Total CVEs

138,940

Critical Severity

3,615

High Severity

12,982

Last 7 Days

1,068
Quick preset (or use dates below)
Clear Filters
📅 Showing Year: 2026 (January 1 - December 31, 2026) View All Years →
Showing 6,101 - 6,120 of 35,345 CVEs
CVE-2026-35630 HIGH - 8.0

OpenClaw before 2026.5.18 contains an authorization bypass vulnerability in QQBot native approval buttons that fails to enforce configured approver identity. Non-approver users can click approval buttons to resolve pending exec or plugin approval requests without proper authorization.

Vendor: OpenClaw
Product: OpenClaw
Published: May 29, 2026
Source: NVD
CVE-2026-34507 MEDIUM - 5.4

OpenClaw before 2026.4.29 contains a policy bypass vulnerability in QQBot admin commands that allows authenticated senders to skip DM-only and allowFrom policy checks. Attackers can route admin commands from unauthorized senders or contexts to execute restricted behavior that policy should have bloc...

Vendor: OpenClaw
Product: OpenClaw
Published: May 29, 2026
Source: NVD

QuickCMS is vulnerable to Cross-Site Scripting (XSS) through its insecure HTTP-based plugin‑fetching mechanism. A malicious attacker can perform a Man‑in‑the‑Middle (MITM) attack by impersonating the opensolution.org server and serving arbitrary HTML or JavaScript at the plugin list endpoint. When a...

Vendor: OpenSolution
Product: QuickCMS
Published: May 29, 2026
Source: NVD

QuickCMS allows a user's session identifier to be set before authentication. The value of this session ID stays the same after authentication. This behaviour enables an attacker to fix a session ID for a victim and later hijack the authenticated session. This issue was fixed in a patch to vers...

Vendor: OpenSolution
Product: QuickCMS
Published: May 29, 2026
Source: NVD
CVE-2026-32906 MEDIUM - 4.3

OpenClaw before 2026.5.12 contains a privilege escalation vulnerability in Slack plugin approvals that allows exec-authorized users to resolve plugin approvals through the exec approver gate. Attackers with limited exec approval permissions can bypass intended approval splits to approve plugin actio...

Vendor: OpenClaw
Product: OpenClaw
Published: May 29, 2026
Source: NVD
CVE-2026-32905 HIGH - 8.3

OpenClaw before 2026.5.4 contains an authorization bypass vulnerability in the bundled device-pair plugin that allows non-owner authorized chat senders to issue device-pairing bootstrap codes without proper scope validation. Attackers with chat command access can create setup codes to enroll devices...

Vendor: OpenClaw
Product: OpenClaw
Published: May 29, 2026
Source: NVD
CVE-2026-10101 MEDIUM - 6.3

ACM/MCE assisted-service writes raw referenced pull-secret contents into `InfraEnv.status.conditions[].message` when pull-secret validation fails. A namespace principal with the stock `view` ClusterRole cannot directly read Secrets, but can read `InfraEnv` objects and recover the referenced Secret&#...

Vendor: Red Hat
Product: Multicluster Engine for Kubernetes
Published: May 29, 2026
Source: NVD
CVE-2026-10099 MEDIUM - 4.0

XX-Net V5.16.6 contains a WebSocket frame parsing vulnerability in the WebSocket_receive_worker routine of simple_http_server.py that allows attackers to cause corrupted application data by sending unmasked WebSocket frames. The server unconditionally reads 4 bytes as a masking key regardless of whe...

Vendor: XX-net
Product: XX-Net
Published: May 29, 2026
Source: NVD
CVE-2026-10069 HIGH - 7.5

A vulnerability has been found in Shibby Tomato 1.28. The impacted element is an unknown function of the file usr/sbin/miniupnpd. Such manipulation leads to resource consumption. The attack may be launched remotely. This project is superseded by FreshTomato. This vulnerability only affects products ...

Vendor: Shibby
Product: Tomato
Published: May 29, 2026
Source: NVD
CVE-2026-10068 HIGH - 7.3

A flaw has been found in Shibby Tomato 1.28. The affected element is the function send of the file usr/sbin/miniupnpd of the component SUBSCRIBE Call Handler. This manipulation causes server-side request forgery. The attack may be initiated remotely. This project is superseded by FreshTomato. This v...

Vendor: Shibby
Product: Tomato
Published: May 29, 2026
Source: NVD
CVE-2026-10067 HIGH - 8.8

A vulnerability was detected in Shibby Tomato 1.28. Impacted is the function sub_90F0 of the file multimon.cgi. The manipulation results in stack-based buffer overflow. The attack can be launched remotely. This project is superseded by FreshTomato. This vulnerability only affects products that are n...

Vendor: Shibby
Product: Tomato
Published: May 29, 2026
Source: NVD
CVE-2026-10066 HIGH - 8.8

A security vulnerability has been detected in Shibby Tomato up to 1.28. This issue affects the function sub_9068 of the file tomatoups.cgi of the component UPS Service. The manipulation leads to stack-based buffer overflow. The attack can be initiated remotely. This project is superseded by FreshTom...

Vendor: Shibby
Product: Tomato
Published: May 29, 2026
Source: NVD
CVE-2026-10065 HIGH - 8.8

A weakness has been identified in Shibby Tomato 1.28. This vulnerability affects the function get_ups_field of the file tomatodata.cgi. Executing a manipulation of the argument Date can lead to stack-based buffer overflow. It is possible to launch the attack remotely. This project is superseded by F...

Vendor: Shibby
Product: Tomato
Published: May 29, 2026
Source: NVD
CVE-2026-10064 MEDIUM - 6.3

A security flaw has been discovered in TRENDnet TEW-432BRP 3.10B20. This affects the function formSetPortTr of the file /goform/formSetPortTr. Performing a manipulation of the argument special_name results in stack-based buffer overflow. It is possible to initiate the attack remotely. The exploit ha...

Vendor: TRENDnet
Product: TEW-432BRP
Published: May 29, 2026
Source: NVD
CVE-2018-25404 HIGH - 8.2

The Open ISES Project 3.30A contains an SQL injection vulnerability that allows unauthenticated attackers to execute arbitrary SQL queries by injecting malicious code through the ticket_id parameter. Attackers can send GET requests to add_facnote.php with crafted SQL payloads to extract sensitive da...

Vendor: Open ISES
Product: Open ISES Project
Published: May 29, 2026
Source: NVD
CVE-2018-25403 HIGH - 8.2

The Open ISES Project 3.30A contains an SQL injection vulnerability that allows unauthenticated attackers to execute arbitrary SQL queries by injecting malicious code through the p1 parameter. Attackers can send GET requests to city_graph.php with crafted SQL payloads to extract sensitive database i...

Vendor: Open ISES
Product: Open ISES Project
Published: May 29, 2026
Source: NVD
CVE-2018-25402 HIGH - 8.2

The Open ISES Project 3.30A contains an SQL injection vulnerability that allows unauthenticated attackers to execute arbitrary SQL queries by injecting malicious code through the p1 parameter. Attackers can send GET requests to inc_types_graph.php with crafted SQL payloads to extract sensitive datab...

Vendor: Open ISES
Product: Open ISES Project
Published: May 29, 2026
Source: NVD
CVE-2018-25401 HIGH - 8.2

The Open ISES Project 3.30A contains an SQL injection vulnerability that allows unauthenticated attackers to execute arbitrary SQL queries by injecting malicious code through the p1 parameter. Attackers can send GET requests to sever_graph.php with crafted SQL payloads to extract sensitive database ...

Vendor: Open ISES
Product: Open ISES Project
Published: May 29, 2026
Source: NVD
CVE-2018-25400 HIGH - 8.2

The Open ISES Project 3.30A contains an SQL injection vulnerability that allows unauthenticated attackers to execute arbitrary SQL queries by injecting malicious code through the 'id' parameter. Attackers can send GET requests to the ajax/form_post.php endpoint with crafted SQL payloads to...

Vendor: Open ISES
Product: Open ISES Project
Published: May 29, 2026
Source: NVD
CVE-2018-25399 HIGH - 8.2

The Open ISES Project 3.30A contains an SQL injection vulnerability that allows unauthenticated attackers to execute arbitrary SQL queries by injecting malicious code through the tick_lat and tick_lng parameters. Attackers can send GET requests to nearby.php with crafted SQL payloads to extract sens...

Vendor: Open ISES
Product: Open ISES Project
Published: May 29, 2026
Source: NVD