Total CVEs

138,940

Critical Severity

3,615

High Severity

12,982

Last 7 Days

1,022
Quick preset (or use dates below)
Clear Filters
📅 Showing Year: 2026 (January 1 - December 31, 2026) View All Years →
Showing 6,261 - 6,280 of 12,679 CVEs
CVE-2026-4352 HIGH - 7.5

The JetEngine plugin for WordPress is vulnerable to SQL Injection via the Custom Content Type (CCT) REST API search endpoint in all versions up to, and including, 3.8.6.1. This is due to the `_cct_search` parameter being interpolated directly into a SQL query string via `sprintf()` without sanitizat...

Published: Apr 14, 2026
Source: NVD
CVE-2026-34256 HIGH - 7.1

Due to a missing authorization check in SAP ERP and SAP S/4HANA (Private Cloud and On-Premise), an authenticated attacker could execute a particular ABAP report to overwrite any existing eight?character executable ABAP report without authorization. If the overwritten report is subsequently executed,...

Vendor: SAP_SE
Product: SAP ERP and SAP S/4 HANA (Private Cloud and On-Premise)
Published: Apr 14, 2026
Source: NVD
CVE-2026-40164 HIGH - 7.5

jq is a command-line JSON processor. Before commit 0c7d133c3c7e37c00b6d46b658a02244fdd3c784, jq used MurmurHash3 with a hardcoded, publicly visible seed (0x432A9843) for all JSON object hash table operations, which allowed an attacker to precompute key collisions offline. By supplying a crafted JSON...

Vendor: jqlang
Product: jq
Published: Apr 14, 2026
Source: NVD

SP1 is a zero‑knowledge virtual machine that proves the correct execution of programs compiled for the RISC-V architecture. In versions 6.0.0 through 6.0.2, a soundness vulnerability in the SP1 V6 recursive shard verifier allows a malicious prover to construct a recursive proof from a shard proof th...

Vendor: rust
Product: sp1_sdk
Published: Apr 14, 2026
Source: GitHub
CVE-2026-5086 HIGH - 7.5

Crypt::SecretBuffer versions before 0.019 for Perl is suseceptible to timing attacks. For example, if Crypt::SecretBuffer was used to store and compare plaintext passwords, then discrepencies in timing could be used to guess the secret password.

Published: Apr 13, 2026
Source: NVD
CVE-2026-6224 HIGH - 7.3

A security flaw has been discovered in nocobase plugin-workflow-javascript up to 2.0.23. This issue affects the function createSafeConsole of the file packages/plugins/@nocobase/plugin-workflow-javascript/src/server/Vm.js. Performing a manipulation results in sandbox issue. The attack can be initiat...

Published: Apr 13, 2026
Source: NVD
CVE-2026-33908 HIGH - 7.5

ImageMagick is free and open-source software used for editing and manipulating digital images. In versions below both 7.1.2-19 and 6.9.13-44, Magick frees the memory of the XML tree via the `DestroyXMLTree()` function; however, this process is executed recursively with no depth limit imposed. When M...

Vendor: ImageMagick
Product: ImageMagick
Published: Apr 13, 2026
Source: NVD
CVE-2026-22566 HIGH - 7.5

An Improper Access Control vulnerability could allow a malicious actor with access to the UniFi Play network to obtain UniFi Play WiFi credentials.
 Affected Products: UniFi Play PowerAmp (Version 1.0.35 and earlier)
 UniFi Play Audio Port  (Version 1.0.24 and earlier)
 Mitigation: Update UniFi ...

Vendor: Ubiquiti Inc
Product: UniFi Play PowerAmp, UniFi Play Audio Port
Published: Apr 13, 2026
Source: NVD
CVE-2026-22565 HIGH - 7.5

An Improper Input Validation vulnerability could allow a malicious actor with access to the UniFi Play network to cause the device to stop responding.
 Affected Products: UniFi Play PowerAmp (Version 1.0.35 and earlier)
 UniFi Play Audio Port  (Version 1.0.24 and earlier)
 Mitigation: Update Uni...

Vendor: Ubiquiti Inc
Product: UniFi Play PowerAmp, UniFi Play Audio Port
Published: Apr 13, 2026
Source: NVD
CVE-2026-33901 HIGH - 7.5

ImageMagick is free and open-source software used for editing and manipulating digital images. In versions below both 7.1.2-19 and 6.9.13-44, a heap buffer overflow occurs in the MVG decoder that could result in an out of bounds write when processing a crafted image. This issue has been fixed in ver...

Vendor: ImageMagick
Product: ImageMagick
Published: Apr 13, 2026
Source: NVD

Craft Commerce is an ecommerce platform for Craft CMS. In versions 5.0.0 through 5.5.4, an SQL injection vulnerability exists where the ProductQuery::hasVariant and VariantQuery::hasProduct properties bypass the input sanitization blocklist added to ElementIndexesController in a prior security fix (...

Vendor: craftcms
Product: commerce
Published: Apr 13, 2026
Source: NVD

Craft Commerce is an ecommerce platform for Craft CMS. In versions 4.0.0 through 4.10.2 and 5.0.0 through 5.5.4, there is an SQL injection vulnerability in the Commerce TotalRevenue widget which allows any authenticated control panel user to achieve remote code execution through a four-step exploita...

Vendor: craftcms
Product: commerce
Published: Apr 13, 2026
Source: NVD
CVE-2025-51414 HIGH - 8.8

In Phpgurukul Online Course Registration v3.1, an arbitrary file upload vulnerability was discovered within the profile picture upload functionality on the /my-profile.php page.

Published: Apr 13, 2026
Source: NVD
CVE-2026-32605 HIGH - 7.5

nimiq/core-rs-albatross is a Rust implementation of the Nimiq Proof-of-Stake protocol based on the Albatross consensus algorithm. Prior to version 1.3.0, an untrusted peer could crash a validator by publishing a signed tendermint proposal message where signer == validators.num_validators(). Proposal...

Vendor: nimiq
Product: core-rs-albatross
Published: Apr 13, 2026
Source: NVD
CVE-2026-40262 HIGH - 8.7

Note Mark is an open-source note-taking application. In versions 0.19.1 and prior, the asset delivery handler serves uploaded files inline and relies on magic-byte detection for content type, which does not identify text-based formats such as HTML, SVG, or XHTML. These files are served with an empty...

Vendor: go
Product: github.com/enchant97/note-mark/backend
Published: Apr 13, 2026
Source: GitHub
CVE-2026-40193 HIGH - 8.2

maddy is a composable, all-in-one mail server. Versions prior to 0.9.3 contain an LDAP injection vulnerability in the auth.ldap module where user-supplied usernames are interpolated into LDAP search filters and DN strings via strings.ReplaceAll() without any LDAP filter escaping, despite the go-ldap...

Vendor: go
Product: github.com/foxcpp/maddy
Published: Apr 13, 2026
Source: GitHub
CVE-2026-40192 HIGH - 7.5

Pillow is a Python imaging library. Versions 10.3.0 through 12.1.1 did not limit the amount of GZIP-compressed data read when decoding a FITS image, making them vulnerable to decompression bomb attacks. A specially crafted FITS file could cause unbounded memory consumption, leading to denial of serv...

Vendor: pip
Product: pillow
Published: Apr 13, 2026
Source: GitHub
CVE-2026-6200 HIGH - 8.8

A vulnerability was determined in Tenda F456 1.0.0.5. The affected element is the function formwebtypelibrary of the file /goform/webtypelibrary. This manipulation of the argument menufacturer/Go causes stack-based buffer overflow. The attack can be initiated remotely. The exploit has been publicly ...

Published: Apr 13, 2026
Source: NVD
CVE-2026-6199 HIGH - 8.8

A vulnerability was found in Tenda F456 1.0.0.5. Impacted is the function fromqossetting of the file /goform/qossetting. The manipulation of the argument page results in stack-based buffer overflow. It is possible to launch the attack remotely. The exploit has been made public and could be used.

Published: Apr 13, 2026
Source: NVD
CVE-2026-6198 HIGH - 8.8

A vulnerability has been found in Tenda F456 1.0.0.5. This issue affects the function fromNatStaticSetting of the file /goform/NatStaticSetting. The manipulation of the argument page leads to stack-based buffer overflow. It is possible to initiate the attack remotely. The exploit has been disclosed ...

Published: Apr 13, 2026
Source: NVD