CVE Find is a real-time vulnerability database indexing 358 314 security flaws (CVE) from MITRE, NVD, CISA KEV, CWE and CAPEC. 1807 new CVEs were published in the last 7 days.
Data aggregated from: MITRE Corporation (CVE, CWE, CAPEC), National Vulnerability Database – NIST (NVD), CISA Known Exploited Vulnerabilities (KEV), FIRST (EPSS).
| CVE ID | Published | Description | Score | Severity | |
|---|---|---|---|---|---|
CVE-2026-48780 |
2026-06-16 15h16 +00:00 |
Forem is open source software for building communities. Prior to commit a2ab6d4, a maliciously craft... Authorization problems |
8.2 |
High |
|
CVE-2026-12289 |
2026-06-16 13h16 +00:00 |
Privilege escalation in the Graphics: WebRender component. This vulnerability was fixed in Firefox 1... Improper Privilege Management |
8.8 |
High |
|
CVE-2026-40750 |
2026-06-16 12h16 +00:00 |
Unrestricted Upload of File with Dangerous Type vulnerability in themagnifico52 Kids Online Store al... File Inclusion |
9.9 |
Critical |
|
CVE-2026-5416 |
2026-06-16 10h16 +00:00 |
Due to the improper neutralization of special elements used in a name parameter a low privileged rem... OS Command Injection |
8.8 |
High |
|
CVE-2026-52715 |
2026-06-16 10h16 +00:00 |
Unauthenticated SQL Injection in GEO my WordPress <= 4.5.5 versions.... SQL Injection |
9.3 |
Critical |
|
CVE-2026-49774 |
2026-06-16 10h16 +00:00 |
Improper Control of Generation of Code ('Code Injection') vulnerability in Filipe Nasc RD Station al... Code Injection |
9.9 |
Critical |
|
CVE-2026-49772 |
2026-06-16 10h16 +00:00 |
Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability i... SQL Injection |
9.3 |
Critical |
|
CVE-2026-39581 |
2026-06-16 10h16 +00:00 |
Subscriber SQL Injection in WP Sessions Time Monitoring Full Automatic <= 1.1.4 versions.... SQL Injection |
8.5 |
High |
|
CVE-2026-39574 |
2026-06-16 10h16 +00:00 |
Unauthenticated SQL Injection in InPost Gallery <= 2.1.4.6 versions.... SQL Injection |
9.3 |
Critical |
|
CVE-2026-8444 |
2026-06-16 08h16 +00:00 |
The WP Review Slider Pro plugin for WordPress is vulnerable to SQL Injection via the 'curselrevs[]' ... SQL Injection |
8.8 |
High |