CVE Vulnerability Database

Search and browse 380,957 CVE records with CVSS scores, EPSS exploit predictions, and CISA KEV status.

CVE IDSeverityCVSSDescription
CVE-2026-21551HIGH7.5In modem, there is a possible improper input validation. This could lead to remote denial of service with no additional ...
CVE-2026-21550HIGH7.5In modem, there is a possible improper input validation. This could lead to remote denial of service with no additional ...
CVE-2026-21549HIGH7.5In modem, there is a possible improper input validation. This could lead to remote denial of service with no additional ...
CVE-2026-21548HIGH7.5In nr modem, there is a possible improper input validation. This could lead to remote denial of service with System exec...
CVE-2026-18593MEDIUM5.6A weakness has been identified in vxcontrol PentAGI up to 2.1.0. This affects an unknown part of the file backend/pkg/te...
CVE-2026-18592MEDIUM4.7A security flaw has been discovered in osCommerce 4.14.63493. Affected by this issue is the function EmailController of ...
CVE-2026-18591LOW2.1A vulnerability was identified in Meesho Online Shopping App up to 20260607 on Android. Affected by this vulnerability i...
CVE-2026-18590MEDIUM6.3A vulnerability was determined in Wavlink WL-NU516U1 708c073-mt7628. Affected is the function set_sys_adm of the file ad...
CVE-2026-12259MEDIUM5.3In nltk version 3.9.4, the `nltk.downloader.Downloader._download_package()` function writes downloaded package bytes to ...
CVE-2026-9593HIGH8.4A vulnerability in the iDTM FDI allows an attacker with elevated privileges and access to the host system to enable the ...
CVE-2026-4793HIGH7.3An incorrect default permissions vulnerability in Synology Assistant before 7.0.7-50095 allows local users to read or wr...
CVE-2026-18589CRITICAL9.8A vulnerability was found in Wavlink WL-NU516U1 708c073-mt7628. This impacts the function change_password of the file na...
CVE-2026-18588CRITICAL9.8A vulnerability has been found in Wavlink WL-NU516U1 708c073-mt7628. This affects the function fgets of the file nas.cgi...
CVE-2026-18587HIGH7.5A flaw has been found in Wavlink WL-NU516U1 708c073-mt7628. The impacted element is an unknown function of the component...
CVE-2026-16572HIGH8.6The LogMyTrip WordPress plugin through 1.9 does not sanitize and escape a value taken from a cookie before using it in a...
CVE-2026-16565MEDIUM4.3The Dokan: AI Powered WooCommerce Multivendor Marketplace Solution WordPress plugin before 5.0.9 does not verify produc...
CVE-2026-16564MEDIUM4.3The Dokan: AI Powered WooCommerce Multivendor Marketplace Solution WordPress plugin before 5.0.9 does not verify order ...
CVE-2026-16563MEDIUM6.5The Academy LMS WordPress plugin before 3.8.3 does not verify course enrollment or lesson publication status when return...
CVE-2026-16539HIGH8.1The sm page duplicator WordPress plugin through 1.0.0 does not sanitise and escape a stored value before using it in a S...
CVE-2026-16534CRITICAL9.1The Import and export users and customers WordPress plugin before 2.4.2 does not enforce WordPress's role-assignment and...
CVE-2026-16532CRITICAL9.1The Link Library WordPress plugin before 7.9.3 does not properly sanitise and escape a user-supplied value before using ...
CVE-2026-16300CRITICAL9.8The ChamaWP WordPress plugin before 1.0.13 does not properly validate a password reset request, allowing unauthenticate...
CVE-2026-16297MEDIUM4.1The Clearfy Cache WordPress plugin before 2.4.3 does not restrict the classes allowed when unserializing settings-impor...
CVE-2026-16289MEDIUM4.3The ProfileGrid WordPress plugin before 6.0.0.0 does not perform authorization checks when listing a group's pending me...
CVE-2026-16276LOW2.7The Classified Listing WordPress plugin before 5.4.4 does not perform a capability check on an AJAX action that returns...