Export limit exceeded: 381016 CVEs match your query. Please refine your search to export 10,000 CVEs or fewer.

Search

Search Results (381016 CVEs found)

CVE Vendors Products Updated CVSS v3.1
CVE-2026-66673 2026-08-20 7.1 High
Unauthenticated Cross Site Scripting (XSS) in Flatastic <= 2.0 versions.
CVE-2026-66672 2026-08-20 9.8 Critical
Unauthenticated PHP Object Injection in Flatastic <= 2.0 versions.
CVE-2026-66649 2026-08-20 9.3 Critical
Unauthenticated SQL Injection in Directory Pro <= 2.5.8 versions.
CVE-2026-66647 2026-08-20 6.5 Medium
Subscriber Broken Access Control in Homlisti <= 3.1.2 versions.
CVE-2026-28150 2026-08-20 8.1 High
Unauthenticated Local File Inclusion in Golo Framework < 1.7.5 versions.
CVE-2025-15689 2026-08-20 9.8 Critical
Unauthenticated Privilege Escalation in Capella <= 2.5.5 versions.
CVE-2025-15688 2026-08-20 9.3 Critical
Unauthenticated SQL Injection in Capella <= 2.5.5 versions.
CVE-2025-53999 2026-08-20 6.5 Medium
Unauthenticated Broken Access Control in Altair <= 5.2.2 versions.
CVE-2026-74001 2026-08-20 9.8 Critical
Unauthenticated Broken Authentication in User Registration & Membership Pro <= 5.4.5 versions.
CVE-2025-15637 2026-08-20 8.1 High
Unauthenticated Local File Inclusion in Shuffle <= 1.8 versions.
CVE-2025-62307 2026-08-20 5.4 Medium
HCL IntelliOps Event Management (IEM) is affected by insufficient logging. Insufficient logging weakens accountability, obscures attack detection, and enables privilege probing.
CVE-2026-74020 2026-08-20 7.5 High
Unauthenticated Broken Access Control in Koji <= 2.2.1 versions.
CVE-2026-74019 2026-08-20 7.1 High
Unauthenticated Broken Access Control in EPROLO Dropshipping <= 2.4.2 versions.
CVE-2026-74018 2026-08-20 9.9 Critical
Subscriber Arbitrary File Upload in Warehouse Cargo <= 2.6.9 versions.
CVE-2026-74016 2026-08-20 9.9 Critical
Subscriber Arbitrary File Upload in Smart Cleaning <= 4.8.6 versions.
CVE-2026-74014 2026-08-20 9.9 Critical
Subscriber Arbitrary File Upload in IT Residence <= 3.2.1 versions.
CVE-2026-74013 2026-08-20 8.5 High
Subscriber SQL Injection in eShipper Commerce <= 2.16.13 versions.
CVE-2026-73998 2026-08-20 8.5 High
Subscriber SQL Injection in WP w3all phpBB <= 3.0.5 versions.
CVE-2026-73993 2026-08-20 9.8 Critical
Unauthenticated PHP Object Injection in FundEngine <= 1.7.9 versions.
CVE-2026-73992 2026-08-20 9.9 Critical
Subscriber Remote Code Execution (RCE) in Query Wrangler <= 1.5.57 versions.