published: May 12, 2026
Source: NVD
CVE-2026-0541 MEDIUM - 6.7

ACAP applications can gain elevated privileges due to improper input validation during the installation process, potentially leading to privilege escalation. This vulnerability can only be exploited if the Axis device is configured to allow the installation of unsigned ACAP applications, and if an a...

Vendor: axis
Product: axis_os
Published: May 12, 2026
Source: NVD
CVE-2026-41872 HIGH - 7.4

"Kura Sushi Official App" provided by EPG, Inc. is vulnerable to improper certificate validation. A man-in-the-middle attack may allow eavesdropping on, or altering, the communication on push notifications between the affected application and the relevant server.

Vendor: EPG, Inc.
Product: "Kura Sushi Official App" for Android, "Kura Sushi Official App" for iOS
Published: May 12, 2026
Source: NVD

The automatic folder creation feature of Lhaz and Lhaz+ provided by Chitora soft contains a path traversal vulnerability. When the affected product is configured with the automatic folder creation feature enabled, and a product user tries to extract an archive file which has a crafted file name, the...

Vendor: Chitora soft
Product: Lhaz, Lhaz+
Published: May 12, 2026
Source: NVD
CVE-2026-7287 HIGH - 7.5

** UNSUPPORTED WHEN ASSIGNED ** A buffer overflow vulnerability in the formWep(), formWlAc(), formPasswordSetup(), formUpgradeCert(), and formDelcert() functions of the โ€œwebsโ€ binary in Zyxel NWA1100-N customized firmware version 1.00(AACE.1)C0 could allow an attacker to trigger a denial-of-service ...

Vendor: zyxel
Product: nwa1100-n_firmware
Published: May 12, 2026
Source: NVD
CVE-2026-7257 MEDIUM - 4.4

** UNSUPPORTED WHEN ASSIGNED ** An insecure storage of sensitive information vulnerability in the configuration file of Zyxel WRE6505 v2 firmware version V1.00(ABDV.3)C0 could allow a local attacker with administrator privileges to download and decrypt a backup configuration file.

Vendor: zyxel
Product: wre6505_firmware
Published: May 12, 2026
Source: NVD
CVE-2026-7256 HIGH - 8.8

** UNSUPPORTED WHEN ASSIGNED ** A command injection vulnerability in the CGI program of Zyxel WRE6505 v2 firmware version V1.00(ABDV.3)C0 could allow an adjacent attacker on the LAN to execute operating system (OS) commands on a vulnerable device by sending a crafted HTTP request.

Vendor: zyxel
Product: wre6505_firmware
Published: May 12, 2026
Source: NVD
CVE-2026-7255 MEDIUM - 6.5

** UNSUPPORTED WHEN ASSIGNED ** An improper restriction of excessive authentication attempts vulnerability in the web management interface of Zyxel WRE6505 v2 firmware version V1.00(ABDV.3)C0 could allow an adjacent attacker on the LAN to brute-force the password and bypass authentication.

Vendor: zyxel
Product: wre6505_firmware
Published: May 12, 2026
Source: NVD
CVE-2026-45430 HIGH - 7.1

The Salesforce module before 1.x-1.0.1 for Backdrop CMS does not properly use a random state parameter to protect the authorization flow against CSRF attacks.

Vendor: Backdrop CMS contributed projects
Product: backdrop-contrib/salesforce
Published: May 12, 2026
Source: NVD