Total CVEs

140,410

Critical Severity

3,747

High Severity

13,544

Last 7 Days

1,636
Quick preset (or use dates below)
Clear Filters
Showing 7,541 - 7,560 of 13,935 CVEs
CVE-2026-0688 MEDIUM - 6.4

The Webmention plugin for WordPress is vulnerable to Server-Side Request Forgery in all versions up to, and including, 5.6.2 via the 'Tools::read' function. This makes it possible for authenticated attackers, with Subscriber-level access and above, to make web requests to arbitrary locatio...

Published: Apr 02, 2026
Source: NVD
CVE-2026-5323 MEDIUM - 5.3

A vulnerability was found in priyankark a11y-mcp up to 1.0.5. This vulnerability affects the function A11yServer of the file src/index.js. The manipulation results in server-side request forgery. The attack must be initiated from a local position. The exploit has been made public and could be used. ...

Published: Apr 02, 2026
Source: NVD
CVE-2026-5321 MEDIUM - 4.3

A flaw has been found in vanna-ai vanna up to 2.0.2. Affected by this issue is some unknown functionality of the component FastAPI/Flask Server. Executing a manipulation can lead to permissive cross-domain policy with untrusted domains. The attack can be launched remotely. The exploit has been publi...

Published: Apr 02, 2026
Source: NVD
CVE-2026-5319 MEDIUM - 4.3

A security vulnerability has been detected in itsourcecode Payroll Management System up to 1.0. Affected is an unknown function of the file /navbar.php. Such manipulation of the argument page leads to cross site scripting. It is possible to launch the attack remotely. The exploit has been disclosed ...

Published: Apr 02, 2026
Source: NVD
CVE-2026-5318 MEDIUM - 4.3

A weakness has been identified in LibRaw up to 0.22.0. This impacts the function HuffTable::initval of the file src/decompressors/losslessjpeg.cpp of the component JPEG DHT Parser. This manipulation of the argument bits[] causes out-of-bounds write. It is possible to initiate the attack remotely. Th...

Published: Apr 02, 2026
Source: NVD
CVE-2026-5317 MEDIUM - 6.3

A security flaw has been discovered in Nothings stb up to 1.22. This affects the function start_decoder of the file stb_vorbis.c. The manipulation results in out-of-bounds write. The attack may be performed from remote. The exploit has been released to the public and may be used for attacks. The ven...

Published: Apr 02, 2026
Source: NVD
CVE-2026-1243 MEDIUM - 5.4

IBM Content Navigator 3.0.15, 3.1.0, and 3.2.0 is vulnerable to cross-site scripting. This vulnerability allows an authenticated user to embed arbitrary JavaScript code in the Web UI thus altering the intended functionality potentially leading to credentials disclosure within a trusted session.

Vendor: ibm
Product: content_navigator
Published: Apr 02, 2026
Source: NVD
CVE-2026-5316 MEDIUM - 4.3

A vulnerability was identified in Nothings stb up to 1.22. The impacted element is the function setup_free of the file stb_vorbis.c. The manipulation leads to allocation of resources. The attack is possible to be carried out remotely. The exploit is publicly available and might be used. The vendor w...

Published: Apr 02, 2026
Source: NVD
CVE-2026-5315 MEDIUM - 4.3

A vulnerability was determined in Nothings stb up to 1.26. The affected element is the function stbtt__buf_get8 in the library stb_truetype.h of the component TTF File Handler. Executing a manipulation can lead to out-of-bounds read. The attack can be executed remotely. The exploit has been publicly...

Published: Apr 02, 2026
Source: NVD
CVE-2026-21767 MEDIUM - 4.0

HCL BigFix Platform is affected by insufficient authentication.  The application might allow users to access sensitive areas of the application without proper authentication.

Vendor: HCLSoftware
Product: BigFix Platform
Published: Apr 02, 2026
Source: NVD
CVE-2026-34974 MEDIUM - 5.4

phpMyFAQ is an open source FAQ web application. Prior to version 4.1.1, the regex-based SVG sanitizer in phpMyFAQ (SvgSanitizer.php) can be bypassed using HTML entity encoding in javascript: URLs within SVG <a href> attributes. Any user with edit_faq permission can upload a malicious SVG that ...

Vendor: composer
Product: thorsten/phpmyfaq
Published: Apr 01, 2026
Source: GitHub
CVE-2026-34973 MEDIUM - 5.3

phpMyFAQ is an open source FAQ web application. Prior to version 4.1.1, the searchCustomPages() method in phpmyfaq/src/phpMyFAQ/Search.php uses real_escape_string() (via escape()) to sanitize the search term before embedding it in LIKE clauses. However, real_escape_string() does not escape SQL LIKE ...

Vendor: composer
Product: thorsten/phpmyfaq
Published: Apr 01, 2026
Source: GitHub
CVE-2026-34939 MEDIUM - 6.5

PraisonAI is a multi-agent teams system. Prior to version 4.5.90, MCPToolIndex.search_tools() compiles a caller-supplied string directly as a Python regular expression with no validation, sanitization, or timeout. A crafted regex causes catastrophic backtracking in the re engine, blocking the Python...

Vendor: pip
Product: praisonai
Published: Apr 01, 2026
Source: GitHub
CVE-2026-5314 MEDIUM - 4.3

A vulnerability was found in Nothings stb up to 1.26. Impacted is the function stbtt_InitFont_internal in the library stb_truetype.h of the component TTF File Handler. Performing a manipulation results in out-of-bounds read. Remote exploitation of the attack is possible. The exploit has been made pu...

Published: Apr 01, 2026
Source: NVD
CVE-2025-66486 MEDIUM - 4.8

IBM Aspera Shares 1.9.9 through 1.11.0 is vulnerable to HTML injection. A remote attacker could inject malicious HTML code, which when viewed, would be executed in the victim's Web browser within the security context of the hosting site.

Vendor: IBM
Product: Aspera Shares
Published: Apr 01, 2026
Source: NVD
CVE-2025-66485 MEDIUM - 5.4

IBM Aspera Shares 1.9.9 through 1.11.0 is vulnerable to HTTP header injection, caused by improper validation of input by the HOST headers.  This could allow an attacker to conduct various attacks against the vulnerable system, including cross-site scripting, cache poisoning or session hijacking.

Vendor: IBM
Product: Aspera Shares
Published: Apr 01, 2026
Source: NVD
CVE-2025-66484 MEDIUM - 5.5

IBM Aspera Shares 1.9.9 through 1.11.0 is vulnerable to stored cross-site scripting. This vulnerability allows users to embed arbitrary JavaScript code in the Web UI thus altering the intended functionality potentially leading to credentials disclosure within a trusted session.

Vendor: IBM
Product: Aspera Shares
Published: Apr 01, 2026
Source: NVD
CVE-2025-66483 MEDIUM - 6.3

IBM Aspera Shares 1.9.9 through 1.11.0 does not invalidate session after a password reset which could allow an authenticated user to impersonate another user on the system.

Vendor: IBM
Product: Aspera Shares
Published: Apr 01, 2026
Source: NVD
CVE-2025-36375 MEDIUM - 6.5

IBM DataPower Gateway 10.6CD 10.6.1.0 through 10.6.5.0 and IBM DataPower Gateway 10.5.0 10.5.0.0 through 10.5.0.20 and IBM DataPower Gateway 10.6.0 10.6.0.0 through 10.6.0.8 IBM DataPower Gateway is vulnerable to cross-site request forgery which could allow an attacker to execute malicious and unaut...

Vendor: IBM
Product: DataPower Gateway 10.6CD, DataPower Gateway 10.5.0, DataPower Gateway 10.6.0
Published: Apr 01, 2026
Source: NVD
CVE-2026-34761 MEDIUM - 5.8

Ella Core is a 5G core designed for private networks. Prior to version 1.8.0, Ella Core panics when processing a NGAP handover failure message. An attacker able to cause a gNodeB to send NGAP handover failure messages to Ella Core can crash the process, causing service disruption for all connected s...

Vendor: go
Product: github.com/ellanetworks/core
Published: Apr 01, 2026
Source: GitHub