Vulnerability index

Browse CVEs

930 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Filtering by weakness Incorrect Privilege AssignmentCWE-266 × clear
MEDIUM 5.0 CVE-2026-13591 A weakness has been identified in DeepMyst Mysti 0.4.0. Affected is the function _isTrackedConversation of the file src/managers/ChannelBridge.ts of … Patch available Fix from $1,6002026-06-29 HIGH 7.3 CVE-2026-13568 A weakness has been identified in SourceCodester Inventory Management System 1.0. This vulnerability affects unknown code of the file /api/users_hand… Mitigation only Fix from $1,9502026-06-29 HIGH 7.3 CVE-2026-22078 Because O+ Connect's IPC service does not authenticate clients, external applications can escalate privileges and perform sensitive actions through t… Mitigation only Fix from $1,9502026-06-29 MEDIUM 6.3 CVE-2026-13544 A flaw has been found in Feehi CMS up to 2.1.1. Affected by this issue is some unknown functionality of the file /api/users of the component API. Thi… Mitigation only Fix from $1,6002026-06-29 MEDIUM 5.6 CVE-2026-13524 A security vulnerability has been detected in CherryHQ cherry-studio up to 1.9.6. This vulnerability affects unknown code of the file src/main/servic… Patch available Fix from $1,6002026-06-29 HIGH 7.1 CVE-2026-49413 The Linuxulator determined whether a binary was set-user-ID or set-group-ID by checking the P_SUGID process flag. During execve(2), this flag is not… FreeBSD Mitigation only Fix from $1,9502026-06-27 MEDIUM 6.5 CVE-2026-45259 sigqueue(2) was marked as permitted in capability mode with the introduction of Capsicum in 2011, but the implementation of kern_sigqueue did not inc… FreeBSD Mitigation only Fix from $1,6002026-06-27 CRITICAL 9.8 CVE-2026-56033 Unauthenticated Privilege Escalation in Dokan Pro <= 5.0.4 versions. Mitigation only Fix from $2,3002026-06-26 HIGH 8.8 CVE-2026-56010 Subscriber Privilege Escalation in Abandoned Cart Pro for WooCommerce <= 10.4.0 versions. Mitigation only Fix from $1,9502026-06-26 CRITICAL 9.8 CVE-2026-56028 Unauthenticated Privilege Escalation in Easy Elements for Elementor &#8211; Addons &amp; Website Templates <= 1.4.9 versions. Mitigation only Fix from $2,3002026-06-26 CRITICAL 9.8 CVE-2026-56030 Unauthenticated Privilege Escalation in Paytium <= 5.0.2 versions. Mitigation only Fix from $2,3002026-06-26 HIGH 8.8 CVE-2026-56008 Contributor Privilege Escalation in Fusion Builder <= 3.15.4 versions. Mitigation only Fix from $1,9502026-06-26 MEDIUM 6.5 CVE-2026-56251 Capgo before 12.128.2 contains a broken row level security policy in the org_users table that allows authenticated users to elevate privileges from a… Mitigation only Fix from $1,6002026-06-21 HIGH 7.8 CVE-2026-12786 A vulnerability has been found in Ezbsystems UltraISO Premium Edition up to 9.76. Affected by this issue is some unknown functionality in the library… Mitigation only Fix from $1,9502026-06-21 HIGH 7.8 CVE-2026-12782 A security flaw has been discovered in EaseUS Partition Master up to 14.5. The impacted element is an unknown function in the library EUEDKEPM.sys of… Mitigation only Fix from $1,9502026-06-21 HIGH 7.8 CVE-2026-12784 A weakness has been identified in IM-Magic Partition Resizer up to 7.9.0. This affects an unknown function in the library MDA_NTDRV.sys of the compon… Mitigation only Fix from $1,9502026-06-21 HIGH 7.8 CVE-2026-12781 A vulnerability was identified in EaseUS Partition Master up to 14.5. The affected element is an unknown function in the library epmntdrv.sys of the … Mitigation only Fix from $1,9502026-06-21 HIGH 7.8 CVE-2026-12778 A vulnerability has been found in AOMEI Partition Assistant up to 10.10.1. This vulnerability affects unknown code in the library ampa10.sys of the c… Mitigation only Fix from $1,9502026-06-21 HIGH 7.8 CVE-2026-12779 A vulnerability was found in AOMEI Dynamic Disk Manager up to 10.10.1. This issue affects some unknown processing in the library ddmdrv.sys of the co… Mitigation only Fix from $1,9502026-06-21 HIGH 7.8 CVE-2026-12780 A vulnerability was determined in AOMEI Backupper up to 8.3.0. Impacted is an unknown function in the library amwrtdrv.sys of the component Kernel Dr… Mitigation only Fix from $1,9502026-06-21 HIGH 7.5 CVE-2026-12771 A vulnerability was identified in BerriAI litellm up to 1.82.2. This affects an unknown function of the file litellm/proxy/auth/user_api_key_auth.py … Litellm 1.82.3+ Fix from $1,9502026-06-21 HIGH 8.8 CVE-2026-12770 A vulnerability was determined in BerriAI litellm up to 1.63.1. The impacted element is an unknown function of the file litellm/proxy/management_endp… Litellm 1.63.2+ Fix from $1,9502026-06-21 HIGH 7.3 CVE-2026-12529 A security vulnerability has been detected in SourceCodester CET Automated Grading System with AI Predictive Analytics 1.0. Affected is an unknown fu… Mitigation only Fix from $1,9502026-06-17 HIGH 8.8 CVE-2026-54805 Subscriber Privilege Escalation in Falang multilanguage <= 1.4.2 versions. Mitigation only Fix from $1,9502026-06-17 CRITICAL 9.8 CVE-2026-54807 Unauthenticated Privilege Escalation in Registration Form for WooCommerce <= 1.0.9 versions. Mitigation only Fix from $2,3002026-06-17 MEDIUM 6.8 CVE-2026-54196 Subscriber Privilege Escalation in JetFormBuilder <= 3.6.1 versions. Mitigation only Fix from $1,6002026-06-17 CRITICAL 9.8 CVE-2026-49058 Unauthenticated Privilege Escalation in LoginPress Pro <= 6.2.2 versions. Mitigation only Fix from $2,3002026-06-17 HIGH 7.6 CVE-2026-39546 Subscriber Privilege Escalation in MultiLoca <= 4.2.15 versions. Mitigation only Fix from $1,9502026-06-17 CRITICAL 9.8 CVE-2026-27395 Unauthenticated Privilege Escalation in Support Board < 3.8.9 versions. Mitigation only Fix from $2,3002026-06-17 CRITICAL 9.8 CVE-2025-69179 Unauthenticated Privilege Escalation in Support Ticket Management System <= 1.9 versions. Mitigation only Fix from $2,3002026-06-17