CVE Database
Synced from NVD, cross-referenced against CISA KEV and EPSS · ordered by last update
| CVE ID | Score | Description |
|---|---|---|
| 2h ago | 9.3 | Joomla Extension - joomshaper.com - Unauthenticated SQL injection in Easy Store extension 1.0.0-2.0.1 - Improper validation of order parameters lead to an unauthenticated SQL injection in easystore, allowing full DB read access including credentials and sessions. |
| 2h ago | 9.2 | Joomla Extension - joomshaper.com - cross-customer order and personal information disclosure in Easy Store extension 1.0.0-2.0.1 - Improper access checks allow logged in users to retreive order and customer information of any order in the system. |
| Exploit 2h ago | 9.1 | Logto performs principal lookup without normalizing email and identifier strings, enabling principal collision and unauthorized account access via case- or Unicode-different identities. |
| Exploit 2h ago | 9.1 | Logto does not enforce locally configured MFA during SSO authentication, allowing users to bypass second-factor requirements and grants unauthorized access. |
| Exploit 2h ago | 9.1 | Logto bypasses OIDC nonce validation when the nonce claim is absent from the id_token, enabling replay of authentication tokens and weakening session-binding. |
| Exploit 2h ago | 9.1 | Logto allows unverified email-based SSO account linking, enabling an attacker to register an identity at a permissive IdP using a victim’s email and gain unauthorized access to the victim’s account. |
| Exploit 2h ago | 9.8 | Bold Reports Standalone Report Designer before 14.1.12 contains a missing filepath validation vulnerability in its database download feature that allows unauthenticated attackers to read arbitrary files from the server filesystem by supplying a crafted request. Attackers can exploit this path traversal weakness to disclose sensitive server files, including authentication credentials, enabling full unauthorized access to the application. The vulnerability is specific to the DataHub module, which was introduced in Bold Reports 6.3. Therefore, versions prior to 6.3 are not affected. |
| Exploit 2h ago | 9.8 | Bold Reports Standalone Report Designer before 14.1.12 contains a missing filepath validation vulnerability in its font processing feature that allows unauthenticated attackers to read arbitrary files from the server filesystem by supplying a crafted request. Attackers can exploit this path traversal weakness to disclose sensitive server files, including authentication credentials, enabling full unauthorized access to the application. The vulnerability is specific to the DataHub module, which was introduced in Bold Reports 6.3. Therefore, versions prior to 6.3 are not affected. |
| Exploit 2h ago | 9.8 | Bold Reports Standalone Report Designer before 14.1.12 contains a missing filepath validation vulnerability in its SVG processing feature that allows unauthenticated attackers to read arbitrary files from the server filesystem by supplying a crafted request. Attackers can exploit this path traversal weakness to disclose sensitive server files, including authentication credentials, enabling full unauthorized access to the application. The vulnerability is specific to the DataHub module, which was introduced in Bold Reports 6.3. Therefore, versions prior to 6.3 are not affected. |
| Exploit 2h ago | 9.1 | In JetBrains TeamCity before 2026.1.2, 2025.11.6 code execution in Git VCS roots was possible |
| Exploit 2h ago | 9.6 | SiYuan before v3.7.2 contains a cross-site scripting vulnerability in the siyuan:// protocol handler. When a siyuan://plugins/<name> link references a name that is not an installed plugin, the application opens a custom tab and inserts the link's icon parameter into the tab header via innerHTML without escaping it (app/src/layout/Tab.ts), allowing injection of an <img onerror=...> element. Because the SiYuan Desktop renderer runs with nodeIntegration:true, the injected JavaScript can access Node's require and call require('child_process').execSync(...), escalating the cross-site scripting into arbitrary operating-system command execution. |
| Exploit 2h ago | 9.6 | SiYuan before v3.7.2 contains a stored cross-site scripting vulnerability in Attribute View (database) cell rendering. A Template column value is rendered as HTML via text/template without auto-escaping, and EscapeHTML is only applied when HasUnclosedHtmlTag returns true; because balanced self-closing tags such as <img> are skipped by that check, a payload like <img src=x onerror=...> is stored unescaped and later inserted into the page via innerHTML, executing when the database is viewed. Because the desktop renderer runs with nodeIntegration enabled, the injected script can reach require and escalate to arbitrary command execution. |
| 2h ago | 9.6 | Unauthenticated Cross Site Request Forgery (CSRF) in Avada Core <= 5.15.6 versions. |
| 2h ago | 9.1 | Administrator Arbitrary File Upload in Really Simple CSV Importer <= 1.3 versions. |
| 2h ago | 9.1 | Administrator Arbitrary File Upload in MapSVG <= 8.14.0 versions. |
| 2h ago | 10 | In JetBrains IntelliJ IDEA before 2026.2 unauthorized settings modification was possible in a Remote Development session |
| 2h ago | 10 | In JetBrains IntelliJ IDEA before 2026.2 unauthorized input injection was possible in a Remote Development session |
| 2h ago | 9.8 | Unauthenticated Privilege Escalation in TrueBooker <= 1.2.3 versions. |
| 2h ago | 9.3 | Unauthenticated SQL Injection in TrueBooker <= 1.2.3 versions. |
| 2h ago | 9.3 | Unauthenticated SQL Injection in Bookly <= 27.7 versions. |
| 2h ago | 9.3 | Unauthenticated SQL Injection in WPDM – Premium Packages <= 6.2.0 versions. |
| 2h ago | 10 | Unauthenticated Arbitrary File Deletion in Participants Database <= 2.7.8.3 versions. |
| 2h ago | 9.8 | Unauthenticated PHP Object Injection in Thrive Quiz Builder <= 10.9.3.0 versions. |
| Exploit 2h ago | 9.9 | Subscriber Remote Code Execution (RCE) in Advanced Views <= 3.8.11 versions. |
| 2h ago | 9.8 | Unauthenticated Privilege Escalation in SMS Alert Order Notifications <= 3.9.6 versions. |
| 2h ago | 9.3 | Unauthenticated SQL Injection in MapSVG <= 8.14.0 versions. |
| 2h ago | 9.3 | Unauthenticated SQL Injection in Participants Database <= 2.7.8.3 versions. |
| 2h ago | 9.3 | Unauthenticated SQL Injection in Buddyboss Platform <= 3.0.5 versions. |
| 2h ago | 9.6 | Unauthenticated Cross Site Request Forgery (CSRF) in Ninja Forms File Uploads Extension <= 3.3.26 versions. |
| 2h ago | 9.1 | Editor Arbitrary File Upload in Mailster <= 4.1.17 versions. |