Search

Published: All 7d 30d 90d 12m
Severity: All Critical High Medium Low

2,372 CVEs

CVEs (2,372, showing first 500)

Only the first 500 CVEs (by current sort) are shown when searching without a keyword. Add a search term above to narrow the results.

Showing 201–225 of 2,372 (capped at 500)

CVE ID Severity Patch CVSS Published Description
CVE-2026-86224 HIGH 7.3 2026-09-06 A vulnerability was determined in SourceCodester Class and Exam Timetabling System 1.0. Affected is the function mysqli_query of the file /admin/modal_add_product.php. Exec…
CVE-2026-86223 HIGH 7.3 2026-09-06 A vulnerability was found in SourceCodester Class and Exam Timetabling System 1.0. This impacts the function mysqli_query of the file /admin/modal_add_coursea.php. Performi…
CVE-2026-86222 HIGH 7.3 2026-09-06 A vulnerability has been found in SourceCodester Class and Exam Timetabling System 1.0. This affects the function mysqli_query of the file /admin/modal_add_course2.php. Suc…
CVE-2026-86221 HIGH 7.3 2026-09-06 A flaw has been found in SourceCodester Class and Exam Timetabling System 1.0. The impacted element is the function mysqli_query of the file /admin/modal_add_course1.php. T…
CVE-2026-86220 HIGH 7.3 2026-09-06 A vulnerability was detected in SourceCodester Class and Exam Timetabling System 1.0. The affected element is the function mysqli_query of the file /admin/modal_add_course.…
CVE-2026-86219 NONE Patched — 2026-09-06 Authen::SASL::Perl::DIGEST_MD5 versions before 2.2100 for Perl accept replayed authentication responses via unverified nonce in server_step. server_start generates a fresh…
CVE-2026-86218 NONE Patched — 2026-09-06 N-central is vulnerable to a pre-auth remote code execution This issue affects N-central: before 2026.3.1.14.
CVE-2026-86217 MEDIUM 5.3 2026-09-06 A vulnerability was detected in code-projects Hotel and Tourism Reservation in PHP 1.0. Affected is an unknown function of the file /ht/hotel_db%20(1).sql of the component …
CVE-2026-86216 MEDIUM 4.3 2026-09-06 A security vulnerability has been detected in code-projects Hotel and Tourism Reservation in PHP 1.0. This impacts an unknown function of the file /ht/details.php. The mani…
CVE-2026-86215 MEDIUM 4.3 2026-09-06 A vulnerability was identified in Mstfakts College-Management-System. The affected element is an unknown function of the file Front-end/server.php of the component Logout H…
CVE-2026-86214 HIGH 7.3 2026-09-06 A vulnerability was determined in Mstfakts College-Management-System. Impacted is an unknown function of the file Front-end/login.php. This manipulation of the argument ema…
CVE-2026-86213 HIGH 7.3 2026-09-06 A vulnerability was found in Mstfakts College-Management-System. This issue affects the function mysqli_query of the file Front-end/university.php of the component Search H…
CVE-2026-86212 MEDIUM 4.3 2026-09-06 A vulnerability has been found in Open5GS 2.7.7/2.8.0. This vulnerability affects unknown code of the component AMF/MME. The manipulation leads to improper authorization. T…
CVE-2026-86211 HIGH 7.3 2026-09-06 A flaw has been found in rabindralamsal inventory-management-system 1.0.0. This affects an unknown part of the file index.php of the component Login. Executing a manipulati…
CVE-2026-86210 HIGH 7.3 2026-09-06 A security vulnerability has been detected in SourceCodester Class and Exam Timetabling System 1.0. Affected by this vulnerability is an unknown functionality of the file /…
CVE-2026-86209 HIGH 7.3 2026-09-06 A weakness has been identified in SourceCodester Class and Exam Timetabling System 1.0. Affected is an unknown function of the file /delete_user.php. This manipulation of t…
CVE-2026-86208 HIGH 7.3 2026-09-06 A security flaw has been discovered in SourceCodester Class and Exam Timetabling System 1.0. This impacts an unknown function of the file /delete_teacher.php. The manipulat…
CVE-2026-86207 NONE &mdash; 2026-09-05 An authentication bypass in N-central < 2026.3 HF 3 leads to authentication bypass in internal only APIs
CVE-2026-86206 NONE Patched &mdash; 2026-09-05 A vulnerability in the N-central internal API access control filter allows unauthorised access to internal APIs. This is fixed in N-central 2026.3 HF3 and 2026.4
CVE-2026-86205 MEDIUM Patched 5.4 2026-09-06 h3 versions before 2.0.1-rc.18 contain an open redirect vulnerability in the redirectBack() utility that fails to sanitize protocol-relative paths in the Referer header pat&hellip;
CVE-2026-86197 NONE Patched &mdash; 2026-09-05 Grav before 2.0.20 contains a cross-site scripting vulnerability in the Twig sandbox policy that allowlists addJs and addCss methods on Grav\Common\Assets without proper ou&hellip;
CVE-2026-86196 NONE Patched &mdash; 2026-09-05 Grav API plugin versions before 1.0.20 build password reset links from the untrusted Host header in the forgot-password endpoint, allowing unauthenticated attackers to redi&hellip;
CVE-2026-86195 NONE Patched &mdash; 2026-09-05 grav-plugin-api versions before 1.0.20 contain a privilege escalation vulnerability in the InvitationsController where the stripSuperFlags() method only removes nested supe&hellip;
CVE-2026-86194 NONE Patched &mdash; 2026-09-05 Grav Form Plugin before 9.1.22 fails to verify page authorization when resolving forms by name across pages, allowing anonymous visitors to execute form actions defined on &hellip;
CVE-2026-86193 NONE Patched &mdash; 2026-09-05 grav-plugin-api before 1.0.20 fails to validate group-inherited super permissions in user-management guards, allowing non-super user managers to modify super-admin accounts&hellip;