Total CVEs

140,406

Critical Severity

3,747

High Severity

13,541

Last 7 Days

1,777
Quick preset (or use dates below)
Clear Filters
๐Ÿ“… Showing Year: 2026 (January 1 - December 31, 2026) View All Years โ†’
Showing 6,521 - 6,540 of 13,553 CVEs
CVE-2026-4109 MEDIUM - 4.3

The Eventin โ€“ Events Calendar, Event Booking, Ticket & Registration (AI Powered) plugin for WordPress is vulnerable to unauthorized access of data due to a improper capability check on the get_item_permissions_check() function in all versions up to, and including, 4.1.8. This makes it possible f...

Published: Apr 14, 2026
Source: NVD
CVE-2026-33929 MEDIUM - 4.3

Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') vulnerability in Apache PDFBox Examples. This issue affects the ExtractEmbeddedFiles example in Apache PDFBox: from 2.0.24 through 2.0.36, from 3.0.0 through 3.0.7. Users are recommended to update to version...

Vendor: Apache Software Foundation
Product: Apache PDFBox Examples
Published: Apr 14, 2026
Source: NVD
CVE-2026-31924 MEDIUM - 5.3

Cleartext Transmission of Sensitive Information vulnerability in Apache APISIX. tencent-cloud-cls log export uses plaintext HTTP This issue affects Apache APISIX: from 2.99.0 through 3.15.0. Users are recommended to upgrade to version 3.16.0, which fixes the issue.

Vendor: Apache Software Foundation
Product: Apache APISIX
Published: Apr 14, 2026
Source: NVD
CVE-2026-2582 MEDIUM - 6.5

The The Germanized for WooCommerce plugin for WordPress is vulnerable to arbitrary shortcode execution via 'account_holder' parameter in all versions up to, and including, 3.20.5. This is due to the software allowing users to execute an action that does not properly validate a value before...

Published: Apr 14, 2026
Source: NVD
CVE-2026-4479 MEDIUM - 4.4

The WholeSale Products Dynamic Pricing Management WooCommerce plugin for WordPress is vulnerable to Stored Cross-Site Scripting via admin settings in all versions up to, and including, 1.2 due to insufficient input sanitization and output escaping. This makes it possible for authenticated attackers,...

Published: Apr 14, 2026
Source: NVD
CVE-2026-4059 MEDIUM - 6.4

The ShopLentor plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the woolentor_quickview_button shortcode's button_text attribute in all versions up to, and including, 3.3.5. This is due to insufficient input sanitization and missing output escaping on user-supplied shortcod...

Published: Apr 14, 2026
Source: NVD
CVE-2026-1607 MEDIUM - 6.4

The Surbma | Booking.com Shortcode plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the plugin's `surbma-bookingcom` shortcode in all versions up to, and including, 2.1 due to insufficient input sanitization and output escaping on user supplied attributes. This makes it pos...

Published: Apr 14, 2026
Source: NVD
CVE-2026-39426 MEDIUM - 5.4

MaxKB is an open-source AI assistant for enterprise. Versions 2.7.1 and below contain a Stored Cross-Site Scripting (XSS) vulnerability where the frontend's MdRenderer.vue component parses custom <iframe_render> tags from LLM responses or Application Prologue configurations, bypassing sta...

Vendor: 1Panel-dev
Product: MaxKB
Published: Apr 14, 2026
Source: NVD
CVE-2026-39425 MEDIUM - 5.4

MaxKB is an open-source AI assistant for enterprise. Versions 2.7.1 and below contain a Stored Cross-Site Scripting (XSS) vulnerability that allows authenticated users to inject arbitrary HTML and JavaScript into the Application prologue (Opening Remarks) field by wrapping malicious payloads in <...

Vendor: 1Panel-dev
Product: MaxKB
Published: Apr 14, 2026
Source: NVD
CVE-2026-34225 MEDIUM - 4.3

Open WebUI is a self-hosted artificial intelligence platform designed to operate entirely offline. Versions 0.7.2 and below contain a Blind Server Side Request Forgery in the functionality that allows editing an image via a prompt. The affected function performs a GET request to a user-provided URL ...

Vendor: open-webui
Product: open-webui
Published: Apr 14, 2026
Source: NVD
CVE-2026-39424 MEDIUM - 4.7

MaxKB is an open-source AI assistant for enterprise. In versions 2.7.1 and below, the chat export feature is vulnerable to Improper Neutralization of Formula Elements in a CSV File. When an administrator exports the application chat history to an Excel file (.xlsx) via the /admin/api/workspace/{work...

Vendor: 1Panel-dev
Product: MaxKB
Published: Apr 14, 2026
Source: NVD
CVE-2026-39423 MEDIUM - 5.4

MaxKB is an open-source AI assistant for enterprise. Versions 2.7.1 and below contain an Eval Injection vulnerability in the Markdown rendering engine that allows any user capable of interacting with the AI chat interface to execute arbitrary JavaScript in the browsers of other users, including admi...

Vendor: 1Panel-dev
Product: MaxKB
Published: Apr 14, 2026
Source: NVD
CVE-2026-39422 MEDIUM - 5.4

MaxKB is an open-source AI assistant for enterprise. Versions 2.7.1 and below contain a Stored Cross-Site Scripting (XSS) vulnerability through the application name or icon fields when creating an application. When a victim visits the public chat interface (/ui/chat/{access_token}), the ChatHeadersM...

Vendor: 1Panel-dev
Product: MaxKB
Published: Apr 14, 2026
Source: NVD
CVE-2026-39421 MEDIUM - 6.3

MaxKB is an open-source AI assistant for enterprise. Versions 2.7.1 and below contain a sandbox escape vulnerability in the ToolExecutor component. By leveraging Python's ctypes library to execute raw system calls, an authenticated attacker with workspace privileges can bypass the LD_PRELOAD-ba...

Vendor: 1Panel-dev
Product: MaxKB
Published: Apr 14, 2026
Source: NVD
CVE-2026-39420 MEDIUM - 6.3

MaxKB is an open-source AI assistant for enterprise. In versions 2.7.1 and below, an incomplete sandbox protection mechanism allows an authenticated user with tool execution privileges to escape the LD_PRELOAD-based sandbox. By env command the attacker can clear the environment variables and drop th...

Vendor: 1Panel-dev
Product: MaxKB
Published: Apr 14, 2026
Source: NVD
CVE-2026-39418 MEDIUM - 5.0

MaxKB is an open-source AI assistant for enterprise. In versions 2.7.1 and below, sandbox network protection can be bypassed by using socket.sendto() with the MSG_FASTOPEN flag. This allows authenticated user with tool-editing permissions to reach internal services that are explicitly blocked by the...

Vendor: 1Panel-dev
Product: MaxKB
Published: Apr 14, 2026
Source: NVD
CVE-2026-34264 MEDIUM - 6.5

During authorization checks in SAP Human Capital Management for SAP S/4HANA, the system returns specific messages. Due to this, an authenticated user with low privileges could guess and enumerate the content shown, beyond their authorized scope. This leads to disclosure of sensitive information caus...

Vendor: SAP_SE
Product: SAP Human Capital Management for SAP S/4HANA
Published: Apr 14, 2026
Source: NVD
CVE-2026-34262 MEDIUM - 5.0

Information Disclosure Vulnerability in SAP HANA Cockpit and HANA Database Explorer

Vendor: SAP_SE
Product: SAP HANA Cockpit and HANA Database Explorer
Published: Apr 14, 2026
Source: NVD
CVE-2026-34261 MEDIUM - 6.5

Due to a missing authorization check in SAP Business Analytics and SAP Content Management, an authenticated user could make unauthorized calls to certain remote function modules, potentially accessing sensitive information beyond their intended permissions. This vulnerability affects confidentiality...

Vendor: SAP_SE
Product: SAP Business Analytics and SAP Content Management
Published: Apr 14, 2026
Source: NVD
CVE-2026-34257 MEDIUM - 6.1

Due to an Open Redirect vulnerability in SAP NetWeaver Application Server ABAP, an unauthenticated attacker could craft malicious URL that, if accessed by a victim, they could be redirected to the page controlled by the attacker. This causes low impact on confidentiality and integrity of the applica...

Vendor: SAP_SE
Product: SAP NetWeaver Application Server ABAP
Published: Apr 14, 2026
Source: NVD