Export limit exceeded: 376903 CVEs match your query. Please refine your search to export 10,000 CVEs or fewer.
Export limit exceeded: 376903 CVEs match your query. Please refine your search to export 10,000 CVEs or fewer.
Export limit exceeded: 376903 CVEs match your query. Please refine your search to export 10,000 CVEs or fewer.
Search
Search Results (376903 CVEs found)
| CVE | Vendors | Products | Updated | CVSS v3.1 |
|---|---|---|---|---|
| CVE-2026-66700 | 2026-08-13 | 7.1 High | ||
| Unauthenticated Cross Site Scripting (XSS) in Smart Online Order for Clover <= 1.6.1 versions. | ||||
| CVE-2026-66698 | 2026-08-13 | 7.1 High | ||
| Unauthenticated Cross Site Scripting (XSS) in SureDash <= 1.10.1 versions. | ||||
| CVE-2026-66697 | 2026-08-13 | 7.1 High | ||
| Unauthenticated Cross Site Scripting (XSS) in Colissimo Officiel : Méthodes de livraison pour WooCommerce <= 2.10.0 versions. | ||||
| CVE-2026-66693 | 2026-08-13 | 6.5 Medium | ||
| Subscriber Broken Access Control in Motors <= 1.4.113 versions. | ||||
| CVE-2026-66691 | 2026-08-13 | 9.8 Critical | ||
| Unauthenticated Broken Access Control in Nokri <= 1.6.6 versions. | ||||
| CVE-2026-64922 | 1 Microsoft | 3 Sharepoint Server, Sharepoint Server 2016, Sharepoint Server 2019 | 2026-08-13 | 4.6 Medium |
| Improper neutralization of input during web page generation ('cross-site scripting') in Microsoft Office SharePoint allows an authorized attacker to perform spoofing over a network. | ||||
| CVE-2026-66689 | 2026-08-13 | 6.3 Medium | ||
| Unauthenticated Broken Access Control in Anti Spam and list cleaner – AcyChecker <= 2.0.0 versions. | ||||
| CVE-2026-66687 | 2026-08-13 | 6.5 Medium | ||
| Customer Cross Site Scripting (XSS) in WpBookingly <= 1.3.2 versions. | ||||
| CVE-2026-66661 | 2026-08-13 | 7.7 High | ||
| Subscriber Privilege Escalation in Directories Pro <= 2.0.5 versions. | ||||
| CVE-2026-66660 | 2026-08-13 | 6.5 Medium | ||
| Unauthenticated Broken Access Control in Contact Form 7 – PayPal & Stripe Add-on <= 2.5.1 versions. | ||||
| CVE-2026-66658 | 2026-08-13 | 8.5 High | ||
| Subscriber SQL Injection in Reviewer <= 3.14.2 versions. | ||||
| CVE-2026-66657 | 2026-08-13 | 8.1 High | ||
| Unauthenticated Local File Inclusion in Biagiotti Core <= 2.1.1 versions. | ||||
| CVE-2026-66656 | 2026-08-13 | 8.1 High | ||
| Unauthenticated Local File Inclusion in Foton Core <= 1.1.1 versions. | ||||
| CVE-2026-66655 | 2026-08-13 | 7.1 High | ||
| Unauthenticated Cross Site Scripting (XSS) in MultiParcels Shipping For WooCommerce <= 1.30.36 versions. | ||||
| CVE-2026-66654 | 2026-08-13 | 6 Medium | ||
| Subscriber Server Side Request Forgery (SSRF) in Vehica Core <= 1.0.104 versions. | ||||
| CVE-2026-66653 | 2026-08-13 | 8.1 High | ||
| Unauthenticated Local File Inclusion in Barista <= 2.5.1 versions. | ||||
| CVE-2026-66478 | 2026-08-13 | 9.3 Critical | ||
| Unauthenticated SQL Injection in Church Admin <= 5.1.1 versions. | ||||
| CVE-2026-66472 | 2026-08-13 | 9.3 Critical | ||
| Unauthenticated SQL Injection in Everest Backup <= 2.3.12 versions. | ||||
| CVE-2026-66471 | 2026-08-13 | 6.5 Medium | ||
| Subscriber Cross Site Scripting (XSS) in Accordion <= 3.0.6 versions. | ||||
| CVE-2026-66469 | 2026-08-13 | 7.5 High | ||
| Unauthenticated Broken Access Control in Arvow AI SEO Writer <= 1.5.3 versions. | ||||