🔍 Filter Threats
| Title | Severity | PoC | Actively Exploited | Source | Date |
|---|---|---|---|---|---|
| CVE-2026-42714 Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in Piggly Dev Pix por Piggly (para Woocom... | HIGH | ????? | ????? | NVD | 16 hours ago |
| CVE-2026-42713 Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in Gopiplus Post title marquee scroll pos... | HIGH | ????? | ????? | NVD | 16 hours ago |
| CVE-2026-92533 Path traversal vulnerability in the BugTracker.NET file download component. The parameter used to specify the file name does not properly validate use... | HIGH | ????? | ????? | NVD | 16 hours ago |
| CVE-2026-92532 Unrestricted file upload vulnerability in the BugTracker.NET attachment functionality. An authenticated user with administrator privileges could modif... | HIGH | ????? | ????? | NVD | 16 hours ago |
| CVE-2026-92531 Operating system command injection vulnerability in the SVN integration component of BugTracker.NET. The application incorporates the value of the fie... | HIGH | ????? | ????? | NVD | 16 hours ago |
| CVE-2026-103668 An SQL Injection vulnerability exists in the Site Search function of Movable Type, which may allow an unauthenticated attacker to execute an arbitrary... | HIGH | ????? | ????? | NVD | 17 hours ago |
| CVE-2026-96408 A code injection vulnerability exists in the upgrade script of Movable Type, which may allow an unauthenticated attacker to execute an arbitrary Perl ... | CRITICAL | ????? | ????? | NVD | 17 hours ago |
| CVE-2026-97294 Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in David Lingren Media LIbrary Assistant ... | MEDIUM | ????? | ????? | NVD | 17 hours ago |
| CVE-2026-42721 Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in SERVIT Software Solutions affiliate-to... | HIGH | ????? | ????? | NVD | 17 hours ago |
| CVE-2026-42720 Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in Sarah Giles Dynamic User Directory dyn... | HIGH | ????? | ????? | NVD | 17 hours ago |
| CVE-2026-27434 Missing Authorization vulnerability in sc Internet Vivoo WP Rentals wprentals allows Exploiting Incorrectly Configured Access Control Security Levels.... | MEDIUM | ????? | ????? | NVD | 17 hours ago |
| CVE-2026-105884 Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in WP Media Rocket Lazy Load rocket-lazy-... | MEDIUM | ????? | ????? | NVD | 17 hours ago |
| CVE-2026-105876 Missing Authorization vulnerability in WP Chill Modula Image Gallery modula-best-grid-gallery allows Retrieve Embedded Sensitive Data.This issue affec... | MEDIUM | ????? | ????? | NVD | 17 hours ago |
| CVE-2026-105875 Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in BdThemes Prime Slider – Addons For E... | MEDIUM | ????? | ????? | NVD | 17 hours ago |
| CVE-2026-105873 Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in BdThemes Element Pack Elementor Addons... | MEDIUM | ????? | ????? | NVD | 17 hours ago |
| CVE-2026-105871 Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in BdThemes Element Pack Elementor Addons... | MEDIUM | ????? | ????? | NVD | 17 hours ago |
| CVE-2026-105192 LMCache multiprocess mode, also called distributed mode, opens an unauthenticated ZeroMQ ROUTER so worker processes can register and share KV cache bl... | CRITICAL | ????? | ????? | NVD | 17 hours ago |
| CVE-2026-104393 Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in weDevs Happy Addons for Elementor happ... | MEDIUM | ????? | ????? | NVD | 17 hours ago |
| CVE-2026-104391 Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in ExpressTech Quiz And Survey Master qui... | MEDIUM | ????? | ????? | NVD | 17 hours ago |
| CVE-2026-104390 Missing Authorization vulnerability in Arraytics Booktics booktics allows Exploiting Incorrectly Configured Access Control Security Levels.This issue ... | MEDIUM | ????? | ????? | NVD | 17 hours ago |