Latest CVE Feed

Vulnerabilities published in the last 30 days. Filter by severity, exploit status, or attack vector.

Score
Vulnerability
Published
4.8 MEDIUM
CVE-2026-30568 — SourceCodester Inventory System Cross-Site Scripting (XSS)

A Reflected Cross-Site Scripting (XSS) vulnerability exists in SourceCodester Sales and Inventory System 1.0 in in the view_purchase.php file via the "limit" parameter. The application fails to sanit…

inventory_system | Remote | Cross-Site Scripting
Mar 27, 2026 Mar 30, 2026
Mar 27, 2026
Mar 30, 2026
6.1 MEDIUM
CVE-2026-30567 — SourceCodester Inventory System Reflected XSS

A Reflected Cross-Site Scripting (XSS) vulnerability exists in SourceCodester Sales and Inventory System 1.0 in the view_product.php file via the "limit" parameter. The application fails to sanitize …

inventory_system | Remote | Cross-Site Scripting
Mar 27, 2026 Apr 06, 2026
Mar 27, 2026
Apr 06, 2026
8.3 HIGH
CVE-2025-15617 — Wazuh GitHub Actions Workflow Exposure of Sensitive Credentials

Wazuh version 4.12.0 contains an exposure vulnerability in GitHub Actions workflow artifacts that allows attackers to extract the GITHUB_TOKEN from uploaded artifacts. Attackers can use the exposed t…

wazuh | Remote | Information Disclosure
Mar 27, 2026 Mar 31, 2026
Mar 27, 2026
Mar 31, 2026
Showing 20 of 5703 Results