Search

Published: All 7d 30d 90d 12m
Severity: All Critical High Medium Low

23,330 CVEs · High severity

CVEs (23,330, showing first 500)

Only the first 500 CVEs (by current sort) are shown when searching without a keyword. Add a search term above to narrow the results.

Showing 51–75 of 23,330 (capped at 500)

CVE ID Severity Patch CVSS Published Description
CVE-2026-65510 HIGH 7.1 2026-07-23 Unauthenticated Cross Site Scripting (XSS) in PeproDev Ultimate Invoice <= 2.2.6 versions.
CVE-2026-65500 HIGH 7.5 2026-07-23 Unauthenticated Broken Access Control in Manual - Documentation, Knowledge Base & Education WordPress Theme <= 7.5.4 versions.
CVE-2026-65497 HIGH 7.2 2026-07-23 Administrator PHP Object Injection in Complianz <= 7.5.0 versions.
CVE-2026-65495 HIGH 7.5 2026-07-23 Unauthenticated Broken Access Control in Dokan Pro <= 5.0.3 versions.
CVE-2026-65494 HIGH 7.1 2026-07-23 Subscriber SQL Injection in Dokan Pro <= 5.0.2 versions.
CVE-2026-65493 HIGH 7.5 2026-07-23 Subscriber PHP Object Injection in Dokan Pro <= 5.0.2 versions.
CVE-2026-65492 HIGH 7.1 2026-07-23 Unauthenticated Cross Site Scripting (XSS) in Dokan Pro <= 5.0.0 versions.
CVE-2026-65488 HIGH 7.1 2026-07-23 Unauthenticated Cross Site Request Forgery (CSRF) in LA-Studio Element Kit for Elementor <= 1.6.2 versions.
CVE-2026-65481 HIGH 7.5 2026-07-23 Contributor Local File Inclusion in Vino <= 1.9 versions.
CVE-2026-65477 HIGH 7.5 2026-07-23 Contributor Local File Inclusion in Tonda Core <= 2.1.2 versions.
CVE-2026-65462 HIGH 7.6 2026-07-23 Administrator SQL Injection in Uncanny Automator <= 7.3.2 versions.
CVE-2026-65454 HIGH 8.5 2026-07-23 Contributor SQL Injection in Quiz And Survey Master <= 11.2.0 versions.
CVE-2026-65451 HIGH 8.5 2026-07-23 Contributor SQL Injection in MapSVG <= 8.14.0 versions.
CVE-2026-65450 HIGH 8.5 2026-07-23 Contributor SQL Injection in MapSVG <= 8.14.0 versions.
CVE-2026-64815 HIGH Patched 8.1 2026-07-23 In JetBrains IntelliJ IDEA before 2026.2 arbitrary code injection was possible via UI Designer form files
CVE-2026-64814 HIGH Patched 8.6 2026-07-23 In JetBrains IntelliJ IDEA before 2026.2 unauthorized file access was possible in a Remote Development session
CVE-2026-64811 HIGH Patched 7.8 2026-07-23 In JetBrains IntelliJ IDEA before 2026.2 arbitrary code execution was possible before granting project trust via development container configuration
CVE-2026-64809 HIGH Patched 8.4 2026-07-23 In JetBrains PhpStorm before 2026.2 arbitrary code execution was possible before granting project trust via the configured interpreter
CVE-2026-64808 HIGH Patched 8.4 2026-07-23 In JetBrains PhpStorm before 2026.2 arbitrary code execution was possible before granting project trust via project tooling
CVE-2026-64807 HIGH Patched 7.8 2026-07-23 In JetBrains WebStorm before 2026.2 arbitrary code execution was possible via a project-supplied linter configuration
CVE-2026-64806 HIGH Patched 8.4 2026-07-23 In JetBrains WebStorm before 2026.2 arbitrary code execution was possible before granting project trust via the configured Node.js interpreter
CVE-2026-64805 HIGH Patched 8.4 2026-07-23 In JetBrains WebStorm before 2026.2 arbitrary code execution was possible before granting project trust via project-local package-manager tooling
CVE-2026-64804 HIGH Patched 8.4 2026-07-23 In JetBrains WebStorm before 2026.2 arbitrary code execution was possible before granting project trust via project-local linter tooling
CVE-2026-64803 HIGH Patched 7.8 2026-07-23 In JetBrains GoLand before 2026.2 arbitrary code execution was possible before granting project trust via the configured Go SDK
CVE-2026-64802 HIGH Patched 7.8 2026-07-23 In JetBrains GoLand before 2026.2 arbitrary code execution was possible before granting project trust in the Go Modules integration