Loading market data...

CVE Feed

Latest vulnerabilities from the National Vulnerability Database.

56054
Total
4437
Critical
16638
High
16408
Medium
CVE ID Severity Score Description Published
CVE-2026-94218 LOW 3.1 A flaw was found in the authentication session management of Keycloak, an identity and access management solution. The issue occurs when an administrator enforces a … Sep 21, 2026
CVE-2026-94217 LOW 3.5 A flaw was found in the User-Managed Access (UMA) implementation of Keycloak. The issue occurs in the authorization token endpoint when processing permission tickets. If … Sep 21, 2026
CVE-2026-94215 MEDIUM 5.5 A flaw was found in the Admin REST API of Keycloak, an open-source identity and access management solution. The issue occurs because the API uses … Sep 21, 2026
CVE-2026-94213 MEDIUM 4.9 A flaw was found in the Authorization Services component of Keycloak, an open-source identity and access management solution. The issue occurs in the policy evaluation … Sep 21, 2026
CVE-2026-94146 HIGH 8.8 A vulnerability was found in BioStar BIOS Update Utility 1.9.7.3. This issue affects the function sub_110BC of the file BSMEM64_W10.sys of the component IOCTL Handler. … Sep 21, 2026
CVE-2026-94145 LOW 3.5 A vulnerability has been found in xuxueli xxl-job up to 3.4.2/3.5.0. This vulnerability affects unknown code of the file xxl-job-admin/src/main/java/com/xxl/job/admin/business/controller/JobInfoController.java of the component Task Management … Sep 21, 2026
CVE-2026-94144 HIGH 7.3 A flaw has been found in drogonframework drogon up to 1.9.13. This affects the function makeCriteria in the library orm_lib/src/Criteria.cc of the component ORM. Executing … Sep 21, 2026
CVE-2026-90860 HIGH 7.1 The Canva Mobile App for HarmonyOS before v1.15.1 did not restrict the headers returned to an external origin running in a privileged WebView. A threat … Sep 21, 2026
CVE-2026-82187 CRITICAL 9.8 The Web to Print Online Designer WordPress plugin before 2.15.0 does not validate the type or extension of uploaded files, and hands the token protecting … Sep 21, 2026
CVE-2026-94143 HIGH 7.3 A vulnerability was detected in drogonframework drogon up to 1.9.13. Affected by this issue is the function Mapper::orderBy in the library Mapper.h of the component … Sep 21, 2026
CVE-2026-94142 HIGH 8.8 A security vulnerability has been detected in BioStar Temperature Monitor Utility 1.2.1806.2200. Affected by this vulnerability is the function sub_1105C of the file BS_HWMIO64_W10.sys of … Sep 21, 2026
CVE-2026-94139 HIGH 7.4 A weakness has been identified in Chengdu Feiyuxing Technology Feiyu Star Router B-MB5E202-210322-r11656. Affected is an unknown function of the file /send_order.cgi?parameter=loginout of the component … Sep 21, 2026
CVE-2026-90839 UNKNOWN — Rejected reason: this is rejected Sep 21, 2026
CVE-2026-94138 MEDIUM 6.6 A security flaw has been discovered in Chengdu Feiyuxing Technology Feiyu Star Router B-MB5E202-210322-r11656. This impacts an unknown function of the file /send_order.cgi?parameter=del_expmac. The manipulation … Sep 21, 2026
CVE-2026-94137 LOW 3.3 A vulnerability was identified in Hangzhou Shunwang Technology shzh 10.7.2.693. This affects the function sub_180004AC0 of the file shdrv_x64.sys of the component IRP_MJ_DEVICE_CONTROL Handler. The … Sep 21, 2026
CVE-2026-94185 MEDIUM 5.5 nvm resolves a requested version or alias by treating it as a filename under $NVM_DIR/alias. Before 0.40.8, nvm_alias() concatenated the requested name onto that directory … Sep 21, 2026
CVE-2026-94129 HIGH 8.8 A vulnerability was detected in BioStar VALKYRIE AURORA 2.10.2411.0800. This vulnerability affects the function sub_1105C of the file BS_RVSIO64.sys of the component IOCTL Handler. The … Sep 21, 2026
CVE-2026-94128 HIGH 8.8 A security vulnerability has been detected in BioStar VIVID LED DJ 4.0.2411.1500. This affects the function sub_1105C of the file BS_LED64.sys of the component IOCTL … Sep 21, 2026
CVE-2026-94110 HIGH 7.3 A security vulnerability has been detected in QCMS up to 6.0.6. This issue affects the function self_Tmp in the library Lib/Config/Controllers.php of the component Content … Sep 21, 2026
CVE-2026-94103 MEDIUM 4.7 A vulnerability has been found in RooCMS up to 1.2.2/1.3.4/1.4RC2. This impacts the function eval of the file roocms/site_pagePHP.php of the component Frontend Rendering. Such … Sep 21, 2026
CVE-2026-94102 MEDIUM 4.3 A flaw has been found in WuzhiCMS up to 4.1.0. This affects an unknown function of the file /index.php?m=member&v=Login of the component Login. This manipulation … Sep 21, 2026
CVE-2026-94101 CRITICAL 9.9 A security vulnerability has been detected in Netcore NBR200V2 1.3.241127.071246. The affected element is the function vlan_load_form_uci of the file /usr/bin/routerd. The manipulation of the … Sep 21, 2026
CVE-2026-94100 CRITICAL 9.9 A weakness has been identified in Netcore NBR200V2 1.3.241127.071246. Impacted is the function wan_config_set_vlan of the file /usr/bin/routerd of the component WAN VLAN Reconfiguration. Executing … Sep 21, 2026
CVE-2026-94099 CRITICAL 9.9 A security flaw has been discovered in Netcore NBR200V2 1.3.241127.071246. This issue affects some unknown processing of the file restore.cgi of the component Backup Restore. … Sep 21, 2026
CVE-2026-94098 CRITICAL 9.1 A vulnerability was identified in Netcore NBR200V2 1.3.241127.071246. This vulnerability affects unknown code of the file /www/cgi-bin/upgrade of the component Firmware Upgrade CGI Endpoint. Such … Sep 21, 2026