Export limit exceeded: 399870 CVEs match your query. Please refine your search to export 10,000 CVEs or fewer.
Export limit exceeded: 399870 CVEs match your query. Please refine your search to export 10,000 CVEs or fewer.
Search
Search Results (399870 CVEs found)
| CVE | Vendors | Products | Updated | CVSS v3.1 |
|---|---|---|---|---|
| CVE-2026-95531 | 2026-09-30 | 8.8 High | ||
| Subscriber PHP Object Injection in Conversational Forms for ChatBot <= 1.5.0 versions. | ||||
| CVE-2026-94683 | 2026-09-30 | 8.8 High | ||
| Contributor PHP Object Injection in DesignSetGo <= 2.8.0 versions. | ||||
| CVE-2026-94681 | 2026-09-30 | 5.9 Medium | ||
| Unauthenticated Denial of Service Attack in WP Store Locator < 3.0.0 versions. | ||||
| CVE-2026-94678 | 2026-09-30 | 8.8 High | ||
| Contributor PHP Object Injection in Go Live Update Urls <= 7.0.8 versions. | ||||
| CVE-2026-94677 | 2026-09-30 | 7.2 High | ||
| Shop manager PHP Object Injection in Kadence WooCommerce Email Designer <= 1.5.19.1 versions. | ||||
| CVE-2026-94674 | 2026-09-30 | 6.5 Medium | ||
| Contributor Cross Site Scripting (XSS) in Pixel Manager for WooCommerce <= 1.69.0 versions. | ||||
| CVE-2026-94673 | 2026-09-30 | 5.3 Medium | ||
| Unauthenticated Insecure Direct Object References (IDOR) in Simply Schedule Appointments <= 1.6.12.31 versions. | ||||
| CVE-2026-94672 | 2026-09-30 | 4.3 Medium | ||
| Contributor Insecure Direct Object References (IDOR) in Safe SVG <= 2.5.0 versions. | ||||
| CVE-2026-94499 | 2026-09-30 | 7.1 High | ||
| Subscriber Broken Access Control in FormGent <= 1.12.2 versions. | ||||
| CVE-2026-94389 | 2026-09-30 | 9 Critical | ||
| Unauthenticated Remote Code Execution (RCE) in AcyMailing SMTP Newsletter <= 11.0.5 versions. | ||||
| CVE-2026-94178 | 2026-09-30 | 7.5 High | ||
| Subscriber Privilege Escalation in Import and export users and customers <= 2.5.2 versions. | ||||
| CVE-2026-94177 | 2026-09-30 | 8.5 High | ||
| Unauthenticated SQL Injection in GamiPress <= 8.0.2 versions. | ||||
| CVE-2026-94173 | 2026-09-30 | 5.4 Medium | ||
| Contributor Insecure Direct Object References (IDOR) in Business Directory <= 6.4.27 versions. | ||||
| CVE-2026-94123 | 2026-09-30 | 7.5 High | ||
| Unauthenticated Arbitrary File Download in NextGEN Gallery <= 4.5.0 versions. | ||||
| CVE-2026-94122 | 2026-09-30 | 7.2 High | ||
| Editor PHP Object Injection in Responsive Slider Gallery <= 1.5.5 versions. | ||||
| CVE-2026-94121 | 2026-09-30 | 8.8 High | ||
| Contributor PHP Object Injection in 10Web Booster – Website speed optimization, Cache & Page Speed optimizer <= 2.33.6 versions. | ||||
| CVE-2026-94120 | 2026-09-30 | 7.5 High | ||
| Unauthenticated Broken Access Control in GravityExport Lite for Gravity Forms <= 2.7.2 versions. | ||||
| CVE-2026-94115 | 2026-09-30 | 8.5 High | ||
| Contributor SQL Injection in Easy Pricing Tables <= 4.1.2 versions. | ||||
| CVE-2026-94082 | 2026-09-30 | 7.6 High | ||
| Author SQL Injection in Quiz Cat <= 3.1.1 versions. | ||||
| CVE-2026-94081 | 2026-09-30 | 7.1 High | ||
| Unauthenticated Cross Site Scripting (XSS) in WordPress Persistent Login <= 3.1.3 versions. | ||||