Search

Published: All 7d 30d 90d 12m
Clear
Severity: All Critical High Medium Low

1,425 CVEs · published 2026-08-18 to 2026-08-18

CVEs (1,425, showing first 500)

Only the first 500 CVEs (by current sort) are shown when searching without a keyword. Add a search term above to narrow the results.

Showing 1–25 of 1,425 (capped at 500)

CVE ID Severity Patch CVSS Published Description
CVE-2026-75079 HIGH 7.3 2026-08-18 A weakness has been identified in SourceCodester Class and Exam Timetabling System 1.0. This vulnerability affects unknown code of the file /edit_subject2.php. Executing a …
CVE-2026-75080 HIGH 7.3 2026-08-18 A security vulnerability has been detected in SourceCodester Class and Exam Timetabling System 1.0. This issue affects some unknown processing of the file /edit_subject1.ph…
CVE-2026-75081 MEDIUM 4.3 2026-08-18 A vulnerability was detected in Webkul Bagisto up to 2.4.4. Impacted is an unknown function of the file /customer/account/rma/store. The manipulation of the argument rma_qt…
CVE-2026-75082 MEDIUM 4.3 2026-08-18 A flaw has been found in Webkul Bagisto up to 2.4.4. The affected element is an unknown function of the file /customer/register of the component Customer-Registration Notif…
CVE-2026-75086 MEDIUM 6.3 2026-08-18 A vulnerability has been found in itsourcecode Hospital Management System 1.0. The impacted element is an unknown function of the file /viewroom.php. Such manipulation of t…
CVE-2026-75087 MEDIUM 6.3 2026-08-18 A vulnerability was found in itsourcecode Hospital Management System 1.0. This affects an unknown function of the file /viewdepartment.php. Performing a manipulation of the…
CVE-2026-75088 MEDIUM 6.3 2026-08-18 A vulnerability was determined in itsourcecode Hospital Management System 1.0. This impacts an unknown function of the file /viewbilling.php. Executing a manipulation of th…
CVE-2026-75089 HIGH 7.3 2026-08-18 A weakness has been identified in PHPGurukul Complaint Management System 1.0. Affected by this issue is some unknown functionality of the file user/check_availability.php. …
CVE-2026-75090 MEDIUM 4.3 2026-08-18 A vulnerability was detected in EricLBuehler Mistral.rs up to 0.8.22. Affected by this issue is the function convert_gguf_to_hf_tokenizer of the file mistralrs-core/src/ggu…
CVE-2026-75093 MEDIUM 4.3 2026-08-18 A security vulnerability has been detected in sonos tract up to 0.23.4. This impacts the function Tensor::from_raw_dt_align of the file data/src/tensor.rs of the component …
CVE-2026-75094 CRITICAL 9.1 2026-08-18 A flaw has been found in COMFAST CF-N1-S 2.6.0.1. This impacts the function sub_44B438 of the file /cgi-bin/mbox-config?method=SET&section=ptest_ssid of the component CGI I…
CVE-2026-11801 HIGH 7.5 2026-08-18 The WPAdverts – Classifieds Plugin plugin for WordPress is vulnerable to authorization bypass in all versions up to, and including, 2.3.2. This is due to the plugin not pro…
CVE-2026-75151 MEDIUM 4.3 2026-08-18 A vulnerability has been found in SourceCodester Onlne Examination & Learning Management System 1.0. Affected by this vulnerability is an unknown functionality. The manipul…
CVE-2026-15748 CRITICAL 9.8 2026-08-18 The Forminator Forms plugin for WordPress is vulnerable to Arbitrary File Upload in all versions up to, and including, 1.56.1 via the handle_file_upload function. This is d…
CVE-2026-75091 HIGH 7.2 2026-08-18 The Quill Forms | Conversational Multi Step Forms, Surveys & quizzes plugin for WordPress is vulnerable to Stored Cross-Site Scripting in all versions up to, and including,…
CVE-2026-15371 HIGH 8.1 2026-08-18 Velociraptor's web GUI allows specifying a custom type for columns in tables. The URL type takes the cell value and forms a URL which can be clicked in the GUI.The code doe…
CVE-2026-34884 NONE Patched — 2026-08-18 SSRF via set_skywalking_url Tool and GraphQL expression injection vulnerability in Apache SkyWalking MCP. This issue affects Apache SkyWalking MCP: 0.1.0. Users are r…
CVE-2024-14045 MEDIUM 6.3 2026-08-18 A weakness has been identified in OpenBoxes up to 0.9.2. This vulnerability affects unknown code of the file grails-app/controllers/org/pih/warehouse/RoleInterceptor.groovy…
CVE-2026-43971 NONE — 2026-08-18 Improper Encoding or Escaping of Output vulnerability in ninenines cowlib allows Link header directive smuggling via unescaped special characters in cow_link:link/1. cow_l…
CVE-2026-18929 NONE Patched — 2026-08-18 Carbone is vulnerable to Denial of Service due to lack of protection against zip bombs when processing .docx files. The library uses yazl for zip decompression without vali…
CVE-2024-14046 MEDIUM 6.3 2026-08-18 A security vulnerability has been detected in OpenBoxes up to 0.9.1. This issue affects the function DocumentController of the file grails-app/controllers/org/pih/warehouse…
CVE-2026-19447 MEDIUM Patched 5.4 2026-08-18 Improper neutralization of input during web page generation ('cross-site scripting') vulnerability in Fileorbis Informatics Services Trade Inc. FileOrbis allows Stored XSS.…
CVE-2026-19608 MEDIUM 5.3 2026-08-18 A flaw was found in the group policy provider of Keycloak authorization services, which is used to manage fine-grained access control to resources. The issue occurs when th…
CVE-2026-75626 CRITICAL 9.3 2026-08-18 SpiderFoot fails to HTML-escape correlation titles built from external scan data sources including server banners and metadata. Attackers can inject malicious HTML elements…
CVE-2026-75627 CRITICAL 9.8 2026-08-18 Bastillion fails to properly validate request URI paths in its controller dispatcher, allowing unauthenticated attackers to bypass authentication filters by prefixing reque…