Security
CVE Feed
Latest vulnerabilities from the National Vulnerability Database.
54298
Total
4306
Critical
16144
High
15836
Medium
| CVE ID | Severity | Score | Description | Published |
|---|---|---|---|---|
| CVE-2026-100751 | UNKNOWN | — | Joomla Extension - regularlabs.com - Privileged stored XSS via data-rlta-url attributes in Tabs & Accordions (Pro) 2.3.0 - 3.1.0 - Tabs & Accordions Pro accepts … | Sep 28, 2026 |
| CVE-2026-100750 | UNKNOWN | — | Joomla Extension - regularlabs.com - LFI / SSRF in Modules Anywhere 1.5.0 - 9.0.5 for Joomla - Modules Anywhere Pro lets additional attributes on a … | Sep 28, 2026 |
| CVE-2026-101004 | MEDIUM | 5.3 | A security vulnerability has been detected in notionnext-org NotionNext up to 4.10.10. Affected by this issue is the function cleanCache of the file pages/api/cache.js of … | Sep 28, 2026 |
| CVE-2026-101003 | MEDIUM | 5.3 | A weakness has been identified in Cesanta Mongoose up to 7.21. Affected by this vulnerability is the function fn of the file tutorials/mqtt/mqtt-server/main.c of the … | Sep 28, 2026 |
| CVE-2026-101002 | CRITICAL | 9.9 | A security flaw has been discovered in Netcore NBR200V2 1.3.241127.071246. Affected is the function system of the file /usr/bin/network_tools of the component Tools Ping Handler. … | Sep 28, 2026 |
| CVE-2026-87723 | UNKNOWN | — | In Google fuse-archive versions prior to 1.24, an attacker who can prepend a directory to PATH or write a malicious binary to an attacker-controlled or … | Sep 28, 2026 |
| CVE-2026-101001 | CRITICAL | 10.0 | A vulnerability was identified in Netcore NBR200V2 1.3.241127.071246. This impacts the function eval of the file /www/cgi-bin/network_tools of the component Web Management Interface. Such manipulation … | Sep 28, 2026 |
| CVE-2026-101000 | CRITICAL | 10.0 | A vulnerability was determined in Netcore NBR100V2 1.3.240614.030928. This affects the function uci.apply of the file /usr/share/rpcd/acl.d/unauthenticated.json of the component ACL Handler. This manipulation of … | Sep 28, 2026 |
| CVE-2026-100909 | HIGH | 7.3 | A vulnerability was found in OctoberCMS up to 4.1.19/4.2.25/4.3.4. The impacted element is the function getSourcePathForResize of the file modules/system/classes/ResizeImages.php. The manipulation of the argument … | Sep 28, 2026 |
| CVE-2026-100908 | HIGH | 7.5 | A vulnerability has been found in Eyeplus 57.0.0.0308. This affects an unknown function of the component p2pcam HTTP Parser. Such manipulation leads to stack-based buffer … | Sep 28, 2026 |
| CVE-2026-100907 | MEDIUM | 5.3 | A flaw has been found in Eyeplus 57.0.0.0308. The impacted element is an unknown function of the file /snapshot of the component p2pcam Service. This … | Sep 28, 2026 |
| CVE-2026-100906 | MEDIUM | 5.3 | A vulnerability was detected in Eyeplus 57.0.0.0308. The affected element is the function GetUsers of the file /onvif/Device of the component ONVIF. The manipulation results … | Sep 28, 2026 |
| CVE-2026-100904 | LOW | 3.5 | A security vulnerability has been detected in amirsanni mini-inventory-and-sales-management-system up to 81bf0b55f5933f3b0dbb1583204a612e06605b95. Impacted is an unknown function of the file application/controllers/Items.php of the component Items … | Sep 28, 2026 |
| CVE-2026-100903 | MEDIUM | 5.3 | A vulnerability was identified in ООО НПО Ритм GEOritm up to 2.45.1. This affects an unknown part of the file /restapi/objects/obj-groups of the component REST … | Sep 28, 2026 |
| CVE-2026-100902 | MEDIUM | 6.5 | A vulnerability was determined in Barco ClickShare CX-20 Gen2 up to 02.26.00.0007. Affected by this issue is some unknown functionality of the file /wallpaper of … | Sep 28, 2026 |
| CVE-2026-100901 | HIGH | 7.3 | A vulnerability was found in athlon1600 youtube-downloader up to 4.0.1. Affected by this vulnerability is the function stream of the file public/stream.php. The manipulation of … | Sep 28, 2026 |
| CVE-2026-100900 | MEDIUM | 5.5 | A vulnerability has been found in DevaslanPHP project-management 1.2.1/1.2.2/1.2.3/1.2.4/v2.0.0-beta1. Affected is the function updateJiraProjects of the file /jira-import of the component Jira Import. The manipulation … | Sep 28, 2026 |
| CVE-2026-100899 | MEDIUM | 6.3 | A flaw has been found in DevaslanPHP project-management 1.2.1/1.2.2/1.2.3/1.2.4/v2.0.0-beta1. This impacts the function whereRaw of the file app/Filament/Widgets/Timesheet/MonthlyReport.php of the component Timesheet Dashboard. Executing a … | Sep 28, 2026 |
| CVE-2026-100898 | MEDIUM | 6.3 | A vulnerability was detected in DevaslanPHP project-management 1.2.1/1.2.2/1.2.3/1.2.4/2.0.0-beta1. This affects the function whereRaw of the file app/Filament/Widgets/Timesheet/ActivitiesReport.php of the component Timesheet Dashboard. Performing a manipulation … | Sep 28, 2026 |
| CVE-2026-100897 | MEDIUM | 5.5 | A security vulnerability has been detected in fuzui StudentInfo up to fcc42a639ec7cef620651bfd0f07ebb660529e3f. The impacted element is an unknown function of the file /StudentInfo/StudentHandler/moditypasswordstu of the … | Sep 28, 2026 |
| CVE-2026-100896 | CRITICAL | 9.9 | A weakness has been identified in TOTOLINK N150RT 3.4.0-B20201030. The affected element is the function system of the file /boafrm/formWlSiteSurvey of the component Web Management … | Sep 28, 2026 |
| CVE-2026-100895 | MEDIUM | 5.3 | A security flaw has been discovered in Trusted Domain Project OpenARC up to 1.0.0.Beta1. Impacted is the function arc_parse_canon_t in the library libopenarc/arc-canon.c of the … | Sep 28, 2026 |
| CVE-2026-100894 | MEDIUM | 6.3 | A vulnerability was identified in mathurvishal CloudClassroom-PHP-Project up to 5dadec098bfbbf3300d60c3494db3fb95b66e7be. This issue affects some unknown processing of the file updateguest.php. The manipulation of the argument … | Sep 28, 2026 |
| CVE-2026-100893 | HIGH | 7.3 | A vulnerability was determined in Privoce VoceChat Server up to 0.5.36. This vulnerability affects the function open_graph::fetch of the file src/api/resource.rs of the component open_graphic_parse … | Sep 28, 2026 |
| CVE-2026-100892 | MEDIUM | 5.3 | A vulnerability was found in aligungr UERANSIM up to 3.3.0. This affects the function ULInformationTransfer of the file src/gnb/rrc/handler.cpp of the component nr-gnb. Performing a … | Sep 28, 2026 |