CVE Find is a real-time vulnerability database indexing 395 483 security flaws (CVE) from MITRE, NVD, CISA KEV, CWE and CAPEC. 4873 new CVEs were published in the last 7 days.
Data aggregated from: MITRE Corporation (CVE, CWE, CAPEC), National Vulnerability Database – NIST (NVD), CISA Known Exploited Vulnerabilities (KEV), FIRST (EPSS).
| CVE ID | Published | Description | Score | Severity | |
|---|---|---|---|---|---|
CVE-2026-4327 |
2026-09-19 08h16 +00:00 |
The The Welcomizer plugin for WordPress is vulnerable to Remote Code Execution in all versions up to... Code Injection |
8.8 |
High |
|
CVE-2026-93741 |
2026-09-19 05h45 +00:00 |
A security flaw has been discovered in Totolink A3002MU Hh-B20211125.1046. Affected by this vulnerab... Overflow |
10 |
Critical |
|
CVE-2026-92807 |
2026-09-19 03h17 +00:00 |
The Save as PDF Plugin by PDFCrowd plugin for WordPress is vulnerable to Arbitrary Function Invocati... Code Injection |
8.8 |
High |
|
CVE-2026-92229 |
2026-09-19 03h17 +00:00 |
The The Forminator Forms – Contact Form, Payment Form & Custom Form Builder plugin for WordPress i... Code Injection |
9.1 |
Critical |
|
CVE-2026-89274 |
2026-09-19 03h17 +00:00 |
The WP Recipe Maker plugin for WordPress is vulnerable to Arbitrary Shortcode Execution in all versi... Code Injection |
9.1 |
Critical |
|
CVE-2026-84434 |
2026-09-19 03h17 +00:00 |
The Gravity Forms plugin for WordPress is vulnerable to Arbitrary File Upload in all versions up to,... File Inclusion |
9.8 |
Critical |
|
CVE-2026-93922 |
2026-09-19 00h16 +00:00 |
SiYuan through 3.8.4 renders notebook names as raw HTML in the Daily Note picker dialog without esca... Cross-site Scripting |
8.8 |
High |
|
CVE-2026-93923 |
2026-09-18 23h12 +00:00 |
SiYuan through 3.8.4 fails to escape heading style attributes when rendering outline and bookmark do... Cross-site Scripting |
8.6 |
High |
|
CVE-2026-75885 |
2026-09-18 21h58 +00:00 |
A flaw was found in the OpenShift console. Unauthenticated access to the `/api/devfile/` and `/api/d... Server-Side Request Forgery - SSRF |
9.3 |
Critical |
|
CVE-2026-93740 |
2026-09-18 21h45 +00:00 |
A vulnerability was identified in Totolink A3002MU Hh-B20211125.1046. Affected is the function formW... Overflow |
10 |
Critical |