Security
CVE Feed
Latest vulnerabilities from the National Vulnerability Database.
56054
Total
4437
Critical
16638
High
16408
Medium
| CVE ID | Severity | Score | Description | Published |
|---|---|---|---|---|
| CVE-2026-94218 | LOW | 3.1 | A flaw was found in the authentication session management of Keycloak, an identity and access management solution. The issue occurs when an administrator enforces a … | Sep 21, 2026 |
| CVE-2026-94217 | LOW | 3.5 | A flaw was found in the User-Managed Access (UMA) implementation of Keycloak. The issue occurs in the authorization token endpoint when processing permission tickets. If … | Sep 21, 2026 |
| CVE-2026-94215 | MEDIUM | 5.5 | A flaw was found in the Admin REST API of Keycloak, an open-source identity and access management solution. The issue occurs because the API uses … | Sep 21, 2026 |
| CVE-2026-94213 | MEDIUM | 4.9 | A flaw was found in the Authorization Services component of Keycloak, an open-source identity and access management solution. The issue occurs in the policy evaluation … | Sep 21, 2026 |
| CVE-2026-94146 | HIGH | 8.8 | A vulnerability was found in BioStar BIOS Update Utility 1.9.7.3. This issue affects the function sub_110BC of the file BSMEM64_W10.sys of the component IOCTL Handler. … | Sep 21, 2026 |
| CVE-2026-94145 | LOW | 3.5 | A vulnerability has been found in xuxueli xxl-job up to 3.4.2/3.5.0. This vulnerability affects unknown code of the file xxl-job-admin/src/main/java/com/xxl/job/admin/business/controller/JobInfoController.java of the component Task Management … | Sep 21, 2026 |
| CVE-2026-94144 | HIGH | 7.3 | A flaw has been found in drogonframework drogon up to 1.9.13. This affects the function makeCriteria in the library orm_lib/src/Criteria.cc of the component ORM. Executing … | Sep 21, 2026 |
| CVE-2026-90860 | HIGH | 7.1 | The Canva Mobile App for HarmonyOS before v1.15.1 did not restrict the headers returned to an external origin running in a privileged WebView. A threat … | Sep 21, 2026 |
| CVE-2026-82187 | CRITICAL | 9.8 | The Web to Print Online Designer WordPress plugin before 2.15.0 does not validate the type or extension of uploaded files, and hands the token protecting … | Sep 21, 2026 |
| CVE-2026-94143 | HIGH | 7.3 | A vulnerability was detected in drogonframework drogon up to 1.9.13. Affected by this issue is the function Mapper::orderBy in the library Mapper.h of the component … | Sep 21, 2026 |
| CVE-2026-94142 | HIGH | 8.8 | A security vulnerability has been detected in BioStar Temperature Monitor Utility 1.2.1806.2200. Affected by this vulnerability is the function sub_1105C of the file BS_HWMIO64_W10.sys of … | Sep 21, 2026 |
| CVE-2026-94139 | HIGH | 7.4 | A weakness has been identified in Chengdu Feiyuxing Technology Feiyu Star Router B-MB5E202-210322-r11656. Affected is an unknown function of the file /send_order.cgi?parameter=loginout of the component … | Sep 21, 2026 |
| CVE-2026-90839 | UNKNOWN | — | Rejected reason: this is rejected | Sep 21, 2026 |
| CVE-2026-94138 | MEDIUM | 6.6 | A security flaw has been discovered in Chengdu Feiyuxing Technology Feiyu Star Router B-MB5E202-210322-r11656. This impacts an unknown function of the file /send_order.cgi?parameter=del_expmac. The manipulation … | Sep 21, 2026 |
| CVE-2026-94137 | LOW | 3.3 | A vulnerability was identified in Hangzhou Shunwang Technology shzh 10.7.2.693. This affects the function sub_180004AC0 of the file shdrv_x64.sys of the component IRP_MJ_DEVICE_CONTROL Handler. The … | Sep 21, 2026 |
| CVE-2026-94185 | MEDIUM | 5.5 | nvm resolves a requested version or alias by treating it as a filename under $NVM_DIR/alias. Before 0.40.8, nvm_alias() concatenated the requested name onto that directory … | Sep 21, 2026 |
| CVE-2026-94129 | HIGH | 8.8 | A vulnerability was detected in BioStar VALKYRIE AURORA 2.10.2411.0800. This vulnerability affects the function sub_1105C of the file BS_RVSIO64.sys of the component IOCTL Handler. The … | Sep 21, 2026 |
| CVE-2026-94128 | HIGH | 8.8 | A security vulnerability has been detected in BioStar VIVID LED DJ 4.0.2411.1500. This affects the function sub_1105C of the file BS_LED64.sys of the component IOCTL … | Sep 21, 2026 |
| CVE-2026-94110 | HIGH | 7.3 | A security vulnerability has been detected in QCMS up to 6.0.6. This issue affects the function self_Tmp in the library Lib/Config/Controllers.php of the component Content … | Sep 21, 2026 |
| CVE-2026-94103 | MEDIUM | 4.7 | A vulnerability has been found in RooCMS up to 1.2.2/1.3.4/1.4RC2. This impacts the function eval of the file roocms/site_pagePHP.php of the component Frontend Rendering. Such … | Sep 21, 2026 |
| CVE-2026-94102 | MEDIUM | 4.3 | A flaw has been found in WuzhiCMS up to 4.1.0. This affects an unknown function of the file /index.php?m=member&v=Login of the component Login. This manipulation … | Sep 21, 2026 |
| CVE-2026-94101 | CRITICAL | 9.9 | A security vulnerability has been detected in Netcore NBR200V2 1.3.241127.071246. The affected element is the function vlan_load_form_uci of the file /usr/bin/routerd. The manipulation of the … | Sep 21, 2026 |
| CVE-2026-94100 | CRITICAL | 9.9 | A weakness has been identified in Netcore NBR200V2 1.3.241127.071246. Impacted is the function wan_config_set_vlan of the file /usr/bin/routerd of the component WAN VLAN Reconfiguration. Executing … | Sep 21, 2026 |
| CVE-2026-94099 | CRITICAL | 9.9 | A security flaw has been discovered in Netcore NBR200V2 1.3.241127.071246. This issue affects some unknown processing of the file restore.cgi of the component Backup Restore. … | Sep 21, 2026 |
| CVE-2026-94098 | CRITICAL | 9.1 | A vulnerability was identified in Netcore NBR200V2 1.3.241127.071246. This vulnerability affects unknown code of the file /www/cgi-bin/upgrade of the component Firmware Upgrade CGI Endpoint. Such … | Sep 21, 2026 |