Total CVEs

140,406

Critical Severity

3,747

High Severity

13,541

Last 7 Days

1,806
Quick preset (or use dates below)
Clear Filters
๐Ÿ“… Showing Year: 2026 (January 1 - December 31, 2026) View All Years โ†’
Showing 9,841 - 9,860 of 13,238 CVEs
CVE-2026-28042 HIGH - 7.1

Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Astoundify Listify listify allows Reflected XSS.This issue affects Listify: from n/a through <= 3.2.5.

Vendor: Astoundify
Product: Listify
Published: Mar 05, 2026
Source: NVD
CVE-2026-28041 HIGH - 8.1

Improper Control of Filename for Include/Require Statement in PHP Program ('PHP Remote File Inclusion') vulnerability in AncoraThemes Grit grit allows PHP Local File Inclusion.This issue affects Grit: from n/a through <= 1.0.1.

Vendor: AncoraThemes
Product: Grit
Published: Mar 05, 2026
Source: NVD
CVE-2026-28039 HIGH - 7.5

Improper Control of Filename for Include/Require Statement in PHP Program ('PHP Remote File Inclusion') vulnerability in wpDataTables wpDataTables wpdatatables allows PHP Local File Inclusion.This issue affects wpDataTables: from n/a through <= 6.5.0.1.

Vendor: wpDataTables
Product: wpDataTables
Published: Mar 05, 2026
Source: NVD
CVE-2026-28037 HIGH - 7.1

Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in ashanjay EventON eventon allows Reflected XSS.This issue affects EventON: from n/a through <= 4.9.12.

Vendor: ashanjay
Product: EventON
Published: Mar 05, 2026
Source: NVD
CVE-2026-28035 HIGH - 8.1

Improper Control of Filename for Include/Require Statement in PHP Program ('PHP Remote File Inclusion') vulnerability in ThemeREX Printy printy allows PHP Local File Inclusion.This issue affects Printy: from n/a through <= 1.8.

Vendor: ThemeREX
Product: Printy
Published: Mar 05, 2026
Source: NVD
CVE-2026-28034 HIGH - 8.1

Improper Control of Filename for Include/Require Statement in PHP Program ('PHP Remote File Inclusion') vulnerability in ThemeREX Progress progress allows PHP Local File Inclusion.This issue affects Progress: from n/a through <= 1.2.

Vendor: ThemeREX
Product: Progress
Published: Mar 05, 2026
Source: NVD
CVE-2026-28033 HIGH - 8.1

Improper Control of Filename for Include/Require Statement in PHP Program ('PHP Remote File Inclusion') vulnerability in ThemeREX Edifice edifice allows PHP Local File Inclusion.This issue affects Edifice: from n/a through <= 1.8.

Vendor: ThemeREX
Product: Edifice
Published: Mar 05, 2026
Source: NVD
CVE-2026-28032 HIGH - 8.1

Improper Control of Filename for Include/Require Statement in PHP Program ('PHP Remote File Inclusion') vulnerability in ThemeREX Tuning tuning allows PHP Local File Inclusion.This issue affects Tuning: from n/a through <= 1.3.

Vendor: ThemeREX
Product: Tuning
Published: Mar 05, 2026
Source: NVD
CVE-2026-28031 HIGH - 8.1

Improper Control of Filename for Include/Require Statement in PHP Program ('PHP Remote File Inclusion') vulnerability in ThemeREX Invetex invetex allows PHP Local File Inclusion.This issue affects Invetex: from n/a through <= 2.18.

Vendor: ThemeREX
Product: Invetex
Published: Mar 05, 2026
Source: NVD
CVE-2026-28030 HIGH - 8.1

Improper Control of Filename for Include/Require Statement in PHP Program ('PHP Remote File Inclusion') vulnerability in ThemeREX Bonbon bonbon allows PHP Local File Inclusion.This issue affects Bonbon: from n/a through <= 1.6.

Vendor: ThemeREX
Product: Bonbon
Published: Mar 05, 2026
Source: NVD
CVE-2026-28029 HIGH - 8.1

Improper Control of Filename for Include/Require Statement in PHP Program ('PHP Remote File Inclusion') vulnerability in ThemeREX EmojiNation emojination allows PHP Local File Inclusion.This issue affects EmojiNation: from n/a through <= 1.0.12.

Vendor: ThemeREX
Product: EmojiNation
Published: Mar 05, 2026
Source: NVD
CVE-2026-28028 HIGH - 8.1

Improper Control of Filename for Include/Require Statement in PHP Program ('PHP Remote File Inclusion') vulnerability in ThemeREX MoneyFlow moneyflow allows PHP Local File Inclusion.This issue affects MoneyFlow: from n/a through <= 1.0.

Vendor: ThemeREX
Product: MoneyFlow
Published: Mar 05, 2026
Source: NVD
CVE-2026-28027 HIGH - 8.1

Improper Control of Filename for Include/Require Statement in PHP Program ('PHP Remote File Inclusion') vulnerability in ThemeREX Kayon kayon allows PHP Local File Inclusion.This issue affects Kayon: from n/a through <= 1.3.

Vendor: ThemeREX
Product: Kayon
Published: Mar 05, 2026
Source: NVD
CVE-2026-28026 HIGH - 8.1

Improper Control of Filename for Include/Require Statement in PHP Program ('PHP Remote File Inclusion') vulnerability in ThemeREX Motorix motorix allows PHP Local File Inclusion.This issue affects Motorix: from n/a through <= 1.6.

Vendor: ThemeREX
Product: Motorix
Published: Mar 05, 2026
Source: NVD
CVE-2026-28025 HIGH - 8.1

Improper Control of Filename for Include/Require Statement in PHP Program ('PHP Remote File Inclusion') vulnerability in ThemeREX Stargaze stargaze allows PHP Local File Inclusion.This issue affects Stargaze: from n/a through <= 1.5.

Vendor: ThemeREX
Product: Stargaze
Published: Mar 05, 2026
Source: NVD
CVE-2026-28024 HIGH - 8.1

Improper Control of Filename for Include/Require Statement in PHP Program ('PHP Remote File Inclusion') vulnerability in axiomthemes Helion helion allows PHP Local File Inclusion.This issue affects Helion: from n/a through <= 1.1.12.

Vendor: axiomthemes
Product: Helion
Published: Mar 05, 2026
Source: NVD
CVE-2026-28023 HIGH - 8.1

Improper Control of Filename for Include/Require Statement in PHP Program ('PHP Remote File Inclusion') vulnerability in ThemeREX Nuts nuts allows PHP Local File Inclusion.This issue affects Nuts: from n/a through <= 1.10.

Vendor: ThemeREX
Product: Nuts
Published: Mar 05, 2026
Source: NVD
CVE-2026-28022 HIGH - 8.1

Improper Control of Filename for Include/Require Statement in PHP Program ('PHP Remote File Inclusion') vulnerability in ThemeREX Foodie foodie allows PHP Local File Inclusion.This issue affects Foodie: from n/a through <= 1.14.

Vendor: ThemeREX
Product: Foodie
Published: Mar 05, 2026
Source: NVD
CVE-2026-28021 HIGH - 8.1

Improper Control of Filename for Include/Require Statement in PHP Program ('PHP Remote File Inclusion') vulnerability in ThemeREX Craftis craftis allows PHP Local File Inclusion.This issue affects Craftis: from n/a through <= 1.2.8.

Vendor: ThemeREX
Product: Craftis
Published: Mar 05, 2026
Source: NVD
CVE-2026-28020 HIGH - 8.1

Improper Control of Filename for Include/Require Statement in PHP Program ('PHP Remote File Inclusion') vulnerability in ThemeREX Chroma chroma allows PHP Local File Inclusion.This issue affects Chroma: from n/a through <= 1.11.

Vendor: ThemeREX
Product: Chroma
Published: Mar 05, 2026
Source: NVD