Search
Search Results (380967 CVEs found)
| CVE | Vendors | Products | Updated | CVSS v3.1 |
|---|---|---|---|---|
| CVE-2026-66581 | 2026-08-20 | 7.1 High | ||
| Unauthenticated Cross Site Scripting (XSS) in JetEngine <= 3.8.14.1 versions. | ||||
| CVE-2026-66609 | 2026-08-20 | 9.3 Critical | ||
| Unauthenticated SQL Injection in TheGem (Elementor) <= 5.12.3 versions. | ||||
| CVE-2026-66598 | 2026-08-20 | 7.1 High | ||
| Unauthenticated Cross Site Scripting (XSS) in B2BKing Premium <= 5.6.07 versions. | ||||
| CVE-2026-66586 | 2026-08-20 | 6.6 Medium | ||
| Author Local File Inclusion in WP Cafe Pro < 3.0.15 versions. | ||||
| CVE-2026-68564 | 2026-08-20 | 7.1 High | ||
| Unauthenticated Cross Site Scripting (XSS) in NotificationX Pro <= 3.1.4 versions. | ||||
| CVE-2026-66673 | 2026-08-20 | 7.1 High | ||
| Unauthenticated Cross Site Scripting (XSS) in Flatastic <= 2.0 versions. | ||||
| CVE-2026-66672 | 2026-08-20 | 9.8 Critical | ||
| Unauthenticated PHP Object Injection in Flatastic <= 2.0 versions. | ||||
| CVE-2026-66647 | 2026-08-20 | 6.5 Medium | ||
| Subscriber Broken Access Control in Homlisti <= 3.1.2 versions. | ||||
| CVE-2026-74001 | 2026-08-20 | 9.8 Critical | ||
| Unauthenticated Broken Authentication in User Registration & Membership Pro <= 5.4.5 versions. | ||||
| CVE-2025-15637 | 2026-08-20 | 8.1 High | ||
| Unauthenticated Local File Inclusion in Shuffle <= 1.8 versions. | ||||
| CVE-2025-62307 | 2026-08-20 | 5.4 Medium | ||
| HCL IntelliOps Event Management (IEM) is affected by insufficient logging. Insufficient logging weakens accountability, obscures attack detection, and enables privilege probing. | ||||
| CVE-2026-74020 | 2026-08-20 | 7.5 High | ||
| Unauthenticated Broken Access Control in Koji <= 2.2.1 versions. | ||||
| CVE-2026-74019 | 2026-08-20 | 7.1 High | ||
| Unauthenticated Broken Access Control in EPROLO Dropshipping <= 2.4.2 versions. | ||||
| CVE-2026-74018 | 2026-08-20 | 9.9 Critical | ||
| Subscriber Arbitrary File Upload in Warehouse Cargo <= 2.6.9 versions. | ||||
| CVE-2026-74016 | 2026-08-20 | 9.9 Critical | ||
| Subscriber Arbitrary File Upload in Smart Cleaning <= 4.8.6 versions. | ||||
| CVE-2026-74014 | 2026-08-20 | 9.9 Critical | ||
| Subscriber Arbitrary File Upload in IT Residence <= 3.2.1 versions. | ||||
| CVE-2026-74013 | 2026-08-20 | 8.5 High | ||
| Subscriber SQL Injection in eShipper Commerce <= 2.16.13 versions. | ||||
| CVE-2026-73998 | 2026-08-20 | 8.5 High | ||
| Subscriber SQL Injection in WP w3all phpBB <= 3.0.5 versions. | ||||
| CVE-2026-66677 | 2026-08-20 | 7.6 High | ||
| Subscriber Broken Authentication in Leyka <= 3.32.3 versions. | ||||
| CVE-2026-66615 | 2026-08-20 | 7.1 High | ||
| Unauthenticated Cross Site Scripting (XSS) in Podlove Podcast Publisher <= 4.5.4 versions. | ||||