VYPR

CVEs

383,300 total · page 332 of 7,666

  • CVE-2026-12514MedAug 28, 2026
    risk 0.34cvss 5.3epss 0.00

    The Shared Files WordPress plugin before 1.7.67, shared-files-pro WordPress plugin before 1.7.70 do not perform a capability check in their file-upload handler, which is registered for unauthenticated users and protected only by a nonce that is output on public pages, so an…

  • CVE-2026-12513MedAug 28, 2026
    risk 0.44cvss 6.8epss 0.00

    The Shared Files WordPress plugin before 1.7.67, shared-files-pro WordPress plugin before 1.7.68 do not properly sanitize a file path taken from a frontend file submission and their single-pass traversal filter is bypassable, allowing unauthenticated users to store a path that…

  • CVE-2026-82090CriAug 28, 2026
    risk 0.60cvss —epss 0.00

    Pocket through 8.33.0.0 allows XSS because "Save to Pocket" injects external HTML into the DOM.  JavaScript code can alter the application state via native bridge methods.

  • CVE-2026-82089HigAug 28, 2026
    risk 0.50cvss —epss 0.01

    The wallabag (aka fr.gaulupeau.apps.InThePoche) application through 2.6.0 for Android allows XSS because /api/entries data is loaded into a WebView.

  • CVE-2026-82082CriAug 28, 2026
    risk 0.64cvss 9.8epss 0.02

    NUMail developed by Green-Computing has an OS Command Injection vulnerability. Unauthenticated remote attackers can inject arbitrary OS commands and execute them on the server.

  • CVE-2026-82081MedAug 28, 2026
    risk 0.35cvss 6.4epss 0.00

    wallabag 2 through 2.6.14 allows SSRF because a crafted title or content field is mishandled during PDF export.

  • CVE-2026-77365HigAug 28, 2026
    risk 0.40cvss 7.2epss 0.01

    The Optimole – Optimize Images | Convert WebP & AVIF | CDN & Lazy Load | Image Optimization plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the 'a' (above_fold_images) parameter in all versions up to, and including, 4.2.10 due to insufficient input…

  • CVE-2026-76053HigAug 28, 2026
    risk 0.40cvss 7.2epss 0.01

    The TranslatePress – Translate Multilingual sites with AI Translation plugin for WordPress is vulnerable to Stored Cross-Site Scripting via Comment Noise-Key Injection into HTML Parser in all versions up to, and including, 3.3.3 due to insufficient input sanitization and…

  • CVE-2026-3129MedAug 28, 2026
    risk 0.35cvss 6.4epss 0.00

    The LiteSpeed Cache plugin for WordPress is vulnerable to Stored Cross-Site Scripting via crafted `` tag attributes in all versions up to, and including, 7.7. This is due to a flawed regular expression that is used to strip `width` and `height` attributes from images when…

  • CVE-2026-18983HigAug 28, 2026
    risk 0.42cvss 7.5epss 0.01

    The One User Avatar | User Profile Picture plugin for WordPress is vulnerable to Stored Cross-Site Scripting in all versions up to, and including, 2.5.4 via the wpua_action_process_option_update function. This is due to insufficient file type validation in wp_handle_upload()…

  • CVE-2026-18978HigAug 28, 2026
    risk 0.40cvss 7.2epss 0.00

    The LiteSpeed Cache plugin for WordPress is vulnerable to Stored Cross-Site Scripting via Comment Content in all versions up to, and including, 7.8.1 due to insufficient input sanitization and output escaping. This makes it possible for unauthenticated attackers to inject…

  • CVE-2026-18324HigAug 28, 2026
    risk 0.40cvss 7.2epss 0.00

    The Forminator Forms – Contact Form, Payment Form & Custom Form Builder plugin for WordPress is vulnerable to Stored Cross-Site Scripting via Rich-Text Textarea Field in all versions up to, and including, 1.57.0.1 due to insufficient input sanitization and output escaping.…

  • CVE-2026-16759MedAug 28, 2026
    risk 0.35cvss 6.5epss 0.01

    The Tutor LMS – eLearning and online course solution plugin for WordPress is vulnerable to Remote Code Execution limited to zero-argument function invocation in all versions up to, and including, 4.0.5 via the tutor_course_filter_ajax AJAX action. This is due to missing…

  • CVE-2026-16654MedAug 28, 2026
    risk 0.42cvss 6.4epss 0.00

    The Avada (Fusion) Builder plugin for WordPress is vulnerable to Stored Cross-Site Scripting via 'size' Shortcode Attribute in all versions up to, and including, 3.15.6 due to insufficient input sanitization and output escaping. This makes it possible for authenticated…

  • CVE-2026-15798MedAug 28, 2026
    risk 0.35cvss 6.4epss 0.00

    The Smart Slider 3 plugin for WordPress is vulnerable to Stored Cross-Site Scripting via 'slider' Block Attribute in all versions up to, and including, 3.5.1.38 due to insufficient input sanitization and output escaping. This makes it possible for authenticated attackers, with…

  • CVE-2026-78618MedAug 28, 2026
    risk 0.45cvss —epss 0.00

    A business logic flaw in WatchGuard Dimension allows an authenticated administrator to trigger multiple backend operations within a single logical flow by sending a specially crafted request.

  • CVE-2026-78617MedAug 28, 2026
    risk 0.41cvss —epss 0.00

    WatchGuard Dimension's web login endpoint does not enforce effective rate-limiting or account lockout by default allowing a remote attacker to perform automated password guessing against user accounts. If the account lockout setting is enabled, brute-force attempts are blocked…

  • CVE-2026-78616MedAug 28, 2026
    risk 0.31cvss —epss 0.00

    A Stored Cross-Site Scripting (XSS) vulnerability in WatchGuard Dimension's Trusted CA certificate configuration allows an authenticated administrator to execute arbitrary JavaScript in another authenticated administrator's web browser by saving a carefully crafted certificate.

  • CVE-2026-78615MedAug 28, 2026
    risk 0.30cvss —epss 0.00

    A Reflected Cross-Site Scripting (XSS) vulnerability in WatchGuard Dimension's report detail page allows an attacker to execute arbitrary JavaScript in a authenticated user's browser with a specially crafted URL.

  • CVE-2026-78614HigAug 28, 2026
    risk 0.56cvss —epss 0.01

    WatchGuard Dimension contains an authenticated SQL injection vulnerability in the audit report feature which allows an authenticated user with report administration permissions gain arbitrary command execution as the Dimension WebUI process user by sending specially crafted…

  • CVE-2026-78613HigAug 28, 2026
    risk 0.56cvss —epss 0.01

    WatchGuard Dimension contains an authenticated SQL injection vulnerability in the log viewer feature which allows an authenticated user with report administration permissions gain arbitrary command execution as the Dimension WebUI process user by sending specially crafted…

  • CVE-2026-78612HigAug 28, 2026
    risk 0.56cvss —epss 0.01

    WatchGuard Dimension contains an authenticated SQL injection vulnerability in the scheduled report feature which allows an authenticated user with report administration permissions gain arbitrary command execution as the Dimension WebUI process user by sending specially crafted…

  • CVE-2026-78610HigAug 28, 2026
    risk 0.55cvss —epss 0.00

    WatchGuard Dimension's Web UI exposes an administrator passphrase change action that lacks CSRF protection. An attacker who can induce an authenticated global administrator's browser to visit a crafted link or page can change that administrator's passphrase to an attacker-chosen…

  • CVE-2026-78500MedAug 28, 2026
    risk 0.33cvss —epss 0.00

    A blind server-side request forgery (SSRF) vulnerability WatchGuard Dimension Database Server Test configuration allows an authenticated privileged attacker to enumerate exposed network services on adjacent network systems.

  • CVE-2026-78499MedAug 28, 2026
    risk 0.33cvss —epss 0.00

    A server-side request forgery (SSRF) vulnerability WatchGuard Dimension FTP Server Test configuration allows an authenticated privileged attacker to enumerate exposed network services on adjacent network systems.

  • CVE-2026-78498MedAug 28, 2026
    risk 0.33cvss —epss 0.00

    A server-side request forgery (SSRF) vulnerability WatchGuard Dimension Email Server Test configuration allows an authenticated privileged attacker to enumerate exposed network services on adjacent network systems.

  • CVE-2026-78495MedAug 28, 2026
    risk 0.34cvss —epss 0.00

    A server-side request forgery (SSRF) vulnerability WatchGuard Dimension Remote Backup Connection Test configuration allows an authenticated privileged attacker to enumerate exposed network services on adjacent network systems.

  • CVE-2026-78195Aug 28, 2026
    risk 0.00cvss —epss 0.00

    Rejected reason: Rejecting as a duplicate of CVE-2026-78047

  • CVE-2026-78174CriAug 28, 2026
    risk 0.60cvss —epss 0.00

    WatchGuard Dimension records unredacted session identifiers for logged-in users in its web UI diagnostic log. A low-privileged Dimension Administrator can retrieve this log and extract a Super Administrator's session token while that administrator is logged in, enabling account…

  • CVE-2026-78103MedAug 28, 2026
    risk 0.33cvss —epss 0.00

    WatchGuard Dimension provides a client-side lock/unlock UI control for management changes. The server-side configuration endpoint does not enforce this lock/unlock workflow state, allowing an authenticated administrator to submit configuration changes directly to the endpoint…

  • CVE-2026-78047MedAug 28, 2026
    risk 0.33cvss —epss 0.00

    A stored cross-site scripting (XSS) vulnerability in WatchGuard Dimension's task scheduling feature allows a low-privileged authenticated administrator to inject arbitrary HTML/JavaScript into these fields, which then executes in the browser session of any other user.

  • CVE-2026-78011HigAug 28, 2026
    risk 0.57cvss —epss 0.01

    An integer underflow vulnerability in the WatchGuard Fireware OS iked process allows a remote unauthenticated attacker to create a Denial of Service (DoS) condition in VPN processing by sending specially crafted network traffic.

  • CVE-2026-78010HigAug 28, 2026
    risk 0.57cvss —epss 0.01

    A stack-based buffer overflow vulnerability in the WatchGuard Fireware OS iked process iallows a remote unauthenticated attacker to create a Denial of Service (DoS) condition in VPN processing by sending specially crafted network traffic.

  • CVE-2026-78009HigAug 28, 2026
    risk 0.57cvss —epss 0.01

    An out-of-bounds read vulnerability in the WatchGuard Fireware OS iked process allows a remote unauthenticated attacker to create a Denial of Service (DoS) condition in VPN processing by sending specially crafted network traffic.

  • CVE-2026-78008HigAug 28, 2026
    risk 0.56cvss —epss 0.01

    A buffer overflow vulnerability in the WatchGuard Fireware OS Management Web UI allows an authenticated administrator with network access to cause a denial of service (DoS) condition or potentially execute arbitrary code by sending specially crafted network traffic.

  • CVE-2026-61802MedAug 28, 2026
    risk 0.35cvss 6.5epss 0.01

    Wazuh is an open-source security platform providing unified XDR and SIEM protection for endpoints and cloud workloads. In versions 4.14.0 through 4.14.6, a low-privilege API user can read the cleartext cluster key from a configuration endpoint that fails to redact it. The REST…

  • CVE-2026-61800CriAug 28, 2026
    risk 0.52cvss 9.1epss 0.01

    Wazuh is an open-source security platform providing unified XDR and SIEM protection for endpoints and cloud workloads. In versions 4.4.0 through 4.14.6, a party holding the cluster key can write, overwrite, or delete arbitrary files under /var/ossec on worker nodes, leading to…

  • CVE-2026-38822HigAug 28, 2026
    risk 0.42cvss 7.6epss 0.02

    In openNDS before 11.0.0, the client_params.sh script, invoked by the openNDS daemon to serve the authenticated client status page, is vulnerable to OS command injection through crafted HTTP GET query parameter keys. An authenticated captive portal user can inject arbitrary…

  • CVE-2026-38821HigAug 28, 2026
    risk 0.39cvss 7.1epss 0.00

    A heap-based buffer overflow vulnerability exists in openNDS before 11.0.0 that allows an unauthenticated attacker on the captive portal network to crash the openNDS daemon (denial of service) and potentially achieve remote code execution. This is in http_microhttpd.c.

  • CVE-2026-38820HigAug 28, 2026
    risk 0.47cvss 8.3epss 0.03

    openNDS before 11.0.0 is susceptible to unauthenticated OS command execution via shell command injection through the fas query parameter on the /opennds_preauth/ endpoint because of libopennds.sh.

  • CVE-2026-38819MedAug 28, 2026
    risk 0.27cvss 5.3epss 0.00

    Multiple memory leaks in openNDS before 11.0.0 allow an unauthenticated attacker on the captive portal network to exhaust all available memory on the device within minutes.

  • CVE-2026-19318CriAug 28, 2026
    risk 0.60cvss —epss 0.00

    A stack-based buffer overflow vulnerability in the WatchGuard Fireware OS iked process allows a remote unauthenticated attacker to execute arbitrary code by sending specially crafted network traffic.

  • CVE-2026-19317HigAug 28, 2026
    risk 0.57cvss —epss 0.00

    An out-of-bounds read vulnerability in the WatchGuard Fireware OS iked process allows a remote unauthenticated attacker to create a Denial of Service (DoS) condition in VPN processing by sending specially crafted network traffic.

  • CVE-2026-19316HigAug 28, 2026
    risk 0.57cvss —epss 0.00

    A double-free vulnerability in the WatchGuard Fireware OS iked process allows a remote unauthenticated attacker to create a Denial of Service (DoS) condition in VPN processing by sending specially crafted network traffic.

  • CVE-2026-19315CriAug 28, 2026
    risk 0.60cvss —epss 0.00

    A type confusion vulnerability in the iked process of WatchGuard Fireware OS allows a remote unauthenticated attacker to execute arbitrary code by sending specially crafted network traffic.

  • CVE-2026-19314HigAug 28, 2026
    risk 0.57cvss —epss 0.00

    An integer underflow vulnerability in the WatchGuard Fireware OS iked process allows a remote unauthenticated attacker to create a Denial of Service (DoS) condition in VPN processing by sending specially crafted network traffic.

  • CVE-2026-19313CriAug 28, 2026
    risk 0.60cvss —epss 0.00

    An heap overflow vulnerability in the WatchGuard Fireware OS iked process allows a remote unauthenticated attacker to execute arbitrary code by sending specially crafted network traffic.

  • CVE-2026-13108HigAug 28, 2026
    risk 0.57cvss —epss 0.00

    WatchGuard Dimension is susceptible to a denial-of-service condition when an attacker sends a high volume of TCP SYN packets to the log listening service.

  • CVE-2026-13086CriAug 28, 2026
    risk 0.60cvss —epss 0.00

    A stack-based buffer overflow in the epm (Endpoint Protection Manager) service used by the deprecated Mobile Security feature in WatchGuard Fireware OS allows an unauthenticated remote attacker to execute arbitrary code.

  • CVE-2026-82072HigAug 28, 2026
    risk 0.57cvss 8.8epss 0.00

    Out of bounds read in V8 in Google Chrome prior to 151.0.7922.72 allowed a remote attacker to execute arbitrary code inside the sandbox via a crafted HTML page. (Chromium security severity: Medium)