Exact snapshot results

353,537 CVE records

CVE ID descending · no relevance ranking

CVE-2026-59532

Unauthenticated Other Vulnerability Type in Booking and Rental Manager <= 2.7.2 versions.

PUBLISHED
Vendor
magepeopleteam
Product
Booking and Rental Manager
Provider severity
HIGH
Conflicts
0

CVE-2026-59531

Unauthenticated Unknown in Falcon – WordPress Optimizations & Tweaks <= 2.10.0 versions.

PUBLISHED
Vendor
Anh Tran
Product
Falcon – WordPress Optimizations & Tweaks
Provider severity
HIGH
Conflicts
0

CVE-2026-59530

Unauthenticated Broken Access Control in Stripe For WooCommerce <= 4.0.7 versions.

PUBLISHED
Vendor
Payment Plugins
Product
Stripe For WooCommerce
Provider severity
HIGH
Conflicts
0

CVE-2026-59529

Unauthenticated Sensitive Data Exposure in Ebook Store <= 6.19 versions.

PUBLISHED
Vendor
motov.net
Product
Ebook Store
Provider severity
HIGH
Conflicts
0

CVE-2026-59528

Subscriber Sensitive Data Exposure in ShipTime: Discounted Shipping Rates <= 1.1.1 versions.

PUBLISHED
Vendor
shiptime
Product
ShipTime: Discounted Shipping Rates
Provider severity
HIGH
Conflicts
0

CVE-2026-59527

Unauthenticated SQL Injection in MapSVG <= 8.14.0 versions.

PUBLISHED
Vendor
RomanCode
Product
MapSVG
Provider severity
CRITICAL
Conflicts
0

CVE-2026-59526

Unauthenticated SQL Injection in MapSVG <= 8.14.0 versions.

PUBLISHED
Vendor
RomanCode
Product
MapSVG
Provider severity
CRITICAL
Conflicts
0

CVE-2026-59525

Unauthenticated SQL Injection in Participants Database <= 2.7.8.3 versions.

PUBLISHED
Vendor
Roland Barker
Product
Participants Database
Provider severity
CRITICAL
Conflicts
0

CVE-2026-59524

Unauthenticated Broken Authentication in Easy Digital Downloads <= 3.6.7 versions.

PUBLISHED
Vendor
Sandhills Development, LLC
Product
Easy Digital Downloads
Provider severity
MEDIUM
Conflicts
0

CVE-2026-59523

Missing Authorization vulnerability in NSquared Simply Schedule Appointments simply-schedule-appointments allows Exploiting Incorrectly Configured Access Control Security Levels.This issue affects Simply Schedule Appointments: from n/a through <= 1.6.11.11.

PUBLISHED
Vendor
NSquared
Product
Simply Schedule Appointments
Provider severity
MEDIUM
Conflicts
0

CVE-2026-59522

Subscriber Broken Access Control in WP ERP <= 1.17.5 versions.

PUBLISHED
Vendor
weDevs
Product
WP ERP
Provider severity
MEDIUM
Conflicts
0

CVE-2026-59521

Deserialization of Untrusted Data vulnerability in ShapedPlugin LLC Real Testimonials testimonial-free allows Object Injection.This issue affects Real Testimonials: from n/a through <= 3.1.15.

PUBLISHED
Vendor
ShapedPlugin LLC
Product
Real Testimonials
Provider severity
HIGH
Conflicts
0

CVE-2026-59520

Cross-Site Request Forgery (CSRF) vulnerability in properfraction CrawlWP SEO allows Cross Site Request Forgery. This issue affects CrawlWP SEO: from n/a through 3.0.16.

PUBLISHED
Vendor
properfraction
Product
CrawlWP SEO
Provider severity
MEDIUM
Conflicts
0

CVE-2026-5952

GitLab has remediated an issue in GitLab CE/EE affecting all versions from 17.11 before 18.11.6, 19.0 before 19.0.3, and 19.1 before 19.1.1 that under certain conditions could have allowed an authenticated user with developer-role permissions to bypass package protection rules and overwrite protected Maven package metadata due to incorrect authorization checks.

PUBLISHED
Vendor
GitLab
Product
GitLab
Provider severity
MEDIUM
Conflicts
0

CVE-2026-59519

Insertion of Sensitive Information Into Sent Data vulnerability in Softaculous FormLayer allows Retrieve Embedded Sensitive Data. This issue affects FormLayer: from n/a through 1.0.6.

PUBLISHED
Vendor
Softaculous
Product
FormLayer
Provider severity
MEDIUM
Conflicts
0

CVE-2026-59518

Deserialization of Untrusted Data vulnerability in wpWax Directorist directorist allows Object Injection.This issue affects Directorist: from n/a through <= 8.8.2.

PUBLISHED
Vendor
wpWax
Product
Directorist
Provider severity
CRITICAL
Conflicts
0

CVE-2026-59517

Unauthenticated Cross Site Scripting (XSS) in Easy Form Builder <= 4.0.12 versions.

PUBLISHED
Vendor
hassantafreshi
Product
Easy Form Builder
Provider severity
HIGH
Conflicts
0

CVE-2026-59516

Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Room 34 Creative Services, LLC ICS Calendar ics-calendar allows Reflected XSS.This issue affects ICS Calendar: from n/a through <= 12.1.1.

PUBLISHED
Vendor
Room 34 Creative Services, LLC
Product
ICS Calendar
Provider severity
HIGH
Conflicts
0

CVE-2026-59515

Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in Sergey AIWU ai-copilot-content-generator allows Blind SQL Injection.This issue affects AIWU: from n/a through <= 1.5.4.

PUBLISHED
Vendor
Sergey
Product
AIWU
Provider severity
CRITICAL
Conflicts
0

CVE-2026-59514

Unauthenticated SQL Injection in Buddyboss Platform <= 3.0.5 versions.

PUBLISHED
Vendor
MightyNetworks vs BuddyBoss
Product
Buddyboss Platform
Provider severity
CRITICAL
Conflicts
0

CVE-2026-59513

Subscriber Cross Site Scripting (XSS) in Masteriyo - LMS <= 2.3.0 versions.

PUBLISHED
Vendor
masteriyo
Product
Masteriyo - LMS
Provider severity
MEDIUM
Conflicts
0

CVE-2026-59512

Unauthenticated Cross Site Scripting (XSS) in Product Enquiry for WooCommerce <= 2.2.34.43 versions.

PUBLISHED
Vendor
PI Web Solution
Product
Product Enquiry for WooCommerce
Provider severity
HIGH
Conflicts
0

CVE-2026-59511

Insertion of Sensitive Information Into Sent Data vulnerability in Tim Strifler Exclusive Addons Elementor allows Retrieve Embedded Sensitive Data. This issue affects Exclusive Addons Elementor: from n/a through 2.7.9.9.

PUBLISHED
Vendor
Tim Strifler
Product
Exclusive Addons Elementor
Provider severity
MEDIUM
Conflicts
0

CVE-2026-59510

AIL Framework contains a path traversal vulnerability in its PDF object handling. Prior to commit 14c618fce4d1df02358717c48ea903706abecdf2, the PDF.get_filepath() function constructed a file path by joining the configured PDF storage directory with a path derived from a PDF object identifier, without verifying that the resolved path remained within the intended PDF_FOLDER directory. An authenticated attacker able to invoke PDF object operations with a crafted identifier could use relative trave

PUBLISHED
Vendor
ail-project
Product
ail-framework
Provider severity
HIGH
Conflicts
0

CVE-2026-59509

An unauthenticated improper input validation vulnerability in the POST /fetch_cve_data endpoint in cve-search. A remote attacker can manipulate request parameters controlling the MongoDB collection, projected fields, and regular-expression filters to read arbitrary application MongoDB collections. This can expose administrative usernames and password hashes from the mgmt_users collection, enabling offline password cracking and potential administrative account compromise.

PUBLISHED
Vendor
cve-search
Product
cve-search
Provider severity
CRITICAL
Conflicts
0

CVE-2026-5950

An unbounded resend loop vulnerability exists in the BIND 9 resolver state machine during bad-server handling, enabling a remote unauthenticated attacker to cause severe resource exhaustion by sending queries that trigger specific retry conditions. This issue affects BIND 9 versions 9.18.36 through 9.18.48, 9.20.8 through 9.20.22, 9.21.7 through 9.21.21, 9.18.36-S1 through 9.18.48-S1, and 9.20.9-S1 through 9.20.22-S1.

PUBLISHED
Vendor
ISC
Product
BIND 9
Provider severity
MEDIUM
Conflicts
0

CVE-2026-5947

A flaw was found in BIND. A remote attacker could exploit a race condition during SIG(0) signature validation of an incoming DNS message. If the "recursive-clients" limit is reached and the message is discarded, a use-after-free vulnerability may occur. This could lead to undefined behavior and potentially result in a denial of service.

PUBLISHED
Vendor
ISC, Red Hat, Red Hat, Red Hat, Red Hat, Red Hat, Red Hat, Red Hat, Red Hat, Red Hat, Red Hat
Product
BIND 9, Red Hat Enterprise Linux 10, Red Hat Enterprise Linux 9, Red Hat Enterprise Linux 9, Red Hat Enterprise Linux 8, Red Hat OpenShift Container Platform 4, Red Hat Hardened Images, Red Hat Enterprise Linux 6, Red Hat Enterprise Linux 9, Red Hat Enterprise Linux 8, Red Hat Enterprise Linux 7
Provider severity
HIGH
Conflicts
2

CVE-2026-5946

A flaw was found in the bind component, specifically within the `named` daemon. This vulnerability allows a remote attacker to send specially crafted Domain Name System (DNS) messages. These messages, which use unusual classes or meta-classes, can trigger assertion failures in the `named` daemon when processed. Successful exploitation leads to an application level Denial of Service (DoS), making the DNS service unavailable.

PUBLISHED
Vendor
Red Hat, Red Hat, Red Hat, Red Hat, Red Hat, Red Hat, Red Hat, Red Hat, Red Hat, Red Hat, ISC
Product
Red Hat Enterprise Linux 6, Red Hat Enterprise Linux 7, Red Hat OpenShift Container Platform 4, Red Hat Enterprise Linux 9, Red Hat Enterprise Linux 8, Red Hat Enterprise Linux 9, Red Hat Enterprise Linux 9, Red Hat Hardened Images, Red Hat Enterprise Linux 10, Red Hat Enterprise Linux 8, BIND 9
Provider severity
HIGH
Conflicts
2

CVE-2026-5944

An improper access control vulnerability exists in the Cisco Intersight Device Connector for Nutanix Prism Central. The service exposes an API passthrough endpoint on TCP port 7373 that is accessible within the network scope of the deployment environment without authentication. An unauthenticated attacker with network access can exploit this vulnerability by sending crafted requests to the exposed endpoint to enumerate cluster metadata, including virtual machine information and cluster config

PUBLISHED
Vendor
Nutanix
Product
Cisco Intersight Device Connector for Prism Central
Provider severity
HIGH, MEDIUM
Conflicts
2

CVE-2026-5943

Document structural anomalies caused inconsistencies between page element relationships and internal index states. When scripts triggered document modifications, object reference validity was not properly maintained, leading to a crash when accessing an invalid pointer during page information queries.

PUBLISHED
Vendor
Foxit Software Inc., Foxit Software Inc.
Product
Foxit PDF Editor, Foxit PDF Reader
Provider severity
HIGH
Conflicts
1

CVE-2026-5942

Flaws in page lifecycle management allow document structure changes to desynchronize internal component states, causing subsequent operations to access invalidated objects and crash the program.

PUBLISHED
Vendor
Foxit Software Inc., Foxit Software Inc.
Product
Foxit PDF Reader, Foxit PDF Editor
Provider severity
MEDIUM
Conflicts
1

CVE-2026-5941

Parsing logic flaws cause non-signature data to be misidentified as valid signatures when processing malformed form field hierarchies, leading to invalid memory writes and program crashes during internal data structure construction.

PUBLISHED
Vendor
Foxit Software Inc., Foxit Software Inc.
Product
Foxit PDF Reader, Foxit PDF Editor
Provider severity
HIGH
Conflicts
1

CVE-2026-5940

Calling a function that triggers a UI refresh after removing comments via a script may access an invalidated object, leading to program crashes.

PUBLISHED
Vendor
Foxit Software Inc., Foxit Software Inc.
Product
Foxit PDF Reader, Foxit PDF Editor
Provider severity
HIGH
Conflicts
1

CVE-2026-5939

A crafted XFA PDF can trigger a use-after-free condition during calculate event processing, causing the application to crash and resulting in an arbitrary code execution.

PUBLISHED
Vendor
Foxit Software Inc., Foxit Software Inc.
Product
Foxit PDF Reader, Foxit PDF Editor
Provider severity
MEDIUM
Conflicts
1

CVE-2026-5938

Improper control flow management allows a crafted document action chain to cause modal dialog reentry on the main thread, resulting in UI freeze and denial of service.

PUBLISHED
Vendor
Foxit Software Inc., Foxit Software Inc.
Product
Foxit PDF Reader, Foxit PDF Editor
Provider severity
MEDIUM
Conflicts
1

CVE-2026-5937

Insufficient parameter verification leads to the occurrence of format errors in files, which will trigger an unhandled "std::invalid_argument" exception, ultimately causing the program to terminate.

PUBLISHED
Vendor
Foxit Software Inc., Foxit Software Inc.
Product
Foxit PDF Editor, Foxit PDF Reader
Provider severity
MEDIUM
Conflicts
1

CVE-2026-5936

An attacker can control a server-side HTTP request by supplying a crafted URL, causing the server to initiate requests to arbitrary destinations. This behavior may be exploited to probe internal network services, access otherwise unreachable endpoints (e.g., cloud metadata services), or bypass network access controls, potentially leading to sensitive information disclosure and further compromise of the internal environment.

PUBLISHED
Vendor
Foxit Software Inc.
Product
Foxit PDF Services API
Provider severity
HIGH
Conflicts
0

CVE-2026-5935

IBM Total Storage Service Console (TSSC) / TS4500 IMC 9.2, 9.3, 9.4, 9.5, 9.6 TSSC/IMC could allow an unauthenticated user to execute arbitrary commands with normal user privileges on the system due to improper validation of user supplied input.

PUBLISHED
Vendor
IBM
Product
Total Storage Service Console (TSSC) / TS4500 IMC
Provider severity
HIGH
Conflicts
0

CVE-2026-59328

Spring Tools for Eclipse renders Spring Boot starter wizard dependency tooltips in a native embedded browser (SWT Browser) with JavaScript enabled. Using untrusted and compromised Initializr endpoints for the Spring Boot starter wizard can result in arbitrary script execution inside the embedded browser when a developer hovers a dependency checkbox in the New Spring Starter Project wizard. Impact is limited to in-IDE UI spoofing and outbound network beaconing rather than full code execution. Aff

PUBLISHED
Vendor
Spring
Product
Spring Tools for Eclipse
Provider severity
MEDIUM
Conflicts
1

CVE-2026-59327

Spring Tools for Eclipse stores the Spring Boot DevTools remote secret (spring.devtools.remote.secret) as a plain string attribute on the "Spring Boot DevTools Client" launch configuration. Eclipse persists launch configuration attributes as cleartext XML, either to workspace metadata or, if the user marks the configuration as a shared file, directly into the project tree where it can be committed to version control. This secret is the sole credential protecting the DevTools remote restart/reloa

PUBLISHED
Vendor
Spring
Product
Spring Tools for Eclipse
Provider severity
MEDIUM
Conflicts
1

CVE-2026-59326

The Spring Boot language server logs the raw value of the https_proxy/HTTPS_PROXY/http_proxy/HTTP_PROXY environment variable at INFO level whenever it creates an outbound HTTP client and no explicit http.proxy workspace setting is configured. Corporate proxy URLs frequently embed Basic-auth credentials in the form http://user:pass@proxy:8080, and the language server writes this value to its log file without any redaction. Since language server log files are often attached to bug reports or are r

PUBLISHED
Vendor
Spring, Spring
Product
Spring Tools for VSCode / Cursor / Theia, Spring Tools for Eclipse
Provider severity
LOW
Conflicts
2

CVE-2026-59310

VMware vCenter contains a directory traversal vulnerability in the Syslog server. A malicious actor with network access to vCenter may exploit this issue to execute arbitrary code.

PUBLISHED
Vendor
VMware, VMware, VMware, VMware, VMware
Product
Telco Cloud Platform, Telco Cloud Infrastructure, vCenter, vSphere Foundation, Cloud Foundation
Provider severity
CRITICAL
Conflicts
1

CVE-2026-59309

VMware vCenter contains an authentication bypass vulnerability in the VMware Directory Service. A malicious actor with network access to vCenter may exploit this issue to bypass authentication and gain unauthorized access to the system.

PUBLISHED
Vendor
VMware, VMware, VMware, VMware, VMware
Product
Telco Cloud Infrastructure, Cloud Foundation, vSphere Foundation, vCenter, Telco Cloud Platform
Provider severity
CRITICAL
Conflicts
1

CVE-2026-5928

Calling the ungetwc function on a FILE stream with wide characters encoded in a character set that has overlaps between its single byte and multi-byte character encodings, in the GNU C Library version 2.43 or earlier, may result in an attempt to read bytes before an allocated buffer, potentially resulting in unintentional disclosure of neighboring data in the heap, or a program crash. A bug in the wide character pushback implementation (_IO_wdefault_pbackfail in libio/wgenops.c) causes ungetwc(

PUBLISHED
Vendor
Siemens, The GNU C Library, Siemens, Siemens, Siemens, Siemens
Product
SIPLUS S7-1500 CPU 1518-4 PN/DP MFP, glibc, SIMATIC S7-1500 CPU 1518-4 PN/DP MFP, SIMATIC S7-1500 CPU 1518F-4 PN/DP MFP, SIMATIC S7-1500 CPU 1518F-4 PN/DP MFP, SIMATIC S7-1500 CPU 1518-4 PN/DP MFP
Provider severity
HIGH
Conflicts
1

CVE-2026-59269

A user authenticating to Kubernetes clusters via the Pinniped Supervisor could potentially gain elevated permissions in the clusters, only if all the following conditions were true: the Pinniped Supervisor server is running with an ActiveDirectoryIdentityProvider resource configured; the ActiveDirectoryIdentityProvider.spec.groupSearch.attributes.groupName is empty; the attacker gains the ability to edit some part of the distinguished name (DN) of group entries in the Active Directory (AD) serve

PUBLISHED
Vendor
VMware
Product
Pinniped
Provider severity
LOW
Conflicts
0

CVE-2026-59262

AFFiNE's histories GraphQL field fails to validate Doc.Read permission before exposing document edit history, allowing authenticated workspace members to retrieve restricted content timelines. Attackers can supply arbitrary document GUIDs to access full edit histories including user names, emails, and timestamps of private pages they lack access to.

PUBLISHED
Vendor
affine
Product
monorepo
Provider severity
HIGH, MEDIUM
Conflicts
1

CVE-2026-59261

OpenClaw before 2026.5.28 contains a credential exposure vulnerability where workspace dotenv files can override provider credentials. Attackers with lower-trust access to configured input paths can expose sensitive data and credentials that should remain within trusted boundaries.

PUBLISHED
Vendor
OpenClaw
Product
OpenClaw
Provider severity
HIGH
Conflicts
1

CVE-2026-59260

OpenWrt luci-app-samba4 read ACL grants file.exec permission on /usr/sbin/smbd, allowing authenticated delegated users to execute the Samba daemon with caller-controlled command-line arguments. Attackers can pass arbitrary Samba global options such as message command to a root smbd process, triggering command execution when SMB protocol messages are processed.

PUBLISHED
Vendor
openwrt
Product
luci
Provider severity
HIGH
Conflicts
1

CVE-2026-5926

IBM Verify Identity Access Container 11.0 through 11.0.2 and IBM Security Verify Access Container 10.0 through 10.0.9.1 and IBM Verify Identity Access 11.0 through 11.0.2 and IBM Security Verify Access 10.0 through 10.0.9.1 uses weaker than expected cryptographic algorithms that could allow an attacker to decrypt highly sensitive information.

PUBLISHED
Vendor
IBM, IBM, IBM, IBM
Product
Security Verify Access Container, Security Verify Access, Verify Identity Access Container, Verify Identity Access
Provider severity
MEDIUM
Conflicts
1

CVE-2026-59259

n8n before versions 1.123.61, 2.27.4, and 2.28.1 contains a permission bypass vulnerability in external secrets handling caused by a mismatch between the static validation check and the runtime expression engine. An authenticated user with credential create or update permissions but without the externalSecret:list scope can embed external secret references into credentials in forms the static validation does not detect; these references resolve at workflow execution time, exposing secret values

PUBLISHED
Vendor
n8n, n8n, n8n
Product
n8n, n8n, n8n
Provider severity
MEDIUM
Conflicts
1