CVE Vulnerability Database
Search and browse 394,758 CVE records with CVSS scores, EPSS exploit predictions, and CISA KEV status.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2026-40756 | HIGH | 8.1 | 0.3% | Jun 17, 2026 | Unauthenticated PHP Object Injection in Zoya <= 1.4 versions. |
| CVE-2026-40752 | HIGH | 8.1 | 0.3% | Jun 17, 2026 | Unauthenticated PHP Object Injection in Manufaktur Solutions <= 1.1.1 versions. |
| CVE-2026-40738 | HIGH | 8.1 | 0.3% | Jun 17, 2026 | Unauthenticated PHP Object Injection in Eldon <= 1.4.1 versions. |
| CVE-2026-40733 | HIGH | 8.1 | 0.3% | Jun 17, 2026 | Unauthenticated PHP Object Injection in ShiftUp <= 1.3 versions. |
| CVE-2026-40720 | HIGH | 7.1 | 0.2% | Jun 17, 2026 | Unauthenticated Cross Site Scripting (XSS) in Royal Elementor Addons Pro < 1.7.1041 versions. |
| CVE-2026-39590 | HIGH | 8.1 | 0.3% | Jun 17, 2026 | Unauthenticated Local File Inclusion in Atomlab <= 2.4.5 versions. |
| CVE-2026-39576 | HIGH | 8.1 | 0.4% | Jun 17, 2026 | Unauthenticated PHP Object Injection in SingleMalt <= 1.5 versions. |
| CVE-2026-39560 | HIGH | 8.1 | 0.3% | Jun 17, 2026 | Unauthenticated PHP Object Injection in Hiroshi <= 1.5.1 versions. |
| CVE-2026-39559 | HIGH | 8.1 | 0.3% | Jun 17, 2026 | Unauthenticated Local File Inclusion in Uppercase < 1.2.2 versions. |
| CVE-2026-39556 | HIGH | 8.1 | 0.3% | Jun 17, 2026 | Unauthenticated PHP Object Injection in Konsept <= 1.9 versions. |
| CVE-2026-39523 | HIGH | 8.1 | 0.3% | Jun 17, 2026 | Unauthenticated Local File Inclusion in Solene Core <= 2.3.2 versions. |
| CVE-2026-39445 | HIGH | 8.1 | 0.4% | Jun 17, 2026 | Unauthenticated PHP Object Injection in Alukas < 3.0.0 versions. |
| CVE-2026-39442 | HIGH | 8.1 | 0.3% | Jun 17, 2026 | Unauthenticated PHP Object Injection in PressMart <= 1.2.26 versions. |
| CVE-2026-10641 | HIGH | 7.1 | 0.3% | Jun 17, 2026 | Zephyr's Bluetooth Classic Hands-Free Profile (HFP) Hands-Free role parser (subsys/bluetooth/host/classic/hfp_hf.c) cont... |
| CVE-2025-69189 | HIGH | 7.3 | 0.2% | Jun 17, 2026 | Missing Authorization vulnerability in EMV JobBank allows Exploiting Incorrectly Configured Access Control Security Leve... |
| CVE-2025-69175 | HIGH | 8.1 | 0.3% | Jun 17, 2026 | Unauthenticated Local File Inclusion in Line Agency <= 1.3.1 versions. |
| CVE-2025-69174 | HIGH | 8.1 | 0.3% | Jun 17, 2026 | Unauthenticated Local File Inclusion in Etude <= 1.6 versions. |
| CVE-2025-69170 | HIGH | 8.1 | 0.3% | Jun 17, 2026 | Unauthenticated Local File Inclusion in Eventicity <= 1.5 versions. |
| CVE-2025-69166 | HIGH | 8.1 | 0.4% | Jun 17, 2026 | Unauthenticated Local File Inclusion in Gunslinger <= 1.7 versions. |
| CVE-2025-69164 | HIGH | 8.1 | 0.3% | Jun 17, 2026 | Unauthenticated Local File Inclusion in Skyward <= 1.10 versions. |
| CVE-2025-69158 | HIGH | 8.1 | 0.3% | Jun 17, 2026 | Unauthenticated Local File Inclusion in Granola <= 1.13 versions. |
| CVE-2025-69157 | HIGH | 8.1 | 0.4% | Jun 17, 2026 | Unauthenticated Local File Inclusion in Gamic <= 1.15 versions. |
| CVE-2025-69144 | HIGH | 8.1 | 0.3% | Jun 17, 2026 | Unauthenticated Local File Inclusion in Preservation <= 1.10 versions. |
| CVE-2025-69140 | HIGH | 7.1 | 0.2% | Jun 17, 2026 | Unauthenticated Cross Site Scripting (XSS) in SweetDate Core < 1.1.5 versions. |
| CVE-2025-69130 | HIGH | 8.8 | 0.5% | Jun 17, 2026 | Deserialization of Untrusted Data vulnerability in Pixel Makers Creative INC. Entrepreneur - Booking for Small Businesse... |
