CVE Find is a real-time vulnerability database indexing 401 078 security flaws (CVE) from MITRE, NVD, CISA KEV, CWE and CAPEC. 2555 new CVEs were published in the last 7 days.
Data aggregated from: MITRE Corporation (CVE, CWE, CAPEC), National Vulnerability Database – NIST (NVD), CISA Known Exploited Vulnerabilities (KEV), FIRST (EPSS).
| CVE ID | Published | Description | Score | Severity | |
|---|---|---|---|---|---|
CVE-2026-105089 |
2026-10-04 16h16 +00:00 |
WWBN AVideo through 29.2.0 contains a stored cross-site scripting vulnerability that allows users wi... Cross-site Scripting |
8.7 |
High |
|
CVE-2026-105086 |
2026-10-04 16h16 +00:00 |
WWBN AVideo 12.4 through 29.2.0 contains a stored cross-site scripting vulnerability that allows aut... Cross-site Scripting |
8.7 |
High |
|
CVE-2026-105215 |
2026-10-04 15h16 +00:00 |
ZITADEL before 3.4.14 and 4.x before 4.16.2 contains an authentication bypass in the hosted Login V1... |
9.1 |
Critical |
|
CVE-2026-105213 |
2026-10-04 15h16 +00:00 |
ZITADEL 4.x before 4.17.1 does not check an organization's inactive state during Login V2 authentica... Authorization problems |
8.2 |
High |
|
CVE-2026-105210 |
2026-10-04 15h16 +00:00 |
ZITADEL 3.x before 3.4.15 and 4.x before 4.17.1 contains a missing authentication flaw in the hosted... Authorization problems |
8.2 |
High |
|
CVE-2026-105209 |
2026-10-04 15h16 +00:00 |
ZITADEL 3.x before 3.4.15 and 4.x before 4.17.1 contains an improper authorization vulnerability: wh... Authorization problems |
9.6 |
Critical |
|
CVE-2026-105207 |
2026-10-04 15h16 +00:00 |
ZITADEL 3.0.0 through 3.4.15 and 4.0.0 before 4.17.3 creates links between user accounts and externa... Authorization problems |
9.8 |
Critical |
|
CVE-2026-103355 |
2026-10-04 09h16 +00:00 |
Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability i... SQL Injection |
9.3 |
Critical |
|
CVE-2026-105135 |
2026-10-04 07h16 +00:00 |
A vulnerability has been found in InternLM MindSearch 0.1.0. This issue affects the function Executi... Code Injection |
10 |
Critical |
|
CVE-2026-105134 |
2026-10-04 07h16 +00:00 |
A flaw has been found in Ahsay AhsayCBS up to 10.3.2. This vulnerability affects unknown code of the... Command InjectionOS Command Injection |
10 |
Critical |