Latest CVE Feed

Vulnerabilities published in the last 30 days. Filter by severity, exploit status, or attack vector.

Score
Vulnerability
Published
9.1 CRITICAL
CVE-2025-68721 — Axigen Mail Server SSL Certificate Access Control Bypass

Axigen Mail Server before 10.5.57 contains an improper access control vulnerability in the WebAdmin interface. A delegated admin account with zero permissions can bypass access control checks and gai…

axigen_mail_server | Remote | Authorization
Feb 05, 2026 Feb 13, 2026
Feb 05, 2026
Feb 13, 2026
8.8 HIGH
CVE-2020-37151 — phpMyChat Plus 1.98 'deluser.php' SQL Injection

phpMyChat Plus 1.98 contains a SQL injection vulnerability in the deluser.php page through the pmc_username parameter that allows attackers to manipulate database queries. Attackers can exploit boole…

phpmychat-plus | Remote | Injection
Feb 05, 2026 Feb 20, 2026
Feb 05, 2026
Feb 20, 2026
Showing 20 of 5122 Results