Search
23,172 CVEs
CVEs (23,172, showing first 500)
Only the first 500 CVEs (by current sort) are shown when searching without a keyword. Add a search term above to narrow the results.
Showing 126–150 of 23,172 (capped at 500)
| CVE ID | Severity | Patch | CVSS | Published ↑ | Description |
|---|---|---|---|---|---|
| CVE-2026-7071 | MEDIUM | 5.3 | 2026-04-27 | A security vulnerability has been detected in CodeAstro Online Job Portal 1.0. Affected by this vulnerability is an unknown functionality of the file /users/user-cvs/. The … | |
| CVE-2026-7072 | HIGH | 7.3 | 2026-04-27 | A vulnerability was detected in CodePanda Source canteen_management_system 1.0. Affected by this issue is some unknown functionality of the file /api/login.php. The manipul… | |
| CVE-2026-7073 | HIGH | 7.3 | 2026-04-27 | A flaw has been found in itsourcecode Construction Management System 1.0. This affects an unknown part of the file /execute.php. This manipulation of the argument code caus… | |
| CVE-2026-7074 | HIGH | 7.3 | 2026-04-27 | A vulnerability has been found in itsourcecode Construction Management System 1.0. This vulnerability affects unknown code of the file /execute1.php. Such manipulation of t… | |
| CVE-2026-7075 | HIGH | 7.3 | 2026-04-27 | A vulnerability was found in itsourcecode Construction Management System 1.0. This issue affects some unknown processing of the file /locations.php. Performing a manipulati… | |
| CVE-2026-7076 | HIGH | 7.3 | 2026-04-27 | A vulnerability was determined in itsourcecode Courier Management System 1.0. Impacted is an unknown function of the file /edit_branch.php. Executing a manipulation of the … | |
| CVE-2026-3006 | HIGH | 7.0 | 2026-04-27 | Successful exploitation of the race condition vulnerability could allow an attacker to trigger a kernel heap overflow, potentially leading to local privilege escalation and… | |
| CVE-2026-7077 | HIGH | 7.3 | 2026-04-27 | A vulnerability was identified in itsourcecode Courier Management System 1.0. The affected element is an unknown function of the file /edit_parcel.php. The manipulation of … | |
| CVE-2026-7078 | HIGH | 8.8 | 2026-04-27 | A security flaw has been discovered in Tenda F456 1.0.0.5. The impacted element is the function fromSetIpBind of the file /goform/SetIpBind of the component httpd. The mani… | |
| CVE-2026-7079 | HIGH | 8.8 | 2026-04-27 | A weakness has been identified in Tenda F456 1.0.0.5. This affects the function fromAdvSetWan of the file /goform/AdvSetWan of the component httpd. This manipulation of the… | |
| CVE-2026-7080 | HIGH | 8.8 | 2026-04-27 | A security vulnerability has been detected in Tenda F456 1.0.0.5. This impacts the function fromPPTPUserSetting of the file /goform/PPTPUserSetting of the component httpd. … | |
| CVE-2026-7106 | HIGH | 8.8 | 2026-04-27 | The Highland Software Custom Role Manager plugin for WordPress is vulnerable to Privilege Escalation in versions up to and including 1.0.0. This is due to insufficient auth… | |
| CVE-2026-3867 | NONE | — | 2026-04-27 | An improper ownership management vulnerability has been identified in Moxa’s Secure Router. Because of improper ownership management, a low-privileged authenticated user ma… | |
| CVE-2026-3868 | NONE | — | 2026-04-27 | An improper handling of the length parameter inconsistency vulnerability has been identified in Moxa’s Secure Router. Because of improper validation of length parameters in… | |
| CVE-2026-7081 | HIGH | 8.8 | 2026-04-27 | A vulnerability was detected in Tenda F456 1.0.0.5. Affected is the function fromGstDhcpSetSer of the file /goform/GstDhcpSetSer of the component httpd. Performing a manipu… | |
| CVE-2026-7082 | HIGH | 8.8 | 2026-04-27 | A flaw has been found in Tenda F456 1.0.0.5. Affected by this vulnerability is the function formWrlExtraSet of the file /goform/WrlExtraSet of the component httpd. Executin… | |
| CVE-2026-7083 | MEDIUM | 4.7 | 2026-04-27 | A vulnerability has been found in likeadmin-likeshop likeadmin_php up to 1.9.6. Affected by this issue is the function queryResult of the file server\app\adminapi\lists\too… | |
| CVE-2026-7084 | MEDIUM | 6.3 | 2026-04-27 | A vulnerability was found in HBAI-Ltd Toonflow-app up to 1.1.1. This affects the function fetch of the file src/routes/setting/vendorConfig/getCodeByLink.ts of the componen… | |
| CVE-2026-7085 | MEDIUM | 5.0 | 2026-04-27 | A vulnerability was determined in HBAI-Ltd Toonflow-app up to 1.1.1. This vulnerability affects the function z.url of the file src/routes/setting/about/downloadApp.ts of th… | |
| CVE-2026-7086 | MEDIUM | 4.3 | 2026-04-27 | A vulnerability was identified in HBAI-Ltd Toonflow-app up to 1.1.1. This issue affects the function updateStoryboardUrl of the file replaceUrl.ts of the component Storyboa… | |
| CVE-2026-7087 | HIGH | 7.3 | 2026-04-27 | A security flaw has been discovered in SourceCodester Pharmacy Sales and Inventory System 1.0. Impacted is an unknown function of the file /ajax.php?action=save_sales. Perf… | |
| CVE-2026-7088 | HIGH | 7.3 | 2026-04-27 | A weakness has been identified in SourceCodester Pharmacy Sales and Inventory System 1.0. The affected element is an unknown function of the file /ajax.php?action=save_rece… | |
| CVE-2026-7089 | MEDIUM | 4.3 | 2026-04-27 | A security vulnerability has been detected in code-projects Home Service System 1.0. The impacted element is an unknown function of the file /booking.php of the component A… | |
| CVE-2026-7090 | LOW | 2.4 | 2026-04-27 | A vulnerability was detected in code-projects Chat System 1.0. This affects an unknown function of the file /admin/send_message.php of the component Chat Interface. The man… | |
| CVE-2026-3008 | MEDIUM | 6.6 | 2026-04-27 | Successful exploitation of the string injection vulnerability could allow an attacker to obtain memory address information or crash the application. |