Busca de CVEs

375.176 resultados
CVE-2026-8613MEDIUMaThemes Addons for Elementor <= 1.1.8 - Authenticated (Contributor+) Stored Cross-Site Scripting via 'title_tag' Widget SettingEPSS 0.2%CVE-2026-8853MEDIUMMW WP Form <= 5.1.3 - Authenticated (Editor+) Stored Cross-Site Scripting via 'memo' ParameterEPSS 0.3%CVE-2026-10721HIGHConcrete CMS below 9.5.2 is vulnerable to PHP Object Injection via unserialize() calls in the in Permission, Cache, and Search componentsEPSS 0.1%CVE-2026-9019MEDIUMEasy Image Collage <= 1.13.6 - Authenticated (Author+) Stored Cross-Site Scripting via 'grid[properties][borderColor]' and 'grid[images][N][attachment_url]' ParametersEPSS 0.2%CVE-2026-11815MEDIUMInsecure Deserialization via MITM in Layer 7 Policy ManagerEPSS 0.3%CVE-2026-10846HIGHInsufficient verification that responses belong to a queryEPSS 0.1%CVE-2026-29116HIGHA vulnerability has been found in some Dahua products could allow an unauthenticated remote attacker to send a specially crafted packet, triEPSS 0.4%CVE-2026-29115MEDIUMA vulnerability has been found in some Dahua products could allow an authenticated remote attacker to send a specially crafted packet, triggEPSS 0.4%CVE-2026-9067CRITICALSchema & Structured Data for WP & AMP < 1.60 - Unauthenticated Arbitrary Media UploadEPSS 0.6%CVE-2026-9060LOWAgile Store Locator < 1.6.6 - Admin+ Stored XSS via map_styleEPSS 0.1%CVE-2026-8071HIGHSpam protection, Honeypot, Anti-Spam by CleanTalk < 6.79 - Unauthenticated Stored XSS via Comment Shortcode BypassEPSS 0.4%CVE-2026-3326HIGHXStore < 9.7.3 - Unauthenticated SQLiEPSS 1.9%CVE-2026-29114LOWA vulnerability has been found in some Dahua products. An attacker may obtain the device’s CA root certificate. If that CA is installed and EPSS 0.2%CVE-2026-26240LOWFile Station 5EPSS 0.4%CVE-2026-11837HIGHAnsible-collection-ansible-posix: ansible.posix authorized_key: local privilege escalation via symlink-following chownEPSS 0.2%CVE-2026-26241LOWFile Station 5EPSS 0.5%CVE-2025-8444MEDIUMAnimation Addons for Elementor – GSAP Powered Elementor Addons & Website Templates <= 2.6.7 - Authenticated (Contributor+) DOM-Based Stored Cross-Site Scripting via Multiple ParametersEPSS 0.2%CVE-2026-24724MEDIUMFile Station 5EPSS 0.3%CVE-2026-26239MEDIUMFile Station 5EPSS 0.4%CVE-2026-26237MEDIUMQuMagieEPSS 0.3%