| CVE-2026-41452 | 9.8 | — | — | — | — | Krayin CRM 2.2.4 contains a missing authentication vulnerability in the installer middleware that allows unauthent | 33d ago |
| CVE-2026-18602 | 9.8 | — | — | — | — | A vulnerability was determined in GL.iNet GL-MT3000 up to 4.4.5. | 33d ago |
| CVE-2026-64827 | 9.8 | — | — | — | — | Telenia Software TVox 26.5.3 and prior 26.x versions, and 24.9.21 and prior 24.x versions, contain an authenticati | 34d ago |
| CVE-2026-18601 | 9.8 | — | — | — | — | A vulnerability was found in GL.iNet GL-MT3000 up to 4.4.5. | 34d ago |
| CVE-2026-18108 | 9.8 | — | — | — | timlegge / net\ | Net::SAML2 versions before 0.86 for Perl allow authentication bypass because _verify_encrypted_assertion accepts a | 34d ago |
| CVE-2026-2346 | 9.8 | — | — | — | — | Authorization bypass through User-Controlled key vulnerability in Menulux Software Inc. | 34d ago |
| CVE-2026-18589 | 9.8 | — | — | — | — | A vulnerability was found in Wavlink WL-NU516U1 708c073-mt7628. | 34d ago |
| CVE-2026-18588 | 9.8 | — | — | — | — | A vulnerability has been found in Wavlink WL-NU516U1 708c073-mt7628. | 34d ago |
| CVE-2026-16300 | 9.8 | — | — | — | — | The ChamaWP WordPress plugin before 1.0.13 does not properly validate a password reset request, allowing unauthent | 34d ago |
| CVE-2026-16250 | 9.8 | — | — | — | — | The Personal QR Message WordPress plugin through 1.0 does not restrict the file types that can be uploaded through | 34d ago |
| CVE-2026-16060 | 9.8 | — | — | — | — | The Insert or Embed Articulate Content into WordPress plugin through 4.3000000027 does not correctly validate the | 34d ago |
| CVE-2026-12872 | 9.8 | — | — | — | — | The Webinfos WordPress plugin through 1.2 does not validate the type or name of uploaded files, nor restrict the u | 34d ago |
| CVE-2026-65321 | 9.8 | — | — | — | — | PyAthena prior to 3.35.4 contains a sql injection vulnerability that allows unauthenticated attackers to inject ar | 34d ago |
| CVE-2026-16256 | 9.8 | — | — | — | — | The POUCO Import Users WordPress plugin through 1.0.0 does not perform any capability or nonce checks on AJAX acti | 35d ago |
| CVE-2026-8457 | 9.8 | — | — | — | — | The WooCommerce - Social Login plugin for WordPress is vulnerable to Authentication Bypass in all versions up to an | 35d ago |
| CVE-2026-67342 | 9.8 | — | — | — | — | ArcadeDB versions before 26.7.2 contain an authorization bypass vulnerability in HTTP handlers for time series, ba | 36d ago |
| CVE-2026-67341 | 9.8 | — | — | — | — | ArcadeDB versions before 26.7.2 fail to enforce scripting authorization checks on the SQL DEFINE FUNCTION statemen | 36d ago |
| CVE-2026-67324 | 9.8 | — | — | — | gitpython project / gitpython | GitPython 3.1.50 fails to recognize joined short-option forms such as -u<value> (the short form of --upload-pack=< | 36d ago |
| CVE-2026-67289 | 9.8 | — | — | — | — | FreeRDP before 3.29.0 (affected versions <= 3.28.0) does not validate CRLF and control characters in the server-co | 36d ago |
| CVE-2026-66402 | 9.8 | — | — | — | — | FreeRDP before 3.29.0 (affected versions <= 3.28.0) contains multiple TLS certificate identity validation weakness | 36d ago |
| CVE-2026-15964 | 9.8 | — | — | — | — | The Single Sign On For TNG plugin for WordPress is vulnerable to Authentication Bypass via unauthenticated passwor | 36d ago |
| CVE-2026-68771 | 9.8 | — | — | — | — | ComfyUI v0.23.0 contains an unsafe deserialization vulnerability in the LoadTrainingDataset node that allows unaut | 36d ago |
| CVE-2026-52134 | 9.8 | — | — | — | — | An issue in the parseGoosePayload() function (/goose/goose_receiver.c) of libiec61850 v1.6 allows attackers to byp | 36d ago |
| CVE-2026-68770 | 9.8 | — | — | — | — | sentence-transformers contains a security control bypass vulnerability that allows attackers to achieve arbitrary | 36d ago |
| CVE-2026-51785 | 9.8 | — | — | — | — | An issue in Hugo Leisink Hiawatha v.12.1 and before allows a remote attacker to execute arbitrary code via a craft | 36d ago |
| CVE-2026-38713 | 9.8 | — | — | — | — | TR1200 v2.4.15, TR3000 v2.4.21, WR300 v2.4.25, WR1200 v2.4.23, WR1300 v2.4.22, WR1500 v2.3.10, WR3000 v2.4.19, WR3 | 36d ago |
| CVE-2026-38708 | 9.8 | — | — | — | — | TR1200 v2.4.15, TR3000 v2.4.21, WR300 v2.4.25, WR1200 v2.4.23, WR1300 v2.4.22, WR1500 v2.3.10, WR3000 v2.4.19, WR3 | 36d ago |
| CVE-2025-69948 | 9.8 | — | — | — | — | SourceCodester Modern Loan Management System 1.0 is vulnerable to SQL Injection in /admin/delete_group.php?id=1. | 36d ago |
| CVE-2025-69946 | 9.8 | — | — | — | — | SourceCodester Modern Loan Management System 1.0 is vulnerable to SQL Injection in ajaxData.php via the parameters | 36d ago |
| CVE-2026-38711 | 9.8 | — | — | — | — | TR1200 v2.4.15, TR3000 v2.4.21, WR300 v2.4.25, WR1200 v2.4.23, WR1300 v2.4.22, WR1500 v2.3.10, WR3000 v2.4.19, WR3 | 36d ago |
| CVE-2026-21662 | 9.8 | — | — | — | johnsoncontrols / fms employee | Unrestricted upload of file with dangerous type vulnerability in Johnson Controls FM Systems Employee allows Using | 36d ago |
| CVE-2026-67822 | 9.8 | — | — | — | — | Tenda W6-S 1.0.0.4(510) contains a stack-based buffer overflow vulnerability in the /goform/wifiSSIDset endpoint. | 36d ago |
| CVE-2026-16504 | 9.8 | — | — | — | — | Deployment of the VPS.org one-click Zulip template deploys a hardcoded application signing key, a default database | 36d ago |
| CVE-2026-17561 | 9.8 | — | — | — | — | Improper Control of Generation of Code ('Code Injection') vulnerability in Innotim Software, Telecommunications an | 37d ago |
| CVE-2026-14919 | 9.8 | — | — | — | — | The ShopMonitor.io WordPress plugin before 1.2.0 does not properly restrict its email-rerouting test mode, gating | 37d ago |
| CVE-2026-14483 | 9.8 | — | — | — | — | The Realtyna Organic IDX plugin + WPL Real Estate plugin for WordPress is vulnerable to Arbitrary File Upload in a | 37d ago |
| CVE-2026-63223 | 9.8 | — | — | — | — | CodeIgniter is a PHP full-stack web framework. | 37d ago |
| CVE-2026-43830 | 9.8 | — | — | — | — | Full details and mitigation steps are currently restricted and will be published at a later date. | 37d ago |
| CVE-2026-14537 | 9.8 | — | — | — | google / mcp toolbox for databases | Incorrect Authorization in the direct HTTP API tool invocation endpoint in Google mcp-toolbox versions v1.3.0 and | 37d ago |
| CVE-2026-38709 | 9.8 | — | — | — | — | TR1200 v2.4.15, TR3000 v2.4.21, WR300 v2.4.25, WR1200 v2.4.23, WR1300 v2.4.22, WR1500 v2.3.10, WR3000 v2.4.19, WR3 | 37d ago |
| CVE-2026-68503 | 9.8 | — | — | — | — | LazyOwn RedTeam/APT Framework is an AI-powered C2 and red-team operations framework. | 37d ago |
| CVE-2026-68502 | 9.8 | — | — | — | — | LazyOwn RedTeam/APT Framework is an AI-powered C2 and red-team operations framework. | 37d ago |
| CVE-2026-35847 | 9.8 | — | — | — | — | An issue in dnsmgr v.2.15 and before allows a local attacker to execute arbitrary code via the ping function of th | 37d ago |
| CVE-2025-69947 | 9.8 | — | — | — | — | SourceCodester Tailor Management System 1.0 is vulnerable to SQL Injection in customeredit.php?id=1. | 37d ago |
| CVE-2025-69941 | 9.8 | — | — | — | — | SourceCodester Tailor Management System 1.0 is vulnerable to SQL Injection in addmeasurement.php?id=1. | 37d ago |
| CVE-2025-69938 | 9.8 | — | — | — | — | CodeAstro Membership Management System 1.0 is vulnerable to SQL Injection in renew.php via the parameter membershi | 37d ago |
| CVE-2025-69937 | 9.8 | — | — | — | — | CodeAstro Membership Management System 1.0 is vulnerable to SQL Injection in the edit_type.php endpoint via the Pa | 37d ago |
| CVE-2025-69936 | 9.8 | — | — | — | — | CodeAstro Membership Management System 1.0 is vulnerable to SQL Injection in /edit_member.php?id=1. | 37d ago |
| CVE-2025-69935 | 9.8 | — | — | — | — | CodeAstro Membership Management System 1.0 is vulnerale to SQL Injection in the report.php and revenue_report.php | 37d ago |
| CVE-2025-69934 | 9.8 | — | — | — | — | CodeAstro Membership Management System 1.0 is vulnerable to SQL Injection in /delete_members.php?id=1. | 37d ago |
| CVE-2025-69933 | 9.8 | — | — | — | — | CodeAstro Membership Management System 1.0 is vulnerable to SQL Injection in /memberProfile.php?id=1. | 37d ago |
| CVE-2025-69931 | 9.8 | — | — | — | — | CodeAstro Membership Management System 1.0 is vulnerable to SQL Injection in /delete_membership.php?id=1. | 37d ago |
| CVE-2025-69930 | 9.8 | — | — | — | — | CodeAstro Membership Management System 1.0 is vulnerable to SQL Injection in /print_membership_card.php?id=1. | 37d ago |
| CVE-2025-65336 | 9.8 | — | — | — | — | Ecommerce-project-with-php-and-mysqli-Fruits-Bazar 1.0 is vulnerable to SQL Injection in /show_price_by_pdtId.php. | 37d ago |
| CVE-2026-67594 | 9.8 | — | — | — | — | Spikster through commit e1cdf8c contains a missing authentication vulnerability that allows unauthenticated remote | 37d ago |
| CVE-2026-67208 | 9.8 | — | — | — | — | Juggle through 1.6.0 contains a remote code execution vulnerability that allows unauthenticated remote attackers t | 37d ago |
| CVE-2026-66756 | 9.8 | — | — | — | apache / tika | Improper Protection of Alternate Path vulnerability in Apache Tika. | 37d ago |
| CVE-2026-15976 | 9.8 | — | — | — | lmsys / sglang | SGLang contains a RCE vulnerability when attempting to load model weights from a HuggingFace repository, specifica | 37d ago |
| CVE-2026-15971 | 9.8 | — | — | — | lmsys / sglang | SGLang contains an RCE vulnerability when the optional dumper subsystem is enabled, allowing for a sandbox escape | 37d ago |
| CVE-2026-15969 | 9.8 | — | — | — | lmsys / sglang | SGLang contains an unauthenticated RCE in /load_lora_adapter_from_tensors via bypass of SafeUnpickler’s incomplete | 37d ago |