Total CVEs

139,456

Critical Severity

3,644

High Severity

13,084

Last 7 Days

1,260
Quick preset (or use dates below)
Clear Filters
๐Ÿ“… Showing Year: 2026 (January 1 - December 31, 2026) View All Years โ†’
Showing 6,721 - 6,740 of 35,861 CVEs
CVE-2026-9557 MEDIUM - 6.4

A Server-Side Request Forgery (SSRF) vulnerability exists in Mautic's Focus component. Due to insufficient validation of user-supplied URLs, an authenticated user can trigger outbound HTTP requests from the hosting server, enabling internal network reconnaissance or forcing requests to arbitrar...

Published: May 29, 2026
Source: NVD

The upload.cgi binary, responsible for processing device backups, contains a hardcoded AES encryption key. This allows an attacker to decrypt, modify, and re-encrypt system backups, facilitating persistent backdoor injection.

Vendor: Acer
Product: Wave 7 router
Published: May 29, 2026
Source: NVD
CVE-2026-46579 HIGH - 7.4

A flaw was found in the OpenShift Router. When a Route has `insecureEdgeTerminationPolicy` set to Allow, the HTTP frontend does not remove `X-SSL-Client-*` headers from incoming requests. This allows an unauthenticated attacker to send plain HTTP requests with crafted `X-SSL-Client-*` headers. As a ...

Vendor: Red Hat
Product: Red Hat OpenShift Container Platform 4
Published: May 29, 2026
Source: NVD
CVE-2026-42965 HIGH - 7.7

A flaw was found in the OpenShift Router. A user with EndpointSlice write access can exploit this vulnerability by creating a Service backed by an FQDN (Fully Qualified Domain Name) EndpointSlice that resolves to a cloud metadata endpoint. This allows the router to proxy requests to the cloud metada...

Vendor: Red Hat
Product: Red Hat OpenShift Container Platform 4
Published: May 29, 2026
Source: NVD

A flaw was found in the Quay config-tool's GitLab OAuth validator. This vulnerability causes sensitive credentials, specifically client_id and client_secret, to be transmitted as plaintext in URL query parameters during POST requests to the GitLab endpoint. This insecure transmission can lead t...

Vendor: Red Hat
Product: Red Hat Quay 3
Published: May 29, 2026
Source: NVD
CVE-2025-12714 MEDIUM - 5.3

The Rank Math SEO โ€“ AI SEO Tools to Dominate SEO Rankings plugin for WordPress is vulnerable to unauthorized access due to a missing capability check on the update_site_editor_homepage function in all versions up to, and including, 1.0.271. This makes it possible for unauthenticated attackers to mod...

Vendor: rankmath
Product: Rank Math SEO โ€“ AI SEO Tools to Dominate SEO Rankings
Published: May 29, 2026
Source: NVD
CVE-2026-9189 MEDIUM - 5.3

The Contact Form 7 โ€“ PayPal & Stripe Add-on plugin for WordPress is vulnerable to Payment Bypass via Insufficient Verification of Data Authenticity in all versions up to, and including, 2.4.9. Although `cf7pp_paypal_ipn_handler()` correctly validates IPN authenticity by posting back to PayPal wi...

Published: May 29, 2026
Source: NVD
CVE-2026-6075 HIGH - 8.1

The Media Library Assistant plugin for WordPress is vulnerable to Cross-Site Request Forgery in versions up to, and including, 3.35 This is due to missing nonce verification on the bulk action handlers in the settings tab handlers. This makes it possible for unauthenticated attackers to trick an adm...

Published: May 29, 2026
Source: NVD

The acer_cgi.log file in the device firmware is accessible without authentication via the web interface. This file contains cleartext login credentials (for web and Telnet), leading to unauthorized system access.

Vendor: Acer
Product: Wave 7 router
Published: May 29, 2026
Source: NVD
CVE-2026-49199 CRITICAL - 9.8

Crafted MQTT messages can trigger command injection, resulting in root-level code execution on the target device.

Vendor: Acer
Product: Predator Connect W6x
Published: May 29, 2026
Source: NVD

Improper access control in the MQTT broker allows wildcard topic subscriptions, exposing all MQTT traffic to unauthorized actors.

Vendor: Acer
Product: Predator Connect W6x
Published: May 29, 2026
Source: NVD

Web endpoints intended for the Acer Connect app improperly validate the HTTP Authorization header, failing to block requests when Base64 decoding fails.

Vendor: Acer
Product: Predator Connect W6x
Published: May 29, 2026
Source: NVD

The Wi-Fi device blocking feature fails to sanitize MAC address input, allowing injection and execution of arbitrary shell commands.

Vendor: Acer
Product: Predator Connect W6x
Published: May 29, 2026
Source: NVD

Unauthenticated Debug Service. The /sbin/mtk_dut binary is exposed on TCP port 9000 without authentication, allowing any LAN-based attacker to execute arbitrary UCC commands.

Vendor: Acer
Product: Predator Connect W6x
Published: May 29, 2026
Source: NVD
CVE-2026-10058 MEDIUM - 4.8

ITS Intelligent SCADA System developed by ITP Technology has a Stored Cross-Site Scripting vulnerability, allowing privileged remote attackers to inject persistent JavaScript codes that are executed in users' browsers upon page load.

Vendor: ITP Technology
Product: ITS Intelligent SCADA System
Published: May 29, 2026
Source: NVD
CVE-2026-10057 MEDIUM - 4.8

ITS Intelligent SCADA System developed by ITP Technology has a Stored Cross-Site Scripting vulnerability, allowing privileged remote attackers to inject persistent JavaScript codes that are executed in users' browsers upon page load.

Vendor: ITP Technology
Product: ITS Intelligent SCADA System
Published: May 29, 2026
Source: NVD
CVE-2026-10056 HIGH - 7.5

CORS misconfiguration in the REST API of Network Optix Nx Witness VMS before version 6.1.2, when running in the default Standard security mode, on Linux and Windows allows an unauthenticated remote attacker to steal the session token of an authenticated user and perform Administrator Account Takeove...

Vendor: Network Optix
Product: Nx Witness VMS
Published: May 29, 2026
Source: NVD
CVE-2026-10052 MEDIUM - 4.1

A flaw was found in the Quay config-tool's LDAP and SMTP validation functions. An attacker with config editor access can exploit these functions, which make outbound connections to user-supplied endpoints without proper IP or host filtering. This allows the attacker to perform internal network ...

Vendor: Red Hat
Product: Red Hat Quay 3
Published: May 29, 2026
Source: NVD
CVE-2026-10039 MEDIUM - 4.9

The Frontend Admin by DynamiApps plugin for WordPress is vulnerable to generic SQL Injection via the 'order' parameter in all versions up to, and including, 3.28.28 due to insufficient escaping on the user supplied parameter and lack of sufficient preparation on the existing SQL query. Thi...

Vendor: shabti
Product: Frontend Admin by DynamiApps
Published: May 29, 2026
Source: NVD
CVE-2026-9243 MEDIUM - 6.4

The Plus Addons for Elementor plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the 'carousel_direction' parameter of the Carousel Anything widget in versions up to, and including, 6.4.15 This is due to insufficient output escaping in the render() function, where the ca...

Published: May 29, 2026
Source: NVD