| CVE-2026-2859 | 4.3 | medium | checkmk / checkmk | Improper permission enforcement in Checkmk versions 2.4.0 before 2.4.0p23, 2.3.0 before 2.3.0p43, and 2.2.0 (EOL) a | 176d ago |
| CVE-2026-24097 | 4.3 | medium | checkmk / checkmk | Improper permission enforcement in Checkmk versions 2.4.0 before 2.4.0p23, 2.3.0 before 2.3.0p43, and 2.2.0 (EOL) | 176d ago |
| CVE-2026-22215 | 4.3 | medium | gvectors / wpdiscuz | wpDiscuz before 7.6.47 contains a cross-site request forgery vulnerability in the getFollowsPage() function that a | 176d ago |
| CVE-2026-1704 | 4.3 | medium | — | The Appointment Booking Calendar — Simply Schedule Appointments Booking Plugin plugin for WordPress is vulnerable t | 176d ago |
| CVE-2025-14483 | 4.3 | medium | ibm / sterling b2b integrator | IBM Sterling B2B Integrator and IBM Sterling File Gateway 6.1.0.0 through 6.1.2.7_2, 6.2.0.0 through 6.2.0.5_1, 6. | 176d ago |
| CVE-2026-3234 | 4.3 | medium | — | A flaw was found in mod_proxy_cluster. | 177d ago |
| CVE-2026-3993 | 4.3 | medium | — | A security vulnerability has been detected in itsourcecode Payroll Management System 1.0. | 177d ago |
| CVE-2026-3990 | 4.3 | medium | — | A security flaw has been discovered in CesiumGS CesiumJS up to 1.137.0. | 177d ago |
| CVE-2026-2687 | 4.3 | medium | — | The Reading progressbar WordPress plugin before 1.3.1 does not sanitise and escape some of its settings, which coul | 177d ago |
| CVE-2025-15473 | 4.3 | medium | — | The Timetics WordPress plugin before 1.0.52 does not have authorization in a REST endpoint, allowing unauthenticat | 177d ago |
| CVE-2026-3982 | 4.3 | medium | — | A vulnerability was determined in itsourcecode University Management System 1.0. | 177d ago |
| CVE-2026-3226 | 4.3 | medium | — | The LearnPress – WordPress LMS Plugin plugin for WordPress is vulnerable to unauthorized email notification trigger | 178d ago |
| CVE-2026-1182 | 4.3 | medium | gitlab / gitlab | GitLab has remediated an issue in GitLab CE/EE affecting all versions from 8.14 before 18.7.6, 18.8 before 18.8.6, | 178d ago |
| CVE-2026-3962 | 4.3 | medium | — | A vulnerability was identified in Jcharis Machine-Learning-Web-Apps up to a6996b634d98ccec4701ac8934016e8175b60eb5. | 178d ago |
| CVE-2026-3942 | 4.3 | medium | google / chrome | Incorrect security UI in PictureInPicture in Google Chrome prior to 146.0.7680.71 allowed a remote attacker to perf | 178d ago |
| CVE-2026-3941 | 4.3 | medium | google / chrome | Insufficient policy enforcement in DevTools in Google Chrome prior to 146.0.7680.71 allowed a remote attacker to by | 178d ago |
| CVE-2026-3938 | 4.3 | medium | google / chrome | Insufficient policy enforcement in Clipboard in Google Chrome prior to 146.0.7680.71 allowed a remote attacker who | 178d ago |
| CVE-2026-3928 | 4.3 | medium | google / chrome | Insufficient policy enforcement in Extensions in Google Chrome prior to 146.0.7680.71 allowed an attacker who convi | 178d ago |
| CVE-2026-3927 | 4.3 | medium | google / chrome | Incorrect security UI in PictureInPicture in Google Chrome prior to 146.0.7680.71 allowed a remote attacker to perf | 178d ago |
| CVE-2026-3925 | 4.3 | medium | google / chrome | Incorrect security UI in LookalikeChecks in Google Chrome on Android prior to 146.0.7680.71 allowed a remote attack | 178d ago |
| CVE-2026-32122 | 4.3 | medium | open-emr / openemr | OpenEMR is a free and open source electronic health records and medical practice management application. | 178d ago |
| CVE-2026-3951 | 4.3 | medium | — | A security flaw has been discovered in LockerProject Locker 0.0.0/0.0.1/0.1.0. | 178d ago |
| CVE-2026-30236 | 4.3 | medium | openproject / openproject | OpenProject is an open-source, web-based project management software. | 178d ago |
| CVE-2025-12555 | 4.3 | medium | gitlab / gitlab | GitLab has remediated an issue in GitLab CE/EE affecting all versions from 15.1 before 18.7.6, 18.8 before 18.8.6, | 178d ago |
| CVE-2026-1732 | 4.3 | medium | gitlab / gitlab | GitLab has remediated an issue in GitLab CE/EE affecting all versions from 12.6 before 18.7.6, 18.8 before 18.8.6, | 178d ago |
| CVE-2026-1663 | 4.3 | medium | gitlab / gitlab | GitLab has remediated an issue in GitLab CE/EE affecting all versions from 14.4 before 18.7.6, 18.8 before 18.8.6, | 178d ago |
| CVE-2026-0602 | 4.3 | medium | gitlab / gitlab | GitLab has remediated an issue in GitLab CE/EE affecting all versions from 15.6 before 18.7.6, 18.8 before 18.8.6, | 178d ago |
| CVE-2026-32719 | 4.2 | medium | mintplexlabs / anythingllm | AnythingLLM is an application that turns pieces of content into context that any LLM can use as references during | 173d ago |
| CVE-2026-3429 | 4.2 | medium | redhat / build of keycloak | A flaw was identified in the Account REST API of Keycloak that allows a user authenticated at a lower security leve | 178d ago |
| CVE-2026-32310 | 4.1 | medium | cryptomator / cryptomator | Cryptomator encrypts data being stored on cloud infrastructure. | 169d ago |
| CVE-2026-27166 | 4.1 | medium | discourse / discourse | Discourse is an open source discussion platform. | 170d ago |
| CVE-2026-30943 | 4.1 | medium | forceu / gokapi | Gokapi is a self-hosted file sharing server with automatic expiration and encryption support. | 176d ago |
| CVE-2026-1230 | 4.1 | medium | gitlab / gitlab | GitLab has remediated an issue in GitLab CE/EE affecting all versions from 1.0 before 18.7.6, 18.8 before 18.8.6, a | 178d ago |
| CVE-2026-45498exploited | 4 | medium | microsoft / defender antimalware platform | Microsoft Defender Denial of Service Vulnerability | 108d ago |
| CVE-2026-32837 | 4 | medium | mackron / miniaudio | miniaudio version 0.11.25 and earlier (fixed in commits 1df46ae and 1df46ae) contain a heap out-of-bounds read vul | 172d ago |
| CVE-2026-32777 | 4 | medium | libexpat project / libexpat | libexpat before 2.7.5 allows an infinite loop while parsing DTD content. | 173d ago |
| CVE-2026-32776 | 4 | medium | libexpat project / libexpat | libexpat before 2.7.5 allows a NULL pointer dereference with empty external parameter entity content. | 173d ago |