Vulnerability index

Browse CVEs

10,000+ matching
Filters
Severity

Filters apply as you choose them.

Unclassified HIGH 8.1
CVE-2026-32464

Unauthenticated Local File Inclusion in Theme Test Drive <= 2.9.1 versions.

No fix yet
Fix from $4,900 2026-08-18
Unclassified CRITICAL 9.9
CVE-2026-32463

Contributor Arbitrary File Upload in Sync Post With Other Site <= 1.9.3 versions.

No fix yet
Fix from $5,750 2026-08-18
Unclassified CRITICAL 9.9
CVE-2026-32444

Contributor Remote Code Execution (RCE) in Cwicly <= 1.4.4 versions.

No fix yet
Fix from $5,750 2026-08-18
Unclassified HIGH 7.1
CVE-2026-32333

Unauthenticated Cross Site Scripting (XSS) in Mayosis Core <= 5.4.7 versions.

No fix yet
Fix from $4,900 2026-08-18
Unclassified HIGH 7.5
CVE-2026-28571

Unauthenticated Broken Access Control in FormyChat <= 2.15.7 versions.

No fix yet
Fix from $4,900 2026-08-18
Unclassified HIGH 8.1
CVE-2026-28570

Unauthenticated Local File Inclusion in Vavo Core <= 2.3.0 versions.

No fix yet
Fix from $4,900 2026-08-18
Unclassified HIGH 7.1
CVE-2026-28569

Unauthenticated Cross Site Scripting (XSS) in SSL Zen <= 4.7.43 versions.

No fix yet
Fix from $4,900 2026-08-18
Unclassified HIGH 7.1
CVE-2026-28568

Unauthenticated Cross Site Scripting (XSS) in Quill Forms <= 5.7.1 versions.

No fix yet
Fix from $4,900 2026-08-18
Unclassified HIGH 7.5
CVE-2026-28567

Unauthenticated Broken Access Control in WP Sort Order <= 1.3.5 versions.

No fix yet
Fix from $4,900 2026-08-18
Unclassified CRITICAL 9.6
CVE-2026-28192

Unauthenticated Arbitrary File Upload in Piotnet Addons For Elementor Pro <= 7.1.67 versions.

No fix yet
Fix from $5,750 2026-08-18
Unclassified HIGH 8.8
CVE-2026-28191

Subscriber Privilege Escalation in The Grid <= 2.7.9.1 versions.

No fix yet
Fix from $4,900 2026-08-18
Unclassified HIGH 8.8
CVE-2026-24301

Improper neutralization of special elements used in a command ('command injection') in Microsoft Copilot allows an unauthorized attacker to disclose …

No fix yet
Fix from $4,900 2026-08-18
Unclassified MEDIUM 6.0
CVE-2026-17084

The "stringprep" module didn't process characters from RFC 3454 tables B.2 or B.3 correctly: the latest Unicode codepoint attributes were used inst…

Patch available
Fix from $4,000 2026-08-18
Firefox CRITICAL 10.0
CVE-2026-75874

Sandbox escape in the Remote Settings Client component. This vulnerability was fixed in Firefox 154 and Thunderbird 154.

Fix: 154.0 / 154.0.0+
Fix from $5,750 2026-08-18
Unclassified CRITICAL 9.6
CVE-2026-75783

A security vulnerability has been detected in TRENDnet TEW-WLC100P 12.07b01. Affected by this vulnerability is an unknown functionality of the file /…

No fix yet
Fix from $5,750 2026-08-18
Unclassified HIGH 7.3
CVE-2026-75778

A vulnerability was identified in code-projects Task Management System 1.0. This affects the function Operation::select_with_multiple_condition of th…

No fix yet
Fix from $4,900 2026-08-18
Firefox CRITICAL 9.8
CVE-2026-74989

Internally found bugs present in Thunderbird 153. Some of these bugs showed evidence of memory corruption or another security-relevant defect and we …

Fix unknown
Fix from $5,750 2026-08-18
Firefox CRITICAL 9.8
CVE-2026-74988

Internally found bugs present in Thunderbird ESR 153.0 and Thunderbird 153. Some of these bugs showed evidence of memory corruption or another securi…

Fix unknown
Fix from $5,750 2026-08-18
Unclassified CRITICAL 9.1
CVE-2026-74986

Site isolation issue in the CSS Parsing and Computation component. This vulnerability was fixed in Firefox 154, Firefox ESR 153.1, Thunderbird 154, a…

Fix unknown
Fix from $5,750 2026-08-18
Unclassified CRITICAL 9.8
CVE-2026-74985

Privilege escalation in the Enterprise Policies component. This vulnerability was fixed in Firefox 154, Firefox ESR 153.1, Thunderbird 154, and Thund…

Fix unknown
Fix from $5,750 2026-08-18
Firefox CRITICAL 9.8
CVE-2026-74987

Internally found bugs present in Thunderbird ESR 140.13, Thunderbird ESR 153.0 and Thunderbird 153. Some of these bugs showed evidence of memory corr…

Fix: 140.14.0 / 153.1.0+
Fix from $5,750 2026-08-18
Firefox CRITICAL 9.8
CVE-2026-74990

Internally found bugs present in Thunderbird ESR 140.13, Thunderbird ESR 153.0 and Thunderbird 153. Some of these bugs showed evidence of memory corr…

Fix: 115.39.0 / 140.14.0+
Fix from $5,750 2026-08-18
Unclassified MEDIUM 6.8
CVE-2026-74984

Race condition in the JavaScript Engine component. This vulnerability was fixed in Firefox 154, Firefox ESR 153.1, Thunderbird 154, and Thunderbird 1…

Fix unknown
Fix from $4,000 2026-08-18
Firefox HIGH 8.1
CVE-2026-74983

Mitigation bypass in the Data Loss Prevention component. This vulnerability was fixed in Firefox 154, Firefox ESR 140.14, Firefox ESR 153.1, Thunderb…

Fix: 140.14.0 / 153.1.0+
Fix from $4,900 2026-08-18
Unclassified HIGH 7.5
CVE-2026-74982

Denial-of-service in the Widget component. This vulnerability was fixed in Firefox 154, Firefox ESR 153.1, Thunderbird 154, and Thunderbird 153.1.

Fix unknown
Fix from $4,900 2026-08-18
Unclassified HIGH 8.1
CVE-2026-74981

Site isolation issue in the Audio/Video: Web Codecs component. This vulnerability was fixed in Firefox 154, Firefox ESR 153.1, Thunderbird 154, and T…

Fix unknown
Fix from $4,900 2026-08-18
Unclassified MEDIUM 6.5
CVE-2026-74980

Clickjacking issue in the Downloads component in Firefox for Android. This vulnerability was fixed in Firefox 154.

Fix unknown
Fix from $4,000 2026-08-18
Firefox CRITICAL 9.8
CVE-2026-74979

Mitigation bypass in the Add-ons Manager component. This vulnerability was fixed in Firefox 154, Firefox ESR 153.1, Thunderbird 154, and Thunderbird …

No fix yet
Fix from $5,750 2026-08-18
Unclassified HIGH 8.1
CVE-2026-74978

Clickjacking issue in the Widget component. This vulnerability was fixed in Firefox 154, Firefox ESR 153.1, Thunderbird 154, and Thunderbird 153.1.

No fix yet
Fix from $4,900 2026-08-18
Unclassified HIGH 7.5
CVE-2026-74977

Integer overflow in the Graphics component. This vulnerability was fixed in Firefox 154, Firefox ESR 153.1, Thunderbird 154, and Thunderbird 153.1.

No fix yet
Fix from $4,900 2026-08-18