VYPR

CVEs

378,628 total · page 476 of 7,573

  • CVE-2026-17592Jul 31, 2026
    risk 0.00cvss —epss —

    Rejected reason: ** REJECT ** DO NOT USE THIS CANDIDATE NUMBER. Reason: This candidate was issued in error. Notes: All references and descriptions in this candidate have been removed to prevent accidental usage.

  • CVE-2026-17561CriJul 31, 2026
    risk 0.64cvss 9.8epss 0.00

    Improper Control of Generation of Code ('Code Injection') vulnerability in Innotim Software, Telecommunications and Consulting Trade Ltd. Co. Logsign SIEM allows Code Injection. This issue affects Logsign SIEM: before 6.4.115.

  • CVE-2026-15227MedJul 31, 2026
    risk 0.34cvss —epss 0.00

    Missing authorization in Checkmk <2.5.0p10, <2.4.0p35, <2.3.0p49, and 2.2.0 (EOL) allows an authenticated user lacking the "Edit foreign Reports" permission to modify reports owned by other users.

  • CVE-2026-46594MedJul 31, 2026
    risk 0.33cvss —epss 0.00

    A reflected cross-site scripting (XSS) vulnerability has been identified in the PHP Jabbers - PHP Poll Script. A malicious attacker can craft a specially crafted URL that, when opened, results in arbitrary JavaScript execution in the victim's browser. This issue was fixed in…

  • CVE-2026-46593HigJul 31, 2026
    risk 0.56cvss —epss 0.00

    A SQL injection vulnerability has been identified in the PHP Jabbers - PHP Poll Script. Improper neutralization of input provided by user to pjAdminPolls.controller.php endpoint allows an authenticated attacker to perform SQL Injection attacks. This issue was fixed in version…

  • CVE-2025-67651MedJul 31, 2026
    risk 0.45cvss —epss 0.00

    A Cross-Site Request Forgery (CSRF) vulnerability has been identified in multiple PHP Jabbers scripts. The lack of CSRF tokens or appropriate SameSite attributes allows an attacker to send unauthorized requests in the context of an authenticated user, leading to unauthorized…

  • CVE-2025-67650HigJul 31, 2026
    risk 0.56cvss —epss 0.00

    An authenticated SQL injection vulnerability has been identified in multiple PHP Jabbers scripts. Improper neutralization of input provided by an authenticated user into parameters responsible for sorting functions allows an attacker to perform SQL Injection attacks. This issue…

  • CVE-2025-67649CriJul 31, 2026
    risk 0.60cvss —epss 0.00

    A SQL injection vulnerability has been identified in PHP Jabbers - Car Rental Script . Improper neutralization of input provided by user into parameters responsible for sorting functions allows an unauthenticated attacker to perform SQL Injection attacks. This issue was fixed…

  • CVE-2026-64607MedJul 31, 2026
    risk 0.27cvss 5.3epss 0.00

    HttpClient based on the classic i/o model fails to correctly release the underlying connection back to the connection manager if it encounters an invalid or unsupported `Content-Encoding` header value in the response message. Please note this defect does not affect HttpClient…

  • CVE-2026-62391HigJul 31, 2026
    risk 0.53cvss 8.1epss 0.01

    The security fix for CVE-2025-66518 is incomplete. Any client who can access to Apache Kyuubi Server via Kyuubi frontend protocols can bypass server-side config kyuubi.session.local.dir.allowlist via unprefixed Spark config aliases. This issue affects Apache Kyuubi: from…

  • CVE-2026-44615MedJul 31, 2026
    risk 0.35cvss 6.5epss 0.01

    Path traversal vulnerability in Apache Zeppelin. When FileSystemNotebookRepo is configured, an authenticated attacker with permission to rename a note, or access to folder operations, could supply traversal segments in note or folder paths.                   Zep…

  • CVE-2026-17567MedJul 31, 2026
    risk 0.27cvss 5.3epss 0.00

    The Fluent Forms – Customizable Contact Forms, Survey, Quiz, & Conversational Form Builder plugin for WordPress is vulnerable to Insecure Direct Object Reference in all versions up to, and including, 6.2.8 via the 'transaction' parameter due to missing validation on a user…

  • CVE-2026-16843HigJul 31, 2026
    risk 0.47cvss 7.2epss 0.00

    Some Hikvision Networking Products are vulnerable to authenticated command execution due to insufficient input validation. Attackers with valid credentials can exploit this flaw by sending crafted packets containing malicious commands to affected devices, leading to arbitrary…

  • CVE-2026-18437MedJul 31, 2026
    risk 0.34cvss 5.3epss 0.00

    The MailerPress – Newsletter, email marketing & AI automation plugin for WordPress is vulnerable to unauthorized access due to a missing capability check on the `mailerpress/v1/contact` endpoint in all versions up to, and including, 1.5.0. This makes it possible for…

  • CVE-2026-18436MedJul 31, 2026
    risk 0.34cvss 5.3epss 0.00

    The MailPress plugin for WordPress is vulnerable to unauthorized access in versions up to, and including, 1.5.0 via the campaign revision-restore REST endpoint (POST /wp-json/mailpress/v1/campaign//restore-revision/<revision_id>). The route in the vulnerable range was…

  • CVE-2026-15722HigJul 31, 2026
    risk 0.49cvss 7.5epss 0.01

    A stack buffer overflow flaw was found in 389 Directory Server (389-ds-base). The get_ruvelement_from_berval() function in repl5_ruv.c copies digit characters from a network-supplied RUV berval into a fixed 16-byte stack buffer without bounds checking. A remote unauthenticated…

  • CVE-2026-11770HigJul 31, 2026
    risk 0.49cvss 7.5epss 0.01

    A flaw was found in 389 Directory Server. An unauthenticated remote attacker can inject LDAP search filters into the CleanAllRUV replication status-check extended operation. Because the handler performs the search against cn=config with elevated replication plugin privileges and…

  • CVE-2026-10079HigJul 31, 2026
    risk 0.55cvss 8.5epss 0.00

    A flaw was found in Red Hat Advanced Cluster Security for Kubernetes (RHACS). When processing Kubernetes Deployments, ACS replaces deployment identity metadata based on the openshift.io/encoded-deployment-config label. A user with permission to create Deployments can set this…

  • CVE-2026-65313HigJul 31, 2026
    risk 0.53cvss 8.1epss 0.00

    A provisioning script used when installing HIPASE-250 (formerly 250 SCALA) engineering workstations sets a fixed, hard-coded x11vnc password. Because the same credential is applied to every workstation provisioned this way, an attacker with adjacent-network access who knows the…

  • CVE-2026-65311MedJul 31, 2026
    risk 0.34cvss 5.3epss 0.00

    The HTTP server component of ANDRITZ HIPASE-250 (formerly 250 SCALA) in affected versions exposes an undocumented endpoint that changes the server's logging level and target without requiring authentication. A remote, unauthenticated attacker with network access to the service…

  • CVE-2026-65310HigJul 31, 2026
    risk 0.49cvss 7.5epss 0.00

    ANDRITZ HIPASE-250 (formerly 250 SCALA), in the default configuration of affected versions, exposes its data and configuration endpoint without any authentication and permissive CORS on every response. An unauthenticated attacker with network access can read live process values…

  • CVE-2026-65309HigJul 31, 2026
    risk 0.49cvss 7.5epss 0.00

    ANDRITZ HIPASE-250 (formerly 250 SCALA) in affected versions stores and transmits user passwords using a reversible format instead of a one-way password hash. This allows an attacker able to read the credential store or capture network traffic to recover all stored passwords.

  • CVE-2026-18218MedJul 31, 2026
    risk 0.27cvss 4.2epss 0.00

    A flaw was found in the TokenManager component of the Keycloak identity management service. When an administrator attempts to revoke tokens for a specific application (client) using a "not-before" policy, the revocation may be silently ignored if the overall security realm…

  • CVE-2026-18217LowJul 31, 2026
    risk 0.22cvss 3.4epss 0.00

    A flaw was found in the SAML protocol implementation of Keycloak, an open-source identity and access management solution. The issue occurs when Keycloak handles SAML authentication requests using the HTTP-Redirect binding. If a client is configured with a wildcard redirect URL,…

  • CVE-2026-18215MedJul 31, 2026
    risk 0.44cvss 6.8epss 0.00

    Keycloak provides a way to let users log in using Microsoft accounts while restricting access to a specific organization (tenant). A flaw was discovered where this restriction is ignored when using the token exchange feature. This means an attacker with a valid Microsoft token…

  • CVE-2026-18214MedJul 31, 2026
    risk 0.44cvss 6.8epss 0.00

    Keycloak allows users to log in using Google accounts and can be configured to only allow users from specific Google Workspace domains. A flaw was found where the token exchange feature, which allows swapping a Google token for a Keycloak token, does not check these domain…

  • CVE-2026-18211MedJul 31, 2026
    risk 0.27cvss 4.2epss 0.00

    A flaw was found in the secure-client-uris client policy executor within Keycloak core services. This component is responsible for enforcing security requirements on client configurations, such as requiring encrypted connections for redirect URIs. Due to an improper check that…

  • CVE-2026-18209LowJul 31, 2026
    risk 0.22cvss 3.4epss 0.00

    A flaw was found in the keycloak-services component of Keycloak, which handles OpenID Connect (OIDC) authentication flows. The issue occurs because the security check designed to prevent HTTP parameter pollution only inspects the query portion of a redirect URL and ignores the…

  • CVE-2026-18208MedJul 31, 2026
    risk 0.42cvss 6.5epss 0.00

    A flaw was found in the OIDC token introspection endpoint of the keycloak-services component. Keycloak is an open-source identity and access management solution used to secure modern applications and services. The issue occurs when a confidential client, configured to receive…

  • CVE-2026-18206LowJul 31, 2026
    risk 0.24cvss 3.7epss 0.00

    A flaw was found in the keycloak-services component of Keycloak, which provides identity and access management services. The issue occurs when a realm administrator uses a wildcard domain (like *.example.com) to restrict which hosts can register or update clients. Due to…

  • CVE-2026-18203MedJul 31, 2026
    risk 0.42cvss 6.5epss 0.00

    A flaw was found in the group policy evaluation logic of Keycloak, an identity and access management solution. When a group policy is set to extend permissions to child groups, the system incorrectly uses a simple text-based prefix check to verify group membership. This allows a…

  • CVE-2026-16105MedJul 31, 2026
    risk 0.25cvss 4.9epss 0.00

    A flaw was found in the RoleContainerResource component of Keycloak. The issue occurs because certain name-based endpoints in the admin REST API do not properly enforce authorization checks when managing composite roles. This allows a delegated administrator with manage-realm…

  • CVE-2026-8155MedJul 31, 2026
    risk 0.35cvss 5.4epss 0.00

    The BuddyPress WordPress plugin before 14.5.0 does not properly enforce authorization on its private messaging endpoints, allowing any authenticated user (Subscriber+) to read, modify, or delete other users' private messages.

  • CVE-2026-18452CriJul 31, 2026
    risk 0.65cvss 10.0epss 0.00

    DMS+ (Non-Mobile) developed by Rich Source has a Use of Hard-coded Credentials vulnerability. Unauthenticated remote attackers can exploit a fixed API key to gain control over all installed DMS+ devices.

  • CVE-2026-16236HigJul 31, 2026
    risk 0.57cvss 8.8epss 0.01

    The Realtyna Organic IDX plugin for WordPress is vulnerable to Arbitrary File Upload in versions up to, and including, 5.3.0. This is due to missing file extension and content validation in the saveLiveImages() function combined with an insufficient authorization check on the…

  • CVE-2026-15381LowJul 31, 2026
    risk 0.24cvss 3.7epss 0.00

    The WP Go Maps WordPress plugin before 10.1.04 does not properly sanitise and escape a parameter before using it in a SQL query, allowing unauthenticated users to perform SQL injection attacks.

  • CVE-2026-15258HigJul 31, 2026
    risk 0.53cvss 8.1epss 0.00

    The Product Feed Manager For WooCommerce WordPress plugin before 7.6.1 does not properly sanitise and escape product-feed custom filter rules before using them in a SQL query, allowing users with the Contributor role and above to perform SQL injection attacks.

  • CVE-2026-15209MedJul 31, 2026
    risk 0.42cvss 6.5epss 0.00

    The JS Help Desk WordPress plugin before 3.1.5 does not verify that the requesting user owns the ticket being loaded: a low-privileged authenticated user can supply another user's ticket ID and read that ticket's contents, including the reporter's PII and message body.

  • CVE-2026-15048HigJul 31, 2026
    risk 0.49cvss 7.5epss 0.00

    The Geeky Bot WordPress plugin before 1.2.8 does not perform an authorization check on one of its AJAX actions, allowing unauthenticated users to retrieve chat-history session metadata including WordPress usernames, user IDs, and timestamps.

  • CVE-2026-14931MedJul 31, 2026
    risk 0.42cvss 6.5epss 0.00

    The JS Help Desk WordPress plugin before 3.1.4 grants a support-agent capability to the Contributor role on activation and does not perform a capability check on a user-listing handler, allowing Contributor-level users to enumerate the email addresses of all registered…

  • CVE-2026-14930HigJul 31, 2026
    risk 0.49cvss 7.5epss 0.00

    The JS Help Desk WordPress plugin before 3.1.4 does not perform any authorization, nonce, or ownership check on a front-end request dispatcher, allowing unauthenticated users to upload files (limited to the JS Help Desk WordPress plugin before 3.1.4's inert allowed extensions)…

  • CVE-2026-14929MedJul 31, 2026
    risk 0.28cvss 4.3epss 0.00

    The JS Help Desk WordPress plugin before 3.1.4 does not verify ownership of the targeted reply before updating it, allowing any authenticated user (Subscriber and above) to overwrite the content of any support-ticket reply on the site.

  • CVE-2026-14928MedJul 31, 2026
    risk 0.42cvss 6.5epss 0.00

    The JS Help Desk WordPress plugin before 3.1.4 does not perform authorization or ownership checks before returning support-ticket content in a nonce-gated search handler, allowing any authenticated user (Subscriber and above) to read the subject and full message body of every…

  • CVE-2026-14927LowJul 31, 2026
    risk 0.24cvss 3.7epss 0.00

    The FluentCart A New Era of eCommerce WordPress plugin before 1.5.3 does not perform any authorization or ownership check before rendering customer order documents keyed on a sequential numeric identifier, allowing unauthenticated visitors to enumerate and disclose customer…

  • CVE-2026-14922MedJul 31, 2026
    risk 0.40cvss 6.1epss 0.00

    WP Photo Album Plus is vulnerable to stored Cross-Site Scripting in all versions up to, and including, 9.2.03.001 through a decode-after-sanitize (double-encoding) flaw in the photo-comment pipeline. On write, `wppa_do_comment()` sanitizes the comment with `wppa_filter_html()`…

  • CVE-2026-14921MedJul 31, 2026
    risk 0.40cvss 6.1epss 0.00

    The Ultimate Addons for WPBakery Page Builder WordPress plugin before 3.21.5's shared link-rendering function, Ultimate_VC_Addons::uavc_link_init(),

  • CVE-2026-14919CriJul 31, 2026
    risk 0.64cvss 9.8epss 0.00

    The ShopMonitor.io WordPress plugin before 1.2.0 does not properly restrict its email-rerouting test mode, gating it behind a trusted-source check that is satisfiable with client-supplied request headers, allowing unauthenticated attackers to redirect outgoing emails, including…

  • CVE-2026-14862LowJul 31, 2026
    risk 0.24cvss 3.7epss 0.00

    The Support Genix WordPress plugin before 1.4.48 does not properly authorize access to support-ticket attachment downloads, allowing unauthenticated users who obtain the stored attachment file name to download other users' private ticket attachments.

  • CVE-2026-14849LowJul 31, 2026
    risk 0.24cvss 3.7epss 0.00

    The Paid Membership Subscriptions WordPress plugin before 3.0.7 does not protect the member and payment export files it writes to a predictable location in the uploads directory, allowing unauthenticated users to download the exported member and payment data (including PII)…

  • CVE-2026-14847MedJul 31, 2026
    risk 0.28cvss 4.3epss 0.00

    The Paid Membership Subscriptions WordPress plugin before 3.0.7 does not perform capability or nonce checks on one of its payment-related AJAX actions, allowing any authenticated user with Subscriber-level access and above to disclose the payment details of any member by…