CVE Vulnerability Database
Search and browse 381,176 CVE records with CVSS scores, EPSS exploit predictions, and CISA KEV status.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2026-18591 | LOW | 2.1 | 0.1% | Aug 3, 2026 | A vulnerability was identified in Meesho Online Shopping App up to 20260607 on Android. Affected by this vulnerability i... |
| CVE-2026-18590 | MEDIUM | 6.3 | 1.1% | Aug 3, 2026 | A vulnerability was determined in Wavlink WL-NU516U1 708c073-mt7628. Affected is the function set_sys_adm of the file ad... |
| CVE-2026-12259 | MEDIUM | 5.3 | 0.1% | Aug 3, 2026 | In nltk version 3.9.4, the `nltk.downloader.Downloader._download_package()` function writes downloaded package bytes to ... |
| CVE-2026-9593 | HIGH | 8.4 | 0.1% | Aug 3, 2026 | A vulnerability in the iDTM FDI allows an attacker with elevated privileges and access to the host system to enable the ... |
| CVE-2026-4793 | HIGH | 7.3 | 0.1% | Aug 3, 2026 | An incorrect default permissions vulnerability in Synology Assistant before 7.0.7-50095 allows local users to read or wr... |
| CVE-2026-18589 | CRITICAL | 9.8 | 0.6% | Aug 3, 2026 | A vulnerability was found in Wavlink WL-NU516U1 708c073-mt7628. This impacts the function change_password of the file na... |
| CVE-2026-18588 | CRITICAL | 9.8 | 0.6% | Aug 3, 2026 | A vulnerability has been found in Wavlink WL-NU516U1 708c073-mt7628. This affects the function fgets of the file nas.cgi... |
| CVE-2026-18587 | HIGH | 7.5 | 1.3% | Aug 3, 2026 | A flaw has been found in Wavlink WL-NU516U1 708c073-mt7628. The impacted element is an unknown function of the component... |
| CVE-2026-16572 | HIGH | 8.6 | 0.2% | Aug 3, 2026 | The LogMyTrip WordPress plugin through 1.9 does not sanitize and escape a value taken from a cookie before using it in a... |
| CVE-2026-16565 | MEDIUM | 4.3 | 0.1% | Aug 3, 2026 | The Dokan: AI Powered WooCommerce Multivendor Marketplace Solution WordPress plugin before 5.0.9 does not verify produc... |
| CVE-2026-16564 | MEDIUM | 4.3 | 0.1% | Aug 3, 2026 | The Dokan: AI Powered WooCommerce Multivendor Marketplace Solution WordPress plugin before 5.0.9 does not verify order ... |
| CVE-2026-16563 | MEDIUM | 6.5 | 0.1% | Aug 3, 2026 | The Academy LMS WordPress plugin before 3.8.3 does not verify course enrollment or lesson publication status when return... |
| CVE-2026-16539 | HIGH | 8.1 | 0.2% | Aug 3, 2026 | The sm page duplicator WordPress plugin through 1.0.0 does not sanitise and escape a stored value before using it in a S... |
| CVE-2026-16534 | CRITICAL | 9.1 | 0.1% | Aug 3, 2026 | The Import and export users and customers WordPress plugin before 2.4.2 does not enforce WordPress's role-assignment and... |
| CVE-2026-16532 | CRITICAL | 9.1 | 0.2% | Aug 3, 2026 | The Link Library WordPress plugin before 7.9.3 does not properly sanitise and escape a user-supplied value before using ... |
| CVE-2026-16300 | CRITICAL | 9.8 | 0.1% | Aug 3, 2026 | The ChamaWP WordPress plugin before 1.0.13 does not properly validate a password reset request, allowing unauthenticate... |
| CVE-2026-16297 | MEDIUM | 4.1 | 0.2% | Aug 3, 2026 | The Clearfy Cache WordPress plugin before 2.4.3 does not restrict the classes allowed when unserializing settings-impor... |
| CVE-2026-16289 | MEDIUM | 4.3 | 0.1% | Aug 3, 2026 | The ProfileGrid WordPress plugin before 6.0.0.0 does not perform authorization checks when listing a group's pending me... |
| CVE-2026-16276 | LOW | 2.7 | 0.1% | Aug 3, 2026 | The Classified Listing WordPress plugin before 5.4.4 does not perform a capability check on an AJAX action that returns... |
| CVE-2026-16274 | LOW | 2.7 | 0.1% | Aug 3, 2026 | The Classified Listing WordPress plugin before 5.4.4 does not perform a capability or ownership check on an AJAX action... |
| CVE-2026-16250 | CRITICAL | 9.8 | 0.2% | Aug 3, 2026 | The Personal QR Message WordPress plugin through 1.0 does not restrict the file types that can be uploaded through an un... |
| CVE-2026-16060 | CRITICAL | 9.8 | 0.2% | Aug 3, 2026 | The Insert or Embed Articulate Content into WordPress plugin through 4.3000000027 does not correctly validate the conten... |
| CVE-2026-16057 | MEDIUM | 6.5 | 0.1% | Aug 3, 2026 | The Contest Gallery WordPress plugin before 30.0.7 does not perform per-object capability or nonce checks in one of its... |
| CVE-2026-15931 | MEDIUM | 6.1 | 0.2% | Aug 3, 2026 | The Simple Membership WordPress plugin before 4.7.8 does not sanitise a subscriber name value received from an unauthent... |
| CVE-2026-15930 | CRITICAL | 9.4 | 0.1% | Aug 3, 2026 | The Simple Membership WordPress plugin before 4.7.8 does not verify whether user creation failed during registration bef... |
