Vulnerabilities

Recent vulnerabilities

Recent vulnerabilities from
Select from 81 available sources using the dropdown above.

CVE Program

Recent vulnerabilities · 400548 entries
ID CVSS Description Vendor Product Published Updated
CVE-2026-97318
N/A
Giveaways and Contests by RafflePress < 1.12.27 - Unau… Unknown
Giveaways and Contests by RafflePress
2026-10-02T06:00:27.170Z 2026-10-02T06:00:27.170Z
CVE-2026-97317
N/A
Giveaways and Contests by RafflePress < 1.12.27 - Unau… Unknown
Giveaways and Contests by RafflePress
2026-10-02T06:00:26.940Z 2026-10-02T06:00:26.940Z
CVE-2026-94298
N/A
BuildKit < 1.0.29 - Contributor+ Stored SQLi via list_… Unknown
BuildKit
2026-10-02T06:00:26.412Z 2026-10-02T06:00:26.412Z
CVE-2026-91023
N/A
Motors – Car Dealership & Classified Listings < 1.4.12… Unknown
Motors
2026-10-02T06:00:25.876Z 2026-10-02T06:00:25.876Z
CVE-2026-91022
N/A
Motors < 1.4.124 - Listing Manager+ Stored XSS via Bad… Unknown
Motors
2026-10-02T06:00:25.652Z 2026-10-02T06:00:25.652Z
CVE-2026-85016
N/A
Unlimited Elements For Elementor < 2.0.21 - Contributo… Unknown
Unlimited Elements for Elementor
2026-10-02T06:00:25.438Z 2026-10-02T06:00:25.438Z
CVE-2026-91828
N/A
OMGF < 6.3.11 - Unauthenticated DoS via do_optimize Unknown
OMGF | GDPR/DSGVO Compliant, Faster Google Fonts. Easy.
2026-10-02T06:00:25.216Z 2026-10-02T06:00:25.216Z
CVE-2026-13718
N/A
Tabs Responsive <= 2.5 - Shop Manager+ Stored XSS via … Unknown
Tabs Responsive
2026-10-02T06:00:24.997Z 2026-10-02T06:00:24.997Z
CVE-2026-90988
N/A
Request a Quote <= 2.5.6 - Unauthenticated Quote Reque… Unknown
Request a Quote
2026-10-02T06:00:24.780Z 2026-10-02T06:00:24.780Z
CVE-2026-85004
N/A
Popup Maker WP <= 1.4.5 - Subscriber+ Missing Authoriz… Unknown
Popup Maker
2026-10-02T06:00:24.239Z 2026-10-02T06:00:24.239Z
CVE-2026-81740
N/A
Paytm Payment Gateway < 2.8.9 - Unauthenticated Order … Unknown
Paytm Payment Gateway
2026-10-02T06:00:24.014Z 2026-10-02T06:00:24.014Z
CVE-2026-15896
9.1 (3.1)
Super Forms <= 6.3.316 - Unauthenticated Path Traversa… WebRehab
Super Forms – Drag & Drop Form Builder
2026-10-02T05:30:18.601Z 2026-10-02T05:30:18.601Z
CVE-2026-78471
5.4 (3.1)
Autoptimize <= 3.1.15.1 - Unauthenticated Stored Cross… optimizingmatters
Autoptimize
2026-10-02T05:30:18.257Z 2026-10-02T05:30:18.257Z
CVE-2026-92174
7.5 (3.1)
SiteOrigin Widgets Bundle <= 1.73.2 - Authenticated (C… gpriday
SiteOrigin Widgets Bundle
2026-10-02T05:30:17.908Z 2026-10-02T05:30:17.908Z
CVE-2026-90438
7.2 (3.1)
Ninja Forms <= 3.15.4 - Unauthenticated Stored Cross-S… kstover
Ninja Forms – Contact Form Builder with Calculators, Quizzes, Signatures & AI Form Builder
2026-10-02T05:30:17.547Z 2026-10-02T05:30:17.547Z
CVE-2026-15897
8.8 (3.1)
Super Forms – Drag & Drop Form Builder <= 6.3.316 - Au… WebRehab
Super Forms – Drag & Drop Form Builder
2026-10-02T05:30:17.190Z 2026-10-02T05:30:17.190Z
CVE-2026-92820
8.1 (3.1)
Ninja Forms - File Uploads <= 3.3.34 - Unauthenticated… SaturdayDrive
Ninja Forms - File Uploads
2026-10-02T05:30:15.764Z 2026-10-02T05:30:15.764Z
CVE-2026-84925
6.1 (3.1)
Avada | Website Builder For WordPress & WooCommerce <=… ThemeFusion
Avada | Website Builder For WordPress & WooCommerce
2026-10-02T05:30:15.238Z 2026-10-02T05:30:15.238Z
CVE-2026-97287
8.5 (3.1)
WordPress Event Tickets plugin <= 5.29.5 - SQL Injecti… Liquid Web / StellarWP
Event Tickets
2026-09-30T12:28:19.370Z 2026-10-02T05:24:56.542Z
CVE-2026-17615
7.5 (3.1)
Resteasy-core: resteasy sourceprovider remote unauthen… Red Hat
Red Hat build of Keycloak 26.6
2026-08-31T16:15:01.739Z 2026-10-02T04:32:30.108Z
CVE-2026-63622
7.8 (3.1)
Libvirt: swtpm privilege escalation via symlink following Red Hat
Red Hat Enterprise Linux 10.0 Extended Update Support
2026-08-10T20:45:24.761Z 2026-10-02T04:28:26.566Z
CVE-2026-18917
7.8 (3.1)
Libvirt: integer overflow in nodegetfreepages rpc hand… Red Hat
Red Hat Enterprise Linux 10.0 Extended Update Support
2026-08-20T09:54:50.958Z 2026-10-02T04:28:19.639Z
CVE-2026-10026
7.2 (3.1)
CTX Feed Pro <= 7.6.12 - Authenticated (Administrator+… CTX
CTX Feed Pro
2026-10-02T04:27:11.832Z 2026-10-02T04:27:11.832Z
CVE-2026-19660
9.8 (3.1)
Divi Membership <= 2.3.0 - Unauthenticated Authenticat… DiviEngine
Divi Membership
2026-10-02T04:27:11.341Z 2026-10-02T04:27:11.341Z
CVE-2026-104286
9.8 (3.1)
An improper limitation of a pathname to a restric… Fortinet
FortiMail
2026-10-01T19:17:38.938Z 2026-10-02T03:55:37.286Z
CVE-2026-84682
7.7 (4.0)
TDDPv2 setProductVer Command Injection in Archer AX90 TP-Link Systems Inc.
Archer AX90 v1
2026-10-01T18:48:42.953Z 2026-10-02T03:55:36.196Z
CVE-2026-104018
8.8 (3.1)
VxWorks 7 improper privilege management Wind River Systems Inc
VxWorks 7
2026-10-01T17:35:20.063Z 2026-10-02T03:55:35.132Z
CVE-2026-102294
8.5 (4.0)
Authenticated OS Command Injection in TL-WR841N IPv6 W… TP-Link System Inc.
TL-WR841N v14
2026-10-01T17:30:19.919Z 2026-10-02T03:55:34.100Z
CVE-2026-12541
8.2 (3.1)
Foreman: command injection in foreman-rake database tasks Red Hat
Red Hat Satellite 6.16 for RHEL 8
2026-10-01T16:22:09.928Z 2026-10-02T03:55:33.030Z
CVE-2026-12544
7.7 (3.1)
Foreman: ssti and insecure deserialization in foreman-… Red Hat
Red Hat Satellite 6.16 for RHEL 8
2026-10-01T16:22:15.366Z 2026-10-02T03:55:32.334Z