Latest CVE Feed

Vulnerabilities published in the last 30 days. Filter by severity, exploit status, or attack vector.

Score
Vulnerability
Published
0.0 NA
CVE-2026-14307 — Geotargeting WP < 3.5.6.2 - Reflected XSS

The geotargetingwp WordPress plugin before 3.5.6.2 does not sanitise or escape several parameters before reflecting them back in AJAX responses that are served with an HTML content type, allowing una…

| Cross-Site Scripting
Aug 30, 2026 Aug 30, 2026
Aug 30, 2026
Aug 30, 2026
7.4 HIGH
CVE-2026-82480 — NASA cFS cFE Software Bus cfe_sb_util.c CFE_SB_GetUserDataLength integer underflow

A security flaw has been discovered in NASA cFS up to 7.0.1. The affected element is the function CFE_SB_GetUserDataLength of the file src/cFS/cfe/modules/sb/fsw/src/cfe_sb_util.c of the component cF…

cfs | Remote | Memory Corruption
Aug 30, 2026 Aug 30, 2026
Aug 30, 2026
Aug 30, 2026
6.3 MEDIUM
CVE-2026-82479 — NASA cFS SBN TCP sbn_tcp_if.c OS_read buffer overflow

A vulnerability was identified in NASA cFS up to 7.0.1. Impacted is the function OS_read of the file modules/protocol/tcp/fsw/src/sbn_tcp_if.c of the component SBN TCP Module. Such manipulation of th…

cfs | Memory Corruption
Aug 30, 2026 Aug 30, 2026
Aug 30, 2026
Aug 30, 2026
7.5 HIGH
CVE-2026-82478 — NASA Trick TCP Socket JSONVariableServerThread.cpp parse_request stack-based overflow

A vulnerability was determined in NASA Trick 19.6.0. This issue affects the function JSONVariableServerThread::parse_request of the file trick_source/sim_services/JSONVariableServer/JSONVariableServe…

trick | Remote | Memory Corruption
Aug 30, 2026 Aug 30, 2026
Aug 30, 2026
Aug 30, 2026
9.8 CRITICAL
CVE-2026-15980 — MyHome Core <= 4.4.5 - Authentication Bypass to Account Takeover via Activation Token

The MyHome Core plugin for WordPress is vulnerable to Authentication Bypass in all versions up to, and including, 4.4.5. This is due to missing authorization in the send_link() AJAX handler and impro…

Remote | Authentication
Aug 30, 2026 Aug 30, 2026
Aug 30, 2026
Aug 30, 2026
2.1 LOW
CVE-2026-77846 — JSON path injection via unescaped get_path segments in AshSqlite

Improper Neutralization of Special Elements in Data Query Logic vulnerability in ash-project ash_sqlite allows an attacker who controls a get_path/2 segment to traverse into nested JSON the applicati…

ash_sqlite | Path Traversal
Aug 30, 2026 Aug 30, 2026
Aug 30, 2026
Aug 30, 2026
7.6 HIGH
CVE-2026-75759 — Encrypted ID token or JARM response accepted without a nested signature in erlef oidcc

Improper Verification of Cryptographic Signature vulnerability in erlef oidcc allows an unauthenticated attacker to impersonate an arbitrary user via an encrypted ID token or JARM response carrying n…

oidcc | Remote | Authentication
Aug 30, 2026 Aug 30, 2026
Aug 30, 2026
Aug 30, 2026
3.7 LOW
CVE-2026-82562 — qs.parse does not enforce arrayLimit on comma groups under bracket-push keys when throwOn…

### Summary When `qs.parse` is called with `comma: true` and `throwOnLimitExceeded: true`, a comma-separated value under a bracket-push key (`a[]=1,2,3,4`) is split into an array without being com…

Remote | Denial of Service
Aug 30, 2026 Aug 30, 2026
Aug 30, 2026
Aug 30, 2026
5.9 MEDIUM
CVE-2026-77970 — Sensitive fields nested in embedded values are not redacted in AshPaperTrail versions

Cleartext Storage of Sensitive Information vulnerability in ash-project ash_paper_trail allows an attacker with read access to the generated version resource to recover sensitive values nested inside…

ash_paper_trail | Information Disclosure
Aug 30, 2026 Aug 30, 2026
Aug 30, 2026
Aug 30, 2026
2.1 LOW
CVE-2026-77831 — Algorithmic-complexity denial of service in AshPaperTrail full-diff list tracking

Inefficient Algorithmic Complexity vulnerability in ash-project ash_paper_trail allows a user who can submit a large array attribute to a paper-trailed create or update action to cause a denial of se…

ash_paper_trail | Denial of Service
Aug 30, 2026 Aug 30, 2026
Aug 30, 2026
Aug 30, 2026
5.9 MEDIUM
CVE-2026-75847 — Sensitive attribute values stored in a non-sensitive public changes map in AshPaperTrail

Cleartext Storage of Sensitive Information vulnerability in ash-project ash_paper_trail allows an attacker with read access to the generated version resource to recover the plaintext of sensitive? at…

ash_paper_trail | Information Disclosure
Aug 30, 2026 Aug 30, 2026
Aug 30, 2026
Aug 30, 2026
5.3 MEDIUM
CVE-2026-82417 — qs.stringify throws TypeError on objects with a non-callable constructor.isBuffer property

### Summary `qs.stringify` throws a `TypeError` when it serializes an object whose own `constructor` property has a truthy, non-callable `isBuffer` member. `utils.isBuffer` duck-types buffers by c…

Remote | Misconfiguration
Aug 30, 2026 Aug 30, 2026
Aug 30, 2026
Aug 30, 2026
6.5 MEDIUM
CVE-2026-82424 — PHPGurukul Student Information System student_edit1.php sql injection

A weakness has been identified in PHPGurukul Student Information System 1.0. Affected by this vulnerability is an unknown functionality of the file /student_edit1.php. Executing a manipulation of the…

student_information_system | Remote | Injection
Aug 29, 2026 Aug 29, 2026
Aug 29, 2026
Aug 29, 2026
5.5 MEDIUM
CVE-2026-82423 — macrozheng mall Payment Status Endpoint paySuccess behavioral workflow

A vulnerability has been found in macrozheng mall up to 1.0.3. The affected element is an unknown function of the file /order/paySuccess of the component Payment Status Endpoint. The manipulation of …

mall | Remote | Misconfiguration
Aug 29, 2026 Aug 29, 2026
Aug 29, 2026
Aug 29, 2026
6.5 MEDIUM
CVE-2026-82422 — itsourcecode Sales and Inventory System emp_del.php sql injection

A security flaw has been discovered in itsourcecode Sales and Inventory System 1.0. Impacted is an unknown function of the file /pages/emp_del.php. The manipulation of the argument ID results in sql …

sales_and_inventory_system | Remote | Injection
Aug 29, 2026 Aug 29, 2026
Aug 29, 2026
Aug 29, 2026
6.5 MEDIUM
CVE-2026-82421 — itsourcecode Sales and Inventory System emp_edit.php sql injection

A vulnerability was identified in itsourcecode Sales and Inventory System 1.0. This issue affects some unknown processing of the file /pages/emp_edit.php. The manipulation of the argument ID leads to…

sales_and_inventory_system | Remote | Injection
Aug 29, 2026 Aug 29, 2026
Aug 29, 2026
Aug 29, 2026
9.8 CRITICAL
CVE-2026-15369 — Custom User Registration Fields for WooCommerce <= 2.2.3 - Unauthenticated Privilege Esca…

The Custom User Registration Fields for WooCommerce plugin for WordPress is vulnerable to Privilege Escalation in versions up to, and including, 2.2.3. This is due to the plugin accepting an attacker…

Remote | Authentication
Aug 29, 2026 Aug 29, 2026
Aug 29, 2026
Aug 29, 2026
7.5 HIGH
CVE-2026-75807 — SAML Single Sign On <= 5.4.6 - Unauthenticated Authentication Bypass via X.509 Certificat…

The SAML Single Sign On – SSO Login plugin for WordPress is vulnerable to Authentication Bypass in versions up to, and including, 5.4.6. This is due to the mo_saml_login_validate() ACS handler persis…

Remote | Authentication
Aug 29, 2026 Aug 29, 2026
Aug 29, 2026
Aug 29, 2026
5.3 MEDIUM
CVE-2026-82476 — Memos through 0.30.0 SSRF via Omitted CGNAT Address Range

Memos through 0.30.0 omits the 100.64.0.0/10 carrier-grade NAT address range from SSRF protection in its link-metadata fetcher, allowing unauthenticated attackers to bypass IP validation. Attackers c…

memos | Remote | Server-Side Request Forgery
Aug 29, 2026 Aug 29, 2026
Aug 29, 2026
Aug 29, 2026
8.1 HIGH
CVE-2026-82475 — iFlytek astron-agent through 1.1.1 Workflow Hijacking via Missing Ownership Check

iFlytek astron-agent through 1.1.1 contains an authorization bypass vulnerability in the copyFlow endpoint that fails to validate workflow ownership. Authenticated attackers can enumerate workflow id…

Remote | Authorization
Aug 29, 2026 Aug 29, 2026
Aug 29, 2026
Aug 29, 2026
Showing 20 of 11973 Results