Latest CVE Feed

Vulnerabilities published in the last 30 days. Filter by severity, exploit status, or attack vector.

Score
Vulnerability
Published
6.5 MEDIUM
CVE-2024-14028 — Multiple implicit reads in parallel can result in a crash or denial of service

Use after free vulnerability in Softing smartLink HW-DP or smartLink HW-PN webserver allows HTTP DoS. This issue affects: smartLink HW-DP: through 1.31 smartLink HW-PN: before 1.02.

smartlink_hw-dp smartlink_hw-pn | Remote | Memory Corruption
Mar 27, 2026 Mar 30, 2026
Mar 27, 2026
Mar 30, 2026
7.5 HIGH
CVE-2026-4910 — Shenzhen Ruiming Technology Streamax Crocus Endpoint RemoteFormat.do sql injection

A security vulnerability has been detected in Shenzhen Ruiming Technology Streamax Crocus up to 1.3.44. Affected is an unknown function of the file /RemoteFormat.do of the component Endpoint. Such ma…

streamax_crocus | Remote | Injection
Mar 27, 2026 Apr 24, 2026
Mar 27, 2026
Apr 24, 2026
6.5 MEDIUM
CVE-2026-3098 — Smart Slider 3 <= 3.5.1.33 - Authenticated (Subscriber+) Arbitrary File Read via actionEx…

The Smart Slider 3 plugin for WordPress is vulnerable to Arbitrary File Read in all versions up to, and including, 3.5.1.33 via the 'actionExportAll' function. This makes it possible for authenticate…

smart_slider_3 | Remote | Information Disclosure
Mar 27, 2026 Apr 24, 2026
Mar 27, 2026
Apr 24, 2026
Showing 20 of 5763 Results