Total CVEs

140,343

Critical Severity

3,747

High Severity

13,518

Last 7 Days

1,769
Quick preset (or use dates below)
Clear Filters
๐Ÿ“… Showing Year: 2026 (January 1 - December 31, 2026) View All Years โ†’
Showing 661 - 680 of 13,215 CVEs
CVE-2026-44913 HIGH - 7.2

Improper escaping of database table names in the CaptureChangeMySQL Processor included with Apache NiFi 1.2.0 through 2.9.0 allows for injecting SQL commands using crafted naming. Manual quoted boundaries added in Apache NiFi 1.8.0 narrowed the scope of potential injection options, but did not cover...

Vendor: Apache Software Foundation
Product: Apache NiFi
Published: Jun 22, 2026
Source: NVD
CVE-2025-66336 HIGH - 8.1

Apache Doris MCP Server contains a SQL injection vulnerability in a metadata query path. A user-controlled database name is directly interpolated into a SQL query, and the query is executed without passing the caller's authorization context. This may allow an authenticated attacker, or an anony...

Vendor: Apache Software Foundation
Product: Apache Doris MCP Server
Published: Jun 22, 2026
Source: NVD
CVE-2026-8157 HIGH - 8.8

The Vitepos WordPress plugin before 3.4.2 does not properly restrict the roles that can be assigned when creating new users via one of its REST API endpoints, allowing authenticated users with a custom Vitepos WordPress plugin before 3.4.2 role to escalate privileges to administrator.

Published: Jun 22, 2026
Source: NVD
CVE-2026-6858 HIGH - 7.1

The Transbank Webpay WordPress plugin before 1.14.0 does not sanitize and escape logs to be displayed, allowing unauthenticated users to perform Stored XSS attacks against logged in administrator

Published: Jun 22, 2026
Source: NVD
CVE-2026-4259 HIGH - 7.1

The ultimate-woocommerce-auction-pro WordPress plugin through 2.4.5 does not sanitise and escape a parameter before outputting it back in the page, leading to a Reflected Cross-Site Scripting which could be used against high privilege users such as admin

Published: Jun 22, 2026
Source: NVD
CVE-2026-12806 HIGH - 8.8

A vulnerability has been found in Edimax BR-6478AC V2 1.23. The impacted element is the function formWlSiteSurvey of the file /goform/formWlSiteSurvey of the component POST Request Handler. The manipulation of the argument selSSID leads to buffer overflow. It is possible to initiate the attack remot...

Vendor: Edimax
Product: BR-6478AC V2
Published: Jun 21, 2026
Source: NVD
CVE-2026-56396 HIGH - 8.8

phpMyFAQ before 4.1.4 contains missing authorization vulnerabilities in editUser() and updateUserRights() endpoints that allow authenticated administrators to escalate privileges. Non-SuperAdmin users with edit_user permission can set is_superadmin flag or grant arbitrary rights to escalate to Super...

Vendor: phpMyFAQ
Product: phpMyFAQ
Published: Jun 21, 2026
Source: NVD
CVE-2026-56382 HIGH - 7.2

Craft CMS (composer package craftcms/cms) versions >= 5.5.0 and <= 5.9.13 contain a remote code execution vulnerability in the FieldsController::actionRenderCardPreview() method, which passes the fieldLayoutConfig POST parameter directly to Fields::createLayout() without calling Component::cle...

Vendor: craftcms
Product: cms
Published: Jun 21, 2026
Source: NVD
CVE-2026-56253 HIGH - 7.5

Capgo before 12.128.2 contains an improper access control vulnerability in the public.get_org_members RPC function that allows unauthenticated attackers to enumerate organization members. Attackers can invoke the endpoint using only the public sb_publishable_* key and an organization UUID to retriev...

Vendor: Capgo
Product: Capgo
Published: Jun 21, 2026
Source: NVD
CVE-2026-56242 HIGH - 7.5

Capgo before 12.128.2 contains an unauthenticated security definer RPC function get_identity_apikey_only that returns the owning user_id for supplied API keys, creating an API key validity oracle and user identity disclosure primitive. Attackers can call this endpoint with valid or invalid API keys ...

Vendor: Capgo
Product: Capgo
Published: Jun 21, 2026
Source: NVD
CVE-2026-56239 HIGH - 7.6

Capgo before 12.128.2 contains a potential privilege escalation vulnerability in the public.apply_usage_overage SECURITY DEFINER function, which performs sensitive billing operations without enforcing internal authorization checks (no validation of auth.uid(), org membership, or check_min_rights). B...

Vendor: Capgo
Product: Capgo
Published: Jun 21, 2026
Source: NVD
CVE-2025-71378 HIGH - 8.1

picklescan before 0.0.30 fails to detect cProfile.runctx function calls in pickle file reduce methods, allowing attackers to execute arbitrary code. Malicious pickle files bypass picklescan detection and execute remote code when loaded via pickle.load().

Vendor: picklescan
Product: picklescan
Published: Jun 21, 2026
Source: NVD
CVE-2025-71357 HIGH - 8.1

picklescan before 0.0.30 fails to detect malicious pickle files using idlelib.pyshell.ModifiedInterpreter.runcommand in reduce methods. Attackers can embed undetected code in pickle files that executes remote commands when loaded by victims.

Vendor: picklescan
Product: picklescan
Published: Jun 21, 2026
Source: NVD
CVE-2025-71348 HIGH - 8.1

picklescan before 0.0.28 fails to detect malicious pickle files that invoke torch.utils._config_module.load_config function within reduce methods. Attackers can craft pickle files embedding arbitrary code that evades detection but executes during pickle.load, enabling remote code execution in supply...

Vendor: picklescan
Product: picklescan
Published: Jun 21, 2026
Source: NVD
CVE-2026-12795 HIGH - 7.3

A vulnerability was determined in BerriAI litellm up to 1.82.2. This affects the function json.dumps of the file litellm/proxy/management_endpoints/ui_sso.py of the component SSO Debug Flow. Executing a manipulation can lead to missing authentication. The attack can be executed remotely. The exploit...

Vendor: BerriAI
Product: litellm
Published: Jun 21, 2026
Source: NVD
CVE-2026-12786 HIGH - 7.8

A vulnerability has been found in Ezbsystems UltraISO Premium Edition up to 9.76. Affected by this issue is some unknown functionality in the library bootpt64.sys of the component Kernel Driver. The manipulation leads to improper access controls. Local access is required to approach this attack. The...

Vendor: Ezbsystems
Product: UltraISO Premium Edition
Published: Jun 21, 2026
Source: NVD
CVE-2026-52911 HIGH - 8.8

In the Linux kernel, the following vulnerability has been resolved: ksmbd: scope conn->binding slowpath to bound sessions only When the binding SESSION_SETUP sets conn->binding = true, the flag stays set after the call so that the global session lookup in ksmbd_session_lookup_all() can find ...

Vendor: Linux
Product: Linux
Published: Jun 21, 2026
Source: NVD
CVE-2026-12784 HIGH - 7.8

A weakness has been identified in IM-Magic Partition Resizer up to 7.9.0. This affects an unknown function in the library MDA_NTDRV.sys of the component Kernel Driver. This manipulation causes improper access controls. The attack requires local access. The exploit has been made available to the publ...

Vendor: IM-Magic
Product: Partition Resizer
Published: Jun 21, 2026
Source: NVD
CVE-2026-12782 HIGH - 7.8

A security flaw has been discovered in EaseUS Partition Master up to 14.5. The impacted element is an unknown function in the library EUEDKEPM.sys of the component Kernel Driver. The manipulation results in improper access controls. The attack requires a local approach. The exploit has been released...

Vendor: EaseUS
Product: Partition Master
Published: Jun 21, 2026
Source: NVD
CVE-2026-12781 HIGH - 7.8

A vulnerability was identified in EaseUS Partition Master up to 14.5. The affected element is an unknown function in the library epmntdrv.sys of the component Kernel Driver. The manipulation leads to improper access controls. The attack needs to be performed locally. The exploit is publicly availabl...

Vendor: EaseUS
Product: Partition Master
Published: Jun 21, 2026
Source: NVD