CVE Find est une base de données de vulnérabilités en temps réel, indexant 342 945 failles de sécurité (CVE) issues de MITRE, NVD, CISA KEV, CWE et CAPEC. 1543 nouvelles CVE ont été publiées ces 7 derniers jours.
Données agrégées depuis : MITRE Corporation (CVE, CWE, CAPEC), National Vulnerability Database – NIST (NVD), CISA Known Exploited Vulnerabilities (KEV), FIRST (EPSS).
| CVE ID | Publié | Description | Score | Gravité | |
|---|---|---|---|---|---|
CVE-2026-5208 |
2026-04-08 12h16 +00:00 |
Command injection in alerts in CoolerControl/coolercontrold <4.0.0 allows authenticated attackers to... OS Command Injection |
8.2 |
Haute |
|
CVE-2026-3243 |
2026-04-08 12h16 +00:00 |
The Advanced Members for ACF plugin for WordPress is vulnerable to arbitrary file deletion due to in... Directory Traversal |
8.8 |
Haute |
|
CVE-2026-25776 |
2026-04-08 09h16 +00:00 |
Movable Type provided by Six Apart Ltd. contains a code injection vulnerability which may allow an a... Code Injection |
9.8 |
Critique |
|
CVE-2026-3535 |
2026-04-08 07h16 +00:00 |
The DSGVO Google Web Fonts GDPR plugin for WordPress is vulnerable to arbitrary file upload due to m... File Inclusion |
9.8 |
Critique |
|
CVE-2026-24913 |
2026-04-08 06h16 +00:00 |
SQL Injection vulnerability exists in MATCHA INVOICE 2.6.6 and earlier. If this vulnerability is exp... SQL Injection |
8.8 |
Haute |
|
CVE-2026-4003 |
2026-04-08 05h16 +00:00 |
The Users manager – PN plugin for WordPress is vulnerable to Privilege Escalation via Arbitrary Us... Authorization problems |
9.8 |
Critique |
|
CVE-2026-3296 |
2026-04-08 02h16 +00:00 |
The Everest Forms plugin for WordPress is vulnerable to PHP Object Injection in all versions up to, ... |
9.8 |
Critique |
|
CVE-2026-3499 |
2026-04-08 01h24 +00:00 |
The Product Feed PRO for WooCommerce by AdTribes – Product Feeds for WooCommerce plugin for WordPr... Cross-Site Request Forgery - CSRF |
8.8 |
Haute |
|
CVE-2026-4788 |
2026-04-08 01h16 +00:00 |
IBM Tivoli Netcool Impact 7.1.0.0 through 7.1.0.37 stores sensitive information in log files that co... |
8.4 |
Haute |
|
CVE-2026-3357 |
2026-04-08 01h16 +00:00 |
IBM Langflow Desktop 1.6.0 through 1.8.2 Langflow could allow an authenticated user to execute arbit... |
8.8 |
Haute |