CVE Find is a real-time vulnerability database indexing 342 945 security flaws (CVE) from MITRE, NVD, CISA KEV, CWE and CAPEC. 1555 new CVEs were published in the last 7 days.
Data aggregated from: MITRE Corporation (CVE, CWE, CAPEC), National Vulnerability Database – NIST (NVD), CISA Known Exploited Vulnerabilities (KEV), FIRST (EPSS).
| CVE ID | Published | Description | Score | Severity | |
|---|---|---|---|---|---|
CVE-2026-5208 |
2026-04-08 12h16 +00:00 |
Command injection in alerts in CoolerControl/coolercontrold <4.0.0 allows authenticated attackers to... OS Command Injection |
8.2 |
High |
|
CVE-2026-3243 |
2026-04-08 12h16 +00:00 |
The Advanced Members for ACF plugin for WordPress is vulnerable to arbitrary file deletion due to in... Directory Traversal |
8.8 |
High |
|
CVE-2026-25776 |
2026-04-08 09h16 +00:00 |
Movable Type provided by Six Apart Ltd. contains a code injection vulnerability which may allow an a... Code Injection |
9.8 |
Critical |
|
CVE-2026-3535 |
2026-04-08 07h16 +00:00 |
The DSGVO Google Web Fonts GDPR plugin for WordPress is vulnerable to arbitrary file upload due to m... File Inclusion |
9.8 |
Critical |
|
CVE-2026-24913 |
2026-04-08 06h16 +00:00 |
SQL Injection vulnerability exists in MATCHA INVOICE 2.6.6 and earlier. If this vulnerability is exp... SQL Injection |
8.8 |
High |
|
CVE-2026-4003 |
2026-04-08 05h16 +00:00 |
The Users manager – PN plugin for WordPress is vulnerable to Privilege Escalation via Arbitrary Us... Authorization problems |
9.8 |
Critical |
|
CVE-2026-3296 |
2026-04-08 02h16 +00:00 |
The Everest Forms plugin for WordPress is vulnerable to PHP Object Injection in all versions up to, ... |
9.8 |
Critical |
|
CVE-2026-3499 |
2026-04-08 01h24 +00:00 |
The Product Feed PRO for WooCommerce by AdTribes – Product Feeds for WooCommerce plugin for WordPr... Cross-Site Request Forgery - CSRF |
8.8 |
High |
|
CVE-2026-4788 |
2026-04-08 01h16 +00:00 |
IBM Tivoli Netcool Impact 7.1.0.0 through 7.1.0.37 stores sensitive information in log files that co... |
8.4 |
High |
|
CVE-2026-3357 |
2026-04-08 01h16 +00:00 |
IBM Langflow Desktop 1.6.0 through 1.8.2 Langflow could allow an authenticated user to execute arbit... |
8.8 |
High |