Total CVEs

140,373

Critical Severity

3,747

High Severity

13,527

Last 7 Days

1,782
Quick preset (or use dates below)
Clear Filters
📅 Showing Year: 2026 (January 1 - December 31, 2026) View All Years →
Showing 9,721 - 9,740 of 13,224 CVEs
CVE-2025-70614 HIGH - 8.1

OpenCode Systems OC Messaging / USSD Gateway OC Release 6.32.2 contains a broken access control vulnerability in the web-based control panel allowing authenticated low-privileged attackers to gain to access to arbitrary SMS messages via a crafted company or tenant identifier parameter.

Published: Mar 05, 2026
Source: NVD
CVE-2026-30223 HIGH - 8.8

OliveTin gives access to predefined shell commands from a web interface. Prior to version 3000.11.1, when JWT authentication is configured using either "authJwtPubKeyPath" (local RSA public key) or "authJwtHmacSecret" (HMAC secret), the configured audience value (authJwtAud) is n...

Vendor: go
Product: github.com/OliveTin/OliveTin
Published: Mar 05, 2026
Source: GitHub
CVE-2026-28790 HIGH - 7.5

OliveTin gives access to predefined shell commands from a web interface. Prior to version 3000.11.0, OliveTin allows an unauthenticated guest to terminate running actions through KillAction even when authRequireGuestsToLogin: true is enabled. Guests are correctly blocked from dashboard access, but c...

Vendor: OliveTin
Product: OliveTin
Published: Mar 05, 2026
Source: NVD
CVE-2026-28789 HIGH - 7.5

OliveTin gives access to predefined shell commands from a web interface. Prior to version 3000.10.3, an unauthenticated denial-of-service vulnerability exists in OliveTin’s OAuth2 login flow. Concurrent requests to /oauth/login can trigger unsynchronized access to a shared registeredStates map, caus...

Vendor: OliveTin
Product: OliveTin
Published: Mar 05, 2026
Source: NVD
CVE-2026-3459 HIGH - 8.1

The Drag and Drop Multiple File Upload - Contact Form 7 plugin for WordPress is vulnerable to arbitrary file uploads due to insufficient file type validation in the 'dnd_upload_cf7_upload' function in versions up to, and including, 1.3.7.3. This makes it possible for unauthenticated attack...

Published: Mar 05, 2026
Source: NVD
CVE-2026-3047 HIGH - 8.8

A flaw was found in org.keycloak.broker.saml. When a disabled Security Assertion Markup Language (SAML) client is configured as an Identity Provider (IdP)-initiated broker landing target, it can still complete the login process and establish a Single Sign-On (SSO) session. This allows a remote attac...

Vendor: maven
Product: org.keycloak:keycloak-broker-saml
Published: Mar 05, 2026
Source: NVD
CVE-2026-3009 HIGH - 8.1

A security flaw in the IdentityBrokerService.performLogin endpoint of Keycloak allows authentication to proceed using an Identity Provider (IdP) even after it has been disabled by an administrator. An attacker who knows the IdP alias can reuse a previously generated login request to bypass the admin...

Vendor: maven
Product: org.keycloak:keycloak-services
Published: Mar 05, 2026
Source: NVD
CVE-2026-28287 HIGH - 8.8

FreePBX is an open source IP PBX. From versions 16.0.17.2 to before 16.0.20 and from version 17.0.2.4 to before 17.0.5, multiple command injection vulnerabilities exist in the recordings module. This issue has been patched in versions 16.0.20 and 17.0.5.

Vendor: FreePBX
Product: security-reporting
Published: Mar 05, 2026
Source: NVD
CVE-2026-28284 HIGH - 8.8

FreePBX is an open source IP PBX. Prior to versions 16.0.10 and 17.0.5, the FreePBX logfiles module contains several authenticated SQL injection vulnerabilities. This issue has been patched in versions 16.0.10 and 17.0.5.

Vendor: FreePBX
Product: security-reporting
Published: Mar 05, 2026
Source: NVD
CVE-2026-28210 HIGH - 8.8

FreePBX is an open source IP PBX. Prior to versions 16.0.49 and 17.0.7, FreePBX module cdr (Call Data Record) is vulnerable to SQL query injection. This issue has been patched in versions 16.0.49 and 17.0.7.

Vendor: FreePBX
Product: security-reporting
Published: Mar 05, 2026
Source: NVD
CVE-2026-28209 HIGH - 7.2

FreePBX is an open source IP PBX. From versions 16.0.17.2 to before 16.0.20 and from version 17.0.2.4 to before 17.0.5, a command injection vulnerability exists in FreePBX when using the ElevenLabs Text-to-Speech (TTS) engine in the recordings module. This issue has been patched in versions 16.0.20 ...

Vendor: FreePBX
Product: security-reporting
Published: Mar 05, 2026
Source: NVD
CVE-2026-26418 HIGH - 7.5

Missing authentication and authorization in the web API of Tata Consultancy Services Cognix Recon Client v3.0 allows remote attackers to access application functionality without restriction via the network.

Vendor: tcs
Product: cognix_platform
Published: Mar 05, 2026
Source: NVD
CVE-2026-26417 HIGH - 8.1

A broken access control vulnerability in the password reset functionality of Tata Consultancy Services Cognix Recon Client v3.0 allows authenticated users to reset passwords of arbitrary user accounts via crafted requests.

Vendor: tcs
Product: cognix_platform
Published: Mar 05, 2026
Source: NVD
CVE-2026-26416 HIGH - 8.8

An authorization bypass vulnerability in Tata Consultancy Services Cognix Recon Client v3.0 allows authenticated users to escalate privileges across role boundaries via crafted requests.

Vendor: tcs
Product: cognix_platform
Published: Mar 05, 2026
Source: NVD
CVE-2026-26276 HIGH - 7.3

Gogs is an open source self-hosted Git service. Prior to version 0.14.2, an attacker can store an HTML/JavaScript payload in a repository’s Milestone name, and when another user selects that Milestone on the New Issue page (/issues/new), a DOM-Based XSS is triggered. This issue has been patched in v...

Vendor: gogs
Product: gogs
Published: Mar 05, 2026
Source: NVD
CVE-2026-26194 HIGH - 7.3

Gogs is an open source self-hosted Git service. Prior to version 0.14.2, there's a security issue in gogs where deleting a release can fail if a user controlled tag name is passed to git without the right separator, this lets git options get injected and mess with the process. This issue has be...

Vendor: gogs
Product: gogs
Published: Mar 05, 2026
Source: NVD
CVE-2026-26022 HIGH - 8.7

Gogs is an open source self-hosted Git service. Prior to version 0.14.2, a stored cross-site scripting (XSS) vulnerability exists in the comment and issue description functionality. The application's HTML sanitizer explicitly allows data: URI schemes, enabling authenticated users to inject arbi...

Vendor: gogs
Product: gogs
Published: Mar 05, 2026
Source: NVD
CVE-2025-70616 HIGH - 7.8

A stack buffer overflow vulnerability exists in the Wincor Nixdorf wnBios64.sys kernel driver (version 1.2.0.0) in the IOCTL handler for code 0x80102058. The vulnerability is caused by missing bounds checking on the user-controlled Options parameter before copying data into a 40-byte stack buffer (S...

Vendor: dieboldnixdorf
Product: wnbios64.sys
Published: Mar 05, 2026
Source: NVD
CVE-2025-45691 HIGH - 7.5

An Arbitrary File Read vulnerability exists in the ImageTextPromptValue class in Exploding Gradients RAGAS v0.2.3 to v0.2.14. The vulnerability stems from improper validation and sanitization of URLs supplied in the retrieved_contexts parameter when handling multimodal inputs.

Vendor: pip
Product: ragas
Published: Mar 05, 2026
Source: NVD
CVE-2026-28683 HIGH - 8.7

Gokapi is a self-hosted file sharing server with automatic expiration and encryption support. Prior to version 2.2.3, if a malicious authenticated user uploads SVG and creates a hotlink for it, they can achieve stored XSS. This issue has been patched in version 2.2.3.

Vendor: go
Product: github.com/forceu/gokapi
Published: Mar 05, 2026
Source: GitHub