Exact snapshot results

353,537 CVE records

CVE ID descending · no relevance ranking

CVE-2026-52712

Subscriber SQL Injection in Attendance Manager <= 0.6.2 versions.

PUBLISHED
Vendor
tnomi
Product
Attendance Manager
Provider severity
HIGH
Conflicts
0

CVE-2026-52711

Unauthenticated Broken Access Control in WooCommerce POS <= 1.8.14 versions.

PUBLISHED
Vendor
kilbot
Product
WooCommerce POS
Provider severity
HIGH
Conflicts
0

CVE-2026-5271

pymanager included the current working directory in sys.path meaning modules could be shadowed by modules in the current working directory. As a result, if a user executes a pymanager-generated command (e.g., pip, pytest) from an attacker-controlled directory, a malicious module in that directory can be imported and executed instead of the intended package.

PUBLISHED
Vendor
Python Software Foundation
Product
pymanager
Provider severity
MEDIUM
Conflicts
0

CVE-2026-52707

Unauthenticated Local File Inclusion in Kastell <= 2.0 versions.

PUBLISHED
Vendor
Mikado-Themes
Product
Kastell
Provider severity
HIGH
Conflicts
0

CVE-2026-52706

Unauthenticated PHP Object Injection in JetEngine <= 3.8.10 versions.

PUBLISHED
Vendor
Jetimpex Inc.
Product
JetEngine
Provider severity
CRITICAL
Conflicts
0

CVE-2026-52705

Unauthenticated Arbitrary File Upload in SigmaForms Pro – AI Generated Forms <= 1.4.5 versions.

PUBLISHED
Vendor
BDthemes
Product
SigmaForms Pro – AI Generated Forms
Provider severity
CRITICAL
Conflicts
0

CVE-2026-52704

Improper Control of Generation of Code ('Code Injection') vulnerability in Edgar Rojas WooCommerce PDF Invoice Builder allows Remote Code Inclusion. This issue affects WooCommerce PDF Invoice Builder: from n/a through 2.0.8.

PUBLISHED
Vendor
Edgar Rojas
Product
WooCommerce PDF Invoice Builder
Provider severity
CRITICAL
Conflicts
0

CVE-2026-52703

Unauthenticated Path Traversal in FastDup <= 2.7.2 versions.

PUBLISHED
Vendor
Ninja Team
Product
FastDup
Provider severity
CRITICAL
Conflicts
0

CVE-2026-52702

Unauthenticated Cross Site Scripting (XSS) in SEO Redirection <= 9.17 versions.

PUBLISHED
Vendor
wp-buy
Product
SEO Redirection
Provider severity
HIGH
Conflicts
0

CVE-2026-52701

Unauthenticated Broken Access Control in User Registration <= 5.2.2 versions.

PUBLISHED
Vendor
Themegrill
Product
User Registration
Provider severity
MEDIUM
Conflicts
0

CVE-2026-52700

Subscriber SQL Injection in WCMultiShipping <= 3.0.2 versions.

PUBLISHED
Vendor
WcMultishipping – Mondial Relay & Chronopost for Wooommerce
Product
WCMultiShipping
Provider severity
HIGH
Conflicts
0

CVE-2026-5270

An authentication bypass vulnerability exists in certain releases of Ciena Navigator Network Control Suite (NCS), Manage Control Plan (MCP), and Blue Planet products. The issue is caused by improper handling of HTTP request paths and headers, which allows an unauthenticated attacker to manipulate requests in a manner that bypasses authentication and associated audit logging controls.

PUBLISHED
Vendor
Blue Planet, Blue Planet, CIENA, CIENA, Blue Planet, CIENA, Blue Planet
Product
Inventory, Orchestration, Navigator NCS, MCP, Route Optimization & Analysis, Planner Plus OnPrem, Unified Assurance & Analytics
Provider severity
CRITICAL
Conflicts
1

CVE-2026-52699

Unauthenticated Insecure Direct Object References (IDOR) in VikRentCar <= 1.4.5 versions.

PUBLISHED
Vendor
e4jvikwp
Product
VikRentCar
Provider severity
HIGH
Conflicts
0

CVE-2026-52698

Subscriber Sensitive Data Exposure in PushEngage – Web Push Notifications, eCommerce Automation &amp; Chat Widget <= 4.2.3 versions.

PUBLISHED
Vendor
Syed Balkhi
Product
PushEngage – Web Push Notifications, eCommerce Automation &amp; Chat Widget
Provider severity
HIGH
Conflicts
0

CVE-2026-52697

Subscriber SQL Injection in Taskbuilder <= 5.0.7 versions.

PUBLISHED
Vendor
Taskbuilder
Product
Taskbuilder
Provider severity
HIGH
Conflicts
0

CVE-2026-52696

Unauthenticated Sensitive Data Exposure in JetBlog <= 2.4.8 versions.

PUBLISHED
Vendor
Jetimpex Inc.
Product
JetBlog
Provider severity
HIGH
Conflicts
0

CVE-2026-52695

Unauthenticated Sensitive Data Exposure in ABC Crypto Checkout <= 1.8.2 versions.

PUBLISHED
Vendor
Al Monsor
Product
ABC Crypto Checkout
Provider severity
HIGH
Conflicts
0

CVE-2026-52694

Unauthenticated Sensitive Data Exposure in Signature Add-On for WooCommerce <= 2.0 versions.

PUBLISHED
Vendor
WP E-Signature
Product
Signature Add-On for WooCommerce
Provider severity
HIGH
Conflicts
0

CVE-2026-52693

Unauthenticated SQL Injection in eCommerce Product Catalog <= 3.5.5 versions.

PUBLISHED
Vendor
impleCode
Product
eCommerce Product Catalog
Provider severity
CRITICAL
Conflicts
0

CVE-2026-52692

Unauthenticated Sensitive Data Exposure in Affiliates Manager <= 2.9.50 versions.

PUBLISHED
Vendor
wp.insider
Product
Affiliates Manager
Provider severity
HIGH
Conflicts
0

CVE-2026-52690

Spoofing replies to Recursor might mark an IP of an authoritative server as not supporting EDNS, causing valdiation of DNSSEC records served by that server to fail.

PUBLISHED
Vendor
PowerDNS
Product
Recursor
Provider severity
MEDIUM
Conflicts
1

CVE-2026-5269

In Ciena's Navigator Network Control Suite (NCS) and Manage Control Plan (MCP), there are hidden system accounts used for internal software operations. Some of these accounts have default passwords that may be predictable. While these accounts have very limited permissions on their own, an attacker could combine an attack using one of these accounts with other potential weaknesses to launch a more significant attack, possibly leading to escalation of privilege on the system.

PUBLISHED
Vendor
CIENA, CIENA, CIENA
Product
Navigator NCS, Planner Plus OnPrem, MCP
Provider severity
CRITICAL
Conflicts
1

CVE-2026-52688

RRSIGs with too few labels can lead to bypass of DNSSEC wildcard validation

PUBLISHED
Vendor
PowerDNS
Product
Recursor
Provider severity
HIGH
Conflicts
1

CVE-2026-52686

The issue is a DNSSEC validation bypass where wildcard expansion proofs (NSEC/NSEC3 records) are accepted without signature validation when the wildcard answer is a CNAME or DNAME record.

PUBLISHED
Vendor
PowerDNS
Product
Recursor
Provider severity
LOW
Conflicts
1

CVE-2026-52684

If the auth responds very slowly and the records expire in between, the capping of TTLs is not enforced for lack of data. This does not happen on regular resolve as then then the child records are used immediately if not expired and thus valid, or the records are expired, and in that case not used. So this case can only happen if almost expired records are used to refresh the authoritative NS records.

PUBLISHED
Vendor
PowerDNS
Product
Recursor
Provider severity
LOW
Conflicts
0

CVE-2026-52680

Apache Kyuubi REST batch multipart upload handling uses the client-supplied multipart filename when creating a temporary uploaded resource. A remote attacker who can access the REST batch upload endpoint can provide path traversal sequences in the filename and cause the Kyuubi server process to write controlled content outside the intended upload directory, subject to filesystem permissions. This issue affects Apache Kyuubi: from 1.7.0 through 1.11.1. Users are recommended to upgrade to versi

PUBLISHED
Vendor
Apache Software Foundation
Product
Apache Kyuubi
Provider severity
CRITICAL
Conflicts
1

CVE-2026-5268

An authentication bypass vulnerability exists in the default SFTP server component utilized across the Ciena products listed. This vulnerability allows a remote, unauthenticated attacker to bypass security controls and gain unauthorized access to the underlying filesystem. Successful exploitation could allow an attacker to read or modify system files.

PUBLISHED
Vendor
CIENA, CIENA, CIENA, CIENA
Product
6500 S-Series, CPL, 6500 T-Series, PTS
Provider severity
CRITICAL
Conflicts
1

CVE-2026-52673

SQL Injection vulnerability in Cboard v.0.4.2 and before allows a remote attacker to execute arbitrary code via the getDimensionsValues component

PUBLISHED
Vendor
n/a
Product
n/a
Provider severity
MEDIUM
Conflicts
1

CVE-2026-5266

Exposure of Sensitive Information to an Unauthorized Actor vulnerability in Wikimedia Foundation Echo. This vulnerability is associated with program files includes/Api/ApiEchoNotifications.Php. This issue affects Echo: from * before 1.43.7, 1.44.4, 1.45.2.

PUBLISHED
Vendor
Wikimedia Foundation
Product
Echo
Provider severity
LOW
Conflicts
0

CVE-2026-52656

An issue in SJCAM AllWinner Tech products SJ4000-Air V1.4C and before and Whitelabel based v.1.4C and before allows an attacker to execute arbitrary code via a crafted FEX file

PUBLISHED
Vendor
n/a
Product
n/a
Provider severity
CRITICAL
Conflicts
1

CVE-2026-5265

When generating an ICMP Destination Unreachable or Packet Too Big response, the handler copies a portion of the original packet into the ICMP error body using the IP header's self-declared total length (ip_tot_len for IPv4, ip6_plen for IPv6) without validating it against the actual packet buffer size. A VM can send a short packet with an inflated IP length field that triggers an ICMP error (e.g., by hitting a reject ACL), causing ovn-controller to read heap memory beyond the valid packet data a

PUBLISHED
Vendor
Red Hat, Red Hat, Red Hat, Red Hat, Red Hat, Red Hat, Red Hat, Red Hat, Red Hat, Red Hat, Red Hat, Red Hat, Red Hat, Red Hat, Red Hat, Red Hat, Red Hat, Red Hat, Red Hat, Red Hat, Red Hat, Red Hat, Red Hat, Red Hat, Red Hat, Red Hat, Red Hat
Product
Fast Datapath for RHEL 9, Fast Datapath for Red Hat Enterprise Linux 9, Fast Datapath for Red Hat Enterprise Linux 9, Fast Datapath for Red Hat Enterprise Linux 9, Fast Datapath for RHEL 8, Fast Datapath for RHEL 9, Fast Datapath for RHEL 8, Fast Datapath for Red Hat Enterprise Linux 10, Fast Datapath for Red Hat Enterprise Linux 10, Fast Datapath for Red Hat Enterprise Linux 9, Fast Datapath for RHEL 9, Fast Datapath for RHEL 8, Fast Datapath for RHEL 9, Fast Datapath for RHEL 7, Fast Datapath for Red Hat Enterprise Linux 8, Fast Datapath for RHEL 9, Fast Datapath for RHEL 7, Fast Datapath for Red Hat Enterprise Linux 8, Fast Datapath for RHEL 9, Fast Datapath for RHEL 7, Fast Datapath for RHEL 8, Fast Datapath for RHEL 8, Fast Datapath for RHEL 8, Fast Datapath for RHEL 8, Fast Datapath for Red Hat Enterprise Linux 9, Fast Datapath for RHEL 9, Fast Datapath for RHEL 8
Provider severity
MEDIUM
Conflicts
1

CVE-2026-5264

Heap buffer overflow in DTLS 1.3 ACK message processing. A remote attacker can send a crafted DTLS 1.3 ACK message that triggers a heap buffer overflow.

PUBLISHED
Vendor
wolfSSL
Product
wolfSSL
Provider severity
HIGH
Conflicts
0

CVE-2026-5263

URI nameConstraints from constrained intermediate CAs are parsed but not enforced during certificate chain verification in wolfcrypt/src/asn.c. A compromised or malicious sub-CA could issue leaf certificates with URI SAN entries that violate the nameConstraints of the issuing CA, and wolfSSL would accept them as valid.

PUBLISHED
Vendor
wolfSSL
Product
wolfSSL
Provider severity
HIGH
Conflicts
0

CVE-2026-5262

GitLab has remediated an issue in GitLab CE/EE affecting all versions from 16.1.0 before 18.9.6, 18.10 before 18.10.4, and 18.11 before 18.11.1 that under certain conditions could have allowed an unauthenticated user to access tokens in the Storybook development environment due to improper input validation.

PUBLISHED
Vendor
GitLab
Product
GitLab
Provider severity
HIGH
Conflicts
0

CVE-2026-5261

A vulnerability was identified in Shandong Hoteam InforCenter PLM up to 8.3.8. The impacted element is the function uploadFileToIIS of the file /Base/BaseHandler.ashx. The manipulation of the argument File leads to unrestricted upload. It is possible to initiate the attack remotely. The exploit is publicly available and might be used. The vendor was contacted early about this disclosure but did not respond in any way.

PUBLISHED
Vendor
Shandong Hoteam
Product
InforCenter PLM
Provider severity
HIGH, MEDIUM
Conflicts
2

CVE-2026-5260

A flaw was found in libgnutls. A remote attacker, by sending an extremely short premaster secret during an RSA key exchange to a server using an RSA key backed by a PKCS#11 token, could trigger a short heap overread. This memory corruption vulnerability could lead to information disclosure.

PUBLISHED
Vendor
Red Hat, Red Hat, Red Hat, Red Hat, Red Hat, Red Hat, Red Hat, Red Hat, Red Hat, Red Hat, Red Hat, Red Hat, Red Hat, Red Hat, Red Hat, Red Hat, Red Hat, Red Hat, Red Hat, Red Hat, Red Hat, Red Hat, Red Hat, Red Hat, Red Hat, Red Hat, Red Hat, Red Hat, Red Hat, Red Hat, Red Hat, Red Hat
Product
Red Hat Enterprise Linux 9, Red Hat Update Infrastructure 5, Red Hat Enterprise Linux 8.4 Extended Update Support Long-Life Add-On, Red Hat Enterprise Linux 9.4 Update Services for SAP Solutions, Red Hat Enterprise Linux 7, Red Hat Enterprise Linux 9.6 Extended Update Support, Red Hat Enterprise Linux 8.6 Advanced Mission Critical Update Support, Red Hat Update Infrastructure 5, Red Hat Hardened Images, Red Hat Enterprise Linux 8.6 Extended Update Support Long-Life Add-On, Red Hat Discovery 2, Red Hat Enterprise Linux 8.8 Telecommunications Update Service, Red Hat OpenShift Container Platform 4, Red Hat OpenShift Container Platform 4.19, Red Hat Enterprise Linux 8.4 Advanced Mission Critical Update Support, Red Hat Enterprise Linux 9, Red Hat Enterprise Linux 8.4 Advanced Mission Critical Update Support, Red Hat Enterprise Linux 10.0 Extended Update Support, Red Hat Update Infrastructure 5, Red Hat Enterprise Linux 8, Red Hat Enterprise Linux 8, Red Hat Enterprise Linux 9.2 Update Services for SAP Solutions, Red Hat Update Infrastructure 5, Red Hat Enterprise Linux 8.8 Telecommunications Update Service, Red Hat Discovery 2, Red Hat Enterprise Linux 8.6 Advanced Mission Critical Update Support, Red Hat Enterprise Linux 6, Red Hat Enterprise Linux 8.8 Update Services for SAP Solutions, Red Hat Enterprise Linux 8.8 Update Services for SAP Solutions, Red Hat Enterprise Linux 8.6 Extended Update Support Long-Life Add-On, Red Hat Enterprise Linux 10, Red Hat Enterprise Linux 8.4 Extended Update Support Long-Life Add-On
Provider severity
HIGH
Conflicts
1

CVE-2026-5259

A vulnerability was determined in AutohomeCorp frostmourne up to 1.0. The affected element is an unknown function of the file frostmourne-monitor/src/main/java/com/autohome/frostmourne/monitor/controller/AlarmController.java of the component Alarm Preview. Executing a manipulation can lead to server-side request forgery. The attack may be performed from remote. The exploit has been publicly disclosed and may be utilized.

PUBLISHED
Vendor
AutohomeCorp
Product
frostmourne
Provider severity
MEDIUM
Conflicts
1

CVE-2026-52584

Buffer Overflow vulnerability in libjxl v.0.11.2 and before allows a local attacker to obtain sensitive information via the DecodeImageAPNG function

PUBLISHED
Vendor
n/a
Product
n/a
Provider severity
HIGH
Conflicts
1

CVE-2026-5258

A vulnerability was found in Sanster IOPaint 1.5.3. Impacted is the function _get_file of the file iopaint/file_manager/file_manager.py of the component File Manager. Performing a manipulation of the argument filename results in path traversal. The attack is possible to be carried out remotely. The exploit has been made public and could be used. The vendor was contacted early about this disclosure but did not respond in any way.

PUBLISHED
Vendor
Sanster
Product
IOPaint
Provider severity
HIGH, MEDIUM
Conflicts
1

CVE-2026-5257

A vulnerability has been found in code-projects Simple Laundry System 1.0. This issue affects some unknown processing of the file /delstaffinfo.php of the component Parameter Handler. Such manipulation of the argument userid leads to sql injection. The attack can be executed remotely. The exploit has been disclosed to the public and may be used.

PUBLISHED
Vendor
code-projects
Product
Simple Laundry System
Provider severity
HIGH, MEDIUM
Conflicts
2

CVE-2026-5256

A flaw has been found in code-projects Simple Laundry System 1.0. This vulnerability affects unknown code of the file /modify.php of the component Parameter Handler. This manipulation of the argument firstName causes sql injection. Remote exploitation of the attack is possible. The exploit has been published and may be used.

PUBLISHED
Vendor
code-projects
Product
Simple Laundry System
Provider severity
HIGH, MEDIUM
Conflicts
2

CVE-2026-5255

A vulnerability was detected in code-projects Simple Laundry System 1.0. This affects an unknown part of the file /delstaffinfo.php of the component Parameter Handler. The manipulation of the argument userid results in cross site scripting. The attack may be launched remotely. The exploit is now public and may be used.

PUBLISHED
Vendor
code-projects
Product
Simple Laundry System
Provider severity
MEDIUM
Conflicts
2

CVE-2026-5254

A security vulnerability has been detected in welovemedia FFmate up to 2.0.15. Affected by this issue is some unknown functionality of the file /ui/app/components/AppJsonTreeView.vue of the component Webhook Handler. The manipulation leads to cross site scripting. The attack may be initiated remotely. The exploit has been disclosed publicly and may be used. The vendor was contacted early about this disclosure but did not respond in any way.

PUBLISHED
Vendor
welovemedia
Product
FFmate
Provider severity
LOW, MEDIUM
Conflicts
2

CVE-2026-52539

Outstatic CMS <= 2.1.9 contains a hardcoded JWT signing secret. When the OST_TOKEN_SECRET environment variable is not set, the application falls back to the default value which is publicly visible in the source code repository. An unauthenticated remote attacker can exploit this by forging JWT session tokens with arbitrary user data and full administrative permissions.

PUBLISHED
Vendor
n/a
Product
n/a
Provider severity
CRITICAL
Conflicts
1

CVE-2026-52533

An issue in D-Link DIR-1253 v.1.0.1.250923.142435 allows an attacker to escalate privileges via the etc/shadow component file

PUBLISHED
Vendor
n/a
Product
n/a
Provider severity
CRITICAL
Conflicts
1

CVE-2026-5253

A weakness has been identified in bufanyun HotGo 1.0/2.0. Affected by this vulnerability is an unknown functionality of the file /web/src/layout/components/Header/MessageList.vue of the component editNotice Endpoint. Executing a manipulation can lead to cross site scripting. The attack can be launched remotely. The exploit has been made available to the public and could be used for attacks. The vendor was contacted early about this disclosure but did not respond in any way.

PUBLISHED
Vendor
bufanyun
Product
HotGo
Provider severity
LOW, MEDIUM
Conflicts
2

CVE-2026-52521

A SQL injection vulnerability in Z-BlogPHP 1.7.5 allows authenticated attackers to execute arbitrary SQL commands via the id parameter in the CommentBat feature.

PUBLISHED
Vendor
n/a
Product
n/a
Provider severity
Not asserted
Conflicts
0

CVE-2026-52520

Emlog CMS <= 2.6.14 contains a stored cross-site scripting (XSS) vulnerability in the article publishing module (/admin/article.php). A remote authenticated attacker can inject arbitrary JavaScript code via the article content. When an administrator reviews or previews the submitted article in the backend, the malicious script executes in the admin's browser session, allowing the attacker to perform administrative actions such as creating a backdoor administrator account.

PUBLISHED
Vendor
n/a
Product
n/a
Provider severity
Not asserted
Conflicts
0

CVE-2026-5252

A security flaw has been discovered in z-9527 admin 1.0/2.0. Affected is an unknown function of the file /server/routes/message.js of the component Message Create Endpoint. Performing a manipulation results in cross site scripting. The attack can be initiated remotely. The exploit has been released to the public and may be used for attacks. The vendor was contacted early about this disclosure but did not respond in any way.

PUBLISHED
Vendor
z-9527
Product
admin
Provider severity
LOW, MEDIUM
Conflicts
2

CVE-2026-5251

A vulnerability was identified in z-9527 admin 1.0/2.0. This impacts an unknown function of the file /server/routes/user.js of the component User Update Endpoint. Such manipulation of the argument isAdmin with the input 1 leads to dynamically-determined object attributes. It is possible to launch the attack remotely. The exploit is publicly available and might be used. The vendor was contacted early about this disclosure but did not respond in any way.

PUBLISHED
Vendor
z-9527
Product
admin
Provider severity
MEDIUM
Conflicts
2