Busca de CVEs
375.176 resultadosCVE-2026-1291MEDIUMMeow Gallery <= 5.4.4 - Missing Authorization to Authenticated (Author+) Shortcode creationEPSS 0.2%CVE-2026-9629MEDIUMCanvas <= 2.5.2 - Authenticated (Contributor+) Stored Cross-Site Scripting via 'tag' Block AttributeEPSS 0.2%CVE-2026-2470MEDIUMPagelayer <= 2.0.9 - Incorrect Authorization to Authenticated (Contributor+) Mail Relay Configuration via 'contacts'EPSS 0.3%CVE-2026-3297MEDIUMPage Builder: Pagelayer – Drag and Drop website builder <= 2.0.9 - Authenticated (Contributor+) Stored Cross-Site Scripting via Anchor BlockEPSS 0.2%CVE-2026-9134MEDIUMPhoto Gallery by FooGallery : Responsive Image Gallery, Masonry Gallery & Carousel <= 3.1.31 - Authenticated (Contributor+) Stored Cross-Site Scripting via 'custom_attribute_key' Shortcode ParameterEPSS 0.3%CVE-2026-9062LOWAgile Store Locator < 1.6.9 - Admin+ Arbitrary File Read via Path TraversalEPSS 0.2%CVE-2026-9061LOWAgile Store Locator < 1.6.9 - Admin+ Stored XSS via logo_nameEPSS 0.1%CVE-2026-9109HIGHGPTranslate <= 2.31 - Unauthenticated Stored Cross-Site Scripting via REST API Translation StorageEPSS 0.3%CVE-2026-11769MEDIUMOperator - Namespaced User Path TraversalEPSS 0.4%CVE-2026-54231MEDIUMAbrt: unsanitized systemd journal content written to dump directory files enables content injectionEPSS 0.1%CVE-2026-54230HIGHAbrt: event handler scripts follow symlinks when writing output files, allowing arbitrary file overwritesEPSS 0.1%CVE-2026-54229HIGHAbrt: chownproblemdir succeeds during active post-create event processing due to inadequate lockingEPSS 0.1%CVE-2026-54228HIGHAbrt: toctou race condition in abrt-dbus setelement allows arbitrary file writes to dump directoriesEPSS 0.1%CVE-2026-9848HIGHWP Ticket <= 6.0.4 - Unauthenticated SQL Injection via WordPress Search 's' ParameterEPSS 0.5%CVE-2026-12089MEDIUMWS Optimize – All-in-One Speed Booster & Cache Tools <= 3.3.19 - Authenticated (Editor+) Arbitrary File ReadEPSS 0.3%CVE-2026-11443MEDIUMAllegra downloadAttachment Cross-Site Scripting Authentication Bypass VulnerabilityEPSS 0.8%CVE-2026-11442MEDIUMAllegra exportReport Directory Traversal Information Disclosure VulnerabilityEPSS 1.3%CVE-2026-12068HIGHAvira Password Manager credential disclosure via cross-origin autofill in FirefoxEPSS 0.3%CVE-2026-6676HIGHAvira antivirus engine heap buffer OOB write when scanning a malformed POSIX tar archiveEPSS 0.1%CVE-2025-14098HIGHAvira antivirus engine heap buffer OOB write when scanning a malformed MS-DOS executable fileEPSS 0.1%