CVE Find is a real-time vulnerability database indexing 398 829 security flaws (CVE) from MITRE, NVD, CISA KEV, CWE and CAPEC. 2918 new CVEs were published in the last 7 days.
Data aggregated from: MITRE Corporation (CVE, CWE, CAPEC), National Vulnerability Database – NIST (NVD), CISA Known Exploited Vulnerabilities (KEV), FIRST (EPSS).
| CVE ID | Published | Description | Score | Severity | |
|---|---|---|---|---|---|
CVE-2026-102268 |
2026-09-28 21h17 +00:00 |
PyJWT is a Python implementation of JSON Web Token standards. Prior to 2.14.0, is_pem_format in jwt/... |
9.1 |
Critical |
|
CVE-2026-101187 |
2026-09-28 21h17 +00:00 |
A weakness has been identified in Ziroom ZHOME A0101 1.0.1.0. This vulnerability affects the functio... Command Injection |
9.1 |
Critical |
|
CVE-2026-87741 |
2026-09-28 19h50 +00:00 |
The ConvertPlus plugin for WordPress is vulnerable to Deserialization of Untrusted Data in all versi... OS Command Injection |
8.8 |
High |
|
CVE-2026-55157 |
2026-09-28 18h17 +00:00 |
Token Optimizer MCP measures token savings per AI coding agent, optimizes context, and shares a live... OS Command Injection |
8.4 |
High |
|
CVE-2026-49994 |
2026-09-28 18h17 +00:00 |
Bluehood monitors local bluetooth activity. Prior to version 0.7.1, when auth_enabled is set in Blue... Authorization problems |
9.1 |
Critical |
|
CVE-2026-101894 |
2026-09-28 17h17 +00:00 |
The decompress package for Node.js extracts archives. Prior to 10.2.2 and 11.1.4, the default decomp... Directory Traversal |
9.1 |
Critical |
|
CVE-2026-54160 |
2026-09-28 16h35 +00:00 |
Network UPS Tools is a collection of programs which provide a common interface for monitoring and ad... |
8.2 |
High |
|
CVE-2026-88808 |
2026-09-28 16h17 +00:00 |
A vulnerability has been identified within Rancher Manager where the Fleet agent wrote resources to ... Improper Privilege Management |
8.8 |
High |
|
CVE-2026-12342 |
2026-09-28 16h17 +00:00 |
This vulnerability impacts all versions of IdentityIQ and allows an unauthenticated user remote code... |
9.6 |
Critical |
|
CVE-2026-101077 |
2026-09-28 16h17 +00:00 |
A flaw has been found in Netcore NR289-GE 1.4.5102. This impacts the function process_request of the... Authorization problems |
10 |
Critical |