Search
78,493 CVEs
EOL hidden · Show all products
CVEs (78,493, showing first 500)
Only the first 500 CVEs (by current sort) are shown when searching without a keyword. Add a search term above to narrow the results.
Showing 101–125 of 78,493 (capped at 500)
| CVE ID | Severity | Patch | CVSS | Published ↓ | Description |
|---|---|---|---|---|---|
| CVE-2026-71377 | CRITICAL | Patched | 9.8 | 2026-09-08 | Command Argument Injection Vulnerability in Cosminexus Component Container. This issue affects Cosminexus Component Container: from 11-70-01 before 11-70-03, from 11-60 be… |
| CVE-2026-71376 | CRITICAL | Patched | 9.8 | 2026-09-08 | OS command injection vulnerability in Cosminexus Component Container. This issue affects Cosminexus Component Container: from 11-70-01 before 11-70-03, from 11-60 before 1… |
| CVE-2026-67367 | HIGH | 8.6 | 2026-09-08 | A vulnerability has been identified in SIMOVE Fleetmanager V3.1 (All versions < V3.1.13), SIMOVE Fleetmanager V3.2 (All versions < V3.2.4), SIMOVE Fleetmanager V3.3 (All ve… | |
| CVE-2026-62654 | MEDIUM | 6.8 | 2026-09-08 | A vulnerability has been identified in Reyrolle 7SR5 (All versions < V2.70). A special maintenance mode can be activated via a physical key sequence during device boot, in … | |
| CVE-2026-62653 | MEDIUM | 6.8 | 2026-09-08 | A vulnerability has been identified in Reyrolle 7SR5 (All versions < V2.70). The input received over a proprietary communication protocol that is exposed when the device is… | |
| CVE-2026-62652 | MEDIUM | 5.3 | 2026-09-08 | A vulnerability has been identified in Reyrolle 7SR5 (All versions < V2.70). The device firmware contains binaries from which debugging symbols have not been removed. This … | |
| CVE-2026-62650 | HIGH | 8.8 | 2026-09-08 | A vulnerability has been identified in Reyrolle 7SR5 (All versions < V2.70). Server-side authorization checks in the web-based management interface are not properly enforce… | |
| CVE-2026-62649 | HIGH | 7.5 | 2026-09-08 | A vulnerability has been identified in Reyrolle 7SR5 (All versions < V2.70). The web server does not properly limit or manage system resources when processing a high volume… | |
| CVE-2026-62648 | HIGH | 7.5 | 2026-09-08 | A vulnerability has been identified in Reyrolle 7SR5 (All versions < V2.70). The length of the URL component contained in pre-authenticated HTTP messages is not properly va… | |
| CVE-2026-62647 | HIGH | 7.4 | 2026-09-08 | A vulnerability has been identified in Reyrolle 7SR5 (All versions < V2.70). A random number generator is used to generate security-relevant values (such as session identif… | |
| CVE-2026-62646 | HIGH | 7.4 | 2026-09-08 | A vulnerability has been identified in Reyrolle 7SR5 (All versions < V2.70). A session identifier is generated using an algorithm with insufficient randomness, resulting in… | |
| CVE-2026-62645 | CRITICAL | 9.8 | 2026-09-08 | A vulnerability has been identified in Reyrolle 7SR5 (All versions < V2.70). Information is exposed through the web interface that can be used to calculate the current and … | |
| CVE-2026-58113 | MEDIUM | 6.1 | 2026-09-08 | A vulnerability has been identified in Teamcenter V2412 (All versions < V2412.0013), Teamcenter V2506 (All versions < V2506.0010), Teamcenter V2512 (All versions < V2512.26… | |
| CVE-2026-50093 | CRITICAL | 9.0 | 2026-09-08 | A vulnerability has been identified in Siveillance Control Pro V3.0 (All versions < V3.0.12.2173), Siveillance Control Pro V4.0 (All versions < V4.0.9.2178), Siveillance Co… | |
| CVE-2026-34223 | HIGH | 8.2 | 2026-09-08 | A vulnerability has been identified in Desigo CC ClickOnce Client V6 (All versions), Desigo CC ClickOnce Client V7 (All versions), Desigo CC family V8 (All versions), Desig… | |
| CVE-2026-84820 | HIGH | 7.1 | 2026-09-08 | Unauthenticated Cross Site Scripting (XSS) in Unlimited Elements For Elementor (Free Widgets, Addons, Templates) <= 2.0.17 versions. | |
| CVE-2026-84818 | HIGH | 7.1 | 2026-09-08 | Unauthenticated Cross Site Scripting (XSS) in Open User Map <= 1.4.50 versions. | |
| CVE-2026-84817 | HIGH | 7.1 | 2026-09-08 | Unauthenticated Cross Site Scripting (XSS) in JetFormBuilder <= 3.6.5.1 versions. | |
| CVE-2026-81806 | HIGH | 7.2 | 2026-09-08 | Server-Side Request Forgery (SSRF) vulnerability in John Darrel Hide My WP Ghost allows Server Side Request Forgery. This issue affects Hide My WP Ghost: from n/a through 7.0.09. | |
| CVE-2026-81802 | MEDIUM | 6.5 | 2026-09-08 | Unauthenticated Insecure Direct Object References (IDOR) in WpEvently <= 5.6.0 versions. | |
| CVE-2026-81798 | HIGH | 7.1 | 2026-09-08 | Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Easy Appointments allows DOM-Based XSS. This issue affects Easy Appoi… | |
| CVE-2026-81792 | MEDIUM | 6.5 | 2026-09-08 | Unauthenticated Privilege Escalation in Product Catalog Enquiry for WooCommerce by MultiVendorX <= 6.1.4 versions. | |
| CVE-2026-81790 | HIGH | Patched | 7.5 | 2026-09-08 | Missing Authorization vulnerability in Viszt Péter Csomagpontok és szállítási címkék WooCommerce-hez allows Exploiting Incorrectly Configured Access Control Security Levels… |
| CVE-2026-81781 | HIGH | 7.1 | 2026-09-08 | Missing Authorization vulnerability in Unbounce Unbounce Landing Pages unbounce allows Exploiting Incorrectly Configured Access Control Security Levels. This issue affects… | |
| CVE-2026-76561 | HIGH | 7.2 | 2026-09-08 | A flaw was found in Dogtag PKI, as used by FreeIPA's certificate authority component. The certificate profile import functionality does not fully validate uploaded profile … |