8.2

CVSS4.0

CVE-2026-41471 - Easy PayPal Events & Tickets 1.3 Information Disclosure via QR Code Endpoint

Easy PayPal Events & Tickets plugin for WordPress versions 1.3 and earlier contain an information disclosure vulnerability in the QR code scanning endpoint that allows unauthenticated attackers to enumerate and retrieve all customer order records. Attackers can iterate over sequential WordPress pos…

πŸ“… Published: May 4, 2026, 5:40 p.m. πŸ”„ Last Modified: May 4, 2026, 7:43 p.m.

8.7

CVSS4.0

CVE-2026-32834 - Easy PayPal Events & Tickets 1.3 Authentication Bypass via QR Code Scanning

Easy PayPal Events & Tickets plugin for WordPress version 1.3 and earlier contain a hardcoded authentication bypass vulnerability in the QR code scanning functionality that allows unauthenticated remote attackers to bypass hash verification by supplying 'test' as the hash parameter. Attackers can a…

πŸ“… Published: May 4, 2026, 5:39 p.m. πŸ”„ Last Modified: May 4, 2026, 7:43 p.m.

4.4

CVSS3.1

CVE-2026-42140 - Server-Side Request Forgery (SSRF) in PlantUML Macro via 'server' parameter

PlantUML Macro is a macro for rendering UML diagrams from simple textual schemes. Prior to version 2.4.1, the PlantUML Macro is vulnerable to Server-Side Request Forgery (SSRF). The macro allows users to specify an alternative PlantUML server via the server parameter. However, the application does …

πŸ“… Published: May 4, 2026, 5:37 p.m. πŸ”„ Last Modified: May 4, 2026, 7:52 p.m.

6.9

CVSS4.0

CVE-2026-42138 - Dify Vulnerable to Stored XSS via SVG-file upload

Dify is an open-source LLM app development platform. Prior to version 1.13.1, using the method POST /api/files/upload, any unauthenticated user can upload an SVG file with XSS. The method POST /v1/files/upload, which requires authentication through the application API, is also vulnerable. This issu…

πŸ“… Published: May 4, 2026, 5:34 p.m. πŸ”„ Last Modified: May 4, 2026, 7:30 p.m.

6.8

CVSS4.0

CVE-2026-43616 - Detect-It-Easy < 3.21 Path Traversal Arbitrary File Write

Detect-It-Easy prior to 3.21 contains a path traversal vulnerability that allows attackers to write arbitrary files to the filesystem by crafting malicious archive entries with relative traversal sequences or absolute paths. Attackers can exploit insufficient path normalization during archive extra…

πŸ“… Published: May 4, 2026, 5:33 p.m. πŸ”„ Last Modified: May 4, 2026, 5:33 p.m.

6.5

CVSS3.1

CVE-2026-42092 - Global Settings Publication Exposes Sensitive Configuration to Any Authenticated User in Titra

titra is an open source time tracking project. In version 0.99.52, the globalsettings Meteor publication returns all global settings without any admin or role check. Any authenticated user can subscribe via DDP and receive sensitive configuration fields such as google_secret, openai_apikey, and goo…

πŸ“… Published: May 4, 2026, 5:30 p.m. πŸ”„ Last Modified: May 6, 2026, 1:42 p.m.

6.5

CVSS3.1

CVE-2026-42091 - goshs has Cross-Origin Arbitrary File Write via Missing CSRF on PUT and Wildcard CORS

goshs is a SimpleHTTPServer written in Go. Prior to version 2.0.2, the PUT upload handler (httpserver/updown.go) lacks the CSRF token validation that was added to the POST upload handler during the CVE-2026-40883 fix. Combined with the unconditional Access-Control-Allow-Origin: * on the OPTIONS pre…

πŸ“… Published: May 4, 2026, 5:24 p.m. πŸ”„ Last Modified: May 5, 2026, 4:16 p.m.

9.6

CVSS3.1

CVE-2026-42088 - OpenC3 COSMOS: Administrative Actions via the Script Runner Tool

OpenC3 COSMOS provides the functionality needed to send commands to and receive data from one or more embedded systems. Prior to version 7.0.0-rc3, the Script Runner widget allows users to execute Python and Ruby scripts directly from the openc3-COSMOS-script-runner-api container. Because all the d…

πŸ“… Published: May 4, 2026, 5:21 p.m. πŸ”„ Last Modified: May 4, 2026, 8:16 p.m.

9.2

CVSS4.0

CVE-2026-42796 - Arelle < 2.39.10 Unauthenticated RCE via /rest/configure

Arelle before 2.39.10 contains an unauthenticated remote code execution vulnerability in the /rest/configure REST endpoint that accepts a plugins query parameter and forwards it to the plugin manager without authentication or authorization. Attackers can supply a URL to a malicious Python file thro…

πŸ“… Published: May 4, 2026, 5:19 p.m. πŸ”„ Last Modified: May 4, 2026, 7:43 p.m.

9.6

CVSS3.1

CVE-2026-42087 - OpenC3 COSMOS: SQL Injection in QuestDB Time-Series Data Base

OpenC3 COSMOS provides the functionality needed to send commands to and receive data from one or more embedded systems. From version 6.7.0 to before version 7.0.0-rc3, a SQL injection vulnerability exists in the Time-Series Database (TSDB) component of COSMOS. The tsdb_lookup function in the cvt_mo…

πŸ“… Published: May 4, 2026, 5:18 p.m. πŸ”„ Last Modified: May 5, 2026, 12:46 p.m.
Total resulsts: 349182
Page 129 of 34,919
Β« previous page Β» next page
Filters