Exact snapshot results

353,537 CVE records

CVE ID descending · no relevance ranking

CVE-2026-21653

Victor SSRF vulnerability in Johnson Controls CCure 9000 and victor application server allows Server Side Request Forgery. This issue affects CCure 9000 and victor application server: from 2.9 through 3.0.

PUBLISHED
Vendor
Johnson Controls
Product
CCure 9000 and victor application server
Provider severity
HIGH
Conflicts
1

CVE-2026-2165

A weakness has been identified in detronetdip E-commerce 1.0.0. Impacted is an unknown function of the file /Admin/assets/backend/seller/add_seller.php of the component Account Creation Endpoint. Executing a manipulation of the argument email can lead to missing authentication. The attack can be executed remotely. The exploit has been made available to the public and could be used for attacks. The project was informed of the problem early through an issue report but has not responded yet.

PUBLISHED
Vendor
detronetdip
Product
E-commerce
Provider severity
HIGH, MEDIUM
Conflicts
2

CVE-2026-21643

An improper neutralization of special elements used in an sql command ('sql injection') vulnerability in Fortinet FortiClientEMS 7.4.4 may allow an unauthenticated attacker to execute unauthorized code or commands via specifically crafted HTTP requests.

PUBLISHEDCISA KEV
Vendor
Fortinet
Product
FortiClientEMS
Provider severity
CRITICAL
Conflicts
0

CVE-2026-21642

HackerOne community member Patrick Lang (7yr) has reported a reflected XSS vulnerability in the `banner-acl.php` and `channel-acl.php` scripts of Revive Adserver. An attacker can craft a specific URL that includes an HTML payload in a parameter. If a logged in administrator visits the URL, the HTML is sent to the browser and malicious scripts would be executed.

PUBLISHED
Vendor
Revive
Product
Revive Adserver
Provider severity
MEDIUM
Conflicts
0

CVE-2026-21641

HackerOne community member Jad Ghamloush (0xjad) has reported an authorization bypass vulnerability in the `tracker-delete.php` script of Revive Adserver. Users with permissions to delete trackers are mistakenly allowed to delete trackers owned by other accounts.

PUBLISHED
Vendor
Revive
Product
Revive Adserver
Provider severity
HIGH
Conflicts
0

CVE-2026-21640

HackerOne community member Faraz Ahmed (PakCyberbot) has reported a format string injection in the Revive Adserver settings. When specific character combinations are used in a setting, the admin user console could be disabled due to a fatal PHP error.

PUBLISHED
Vendor
Revive
Product
Revive Adserver
Provider severity
LOW
Conflicts
0

CVE-2026-2164

A security flaw has been discovered in detronetdip E-commerce 1.0.0. This issue affects some unknown processing of the file /seller/assets/backend/profile/addadhar.php. Performing a manipulation of the argument File results in unrestricted upload. Remote exploitation of the attack is possible. The exploit has been released to the public and may be used for attacks. The project was informed of the problem early through an issue report but has not responded yet.

PUBLISHED
Vendor
detronetdip
Product
E-commerce
Provider severity
HIGH, MEDIUM
Conflicts
2

CVE-2026-21639

A malicious actor in Wi-Fi range of the affected product could leverage a vulnerability in the airMAX Wireless Protocol to achieve a remote code execution (RCE) within the affected product.

PUBLISHED
Vendor
Ubiquiti Inc, Ubiquiti Inc, Ubiquiti Inc, Ubiquiti Inc
Product
airFiber AF60, airFiber AF60-XG, airMAX AC, airMAX M
Provider severity
HIGH, MEDIUM
Conflicts
3

CVE-2026-21638

A malicious actor in Wi-Fi range of the affected product could leverage a vulnerability in the airMAX Wireless Protocol to achieve a remote code execution (RCE) within the affected product. Affected Products: UBB-XG (Version 1.2.2 and earlier) UDB-Pro/UDB-Pro-Sector (Version 1.4.1 and earlier) UBB (Version 3.1.5 and earlier) Mitigation: Update your UBB-XG to Version 1.2.3 or later. Update your UDB-Pro/UDB-Pro-Sector to Version 1.4.2 or later. Update your UBB to Version 3.1.7

PUBLISHED
Vendor
Ubiquiti Inc, Ubiquiti Inc, Ubiquiti Inc
Product
UBB-XG, UDB-Pro/UDB-Pro-Sector, UBB
Provider severity
HIGH
Conflicts
1

CVE-2026-21637

A flaw in Node.js TLS error handling allows remote attackers to crash or exhaust resources of a TLS server when `pskCallback` or `ALPNCallback` are in use. Synchronous exceptions thrown during these callbacks bypass standard TLS error handling paths (tlsClientError and error), causing either immediate process termination or silent file descriptor leaks that eventually lead to denial of service. Because these callbacks process attacker-controlled input during the TLS handshake, a remote client ca

PUBLISHED
Vendor
nodejs
Product
node
Provider severity
MEDIUM
Conflicts
0

CVE-2026-21636

A flaw in Node.js's permission model allows Unix Domain Socket (UDS) connections to bypass network restrictions when `--permission` is enabled. Even without `--allow-net`, attacker-controlled inputs (such as URLs or socketPath options) can connect to arbitrary local sockets via net, tls, or undici/fetch. This breaks the intended security boundary of the permission model and enables access to privileged local services, potentially leading to privilege escalation, data exposure, or local code exec

PUBLISHED
Vendor
nodejs
Product
node
Provider severity
MEDIUM
Conflicts
0

CVE-2026-21635

An Improper Access Control could allow a malicious actor in Wi-Fi range to the EV Station Lite (v1.5.2 and earlier) to use WiFi AutoLink feature on a device that was only adopted via Ethernet.

PUBLISHED
Vendor
Ubiquiti Inc
Product
UniFi Connect EV Station Lite
Provider severity
MEDIUM
Conflicts
0

CVE-2026-21634

A malicious actor with access to the adjacent network could overflow the UniFi Protect Application (Version 6.1.79 and earlier) discovery protocol causing it to restart. Affected Products: UniFi Protect Application (Version 6.1.79 and earlier). Mitigation: Update your UniFi Protect Application to Version 6.2.72 or later.

PUBLISHED
Vendor
Ubiquiti Inc
Product
UniFi Protect Application
Provider severity
MEDIUM
Conflicts
0

CVE-2026-21633

A malicious actor with access to the adjacent network could obtain unauthorized access to a UniFi Protect Camera by exploiting a discovery protocol vulnerability in the Unifi Protect Application (Version 6.1.79 and earlier). Affected Products: UniFi Protect Application (Version 6.1.79 and earlier). Mitigation: Update your UniFi Protect Application to Version 6.2.72 or later.

PUBLISHED
Vendor
Ubiquiti Inc
Product
UniFi Protect Application
Provider severity
HIGH
Conflicts
0

CVE-2026-21632

Lack of output escaping for article titles leads to XSS vectors in various locations.

PUBLISHED
Vendor
Joomla! Project
Product
Joomla! CMS
Provider severity
MEDIUM
Conflicts
0

CVE-2026-21631

Lack of output escaping leads to a XSS vector in the multilingual associations component.

PUBLISHED
Vendor
Joomla! Project
Product
Joomla! CMS
Provider severity
MEDIUM
Conflicts
0

CVE-2026-21630

Improperly built order clauses lead to a SQL injection vulnerability in the articles webservice endpoint.

PUBLISHED
Vendor
Joomla! Project
Product
Joomla! CMS
Provider severity
MEDIUM
Conflicts
0

CVE-2026-2163

A vulnerability was identified in D-Link DIR-600 up to 2.15WWb02. This vulnerability affects unknown code of the file ssdp.cgi. Such manipulation of the argument HTTP_ST/REMOTE_ADDR/REMOTE_PORT/SERVER_ID leads to command injection. The attack may be launched remotely. The exploit is publicly available and might be used. This vulnerability only affects products that are no longer supported by the maintainer.

PUBLISHED
Vendor
D-Link
Product
DIR-600
Provider severity
MEDIUM
Conflicts
2

CVE-2026-21629

The ajax component was excluded from the default logged-in-user check in the administrative area. This behavior was potentially unexpected by 3rd party developers.

PUBLISHED
Vendor
Joomla! Project
Product
Joomla! CMS
Provider severity
MEDIUM
Conflicts
0

CVE-2026-21628

A improperly secured file management feature allows uploads of dangerous data types for unauthenticated users, leading to remote code execution.

PUBLISHED
Vendor
astroidframe.work
Product
Astroid Template Framework
Provider severity
CRITICAL
Conflicts
0

CVE-2026-21627

The vulnerability was rooted in how the Tassos Framework plugin handled specific AJAX requests through Joomla’s com_ajax entry point. Under certain conditions, internal framework functionality could be invoked without proper restriction.

PUBLISHED
Vendor
tassos.gr, tassos.gr, tassos.gr, tassos.gr, tassos.gr, tassos.gr
Product
Advanced Custom Fields, EngageBox, Convert Forms, Novarain/Tassos Framework (plg_system_nrframework), Smile Pack, Google Structured Data
Provider severity
CRITICAL
Conflicts
1

CVE-2026-21626

Access control settings for forum post custom fields are not applied to the JSON output type, leading to an ACL violation vector an information disclosure

PUBLISHED
Vendor
Stackideas.com
Product
EasyDiscuss extension for Joomla
Provider severity
CRITICAL
Conflicts
0

CVE-2026-21625

User provided uploads to the Easy Discuss component for Joomla aren't properly validated. Uploads are purely checked by file extensions, no mime type checks are happening.

PUBLISHED
Vendor
Stackideas.com
Product
EasyDiscuss extension for Joomla
Provider severity
MEDIUM
Conflicts
0

CVE-2026-21624

Lack of input filterung leads to a persistent XSS vulnerability in the user avatar text handling of the Easy Discuss component for Joomla.

PUBLISHED
Vendor
Stackideas.com
Product
EasyDiscuss extension for Joomla
Provider severity
CRITICAL
Conflicts
0

CVE-2026-21623

Lack of input filterung leads to a persistent XSS vulnerability in the forum post handling of the Easy Discuss component for Joomla.

PUBLISHED
Vendor
Stackideas.com
Product
EasyDiscuss extension for Joomla
Provider severity
CRITICAL
Conflicts
0

CVE-2026-21622

Insufficient Session Expiration vulnerability in hexpm hexpm/hexpm ('Elixir.Hexpm.Accounts.PasswordReset' module) allows Account Takeover. Password reset tokens generated via the "Reset your password" flow do not expire. When a user requests a password reset, Hex sends an email containing a reset link with a token. This token remains valid indefinitely until used. There is no time-based expiration enforced. If a user's historical emails are exposed through a data breach (e.g., a leaked mailbox

PUBLISHED
Vendor
hexpm, hexpm
Product
hexpm, hex.pm
Provider severity
CRITICAL
Conflicts
1

CVE-2026-21621

Incorrect Authorization vulnerability in hexpm hexpm/hexpm ('Elixir.HexpmWeb.API.OAuthController' module) allows Privilege Escalation. An API key created with read-only permissions (domain: "api", resource: "read") can be escalated to full write access under specific conditions. When exchanging a read-only API key via the OAuth client_credentials grant, the resource qualifier is ignored. The resulting JWT receives the broad "api" scope instead of the expected "api:read" scope. This token is th

PUBLISHED
Vendor
hexpm, hexpm
Product
hexpm, hex.pm
Provider severity
HIGH
Conflicts
1

CVE-2026-21620

Relative Path Traversal, Improper Isolation or Compartmentalization vulnerability in erlang otp erlang/otp (tftp_file modules), erlang otp inets (tftp_file modules), erlang otp tftp (tftp_file modules) allows Relative Path Traversal. This vulnerability is associated with program files lib/tftp/src/tftp_file.erl, src/tftp_file.erl. This issue affects OTP from OTP 17.0 before OTP 28.3.2, OTP 27.3.4.8 and OTP 26.2.5.17, corresponding to tftp from 1.0 before 1.2.4, 1.2.2.1 and 1.1.1.1; also inets f

PUBLISHED
Vendor
Erlang, Erlang, Erlang
Product
OTP, OTP, OTP
Provider severity
LOW
Conflicts
1

CVE-2026-2162

A vulnerability was determined in itsourcecode News Portal Project 1.0. This affects an unknown part of the file /admin/aboutus.php. This manipulation of the argument pagetitle causes sql injection. The attack may be initiated remotely. The exploit has been publicly disclosed and may be utilized.

PUBLISHED
Vendor
itsourcecode
Product
News Portal Project
Provider severity
MEDIUM
Conflicts
2

CVE-2026-21619

Uncontrolled Resource Consumption, Deserialization of Untrusted Data vulnerability in hexpm hex_core (hex_api modules), hexpm hex (mix_hex_api modules), erlang rebar3 (r3_hex_api modules) allows Object Injection, Excessive Allocation. This vulnerability is associated with program files src/hex_api.erl, src/mix_hex_api.erl, apps/rebar/src/vendored/r3_hex_api.erl and program routines hex_core:request/4, mix_hex_api:request/4, r3_hex_api:request/4. This issue affects hex_core: from 0.1.0 before 0.

PUBLISHED
Vendor
erlang, hexpm, hexpm, hexpm, erlang, hexpm
Product
rebar3, hex_core, hex_core, hex, rebar3, hex
Provider severity
LOW
Conflicts
2

CVE-2026-21618

Improper Neutralization of Input During Web Page Generation (XSS or 'Cross-site Scripting') vulnerability in hexpm hexpm/hexpm ('Elixir.HexpmWeb.SharedAuthorizationView' modules) allows Cross-Site Scripting (XSS). This vulnerability is associated with program files lib/hexpm_web/views/shared_authorization_view.ex and program routines 'Elixir.HexpmWeb.SharedAuthorizationView':render_grouped_scopes/3. This issue affects hexpm: from 617e44c71f1dd9043870205f371d375c5c4d886d before c692438684ead90c3

PUBLISHED
Vendor
hexpm, hexpm
Product
hexpm, hex.pm
Provider severity
HIGH
Conflicts
1

CVE-2026-2161

A vulnerability was found in itsourcecode Directory Management System 1.0. Affected by this issue is some unknown functionality of the file /admin/forget-password.php. The manipulation of the argument email results in sql injection. The attack can be launched remotely. The exploit has been made public and could be used.

PUBLISHED
Vendor
itsourcecode
Product
Directory Management System
Provider severity
HIGH, MEDIUM
Conflicts
2

CVE-2026-2160

A vulnerability has been found in SourceCodester Simple Responsive Tourism Website 1.0. Affected by this vulnerability is an unknown functionality of the file /tourism/classes/Master.php?f=save_package. The manipulation of the argument Title leads to cross site scripting. The attack can be initiated remotely. The exploit has been disclosed to the public and may be used.

PUBLISHED
Vendor
SourceCodester
Product
Simple Responsive Tourism Website
Provider severity
MEDIUM
Conflicts
2

CVE-2026-2159

A flaw has been found in SourceCodester Simple Responsive Tourism Website 1.0. Affected is an unknown function of the file /tourism/classes/Master.php?f=register of the component Registration. Executing a manipulation of the argument firstname/lastname/username can lead to cross site scripting. It is possible to launch the attack remotely. The exploit has been published and may be used.

PUBLISHED
Vendor
SourceCodester
Product
Simple Responsive Tourism Website
Provider severity
MEDIUM
Conflicts
2

CVE-2026-2158

A vulnerability was detected in code-projects Student Web Portal 1.0. This impacts an unknown function of the file /check_user.php. Performing a manipulation of the argument Username results in sql injection. It is possible to initiate the attack remotely.

PUBLISHED
Vendor
code-projects
Product
Student Web Portal
Provider severity
HIGH, MEDIUM
Conflicts
2

CVE-2026-21579

This High severity Information Disclosure vulnerability was introduced in versions 7.17.0, 7.19.0, 8.5.0, 8.9.0, 9.0.1, 9.1.0, 9.2.0, 10.0.2, 10.1.0, and 10.2.0 of Confluence Data Center. This Information Disclosure vulnerability, with a CVSS Score of 8.2, allows an unauthenticated attacker to view sensitive information via an Information Disclosure vulnerability. Atlassian recommends that Confluence Data Center customers upgrade to latest version, if you are unable to do so, upgrade your

PUBLISHED
Vendor
Atlassian
Product
Confluence Data Center
Provider severity
HIGH
Conflicts
1

CVE-2026-21577

This High severity DoS (Denial of Service) vulnerability was introduced in versions 9.0.1, 9.1.0, 9.2.0, 9.3.1, 9.4.0, 9.5.1, 10.0.2, 10.1.0 and 10.2.0 of Confluence Data Center. This DoS (Denial of Service) vulnerability, with a CVSS Score of 7.1, allows an authenticated attacker to cause a resource to be unavailable for its intended users by temporarily or indefinitely disrupting services of a host connected to a network. Atlassian recommends that Confluence Data Center customers upgrade

PUBLISHED
Vendor
Atlassian
Product
Confluence Data Center
Provider severity
HIGH
Conflicts
1

CVE-2026-21575

This High severity RCE (Remote Code Execution) vulnerability was introduced in version 3.4.11 of Sourcetree for Mac and Sourcetree for Windows. This RCE (Remote Code Execution) vulnerability, with a CVSS Score of 7.1, allows an authenticated attacker to execute arbitrary code which has high impact to confidentiality, high impact to integrity, high impact to availability, and requires user interaction. Atlassian recommends that Sourcetree for Mac and Sourcetree for Windows customers upgra

PUBLISHED
Vendor
Atlassian
Product
Sourcetree for Mac
Provider severity
HIGH
Conflicts
1

CVE-2026-21571

This Critical severity OS Command Injection vulnerability was introduced in versions 9.6.0, 10.0.0, 10.1.0, 10.2.0, 11.0.0, 11.1.0, 12.0.0, and 12.1.0 of Bamboo Data Center.   This RCE (Remote Code Execution) vulnerability, with a CVSS Score of 9.4 and a CVSS Vector of CVSS:4.0/AV:N/AC:L/AT:N/PR:L/UI:N/VC:H/VI:H/VA:H/SC:H/SI:H/SA:H allows an authenticated attacker to execute commands on the remote system, which has high impact to confidentiality, high impact to integrity, high impact to ava

PUBLISHED
Vendor
Atlassian
Product
Bamboo Data Center
Provider severity
CRITICAL
Conflicts
1

CVE-2026-21570

This High severity RCE (Remote Code Execution)  vulnerability was introduced in versions 9.6.0, 10.0.0, 10.1.0, 10.2.0, 11.0.0, 11.1.0, 12.0.0, and 12.1.0 of Bamboo Data Center. This RCE (Remote Code Execution) vulnerability, with a CVSS Score of 8.6, allows an authenticated attacker to execute malicious code on the remote system. Atlassian recommends that Bamboo Data Center customers upgrade to latest version, if you are unable to do so, upgrade your instance to one of the specified suppo

PUBLISHED
Vendor
Atlassian
Product
Bamboo Data Center
Provider severity
HIGH
Conflicts
1

CVE-2026-2157

A security vulnerability has been detected in D-Link DIR-823X 250416. This affects the function sub_4175CC of the file /goform/set_static_route_table. Such manipulation of the argument interface/destip/netmask/gateway/metric leads to os command injection. The attack may be performed from remote. The exploit has been disclosed publicly and may be used.

PUBLISHED
Vendor
D-Link
Product
DIR-823X
Provider severity
HIGH
Conflicts
2

CVE-2026-21569

This High severity XXE (XML External Entity Injection) vulnerability was introduced in version 7.1.0 of Crowd Data Center and Server. This XXE (XML External Entity Injection) vulnerability, with a CVSS Score of 7.9, allows an authenticated attacker to access local and remote content which has high impact to confidentiality, low impact to integrity, high impact to availability, and requires no user interaction. Atlassian recommends that Crowd Data Center and Server customers upgrade to la

PUBLISHED
Vendor
Atlassian
Product
Crowd Data Center
Provider severity
HIGH
Conflicts
1

CVE-2026-2156

A weakness has been identified in code-projects Online Student Management System 1.0. The impacted element is an unknown function of the file /admin/announcement/index.php?view=add of the component Announcement Management Module. This manipulation causes cross site scripting. The attack is possible to be carried out remotely. The exploit has been made available to the public and could be used for attacks.

PUBLISHED
Vendor
code-projects
Product
Online Student Management System
Provider severity
LOW, MEDIUM
Conflicts
2

CVE-2026-21555

In modem, there is a possible improper input validation. This could lead to remote denial of service with no additional execution privileges needed

PUBLISHED
Vendor
Unisoc (Shanghai) Technologies Co., Ltd.
Product
UDX710
Provider severity
HIGH
Conflicts
1

CVE-2026-21554

In modem, there is a possible improper input validation. This could lead to remote denial of service with no additional execution privileges needed

PUBLISHED
Vendor
Unisoc (Shanghai) Technologies Co., Ltd.
Product
UDX710
Provider severity
HIGH
Conflicts
1

CVE-2026-21553

In modem, there is a possible improper input validation. This could lead to remote denial of service with no additional execution privileges needed

PUBLISHED
Vendor
Unisoc (Shanghai) Technologies Co., Ltd.
Product
T8100/T9100/T8200/T8300
Provider severity
HIGH
Conflicts
1

CVE-2026-21552

In modem, there is a possible improper input validation. This could lead to remote denial of service with no additional execution privileges needed

PUBLISHED
Vendor
Unisoc (Shanghai) Technologies Co., Ltd.
Product
T8100/T9100/T8200/T8300
Provider severity
HIGH
Conflicts
1

CVE-2026-21551

In modem, there is a possible improper input validation. This could lead to remote denial of service with no additional execution privileges needed

PUBLISHED
Vendor
Unisoc (Shanghai) Technologies Co., Ltd.
Product
T8100/T9100/T8200/T8300
Provider severity
HIGH
Conflicts
1

CVE-2026-21550

In modem, there is a possible improper input validation. This could lead to remote denial of service with no additional execution privileges needed

PUBLISHED
Vendor
Unisoc (Shanghai) Technologies Co., Ltd.
Product
T8100/T9100/T8200/T8300
Provider severity
HIGH
Conflicts
1

CVE-2026-2155

A security flaw has been discovered in D-Link DIR-823X 250416. The affected element is the function sub_4208A0 of the file /goform/set_dmz of the component Configuration Handler. The manipulation of the argument dmz_host/dmz_enable results in os command injection. The attack can be executed remotely. The exploit has been released to the public and may be used for attacks.

PUBLISHED
Vendor
D-Link
Product
DIR-823X
Provider severity
HIGH
Conflicts
2