Advanced Threat Data Export
Filter and download the raw CVE repository (CSV/JSON) for SIEM integration and internal reporting.
Data export is locked. Upgrade your package to enable filtering and downloading.
🔔 Premium Features
🔍 Filter Threats
| Title | Severity | PoC | Actively Exploited | Source | Date |
|---|---|---|---|---|---|
| CVE-2026-68458 In the Linux kernel, the following vulnerability has been resolved:
binder: cache secctx size before release zeroes it
binder_transaction() bounds t... | HIGH | ????? | ????? | NVD | 6 days ago |
| CVE-2026-68457 In the Linux kernel, the following vulnerability has been resolved:
ksmbd: use opener credentials for FSCTL mutations
SET_SPARSE, SET_ZERO_DATA and ... | CRITICAL | ????? | ????? | NVD | 6 days ago |
| CVE-2026-68456 In the Linux kernel, the following vulnerability has been resolved:
usb: atm: ueagle-atm: wait for pre-firmware load in .disconnect()
ueagle-atm use... | UNKNOWN | ????? | ????? | NVD | 6 days ago |
| CVE-2026-18807 The ECS WordPress plugin before 4.3.8 does not have capability or ownership checks on its dynamic repeater actions, relying only on a nonce available... | MEDIUM | ????? | ????? | NVD | 6 days ago |
| CVE-2026-68455 In the Linux kernel, the following vulnerability has been resolved:
liveupdate: validate session type before performing operation
The sessions ioctl... | UNKNOWN | ????? | ????? | NVD | 6 days ago |
| CVE-2026-18216 The Backup Migration WordPress plugin before 2.1.7 does not properly restrict a post-restore automatic login mechanism, allowing a user who administer... | MEDIUM | ????? | ????? | NVD | 6 days ago |
| CVE-2026-16611 The Product Feed PRO for WooCommerce by AdTribes WordPress plugin before 13.5.7 does not perform an authorization check on one of its REST read route... | HIGH | ????? | ????? | NVD | 6 days ago |
| CVE-2026-16541 The Simply Schedule Appointments WordPress plugin before 1.6.12.17 does not restrict the user records returned by some of its REST endpoints to those ... | MEDIUM | ????? | ????? | NVD | 6 days ago |
| CVE-2026-14230 The ECS WordPress plugin before 4.3.8 does not perform capability or object-ownership checks on its Dynamic Repeater AJAX handlers (gated only by a c... | MEDIUM | ????? | ????? | NVD | 6 days ago |
| CVE-2026-14229 The ECS WordPress plugin before 4.3.8 does not check the post status or any capability when rendering an Elementor document requested through one of ... | MEDIUM | ????? | ????? | NVD | 6 days ago |
| CVE-2026-16007 AppFlowy's qcuiknote feature is affected by a SQL injection vulnerability. Authenticated users with access to the feature can inject arbitrary SQ... | UNKNOWN | ????? | ????? | NVD | 6 days ago |
| CVE-2026-18387 The Groundhogg — CRM, Newsletters, and Marketing Automation plugin for WordPress is vulnerable to generic SQL Injection via the 'tag_query'... | MEDIUM | ????? | ????? | NVD | 6 days ago |
| CVE-2026-17090 The Beaver Builder Page Builder – Drag and Drop Website Builder plugin for WordPress is vulnerable to Stored Cross-Site Scripting via Button Module ... | MEDIUM | ????? | ????? | NVD | 6 days ago |
| CVE-2026-16586 The Contest Gallery – Upload & Vote Photos, Media, Sell with PayPal & Stripe plugin for WordPress is vulnerable to Second-Order SQL Injectio... | MEDIUM | ????? | ????? | NVD | 6 days ago |
| CVE-2026-16146 The Invisible Anti-Spam & CAPTCHA — reCAPTCHA Alternative for All Forms plugin for WordPress is vulnerable to generic SQL Injection via Pattern ... | MEDIUM | ????? | ????? | NVD | 6 days ago |
| CVE-2026-16145 The Invisible Anti-Spam & CAPTCHA — reCAPTCHA Alternative for All Forms plugin for WordPress is vulnerable to Stored Cross-Site Scripting via th... | HIGH | ????? | ????? | NVD | 6 days ago |
| CVE-2026-16094 The Invisible Anti-Spam & CAPTCHA — reCAPTCHA Alternative for All Forms plugin for WordPress is vulnerable to generic SQL Injection via the ... | MEDIUM | ????? | ????? | NVD | 6 days ago |
| CVE-2026-15993 The Form Maker by 10Web – Mobile-Friendly Drag & Drop Contact Form Builder plugin for WordPress is vulnerable to blind SQL Injection via '{... | MEDIUM | ????? | ????? | NVD | 6 days ago |
| CVE-2026-15948 The Hydra Booking — Appointment Scheduling & Booking Calendar plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the 'fi... | MEDIUM | ????? | ????? | NVD | 6 days ago |
| CVE-2026-15453 The KiviCare – Clinic & Patient Management System (EHR) plugin for WordPress is vulnerable to generic SQL Injection via the 'searchTerm... | MEDIUM | ????? | ????? | NVD | 6 days ago |