Total CVEs

140,426

Critical Severity

3,747

High Severity

13,550

Last 7 Days

1,488
Quick preset (or use dates below)
Clear Filters
๐Ÿ“… Showing Year: 2026 (January 1 - December 31, 2026) View All Years โ†’
Showing 7,741 - 7,760 of 13,565 CVEs
CVE-2026-20915 MEDIUM - 5.4

Stored cross-site scripting (XSS) in Checkmk version 2.5.0 (beta) before 2.5.0b2 allows authenticated users with permission to create pending changes to inject malicious JavaScript into the Pending Changes sidebar, which will execute in the browsers of other users viewing the sidebar.

Vendor: Checkmk GmbH
Product: Checkmk
Published: Mar 31, 2026
Source: NVD
CVE-2026-34155 MEDIUM - 5.3

RAUC controls the update process on embedded Linux systems. Prior to version 1.15.2, RAUC bundles using the 'plain' format exceeding a payload size of 2 GiB cause an integer overflow which results in a signature which covers only the first few bytes of the payload. Given such a bundle with...

Vendor: rauc
Product: rauc
Published: Mar 31, 2026
Source: NVD
CVE-2026-3191 MEDIUM - 5.4

The Minify HTML plugin for WordPress is vulnerable to Cross-Site Request Forgery in all versions up to, and including, 2.1.12. This is due to missing or incorrect nonce validation on the 'minify_html_menu_options' function. This makes it possible for unauthenticated attackers to update plu...

Published: Mar 31, 2026
Source: NVD
CVE-2026-3139 MEDIUM - 4.3

The User Profile Builder โ€“ Beautiful User Registration Forms, User Profiles & User Role Editor plugin for WordPress is vulnerable to Insecure Direct Object Reference in versions up to, and including, 3.15.5 via the wppb_save_avatar_value() function due to missing validation on a user controlled ...

Published: Mar 31, 2026
Source: NVD
CVE-2026-34508 MEDIUM - 6.5

OpenClaw before 2026.3.12 applies rate limiting only after webhook authentication succeeds, allowing attackers to bypass rate limits and brute-force webhook secrets without triggering 429 responses. Attackers can repeatedly guess invalid secrets to discover valid credentials and subsequently submit ...

Vendor: OpenClaw
Product: OpenClaw
Published: Mar 31, 2026
Source: NVD
CVE-2026-32977 MEDIUM - 6.3

OpenClaw before 2026.3.11 contains a sandbox boundary bypass vulnerability in the fs-bridge writeFile commit step that uses an unanchored container path during the final move operation. An attacker can exploit a time-of-check-time-of-use race condition by modifying parent paths inside the sandbox to...

Vendor: OpenClaw
Product: OpenClaw
Published: Mar 31, 2026
Source: NVD
CVE-2026-32976 MEDIUM - 6.5

OpenClaw before 2026.3.11 contains an authorization bypass vulnerability allowing channel commands to mutate protected sibling-account configuration despite configWrites restrictions. Attackers with authorized access on one account can execute channel commands like /config set channels.<provider&...

Vendor: OpenClaw
Product: OpenClaw
Published: Mar 31, 2026
Source: NVD
CVE-2026-32921 MEDIUM - 6.3

OpenClaw before 2026.3.8 contains an approval bypass vulnerability in system.run where mutable script operands are not bound across approval and execution phases. Attackers can obtain approval for script execution, modify the approved script file before execution, and execute different content while...

Vendor: OpenClaw
Product: OpenClaw
Published: Mar 31, 2026
Source: NVD
CVE-2026-27854 MEDIUM - 4.8

An attacker might be able to trigger a use-after-free by sending crafted DNS queries to a DNSdist using the DNSQuestion:getEDNSOptions method in custom Lua code. In some cases DNSQuestion:getEDNSOptions might refer to a version of the DNS packet that has been modified, thus triggering a use-after-fr...

Vendor: PowerDNS
Product: DNSdist
Published: Mar 31, 2026
Source: NVD
CVE-2026-27853 MEDIUM - 5.9

An attacker might be able to trigger an out-of-bounds write by sending crafted DNS responses to a DNSdist using the DNSQuestion:changeName or DNSResponse:changeName methods in custom Lua code. In some cases the rewritten packet might become larger than the initial response and even exceed 65535 byte...

Vendor: PowerDNS
Product: DNSdist
Published: Mar 31, 2026
Source: NVD
CVE-2026-24030 MEDIUM - 5.3

An attacker might be able to trick DNSdist into allocating too much memory while processing DNS over QUIC or DNS over HTTP/3 payloads, resulting in a denial of service. In setups with a large quantity of memory available this usually results in an exception and the QUIC connection is properly closed...

Vendor: PowerDNS
Product: DNSdist
Published: Mar 31, 2026
Source: NVD
CVE-2026-24029 MEDIUM - 6.5

When the early_acl_drop (earlyACLDrop in Lua) option is disabled (default is enabled) on a DNS over HTTPs frontend using the nghttp2 provider, the ACL check is skipped, allowing all clients to send DoH queries regardless of the configured ACL.

Vendor: PowerDNS
Product: DNSdist
Published: Mar 31, 2026
Source: NVD
CVE-2026-24028 MEDIUM - 5.3

An attacker might be able to trigger an out-of-bounds read by sending a crafted DNS response packet, when custom Lua code uses newDNSPacketOverlay to parse DNS packets. The out-of-bounds read might trigger a crash, leading to a denial of service, or access unrelated memory, leading to potential info...

Vendor: PowerDNS
Product: DNSdist
Published: Mar 31, 2026
Source: NVD
CVE-2026-34887 MEDIUM - 6.5

Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Extend Themes Kubio AI Page Builder allows Stored XSS.This issue affects Kubio AI Page Builder: from n/a through 2.7.0.

Vendor: Extend Themes
Product: Kubio AI Page Builder
Published: Mar 31, 2026
Source: NVD
CVE-2026-5197 MEDIUM - 6.3

A vulnerability was found in code-projects Student Membership System 1.0. The affected element is an unknown function of the file /delete_user.php. The manipulation of the argument ID results in sql injection. The attack may be launched remotely. The exploit has been made public and could be used.

Published: Mar 31, 2026
Source: NVD
CVE-2026-5196 MEDIUM - 6.3

A vulnerability has been found in code-projects Student Membership System 1.0. Impacted is an unknown function of the file /delete_member.php. The manipulation of the argument ID leads to sql injection. The attack may be initiated remotely. The exploit has been disclosed to the public and may be use...

Published: Mar 31, 2026
Source: NVD
CVE-2026-3107 MEDIUM - 5.4

Stored Cross-Site Scripting (XSS) in Teampass versions prior to 3.1.5.16, affecting the password manager's password import functionality at the endpoint 'redacted/index.php?page=items'. The application fails to properly sanitize and encode user-input data during the import process, al...

Vendor: teampass
Product: teampass
Published: Mar 31, 2026
Source: NVD
CVE-2026-3106 MEDIUM - 5.4

Blind Cross-Site Scripting (XSS) in Teampass, versions prior to 3.1.5.16, within the password manager login functionality in the 'contraseรฑa' parameter of the login form 'redacted/index.php'. During failed authentication attempts, the application does not properly clean or encode...

Vendor: teampass
Product: teampass
Published: Mar 31, 2026
Source: NVD
CVE-2025-41357 MEDIUM - 6.1

Reflected Cross-Site Scripting (XSS) vulnerability in Anon Proxy Server v0.104. This vulnerability allows an attacker to execute JavaScript code in the victim's browser by sending him/her a malicious URL. This vulnerability can be exploited to steal sensitive user data, such as session cookies,...

Vendor: Anon Proxy Server
Product: Anon Proxy Server
Published: Mar 31, 2026
Source: NVD
CVE-2025-41356 MEDIUM - 6.1

Reflected Cross-Site Scripting (XSS) vulnerability in Anon Proxy Server v0.104. This vulnerability allows an attacker to execute JavaScript code in the victim's browser by sending him/her a malicious URL. This vulnerability can be exploited to steal sensitive user data, such as session cookies,...

Vendor: Anon Proxy Server
Product: Anon Proxy Server
Published: Mar 31, 2026
Source: NVD