Security
CVE Feed
Latest vulnerabilities from the National Vulnerability Database.
30387
Total
2427
Critical
9093
High
9467
Medium
| CVE ID | Severity | Score | Description | Published |
|---|---|---|---|---|
| CVE-2016-20045 | HIGH | 8.4 | HNB Organizer 1.9.18-10 contains a local buffer overflow vulnerability that allows local attackers to execute arbitrary code by supplying an oversized argument to the -rc … | Mar 28, 2026 |
| CVE-2016-20044 | HIGH | 8.4 | PInfo 0.6.9-5.1 contains a local buffer overflow vulnerability that allows local attackers to execute arbitrary code by supplying an oversized argument to the -m parameter. … | Mar 28, 2026 |
| CVE-2016-20043 | HIGH | 8.4 | NRSS RSS Reader 0.3.9-1 contains a stack buffer overflow vulnerability that allows local attackers to execute arbitrary code by supplying an oversized argument to the … | Mar 28, 2026 |
| CVE-2016-20042 | HIGH | 8.4 | TRN 3.6-23 contains a stack buffer overflow vulnerability that allows local attackers to execute arbitrary code by supplying an oversized argument to the application. Attackers … | Mar 28, 2026 |
| CVE-2016-20041 | HIGH | 8.4 | Yasr 0.6.9-5 contains a buffer overflow vulnerability that allows local attackers to crash the application or execute arbitrary code by supplying an oversized argument to … | Mar 28, 2026 |
| CVE-2016-20040 | HIGH | 8.4 | TiEmu 3.03-nogdb+dfsg-3 contains a buffer overflow vulnerability in the ROM parameter handling that allows local attackers to crash the application or execute arbitrary code. Attackers … | Mar 28, 2026 |
| CVE-2016-20039 | HIGH | 8.4 | Multi Emulator Super System 0.154-3.1 contains a buffer overflow vulnerability in the gamma parameter handling that allows local attackers to crash the application or execute … | Mar 28, 2026 |
| CVE-2016-20038 | HIGH | 8.4 | yTree 1.94-1.1 contains a stack-based buffer overflow vulnerability that allows local attackers to execute arbitrary code by supplying an excessively long argument to the application. … | Mar 28, 2026 |
| CVE-2016-20037 | HIGH | 8.4 | xwpe 1.5.30a-2.1 and prior contains a stack-based buffer overflow vulnerability that allows local attackers to execute arbitrary code by supplying overly long input strings that … | Mar 28, 2026 |
| CVE-2026-4995 | LOW | 3.5 | A vulnerability was determined in wandb OpenUI up to 1.0. Affected by this vulnerability is an unknown functionality of the file frontend/public/annotator/index.html of the component … | Mar 28, 2026 |
| CVE-2025-9497 | UNKNOWN | — | Use of Hard-coded Credentials vulnerability in Microchip Time Provider 4100 allows Malicious Manual Software Update.This issue affects Time Provider 4100: before 2.5.0. | Mar 28, 2026 |
| CVE-2026-4994 | LOW | 3.5 | A vulnerability was found in wandb OpenUI up to 1.0/3.5-turb. Affected is the function generic_exception_handler of the file backend/openui/server.py of the component APIStatusError Handler. The … | Mar 28, 2026 |
| CVE-2026-4993 | LOW | 3.3 | A vulnerability has been found in wandb OpenUI up to 0.0.0.0/1.0. This impacts an unknown function of the file backend/openui/config.py. The manipulation of the argument … | Mar 28, 2026 |
| CVE-2026-2442 | MEDIUM | 5.3 | The Page Builder: Pagelayer – Drag and Drop website builder plugin for WordPress is vulnerable to Improper Neutralization of CRLF Sequences ('CRLF Injection') in all … | Mar 28, 2026 |
| CVE-2026-23399 | UNKNOWN | — | In the Linux kernel, the following vulnerability has been resolved: nf_tables: nft_dynset: fix possible stateful expression memleak in error path If cloning the second stateful … | Mar 28, 2026 |
| CVE-2026-1307 | MEDIUM | 6.5 | The Ninja Forms - The Contact Form Builder That Grows With You plugin for WordPress is vulnerable to Sensitive Information Exposure in all versions up … | Mar 28, 2026 |
| CVE-2025-15445 | UNKNOWN | — | The Restaurant Cafeteria WordPress theme through 0.4.6 exposes insecure admin-ajax actions without nonce or capability checks, allowing any logged-in user, like subscriber, to perform privileged … | Mar 28, 2026 |
| CVE-2025-12886 | HIGH | 7.2 | The Oxygen Theme theme for WordPress is vulnerable to Server-Side Request Forgery in all versions up to, and including, 6.0.8 via the laborator_calc_route AJAX action. … | Mar 28, 2026 |
| CVE-2026-4987 | HIGH | 7.5 | The SureForms – Contact Form, Payment Form & Other Custom Form Builder plugin for WordPress is vulnerable to Payment Amount Bypass in all versions up … | Mar 28, 2026 |
| CVE-2026-1679 | HIGH | 7.3 | The eswifi socket offload driver copies user-provided payloads into a fixed buffer without checking available space; oversized sends overflow `eswifi->buf`, corrupting kernel memory (CWE-120). Exploit … | Mar 28, 2026 |
| CVE-2026-4992 | MEDIUM | 4.3 | A flaw has been found in wandb OpenUI up to 1.0. This affects the function create_share/get_share of the file backend/openui/server.py of the component HTMLAnnotator Component. … | Mar 27, 2026 |
| CVE-2026-4991 | LOW | 3.5 | A vulnerability was detected in QDOCS Smart School Management System up to 7.2. The impacted element is an unknown function of the file /admin/enquiry of … | Mar 27, 2026 |
| CVE-2026-4248 | HIGH | 8.0 | The Ultimate Member plugin for WordPress is vulnerable to Sensitive Information Exposure in all versions up to, and including, 2.11.2. This is due to the … | Mar 27, 2026 |
| CVE-2026-33996 | UNKNOWN | — | LibJWT is a C JSON Web Token Library. Starting in version 3.0.0 and prior to version 3.3.0, the JWK parsing for RSA-PSS did not protect … | Mar 27, 2026 |
| CVE-2026-33994 | UNKNOWN | — | Locutus brings stdlibs of other programming languages to JavaScript for educational purposes. Starting in version 2.0.39 and prior to version 3.0.25, a prototype pollution vulnerability … | Mar 27, 2026 |