CVE Find is a real-time vulnerability database indexing 343 686 security flaws (CVE) from MITRE, NVD, CISA KEV, CWE and CAPEC. 1673 new CVEs were published in the last 7 days.
Data aggregated from: MITRE Corporation (CVE, CWE, CAPEC), National Vulnerability Database – NIST (NVD), CISA Known Exploited Vulnerabilities (KEV), FIRST (EPSS).
| CVE ID | Published | Description | Score | Severity | |
|---|---|---|---|---|---|
CVE-2026-34621 |
2026-04-11 06h45 +00:00 |
Acrobat Reader versions 24.001.30356, 26.001.21367 and earlier are affected by an Improperly Control... |
9.6 |
Critical |
|
CVE-2026-5144 |
2026-04-11 02h16 +00:00 |
The BuddyPress Groupblog plugin for WordPress is vulnerable to Privilege Escalation in all versions ... Improper Privilege Management |
8.8 |
High |
|
CVE-2026-5059 |
2026-04-11 01h16 +00:00 |
aws-mcp-server AWS CLI Command Injection Remote Code Execution Vulnerability. This vulnerability all... OS Command Injection |
9.8 |
Critical |
|
CVE-2026-5058 |
2026-04-11 01h16 +00:00 |
aws-mcp-server Command Injection Remote Code Execution Vulnerability. This vulnerability allows remo... OS Command Injection |
9.8 |
Critical |
|
CVE-2026-4149 |
2026-04-11 01h16 +00:00 |
Sonos Era 300 SMB Response Out-Of-Bounds Access Remote Code Execution Vulnerability. This vulnerabil... Overflow |
10 |
Critical |
|
CVE-2026-40175 |
2026-04-10 20h16 +00:00 |
Axios is a promise based HTTP client for the browser and Node.js. Prior to 1.15.0, the Axios library... Server-Side Request Forgery - SSRF |
10 |
Critical |
|
CVE-2026-40168 |
2026-04-10 20h16 +00:00 |
Postiz is an AI social media scheduling tool. Prior to 2.21.5, the /api/public/stream endpoint is vu... Server-Side Request Forgery - SSRF |
8.2 |
High |
|
CVE-2026-33707 |
2026-04-10 19h16 +00:00 |
Chamilo LMS is a learning management system. Prior to 1.11.38 and 2.0.0-RC.3, the default password r... |
9.4 |
Critical |
|
CVE-2026-33618 |
2026-04-10 19h16 +00:00 |
Chamilo LMS is a learning management system. Prior to .0.0-RC.3, the PlatformConfigurationController... |
8.8 |
High |
|
CVE-2026-40163 |
2026-04-10 18h16 +00:00 |
Saltcorn is an extensible, open source, no-code database application builder. Prior to 1.4.5, 1.5.5,... Directory Traversal |
8.2 |
High |