VYPR

CVEs

384,125 total · page 402 of 7,683

  • CVE-2026-47359HigAug 21, 2026
    risk 0.57cvss 8.8epss 0.02

    Improper Neutralization of Special Elements used in an OS Command ('OS Command Injection') vulnerability in Apache CloudStack's NAS backup provider plugin. The addBackupRepository API (available since 4.20.0.0) and updateBackupRepository API (introduced in 4.22.0.0) accept…

  • CVE-2026-77264CriAug 21, 2026
    risk 0.64cvss 9.8epss 0.01

    The Automation Web Platform – Notifications and OTP for WooCommerce, Advanced Country Code plugin for WordPress is vulnerable to Authentication Bypass in versions up to, and including, 4.8.6. This is due to the handle_email_otp_return() function returning the secret magic…

  • CVE-2026-73537MedAug 21, 2026
    risk 0.31cvss 4.7epss 0.00

    Cross-site scripting vulnerability exists in Miraikan Assist App. If this vulnerability is exploited, an arbitrary script may be executed in the browser component (WebView) running on the affected product, resulting in the displayed content being altered.

  • CVE-2026-19441MedAug 21, 2026
    risk 0.34cvss 5.3epss 0.00

    Missing authentication for critical function vulnerability in IKAS Technology Inc. Rush allows Fake the Source of Data. This issue affects Rush: through 21082026.  NOTE: The vendor was contacted and it was learned that the product is not supported.

  • CVE-2026-16323HigAug 21, 2026
    risk 0.49cvss 7.5epss 0.01

    Execution after redirect (EAR) vulnerability in FuyaWeb Internet and Informatics Services ArchitectPanel Web Admin Panel allows Authentication Bypass. This issue affects ArchitectPanel Web Admin Panel: through 28072026.

  • CVE-2026-75796HigAug 21, 2026
    risk 0.47cvss 7.2epss 0.00

    The AI Engine WordPress plugin before 3.6.1 does not verify that the requesting user is authorized to act on the targeted account before performing privileged user management operations, allowing users with the Administrator role on a Multisite sub-site to take over any account…

  • CVE-2026-19435LowAug 21, 2026
    risk 0.18cvss 2.7epss 0.00

    The Duplicate Post WordPress plugin before 1.5.6 does not check the user's capabilities before returning post data, allowing users with a delegated role to read the content, metadata and passwords of posts they are not allowed to access, including other users' private and draft…

  • CVE-2026-19085LowAug 21, 2026
    risk 0.18cvss 2.7epss 0.00

    The Duplicate Post WordPress plugin before 1.5.6 does not check that a user may read the content of a post before duplicating it, allowing users with a delegated role to republish another user's password-protected post as publicly readable.

  • CVE-2026-18781HigAug 21, 2026
    risk 0.53cvss 8.1epss 0.01

    The Drag and Drop Multiple File Upload for Contact Form 7 WordPress plugin before 1.3.9.9 does not validate the final name of an uploaded file after stripping characters from it, allowing unauthenticated users to defeat its file type restrictions and execute arbitrary code on…

  • CVE-2026-16962MedAug 21, 2026
    risk 0.34cvss 5.3epss 0.00

    The Tamara Checkout WordPress plugin through 1.9.9.20 does not verify the order key, a nonce, or any capability on its public payment cancel/fail return URLs, changing a WooCommerce order's status based solely on an attacker-supplied numeric order id, so an unauthenticated…

  • CVE-2026-16959MedAug 21, 2026
    risk 0.44cvss 6.8epss 0.00

    The Media Library Assistant WordPress plugin before 3.40 does not validate a search parameter before concatenating it into a SQL query in one of its media-library query handlers, allowing users with the Author role to perform SQL injection.

  • CVE-2026-16577LowAug 21, 2026
    risk 0.18cvss 2.7epss 0.00

    The Dokan: AI Powered WooCommerce Multivendor Marketplace Solution WordPress plugin before 5.0.14 does not validate a client-supplied payment amount against the vendor's actual outstanding balance when recording a reverse-withdrawal payment, allowing a vendor to credit their…

  • CVE-2026-16576HigAug 21, 2026
    risk 0.47cvss 7.2epss 0.00

    The Dokan: AI Powered WooCommerce Multivendor Marketplace Solution WordPress plugin before 5.0.14 does not correctly check user capabilities on some of its admin REST API routes, checking only for a WooCommerce management capability instead of the Dokan: AI Powered WooCommerce…

  • CVE-2026-16575MedAug 21, 2026
    risk 0.34cvss 5.3epss 0.00

    The Dokan: AI Powered WooCommerce Multivendor Marketplace Solution WordPress plugin before 5.0.14 does not restrict access to per-vendor commission configuration returned by one of its unauthenticated store REST endpoints, allowing any unauthenticated user to disclose a…

  • CVE-2026-14601MedAug 21, 2026
    risk 0.44cvss 6.8epss 0.00

    The Link Whisper Free WordPress plugin before 0.9.7 does not properly sanitize and escape a parameter before using it in a SQL query, allowing authenticated users with the Editor role or above to perform SQL injection attacks.

  • CVE-2026-14325LowAug 21, 2026
    risk 0.23cvss 3.5epss 0.00

    The Drag and Drop Multiple File Upload for Contact Form 7 WordPress plugin before 1.3.9.9 does not escape one of its settings before using it as an HTML tag name in front-end output, allowing users with administrator access to inject arbitrary web scripts that execute on any…

  • CVE-2026-13736MedAug 21, 2026
    risk 0.34cvss 5.3epss 0.00

    The NewPath WildApricotPress Add-on WordPress plugin through 1.0.0 does not enforce its members-only field privacy on an unauthenticated REST route, allowing anonymous visitors to read member email addresses and phone numbers that are configured to be visible to members only.

  • CVE-2025-15671MedAug 21, 2026
    risk 0.35cvss 5.4epss 0.00

    The Welcart e-Commerce WordPress plugin before 2.12.1 does not regenerate the session identifier on authentication and sets the session identifier from a user-supplied request parameter, allowing an unauthenticated attacker to fixate a shop member's session and take over their…

  • CVE-2026-65645MedAug 21, 2026
    risk 0.21cvss 4.3epss 0.00

    Rocket.Chat in versions before 8.8.0, 8.7.1, 8.6.2, 8.5.3, 8.4.6. 8.3.8, 8.2.8, 8.1.8, and 7.10.15, the Meteor DDP methods getThreadsList and getThreadMessages accept rid / tmid as raw, untyped parameters with no schema validation. A MongoDB operator object (e.g. {"$gt": "4"})…

  • CVE-2026-65644HigAug 21, 2026
    risk 0.42cvss 7.5epss 0.00

    Rocket.Chat in versions before 8.8.0, 8.7.1, 8.6.2, 8.5.3, 8.4.6, 8.3.8, 8.2.8, 8.1.8, and 7.10.15 has a REST API endpoint POST /api/v1/livechat/visitor that accepts an unauthenticated, unsanitized name field for Livechat visitors. This name is stored raw and later rendered via…

  • CVE-2026-45202MedAug 21, 2026
    risk 0.36cvss 5.5epss 0.00

    Software installed and run as a non-privileged user may conduct GPU system calls which cause GPU memory leaks and possible kernel heap corruption. Scenario caused by memory free paths not maintaining state data of upgraded higher order allocations. This could cause memory…

  • CVE-2026-45201HigAug 21, 2026
    risk 0.51cvss 7.8epss 0.00

    Software installed and run as a non-privileged user may conduct improper GPU system calls to pass invalid log2 page size when allocating physical pages leading to OOB read and/or write due to improper validation of the said value. Such crafted log2 page size could lead to 4K…

  • CVE-2026-45199HigAug 21, 2026
    risk 0.51cvss 7.8epss 0.00

    Kernel software installed and running inside a Guest VM may post improper commands to the GPU Firmware to trigger a write of data outside the Guest's virtualised GPU memory. Software installed and run under a Guest VM can send commands to the GPU which result in out of bounds…

  • CVE-2026-18409HigAug 21, 2026
    risk 0.47cvss 7.2epss 0.00

    The WPForms Pro plugin for WordPress is vulnerable to Stored Cross-Site Scripting via Single Line Text and Paragraph Text Field Values in all versions up to, and including, 2.0.0.2 due to insufficient input sanitization and output escaping. This makes it possible for…

  • CVE-2026-76158CriAug 21, 2026
    risk 0.60cvss —epss 0.01

    External Control of File Name or Path in the upload API endpoint of Datiphy Data Management Center from v8.3.0 through v8.5.1 allows a remote attacker to write files to arbitrary locations outside the intended upload directory via relative or absolute path sequences.

  • CVE-2026-76137LowAug 21, 2026
    risk 0.21cvss 3.3epss 0.00

    Missing authentication for critical function vulnerability exists in VOCALOID6. Any process running under the same local user account as a running VOCALOID6 Editor instance may escalate privileges via a local named pipe.

  • CVE-2026-76131MedAug 21, 2026
    risk 0.34cvss 5.3epss 0.00

    Use of hard-coded credentials issue exists in VOCALOID6 , which may allow an attacker to impersonate a legitimate VOCALOID6 Editor and gain access to Yamaha's activation and content servers.

  • CVE-2026-73267HigAug 21, 2026
    risk 0.50cvss 7.7epss 0.01

    A flaw was found in the clusterclaims-controller component of multicluster engine (MCE). A tenant with standard permissions to create and delete ClusterClaim resources can exploit this by manipulating the `spec.namespace` field. This allows the tenant to specify and delete any…

  • CVE-2026-77392MedAug 21, 2026
    risk 0.41cvss 6.3epss 0.00

    A weakness has been identified in SourceCodester Dynamic Input Field Generator Using HTML, CSS, and PHP 1.0. This impacts the function saveUser of the file /public/submit.php. This manipulation of the argument Researcher causes sql injection. The attack may be initiated…

  • CVE-2026-77391MedAug 21, 2026
    risk 0.28cvss 4.3epss 0.00

    A security flaw has been discovered in SourceCodester Dynamic Input Field Generator Using HTML, CSS, and PHP 1.0. This affects an unknown function. The manipulation results in cross-site request forgery. The attack can be launched remotely. The exploit has been released to the…

  • CVE-2026-76157HigAug 21, 2026
    risk 0.57cvss —epss 0.01

    Missing authentication for a critical function in the upload API endpoint of Datiphy Data Management Center from v8.3.0 through v8.5.1 allows an unauthenticated remote attacker to upload arbitrary files to the server's configured upload directory.

  • CVE-2026-76156CriAug 21, 2026
    risk 0.61cvss —epss 0.01

    OS command injection in the api endpoint of Datiphy Data Management Center from v8.3.0 through v8.5.1 allows an authenticated administrator to execute arbitrary operating system commands as root.

  • CVE-2026-76155CriAug 21, 2026
    risk 0.60cvss —epss 0.00

    Use of default credentials in Datiphy Data Management Center from v8.3.0 through v8.5.1 allows a remote attacker to gain administrative access to the management platform by logging in with default administrator credentials.

  • CVE-2026-77651CriAug 21, 2026
    risk 0.64cvss 9.8epss 0.01

    The arrayref crate 0.3.10 for Rust can trigger execution of malicious code when compiling a project that uses the crate, because it has a rogue dependency that registers with a command-and-control server to offer arbitrary code execution.

  • CVE-2026-77650CriAug 21, 2026
    risk 0.64cvss 9.8epss 0.01

    The append-only-vec crate 0.1.9 for Rust can trigger execution of malicious code when compiling a project that uses the crate, because it has a rogue dependency that registers with a command-and-control server to offer arbitrary code execution.

  • CVE-2026-77649CriAug 21, 2026
    risk 0.64cvss 9.8epss 0.01

    The internment crate 0.8.7 for Rust can trigger execution of malicious code when compiling a project that uses the crate, because it has a rogue dependency that registers with a command-and-control server to offer arbitrary code execution.

  • CVE-2026-43679LowAug 21, 2026
    risk 0.16cvss 2.4epss 0.00

    This issue was addressed with improved permissions checking. This issue is fixed in watchOS 26.4. An attacker with physical access to a locked Apple Watch may be able to view user contacts.

  • CVE-2026-20679MedAug 21, 2026
    risk 0.28cvss 4.3epss 0.00

    The issue was addressed with improved checks. This issue is fixed in macOS Sequoia 15.7.5, macOS Sonoma 14.8.5, macOS Tahoe 26.4. Processing a maliciously crafted file may lead to unexpected app termination.

  • CVE-2026-16520HigAug 21, 2026
    risk 0.57cvss —epss 0.01

    Improper input validation and Exposure of sensitive information through data queries vulnerability in Genians Genian NAC V4.0, Genians Genian NAC V5.0, and Genians Genian ZTNA V6.0 allows SQL Injection and Authentication Bypass. This issue affects Genian NAC V4.0: from 4.0.0…

  • CVE-2026-77679modAug 21, 2026
    risk 0.36cvss 5.5epss —

    epiphany: epiphany: path traversal in WebExtension XPI extraction (ZIP slip)

  • CVE-2026-77682impAug 21, 2026
    risk 0.46cvss 7.1epss —

    epiphany: epiphany: JavaScript code injection in autofill via unsanitized CSS selector from element id

  • CVE-2026-77648LowAug 20, 2026
    risk 0.14cvss 2.2epss 0.00

    In OpenStack Glance through 32.0.0, the /v2/tasks API accepts type=import tasks that bypass import_filtering_opts, allowing an admin to fetch internal URLs from the Glance service network (aka SSRF), as long as https:// or http:// is used. This API has been available only to…

  • CVE-2026-77647CriAug 20, 2026
    risk 0.67cvss 9.8epss 0.02

    SPIP before 4.4.20 allows unauthenticated remote attackers to execute arbitrary code, as exploited in the wild in August 2026. This is related to incorrect identification of <?php blocks, and var_export's mishandling of certain cases such as presence of a '<' character.

  • CVE-2026-77113MedAug 20, 2026
    risk 0.37cvss —epss 0.00

    Path traversal in apport-unpack in Canonical Apport before 2.36.0, 2.34.2, and 2.28.4 on Linux allows an attacker to create or overwrite arbitrary files with the privileges of the executing user via an attacker controlled key names in crash report files.

  • CVE-2026-77646HigAug 20, 2026
    risk 0.50cvss —epss 0.00

    A Server-Side Request Forgery (SSRF) vulnerability has been reported in PTC Windchill PDMLink and PTC FlexPLM. The vulnerability may be exploited through the deserialization of untrusted data.

  • CVE-2026-77645CriAug 20, 2026
    risk 0.60cvss —epss 0.01

    A critical remote code execution (RCE) vulnerability has been reported in PTC Windchill and PTC FlexPLM. The vulnerability may be exploited through the deserialization of untrusted data.

  • CVE-2026-77644CriAug 20, 2026
    risk 0.60cvss —epss 0.00

    A critical bypass access control vulnerability has been reported in PTC Windchill Risk and Reliability (WRR) Enterprise Edition.

  • CVE-2026-77643MedAug 20, 2026
    risk 0.29cvss 4.4epss 0.00

    A cross-site scripting vulnerability in queryparser/termgenerator_internal.cc in Xapian xapian-core before 2.1.0 and before 1.4.32 exists due to incomplete HTML escaping by Xapian::MSet::snippet(). NOTE: this issue exists because of a missed corner case of CVE-2018-0499.

  • CVE-2026-77642HigAug 20, 2026
    risk 0.49cvss 7.5epss 0.00

    tor before 0.4.9.9 was prone to an out-of-bounds write when parsing a consensus or detached signature with unexpected signature digest type. Impact is minor for most Tor roles, but potentially major for directory authorities. This is TROVE-2026-019.

  • CVE-2026-72860HigAug 20, 2026
    risk 0.48cvss 8.5epss 0.00

    The POST /api/provider-nodes/validate route in 9router takes a caller-supplied baseUrl and issues server-side HTTP requests to it, guarding the destination with assertPublicUrl from src/shared/utils/ssrfGuard.js. That guard compares hostname strings only: it resolves no DNS,…