CVE search
369,574 resultsCVE-2026-12167HIGHCVE-2026-12167EPSS 0.1%CVE-2026-8079HIGHUnintended limited set of actions with elevated privileges may be performed during PDF generation in Progress FlowmonEPSS 0.2%CVE-2026-9272HIGHPossibility of unintended database operations when querying data related to detected anomalies in Progress Flowmon ADSEPSS 0.2%CVE-2026-53358HIGHBluetooth: L2CAP: use chan timer to close channels in cleanup_listen()EPSS 0.2%CVE-2026-53357HIGHBluetooth: fix UAF in l2cap_sock_cleanup_listen() vs l2cap_conn_del()EPSS 0.2%CVE-2026-4767CRITICALImproper Access Control in TR7's WAF-ASPEPSS 0.3%CVE-2026-4772MEDIUMStored XSS in TR7's WAF-ASPEPSS 0.1%CVE-2026-4770MEDIUMDOM-Based XSS in TR7's WAF-ASPEPSS 0.1%CVE-2026-5524CRITICALDivi Form Builder <= 5.1.8 - Unauthenticated Arbitrary File Upload Leading to Remote Code Execution via 'acceptFileTypes' ParameterEPSS 0.5%CVE-2026-58653MEDIUMPraisonAI - Authorization Bypass via Unvalidated project_id in Issue Create/UpdateEPSS 0.2%CVE-2026-58652HIGHluci-app-travelmate - Arbitrary Command Execution via UCI Script ParameterEPSS 0.5%CVE-2026-14449MEDIUMPOST-based reflected XSS via the thanks parameter in form componentsEPSS 0.3%CVE-2026-57760MEDIUMWordPress Sendcloud Shipping plugin <= 1.0.29 - Broken Access Control vulnerabilityEPSS 0.2%CVE-2026-57678HIGHWordPress Slider Revolution plugin 7.0.0-7.0.16 - Cross Site Scripting (XSS) vulnerabilityEPSS 0.2%CVE-2026-56037HIGHWordPress Themify Popup plugin <= 1.4.3 - PHP Object Injection vulnerabilityEPSS 0.3%CVE-2026-57766HIGHWordPress WPIDE – File Manager & Code Editor plugin <= 3.5.6 - Cross Site Request Forgery (CSRF) vulnerabilityEPSS 0.1%CVE-2026-57765HIGHWordPress WP EasyCart plugin <= 5.9.0 - SQL Injection vulnerabilityEPSS 0.2%CVE-2026-57764MEDIUMWordPress Surbma | Yoast SEO Breadcrumb Shortcode plugin <= 1.2 - Cross Site Scripting (XSS) vulnerabilityEPSS 0.1%CVE-2026-57763MEDIUMWordPress Structured Content plugin <= 1.7.0 - Cross Site Scripting (XSS) vulnerabilityEPSS 0.1%CVE-2026-57762MEDIUMWordPress Simple URLs plugin <= 151 - Cross Site Scripting (XSS) vulnerabilityEPSS 0.1%