🔍 Filter Threats
| Title | Severity | PoC | Actively Exploited | Source | Date |
|---|---|---|---|---|---|
| CVE-2026-59660 Cross-Site Scripting vulnerability in the Repasat application. Successful exploitation of this vulnerability could allow an attacker to trick a user i... | MEDIUM | ????? | ????? | NVD | 5 days ago |
| CVE-2026-59659 Cross-Site Scripting vulnerability in the Repasat application. Successful exploitation of this vulnerability could allow an attacker to trick a user i... | MEDIUM | ????? | ????? | NVD | 5 days ago |
| CVE-2026-94639 improper handling of exceptional conditions, Allocation of resources without limits or throttling, Uncaught exception vulnerability in Apache Thrift J... | HIGH | ????? | ????? | NVD | 5 days ago |
| CVE-2026-95512 A flaw was found in FreeType, specifically within its CID font loader. A remote attacker could exploit this vulnerability by tricking a user into open... | MEDIUM | ????? | ????? | NVD | 5 days ago |
| CVE-2026-80464 Server-Side request forgery (SSRF) vulnerability in HAVELSAN Inc. Sef - AI Chatbot Platform allows Server Side Request Forgery.
This issue affects Se... | MEDIUM | ????? | ????? | NVD | 5 days ago |
| CVE-2026-80443 Improper certificate validation vulnerability in HAVELSAN Inc. Sef - AI Chatbot Platform allows Adversary in the Middle (AiTM).
This issue affects Se... | HIGH | ????? | ????? | NVD | 5 days ago |
| CVE-2026-80337 Missing Authorization vulnerability in HAVELSAN Inc. Sef - AI Chatbot Platform allows Accessing Functionality Not Properly Constrained by ACLs.
This ... | MEDIUM | ????? | ????? | NVD | 5 days ago |
| CVE-2026-59673 Cross-Site Scripting vulnerability in the Repasat application. Successful exploitation of this vulnerability could allow an attacker to trick a user i... | MEDIUM | ????? | ????? | NVD | 5 days ago |
| CVE-2026-59672 Cross-Site Scripting vulnerability in the Repasat application. Successful exploitation of this vulnerability could allow an attacker to trick a user i... | MEDIUM | ????? | ????? | NVD | 5 days ago |
| CVE-2026-94635 Allocation of resources without limits or throttling, Improper handling of length parameter inconsistency vulnerability in Apache Thrift Lua bindings.... | HIGH | ????? | ????? | NVD | 5 days ago |
| CVE-2026-59671 Cross-Site Scripting vulnerability in the Repasat application. Successful exploitation of this vulnerability could allow an attacker to trick a user i... | MEDIUM | ????? | ????? | NVD | 5 days ago |
| CVE-2026-59670 Cross-Site Scripting vulnerability in the Repasat application. Successful exploitation of this vulnerability could allow an attacker to trick a user i... | MEDIUM | ????? | ????? | NVD | 5 days ago |
| CVE-2026-59669 Cross-Site Scripting vulnerability in the Repasat application. Successful exploitation of this vulnerability could allow an attacker to trick a user i... | MEDIUM | ????? | ????? | NVD | 5 days ago |
| CVE-2026-91784 cjbassi/gotop is vulnerable to local argument injection via process termination functionality. The process name is passed directly to pkill without s... | MEDIUM | ????? | ????? | NVD | 5 days ago |
| CVE-2026-97663 The Customer Reviews for WooCommerce plugin for WordPress is vulnerable to Stored Cross-Site Scripting via Comment Author Name in all versions up to, ... | HIGH | ????? | ????? | NVD | 5 days ago |
| CVE-2026-97637 The JSON API Auth plugin for WordPress is vulnerable to Authentication Bypass via Cached Session Cookie Disclosure in all versions up to, and includin... | CRITICAL | ????? | ????? | NVD | 5 days ago |
| CVE-2026-97338 The Download Manager plugin for WordPress is vulnerable to Stored Cross-Site Scripting via Display Name in all versions up to, and including, 3.3.70 d... | MEDIUM | ????? | ????? | NVD | 5 days ago |
| CVE-2026-97634 The Event Tickets and Registration plugin for WordPress is vulnerable to generic SQL Injection via the 'orderby' parameter in all versions u... | MEDIUM | ????? | ????? | NVD | 5 days ago |
| CVE-2026-97342 The JetFormBuilder — Dynamic Blocks Form Builder plugin for WordPress is vulnerable to Stored Cross-Site Scripting via 'choice' Post Meta ... | HIGH | ????? | ????? | NVD | 5 days ago |
| CVE-2026-97641 The Relevanssi – A Better Search plugin for WordPress is vulnerable to Stored Cross-Site Scripting via Comment Content in all versions up to, and in... | HIGH | ????? | ????? | NVD | 5 days ago |