Search

Published: All 7d 30d 90d 12m
Severity: All Critical High Medium Low

23,162 CVEs

CVEs (23,162, showing first 500)

Only the first 500 CVEs (by current sort) are shown when searching without a keyword. Add a search term above to narrow the results.

Showing 201–225 of 23,162 (capped at 500)

CVE ID Severity Patch CVSS Published Description
CVE-2026-65469 MEDIUM 5.3 2026-07-23 Unauthenticated Broken Access Control in AWP Classifieds <= 4.4.7 versions.
CVE-2026-65468 MEDIUM 5.3 2026-07-23 Unauthenticated Broken Access Control in JetBooking <= 4.1.2 versions.
CVE-2026-65467 MEDIUM 4.9 2026-07-23 Contributor Server Side Request Forgery (SSRF) in JetEngine <= 3.8.11 versions.
CVE-2026-65466 MEDIUM 4.9 2026-07-23 Custom role Server Side Request Forgery (SSRF) in JetBooking <= 4.1.2 versions.
CVE-2026-65465 MEDIUM 6.5 2026-07-23 Contributor Cross Site Scripting (XSS) in JetElements For Elementor <= 2.9.1.1 versions.
CVE-2026-65464 MEDIUM 5.4 2026-07-23 Unauthenticated Cross Site Request Forgery (CSRF) in GiveWP <= 4.16.3 versions.
CVE-2026-65463 MEDIUM 5.4 2026-07-23 Subscriber Insecure Direct Object References (IDOR) in Masteriyo - LMS <= 2.3.1 versions.
CVE-2026-65462 HIGH 7.6 2026-07-23 Administrator SQL Injection in Uncanny Automator <= 7.3.2 versions.
CVE-2026-65461 CRITICAL 9.1 2026-07-23 Administrator Arbitrary File Upload in Really Simple CSV Importer <= 1.3 versions.
CVE-2026-65460 MEDIUM 4.3 2026-07-23 Unauthenticated Cross Site Request Forgery (CSRF) in Zarinpal Gateway <= 5.1.0 versions.
CVE-2026-65458 MEDIUM 4.3 2026-07-23 Contributor Sensitive Data Exposure in Polylang <= 3.8.5 versions.
CVE-2026-65457 MEDIUM 4.3 2026-07-23 Subscriber Broken Access Control in ЮKassa для WooCommerce <= 2.16.1 versions.
CVE-2026-65456 MEDIUM 4.3 2026-07-23 Contributor Insecure Direct Object References (IDOR) in Product Slider for WooCommerce <= 1.13.62 versions.
CVE-2026-65455 CRITICAL 9.1 2026-07-23 Administrator Arbitrary File Upload in MapSVG <= 8.14.0 versions.
CVE-2026-65454 HIGH 8.5 2026-07-23 Contributor SQL Injection in Quiz And Survey Master <= 11.2.0 versions.
CVE-2026-65453 MEDIUM 5.3 2026-07-23 Unauthenticated Broken Access Control in Ebook Store <= 6.19 versions.
CVE-2026-65452 MEDIUM 5.3 2026-07-23 Unauthenticated Broken Access Control in Ebook Store <= 6.19 versions.
CVE-2026-65451 HIGH 8.5 2026-07-23 Contributor SQL Injection in MapSVG <= 8.14.0 versions.
CVE-2026-65450 HIGH 8.5 2026-07-23 Contributor SQL Injection in MapSVG <= 8.14.0 versions.
CVE-2026-65449 MEDIUM 6.5 2026-07-23 Contributor Cross Site Scripting (XSS) in MapSVG <= 8.14.0 versions.
CVE-2026-64815 HIGH Patched 8.1 2026-07-23 In JetBrains IntelliJ IDEA before 2026.2 arbitrary code injection was possible via UI Designer form files
CVE-2026-64814 HIGH Patched 8.6 2026-07-23 In JetBrains IntelliJ IDEA before 2026.2 unauthorized file access was possible in a Remote Development session
CVE-2026-64813 CRITICAL Patched 10.0 2026-07-23 In JetBrains IntelliJ IDEA before 2026.2 unauthorized settings modification was possible in a Remote Development session
CVE-2026-64812 CRITICAL Patched 10.0 2026-07-23 In JetBrains IntelliJ IDEA before 2026.2 unauthorized input injection was possible in a Remote Development session
CVE-2026-64811 HIGH Patched 7.8 2026-07-23 In JetBrains IntelliJ IDEA before 2026.2 arbitrary code execution was possible before granting project trust via development container configuration