🔔 Premium Features
🔍 Filter Threats
| Title | Severity | PoC | Actively Exploited | Source | Date |
|---|---|---|---|---|---|
| CVE-2026-54519 AI Agent Automation is a modular AI agent workflow automation platform with schedulers, tools, and observability. Prior to 0.9.1, backend/src/controll... | HIGH | ????? | ????? | NVD | 3 days ago |
| CVE-2026-86688 Session Fixation vulnerability in team-alembic ash_authentication allows an attacker who can plant a session identifier in a victim's browser to ... | UNKNOWN | ????? | ????? | NVD | 3 days ago |
| CVE-2026-76949 Authentication Bypass by Spoofing vulnerability in team-alembic ash_authentication allows an attacker who can plant a remember-me cookie in a victim... | UNKNOWN | ????? | ????? | NVD | 3 days ago |
| CVE-2026-54520 AI Agent Automation is a modular AI agent workflow automation platform with schedulers, tools, and observability. Prior to 0.9.1, the executeStep file... | HIGH | ????? | ????? | NVD | 3 days ago |
| CVE-2026-54767 WeGIA is a web manager for charitable institutions. Prior to 3.8.5, web/html/socio/sistema/controller/deletar_socios.php exposes an unauthenticated GE... | CRITICAL | ????? | ????? | NVD | 3 days ago |
| CVE-2026-54671 WeGIA is a web manager for charitable institutions. Prior to 3.8.5, WeGIA maps InternoControle to an empty resource array in web/controle/control.php,... | HIGH | ????? | ????? | NVD | 3 days ago |
| CVE-2026-54670 WeGIA is a web manager for charitable institutions. Prior to 3.8.5, the contribution request dispatcher in web/html/contribuicao/controller/control.ph... | CRITICAL | ????? | ????? | NVD | 3 days ago |
| CVE-2026-54634 Hamlib is a ham radio control library for radios, rotators, and amplifiers. Prior to 4.7.2, the unauthenticated rigctld send_raw command on TCP port 4... | HIGH | ????? | ????? | NVD | 3 days ago |
| CVE-2026-54608 MythicalDash is a Pterodactyl client area. In 3.5.4-aurora and earlier, GET /api/stripe/process in backend/app/Api/System/Gateways/Stripe.php creates ... | UNKNOWN | ????? | ????? | NVD | 3 days ago |
| CVE-2026-54506 Vvveb is a powerful and easy to use CMS with page builder to build websites, blogs or ecommerce stores. Prior to 1.0.8.5, app/controller/user/profile.... | HIGH | ????? | ????? | NVD | 3 days ago |
| CVE-2026-54612 Vvveb is a powerful and easy to use CMS with page builder to build websites, blogs or ecommerce stores. From 1.0.0 until 1.0.8.5, saveGlobalElements()... | HIGH | ????? | ????? | NVD | 3 days ago |
| CVE-2026-54613 Vvveb is a powerful and easy to use CMS with page builder to build websites, blogs or ecommerce stores. Prior to 1.0.8.5, getThemeFolder() in admin/co... | MEDIUM | ????? | ????? | NVD | 3 days ago |
| CVE-2026-93307 A vulnerability has been found in O-RAN-SC SMO OAM 2025-06-10. Affected is an unknown function of the component VES Collector. Such manipulation of th... | MEDIUM | ????? | ????? | NVD | 3 days ago |
| CVE-2026-54507 Vvveb is a powerful and easy to use CMS with page builder to build websites, blogs or ecommerce stores. Prior to 1.0.8.5, the oEmbedProxy() handler in... | UNKNOWN | ????? | ????? | NVD | 3 days ago |
| CVE-2026-53534 JabRef is a desktop application for managing BibTeX and BibLaTeX libraries. Prior to 6.0-alpha.6, when jabsrv or JabRef's built-in HTTP server is... | HIGH | ????? | ????? | NVD | 3 days ago |
| CVE-2026-53557 SQLBot is an intelligent Text-to-SQL system based on large language models and RAG. Prior to 1.9.0, an authenticated user can supply a crafted sheet[&... | HIGH | ????? | ????? | NVD | 3 days ago |
| CVE-2026-53555 SQLBot is an intelligent Text-to-SQL system based on large language models and RAG. Prior to 1.9.0, an authenticated uploader can submit an image/svg+... | UNKNOWN | ????? | ????? | NVD | 3 days ago |
| CVE-2026-53556 SQLBot is an intelligent Text-to-SQL system based on large language models and RAG. Prior to 1.9.0, the POST /api/v1/datasource/previewData endpoint i... | MEDIUM | ????? | ????? | NVD | 3 days ago |
| CVE-2026-53554 SQLBot is an intelligent Text-to-SQL system based on large language models and RAG. Prior to 1.9.0, the POST /api/v1/datasource/parseExcel endpoint in... | UNKNOWN | ????? | ????? | NVD | 3 days ago |
| CVE-2026-54633 PoDoFo is a C++17 PDF manipulation library. From version 1.0.0 until 1.1.1, processing a crafted PDF with an Indexed color-space image can cause a hea... | MEDIUM | ????? | ????? | NVD | 3 days ago |