CVE Find is a real-time vulnerability database indexing 389 534 security flaws (CVE) from MITRE, NVD, CISA KEV, CWE and CAPEC. 3671 new CVEs were published in the last 7 days.
Data aggregated from: MITRE Corporation (CVE, CWE, CAPEC), National Vulnerability Database – NIST (NVD), CISA Known Exploited Vulnerabilities (KEV), FIRST (EPSS).
| CVE ID | Published | Description | Score | Severity | |
|---|---|---|---|---|---|
CVE-2026-8323 |
2026-09-10 08h49 +00:00 |
URL redirection to untrusted site ('open redirect') vulnerability in Armiya Information Technologies... |
9.3 |
Critical |
|
CVE-2026-7188 |
2026-09-10 07h49 +00:00 |
Improper neutralization of special elements used in an SQL command ('SQL injection') vulnerability i... SQL Injection |
9.8 |
Critical |
|
CVE-2026-19583 |
2026-09-10 03h16 +00:00 |
Velociraptor allows some sensitive artifacts to be gated by additional permissions. For example, the... |
9.9 |
Critical |
|
CVE-2026-84063 |
2026-09-10 02h15 +00:00 |
BurgerEditor 3.2.0 through 3.4.0 contains an issue with unrestricted upload of file with dangerous t... File Inclusion |
8.5 |
High |
|
CVE-2026-18351 |
2026-09-10 01h26 +00:00 |
The Drag and Drop File Upload for Elementor Forms plugin for WordPress is vulnerable to Arbitrary Fi... File Inclusion |
9.8 |
Critical |
|
CVE-2026-87931 |
2026-09-09 23h45 +00:00 |
A vulnerability has been found in Behavioral Technology Group Pavlok Behavioral Conditioning Wearabl... Overflow |
9.4 |
Critical |
|
CVE-2026-87995 |
2026-09-09 22h18 +00:00 |
Open WebUI is an extensible, feature-rich, and user-friendly self-hosted AI platform. From 0.8.11 un... Cross-site Scripting |
8.7 |
High |
|
CVE-2026-88069 |
2026-09-09 21h37 +00:00 |
Pandora contains a path traversal vulnerability in its archive extraction worker. When processing a ... Directory Traversal |
9.3 |
Critical |
|
CVE-2026-87911 |
2026-09-09 20h21 +00:00 |
An OS command injection weakness in the read-only enforcement of the SQL validation component in Ama... OS Command Injection |
9.6 |
Critical |
|
CVE-2026-79322 |
2026-09-09 19h17 +00:00 |
SQL injection in the RelatedProduct block in Mageplaza Blog for Magento 2 (mageplaza/magento-2-blog-... SQL Injection |
8.6 |
High |