CVE Find is a real-time vulnerability database indexing 341 327 security flaws (CVE) from MITRE, NVD, CISA KEV, CWE and CAPEC. 1222 new CVEs were published in the last 7 days.
Data aggregated from: MITRE Corporation (CVE, CWE, CAPEC), National Vulnerability Database – NIST (NVD), CISA Known Exploited Vulnerabilities (KEV), FIRST (EPSS).
| CVE ID | Published | Description | Score | Severity | |
|---|---|---|---|---|---|
CVE-2026-4370 |
2026-04-01 09h16 +00:00 |
A vulnerability was identified in Juju from version 3.2.0 until 3.6.19 and from version 4.0 until 4.... Authorization problems |
10 |
Critical |
|
CVE-2026-35056 |
2026-04-01 01h16 +00:00 |
XenForo before 2.3.9 and before 2.2.18 allows remote code execution (RCE) by authenticated, but mali... Code Injection |
8.8 |
High |
|
CVE-2025-71281 |
2026-04-01 01h16 +00:00 |
XenForo before 2.3.7 does not properly restrict methods callable from within templates. A loose pref... Code Injection |
8.8 |
High |
|
CVE-2025-71279 |
2026-04-01 01h16 +00:00 |
XenForo before 2.3.7 contains a security issue affecting Passkeys that have been added to user accou... Authorization problems |
9.8 |
Critical |
|
CVE-2025-71278 |
2026-04-01 01h16 +00:00 |
XenForo before 2.3.5 allows OAuth2 client applications to request unauthorized scopes. This affects ... Authorization problems |
8.8 |
High |
|
CVE-2026-5214 |
2026-03-31 22h16 +00:00 |
A vulnerability was found in D-Link DNS-120, DNR-202L, DNS-315L, DNS-320, DNS-320L, DNS-320LW, DNS-3... Overflow |
8.8 |
High |
|
CVE-2026-34585 |
2026-03-31 22h16 +00:00 |
SiYuan is a personal knowledge management system. Prior to version 3.6.2, a vulnerability allows cra... Cross-site ScriptingCode Injection |
8.6 |
High |
|
CVE-2026-34449 |
2026-03-31 22h16 +00:00 |
SiYuan is a personal knowledge management system. Prior to version 3.6.2, a malicious website can ac... |
9.6 |
Critical |
|
CVE-2026-34448 |
2026-03-31 22h16 +00:00 |
SiYuan is a personal knowledge management system. Prior to version 3.6.2, an attacker who can place ... Cross-site ScriptingCode Injection |
9 |
Critical |
|
CVE-2026-5213 |
2026-03-31 21h16 +00:00 |
A vulnerability was determined in D-Link DNS-120, DNR-202L, DNS-315L, DNS-320, DNS-320L, DNS-320LW, ... Overflow |
8.8 |
High |