Critical Alert 1 Active Exploit Detected Today

CVE-2026-9082 Drupal Core SQL Injection Vulnerability →
Powered by CVE Watchtower
×

CVE Watchtower

Advanced Threat Data Export

Filter and download the raw CVE repository (CSV/JSON) for SIEM integration and internal reporting.

Data export is locked. Upgrade your package to enable filtering and downloading.

πŸ”” Premium Features
πŸ” Filter Threats
Title
SeverityEPSS (30-Day)
PoCActively ExploitedSourceDate
CVE-2018-25356
SIPp 3.6 and earlier contains a local buffer overflow vulnerability in command-line argument handling that allows local attackers to crash the applica...
HIGHπŸ”’ LOCKED??????????NVD1 day ago
CVE-2018-25355
Audiograbber 1.83 contains a local buffer overflow vulnerability that allows attackers to execute arbitrary code by exploiting structured exception ha...
HIGHπŸ”’ LOCKED??????????NVD1 day ago
CVE-2018-25354
Joomla Component jomres 9.11.2 contains a cross-site request forgery vulnerability that allows attackers to modify user account information by trickin...
MEDIUMπŸ”’ LOCKED??????????NVD1 day ago
CVE-2018-25353
Redaxo CMS Mediapool Addon 5.5.1 and older contains an arbitrary file upload vulnerability that allows authenticated users to bypass file extension bl...
HIGHπŸ”’ LOCKED??????????NVD1 day ago
CVE-2018-25352
WordPress Ultimate Form Builder Lite plugin version 1.3.7 and below contains an SQL injection vulnerability that allows authenticated attackers to man...
HIGHπŸ”’ LOCKED??????????NVD1 day ago
CVE-2018-25351
Joomla! Component EkRishta 2.10 contains an error-based SQL injection vulnerability that allows unauthenticated attackers to execute arbitrary SQL que...
HIGHπŸ”’ LOCKED??????????NVD1 day ago
CVE-2018-25350
userSpice 4.3.24 contains a username enumeration vulnerability that allows unauthenticated attackers to discover valid usernames by sending POST reque...
CRITICALπŸ”’ LOCKED??????????NVD1 day ago
CVE-2018-25349
userSpice 4.3.24 contains a cross-site scripting vulnerability that allows attackers to inject malicious scripts through the X-Forwarded-For HTTP head...
MEDIUMπŸ”’ LOCKED??????????NVD1 day ago
CVE-2018-25348
Joomla! Component Ek Rishta 2.10 contains an SQL injection vulnerability that allows unauthenticated attackers to manipulate database queries by injec...
HIGHπŸ”’ LOCKED??????????NVD1 day ago
CVE-2018-25347
WordPress Contact Form Maker Plugin 1.12.20 contains SQL injection vulnerabilities that allow authenticated attackers to manipulate database queries t...
HIGHπŸ”’ LOCKED??????????NVD1 day ago
CVE-2018-25346
WordPress Form Maker Plugin 1.12.24 and below contains SQL injection vulnerabilities that allow authenticated attackers to manipulate database queries...
HIGHπŸ”’ LOCKED??????????NVD1 day ago
CVE-2018-25345
10-Strike Network Scanner 3.0 contains a local buffer overflow vulnerability in the host name field that allows attackers to bypass SafeSEH protection...
HIGHπŸ”’ LOCKED??????????NVD1 day ago
CVE-2018-25344
10-Strike Network Inventory Explorer 8.54 contains a stack-based buffer overflow vulnerability in the registration key input field that allows local a...
HIGHπŸ”’ LOCKED??????????NVD1 day ago
CVE-2018-25343
Smartshop 1 contains a cross-site request forgery vulnerability that allows attackers to modify user profiles by tricking authenticated users into sub...
MEDIUMπŸ”’ LOCKED??????????NVD1 day ago
CVE-2018-25342
Smartshop 1 contains a time-based blind SQL injection vulnerability that allows unauthenticated attackers to manipulate database queries by injecting ...
HIGHπŸ”’ LOCKED??????????NVD1 day ago
CVE-2018-25341
Smartshop 1 contains a SQL injection vulnerability that allows unauthenticated attackers to execute arbitrary SQL queries by injecting malicious code ...
HIGHπŸ”’ LOCKED??????????NVD1 day ago
CVE-2018-25340
Smartshop 1 contains a SQL injection vulnerability that allows unauthenticated attackers to execute arbitrary SQL queries by injecting malicious code ...
HIGHπŸ”’ LOCKED??????????NVD1 day ago
CVE-2026-9305
A weakness has been identified in QuantumNous new-api up to 0.12.1. The impacted element is the function SearchUserTopUps/SearchAllTopUps of the file ...
MEDIUMπŸ”’ LOCKED??????????NVD1 day ago
CVE-2026-9304
A security flaw has been discovered in calcom cal.diy up to 4.9.4. The affected element is the function validateUrlForSSRF of the file apps/web/app/ap...
MEDIUMπŸ”’ LOCKED??????????NVD1 day ago
CVE-2026-9303
A vulnerability was identified in calcom cal.diy up to 4.9.4. Impacted is an unknown function. The manipulation leads to cross-site request forgery. I...
MEDIUMπŸ”’ LOCKED??????????NVD1 day ago