69 Failles indexées
17 Critiques
14 Élevées
2 Ajoutées aujourd'hui

14 failles trouvées

filtres actifs
CVE-2026-6105
Élevée 7.3

A security vulnerability has been detected in perfree go-fastdfs-web up to 1.3.7. This affects an unknown part of the file src/main/java/com/perfree/controller/InstallController.java of the component doInstall Interface. The manipulation leads to improper authorization. The attack may be initiated r

CVE-2026-5809
Élevée 7.1

The wpForo Forum plugin for WordPress is vulnerable to Arbitrary File Deletion in versions up to and including 3.0.2. This is due to a two-step logic flaw: the topic_add() and topic_edit() action handlers accept arbitrary user-supplied data[*] arrays from $_REQUEST and store them as postmeta without

CVE-2026-5217
Élevée 7.2

The Optimole – Optimize Images | Convert WebP & AVIF | CDN & Lazy Load | Image Optimization plugin for WordPress is vulnerable to Stored Cross-Site Scripting in all versions up to, and including, 4.2.2. This is due to insufficient input sanitization and output escaping on the user-supplied 's' param

CVE-2026-5144
Élevée 8.8

The BuddyPress Groupblog plugin for WordPress is vulnerable to Privilege Escalation in all versions up to, and including, 1.9.3. This is due to the group blog settings handler accepting the `groupblog-blogid`, `default-member`, and `groupblog-silent-add` parameters from user input without proper aut

EDB-52509
Élevée

[local] NetBT e-Fatura - Privilege Escalation

EDB-52508
Élevée

[webapps] D-Link DIR-650IN - Authenticated Command Injection

CVE-2026-39983
Élevée 8.6

basic-ftp has FTP Command Injection via CRLF

EDB-52493
Élevée

[local] Desktop Window Manager Core Library 10.0.10240.0 - Privilege Escalation

EDB-52484
Élevée

[webapps] Easy File Sharing Web Server v7.2 - Buffer Overflow

EDB-52483
Élevée

[webapps] WeGIA 3.5.0 - SQL Injection

EDB-52479
Élevée

[local] glibc 2.38 - Buffer Overflow

EDB-52469
Élevée

[hardware] D-Link DIR-825 Rev.B 2.10 - Stack Buffer Overflow (DoS)

EDB-52465
Élevée

[webapps] WordPress Quiz Maker 6.7.0.56 - SQL Injection

EDB-52462
Élevée

[webapps] Summar Employee Portal 3.98.0 - Authenticated SQL Injection