4.3

CVSS3.1

CVE-2025-14982 - Booking Calendar <= 10.14.11 - Missing Authorization to Sensitive Information Exposure

The Booking Calendar plugin for WordPress is vulnerable to Missing Authorization leading to Sensitive Information Exposure in all versions up to, and including, 10.14.11. This makes it possible for authenticated attackers, with Subscriber-level access and above, to view all booking records in the d…

📅 Published: Jan. 16, 2026, 4:44 a.m. 🔄 Last Modified: Jan. 16, 2026, 3:55 p.m.

8.7

CVSS4.0

CVE-2026-1023 - Gotac|Statistics Database System - Missing Authentication

Statistics Database System developed by Gotac has a Missing Authentication vulnerability, allowing unauthenticated remote attackers to directly exploit a specific functionality to query database contents.

📅 Published: Jan. 16, 2026, 3:43 a.m. 🔄 Last Modified: Jan. 23, 2026, 8:20 p.m.

8.7

CVSS4.0

CVE-2026-1022 - Gotac|Statistics Database System - Arbitrary File Read

Statistics Database System developed by Gotac has an Arbitrary File Read vulnerability, allowing unauthenticated remote attackers to exploit Relative Path Traversal to download arbitrary system files.

📅 Published: Jan. 16, 2026, 3:33 a.m. 🔄 Last Modified: Jan. 23, 2026, 8:23 p.m.

9.3

CVSS4.0

CVE-2026-1021 - Gotac|Police Statistics Database System - Arbitrary File Upload

Police Statistics Database System developed by Gotac has an Arbitrary File Upload vulnerability, allowing unauthenticated remote attacker to upload and execute web shell backdoors, thereby enabling arbitrary code execution on the server.

📅 Published: Jan. 16, 2026, 3:08 a.m. 🔄 Last Modified: Jan. 23, 2026, 8:24 p.m.

6.9

CVSS4.0

CVE-2026-1020 - Gotac|Police Statistics Database System - Absolute Path Traversal

Police Statistics Database System developed by Gotac has a Absolute Path Traversal vulnerability, allowing unauthenticated remote attackers to enumerate the system file directory.

📅 Published: Jan. 16, 2026, 2:57 a.m. 🔄 Last Modified: Jan. 23, 2026, 8:25 p.m.

9.3

CVSS4.0

CVE-2026-1019 - Gotac|Police Statistics Database System - Missing Authentication

Police Statistics Database System developed by Gotac has a Missing Authentication vulnerability, allowing unauthenticated remote attackers to read, modify, and delete database contents by using a specific functionality.

📅 Published: Jan. 16, 2026, 2:48 a.m. 🔄 Last Modified: Jan. 23, 2026, 8:29 p.m.

8.7

CVSS4.0

CVE-2026-1018 - Gotac|Police Statistics Database System - Arbitrary File Read

Police Statistics Database System developed by Gotac has an Arbitrary File Read vulnerability, allowing Unauthenticated remote attacker to exploit Absolute Path Traversal to download arbitrary system files.

📅 Published: Jan. 16, 2026, 2:32 a.m. 🔄 Last Modified: Jan. 23, 2026, 8:29 p.m.

9.8

CVSS3.1

CVE-2025-62581 - DIAView - Authentication Bypass Vulnerability

Delta Electronics DIAView has multiple vulnerabilities.

📅 Published: Jan. 16, 2026, 2:20 a.m. 🔄 Last Modified: Jan. 20, 2026, 4:59 p.m.

9.8

CVSS3.1

CVE-2025-62582 - DIAView - Authentication Bypass Vulnerability

Delta Electronics DIAView has multiple vulnerabilities.

📅 Published: Jan. 16, 2026, 2:03 a.m. 🔄 Last Modified: Jan. 20, 2026, 4:58 p.m.

7.6

CVSS4.0

CVE-2025-64769 - AVEVA Process Optimization Cleartext Transmission of Sensitive Information

The Process Optimization application suite leverages connection channels/protocols that by-default are not encrypted and could become subject to hijacking or data leakage in certain man-in-the-middle or passive inspection scenarios.

📅 Published: Jan. 16, 2026, 12:16 a.m. 🔄 Last Modified: Jan. 22, 2026, 3:11 p.m.
Total resulsts: 329981
Page 194 of 32,999
« previous page » next page
Filters