Busca de CVEs
398.447 resultadosCVE-2026-77203HIGHGroups <= 4.6.0 - Authenticated (Subscriber+) Privilege Escalation via 'groups_join' ShortcodeEPSS —CVE-2026-85984CRITICALminiOrange OTP Login, Verification and SMS Notifications <= 5.5.5 - Unauthenticated Authentication Bypass via 'mo_wp_login_intent' ParameterEPSS —CVE-2026-97161CRITICALJoomla Extension - lomart.fr - Various path traversal / file access vectors in UP plugin extension 5.0.0-5.2.0, 6.0.0-6.0.29EPSS —CVE-2026-97163CRITICALJoomla Extension - lomart.fr - Unauthenticated remote code installation in UP plugin extension 5.0.0-5.2.0, 6.0.0-6.0.29EPSS —CVE-2026-97162HIGHJoomla Extension - lomart.fr - Various SQL injection vectors in UP plugin extension 5.0.0-5.2.0, 6.0.0-6.0.29EPSS —CVE-2026-97160CRITICALJoomla Extension - lomart.fr - Authenticated, privileged PHP command injection in UP plugin extension 5.0.0-5.2.0, 6.0.0-6.0.29EPSS —CVE-2026-94131HIGHJoomla Extension - acymailing.com - Unauthenticated arbitrary file deletion in AcyMailing Enterprise extension < 11.1.0EPSS —CVE-2026-94132CRITICALJoomla Extension - acymailing.com - Remote Code Execution vulnerability in mailbox action feature in AcyMailing Enterprise extension < 11.1.0EPSS —CVE-2026-94130CRITICALJoomla Extension - joomlaboat.com - Unauthenticated SQL injection in YouTube Gallery extension < 5.7.3EPSS —CVE-2026-100626MEDIUMcapgo through 12.128.2 IDOR via PUT /app icon endpointEPSS —CVE-2026-100720CRITICALFroxlor before 2.3.12 Stored XSS via SSL certificate issuerEPSS —CVE-2026-100719HIGHFroxlor before 2.3.12 Credential Disclosure via DirProtections APIEPSS —CVE-2026-100718HIGHFroxlor before 2.3.12 Authentication Bypass via EmailSender.addEPSS —CVE-2026-100717HIGHfroxlor before 2.3.12 CRLF Injection via validateUrl userinfoEPSS —CVE-2026-100716CRITICALFroxlor before 2.3.12 Privilege Escalation via SymlinkEPSS —CVE-2026-100715HIGHFroxlor before 2.3.12 Arbitrary File Deletion via SymlinkEPSS —CVE-2026-100714CRITICALFroxlor before 2.3.12 Command Injection via letsencryptchallengepathEPSS —CVE-2026-100713HIGHFroxlor before 2.3.12 Privilege Escalation via SSH Key SyncEPSS —CVE-2026-100712HIGHfroxlor before 2.3.12 Two-Factor Authentication Bypass via CSRFEPSS —CVE-2026-100711HIGHfroxlor before 2.3.12 Authentication Bypass via Session PersistenceEPSS —