CVE Search

Cari CVE dari dbcve.org — keyword, vendor, severity, KEV, dan rentang waktu.

Advanced Filter
Reset
Active filters: Severity: High
10,000 result(s) · page 459 of 500
CVE-2026-54202
HIGH

Tobit Laboratories AG TeamDavid's Webbox is vulnerable to a path traversal vulnerability in the archive creation functionality. Because the archive path is user-controlled and i...

CVSS 8.5 2026-08-07
CVE-2026-54200
HIGH

Tobit Laboratories AG TeamDavid's Webbox is vulnerable to a local file inclusion vulnerability in the send email, fax, SMS, etc. functionality. By specifying an '@@attach' comman...

CVSS 8.4 2026-08-07
CVE-2026-12070
HIGH

Tobit Laboratories AG TeamDavid's Webbox is vulnerable to an arbitrary file deletion vulnerability in the send email, fax, SMS, etc. functionality. By specifying an @@COMMENTFIL...

CVSS 8.4 2026-08-07
CVE-2026-9169
HIGH

DLL Search Order Hijacking in LUCID Vision Labs Arena SDK 1.0.80.49 on Windows allows a local attacker to execute arbitrary code with the privileges of the application by placing a...

CVSS 8.8 2026-08-07
CVE-2026-66491
HIGH

Joomla Extension - phoca.cz - Arbitrary File Read in Phoca Commander 1.0.0-6.1.3 - Improper limitation of paths in the getSource function lead to an arbitrary file read vulnerabili...

CVSS 8.2 2026-08-07
CVE-2026-49007
HIGH

By accessing unencrypted information in the device firmware, an attacker can obtain the initial login credentials for the device's web interface.

CVSS 7.5 2026-08-07
CVE-2026-19196
HIGH

A vulnerability was found in SourceCodester Photo Share Website 1.0. The impacted element is an unknown function of the file /social/ajax.php?action=login. The manipulation of the ...

CVSS 7.3 2026-08-07
CVE-2026-16263
HIGH

The WP Maps WordPress plugin before 4.9.7 does not perform a capability check in one of its AJAX actions and does not properly validate a user-controlled path before using it in a...

CVSS 8.8 2026-08-07
CVE-2026-16262
HIGH

The Estatik Real Estate Plugin WordPress plugin before 4.3.3 does not bind its OAuth social login flow to the initiating user session, allowing an unauthenticated attacker to log a...

CVSS 7.5 2026-08-07
CVE-2026-16041
HIGH

The MStore API WordPress plugin before 4.21.0 does not perform authorization or purchase-ownership checks on its REST product-review creation route, allowing an unauthenticated at...

CVSS 7.5 2026-08-07
CVE-2026-16030
HIGH

The MStore API WordPress plugin before 4.21.0 does not correctly verify the cryptographic signature of the token used to authenticate its phone-based login, allowing unauthenticat...

CVSS 8.1 2026-08-07
CVE-2026-15361
HIGH

The Content Views WordPress plugin before 4.5 does not perform a capability check on one of its AJAX actions and does not properly sanitise attacker-supplied data before using it ...

CVSS 8.1 2026-08-07
CVE-2026-15215
HIGH

The Subscriptions for WooCommerce WordPress plugin before 2.0.1 does not verify the user's capability before installing and activating a Subscriptions for WooCommerce WordPress plu...

CVSS 8.8 2026-08-07
CVE-2026-14943
HIGH

The Password Protected — Lock Entire Site, Pages, Posts, Categories, and Partial Content WordPress plugin before 2.8.4 does not restrict REST API access to authenticated users when...

CVSS 7.5 2026-08-07
CVE-2026-19195
HIGH

A vulnerability has been found in V-Secure Jingyun Antivirus 2.4.2.39. The affected element is an unknown function in the library ZyArk.sys of the component Kernel Driver. The mani...

CVSS 7.8 2026-08-07
CVE-2026-19193
HIGH

A flaw has been found in Jiangmin Antivirus 21. Impacted is the function MessageNotifyCallback in the library kvcore.sys of the component Minifilter Port. Executing a manipulation ...

CVSS 7.8 2026-08-07
CVE-2026-19192
HIGH

A vulnerability was detected in DeepCool DisplayService 1.2.12. This issue affects some unknown processing of the file C:\DeepCool\resources\service\x64\DeepCoolDisplayService.exe....

CVSS 7.8 2026-08-07
CVE-2026-19191
HIGH

A security vulnerability has been detected in StableBit DrivePool 2.3.13.1687. This vulnerability affects unknown code of the file C:\Program Files\StableBit\DrivePool\DrivePool.Se...

CVSS 7.8 2026-08-07
CVE-2026-19190
HIGH

A weakness has been identified in StableBit Scanner 2.6.13.4088. This affects an unknown part of the file C:\Program Files (x86)\StableBit\Scanner\Service\Scanner.Service.exe of th...

CVSS 7.8 2026-08-07
CVE-2026-49746
HIGH

Software installed and run as a non-privileged user may conduct improper GPU system calls to cause OOB read kernel memory access and in certain cases cause GPU UAF of arbitrary pag...

CVSS 7.1 2026-08-07
1 457 458 459 460 461 500
Base CVE data derived from NVD (public domain). Enrichment by dbcve.org (CC-BY-4.0). Fetched via API.