Total CVEs

139,448

Critical Severity

3,643

High Severity

13,083

Last 7 Days

1,277
Quick preset (or use dates below)
Clear Filters
šŸ“… Showing Year: 2026 (January 1 - December 31, 2026) View All Years →
Showing 7,121 - 7,140 of 12,780 CVEs
CVE-2026-35218 HIGH - 8.7

Budibase is an open-source low-code platform. Prior to version 3.32.5, Budibase's Builder Command Palette renders entity names (tables, views, queries, automations) using Svelte's {@html} directive without any sanitization. An authenticated user with Builder access can create a table, auto...

Vendor: Budibase
Product: budibase
Published: Apr 03, 2026
Source: NVD
CVE-2026-35214 HIGH - 8.7

Budibase is an open-source low-code platform. Prior to version 3.33.4, the plugin file upload endpoint (POST /api/plugin/upload) passes the user-supplied filename directly to createTempFolder() without sanitizing path traversal sequences. An attacker with Global Builder privileges can craft a multip...

Vendor: Budibase
Product: budibase
Published: Apr 03, 2026
Source: NVD
CVE-2026-25044 HIGH - 8.8

Budibase is an open-source low-code platform. Prior to version 3.33.4, the bash automation step executes user-provided commands using execSync without proper sanitization or validation. User input is processed through processStringSync which allows template interpolation, potentially allowing arbitr...

Vendor: Budibase
Product: budibase
Published: Apr 03, 2026
Source: NVD

Juju is an open source application orchestration engine that enables any application operation on any infrastructure at any scale through special operators called ā€˜charms’. From versions 2.9 to before 2.9.56 and 3.6 to before 3.6.19, any authenticated user, machine or controller under a Juju control...

Vendor: juju
Product: juju
Published: Apr 03, 2026
Source: NVD
CVE-2026-26477 HIGH - 7.5

An issue in Dokuwiki v.2025-05-14b "Librarian" [56.2] allows a remote attacker to cause a denial of service via the media_upload_xhr() function in the media.php file

Vendor: dokuwiki
Product: dokuwiki
Published: Apr 03, 2026
Source: NVD
CVE-2025-59711 HIGH - 8.3

An issue was discovered in Biztalk360 before 11.5. Because of mishandling of user-provided input in an upload mechanism, an authenticated attacker is able to write files outside of the destination directory and/or coerce an authentication from the service, aka Directory Traversal.

Vendor: kovai
Product: biztalk360
Published: Apr 03, 2026
Source: NVD
CVE-2025-59710 HIGH - 8.8

An issue was discovered in Biztalk360 before 11.5. Because of incorrect access control, any user is able to request the loading a DLL file. During the loading, a method is called. An attacker can craft a malicious DLL, upload it to the server, and use it to achieve remote code execution on the serve...

Vendor: kovai
Product: biztalk360
Published: Apr 03, 2026
Source: NVD
CVE-2026-25773 HIGH - 8.1

** UNSUPPORTED WHEN ASSIGNED ** Focalboard version 8.0 fails to sanitize category IDs before incorporating them into dynamic SQL statements when reordering categories. An attacker can inject a malicious SQL payload into the category id field, which is stored in the database and later executed unsani...

Vendor: Mattermost
Product: Focalboard
Published: Apr 03, 2026
Source: NVD
CVE-2026-27655 HIGH - 7.3

Zohocorp ManageEngine Exchange Reporter Plus versions before 5802 are vulnerable to Stored XSS inĀ Permissions Based on MailboxesĀ report.

Vendor: Zohocorp
Product: ManageEngine Exchange Reporter Plus
Published: Apr 03, 2026
Source: NVD
CVE-2026-4108 HIGH - 7.3

Zohocorp ManageEngine Exchange Reporter Plus versions before 5802 are vulnerable to Stored XSS inĀ Non-Owner MailboxĀ PermissionĀ report.

Vendor: zohocorp
Product: manageengine_exchange_reporter_plus
Published: Apr 03, 2026
Source: NVD
CVE-2026-4107 HIGH - 7.3

Zohocorp ManageEngine Exchange Reporter Plus versions before 5802 are vulnerable to Stored XSS inĀ Folder Message Count and SizeĀ report.

Vendor: zohocorp
Product: manageengine_exchange_reporter_plus
Published: Apr 03, 2026
Source: NVD
CVE-2026-3880 HIGH - 7.3

Zohocorp ManageEngine Exchange Reporter Plus versions before 5802 are vulnerable to Stored XSS inĀ Public Folder Client PermissionsĀ report.

Vendor: zohocorp
Product: manageengine_exchange_reporter_plus
Published: Apr 03, 2026
Source: NVD
CVE-2026-3879 HIGH - 7.3

Zohocorp ManageEngine Exchange Reporter Plus versions before 5802 are vulnerable to Stored XSS inĀ Equipment Mailbox DetailsĀ report.

Vendor: zohocorp
Product: manageengine_exchange_reporter_plus
Published: Apr 03, 2026
Source: NVD
CVE-2026-28703 HIGH - 7.3

Zohocorp ManageEngine Exchange Reporter PlusĀ versions before 5802 are vulnerable toĀ Stored XSSĀ inĀ Mails Exchanged Between UsersĀ report.

Vendor: Zohocorp
Product: ManageEngine Exchange Reporter Plus
Published: Apr 03, 2026
Source: NVD
CVE-2026-28756 HIGH - 7.3

Zohocorp ManageEngine Exchange Reporter PlusĀ versions before 5802 are vulnerable toĀ Stored XSSĀ inĀ Permissions based on Distribution GroupsĀ report.

Vendor: Zohocorp
Product: ManageEngine Exchange Reporter Plus
Published: Apr 03, 2026
Source: NVD
CVE-2026-28754 HIGH - 7.3

Zohocorp ManageEngine Exchange Reporter PlusĀ versions before 5802 are vulnerable toĀ Stored XSSĀ inĀ Distribution ListsĀ report.

Vendor: Zohocorp
Product: ManageEngine Exchange Reporter Plus
Published: Apr 03, 2026
Source: NVD
CVE-2026-4350 HIGH - 8.1

The Perfmatters plugin for WordPress is vulnerable to arbitrary file deletion via path traversal in all versions up to, and including, 2.5.9.1. This is due to the `PMCS::action_handler()` method processing the `$_GET['delete']` parameter without any sanitization, authorization check, or no...

Published: Apr 03, 2026
Source: NVD
CVE-2025-7024 HIGH - 7.3

Incorrect Default Permissions vulnerability in AIRBUS PSS TETRA Connectivity Server on Windows Server OS allows Privilege Abuse. An attacker may execute arbitrary code with SYSTEM privileges if a user is tricked or directed to place a crafted file into the vulnerable directory. This issue affects...

Published: Apr 03, 2026
Source: NVD
CVE-2026-5463 HIGH - 8.6

Command injection vulnerability in console.run_module_with_output() in pymetasploit3 through version 1.0.6 allows attackers to inject newline characters into module options such as RHOSTS. This breaks the intended command structure and causes the Metasploit console to execute additional unintended c...

Published: Apr 03, 2026
Source: NVD
CVE-2026-35536 HIGH - 7.2

In Tornado before 6.5.5, cookie attribute injection could occur because the domain, path, and samesite arguments to .RequestHandler.set_cookie were not checked for crafted characters.

Vendor: tornadoweb
Product: Tornado
Published: Apr 03, 2026
Source: NVD