CVE Find est une base de données de vulnérabilités en temps réel, indexant 394 953 failles de sécurité (CVE) issues de MITRE, NVD, CISA KEV, CWE et CAPEC. 5047 nouvelles CVE ont été publiées ces 7 derniers jours.
Données agrégées depuis : MITRE Corporation (CVE, CWE, CAPEC), National Vulnerability Database – NIST (NVD), CISA Known Exploited Vulnerabilities (KEV), FIRST (EPSS).
| CVE ID | Publié | Description | Score | Gravité | |
|---|---|---|---|---|---|
CVE-2026-17086 |
2026-09-18 03h38 +00:00 |
The ShortPixel Image Optimizer – Optimize Images, Convert WebP & AVIF plugin for WordPress is vuln... |
8.8 |
Haute |
|
CVE-2026-93467 |
2026-09-18 03h16 +00:00 |
The OAKlouds developed by HGiga has a Insecure Deserialization vulnerability. Unauthenticated remote... |
9.8 |
Critique |
|
CVE-2026-93371 |
2026-09-18 03h16 +00:00 |
A security vulnerability has been detected in marcopiovanello yt-dlp-web-ui up to v4. This issue aff... Command Injection |
8.3 |
Haute |
|
CVE-2026-93468 |
2026-09-18 02h19 +00:00 |
The OAKlouds developed by HGiga has an Arbitrary File Read vulnerability. Unauthenticated remote att... |
8.7 |
Haute |
|
CVE-2026-93456 |
2026-09-18 02h17 +00:00 |
django-page-cms through 2.0.13 exempts five admin mutation views from CSRF protection in pages/admin... Cross-Site Request Forgery - CSRF |
8.2 |
Haute |
|
CVE-2026-93453 |
2026-09-18 00h17 +00:00 |
SOGo before 5.12.11 constructs password-reset links using the client-supplied Origin header as the a... |
8.3 |
Haute |
|
CVE-2026-85878 |
2026-09-18 00h17 +00:00 |
Improper authorization in Azure Database for PostgreSQL allows an authorized attacker to elevate pri... |
9.9 |
Critique |
|
CVE-2026-83946 |
2026-09-18 00h17 +00:00 |
Improper neutralization of input during web page generation ('cross-site scripting') in Azure Portal... Cross-site Scripting |
8.2 |
Haute |
|
CVE-2026-69843 |
2026-09-18 00h17 +00:00 |
Authentication bypass by spoofing in Microsoft Fabric allows an unauthorized attacker to elevate pri... |
10 |
Critique |
|
CVE-2026-62874 |
2026-09-18 00h16 +00:00 |
Insufficient verification of data authenticity in Azure Billing allows an unauthorized attacker to e... |
10 |
Critique |