VYPR

CVEs

384,379 total · page 415 of 7,688

  • CVE-2026-64961MedAug 20, 2026
    risk 0.41cvss —epss 0.00

    ATutor is vulnerable to authentication bypass . Although a token validation check is present in the auto-login functionality, the values required for token validation remain uninitialized in certain code paths. An unauthenticated attacker who can determine a user's identifier…

  • CVE-2026-64960HigAug 20, 2026
    risk 0.57cvss —epss 0.01

    ATutor Gameme module allows users to upload files of any type and extension without restriction. Due to improper handling of file uploads, files are stored in a web-accessible location before their content is validated. An authenticated attacker who knows a valid course_id can…

  • CVE-2026-15706CriAug 20, 2026
    risk 0.64cvss 9.8epss 0.01

    Missing authentication for critical function vulnerability in Baylan Measuring Instruments Industry and Trade Inc. Baylan Smart Meter Management Application (BMS) allows Authentication Bypass. This issue affects Baylan Smart Meter Management Application (BMS): before…

  • CVE-2026-7485LowAug 20, 2026
    risk 0.08cvss —epss 0.00

    Incorrect authorization in frozen BI aggregations in Checkmk <2.5.0p2, <2.4.0p29, <2.3.0p47, and all 2.2.0 versions allows an authenticated user with restricted host and service visibility to learn the names and the existence of hosts and services they are not authorized to see.

  • CVE-2026-77118HigAug 20, 2026
    risk 0.55cvss —epss 0.00

    A heap out-of-bounds write exists in the Photo CD (PCD) decoder of GraphicsMagick. In DecodeImage() (coders/pcd.c), the Huffman delta loop advances its output pointer with q++ after every decoded delta and never checks it against the end of the heap-allocated luma/chroma plane…

  • CVE-2026-76989MedAug 20, 2026
    risk 0.27cvss 5.3epss 0.01

    A security vulnerability has been detected in liftoff-sr CIPster 1802525be27d33e19a9a83c163e331a1d13b1892. This impacts an unknown function of the file source/src/enet_encap/encap.cc of the component TCP Encapsulation Receive Path. The manipulation leads to out-of-bounds read.…

  • CVE-2026-76988MedAug 20, 2026
    risk 0.27cvss 5.3epss 0.01

    A weakness has been identified in liftoff-sr CIPster 1802525be27d33e19a9a83c163e331a1d13b1892. This affects the function CipConnMgrClass::forward_open of the file cipconnectionmanager.cc of the component ForwardOpen Handler. Executing a manipulation of the argument product_code_…

  • CVE-2026-76987HigAug 20, 2026
    risk 0.40cvss 7.3epss 0.01

    A security flaw has been discovered in liftoff-sr CIPster 1802525be27d33e19a9a83c163e331a1d13b1892. The impacted element is the function CipAttribute::GetAttrData/CipAttribute::SetAttrData of the file ciptypes.h of the component Generic Attribute Logic. Performing a manipulation…

  • CVE-2026-74011HigAug 20, 2026
    risk 0.49cvss 7.6epss 0.00

    Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in revmakx InfiniteWP Client allows Blind SQL Injection. This issue affects InfiniteWP Client: from n/a through 1.13.9.

  • CVE-2026-28164CriAug 20, 2026
    risk 0.62cvss 9.6epss 0.00

    Cross-Site Request Forgery (CSRF) vulnerability in HashThemes Easy Elementor Addons allows Cross Site Request Forgery. This issue affects Easy Elementor Addons: from n/a through 2.3.7.

  • CVE-2026-28163MedAug 20, 2026
    risk 0.27cvss 5.3epss 0.00

    Missing Authorization vulnerability in myCred New User Approve allows Exploiting Incorrectly Configured Access Control Security Levels. This issue affects New User Approve: from n/a through 3.2.8.

  • CVE-2026-21784MedAug 20, 2026
    risk 0.31cvss 4.8epss 0.00

    HCL IntelliOps Event Management (IEM) is affected by missing or insecure Cross-Origin Security headers. This issue makes the application's environment and resources susceptible to unauthorized external interaction and potential exploitation.

  • CVE-2026-18482CriAug 20, 2026
    risk 0.57cvss 9.8epss 0.02

    Neo.mjs contains a command injection vulnerability within the FileSystemService.mjs component of the ai/mcp/server/file-system MCP server, where the checkSyntax() and runPlaywrightTest() functions unsafely interpolate caller-controlled absolutePath values into shell commands,…

  • CVE-2025-62306MedAug 20, 2026
    risk 0.33cvss 5.0epss 0.00

    HCL IntelliOps Event Management (IEM) is affected by information omission. The lack of information breaks auditability and observability of a workflow. if an attacker were to gain access to the application, the insufficient logging could hinder incident response.

  • CVE-2025-62300MedAug 20, 2026
    risk 0.38cvss 5.9epss 0.00

    HCL IntelliOps Event Management (IEM) is affected by a race condition. A "timing window" can occur where an attacker can modify the resource causing unpredictable behavior.

  • CVE-2025-62299MedAug 20, 2026
    risk 0.43cvss 6.6epss 0.00

    HCL IntelliOps Event Management (IEM) is affected by a least privileges violation which could allow an attacker to access the resource with the elevated privilege that could not be accessed with the attacker's original privileges.

  • CVE-2026-77085MedAug 20, 2026
    risk 0.42cvss 6.5epss 0.00

    n8n before 2.34.1 and 2.33.x before 2.33.4 contains an SSRF protection bypass in the SearXNG Agent tool. The tool sent requests to the user-supplied API URL using a raw HTTP client that did not route through n8n's centralized SSRF protection. On instances with…

  • CVE-2026-77084HigAug 20, 2026
    risk 0.57cvss 8.8epss 0.01

    n8n before 1.123.69 (and 2.x before 2.33.4 / 2.34.1) contains a code execution vulnerability in the Git node. The Git node executed certain repository-local git configuration values without neutralizing them, so any subsequent Git node operation against a repository containing a…

  • CVE-2026-77083MedAug 20, 2026
    risk 0.38cvss 5.9epss 0.00

    n8n is a workflow automation platform. In versions prior to 1.123.69, 2.33.4, and 2.34.1, the JavaScript Code node's VM sandbox did not freeze the sandbox's Function.prototype, allowing an authenticated user with the ability to create and execute workflows to pollute it from…

  • CVE-2026-77082MedAug 20, 2026
    risk 0.28cvss 4.3epss 0.00

    n8n before 1.123.69, 2.x before 2.33.4, and 2.34.x before 2.34.1 contains a regular expression denial of service (ReDoS) vulnerability in the Filter and Switch nodes, which compile user-supplied regex patterns with new RegExp() and execute them synchronously on the worker thread…

  • CVE-2026-77081HigAug 20, 2026
    risk 0.46cvss 7.1epss 0.00

    n8n before 1.123.69, 2.x before 2.33.4, and 2.x before 2.34.1 contain an allowed-domains bypass in the GraphQL node. When the node's Authentication parameter is set to expression mode, every authentication-gated credential selector is treated as active; if two credentials of…

  • CVE-2026-77080HigAug 20, 2026
    risk 0.57cvss 8.8epss 0.01

    n8n before 1.123.69, 2.x before 2.33.4, and 2.34.x before 2.34.1 contain an arbitrary file read and write vulnerability in the Snowflake node, which passes free-form Execute Query input, including client-side commands, directly to the Snowflake SDK without applying n8n's…

  • CVE-2026-77079HigAug 20, 2026
    risk 0.57cvss 8.8epss 0.00

    n8n before 2.34.1 and 2.33.4 contains an authorization bypass in the custom project role deletion (reassignment) path. When deleting a custom project role with a reassignment target, the code validated only that the target role existed and was project-scoped, performing no…

  • CVE-2026-77077HigAug 20, 2026
    risk 0.49cvss 7.6epss 0.01

    n8n versions before 1.123.69, 2.33.4, and 2.34.1 contain a JavaScript task runner VM sandbox escape. The runner's prototype-freezing routine covers globalThis functions but not internal module constructors such as EventEmitter, allowing an authenticated user with Code node…

  • CVE-2026-77076MedAug 20, 2026
    risk 0.42cvss 6.5epss 0.00

    n8n versions before 1.123.69, 2.33.4, and 2.34.1 contain an information disclosure vulnerability in the GraphQL node. When a GraphQL request fails at the connection level, the node re-throws the underlying HTTP client error unchanged instead of wrapping it in n8n's standard…

  • CVE-2026-77075HigAug 20, 2026
    risk 0.47cvss 7.3epss 0.00

    n8n before 1.123.69, 2.x before 2.33.4, and 2.34.x before 2.34.1 contain an expression injection vulnerability in resource-locator field link preview rendering. The editor spliced the field's stored value directly into the node type's URL template without checking for expression…

  • CVE-2026-77074MedAug 20, 2026
    risk 0.42cvss 6.5epss 0.00

    n8n versions before 1.123.69 contain a server-side request forgery vulnerability in the Edit Image node's Draw Text operation that allows authenticated users to inject MVG primitives. Attackers can craft malicious text values to issue blind outbound HTTP requests to arbitrary…

  • CVE-2026-77073MedAug 20, 2026
    risk 0.28cvss 4.3epss 0.00

    n8n versions before 2.34.1 contain a credential validation bypass in the MCP create_workflow_from_code tool when authentication type is set to an expression. Attackers with a valid MCP Bearer API key and knowledge of a target credential ID can persist unauthorized cross-project…

  • CVE-2026-77072HigAug 20, 2026
    risk 0.49cvss 7.6epss 0.00

    n8n before 1.123.69, 2.33.4, and 2.34.1 contains a stored cross-site scripting vulnerability in the Form node's completion page. The completion page applied its sandboxing Content-Security-Policy only when respondWith was not set to 'redirect', but responseText was always…

  • CVE-2026-77071CriAug 20, 2026
    risk 0.64cvss 9.8epss 0.01

    n8n before 1.123.69, 2.33.4, and 2.34.1 contains a PostgREST filter injection vulnerability in the Supabase node's Row Get Many, Delete, and Update operations, which built filter queries by concatenating an expression-bindable value without escaping. An attacker could inject a…

  • CVE-2026-77070CriAug 20, 2026
    risk 0.64cvss 9.8epss 0.01

    n8n before 1.123.69, 2.33.4, and 2.34.1 contains a NoSQL injection vulnerability in the MongoDB node's Find, Delete, and Aggregate operations, which parse the Query parameter as JSON after expression resolution without sanitizing MongoDB operators. An attacker who can influence…

  • CVE-2026-77069MedAug 20, 2026
    risk 0.28cvss 4.3epss 0.00

    n8n before 1.123.69, 2.33.4, and 2.34.1 contains an SSRF protection bypass in the OAuth2 credential authorization-code-to-access-token exchange. While OAuth2 discovery and dynamic-client-registration requests use n8n's SSRF-protected HTTP client, the token exchange uses a…

  • CVE-2026-77068HigAug 20, 2026
    risk 0.57cvss 8.8epss 0.01

    n8n before 2.33.4 and 2.34.x before 2.34.1 contain a remote code execution vulnerability in the @n8n/workflow-sdk node-schema loader used for MCP node-schema loading. The loader derives a node's schema module path directly from the attacker-supplied node type string without…

  • CVE-2026-74021HigAug 20, 2026
    risk 0.49cvss 7.5epss 0.00

    Unauthenticated Broken Access Control in Chaplin <= 2.6.8 versions.

  • CVE-2026-74020HigAug 20, 2026
    risk 0.49cvss 7.5epss 0.00

    Unauthenticated Broken Access Control in Koji <= 2.2.1 versions.

  • CVE-2026-74019HigAug 20, 2026
    risk 0.46cvss 7.1epss 0.00

    Unauthenticated Broken Access Control in EPROLO Dropshipping <= 2.4.2 versions.

  • CVE-2026-74018CriAug 20, 2026
    risk 0.64cvss 9.9epss 0.00

    Subscriber Arbitrary File Upload in Warehouse Cargo <= 2.6.9 versions.

  • CVE-2026-74016CriAug 20, 2026
    risk 0.64cvss 9.9epss 0.00

    Subscriber Arbitrary File Upload in Smart Cleaning <= 4.8.6 versions.

  • CVE-2026-74014CriAug 20, 2026
    risk 0.64cvss 9.9epss 0.00

    Subscriber Arbitrary File Upload in IT Residence <= 3.2.1 versions.

  • CVE-2026-74013HigAug 20, 2026
    risk 0.55cvss 8.5epss 0.00

    Subscriber SQL Injection in eShipper Commerce <= 2.16.13 versions.

  • CVE-2026-74001CriAug 20, 2026
    risk 0.64cvss 9.8epss 0.01

    Unauthenticated Broken Authentication in User Registration & Membership Pro <= 5.4.5 versions.

  • CVE-2026-73998HigAug 20, 2026
    risk 0.55cvss 8.5epss 0.00

    Subscriber SQL Injection in WP w3all phpBB <= 3.0.5 versions.

  • CVE-2026-73993CriAug 20, 2026
    risk 0.64cvss 9.8epss 0.01

    Unauthenticated PHP Object Injection in FundEngine <= 1.7.9 versions.

  • CVE-2026-73992CriAug 20, 2026
    risk 0.64cvss 9.9epss 0.01

    Subscriber Remote Code Execution (RCE) in Query Wrangler <= 1.5.57 versions.

  • CVE-2026-73402MedAug 20, 2026
    risk 0.42cvss 6.5epss 0.00

    Subscriber Cross Site Scripting (XSS) in WP BASE Booking <= 6.3.2 versions.

  • CVE-2026-68566CriAug 20, 2026
    risk 0.60cvss 9.3epss 0.00

    Unauthenticated SQL Injection in BookingPress Appointment Booking Pro <= 6.0.2 versions.

  • CVE-2026-68564HigAug 20, 2026
    risk 0.46cvss 7.1epss 0.00

    Unauthenticated Cross Site Scripting (XSS) in NotificationX Pro <= 3.1.4 versions.

  • CVE-2026-66682CriAug 20, 2026
    risk 0.64cvss 9.8epss 0.00

    Unauthenticated Privilege Escalation in Abandoned Cart Pro for WooCommerce <= 10.4.0 versions.

  • CVE-2026-66680CriAug 20, 2026
    risk 0.60cvss 9.3epss 0.00

    Unauthenticated SQL Injection in Locatoraid Store Locator <= 3.9.72 versions.

  • CVE-2026-66677HigAug 20, 2026
    risk 0.49cvss 7.6epss 0.00

    Subscriber Broken Authentication in Leyka <= 3.32.3 versions.