🔍 Filter Threats
| Title | Severity | PoC | Actively Exploited | Source | Date |
|---|---|---|---|---|---|
| CVE-2026-104408 Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in Groundhogg Groundhogg groundhogg allow... | HIGH | ????? | ????? | NVD | 1 day ago |
| CVE-2026-104407 Cross-Site Request Forgery (CSRF) vulnerability in Blubrry Podcasting PowerPress Podcasting powerpress allows Cross Site Request Forgery.This issue af... | HIGH | ????? | ????? | NVD | 1 day ago |
| CVE-2026-104404 Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Liquid Web / StellarWP GiveWP give all... | MEDIUM | ????? | ????? | NVD | 1 day ago |
| CVE-2026-104401 Exposure of Sensitive System Information to an Unauthorized Control Sphere vulnerability in Memberful Memberful - Membership Plugin memberful-wp allow... | MEDIUM | ????? | ????? | NVD | 1 day ago |
| CVE-2026-104389 Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in Sirv Sirv sirv allows Blind SQL Inject... | HIGH | ????? | ????? | NVD | 1 day ago |
| CVE-2026-104388 Missing Authorization vulnerability in Blubrry Podcasting PowerPress Podcasting powerpress allows Retrieve Embedded Sensitive Data.This issue affects ... | MEDIUM | ????? | ????? | NVD | 1 day ago |
| CVE-2026-104397 Missing Authorization vulnerability in Jeroen Peters Name Directory name-directory allows Exploiting Incorrectly Configured Access Control Security Le... | MEDIUM | ????? | ????? | NVD | 1 day ago |
| CVE-2026-104396 Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Jeroen Peters Name Directory name-dire... | MEDIUM | ????? | ????? | NVD | 1 day ago |
| CVE-2026-104386 Missing Authorization vulnerability in WPFunnels Team WP VR wpvr allows Exploiting Incorrectly Configured Access Control Security Levels.This issue af... | MEDIUM | ????? | ????? | NVD | 1 day ago |
| CVE-2026-103351 Improper Validation of Specified Quantity in Input vulnerability in Magepeople inc. Taxi Booking Manager for WooCommerce ecab-taxi-booking-manager all... | MEDIUM | ????? | ????? | NVD | 1 day ago |
| CVE-2026-103079 Authorization Bypass Through User-Controlled Key vulnerability in Ahmad JS Help Desk js-support-ticket allows Exploiting Incorrectly Configured Access... | MEDIUM | ????? | ????? | NVD | 1 day ago |
| CVE-2026-103084 Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in LeapWorx Premium Addons for Elementor ... | MEDIUM | ????? | ????? | NVD | 1 day ago |
| CVE-2026-103078 Authorization Bypass Through User-Controlled Key vulnerability in Ahmad JS Help Desk js-support-ticket allows Exploiting Incorrectly Configured Access... | MEDIUM | ????? | ????? | NVD | 1 day ago |
| CVE-2026-102914 Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Brainstorm Force Presto Player presto-... | MEDIUM | ????? | ????? | NVD | 1 day ago |
| CVE-2026-102393 Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Brainstorm Force Starter Templates ast... | MEDIUM | ????? | ????? | NVD | 1 day ago |
| CVE-2026-105285 A security vulnerability has been detected in Totolink A3002MU 1.0.0-B20230403.1455. This affects an unknown function of the file /boafrm/formIpQoS of... | CRITICAL | ????? | ????? | NVD | 1 day ago |
| CVE-2026-105284 A weakness has been identified in Totolink A3002MU 1.0.0-B20230403.1455. The impacted element is the function sub_40FCFC of the file /bin/boa of the c... | CRITICAL | ????? | ????? | NVD | 1 day ago |
| CVE-2026-105263 A security flaw has been discovered in Shaarli up to 0.16.3. The affected element is the function MetadataController of the file application/front/con... | MEDIUM | ????? | ????? | NVD | 1 day ago |
| CVE-2026-103510 P4 Search prior to 2026.4.2 does not fail securely when its service authentication token is blank. In affected configurations, an unauthenticated atta... | CRITICAL | ????? | ????? | NVD | 1 day ago |
| CVE-2026-103335 Insertion of Sensitive Information Into Sent Data vulnerability in Deepen Bajracharya Video Conferencing with Zoom video-conferencing-with-zoom-api al... | MEDIUM | ????? | ????? | NVD | 1 day ago |