Vulnerability index

Browse CVEs

10,000+ matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

HIGH 7.3 CVE-2026-12912 A flaw was found in libtiff. A remote attacker could exploit this vulnerability by providing a specially crafted PixarLog-compressed TIFF image. This… Mitigation only Fix from $1,9502026-06-29 MEDIUM 5.9 CVE-2026-13742 Honeywell IQ MultiAccess, all versions prior to and including version 28, contain an improper digital signature verification vulnerability. An attack… Mitigation only Fix from $1,6002026-06-29 HIGH 8.8 CVE-2026-13583 A vulnerability has been found in Edimax EW-7478APC 1.04. Impacted is the function formUSBFolder of the file /goform/formUSBFolder of the component P… Mitigation only Fix from $1,9502026-06-29 HIGH 8.8 CVE-2026-13582 A flaw has been found in Edimax EW-7478APC 1.04. This issue affects the function formUSBAccount of the file /goform/formUSBAccount of the component P… Mitigation only Fix from $1,9502026-06-29 MEDIUM 6.3 CVE-2026-13581 A vulnerability was detected in Edimax EW-7478APC 1.04. This vulnerability affects the function formStaDrvSetup of the file /goform/formStaDrvSetup o… Mitigation only Fix from $1,6002026-06-29 HIGH 8.8 CVE-2026-13580 A security vulnerability has been detected in Edimax EW-7478APC 1.04. This affects the function formQoS of the file /goform/formQoS of the component … Mitigation only Fix from $1,9502026-06-29 MEDIUM 6.5 CVE-2026-13437 Insertion of sensitive information into sent data in the AI Agent job API in Devolutions PowerShell Universal 2026.2.0 allows an authenticated user w… Powershell Universal Mitigation only Fix from $1,6002026-06-29 MEDIUM 6.5 CVE-2026-57341 Unauthenticated Insecure Direct Object References (IDOR) in Colissimo Officiel : Méthodes de livraison pour WooCommerce <= 2.9.0 versions. Mitigation only Fix from $1,6002026-06-29 MEDIUM 6.5 CVE-2026-57340 Unauthenticated Broken Access Control in Japanized For WooCommerce <= 2.9.12 versions. Mitigation only Fix from $1,6002026-06-29 MEDIUM 6.5 CVE-2026-57339 Unauthenticated Broken Access Control in Business Directory <= 6.4.23 versions. Mitigation only Fix from $1,6002026-06-29 HIGH 7.1 CVE-2026-57338 Unauthenticated Cross Site Scripting (XSS) in ARForms <= 7.1.2 versions. Mitigation only Fix from $1,9502026-06-29 HIGH 7.1 CVE-2026-57337 Unauthenticated Cross Site Scripting (XSS) in Landing Page Builder <= 1.5.3.5 versions. Mitigation only Fix from $1,9502026-06-29 HIGH 7.1 CVE-2026-57336 Unauthenticated Cross Site Scripting (XSS) in Jobify <= 4.3.2 versions. Mitigation only Fix from $1,9502026-06-29 MEDIUM 6.5 CVE-2026-57335 Subscriber Broken Access Control in Ads by WPQuads <= 3.0.3 versions. Mitigation only Fix from $1,6002026-06-29 MEDIUM 6.5 CVE-2026-57334 Unauthenticated Broken Access Control in WP User Frontend <= 4.3.7 versions. No fix yet Fix from $1,6002026-06-29 HIGH 7.1 CVE-2026-57333 Unauthenticated Cross Site Scripting (XSS) in Link Whisper Free <= 0.9.4 versions. Mitigation only Fix from $1,9502026-06-29 HIGH 7.1 CVE-2026-57332 Subscriber Broken Access Control in Wallet System for WooCommerce <= 2.7.6 versions. Mitigation only Fix from $1,9502026-06-29 CRITICAL 9.9 CVE-2026-57331 Performer Arbitrary File Deletion in Paid Videochat Turnkey Site <= 7.4.8 versions. Mitigation only Fix from $2,3002026-06-29 MEDIUM 6.5 CVE-2026-57330 Subscriber Cross Site Scripting (XSS) in MasterStudy LMS <= 3.7.27 versions. Mitigation only Fix from $1,6002026-06-29 MEDIUM 6.5 CVE-2026-57329 Subscriber Cross Site Scripting (XSS) in WooCommerce Designer Pro <= 1.9.34 versions. Mitigation only Fix from $1,6002026-06-29 MEDIUM 6.5 CVE-2026-57328 Subscriber Cross Site Scripting (XSS) in Business Directory <= 6.4.22 versions. Mitigation only Fix from $1,6002026-06-29 MEDIUM 6.3 CVE-2026-57327 Subscriber Broken Access Control in MainWP <= 6.1.1 versions. Mitigation only Fix from $1,6002026-06-29 MEDIUM 6.1 CVE-2026-57326 Unauthenticated Cross Site Scripting (XSS) in Business Directory <= 6.4.22 versions. Mitigation only Fix from $1,6002026-06-29 HIGH 7.1 CVE-2026-57320 Unauthenticated Cross Site Scripting (XSS) in BEAR <= 1.1.8 versions. Mitigation only Fix from $1,9502026-06-29 HIGH 7.5 CVE-2026-55844 Home Assistant is open source home automation software that puts local control and privacy first. Prior to 2025.5.0, The iOS companion app ignores th… Mitigation only Fix from $1,9502026-06-29 MEDIUM 6.3 CVE-2026-13579 A weakness has been identified in itsourcecode Hospital Management System 1.0. Affected by this issue is some unknown functionality of the file /pati… Mitigation only Fix from $1,6002026-06-29 MEDIUM 6.3 CVE-2026-13578 A security flaw has been discovered in itsourcecode Hospital Management System 1.0. Affected by this vulnerability is an unknown functionality of the… Mitigation only Fix from $1,6002026-06-29 MEDIUM 6.3 CVE-2026-13572 A vulnerability has been found in itsourcecode Hospital Management System 1.0. The impacted element is an unknown function of the file /insertbilling… Mitigation only Fix from $1,6002026-06-29 MEDIUM 5.3 CVE-2026-13571 A flaw has been found in SourceCodester Simple Food Ordering System 1.0. The affected element is an unknown function of the file /cart.php. Executing… Mitigation only Fix from $1,6002026-06-29 HIGH 7.1 CVE-2026-54371 attr before version 2.6.0 contains a symlink traversal vulnerability in the getfattr and setfattr utilities that allows local attackers to escalate p… Mitigation only Fix from $1,9502026-06-29