CVE Find est une base de données de vulnérabilités en temps réel, indexant 398 249 failles de sécurité (CVE) issues de MITRE, NVD, CISA KEV, CWE et CAPEC. 2726 nouvelles CVE ont été publiées ces 7 derniers jours.
Données agrégées depuis : MITRE Corporation (CVE, CWE, CAPEC), National Vulnerability Database – NIST (NVD), CISA Known Exploited Vulnerabilities (KEV), FIRST (EPSS).
| CVE ID | Publié | Description | Score | Gravité | |
|---|---|---|---|---|---|
CVE-2026-18143 |
2026-09-26 06h39 +00:00 |
The Request a Quote for WooCommerce plugin for WordPress is vulnerable to Arbitrary File Upload in a... File Inclusion |
9.8 |
Critique |
|
CVE-2026-100596 |
2026-09-26 03h17 +00:00 |
OpenClaw versions before 2026.7.1 fail to properly authorize non-owner users executing MCP configura... Authorization problems |
8.8 |
Haute |
|
CVE-2026-100589 |
2026-09-26 03h17 +00:00 |
OpenClaw versions before 2026.7.1 contain a sandbox bypass vulnerability in the browser tool that al... Authorization problems |
8.3 |
Haute |
|
CVE-2026-100588 |
2026-09-26 03h17 +00:00 |
OpenClaw (npm package 'openclaw') before 2026.7.1 does not enforce the administrator scope requireme... Authorization problems |
8.3 |
Haute |
|
CVE-2026-100587 |
2026-09-26 03h17 +00:00 |
OpenClaw versions before 2026.7.1 fail to properly validate owner authorization in the Codex compute... Authorization problems |
8.8 |
Haute |
|
CVE-2026-100586 |
2026-09-26 03h17 +00:00 |
OpenClaw Codex before 2026.7.1 fails to properly enforce owner authorization when creating native co... Improper Privilege Management |
8.8 |
Haute |
|
CVE-2026-100580 |
2026-09-26 03h17 +00:00 |
OpenClaw (npm package 'openclaw') before 2026.7.1 improperly handles case sensitivity in the model-f... |
8.8 |
Haute |
|
CVE-2026-100575 |
2026-09-26 03h17 +00:00 |
OpenClaw Slack versions before 2026.8.1 fail to properly enforce sender allowlists in multi-person d... Authorization problems |
8.8 |
Haute |
|
CVE-2026-100568 |
2026-09-26 03h17 +00:00 |
OpenClaw versions before 2026.8.1 fail to properly restrict access to operator command cron jobs, al... |
8.3 |
Haute |
|
CVE-2026-100567 |
2026-09-26 03h17 +00:00 |
OpenClaw is an agent gateway distributed as the npm package 'openclaw'. In versions >= 2026.4.5 and ... Server-Side Request Forgery - SSRF |
8.2 |
Haute |