|
5651
|
7.5 |
HIGH
Network
|
-
|
-
|
The AudioIgniter plugin for WordPress is vulnerable to Insecure Direct Object Reference in versions up to, and including, 2.0.2. This is due to the handle_playlist_endpoint() function (hooked to temp…
|
CWE-639
Authorization Bypass Through User-Controlled Key
|
CVE-2026-8679
|
2026-05-22 18:16 |
2026-05-22 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
5652
|
5.4 |
MEDIUM
Network
|
-
|
-
|
A broken access
control vulnerability exists in the TeamViewer DEX Platform (On‑Premises) prior version 9.2. Certain backend API endpoints do not
correctly enforce authorization checks, allowing an a…
|
CWE-862
Missing Authorization
|
CVE-2026-8381
|
2026-05-22 18:16 |
2026-05-22 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
5653
|
5.4 |
MEDIUM
Network
|
-
|
-
|
The FluentCRM – Email Newsletter, Automation, Email Marketing, Email Campaigns, Optins, Leads, and CRM Solution plugin for WordPress is vulnerable to Blind Server-Side Request Forgery in all versions…
|
CWE-918
Server-Side Request Forgery (SSRF)
|
CVE-2026-7798
|
2026-05-22 18:16 |
2026-05-22 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
5654
|
4.3 |
MEDIUM
Network
|
-
|
-
|
The Slider by Soliloquy – Responsive Image Slider for WordPress plugin for WordPress is vulnerable to Sensitive Information Exposure in all versions up to, and including, 2.8.1 via the map_meta_cap. …
|
CWE-200
Information Exposure
|
CVE-2026-7636
|
2026-05-22 18:16 |
2026-05-22 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
5655
|
4.3 |
MEDIUM
Network
|
-
|
-
|
The Widget Context plugin for WordPress is vulnerable to Cross-Site Request Forgery in all versions up to, and including, 1.3.3. This is due to missing or incorrect nonce validation on the save_widge…
|
CWE-352
Origin Validation Error
|
CVE-2026-7615
|
2026-05-22 18:16 |
2026-05-22 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
5656
|
6.4 |
MEDIUM
Network
|
-
|
-
|
The Draft List plugin for WordPress is vulnerable to Stored Cross-Site Scripting via Draft Post Title in all versions up to, and including, 2.6.3 due to insufficient input sanitization and output esc…
|
CWE-79
Cross-site Scripting
|
CVE-2026-9104
|
2026-05-22 14:16 |
2026-05-22 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
5657
|
8.8 |
HIGH
Network
|
-
|
-
|
The Easy Elements for Elementor – Addons & Website Templates plugin for WordPress is vulnerable to Privilege Escalation in all versions up to, and including, 1.4.5 via the `easyel_handle_register()` …
|
CWE-269
Improper Privilege Management
|
CVE-2026-9018
|
2026-05-22 14:16 |
2026-05-22 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
5658
|
6.4 |
MEDIUM
Network
|
-
|
-
|
The KIA Subtitle plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the plugin's `the-subtitle` shortcode `before` and `after` attributes in all versions up to, and including, 4.0.…
|
CWE-79
Cross-site Scripting
|
CVE-2026-7509
|
2026-05-22 14:16 |
2026-05-22 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
5659
|
4.3 |
MEDIUM
Network
|
-
|
-
|
The Location Weather plugin for WordPress is vulnerable to unauthorized modification of data due to missing capability checks on the `splw_update_block_options()` and `lwp_clean_weather_transients()`…
|
CWE-862
Missing Authorization
|
CVE-2026-7249
|
2026-05-22 14:16 |
2026-05-22 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
5660
|
6.1 |
MEDIUM
Network
|
-
|
-
|
The CBX 5 Star Rating & Review plugin for WordPress is vulnerable to Reflected Cross-Site Scripting via the 'page' parameter in all versions up to, and including, 1.0.7 due to insufficient input sani…
|
CWE-79
Cross-site Scripting
|
CVE-2026-6864
|
2026-05-22 14:16 |
2026-05-22 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
5661
|
4.3 |
MEDIUM
Network
|
-
|
-
|
The Alfie – Feed Plugin plugin for WordPress is vulnerable to Cross-Site Request Forgery in all versions up to, and including, 1.2.1. This is due to missing nonce validation on the alfie_manage() fun…
|
CWE-352
Origin Validation Error
|
CVE-2026-4070
|
2026-05-22 14:16 |
2026-05-22 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
5662
|
5.7 |
MEDIUM
Adjacent
|
-
|
-
|
There is an an information disclosure vulnerability in ZTE MU5250. Due to improper configuration of the access control mechanism, attackers can obtain information without authorization, causing the r…
|
CWE-200
Information Exposure
|
CVE-2026-44409
|
2026-05-22 14:16 |
2026-05-22 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
5663
|
6.1 |
MEDIUM
Network
|
-
|
-
|
The WP Blockade plugin for WordPress is vulnerable to Reflected Cross-Site Scripting via the 'shortcode' parameter in all versions up to and including 0.9.14. This is due to insufficient input saniti…
|
CWE-79
Cross-site Scripting
|
CVE-2026-3481
|
2026-05-22 14:16 |
2026-05-22 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
5664
|
4.3 |
MEDIUM
Network
|
-
|
-
|
The FastX theme for WordPress is vulnerable to unauthorized limited plugin installation and activation due to missing capability checks on the 'ultp_install_callback' and 'ultp_activate_callback' fun…
|
CWE-862
Missing Authorization
|
CVE-2026-2518
|
2026-05-22 14:16 |
2026-05-22 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
5665
|
- |
-
|
-
|
-
|
An attacker sending tcp, il, rudp, rudp, or gre packets with a length less than the header size would trigger a kernel panic.
|
-
|
CVE-2026-9054
|
2026-05-22 13:16 |
2026-05-22 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
5666
|
- |
-
|
-
|
-
|
Mothra would respect a default value given by a website for HTML file upload forms. An attacker could craft a website with a malicious default file path, and then conceal this form element.
|
-
|
CVE-2026-9053
|
2026-05-22 13:16 |
2026-05-22 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
5667
|
7.5 |
HIGH
Network
|
-
|
-
|
The WP ERP Pro plugin for WordPress is vulnerable to SQL Injection via the 'search_key' parameter in all versions up to, and including, 1.5.1. This is due to insufficient escaping on the user supplie…
|
CWE-89
SQL Injection
|
CVE-2026-4834
|
2026-05-22 13:16 |
2026-05-22 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
5668
|
7.8 |
HIGH
Local
|
-
|
-
|
In `src/havegecmd.c`, the `socket_handler` function performs a credential check on the abstract UNIX socket (`\0/sys/entropy/haveged`). However, while it detects if the connecting user is not root (`…
|
CWE-305
Authentication Bypass by Primary Weakness
|
CVE-2026-41054
|
2026-05-22 13:16 |
2026-05-20 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
5669
|
- |
-
|
-
|
-
|
The Verify() method for FIDO/U2F security key types (sk-ecdsa-sha2-nistp256@openssh.com, sk-ssh-ed25519@openssh.com) did not check the User Presence flag. Signatures generated without physical touch …
|
-
|
CVE-2026-39831
|
2026-05-22 13:16 |
2026-05-22 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
5670
|
- |
-
|
-
|
-
|
A malicious SSH peer could send unsolicited global request responses to fill an internal buffer, blocking the connection's read loop. The blocked goroutine could not be released by calling Close(), r…
|
-
|
CVE-2026-39830
|
2026-05-22 13:16 |
2026-05-22 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
5671
|
- |
-
|
-
|
-
|
The RSA and DSA public key parsers did not enforce size limits on key parameters. A crafted public key with an excessively large modulus or DSA parameter could cause several minutes of CPU consumptio…
|
-
|
CVE-2026-39829
|
2026-05-22 13:16 |
2026-05-22 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
5672
|
- |
-
|
-
|
-
|
When an SSH server authentication callback returned PartialSuccessError with non-nil Permissions, those permissions were silently discarded, potentially dropping certificate restrictions such as forc…
|
-
|
CVE-2026-39828
|
2026-05-22 13:16 |
2026-05-22 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
5673
|
- |
-
|
-
|
-
|
A cross-site scripting (XSS) vulnerability in SketchUp 2026's Dynamic Components feature allows remote code execution and local file exfiltration through maliciously crafted SKP files. The vulnerabil…
|
-
|
CVE-2026-9264
|
2026-05-22 11:16 |
2026-05-22 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
5674
|
- |
-
|
-
|
-
|
Catalyst::Plugin::Authentication versions through 0.10024 for Perl is susceptible to timing attacks.
These versions use Perl's built-in eq comparison. Discrepencies in timing could be used to guess…
|
CWE-208
Information Exposure Through Timing Discrepancy
|
CVE-2026-5091
|
2026-05-22 11:16 |
2026-05-22 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
5675
|
7.8 |
HIGH
Local
|
freebsd
|
freebsd
|
The setcred(2) system call is only available to privileged users. However, before the privilege level of the caller is checked, the user-supplied list of supplementary groups is copied into a fixed-…
|
CWE-121
Stack-based Buffer Overflow
|
CVE-2026-45250
|
2026-05-22 11:16 |
2026-05-21 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
5676
|
7.7 |
HIGH
Network
|
-
|
-
|
A malicious actor with access to the network and low privileges could exploit a Path Traversal vulnerability found in UniFi OS devices to access files on the underlying system that could be manipulat…
|
CWE-22
Path Traversal
|
CVE-2026-34911
|
2026-05-22 11:16 |
2026-05-22 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
5677
|
10.0 |
CRITICAL
Network
|
-
|
-
|
A malicious actor with access to the network could exploit an Improper Input Validation vulnerability found in UniFi OS devices to execute a Command Injection.
|
CWE-20
Improper Input Validation
|
CVE-2026-34910
|
2026-05-22 11:16 |
2026-05-22 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
5678
|
10.0 |
CRITICAL
Network
|
-
|
-
|
A malicious actor with access to the network could exploit a Path Traversal vulnerability found in UniFi OS devices to access files on the underlying system that could be manipulated to access an und…
|
CWE-22
Path Traversal
|
CVE-2026-34909
|
2026-05-22 11:16 |
2026-05-22 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
5679
|
10.0 |
CRITICAL
Network
|
-
|
-
|
A malicious actor with access to the network could exploit an Improper Access Control vulnerability found in UniFi OS devices to make unauthorized changes to the system.
|
CWE-284
Improper Access Control
|
CVE-2026-34908
|
2026-05-22 11:16 |
2026-05-22 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
5680
|
9.1 |
CRITICAL
Network
|
-
|
-
|
A malicious actor with access to the network and high privileges could exploit an Improper Input Validation vulnerability found in UniFi OS devices to execute a Command Injection.
|
CWE-20
Improper Input Validation
|
CVE-2026-33000
|
2026-05-22 11:16 |
2026-05-22 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
5681
|
7.8 |
HIGH
Local
|
mullvad
|
mullvad_vpn
|
Mullvad VPN is a VPN client app for desktop and mobile. When using macOS with versions 2026.1 and below, Mullvad VPN may allow local privilege escalation during installation or upgrade. The installer…
|
CWE-269 CWE-345 CWE-427 NVD-CWE-noinfo
Improper Privilege Management Insufficient Verification of Data Authenticity Uncontrolled Search Path Element
|
CVE-2026-32323
|
2026-05-22 09:04 |
2026-05-19 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
5682
|
4.3 |
MEDIUM
Network
|
glpi-project
|
glpi
|
GLPI is a free asset and IT management software package. In versions 11.0.0 through 11.0.6, an authenticated user with forms READ permission can export the structure of unauthorized forms. This issue…
|
CWE-862
Missing Authorization
|
CVE-2026-32312
|
2026-05-22 08:57 |
2026-05-19 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
5683
|
3.5 |
LOW
Network
|
github
|
cli
|
`gh` is GitHub’s official command line tool. From 1.6.0 to before 2.92.0, a security vulnerability has been identified in GitHub CLI that could allow terminal escape sequence injection when users vie…
|
CWE-150
Improper Neutralization of Escape, Meta, or Control Sequences
|
CVE-2026-45803
|
2026-05-22 08:47 |
2026-05-16 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
5684
|
10.0 |
CRITICAL
Network
|
microsoft
|
azure_local azure_resource_manager
|
Improper authentication in Azure Local Disconnected Operations allows an unauthorized attacker to elevate privileges over a network.
|
CWE-287 NVD-CWE-noinfo
Improper Authentication
|
CVE-2026-42822
|
2026-05-22 08:45 |
2026-05-19 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
5685
|
- |
-
|
-
|
-
|
Rejected reason: This CVE ID has been rejected or withdrawn by its CVE Numbering Authority.
|
-
|
CVE-2026-5297
|
2026-05-22 08:16 |
2026-05-22 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
5686
|
- |
-
|
-
|
-
|
Rejected reason: ** REJECT ** DO NOT USE THIS CANDIDATE NUMBER. Reason: This candidate was issued in error. Notes: All references and descriptions in this candidate have been removed to prevent accid…
|
-
|
CVE-2026-8352
|
2026-05-22 06:16 |
2026-05-22 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
5687
|
8.8 |
HIGH
Network
|
-
|
-
|
IINA before 1.4.3 contains a user-assisted command execution vulnerability that allows remote attackers to execute arbitrary commands by supplying malicious mpv_-prefixed query parameters through the…
|
CWE-88
Argument Injection
|
CVE-2026-47114
|
2026-05-22 06:03 |
2026-05-22 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
5688
|
4.3 |
MEDIUM
Network
|
-
|
-
|
The GSheet For Woo Importer plugin for WordPress is vulnerable to unauthorized loss of data due to a missing capability check on the process_ajax_restore_action() function in all versions up to, and …
|
CWE-862
Missing Authorization
|
CVE-2026-4843
|
2026-05-22 06:03 |
2026-05-22 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
5689
|
6.1 |
MEDIUM
Network
|
simplesamlphp
|
simplesamlphp-casserver simplesamlphp_casserver
|
SimpleSAMLphp-casserver is a CAS 1.0 and 2.0 compliant CAS server in the form of a SimpleSAMLphp module. In versions below 6.3.1 and 7.0.0, the logout endpoint accepts a url query parameter to redire…
|
CWE-601
Open Redirect
|
CVE-2025-65954
|
2026-05-22 06:01 |
2026-05-19 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
5690
|
7.5 |
HIGH
Network
|
mozilla
|
firefox firefox_focus
|
Sandbox escape in Firefox and Firefox Focus for Android. This vulnerability was fixed in Firefox 151.
|
CWE-693
Protection Mechanism Failure
|
CVE-2026-8945
|
2026-05-22 05:56 |
2026-05-19 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
5691
|
4.8 |
MEDIUM
Network
|
samba
|
rsync
|
Rsync version 3.4.2 and prior contain an authorization bypass vulnerability in the rsync daemon's hostname-based access control list enforcement when configured with chroot. Attackers can bypass host…
|
CWE-289
Authentication Bypass by Alternate Name
|
CVE-2026-43617
|
2026-05-22 05:54 |
2026-05-20 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
5692
|
3.7 |
LOW
Network
|
samba
|
rsync
|
Rsync versions before 3.4.3 contain an off-by-one out-of-bounds stack write vulnerability in the establish_proxy_connection() function in socket.c that allows network attackers to corrupt stack memor…
|
CWE-193
Off-by-one Error
|
CVE-2026-45232
|
2026-05-22 05:52 |
2026-05-20 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
5693
|
5.5 |
MEDIUM
Local
|
samba
|
rsync
|
Rsync version 3.4.2 and prior contain a receiver-side out-of-bounds array read vulnerability in recv_files() in receiver.c that allows a malicious rsync server to crash the rsync client process. Atta…
|
CWE-125
Out-of-bounds Read
|
CVE-2026-43620
|
2026-05-22 05:47 |
2026-05-20 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
5694
|
6.3 |
MEDIUM
Local
|
samba
|
rsync
|
Rsync version 3.4.2 and prior contain symlink race condition vulnerabilities in path-based system calls including chmod, lchown, utimes, rename, unlink, mkdir, symlink, mknod, link, rmdir, and lstat …
|
CWE-59 CWE-367
Link Following Time-of-check Time-of-use (TOCTOU) Race Condition
|
CVE-2026-43619
|
2026-05-22 05:42 |
2026-05-20 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
5695
|
8.1 |
HIGH
Network
|
samba
|
rsync
|
Rsync version 3.4.2 and prior contain an integer overflow vulnerability in the compressed-token decoder where a 32-bit signed counter is not checked for overflow, allowing a malicious sender to trigg…
|
CWE-125 CWE-190
Out-of-bounds Read Integer Overflow or Wraparound
|
CVE-2026-43618
|
2026-05-22 05:34 |
2026-05-20 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
5696
|
6.5 |
MEDIUM
Network
|
faraday_project
|
faraday
|
Faraday is an HTTP client library abstraction layer that provides a common interface over many adapters. Versions 2.0.0 through 2.14.1 still allow protocol-relative host override when the request tar…
|
CWE-918
Server-Side Request Forgery (SSRF)
|
CVE-2026-33637
|
2026-05-22 05:17 |
2026-05-20 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
5697
|
8.1 |
HIGH
Network
|
-
|
-
|
NGINX JavaScript has a vulnerability when the js_fetch_proxy directive is configured with at least one client-controlled NGINX variable (for example, $http_*, $arg_*, $cookie_*) and a location invoki…
|
CWE-122
Heap-based Buffer Overflow
|
CVE-2026-8711
|
2026-05-22 04:16 |
2026-05-20 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
5698
|
- |
-
|
-
|
-
|
A possible information disclosure vulnerability exists in the Vaadin Maven plugin and Vaadin Gradle plugin that exposes the full set of environment variables in build logs whenever the frontend build…
|
CWE-209
Information Exposure Through an Error Message
|
CVE-2026-7860
|
2026-05-22 04:16 |
2026-05-19 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
5699
|
7.5 |
HIGH
Network
|
progress
|
moveit_automation
|
Allocation of resources without limits or throttling vulnerability in Progress Software MOVEit Automation allows Excessive Allocation.
This issue affects MOVEit Automation: before 2025.0.11, from 20…
|
CWE-770
Allocation of Resources Without Limits or Throttling
|
CVE-2026-8488
|
2026-05-22 04:00 |
2026-05-21 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
5700
|
7.8 |
HIGH
Local
|
hp
|
linux_imaging_and_printing
|
A potential security vulnerability has been identified in the HP Linux Imaging and Printing Software. This potential vulnerability may allow escalation of privileges and/or arbitrary code execution v…
|
CWE-77
Command Injection
|
CVE-2026-8632
|
2026-05-22 03:58 |
2026-05-21 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|