7.2

CVSS3.1

CVE-2025-12886 - Oxygen <= 6.0.8 - Unauthenticated Server-Side Request Forgery via route_path

The Oxygen Theme theme for WordPress is vulnerable to Server-Side Request Forgery in all versions up to, and including, 6.0.8 via the laborator_calc_route AJAX action. This makes it possible for unauthenticated attackers to make web requests to arbitrary locations originating from the web applicati…

πŸ“… Published: March 28, 2026, 2:26 a.m. πŸ”„ Last Modified: March 28, 2026, 2:26 a.m.

7.5

CVSS3.1

CVE-2026-4987 - SureForms <= 2.5.2 - Unauthenticated Payment Amount Validation Bypass via 'form_id'

The SureForms – Contact Form, Payment Form & Other Custom Form Builder plugin for WordPress is vulnerable to Payment Amount Bypass in all versions up to, and including, 2.5.2. This is due to the create_payment_intent() function performing a payment validation solely based on the value of a user-con…

πŸ“… Published: March 28, 2026, 1:25 a.m. πŸ”„ Last Modified: March 28, 2026, 2:16 a.m.

7.3

CVSS3.1

CVE-2026-1679 - net: eswifi socket send payload length not bounded

The eswifi socket offload driver copies user-provided payloads into a fixed buffer without checking available space; oversized sends overflow `eswifi->buf`, corrupting kernel memory (CWE-120). Exploit requires local code that can call the socket send API; no remote attacker can reach it directly.

πŸ“… Published: March 27, 2026, 11:21 p.m. πŸ”„ Last Modified: March 28, 2026, 12:16 a.m.

8

CVSS3.1

CVE-2026-4248 - Ultimate Member <= 2.11.2 - Authenticated (Contributor+) Sensitive Information Exposure to Account …

The Ultimate Member plugin for WordPress is vulnerable to Sensitive Information Exposure in all versions up to, and including, 2.11.2. This is due to the '{usermeta:password_reset_link}' template tag being processed within post content via the '[um_loggedin]' shortcode, which generates a valid pass…

πŸ“… Published: March 27, 2026, 10:26 p.m. πŸ”„ Last Modified: March 27, 2026, 11:17 p.m.

5.8

CVSS4.0

CVE-2026-33996 - LibJWT has NULL/bounds validation in JWK octet and RSA PSS parsing

LibJWT is a C JSON Web Token Library. Starting in version 3.0.0 and prior to version 3.3.0, the JWK parsing for RSA-PSS did not protect against a NULL value when expecting to parse JSON string values. A specially crafted JWK file could exploit this behavior by using integers in places where the cod…

πŸ“… Published: March 27, 2026, 10:21 p.m. πŸ”„ Last Modified: March 27, 2026, 11:17 p.m.

6.3

CVSS4.0

CVE-2026-33994 - Locutus Prototype Pollution due to incomplete fix for CVE-2026-25521

Locutus brings stdlibs of other programming languages to JavaScript for educational purposes. Starting in version 2.0.39 and prior to version 3.0.25, a prototype pollution vulnerability exists in the `parse_str` function of the npm package locutus. An attacker can pollute `Object.prototype` by over…

πŸ“… Published: March 27, 2026, 10:15 p.m. πŸ”„ Last Modified: March 27, 2026, 11:17 p.m.

6.9

CVSS4.0

CVE-2026-33993 - Locutus has Prototype Pollution via __proto__ Key Injection in unserialize()

Locutus brings stdlibs of other programming languages to JavaScript for educational purposes. Prior to version 3.0.25, the `unserialize()` function in `locutus/php/var/unserialize` assigns deserialized keys to plain objects via bracket notation without filtering the `__proto__` key. When a PHP seri…

πŸ“… Published: March 27, 2026, 10:14 p.m. πŸ”„ Last Modified: March 27, 2026, 11:17 p.m.

9.3

CVSS4.0

CVE-2026-33992 - pyLoad: Server-Side Request Forgery via Download Link Submission Enables Cloud Metadata Exfiltration

pyLoad is a free and open-source download manager written in Python. Prior to version 0.5.0b3.dev97, PyLoad's download engine accepts arbitrary URLs without validation, enabling Server-Side Request Forgery (SSRF) attacks. An authenticated attacker can exploit this to access internal network service…

πŸ“… Published: March 27, 2026, 10:12 p.m. πŸ”„ Last Modified: March 27, 2026, 11:17 p.m.

8.8

CVSS3.1

CVE-2026-33991 - WeGIA has SQL Injection in deletar_tag.php

WeGIA is a web manager for charitable institutions. Prior to version 3.6.7, the file `html/socio/sistema/deletar_tag.php` uses `extract($_REQUEST)` on line 14 and directly concatenates the `$id_tag` variable into SQL queries on lines 16-17 without prepared statements or sanitization. Version 3.6.7 …

πŸ“… Published: March 27, 2026, 10:10 p.m. πŸ”„ Last Modified: March 27, 2026, 11:17 p.m.

5.3

CVSS3.1

CVE-2026-33936 - python-ecdsa: Denial of Service via improper DER length validation in crafted private keys

The `ecdsa` PyPI package is a pure Python implementation of ECC (Elliptic Curve Cryptography) with support for ECDSA (Elliptic Curve Digital Signature Algorithm), EdDSA (Edwards-curve Digital Signature Algorithm) and ECDH (Elliptic Curve Diffie-Hellman). Prior to version 0.19.2, an issue in the low…

πŸ“… Published: March 27, 2026, 10:08 p.m. πŸ”„ Last Modified: March 27, 2026, 11:17 p.m.
Total resulsts: 341021
Page 6 of 34,103
Β« previous page Β» next page
Filters