CVE Datenbank

Durchsuchbare Datenbank mit Sicherheitslücken. Filtere nach Hersteller, Schweregrad oder Zeitraum.

Zurücksetzen
39217 CVEs gefunden (Seite 157/157)

CVE-2026-40467 - Use After Free vulnerability has been found in "io.c" program file of gawk (do_getline_redir() routi

🏢 Sonstige 📅 13.7.2026 📊 CVSS: 7.5
7.5

CVE-2026-15584 - A privilege escalation vulnerability was found in the incluster-checks tool for OpenShift. The tool

🏢 Sonstige 📅 13.7.2026 📊 CVSS: 7.5
7.5

CVE-2026-15559 - A vulnerability was detected in CodeAstro Simple Online Leave Management System 1.0. This affects an

🏢 Sonstige 📅 13.7.2026 📊 CVSS: 6.3
6.3

CVE-2026-62147 - The Tempo Operator's gateway component failed to consistently apply namespace-scoped redaction on so

🏢 Sonstige 📅 13.7.2026 📊 CVSS: 6.5
6.5

CVE-2026-15558 - A security vulnerability has been detected in CodeAstro Simple Online Leave Management System 1.0. A

🏢 Sonstige 📅 13.7.2026 📊 CVSS: 6.3
6.3

CVE-2026-12257 - Versions of Mura CMS prior to 10.0.712 contain a critical remote code execution (RCE) vulnerability.

🏢 Sonstige 📅 13.7.2026 📊 CVSS: 0.0
0.0

CVE-2026-9824 - Mattermost versions 11.7.x <= 11.7.2, 11.6.x <= 11.6.4, 10.11.x <= 10.11.19 fail to check the manage

🏢 Sonstige 📅 13.7.2026 📊 CVSS: 4.3
4.3

CVE-2026-9820 - Mattermost versions 11.7.x <= 11.7.2, 10.11.x <= 10.11.19 fail to sanitize team objects returned by

🏢 Sonstige 📅 13.7.2026 📊 CVSS: 3.8
3.8

CVE-2026-6541 - Mattermost versions 11.7.x <= 11.7.1, 11.6.x <= 11.6.4, 10.11.x <= 10.11.19 fail to restrict metric

🏢 Sonstige 📅 13.7.2026 📊 CVSS: 4.3
4.3

CVE-2026-4765 - Self Cross-Site Scripting (Self-XSS) vulnerability in the RD Station Conversas chat feature. The vul

🏢 Sonstige 📅 13.7.2026 📊 CVSS: 0.0
0.0

CVE-2026-14934 - A Missing Authorization vulnerability in the repository creation functionality in Google Cloud BigQu

🏢 Google cloud 📅 13.7.2026 📊 CVSS: 0.0
0.0

CVE-2026-61985 - Missing Authorization vulnerability in magepeopleteam Car Rental Manager car-rental-manager allows E

🏢 Sonstige 📅 13.7.2026 📊 CVSS: 5.3
5.3

CVE-2026-61983 - Missing Authorization vulnerability in andy_moyle Church Admin church-admin allows Exploiting Incorr

🏢 Sonstige 📅 13.7.2026 📊 CVSS: 5.3
5.3

CVE-2026-61977 - Exposure of Sensitive System Information to an Unauthorized Control Sphere vulnerability in Crocoblo

🏢 Sonstige 📅 13.7.2026 📊 CVSS: 5.3
5.3

CVE-2026-61976 - Exposure of Sensitive System Information to an Unauthorized Control Sphere vulnerability in Crocoblo

🏢 Sonstige 📅 13.7.2026 📊 CVSS: 5.3
5.3

CVE-2026-61975 - Exposure of Sensitive System Information to an Unauthorized Control Sphere vulnerability in Crocoblo

🏢 Sonstige 📅 13.7.2026 📊 CVSS: 5.3
5.3

CVE-2026-61971 - Authorization Bypass Through User-Controlled Key vulnerability in Cozmoslabs User Profile Picture me

🏢 Sonstige 📅 13.7.2026 📊 CVSS: 2.7
2.7

CVE-2026-61970 - Server-Side Request Forgery (SSRF) vulnerability in Themeisle Auto Featured Image (Auto Post Thumbna

🏢 Sonstige 📅 13.7.2026 📊 CVSS: 4.9
4.9

CVE-2026-61968 - Missing Authorization vulnerability in Saad Iqbal myCred mycred allows Exploiting Incorrectly Config

🏢 Sonstige 📅 13.7.2026 📊 CVSS: 5.4
5.4

CVE-2026-61958 - Missing Authorization vulnerability in Saad Iqbal License Manager for WooCommerce license-manager-fo

🏢 Sonstige 📅 13.7.2026 📊 CVSS: 5.4
5.4

CVE-2026-61956 - Cross-Site Request Forgery (CSRF) vulnerability in hamsalam ووسلام &#8211; همگام سازی ووکامرس و باسل

🏢 Sonstige 📅 13.7.2026 📊 CVSS: 7.1
7.1

CVE-2026-61955 - Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability i

🏢 Sonstige 📅 13.7.2026 📊 CVSS: 7.6
7.6

CVE-2026-61952 - Missing Authorization vulnerability in Jose Vega WooCommerce Bulk Edit Products – WP Sheet Editor wo

🏢 Sonstige 📅 13.7.2026 📊 CVSS: 4.9
4.9

CVE-2026-59523 - Missing Authorization vulnerability in NSquared Simply Schedule Appointments simply-schedule-appoint

🏢 Sonstige 📅 13.7.2026 📊 CVSS: 6.5
6.5

CVE-2026-59521 - Deserialization of Untrusted Data vulnerability in ShapedPlugin LLC Real Testimonials testimonial-fr

🏢 Sonstige 📅 13.7.2026 📊 CVSS: 7.2
7.2

CVE-2026-59518 - Deserialization of Untrusted Data vulnerability in wpWax Directorist directorist allows Object Injec

🏢 Sonstige 📅 13.7.2026 📊 CVSS: 9.8
9.8

CVE-2026-59516 - Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability i

🏢 Sonstige 📅 13.7.2026 📊 CVSS: 7.1
7.1

CVE-2026-59515 - Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability i

🏢 Sonstige 📅 13.7.2026 📊 CVSS: 9.3
9.3

CVE-2026-57816 - Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability i

🏢 Sonstige 📅 13.7.2026 📊 CVSS: 7.1
7.1

CVE-2026-57815 - Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') vulnerability in WPMU

🏢 Wordpress 📅 13.7.2026 📊 CVSS: 7.5
7.5

CVE-2026-57814 - Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability i

🏢 Wordpress 📅 13.7.2026 📊 CVSS: 7.1
7.1

CVE-2026-57813 - Incorrect Privilege Assignment vulnerability in properfraction MailOptin mailoptin allows Privilege

🏢 Sonstige 📅 13.7.2026 📊 CVSS: 9.8
9.8

CVE-2026-57812 - Missing Authorization vulnerability in NSquared Simply Schedule Appointments simply-schedule-appoint

🏢 Sonstige 📅 13.7.2026 📊 CVSS: 6.5
6.5

CVE-2026-57811 - Improper Control of Generation of Code ('Code Injection') vulnerability in Realtyna Realtyna Organic

🏢 Sonstige 📅 13.7.2026 📊 CVSS: 10.0
10.0

CVE-2026-57810 - Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability i

🏢 Sonstige 📅 13.7.2026 📊 CVSS: 8.5
8.5

CVE-2026-57805 - Improper Control of Filename for Include/Require Statement in PHP Program ('PHP Remote File Inclusio

🏢 Sonstige 📅 13.7.2026 📊 CVSS: 7.5
7.5

CVE-2026-57804 - Improper Control of Filename for Include/Require Statement in PHP Program ('PHP Remote File Inclusio

🏢 Sonstige 📅 13.7.2026 📊 CVSS: 7.5
7.5

CVE-2026-57803 - Improper Control of Filename for Include/Require Statement in PHP Program ('PHP Remote File Inclusio

🏢 Sonstige 📅 13.7.2026 📊 CVSS: 7.5
7.5

CVE-2026-57802 - Improper Control of Filename for Include/Require Statement in PHP Program ('PHP Remote File Inclusio

🏢 Sonstige 📅 13.7.2026 📊 CVSS: 7.5
7.5

CVE-2026-57801 - Improper Control of Filename for Include/Require Statement in PHP Program ('PHP Remote File Inclusio

🏢 Sonstige 📅 13.7.2026 📊 CVSS: 7.5
7.5

CVE-2026-57800 - Improper Control of Filename for Include/Require Statement in PHP Program ('PHP Remote File Inclusio

🏢 Sonstige 📅 13.7.2026 📊 CVSS: 7.5
7.5

CVE-2026-57799 - Improper Control of Filename for Include/Require Statement in PHP Program ('PHP Remote File Inclusio

🏢 Sonstige 📅 13.7.2026 📊 CVSS: 7.5
7.5

CVE-2026-57798 - Improper Control of Filename for Include/Require Statement in PHP Program ('PHP Remote File Inclusio

🏢 Sonstige 📅 13.7.2026 📊 CVSS: 7.5
7.5

CVE-2026-57797 - Missing Authorization vulnerability in ThemeMove EduMall edumall allows Exploiting Incorrectly Confi

🏢 Sonstige 📅 13.7.2026 📊 CVSS: 4.3
4.3

CVE-2026-57796 - Improper Control of Filename for Include/Require Statement in PHP Program ('PHP Remote File Inclusio

🏢 Sonstige 📅 13.7.2026 📊 CVSS: 7.5
7.5

CVE-2026-57795 - Improper Control of Filename for Include/Require Statement in PHP Program ('PHP Remote File Inclusio

🏢 Sonstige 📅 13.7.2026 📊 CVSS: 7.5
7.5

CVE-2026-57794 - Improper Control of Filename for Include/Require Statement in PHP Program ('PHP Remote File Inclusio

🏢 Sonstige 📅 13.7.2026 📊 CVSS: 7.5
7.5

CVE-2026-57793 - Improper Control of Filename for Include/Require Statement in PHP Program ('PHP Remote File Inclusio

🏢 Sonstige 📅 13.7.2026 📊 CVSS: 7.5
7.5

CVE-2026-57792 - Improper Control of Filename for Include/Require Statement in PHP Program ('PHP Remote File Inclusio

🏢 Sonstige 📅 13.7.2026 📊 CVSS: 7.5
7.5

CVE-2026-57791 - Improper Control of Filename for Include/Require Statement in PHP Program ('PHP Remote File Inclusio

🏢 Sonstige 📅 13.7.2026 📊 CVSS: 7.5
7.5

CVE-2026-57790 - Improper Control of Filename for Include/Require Statement in PHP Program ('PHP Remote File Inclusio

🏢 Sonstige 📅 13.7.2026 📊 CVSS: 7.5
7.5

CVE-2026-57789 - Improper Control of Filename for Include/Require Statement in PHP Program ('PHP Remote File Inclusio

🏢 Sonstige 📅 13.7.2026 📊 CVSS: 7.5
7.5

CVE-2026-57788 - Improper Control of Filename for Include/Require Statement in PHP Program ('PHP Remote File Inclusio

🏢 Sonstige 📅 13.7.2026 📊 CVSS: 7.5
7.5

CVE-2026-57787 - Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability i

🏢 Sonstige 📅 13.7.2026 📊 CVSS: 8.5
8.5

CVE-2026-57786 - Cross-Site Request Forgery (CSRF) vulnerability in purethemes WorkScout-Core workscout-core allows A

🏢 Sonstige 📅 13.7.2026 📊 CVSS: 8.8
8.8

CVE-2026-57783 - Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability i

🏢 Sonstige 📅 13.7.2026 📊 CVSS: 6.5
6.5

CVE-2026-57782 - Missing Authorization vulnerability in PressTigers Universal Clocks universal-clocks allows Exploiti

🏢 Sonstige 📅 13.7.2026 📊 CVSS: 5.3
5.3

CVE-2026-57781 - Missing Authorization vulnerability in Sovlix MeetingHub meetinghub allows Exploiting Incorrectly Co

🏢 Sonstige 📅 13.7.2026 📊 CVSS: 5.3
5.3

CVE-2026-57780 - Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability i

🏢 Sonstige 📅 13.7.2026 📊 CVSS: 6.5
6.5

CVE-2026-57779 - Missing Authorization vulnerability in themebeez Fascinate fascinate allows Exploiting Incorrectly C

🏢 Sonstige 📅 13.7.2026 📊 CVSS: 5.3
5.3

CVE-2026-57778 - Missing Authorization vulnerability in wpdevart Booking calendar, Appointment Booking System booking

🏢 Sonstige 📅 13.7.2026 📊 CVSS: 5.3
5.3

CVE-2026-57776 - Missing Authorization vulnerability in vowelweb VW Wedding vw-wedding allows Exploiting Incorrectly

🏢 Sonstige 📅 13.7.2026 📊 CVSS: 5.3
5.3

CVE-2026-57774 - Missing Authorization vulnerability in vowelweb VW Food Corner vw-food-corner allows Exploiting Inco

🏢 Sonstige 📅 13.7.2026 📊 CVSS: 5.3
5.3

CVE-2026-57773 - Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability i

🏢 Sonstige 📅 13.7.2026 📊 CVSS: 7.6
7.6

CVE-2026-57772 - Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability i

🏢 Sonstige 📅 13.7.2026 📊 CVSS: 8.5
8.5

CVE-2026-57771 - Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability i

🏢 Sonstige 📅 13.7.2026 📊 CVSS: 8.5
8.5

CVE-2026-57770 - Deserialization of Untrusted Data vulnerability in ThemeGoods Grand Photography grandphotography all

🏢 Sonstige 📅 13.7.2026 📊 CVSS: 9.8
9.8

CVE-2026-57768 - Incorrect Privilege Assignment vulnerability in favethemes Houzez Login Register houzez-login-regist

🏢 Sonstige 📅 13.7.2026 📊 CVSS: 8.2
8.2

CVE-2026-57745 - Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability i

🏢 Sonstige 📅 13.7.2026 📊 CVSS: 7.1
7.1

CVE-2026-57744 - Deserialization of Untrusted Data vulnerability in stmcan RT-Theme 18 | Extensions rt18-extensions a

🏢 Sonstige 📅 13.7.2026 📊 CVSS: 9.8
9.8

CVE-2026-57743 - Improper Control of Filename for Include/Require Statement in PHP Program ('PHP Remote File Inclusio

🏢 Sonstige 📅 13.7.2026 📊 CVSS: 8.1
8.1

CVE-2026-57741 - Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability i

🏢 Sonstige 📅 13.7.2026 📊 CVSS: 7.1
7.1

CVE-2026-57740 - Missing Authorization vulnerability in AcyMailing Newsletter Team AcyMailing SMTP Newsletter acymail

🏢 Sonstige 📅 13.7.2026 📊 CVSS: 7.1
7.1

CVE-2026-57739 - Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability i

🏢 Sonstige 📅 13.7.2026 📊 CVSS: 9.3
9.3

CVE-2026-57738 - Deserialization of Untrusted Data vulnerability in axiomthemes 777 triple-seven allows Object Inject

🏢 Sonstige 📅 13.7.2026 📊 CVSS: 9.8
9.8

CVE-2026-57734 - Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability i

🏢 Sonstige 📅 13.7.2026 📊 CVSS: 7.1
7.1

CVE-2026-57733 - Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability i

🏢 Sonstige 📅 13.7.2026 📊 CVSS: 7.1
7.1

CVE-2026-57732 - Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability i

🏢 Sonstige 📅 13.7.2026 📊 CVSS: 7.1
7.1

CVE-2026-57729 - Missing Authorization vulnerability in UX-themes Flatsome flatsome allows Exploiting Incorrectly Con

🏢 Sonstige 📅 13.7.2026 📊 CVSS: 7.5
7.5

CVE-2026-57728 - Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability i

🏢 Sonstige 📅 13.7.2026 📊 CVSS: 7.1
7.1

CVE-2026-57727 - Missing Authorization vulnerability in Themeum Kirki kirki allows Exploiting Incorrectly Configured

🏢 Sonstige 📅 13.7.2026 📊 CVSS: 7.5
7.5

CVE-2026-57726 - Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability i

🏢 Sonstige 📅 13.7.2026 📊 CVSS: 9.3
9.3

CVE-2026-57725 - Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability i

🏢 Sonstige 📅 13.7.2026 📊 CVSS: 7.1
7.1

CVE-2026-57724 - Deserialization of Untrusted Data vulnerability in Themeum Kirki kirki allows Object Injection.This

🏢 Sonstige 📅 13.7.2026 📊 CVSS: 9.8
9.8

CVE-2026-57719 - Unrestricted Upload of File with Dangerous Type vulnerability in CodeRevolution Aimogen Pro aimogen-

🏢 Sonstige 📅 13.7.2026 📊 CVSS: 10.0
10.0

CVE-2026-57718 - Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability i

🏢 Sonstige 📅 13.7.2026 📊 CVSS: 7.1
7.1

CVE-2026-57715 - Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability i

🏢 Sonstige 📅 13.7.2026 📊 CVSS: 7.1
7.1

CVE-2026-57714 - Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability i

🏢 Sonstige 📅 13.7.2026 📊 CVSS: 9.3
9.3

CVE-2026-57713 - Deserialization of Untrusted Data vulnerability in Marcus (aka @msykes) Events Manager events-manage

🏢 Sonstige 📅 13.7.2026 📊 CVSS: 8.8
8.8

CVE-2026-57712 - Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability i

🏢 Sonstige 📅 13.7.2026 📊 CVSS: 7.1
7.1

CVE-2026-57711 - Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability i

🏢 Sonstige 📅 13.7.2026 📊 CVSS: 6.5
6.5

CVE-2026-57710 - Unrestricted Upload of File with Dangerous Type vulnerability in quantumcloud WoowBot Pro Max woowbo

🏢 Sonstige 📅 13.7.2026 📊 CVSS: 9.9
9.9

CVE-2026-57709 - Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') vulnerability in WP S

🏢 Sonstige 📅 13.7.2026 📊 CVSS: 8.6
8.6

CVE-2026-57708 - Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability i

🏢 Sonstige 📅 13.7.2026 📊 CVSS: 7.1
7.1

CVE-2026-57707 - Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability i

🏢 Sonstige 📅 13.7.2026 📊 CVSS: 9.3
9.3

CVE-2026-57706 - Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability i

🏢 Sonstige 📅 13.7.2026 📊 CVSS: 7.1
7.1

CVE-2026-57705 - Missing Authorization vulnerability in Nexcess Event Tickets event-tickets allows Exploiting Incorre

🏢 Sonstige 📅 13.7.2026 📊 CVSS: 7.5
7.5

CVE-2026-57702 - Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability i

🏢 Sonstige 📅 13.7.2026 📊 CVSS: 9.3
9.3

CVE-2026-57698 - Authentication Bypass Using an Alternate Path or Channel vulnerability in VillaTheme Abandoned Cart

🏢 Sonstige 📅 13.7.2026 📊 CVSS: 6.5
6.5

CVE-2026-57697 - Authentication Bypass Using an Alternate Path or Channel vulnerability in Metagauss ProfileGrid pro

🏢 Sonstige 📅 13.7.2026 📊 CVSS: 7.5
7.5

CVE-2026-57695 - Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability i

🏢 Sonstige 📅 13.7.2026 📊 CVSS: 7.1
7.1

CVE-2026-57694 - Authorization Bypass Through User-Controlled Key vulnerability in Themeum Tutor LMS tutor allows Exp

🏢 Sonstige 📅 13.7.2026 📊 CVSS: 6.5
6.5

CVE-2026-57693 - Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability i

🏢 Sonstige 📅 13.7.2026 📊 CVSS: 6.5
6.5

CVE-2026-57691 - Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability i

🏢 Sonstige 📅 13.7.2026 📊 CVSS: 5.8
5.8

CVE-2026-57668 - Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability i

🏢 Sonstige 📅 13.7.2026 📊 CVSS: 7.1
7.1

CVE-2026-57424 - Missing Authorization vulnerability in knitpay Razorpay Payment Links for WooCommerce rzp-woocommerc

🏢 Sonstige 📅 13.7.2026 📊 CVSS: 6.5
6.5

CVE-2026-57423 - Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability i

🏢 Sonstige 📅 13.7.2026 📊 CVSS: 7.1
7.1

CVE-2026-57422 - Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability i

🏢 Sonstige 📅 13.7.2026 📊 CVSS: 7.1
7.1

CVE-2026-57421 - Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability i

🏢 Sonstige 📅 13.7.2026 📊 CVSS: 7.1
7.1

CVE-2026-57420 - Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability i

🏢 Sonstige 📅 13.7.2026 📊 CVSS: 6.5
6.5

CVE-2026-57419 - Missing Authorization vulnerability in Fahad Mahmood Stock Locations for WooCommerce stock-locations

🏢 Sonstige 📅 13.7.2026 📊 CVSS: 6.5
6.5

CVE-2026-57418 - Missing Authorization vulnerability in BoldGrid Client Invoicing by Sprout Invoices sprout-invoices

🏢 Sonstige 📅 13.7.2026 📊 CVSS: 6.5
6.5

CVE-2026-57417 - Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability i

🏢 Sonstige 📅 13.7.2026 📊 CVSS: 7.1
7.1

CVE-2026-57416 - Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability i

🏢 Sonstige 📅 13.7.2026 📊 CVSS: 7.1
7.1

CVE-2026-57415 - Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability i

🏢 Sonstige 📅 13.7.2026 📊 CVSS: 7.1
7.1

CVE-2026-57414 - Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability i

🏢 Sonstige 📅 13.7.2026 📊 CVSS: 6.5
6.5

CVE-2026-57413 - Server-Side Request Forgery (SSRF) vulnerability in bdthemes Instant Image Generator ai-image allows

🏢 Sonstige 📅 13.7.2026 📊 CVSS: 6.4
6.4

CVE-2026-57412 - Missing Authorization vulnerability in Codemenschen Gift Vouchers gift-voucher allows Exploiting Inc

🏢 Sonstige 📅 13.7.2026 📊 CVSS: 6.5
6.5

CVE-2026-57411 - Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability i

🏢 Sonstige 📅 13.7.2026 📊 CVSS: 7.1
7.1

CVE-2026-57410 - Incorrect Privilege Assignment vulnerability in MailerPress Team MailerPress mailerpress allows Priv

🏢 Sonstige 📅 13.7.2026 📊 CVSS: 8.8
8.8

CVE-2026-57409 - Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability i

🏢 Sonstige 📅 13.7.2026 📊 CVSS: 7.1
7.1

CVE-2026-57408 - Missing Authorization vulnerability in peachpayments Peach Payments Gateway wc-peach-payments-gatewa

🏢 Sonstige 📅 13.7.2026 📊 CVSS: 6.5
6.5

CVE-2026-57407 - Server-Side Request Forgery (SSRF) vulnerability in WP Swings PDF Generator for WordPress pdf-genera

🏢 Wordpress 📅 13.7.2026 📊 CVSS: 7.2
7.2

CVE-2026-57406 - Missing Authorization vulnerability in Roxnor FundEngine wp-fundraising-donation allows Exploiting I

🏢 Sonstige 📅 13.7.2026 📊 CVSS: 6.5
6.5

CVE-2026-57405 - Missing Authorization vulnerability in themehunk Open Shop open-shop allows Exploiting Incorrectly C

🏢 Sonstige 📅 13.7.2026 📊 CVSS: 7.1
7.1

CVE-2026-57404 - Missing Authorization vulnerability in magepeopleteam Booking and Rental Manager booking-and-rental-

🏢 Sonstige 📅 13.7.2026 📊 CVSS: 6.5
6.5

CVE-2026-57403 - Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability i

🏢 Sonstige 📅 13.7.2026 📊 CVSS: 7.1
7.1

CVE-2026-57402 - Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability i

🏢 Sonstige 📅 13.7.2026 📊 CVSS: 6.5
6.5

CVE-2026-57401 - Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') vulnerability in Brai

🏢 Sonstige 📅 13.7.2026 📊 CVSS: 9.9
9.9

CVE-2026-57400 - Missing Authorization vulnerability in WP Swings Event Tickets Manager for WooCommerce event-tickets

🏢 Sonstige 📅 13.7.2026 📊 CVSS: 6.5
6.5

CVE-2026-57399 - Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability i

🏢 Sonstige 📅 13.7.2026 📊 CVSS: 7.1
7.1

CVE-2026-57398 - Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability i

🏢 Sonstige 📅 13.7.2026 📊 CVSS: 7.1
7.1

CVE-2026-57396 - Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability i

🏢 Sonstige 📅 13.7.2026 📊 CVSS: 7.1
7.1

CVE-2026-57395 - Missing Authorization vulnerability in Themefic Tourfic tourfic allows Exploiting Incorrectly Config

🏢 Sonstige 📅 13.7.2026 📊 CVSS: 6.5
6.5

CVE-2026-57394 - Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability i

🏢 Sonstige 📅 13.7.2026 📊 CVSS: 7.1
7.1

CVE-2026-57393 - Exposure of Sensitive System Information to an Unauthorized Control Sphere vulnerability in EDGARROJ

🏢 Sonstige 📅 13.7.2026 📊 CVSS: 6.5
6.5

CVE-2026-57392 - Missing Authorization vulnerability in Themefic Tourfic tourfic allows Exploiting Incorrectly Config

🏢 Sonstige 📅 13.7.2026 📊 CVSS: 6.5
6.5

CVE-2026-57391 - Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability i

🏢 Sonstige 📅 13.7.2026 📊 CVSS: 6.5
6.5

CVE-2026-57390 - Missing Authorization vulnerability in EDGARROJAS Extra Product Options Builder for WooCommerce addi

🏢 Sonstige 📅 13.7.2026 📊 CVSS: 6.5
6.5

CVE-2026-57389 - Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') vulnerability in Adri

🏢 Sonstige 📅 13.7.2026 📊 CVSS: 8.6
8.6

CVE-2026-57388 - Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability i

🏢 Sonstige 📅 13.7.2026 📊 CVSS: 7.1
7.1

CVE-2026-57387 - Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability i

🏢 Sonstige 📅 13.7.2026 📊 CVSS: 7.1
7.1

CVE-2026-57386 - Incorrect Privilege Assignment vulnerability in Kodezen LLC aBlocks ablocks allows Privilege Escalat

🏢 Sonstige 📅 13.7.2026 📊 CVSS: 8.8
8.8

CVE-2026-57385 - Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability i

🏢 Sonstige 📅 13.7.2026 📊 CVSS: 8.5
8.5

CVE-2026-57383 - Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability i

🏢 Sonstige 📅 13.7.2026 📊 CVSS: 7.1
7.1

CVE-2026-57382 - Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability i

🏢 Sonstige 📅 13.7.2026 📊 CVSS: 7.1
7.1

CVE-2026-57381 - Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability i

🏢 Sonstige 📅 13.7.2026 📊 CVSS: 7.1
7.1

CVE-2026-57380 - Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability i

🏢 Sonstige 📅 13.7.2026 📊 CVSS: 7.1
7.1

CVE-2026-57379 - Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability i

🏢 Sonstige 📅 13.7.2026 📊 CVSS: 7.1
7.1

CVE-2026-57378 - Missing Authorization vulnerability in Phil Kurth Advanced Forms advanced-forms allows Exploiting In

🏢 Sonstige 📅 13.7.2026 📊 CVSS: 7.5
7.5

CVE-2026-57377 - Missing Authorization vulnerability in WPXPO WowAddons product-addons allows Exploiting Incorrectly

🏢 Sonstige 📅 13.7.2026 📊 CVSS: 6.5
6.5

CVE-2026-57376 - Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability i

🏢 Sonstige 📅 13.7.2026 📊 CVSS: 7.1
7.1

CVE-2026-57375 - Missing Authorization vulnerability in FluxBuilder MStore API mstore-api allows Exploiting Incorrect

🏢 Sonstige 📅 13.7.2026 📊 CVSS: 6.5
6.5

CVE-2026-57372 - Server-Side Request Forgery (SSRF) vulnerability in denishua WPJAM Basic wpjam-basic allows Server S

🏢 Sonstige 📅 13.7.2026 📊 CVSS: 7.2
7.2

CVE-2026-57371 - Deserialization of Untrusted Data vulnerability in denishua WPJAM Basic wpjam-basic allows Object In

🏢 Sonstige 📅 13.7.2026 📊 CVSS: 8.8
8.8

CVE-2026-57369 - Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability i

🏢 Sonstige 📅 13.7.2026 📊 CVSS: 7.1
7.1

CVE-2026-57368 - Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability i

🏢 Sonstige 📅 13.7.2026 📊 CVSS: 7.1
7.1

CVE-2026-57365 - Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability i

🏢 Sonstige 📅 13.7.2026 📊 CVSS: 6.5
6.5

CVE-2026-57364 - Improper Validation of Specified Quantity in Input vulnerability in WPDeveloper Better Payment – Ins

🏢 Sonstige 📅 13.7.2026 📊 CVSS: 6.5
6.5

CVE-2026-57363 - Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability i

🏢 Sonstige 📅 13.7.2026 📊 CVSS: 7.1
7.1

CVE-2026-49876 - Authenticated SSRF in Gravitino JobManager allows server-side HTTP requests to internal network and

🏢 Apache 📅 13.7.2026 📊 CVSS: 6.5
6.5

CVE-2026-41041 - URL path injection via unencoded user-supplied identifiers vulnerability in Apache Gravitino. This

🏢 Apache 📅 13.7.2026 📊 CVSS: 9.1
9.1

CVE-2026-22103 - The NPC start endpoint on the web server at port 8090 is vulnerable to command injection.

🏢 Sonstige 📅 13.7.2026 📊 CVSS: 0.0
0.0

CVE-2026-22102 - A POST request sent to a specific webserver endpoint can be used to write to arbitrary file location

🏢 Sonstige 📅 13.7.2026 📊 CVSS: 0.0
0.0

CVE-2026-22100 - The OCPP DataTransfer message `ReserveLogin` is vulnerable to command injection. By manipulating the

🏢 Sonstige 📅 13.7.2026 📊 CVSS: 0.0
0.0

CVE-2026-22099 - The charging station does not require authentication for Bluetooth commands to perform actions. The

🏢 Sonstige 📅 13.7.2026 📊 CVSS: 0.0
0.0

CVE-2026-22098 - Various sensitive information such as passwords and charging card UIDs are written to log files.

🏢 Sonstige 📅 13.7.2026 📊 CVSS: 0.0
0.0

CVE-2026-22097 - The firmware update mechanism does not include cryptographic signature validation. This allows anyon

🏢 Sonstige 📅 13.7.2026 📊 CVSS: 0.0
0.0

CVE-2026-22096 - The webserver running on port 8090 does not require authentication. This allows for sensitive inform

🏢 Sonstige 📅 13.7.2026 📊 CVSS: 0.0
0.0

CVE-2026-22095 - The network diagnosis endpoint on the web server at port 8090 is vulnerable to command injection.

🏢 Sonstige 📅 13.7.2026 📊 CVSS: 0.0
0.0

CVE-2026-22093 - The EVbee Service Android app uses TLS encrypted communication (HTTPS), but does not validate the ce

🏢 Sonstige 📅 13.7.2026 📊 CVSS: 0.0
0.0

CVE-2026-15557 - A weakness has been identified in waooAI waoowaoo up to 0.4.1. Affected by this vulnerability is the

🏢 Sonstige 📅 13.7.2026 📊 CVSS: 7.3
7.3

CVE-2026-15548 - A security vulnerability has been detected in Shibby Tomato up to 1.28.0000. This vulnerability affe

🏢 Sonstige 📅 13.7.2026 📊 CVSS: 8.8
8.8

CVE-2026-14846 - In version 8.2.1 of PrestaShop, there is a vulnerability relating to the incorrect sanitisation of e

🏢 Sonstige 📅 13.7.2026 📊 CVSS: 0.0
0.0

CVE-2026-13014 - A vulnerability in Thales CERT "Suspicious" application =< 1.3.4 allows a remote and unauthenticated

🏢 Sonstige 📅 13.7.2026 📊 CVSS: 0.0
0.0

CVE-2026-9708 - Mattermost versions 11.7.x <= 11.7.2, 11.6.x <= 11.6.4, 10.11.x <= 10.11.19 fail to validate that an

🏢 Sonstige 📅 13.7.2026 📊 CVSS: 4.9
4.9

CVE-2026-9597 - Mattermost versions 11.7.x <= 11.7.2, 11.6.x <= 11.6.4 fail to verify whether a guest account is dea

🏢 Sonstige 📅 13.7.2026 📊 CVSS: 5.4
5.4

CVE-2026-9571 - Mattermost versions 11.7.x <= 11.7.2, 11.6.x <= 11.6.4, 10.11.x <= 10.11.19 fail to invalidate OAuth

🏢 Sonstige 📅 13.7.2026 📊 CVSS: 5.9
5.9

CVE-2026-6850 - Mattermost versions 11.7.x <= 11.7.2, 11.6.x <= 11.6.4, 10.11.x <= 10.11.19 fail to validate the len

🏢 Sonstige 📅 13.7.2026 📊 CVSS: 6.5
6.5

CVE-2026-62143 - A Server-Side Request Forgery (SSRF) protection bypass existed in the html_to_markdown expansion mod

🏢 Sonstige 📅 13.7.2026 📊 CVSS: 0.0
0.0

CVE-2026-15574 - A flaw was found in the vllm-orchestrator-gateway component. The system's production binary logs all

🏢 Sonstige 📅 13.7.2026 📊 CVSS: 7.5
7.5

CVE-2026-15547 - A weakness has been identified in Shibby Tomato up to 1.28.0000. This affects the function sub_2D048

🏢 Sonstige 📅 13.7.2026 📊 CVSS: 6.3
6.3

CVE-2026-15546 - A security flaw has been discovered in Shibby Tomato up to 1.28.0000. Affected by this issue is the

🏢 Sonstige 📅 13.7.2026 📊 CVSS: 6.3
6.3

CVE-2026-15545 - A vulnerability was identified in Shibby Tomato up to 1.28.0000. Affected by this vulnerability is t

🏢 Sonstige 📅 13.7.2026 📊 CVSS: 8.8
8.8

CVE-2026-14453 - This vulnerability is a critical Server-Side Template Injection (SSTI) in Centreon's centreon-open-t

🏢 Sonstige 📅 13.7.2026 📊 CVSS: 9.6
9.6

CVE-2026-10106 - Mattermost versions 11.7.x <= 11.7.2, 11.6.x <= 11.6.4, 10.11.x <= 10.11.19 fail to verify that the

🏢 Sonstige 📅 13.7.2026 📊 CVSS: 6.5
6.5

CVE-2026-10103 - Mattermost versions 11.7.x <= 11.7.2, 11.6.x <= 11.6.4, 10.11.x <= 10.11.19 fail to verify post owne

🏢 Sonstige 📅 13.7.2026 📊 CVSS: 4.3
4.3

CVE-2026-10085 - Mattermost versions 11.7.x <= 11.7.2, 11.6.x <= 11.6.4, 10.11.x <= 10.11.19 fail to restrict the gro

🏢 Sonstige 📅 13.7.2026 📊 CVSS: 5.4
5.4

CVE-2026-57830 - Joomla Extension - joomshaper.com - Unauthenticated arbitrary file deletion in Helix Ultimate < 2.2.

🏢 Joomla 📅 13.7.2026 📊 CVSS: 9.1
9.1

CVE-2026-57829 - Joomla Extension - joomshaper.com - Unauthenticated stored XSS in Helix Ultimate < 2.2.7 - The Jooml

🏢 Joomla 📅 13.7.2026 📊 CVSS: 6.1
6.1

CVE-2026-4769 - Certain devices in the WAGO System I/O Field series activate an internal diagnostic capability durin

🏢 Sonstige 📅 13.7.2026 📊 CVSS: 9.8
9.8

CVE-2026-15544 - A vulnerability was determined in Shibby Tomato up to 1.28.0000. Affected is the function getupsvar

🏢 Sonstige 📅 13.7.2026 📊 CVSS: 8.8
8.8

CVE-2026-15543 - A vulnerability was found in Tenda CH22 1.0.0.1. This impacts the function formCertListInfo of the f

🏢 Sonstige 📅 13.7.2026 📊 CVSS: 8.8
8.8

CVE-2026-15542 - A vulnerability has been found in will-moss Isaiah up to 1.36.9. This affects an unknown function of

🏢 Sonstige 📅 13.7.2026 📊 CVSS: 7.3
7.3

CVE-2026-15541 - A flaw has been found in will-moss Isaiah up to 1.36.9. The impacted element is the function Server.

🏢 Sonstige 📅 13.7.2026 📊 CVSS: 7.3
7.3

CVE-2026-15540 - A vulnerability was detected in SourceCodester Online Book Store System 1.0. The affected element is

🏢 Sonstige 📅 13.7.2026 📊 CVSS: 4.3
4.3

CVE-2026-14165 - An Authorization Bypass Through User-Controlled Key vulnerability affecting Tuleap Enterprise Editio

🏢 Sonstige 📅 13.7.2026 📊 CVSS: 7.5
7.5

CVE-2026-15539 - A security vulnerability has been detected in SourceCodester Online Book Store System 1.0. Impacted

🏢 Sonstige 📅 13.7.2026 📊 CVSS: 4.7
4.7

CVE-2026-15538 - A weakness has been identified in primefaces primereact up to 10.9.8. This issue affects the functio

🏢 F5 📅 13.7.2026 📊 CVSS: 6.3
6.3

CVE-2026-15537 - A security flaw has been discovered in SourceCodester Online Book Store System 1.0. This vulnerabili

🏢 Sonstige 📅 13.7.2026 📊 CVSS: 7.3
7.3

CVE-2026-15536 - A vulnerability was identified in itsourcecode Hospital Management System 1.0. This affects an unkno

🏢 Sonstige 📅 13.7.2026 📊 CVSS: 6.3
6.3

CVE-2026-12582 - The Library Management System WordPress plugin before 3.5.8 does not sanitize and escape a user-supp

🏢 Wordpress 📅 13.7.2026 📊 CVSS: 8.6
8.6

CVE-2026-12397 - The WP Job Portal WordPress plugin before 2.5.5 does not verify ownership when returning an employe

🏢 Wordpress 📅 13.7.2026 📊 CVSS: 4.3
4.3

CVE-2026-12396 - The WP Job Portal WordPress plugin before 2.5.5 does not perform capability or ownership checks bef

🏢 Wordpress 📅 13.7.2026 📊 CVSS: 5.4
5.4

CVE-2026-12275 - The Tutor LMS WordPress plugin before 3.9.13 does not, in its Droip and Kirki page-builder integrat

🏢 Wordpress 📅 13.7.2026 📊 CVSS: 7.1
7.1

CVE-2026-12274 - The Tutor LMS WordPress plugin before 3.9.13 does not verify that the requesting user is allowed to

🏢 Wordpress 📅 13.7.2026 📊 CVSS: 6.5
6.5

CVE-2026-12273 - The Tutor LMS WordPress plugin before 3.9.13 does not perform any authorization or post-target vali

🏢 Wordpress 📅 13.7.2026 📊 CVSS: 4.3
4.3

CVE-2026-12271 - The Tutor LMS WordPress plugin before 3.9.13 does not verify ownership of the targeted quiz attempt

🏢 Wordpress 📅 13.7.2026 📊 CVSS: 5.4
5.4

CVE-2026-12081 - The Database for Contact Form 7, WPforms, Elementor forms WordPress plugin before 1.5.2 does not res

🏢 Wordpress 📅 13.7.2026 📊 CVSS: 5.0
5.0

CVE-2026-11964 - The User Registration & Membership WordPress plugin before 5.2.2 does not verify the authenticity o

🏢 Wordpress 📅 13.7.2026 📊 CVSS: 9.1
9.1

CVE-2026-11963 - The User Registration & Membership WordPress plugin before 5.2.2 does not perform an authorization

🏢 Wordpress 📅 13.7.2026 📊 CVSS: 8.1
8.1

CVE-2026-10551 - The Breeze Cache WordPress plugin before 2.5.6 is vulnerable to unauthenticated Stored Cross-Site Sc

🏢 Wordpress 📅 13.7.2026 📊 CVSS: 6.1
6.1

CVE-2026-15535 - A vulnerability was determined in AkariAsai self-rag up to 1fcdc420e48f50a7d7ab1ece5494221b93252e99.

🏢 F5 📅 13.7.2026 📊 CVSS: 6.3
6.3

CVE-2026-15533 - A security flaw has been discovered in DedeCMS 5.7.118. Impacted is an unknown function of the file

🏢 Sonstige 📅 13.7.2026 📊 CVSS: 4.7
4.7

CVE-2026-15532 - A vulnerability was identified in SourceCodester Online Book Store System 1.0. This issue affects so

🏢 Sonstige 📅 13.7.2026 📊 CVSS: 2.4
2.4

CVE-2026-15531 - A vulnerability has been found in yashbhalgat HashNeRF-pytorch up to 82885e698295982504eb6a26d060a6b

🏢 Sonstige 📅 13.7.2026 📊 CVSS: 5.3
5.3

CVE-2026-15530 - A flaw has been found in WuzhiCMS up to 4.1.0. Affected by this vulnerability is the function config

🏢 Sonstige 📅 13.7.2026 📊 CVSS: 5.3
5.3
«« « Zurück Seite 157 von 157

🏢 CVE nach Hersteller

🛡️

Empfohlene IT-Security & Netzwerk-Hardware

Von NetzBastion getestete & empfohlene Sicherheits- und Netzwerk-Hardware

✓ Geprüfte Qualität
2FA Hardware Key Bestseller

YubiKey 5 NFC (USB-A & NFC)

Verfügbarkeit & Preis prüfen ↗
Juice-Jacking Schutz Impuls-Tipp (~10€)

USB-Datenblocker (USB-Kondom)

Verfügbarkeit & Preis prüfen ↗
Mini Server & Pi-hole Top-Tipp

Raspberry Pi 5 (8GB RAM)

Verfügbarkeit & Preis prüfen ↗
Firewall & Router Netzwerk

UniFi Cloud Gateway Ultra

Verfügbarkeit & Preis prüfen ↗
OPNsense Hardware Profi-Firewall

Protectli Vault 4-Port

Verfügbarkeit & Preis prüfen ↗
MicroSD für Pi / Router Zubehör (~16€)

SanDisk Extreme Pro 128GB

Verfügbarkeit & Preis prüfen ↗
Alle IT-Sicherheit-Produkte bei Amazon durchsuchen → * Als Amazon-Partner verdienen wir an qualifizierten Verkäufen.