AUGUST 19, 2026
Live Feed
Vulnerability Register

CVE Database

Synced from NVD, cross-referenced against CISA KEV and EPSS · ordered by last update

141,688 records on file
Page 145 of 4,723
CVE ID Score Description
Exploit 2h ago
8.4

In JetBrains WebStorm before 2026.2 arbitrary code execution was possible before granting project trust via project-local package-manager tooling

Exploit 2h ago
8.4

In JetBrains WebStorm before 2026.2 arbitrary code execution was possible before granting project trust via project-local linter tooling

Exploit 2h ago
7.8

In JetBrains GoLand before 2026.2 arbitrary code execution was possible before granting project trust via the configured Go SDK

Exploit 2h ago
7.8

In JetBrains GoLand before 2026.2 arbitrary code execution was possible before granting project trust in the Go Modules integration

2h ago
7.5

Unauthenticated Broken Access Control in PayU India <= 3.8.9 versions.

2h ago
7.1

Unauthenticated Cross Site Scripting (XSS) in Form Vibes – Database Manager for Forms <= 1.5.2 versions.

2h ago
7.1

Unauthenticated Cross Site Scripting (XSS) in Bookly <= 27.7 versions.

2h ago
7.5

Unauthenticated Broken Access Control in WPDM – Premium Packages <= 6.2.0 versions.

2h ago
7.5

Unauthenticated Broken Authentication in Ziina <= 1.2.21 versions.

2h ago
7.5

Unauthenticated Broken Access Control in Payment Gateway for PayPal on WooCommerce <= 9.1.4 versions.

2h ago
8.1

Unauthenticated Broken Authentication in miniOrange Discord Integration <= 2.2.4 versions.

2h ago
7.7

Subscriber Arbitrary File Deletion in Kali Forms <= 2.4.18 versions.

2h ago
8.8

Subscriber Privilege Escalation in WP BASE Booking <= 6.3.1 versions.

2h ago
7.1

Unauthenticated Cross Site Scripting (XSS) in Easy Form Builder <= 4.0.12 versions.

2h ago
7.1

Unauthenticated Cross Site Scripting (XSS) in Product Enquiry for WooCommerce <= 2.2.34.43 versions.

2h ago
7.1

Unauthenticated Cross Site Scripting (XSS) in AffiliateWP <= 2.34.0 versions.

2h ago
8.8

Unauthenticated Cross Site Request Forgery (CSRF) in ApusListing <= 1.2.63 versions.

2h ago
7.1

Unauthenticated Cross Site Scripting (XSS) in Grand Photography <= 5.7.8 versions.

2h ago
7.1

Unauthenticated Cross Site Scripting (XSS) in WP Google Maps Pro <= 10.1.02 versions.

2h ago
7.1

Unauthenticated Cross Site Scripting (XSS) in Breakdance <= 2.7.1 versions.

2h ago
7.1

Unauthenticated Cross Site Scripting (XSS) in Smart Manager <= 8.90.0 versions.

2h ago
7.1

Unauthenticated Cross Site Scripting (XSS) in Real Estate Manager Pro <= 12.8.5 versions.

2h ago
7.1

Subscriber Cross Site Scripting (XSS) in Slider Pro <= 4.8.13 versions.

2h ago
7.1

Contributor Arbitrary File Deletion in Picture Gallery <= 1.6.5 versions.

2h ago
7.1

Cross-Site Request Forgery (CSRF) vulnerability in MailPoet allows Cross Site Request Forgery. This issue affects MailPoet: from 5.30.0 through 5.33.0.

2h ago
7.1

Unauthenticated Cross Site Scripting (XSS) in Sprout Clients <= 3.2.3 versions.

2h ago
7.1

Unauthenticated Cross Site Scripting (XSS) in Download Monitor - WPForms Lock <= 1.0.4 versions.

2h ago
7.1

Unauthenticated Cross Site Scripting (XSS) in Coaching <= 3.9.2 versions.

2h ago
7.1

Unauthenticated Cross Site Scripting (XSS) in Funnel Kit Funnel Builder PRO <= 3.15.0.7 versions.

2h ago
7.1

Unauthenticated Cross Site Scripting (XSS) in Visitor Traffic Real Time Statistics Pro <= 11.9.1 versions.