CVE Find is a real-time vulnerability database indexing 395 005 security flaws (CVE) from MITRE, NVD, CISA KEV, CWE and CAPEC. 5073 new CVEs were published in the last 7 days.
Data aggregated from: MITRE Corporation (CVE, CWE, CAPEC), National Vulnerability Database – NIST (NVD), CISA Known Exploited Vulnerabilities (KEV), FIRST (EPSS).
| CVE ID | Published | Description | Score | Severity | |
|---|---|---|---|---|---|
CVE-2026-67101 |
2026-09-18 07h50 +00:00 |
HCL BigFix Service Management is affected by a Server-Side Request Forgery (SSRF) vulnerability in i... Server-Side Request Forgery - SSRF |
9.3 |
Critical |
|
CVE-2026-17086 |
2026-09-18 03h38 +00:00 |
The ShortPixel Image Optimizer – Optimize Images, Convert WebP & AVIF plugin for WordPress is vuln... |
8.8 |
High |
|
CVE-2026-93467 |
2026-09-18 03h16 +00:00 |
The OAKlouds developed by HGiga has a Insecure Deserialization vulnerability. Unauthenticated remote... |
9.8 |
Critical |
|
CVE-2026-93371 |
2026-09-18 03h16 +00:00 |
A security vulnerability has been detected in marcopiovanello yt-dlp-web-ui up to v4. This issue aff... Command Injection |
8.3 |
High |
|
CVE-2026-93468 |
2026-09-18 02h19 +00:00 |
The OAKlouds developed by HGiga has an Arbitrary File Read vulnerability. Unauthenticated remote att... |
8.7 |
High |
|
CVE-2026-93456 |
2026-09-18 02h17 +00:00 |
django-page-cms through 2.0.13 exempts five admin mutation views from CSRF protection in pages/admin... Cross-Site Request Forgery - CSRF |
8.2 |
High |
|
CVE-2026-93453 |
2026-09-18 00h17 +00:00 |
SOGo before 5.12.11 constructs password-reset links using the client-supplied Origin header as the a... |
8.3 |
High |
|
CVE-2026-85878 |
2026-09-18 00h17 +00:00 |
Improper authorization in Azure Database for PostgreSQL allows an authorized attacker to elevate pri... |
9.9 |
Critical |
|
CVE-2026-83946 |
2026-09-18 00h17 +00:00 |
Improper neutralization of input during web page generation ('cross-site scripting') in Azure Portal... Cross-site Scripting |
8.2 |
High |
|
CVE-2026-69843 |
2026-09-18 00h17 +00:00 |
Authentication bypass by spoofing in Microsoft Fabric allows an unauthorized attacker to elevate pri... |
10 |
Critical |