AUGUST 28, 2026
Live Feed
Vulnerability Register

CVE Database

Synced from NVD, cross-referenced against CISA KEV and EPSS · ordered by last update

143,229 records on file
Page 350 of 4,775
CVE ID Score Description
23d ago
8.1

Unauthenticated Local File Inclusion in Thegov Core < 2.0.23 versions.

23d ago
7.5

Unauthenticated Sensitive Data Exposure in Bricksforge <= 3.1.8.4 versions.

Exploit 23d ago
7.8

In Telecomm, there is a possible way to initiate an unauthorized phone call due to a permissions bypass. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is not needed for exploitation.

23d ago
8.6

Unauthenticated Arbitrary File Deletion in BookPro <= 1.1.0 versions.

23d ago
8.1

Unauthenticated Broken Authentication in Booknetic <= 4.8.5 versions.

23d ago
8.6

Unauthenticated Broken Access Control in WordPress Dating Theme <= 11.2.0 versions.

23d ago
8.8

Unauthenticated Cross Site Request Forgery (CSRF) in WordPress Dating Theme <= 11.2.0 versions.

23d ago
7.1

Unauthenticated Cross Site Scripting (XSS) in WPJobster <= 6.3.5 versions.

23d ago
8.1

Unauthenticated Local File Inclusion in EcoBlue <= 1.15 versions.

23d ago
8.5

Subscriber SQL Injection in WooCommerce Frontend Manager – Ultimate < 6.7.7 versions.

23d ago
7.5

Subscriber Arbitrary File Download in Woocommerce Book Price <= 1.3 versions.

23d ago
8.1

Unauthenticated Local File Inclusion in AutoParts <= 1.5.8 versions.

23d ago
8.1

Unauthenticated Local File Inclusion in Right Way <= 4.0 versions.

23d ago
7.1

Unauthenticated Cross Site Scripting (XSS) in Skillate <= 1.2.10 versions.

23d ago
7.1

Unauthenticated Cross Site Scripting (XSS) in Auto Repair <= 22.6 versions.

23d ago
8.1

Unauthenticated Local File Inclusion in Reprizo <= 1.0.8 versions.

23d ago
8.1

Unauthenticated Local File Inclusion in Promo <= 1.3.0 versions.

23d ago
8.3

Race in Updater in Google Chrome on Mac prior to 149.0.7827.155 allowed a remote attacker who had compromised the renderer process to potentially perform a sandbox escape via a crafted HTML page. (Chromium security severity: High)

23d ago
8.3

Use after free in Extensions in Google Chrome prior to 149.0.7827.155 allowed a remote attacker who had compromised the renderer process to potentially perform a sandbox escape via a crafted HTML page. (Chromium security severity: High)

23d ago
8.8

Heap buffer overflow in WebRTC in Google Chrome on Windows prior to 149.0.7827.155 allowed a remote attacker to execute arbitrary code via a crafted HTML page. (Chromium security severity: High)

23d ago
8.3

Object lifecycle issue in Metrics in Google Chrome prior to 149.0.7827.155 allowed a remote attacker who had compromised the renderer process to potentially perform a sandbox escape via a crafted HTML page. (Chromium security severity: High)

23d ago
8.3

Use after free in Browser in Google Chrome prior to 149.0.7827.155 allowed a remote attacker who had compromised the renderer process to potentially perform a sandbox escape via a crafted HTML page. (Chromium security severity: High)

23d ago
7.5

Use after free in Media in Google Chrome prior to 149.0.7827.155 allowed a remote attacker who had compromised the renderer process to execute arbitrary code inside a sandbox via a crafted HTML page. (Chromium security severity: High)

Exploit 23d ago
7.5

Use after free in Tab Strip in Google Chrome prior to 149.0.7827.155 allowed a remote attacker who convinced a user to engage in specific UI gestures to potentially exploit heap corruption via a crafted HTML page. (Chromium security severity: High)

23d ago
8.3

Race in Safe Browsing in Google Chrome on Mac prior to 149.0.7827.155 allowed a remote attacker who had compromised the renderer process to potentially perform a sandbox escape via a crafted HTML page. (Chromium security severity: High)

Exploit 23d ago
8.8

Use after free in Downloads in Google Chrome on Android prior to 149.0.7827.155 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page. (Chromium security severity: High)

23d ago
8.3

Use after free in DigitalCredentials in Google Chrome prior to 149.0.7827.155 allowed a remote attacker who had compromised the renderer process to potentially perform a sandbox escape via a crafted HTML page. (Chromium security severity: High)

23d ago
7.8

Use after free in Chromoting in Google Chrome on Windows prior to 149.0.7827.155 allowed a local attacker to perform OS-level privilege escalation via a malicious file. (Chromium security severity: High)

23d ago
8.8

Inappropriate implementation in WebView in Google Chrome on Android prior to 149.0.7827.155 allowed a remote attacker to perform privilege escalation via a crafted HTML page. (Chromium security severity: High)

23d ago
8.8

Heap buffer overflow in WebRTC in Google Chrome prior to 149.0.7827.155 allowed a remote attacker to execute arbitrary code inside a sandbox via a crafted HTML page. (Chromium security severity: High)