VYPR

CVEs

37,952 total · page 91 of 760

  • CVE-2026-57744CriJul 13, 2026
    risk 0.00cvss 9.8epss 0.01

    Deserialization of Untrusted Data vulnerability in stmcan RT-Theme 18 | Extensions rt18-extensions allows Object Injection.This issue affects RT-Theme 18 | Extensions: from n/a through <= 2.5.

  • CVE-2026-57739CriJul 13, 2026
    risk 0.00cvss 9.3epss 0.00

    Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in AcyMailing Newsletter Team AcyMailing SMTP Newsletter acymailing allows Blind SQL Injection.This issue affects AcyMailing SMTP Newsletter: from n/a through <= 10.11.0.

  • CVE-2026-57738CriJul 13, 2026
    risk 0.00cvss 9.8epss 0.01

    Deserialization of Untrusted Data vulnerability in axiomthemes 777 triple-seven allows Object Injection.This issue affects 777: from n/a through <= 1.13.0.

  • CVE-2026-57726CriJul 13, 2026
    risk 0.00cvss 9.3epss 0.00

    Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in Themeum Kirki kirki allows Blind SQL Injection.This issue affects Kirki: from n/a through <= 6.0.12.

  • CVE-2026-57724CriJul 13, 2026
    risk 0.00cvss 9.8epss 0.01

    Deserialization of Untrusted Data vulnerability in Themeum Kirki kirki allows Object Injection.This issue affects Kirki: from n/a through <= 6.0.12.

  • CVE-2026-57719CriJul 13, 2026
    risk 0.00cvss 10.0epss 0.01

    Unrestricted Upload of File with Dangerous Type vulnerability in CodeRevolution Aimogen Pro aimogen-pro allows Using Malicious Files.This issue affects Aimogen Pro: from n/a through <= 2.8.3.

  • CVE-2026-57714CriJul 13, 2026
    risk 0.00cvss 9.3epss 0.00

    Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in LatePoint LatePoint latepoint allows Blind SQL Injection.This issue affects LatePoint: from n/a through <= 5.6.3.

  • CVE-2026-57710CriJul 13, 2026
    risk 0.00cvss 9.9epss 0.00

    Unrestricted Upload of File with Dangerous Type vulnerability in quantumcloud WoowBot Pro Max woowbot-pro-max allows Using Malicious Files.This issue affects WoowBot Pro Max: from n/a through <= 14.1.7.

  • CVE-2026-57707CriJul 13, 2026
    risk 0.00cvss 9.3epss 0.00

    Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in quantumcloud Simple Business Directory Pro simple-business-directory-pro allows SQL Injection.This issue affects Simple Business Directory Pro: from n/a through <= 15.9.4.

  • CVE-2026-57702CriJul 13, 2026
    risk 0.00cvss 9.3epss 0.00

    Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in Melograno Venture Studio Amelia ameliabooking allows Blind SQL Injection.This issue affects Amelia: from n/a through <= 2.4.2.

  • CVE-2026-57401CriJul 13, 2026
    risk 0.00cvss 9.9epss 0.01

    Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') vulnerability in Brainstorm Force SureDash suredash allows Path Traversal.This issue affects SureDash: from n/a through <= 1.8.0.

  • CVE-2026-41041CriJul 13, 2026
    risk 0.00cvss 9.1epss 0.01

    URL path injection via unencoded user-supplied identifiers vulnerability in Apache Gravitino. This issue affects Apache Gravitino: from 1.0.0 before 1.2.1. Users are recommended to upgrade to version 1.2.1, which fixes the issue.

  • CVE-2026-22103CriJul 13, 2026
    risk 0.00cvss —epss 0.01

    The NPC start endpoint on the web server at port 8090 is vulnerable to command injection.

  • CVE-2026-22102CriJul 13, 2026
    risk 0.00cvss —epss 0.01

    A POST request sent to a specific webserver endpoint can be used to write to arbitrary file locations. The endpoint accepts the filename parameter in the Content-Disposition header without verification. This can be used to cause a denial of service by overwriting system files,…

  • CVE-2026-22098CriJul 13, 2026
    risk 0.00cvss —epss 0.00

    Various sensitive information such as passwords and charging card UIDs are written to log files.

  • CVE-2026-22097CriJul 13, 2026
    risk 0.00cvss —epss 0.00

    The firmware update mechanism does not include cryptographic signature validation. This allows anyone with access to the firmware update capability to upload arbitrary files which can then lead to arbitrary code execution.

  • CVE-2026-22096CriJul 13, 2026
    risk 0.00cvss —epss 0.01

    The webserver running on port 8090 does not require authentication. This allows for sensitive information leakage such as configured passwords, or uploading files through different endpoints.

  • CVE-2026-22095CriJul 13, 2026
    risk 0.00cvss —epss 0.01

    The network diagnosis endpoint on the web server at port 8090 is vulnerable to command injection.

  • CVE-2026-22093CriJul 13, 2026
    risk 0.00cvss —epss 0.00

    The EVbee Service Android app uses TLS encrypted communication (HTTPS), but does not validate the certificate provided by the server. This allows an attacker on the network path between the app and EVbee server to intercept and manipulate the communication between the app and…

  • CVE-2026-13014CriJul 13, 2026
    risk 0.00cvss —epss 0.01

    A vulnerability in Thales CERT "Suspicious" application =< 1.3.4 allows a remote and unauthenticated attacker to execute arbitrary code and arbitrarily overwrite writable application files—including Python modules, configuration files, cron inputs, and runtime…

  • CVE-2026-14453CriJul 13, 2026
    risk 0.55cvss 9.6epss 0.01

    This vulnerability is a critical Server-Side Template Injection (SSTI) in Centreon's centreon-open-tickets module that leads to Remote Code Execution. The message_confirm field is stored without sanitization and rendered via Smarty with no security policy enabled, allowing any…

  • CVE-2026-57830CriJul 13, 2026
    risk 0.00cvss 9.1epss 0.01

    Joomla Extension - joomshaper.com - Unauthenticated arbitrary file deletion in Helix Ultimate < 2.2.7 - The Joomla extension Helix Ultimate is vulnerable to an unauthenticated arbitrary file deletion.

  • CVE-2026-4769CriJul 13, 2026
    risk 0.00cvss 9.8epss 0.01

    Certain devices in the WAGO System I/O Field series activate an internal diagnostic capability during the initial startup sequence. This functionality is not formally documented and becomes accessible without authentication for a brief period in the early boot phase. During this…

  • CVE-2026-11964CriJul 13, 2026
    risk 0.00cvss 9.1epss 0.00

    The User Registration & Membership WordPress plugin before 5.2.2 does not verify the authenticity of incoming payment-provider webhook notifications before acting on them, allowing unauthenticated attackers to forge a payment-approved event and activate a paid membership…

  • CVE-2026-15511CriJul 12, 2026
    risk 0.00cvss 9.8epss 0.05

    A vulnerability was determined in Comfast CF-WR631AX V3 up to 2.7.0.8. Affected by this vulnerability is the function system_wl_upload_pic_file of the file /usr/bin/webmgnt of the component FastCGI Backend. This manipulation of the argument filename causes os command injection.…

  • CVE-2026-56271CriJul 12, 2026
    risk 0.00cvss 9.8epss 0.01

    Flowise before 3.1.0 (affected versions 3.0.13 and earlier) uses weak hardcoded default JWT secrets ('auth_token', 'refresh_token') and default audience and issuer values ('AUDIENCE', 'ISSUER') in the enterprise passport authentication middleware…

  • CVE-2026-56260CriJul 12, 2026
    risk 0.52cvss 9.1epss 0.01

    Crawl4AI before 0.8.7 contains an arbitrary file write vulnerability in the Docker API server's /screenshot and /pdf endpoints. The output_path parameter accepts arbitrary filesystem paths without validation, allowing an attacker to supply absolute or path-traversal values to…

  • CVE-2026-61447CriJul 11, 2026
    risk 0.00cvss 10.0epss 0.02

    PraisonAI before 1.6.78 contains a remote code execution vulnerability in CodeAgent._execute_python() that executes LLM-generated Python code without AST validation, import restrictions, or sandbox enforcement. Attackers can influence LLM output through prompt injection to…

  • CVE-2026-61445CriJul 11, 2026
    risk 0.00cvss 9.9epss 0.01

    PraisonAI before 4.6.78 contains arbitrary file write and command execution vulnerabilities in the AICoder component due to missing path validation and command sanitization in LLM tool calls. Attackers can inject malicious prompts through the chat interface to write files to…

  • CVE-2026-60090CriJul 11, 2026
    risk 0.00cvss 9.8epss 0.01

    PraisonAI before 4.6.78 fails to validate the caller-controlled dimension argument in the PGVector and Cassandra knowledge-store create_collection() backends. Although schema, keyspace, and collection-name identifiers are validated, the dimension value (declared as int but not…

  • CVE-2026-57827CriJul 11, 2026
    risk 0.00cvss 9.8epss 0.02

    Joomla Extension - rsjoomla.com - Unauthenticated file upload in RSFiles component < 1.17.12 - The Joomla extension RSFiles is vulnerable to an unauthenticated arbitrary file upload that allows uploading executable files and leads to full RCE.

  • CVE-2026-20744CriJul 10, 2026
    risk 0.64cvss 9.8epss 0.01

    The charging station websocket endpoint accepts connections without proper authentication, which could lead to privilege escalation.

  • CVE-2026-15089CriJul 10, 2026
    risk 0.59cvss 9.1epss 0.00

    Vulnerability in Drupal Commerce guest registration. This issue affects Commerce guest registration versions: *.*.

  • CVE-2026-14480CriJul 10, 2026
    risk 0.64cvss 9.9epss 0.01

    OpenPLC Runtime v3 contains an authenticated arbitrary file write vulnerability in the legacy web UI program‑upload workflow. The application stores an attacker‑supplied filename (prog_file) directly into the Programs.File database field and later uses this value as the …

  • CVE-2026-11913CriJul 10, 2026
    risk 0.64cvss 9.8epss 0.01

    vulnerability in Drupal Mother May I allows . This issue affects Mother May I versions: *.*.

  • CVE-2026-55884CriJul 10, 2026
    risk 0.53cvss —epss 0.01

    Tilt defines dev environments as code for microservice apps on Kubernetes. From 0.20.8 through 0.37.3, the Tilt HUD HTTP server registers handlers on a gorilla/mux router with no authenticating middleware. When the HUD is bound to a non-loopback address, an unauthenticated…

  • CVE-2026-12535CriJul 10, 2026
    risk 0.57cvss 9.8epss 0.01

    Improperly Controlled Modification of Dynamically-Determined Object Attributes vulnerability in Drupal Formatter Field allows Object Injection. This issue affects Formatter Field versions: from 0.0.0 to 2.0.0.

  • CVE-2026-10768CriJul 10, 2026
    risk 0.57cvss 9.8epss 0.02

    Missing Authorization vulnerability in Drupal LocalGov Workflows allows Forceful Browsing. This issue affects LocalGov Workflows versions: from 0.0.0 to 1.6.0.

  • CVE-2026-9726CriJul 10, 2026
    risk 0.64cvss 9.8epss 0.01

    Improperly Controlled Modification of Dynamically-Determined Object Attributes vulnerability in Drupal Drupal AlternativeCommerce (Basket) allows Object Injection. This issue affects Drupal AlternativeCommerce (Basket) versions: from 0.0.0 to 2.1.17.

  • CVE-2026-57807CriJul 10, 2026
    risk 0.00cvss 9.8epss 0.01

    Authentication Bypass Using an Alternate Path or Channel vulnerability in miniOrange Security Software Pvt Ltd. OAuth Single Sign On - SSO (OAuth Client) allows Password Recovery Exploitation. This issue affects OAuth Single Sign On - SSO (OAuth Client): from n/a through 38.5.8.

  • CVE-2026-55879CriJul 10, 2026
    risk 0.00cvss 9.3epss 0.01

    OpenReplay is a self-hosted session replay suite. From 1.24.0 before 1.25.0, the OpenReplay tracking SDK accepts custom event names and captured page URLs from any visitor using a public project key, stores them in ClickHouse without output encoding, and later renders them in…

  • CVE-2026-12761CriJul 10, 2026
    risk 0.57cvss 9.8epss 0.01

    The miniOrange Social Login and Register (Discord, Google, Twitter, LinkedIn) plugin for WordPress is vulnerable to authentication bypass leading to account takeover in versions up to and including 7.7.0. This is due to the Profile Completion flow accepting an arbitrary email…

  • CVE-2026-57158CriJul 10, 2026
    risk 0.52cvss 9.1epss 0.01

    FreeRDP is a free implementation of the Remote Desktop Protocol. From 3.21.0 before 3.28.0, FreeRDP clients using the GFX pipeline contain an incomplete fix for CVE-2026-23530 in planar_decompress_plane_rle_only in libfreerdp/codec/planar.c, allowing a malicious RDP server to…

  • CVE-2026-57156CriJul 10, 2026
    risk 0.57cvss 9.8epss 0.01

    FreeRDP is a free implementation of the Remote Desktop Protocol. Prior to 3.28.0 on 32-bit builds, FreeRDP clients contain an integer overflow in update_read_delta_points in libfreerdp/core/orders.c when multiplying an attacker-controlled point count by sizeof(DELTA_POINT),…

  • CVE-2026-61459CriJul 10, 2026
    risk 0.60cvss 9.8epss 0.02

    MCP Server Kubernetes before 3.9.0 contains an argument injection vulnerability in structured tools (kubectl_get, kubectl_describe, kubectl_delete) that allows attackers to bypass the assertNoDangerousFlags security check by supplying resourceType and name parameters with…

  • CVE-2026-5801CriJul 10, 2026
    risk 0.00cvss 9.8epss 0.01

    Improper neutralization of special elements used in an SQL command ('SQL injection') vulnerability in Semtek Informatics Software Consulting Trade Ltd. Co. SEM-PMP allows Command Line Execution through SQL Injection. This issue affects SEM-PMP: through 23042026.

  • CVE-2026-59151CriJul 10, 2026
    risk 0.55cvss 9.6epss 0.01

    Prowler is a cloud security platform. Prior to 5.30.3, Prowler's SAML authentication flow trusted the email domain asserted in a SAMLResponse when deciding which tenant should receive the final token, and the ACS finish logic in api/src/backend/api/v1/views.py recalculated the…

  • CVE-2026-2397CriJul 10, 2026
    risk 0.00cvss 9.8epss 0.00

    Improper neutralization of special elements used in an SQL command ('SQL injection') vulnerability in Adam Retail Automation Ltd. MobilMen 20T allows SQL Injection. This issue affects MobilMen 20T: from v3 through 10072026. NOTE: The vendor was contacted early about this…

  • CVE-2026-58492CriJul 10, 2026
    risk 0.00cvss —epss 0.01

    grav-plugin-database is the database plugin for Grav CMS. Prior to 1.2.0, the PDO::tableExists method interpolates its table argument directly into a raw SQL query string without sanitization, escaping, quoting, or whitelisting, allowing attacker-controlled table names passed by…

  • CVE-2026-51119CriJul 10, 2026
    risk 0.00cvss 9.1epss 0.01

    An issue in Invixium IXM WEB v.2.3.85.25 allows an attacker to escalate privileges via the /SystemUsers/CreateAppUser components