Total CVEs

138,210

Critical Severity

3,547

High Severity

12,695

Last 7 Days

1,900
Quick preset (or use dates below)
Clear Filters
Showing 1,201 - 1,220 of 3,547 CVEs
CVE-2023-54344 CRITICAL - 9.8

Eclipse Equinox OSGi 3.7.2 and earlier contains a remote code execution vulnerability that allows unauthenticated attackers to execute arbitrary commands by sending payloads to the console interface. Attackers can connect to the OSGi console port and send base64-encoded bash commands wrapped in fork...

Vendor: equinox
Product: [OSGi
Published: May 05, 2026
Source: NVD
CVE-2023-54342 CRITICAL - 9.8

Eclipse Equinox OSGi versions 3.8 through 3.18 contain a remote code execution vulnerability in the console interface that allows unauthenticated attackers to execute arbitrary code by exploiting the fork command functionality. Attackers can establish a telnet connection to the OSGi console, perform...

Vendor: equinox
Product: [OSGi
Published: May 05, 2026
Source: NVD
CVE-2026-40797 CRITICAL - 9.3

Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in Saleswonder LLC WebinarIgnition allows Blind SQL Injection. This issue affects WebinarIgnition: from n/a through 4.08.253.

Vendor: Saleswonder LLC
Product: WebinarIgnition
Published: May 05, 2026
Source: NVD
CVE-2026-7823 CRITICAL - 9.8

A security flaw has been discovered in Totolink A8000RU 7.1cu.643_b20200521. Affected is the function setAppFilterCfg of the file /cgi-bin/cstecgi.cgi. The manipulation of the argument enable results in os command injection. The attack may be launched remotely. The exploit has been released to the p...

Published: May 05, 2026
Source: NVD
CVE-2026-5294 CRITICAL - 9.8

The Geeky Bot plugin for WordPress is vulnerable to Missing Authorization in versions up to, and including, 1.2.2. This is due to a nopriv AJAX route allowing attacker-controlled model/function dispatch and reaching a plugin installer helper that downloads and unzips attacker-supplied ZIP files into...

Published: May 05, 2026
Source: NVD
CVE-2025-13618 CRITICAL - 9.8

The Mentoring plugin for WordPress is vulnerable to privilege escalation in all versions up to, and including, 1.2.8. This is due to the plugin not properly restricting the roles that users can register with in the mentoring_process_registration() function. This makes it possible for unauthenticated...

Vendor: dreamstechnologies
Product: Mentoring
Published: May 05, 2026
Source: NVD
CVE-2026-5722 CRITICAL - 9.8

The MoreConvert Pro plugin for WordPress is vulnerable to Authentication Bypass in all versions up to, and including, 1.9.14. This is due to the guest waitlist verification flow not invalidating or regenerating verification tokens when the customer email address is changed. This makes it possible fo...

Published: May 05, 2026
Source: NVD
CVE-2026-42601 CRITICAL - 9.8

ArchiveBox is an open source self-hosted web archiving system. In versions 0.8.6rc0 and prior, the /add/ endpoint (AddView in core/views.py) accepts a config JSON field that gets merged into the crawl config without validation. This config is exported as environment variables when archive plugins ru...

Vendor: pip
Product: archivebox
Published: May 04, 2026
Source: GitHub

Pelican is a platform for creating data federations. From versions 7.21.0 to before 7.21.5, 7.22.0 to before 7.22.3, 7.23.0 to before 7.23.3, and 7.24.0 to before 7.24.2, there is a a privilege escalation vulnerability affecting Pelican's Web User Interface (WebUI). This attack allows any user ...

Vendor: go
Product: github.com/pelicanplatform/pelican
Published: May 04, 2026
Source: GitHub
CVE-2026-42569 CRITICAL - 9.4

phpVMS is a PHP application to run and simulate an airline. Prior to version 7.0.6, a critical vulnerability in phpVMS allowed unauthenticated access to a legacy import feature. This issue has been patched in version 7.0.6.

Vendor: composer
Product: nabeel/phpvms
Published: May 04, 2026
Source: GitHub
CVE-2026-42238 CRITICAL - 9.8

Nginx UI is a web user interface for the Nginx web server. Prior to version 2.3.8, nginx-ui exposes a backup restore endpoint (POST /api/restore) that is completely unauthenticated during the first 10 minutes after process startup on any fresh installation. An unauthenticated remote attacker can upl...

Vendor: 0xJacky
Product: nginx-ui
Published: May 04, 2026
Source: NVD
CVE-2026-41901 CRITICAL - 9.0

Thymeleaf is a server-side Java template engine for web and standalone environments. Prior to 3.1.5.RELEASE, a security bypass vulnerability exists in the expression execution mechanisms of Thymeleaf. Although the library provides mechanisms to avoid the execution of potentially dangerous expression...

Vendor: maven
Product: org.thymeleaf:thymeleaf
Published: May 04, 2026
Source: GitHub
CVE-2026-41258 CRITICAL - 9.1

OpenMRS is an open source electronic medical record system platform. From 2.7.0 to before 2.7.9 and 2.8.6, the ConceptReferenceRangeUtility.evaluateCriteria() method in OpenMRS Core evaluates database-stored criteria strings as Apache Velocity templates without any sandbox configuration. The Velocit...

Vendor: maven
Product: org.openmrs.api:openmrs-api
Published: May 04, 2026
Source: GitHub
CVE-2026-42796 CRITICAL - 9.8

Arelle before 2.39.10 contains an unauthenticated remote code execution vulnerability in the /rest/configure REST endpoint that accepts a plugins query parameter and forwards it to the plugin manager without authentication or authorization. Attackers can supply a URL to a malicious Python file throu...

Vendor: Arelle
Product: Arelle
Published: May 04, 2026
Source: NVD
CVE-2026-42088 CRITICAL - 9.6

OpenC3 COSMOS provides the functionality needed to send commands to and receive data from one or more embedded systems. Prior to version 7.0.0-rc3, the Script Runner widget allows users to execute Python and Ruby scripts directly from the openc3-COSMOS-script-runner-api container. Because all the do...

Vendor: OpenC3
Product: cosmos
Published: May 04, 2026
Source: NVD
CVE-2026-42087 CRITICAL - 9.6

OpenC3 COSMOS provides the functionality needed to send commands to and receive data from one or more embedded systems. From version 6.7.0 to before version 7.0.0-rc3, a SQL injection vulnerability exists in the Time-Series Database (TSDB) component of COSMOS. The tsdb_lookup function in the cvt_mod...

Vendor: OpenC3
Product: cosmos
Published: May 04, 2026
Source: NVD
CVE-2026-42812 CRITICAL - 9.9

In Apache Iceberg, the table's metadata files are control files: they tell readers which data files belong to the table and which table version to read. `write.metadata.path` is an optional table property that tells Polaris where to write those metadata files. For a table already registered...

Vendor: Apache Software Foundation
Product: Apache Polaris
Published: May 04, 2026
Source: NVD
CVE-2026-42811 CRITICAL - 9.9

In plain terms, Apache Polaris is supposed to issue short-lived GCS credentials that only work for one table's files, but a crafted namespace or table name can cause those credentials to work across the configured bucket instead. Apache Polaris builds Google Cloud Storage downscoped credentia...

Vendor: Apache Software Foundation
Product: Apache Polaris
Published: May 04, 2026
Source: NVD
CVE-2026-42810 CRITICAL - 9.9

Apache Polaris accepts literal `*` characters in namespace and table names. When it later builds temporary S3 access policies for delegated table access, those same characters appear to be reused unescaped in S3 IAM resource patterns and `s3:prefix` conditions. In S3 IAM policy matching, `*` is t...

Vendor: Apache Software Foundation
Product: Apache Polaris
Published: May 04, 2026
Source: NVD
CVE-2026-42809 CRITICAL - 9.9

Apache Polaris can issue broad temporary ("vended") storage credentials during staged table creation before the effective table location has been validated or durably reserved. Those temporary credentials are meant to limit the scope of accessible table data and metadata, but this scope l...

Vendor: Apache Software Foundation
Product: Apache Polaris
Published: May 04, 2026
Source: NVD