Vulnerability index

Browse CVEs

10,000+ matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

MEDIUM 5.3 CVE-2026-14832 The ShopSmart Loyalty for WooCommerce WordPress plugin through 1.0.0 does not perform any authorization or ownership check on a phone-number lookup e… No fix yet Fix from $4,0002026-08-17 MEDIUM 5.9 CVE-2026-13700 The WooMS WordPress plugin through 9.14 does not validate a user-supplied URL before using it in a server-side request and attaches stored third-part… No fix yet Fix from $4,0002026-08-17 MEDIUM 5.4 CVE-2026-19986 A weakness has been identified in Adblock for Youtube Extension up to 7.2.1 on Chrome. The impacted element is the function updateDynamicRules of the… No fix yet Fix from $4,0002026-08-17 MEDIUM 6.3 CVE-2026-19984 A flaw has been found in jkawamoto mcp-florence2 up to 0.3.13. Affected by this issue is the function get_images of the file src/mcp_florence2/__init… No fix yet Fix from $4,0002026-08-17 HIGH 8.3 CVE-2026-19983 A vulnerability was detected in GL.iNet A1300, AX1800, AXT1800, MT2500, MT3000, MT6000, X3000 and XE3000 4.8.x. This issue affects some unknown proce… No fix yet Fix from $4,9002026-08-17 HIGH 7.4 CVE-2026-19982 A security vulnerability has been detected in GL.iNet BE9300 and MT6000 4.8.x. This vulnerability affects unknown code of the component Firewall-mana… No fix yet Fix from $4,9002026-08-17 HIGH 7.4 CVE-2026-19981 A weakness has been identified in GL.iNet A1300, AX1800, AXT1800, BE1400, BE3600, BE6500, BE9300, BE10000, E5800, MT2500, MT3000, MT3600BE, MT5000, M… No fix yet Fix from $4,9002026-08-17 HIGH 7.4 CVE-2026-19980 A security flaw has been discovered in GL.iNet A1300, AX1800, AXT1800, BE1400, BE3600, BE6500, BE9300, BE10000, E5800, MT2500, MT3000, MT3600BE, MT50… No fix yet Fix from $4,9002026-08-17 HIGH 8.3 CVE-2026-19979 A vulnerability was identified in GL.iNet A1300, AX1800, AXT1800, BE1400, BE3600, BE6500, BE9300, BE10000, E5800, MT2500, MT3000, MT3600BE, MT5000, M… No fix yet Fix from $4,9002026-08-17 MEDIUM 6.6 CVE-2026-19976 A security vulnerability has been detected in COMFAST CF-N1-S 2.6.0.1. Impacted is the function sub_44A968 of the file /cgi-bin/mbox-config?method=SE… No fix yet Fix from $4,0002026-08-17 HIGH 8.5 CVE-2026-50602 A security vulnerability has been identified in Planet9 due to incorrect file permissions assigned to an application executable used by the Planet9 b… No fix yet Fix from $4,9002026-08-17 MEDIUM 6.6 CVE-2026-50601 A security vulnerability has been identified in the Planet9 desktop application where a hardcoded read-only API key permitted unauthorized access to … No fix yet Fix from $4,0002026-08-17 CRITICAL 10.0 CVE-2026-19977 A vulnerability was detected in EFM ipTIME A3004T 14.19.0. The affected element is the function httpcon_check_session_url of the component Session Va… No fix yet Fix from $5,7502026-08-17 MEDIUM 5.6 CVE-2026-19974 A security flaw has been discovered in treefrogframework treefrog-framework up to 2.11.2. This vulnerability affects the function std::strncmp of the… No fix yet Fix from $4,0002026-08-17 MEDIUM 6.3 CVE-2026-19973 A vulnerability was found in itsourcecode Hospital Management System 1.0. Affected by this vulnerability is an unknown functionality of the file /vie… No fix yet Fix from $4,0002026-08-17 MEDIUM 6.3 CVE-2026-19972 A vulnerability has been found in itsourcecode Hospital Management System 1.0. Affected is an unknown function of the file /viewpatient.php. Such man… No fix yet Fix from $4,0002026-08-17 MEDIUM 6.3 CVE-2026-19970 A vulnerability was detected in Open Asset Import Library Assimp 17c12da. This affects the function Assimp::MDLImporter::AddBonesToNodeGraph_3DGS_MDL… No fix yet Fix from $4,0002026-08-17 MEDIUM 5.4 CVE-2026-19969 A security vulnerability has been detected in Open Asset Import Library Assimp 17c12da. The impacted element is the function Assimp::MDLImporter::Gen… No fix yet Fix from $4,0002026-08-17 MEDIUM 6.3 CVE-2026-19967 A security flaw has been discovered in Open Asset Import Library Assimp 17c12da. Impacted is the function Assimp::Compression::decompressBlock of the… No fix yet Fix from $4,0002026-08-17 MEDIUM 5.4 CVE-2026-19966 A vulnerability was identified in CodeCanyon TimeCamp Integration for CRM up to 2.8. This issue affects some unknown processing of the file /clients/… No fix yet Fix from $4,0002026-08-17 MEDIUM 5.5 CVE-2026-19964 A vulnerability was found in Jij-Inc Jij-MCP-Server 0.1.0. This affects the function PythonREPL.run of the file jij_mcp/python_repr.py of the compone… No fix yet Fix from $4,0002026-08-17 HIGH 7.4 CVE-2026-19963 A vulnerability has been found in Edimax EW-7478APC 1.04. Affected by this issue is the function stainfo of the file /goform/stainfo. The manipulatio… No fix yet Fix from $4,9002026-08-17 HIGH 7.4 CVE-2026-19962 A flaw has been found in Edimax EW-7478APC 1.04. Affected by this vulnerability is the function setWAN of the file /goform/setWAN. Executing a manipu… No fix yet Fix from $4,9002026-08-17 CRITICAL 9.9 CVE-2026-19961 A vulnerability was detected in Edimax EW-7478APC 1.04. Affected is the function formWlSiteSurvey of the file /goform/formWlSiteSurvey. Performing a … No fix yet Fix from $5,7502026-08-16 HIGH 7.4 CVE-2026-19960 A security vulnerability has been detected in Edimax EW-7478APC 1.04. This impacts the function formWlbasic of the file /goform/formWlbasic. Such man… No fix yet Fix from $4,9002026-08-16 CRITICAL 9.9 CVE-2026-19959 A weakness has been identified in Edimax EW-7478APC 1.04. This affects the function formWanTcpipSetup of the file /goform/formWanTcpipSetup. This man… No fix yet Fix from $5,7502026-08-16 MEDIUM 6.3 CVE-2026-19958 A security flaw has been discovered in iatsiuk pptr-mcp up to 0.2.7. The impacted element is the function executeCode of the file src/vm-executor.ts … No fix yet Fix from $4,0002026-08-16 MEDIUM 6.3 CVE-2026-19957 A vulnerability was identified in graphlit graphlit-mcp-server 1.0.1. This affects the function fetch of the file src/tools.ts of the component ssrf-… No fix yet Fix from $4,0002026-08-16 MEDIUM 6.1 CVE-2026-74796 OpenTofu before 1.11.7 fails to validate existing symlinks in the provider cache directory during initialization. Attackers can place a malicious sym… No fix yet Fix from $4,0002026-08-16 HIGH 7.5 CVE-2026-74795 Scriban before 6.6.0 contains an uncontrolled recursion vulnerability in its recursive-descent parser. The parser does not enforce a default expressi… No fix yet Fix from $4,9002026-08-16