Логотип exploitDog
source:"nvd"
Консоль
Логотип exploitDog

exploitDog

source:"nvd"

Количество 331 614

Количество 331 614

nvd логотип

CVE-2026-24646

17 дней назад

Rejected reason: Not used

EPSS: Низкий
nvd логотип

CVE-2026-24645

17 дней назад

Rejected reason: Not used

EPSS: Низкий
nvd логотип

CVE-2026-24644

17 дней назад

Rejected reason: Not used

EPSS: Низкий
nvd логотип

CVE-2026-24643

17 дней назад

Rejected reason: Not used

EPSS: Низкий
nvd логотип

CVE-2026-24642

17 дней назад

Rejected reason: Not used

EPSS: Низкий
nvd логотип

CVE-2026-24636

18 дней назад

Missing Authorization vulnerability in Syed Balkhi Sugar Calendar (Lite) sugar-calendar-lite allows Exploiting Incorrectly Configured Access Control Security Levels.This issue affects Sugar Calendar (Lite): from n/a through <= 3.10.1.

CVSS3: 4.3
EPSS: Низкий
nvd логотип

CVE-2026-24635

18 дней назад

Improper Control of Filename for Include/Require Statement in PHP Program ('PHP Remote File Inclusion') vulnerability in DevsBlink EduBlink Core edublink-core allows PHP Local File Inclusion.This issue affects EduBlink Core: from n/a through <= 2.0.7.

CVSS3: 7.5
EPSS: Низкий
nvd логотип

CVE-2026-24634

18 дней назад

Authorization Bypass Through User-Controlled Key vulnerability in Rustaurius Ultimate Reviews ultimate-reviews allows Exploiting Incorrectly Configured Access Control Security Levels.This issue affects Ultimate Reviews: from n/a through <= 3.2.16.

CVSS3: 5.3
EPSS: Низкий
nvd логотип

CVE-2026-24633

18 дней назад

Missing Authorization vulnerability in Passionate Brains Add Expires Headers & Optimized Minify add-expires-headers allows Exploiting Incorrectly Configured Access Control Security Levels.This issue affects Add Expires Headers & Optimized Minify: from n/a through <= 3.1.0.

CVSS3: 5.3
EPSS: Низкий
nvd логотип

CVE-2026-24632

18 дней назад

Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in jagdish1o1 Delay Redirects delay-redirects allows DOM-Based XSS.This issue affects Delay Redirects: from n/a through <= 1.0.0.

CVSS3: 5.9
EPSS: Низкий
nvd логотип

CVE-2026-24631

18 дней назад

Authorization Bypass Through User-Controlled Key vulnerability in Mikado-Themes Rosebud rosebud allows Exploiting Incorrectly Configured Access Control Security Levels.This issue affects Rosebud: from n/a through <= 1.4.

CVSS3: 5.4
EPSS: Низкий
nvd логотип

CVE-2026-24630

18 дней назад

Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Design Stylish Cost Calculator stylish-cost-calculator allows Stored XSS.This issue affects Stylish Cost Calculator: from n/a through <= 8.1.8.

CVSS3: 6.5
EPSS: Низкий
nvd логотип

CVE-2026-24629

18 дней назад

Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Ability, Inc Web Accessibility with Max Access accessibility-toolbar allows Stored XSS.This issue affects Web Accessibility with Max Access: from n/a through <= 2.1.0.

CVSS3: 5.9
EPSS: Низкий
nvd логотип

CVE-2026-24627

18 дней назад

Missing Authorization vulnerability in Trusona Trusona for WordPress trusona allows Exploiting Incorrectly Configured Access Control Security Levels.This issue affects Trusona for WordPress: from n/a through <= 2.0.0.

CVSS3: 4.3
EPSS: Низкий
nvd логотип

CVE-2026-24626

18 дней назад

Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in LogicHunt Logo Slider logo-slider-wp allows Stored XSS.This issue affects Logo Slider: from n/a through <= 4.9.0.

CVSS3: 5.9
EPSS: Низкий
nvd логотип

CVE-2026-24625

18 дней назад

Missing Authorization vulnerability in Imaginate Solutions File Uploads Addon for WooCommerce woo-addon-uploads allows Exploiting Incorrectly Configured Access Control Security Levels.This issue affects File Uploads Addon for WooCommerce: from n/a through <= 1.7.3.

CVSS3: 5.3
EPSS: Низкий
nvd логотип

CVE-2026-24624

18 дней назад

Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in saeros1984 Neoforum neoforum allows Blind SQL Injection.This issue affects Neoforum: from n/a through <= 1.0.

CVSS3: 7.2
EPSS: Низкий
nvd логотип

CVE-2026-24623

18 дней назад

Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in saeros1984 Neoforum neoforum allows Reflected XSS.This issue affects Neoforum: from n/a through <= 1.0.

CVSS3: 6.5
EPSS: Низкий
nvd логотип

CVE-2026-24622

18 дней назад

Missing Authorization vulnerability in Sergiy Dzysyak Suggestion Toolkit suggestion-toolkit allows Exploiting Incorrectly Configured Access Control Security Levels.This issue affects Suggestion Toolkit: from n/a through <= 5.0.

CVSS3: 5.4
EPSS: Низкий
nvd логотип

CVE-2026-24621

18 дней назад

Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Vladimir Statsenko Terms descriptions terms-descriptions allows DOM-Based XSS.This issue affects Terms descriptions: from n/a through <= 3.4.9.

CVSS3: 4.8
EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
nvd логотип
CVE-2026-24646

Rejected reason: Not used

17 дней назад
nvd логотип
CVE-2026-24645

Rejected reason: Not used

17 дней назад
nvd логотип
CVE-2026-24644

Rejected reason: Not used

17 дней назад
nvd логотип
CVE-2026-24643

Rejected reason: Not used

17 дней назад
nvd логотип
CVE-2026-24642

Rejected reason: Not used

17 дней назад
nvd логотип
CVE-2026-24636

Missing Authorization vulnerability in Syed Balkhi Sugar Calendar (Lite) sugar-calendar-lite allows Exploiting Incorrectly Configured Access Control Security Levels.This issue affects Sugar Calendar (Lite): from n/a through <= 3.10.1.

CVSS3: 4.3
0%
Низкий
18 дней назад
nvd логотип
CVE-2026-24635

Improper Control of Filename for Include/Require Statement in PHP Program ('PHP Remote File Inclusion') vulnerability in DevsBlink EduBlink Core edublink-core allows PHP Local File Inclusion.This issue affects EduBlink Core: from n/a through <= 2.0.7.

CVSS3: 7.5
0%
Низкий
18 дней назад
nvd логотип
CVE-2026-24634

Authorization Bypass Through User-Controlled Key vulnerability in Rustaurius Ultimate Reviews ultimate-reviews allows Exploiting Incorrectly Configured Access Control Security Levels.This issue affects Ultimate Reviews: from n/a through <= 3.2.16.

CVSS3: 5.3
0%
Низкий
18 дней назад
nvd логотип
CVE-2026-24633

Missing Authorization vulnerability in Passionate Brains Add Expires Headers & Optimized Minify add-expires-headers allows Exploiting Incorrectly Configured Access Control Security Levels.This issue affects Add Expires Headers & Optimized Minify: from n/a through <= 3.1.0.

CVSS3: 5.3
0%
Низкий
18 дней назад
nvd логотип
CVE-2026-24632

Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in jagdish1o1 Delay Redirects delay-redirects allows DOM-Based XSS.This issue affects Delay Redirects: from n/a through <= 1.0.0.

CVSS3: 5.9
0%
Низкий
18 дней назад
nvd логотип
CVE-2026-24631

Authorization Bypass Through User-Controlled Key vulnerability in Mikado-Themes Rosebud rosebud allows Exploiting Incorrectly Configured Access Control Security Levels.This issue affects Rosebud: from n/a through <= 1.4.

CVSS3: 5.4
0%
Низкий
18 дней назад
nvd логотип
CVE-2026-24630

Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Design Stylish Cost Calculator stylish-cost-calculator allows Stored XSS.This issue affects Stylish Cost Calculator: from n/a through <= 8.1.8.

CVSS3: 6.5
0%
Низкий
18 дней назад
nvd логотип
CVE-2026-24629

Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Ability, Inc Web Accessibility with Max Access accessibility-toolbar allows Stored XSS.This issue affects Web Accessibility with Max Access: from n/a through <= 2.1.0.

CVSS3: 5.9
0%
Низкий
18 дней назад
nvd логотип
CVE-2026-24627

Missing Authorization vulnerability in Trusona Trusona for WordPress trusona allows Exploiting Incorrectly Configured Access Control Security Levels.This issue affects Trusona for WordPress: from n/a through <= 2.0.0.

CVSS3: 4.3
0%
Низкий
18 дней назад
nvd логотип
CVE-2026-24626

Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in LogicHunt Logo Slider logo-slider-wp allows Stored XSS.This issue affects Logo Slider: from n/a through <= 4.9.0.

CVSS3: 5.9
0%
Низкий
18 дней назад
nvd логотип
CVE-2026-24625

Missing Authorization vulnerability in Imaginate Solutions File Uploads Addon for WooCommerce woo-addon-uploads allows Exploiting Incorrectly Configured Access Control Security Levels.This issue affects File Uploads Addon for WooCommerce: from n/a through <= 1.7.3.

CVSS3: 5.3
0%
Низкий
18 дней назад
nvd логотип
CVE-2026-24624

Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in saeros1984 Neoforum neoforum allows Blind SQL Injection.This issue affects Neoforum: from n/a through <= 1.0.

CVSS3: 7.2
0%
Низкий
18 дней назад
nvd логотип
CVE-2026-24623

Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in saeros1984 Neoforum neoforum allows Reflected XSS.This issue affects Neoforum: from n/a through <= 1.0.

CVSS3: 6.5
0%
Низкий
18 дней назад
nvd логотип
CVE-2026-24622

Missing Authorization vulnerability in Sergiy Dzysyak Suggestion Toolkit suggestion-toolkit allows Exploiting Incorrectly Configured Access Control Security Levels.This issue affects Suggestion Toolkit: from n/a through <= 5.0.

CVSS3: 5.4
0%
Низкий
18 дней назад
nvd логотип
CVE-2026-24621

Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Vladimir Statsenko Terms descriptions terms-descriptions allows DOM-Based XSS.This issue affects Terms descriptions: from n/a through <= 3.4.9.

CVSS3: 4.8
0%
Низкий
18 дней назад

Уязвимостей на страницу