CVE Find is a real-time vulnerability database indexing 381 896 security flaws (CVE) from MITRE, NVD, CISA KEV, CWE and CAPEC. 3513 new CVEs were published in the last 7 days.
Data aggregated from: MITRE Corporation (CVE, CWE, CAPEC), National Vulnerability Database – NIST (NVD), CISA Known Exploited Vulnerabilities (KEV), FIRST (EPSS).
| CVE ID | Published | Description | Score | Severity | |
|---|---|---|---|---|---|
CVE-2026-8445 |
2026-08-23 14h16 +00:00 |
justhtml versions <= 1.11.0 (fixed in 1.12.0) do not sufficiently escape HTML-significant characters... Cross-site Scripting |
9.8 |
Critical |
|
CVE-2026-7808 |
2026-08-23 14h16 +00:00 |
justhtml before 1.16.0 contains multiple HTML sanitization bypass issues that can allow active/dange... |
9.8 |
Critical |
|
CVE-2026-5388 |
2026-08-23 14h16 +00:00 |
justhtml before 1.15.0 contains multiple security issues in URL sanitization helpers (clean_url_valu... |
9.8 |
Critical |
|
CVE-2026-10053 |
2026-08-23 10h16 +00:00 |
GitLab has remediated an issue in GitLab CE/EE affecting all versions from 18.8 before 19.0.6, 19.1 ... Directory Traversal |
8.5 |
High |
|
CVE-2026-78155 |
2026-08-23 09h26 +00:00 |
privilege escalation in StackGres operator allows a low-privilege tenant who owns a database to gain... |
9.9 |
Critical |
|
CVE-2026-16149 |
2026-08-23 00h16 +00:00 |
The Security Hardener plugin for WordPress is vulnerable to Missing Authorization in all versions up... Improper Privilege Management |
8.8 |
High |
|
CVE-2026-0551 |
2026-08-23 00h16 +00:00 |
The PPWP – Password Protect Pages plugin for WordPress is vulnerable to PHP Object Injection in al... |
8.8 |
High |
|
CVE-2026-78050 |
2026-08-22 23h15 +00:00 |
A vulnerability was found in Comfast CF-N1-S 2.6.0.1. The affected element is the function sub_41AD7... Overflow |
9.4 |
Critical |
|
CVE-2026-78122 |
2026-08-22 23h06 +00:00 |
docker-socket-proxy fails to properly gate read endpoints in the /containers Docker API namespace wh... |
8.3 |
High |
|
CVE-2026-4703 |
2026-08-22 16h16 +00:00 |
The WS Form LITE – Drag & Drop Contact Form Builder plugin for WordPress is vulnerable to PHP Obje... |
9.8 |
Critical |