Filter
6.5CVSS
CVE-2026-92928 · Sep 23, 2026
OpenEye Apex Network Video Recorder (NVR) firmware 3.2.9.376 contains a hardcoded, undocumented recovery account with a shared credential that cannot be changed, disabled, or rotated. An unauthenticated remote attacker can use the account t…
DEFERRED
MEDIUM
5.3CVSS
CVE-2026-92929 · Sep 23, 2026
OpenEye Apex Network Video Recorder (NVR) firmware 3.2.9.376 trusts an X-Forwarded-For header supplied by an arbitrary client when determining the request source address. An unauthenticated remote attacker can spoof a loopback address to by…
DEFERRED
MEDIUM
6.2CVSS
CVE-2026-92930 · Sep 23, 2026
OpenEye Apex Network Video Recorder (NVR) firmware 3.2.9.376 uses an administrator password-reset unlock-code design that lacks a per-device secret or other server-side cryptographic material. An attacker with physical-console access and ac…
DEFERRED
MEDIUM
7.2CVSS
CVE-2026-94367 · Sep 23, 2026
OpenEye Apex Network Video Recorder (NVR) firmware 3.2.9.376 contains an OS command injection vulnerability in recbackup. An authenticated administrator can supply crafted backup-area configuration input that is passed to a shell command, a…
DEFERRED
HIGH
6.3CVSS
CVE-2026-95829 · Sep 23, 2026
A vulnerability was identified in TDuckCloud tduck-platform up to 5.3. This vulnerability affects the function PaginationInnerInterceptor.concatOrderBy of the file tduck-api/src/main/java/com/tduck/cloud/api/config/MybatisPlusConfig.java of…
DEFERRED
MEDIUM
6.3CVSS
CVE-2026-95830 · Sep 23, 2026
A security flaw has been discovered in theRealSain Pixtream up to 866afd4f0cea812b918780fb74b67dccf8c4d6a0. This issue affects some unknown processing of the file /post_upload.php. The manipulation of the argument media results in unrestric…
DEFERRED
MEDIUM
6.3CVSS
CVE-2026-95833 · Sep 23, 2026
A weakness has been identified in itsourcecode Leave Management System 1.0. Impacted is an unknown function of the file /module/leavetype/index.php. This manipulation of the argument ID causes sql injection. The attack may be initiated remo…
DEFERRED
MEDIUM
6.3CVSS
CVE-2026-95868 · Sep 23, 2026
A weakness has been identified in AdithyaYelloju Restaurant-Management-System up to 7f0e7e84255e8fcfd488e83f8f91451bbbff6b9c. Affected by this issue is the function mysqli_query of the file admin/display_menu.php of the component Search For…
DEFERRED
MEDIUM
5.5CVSS
CVE-2026-95897 · Sep 23, 2026
A security vulnerability has been detected in Dask up to 2026.8.0. This affects the function from_npy_stack of the file dask/array/core.py of the component Loader. Such manipulation leads to deserialization. The attack can be launched remot…
DEFERRED
MEDIUM
7.3CVSS
CVE-2026-95924 · Sep 23, 2026
A vulnerability has been found in SourceCodester Online Reviewer Management System 1.0. Impacted is an unknown function of the file /reviewer_0/admins/assessments/databank/btn_functions.php?action=add. The manipulation of the argument diffi…
DEFERRED
HIGH
7.3CVSS
CVE-2026-95925 · Sep 23, 2026
A vulnerability was found in SourceCodester Online Reviewer Management System 1.0. The affected element is an unknown function of the file /reviewer_0/admins/assessments/databank/btn_functions.php?action=update. The manipulation of the argu…
DEFERRED
HIGH
7.1CVSS
CVE-2026-96271 · Sep 23, 2026
Photoview through 2.4.0 contains an authorization bypass vulnerability in the shareAlbum GraphQL mutation that allows authenticated users to create share links for albums owned by other users. Attackers can supply arbitrary album IDs to gen…
DEFERRED
HIGH
7.5CVSS
CVE-2026-96272 · Sep 23, 2026
ClipBucket v5 before 5.5.3-#182 contains a blind SQL injection vulnerability in the photo search endpoint where the query parameter is passed unsanitized into SQL WHERE and ORDER BY clauses. Unauthenticated attackers can exploit time-based …
DEFERRED
HIGH
5.5CVSS
CVE-2026-96273 · Sep 23, 2026
Ghidra before 12.1.4 fails to validate the TYPE_COL byte in OptionsDB.createUnregisteredOption(), causing an ArrayIndexOutOfBoundsException that leaves domain objects permanently locked. Attackers can craft a malicious program database file…
AWAITING ANALYSIS
MEDIUM
7.3CVSS
CVE-2026-95926 · Sep 23, 2026
A vulnerability was determined in SourceCodester Online Reviewer Management System 1.0. The impacted element is an unknown function of the file /reviewer_0/admins/assessments/pretest/btn_functions.php?action=update. This manipulation of the…
DEFERRED
HIGH
7.3CVSS
CVE-2026-95927 · Sep 23, 2026
A vulnerability was identified in SourceCodester Online Reviewer Management System 1.0. This affects an unknown function of the file /reviewer_0/admins/assessments/pretest/exam-delete.php. Such manipulation of the argument test_id leads to …
DEFERRED
HIGH
5.5CVSS
CVE-2026-95928 · Sep 23, 2026
A security flaw has been discovered in recommenders-team recommenders up to 1.2.1. This impacts the function pickle.load of the file recommenders/models/newsrec/io/mind_iterator.py of the component Dict Loading. Performing a manipulation re…
DEFERRED
MEDIUM
7.5CVSS
CVE-2026-89425 · Sep 23, 2026
UTF8DataInputJsonParser._reportInvalidToken() in FasterXML jackson-core builds the offending-token text for its error message by appending Java identifier characters to a StringBuilder in a loop that has no upper bound. Unlike the three sib…
DEFERRED
HIGH
7.5CVSS
CVE-2026-91776 · Sep 23, 2026
TypeDeserializerBase._findDeserializer() in FasterXML jackson-databind caches the resolved deserializer under the raw, attacker-supplied type ID. When name-based polymorphism is configured with a fallback, for example @JsonTypeInfo(use = Id…
DEFERRED
HIGH
7.5CVSS
CVE-2026-91777 · Sep 23, 2026
Forward-reference completion for @JsonIdentityInfo object IDs in FasterXML jackson-databind performs a linear scan of the pending-reference accumulator for every resolved ID. The affected paths are CollectionDeserializer.CollectionReferring…
DEFERRED
HIGH
6.3CVSS
CVE-2026-95929 · Sep 23, 2026
A weakness has been identified in iFlytek astron-agent up to 1.0.7. Affected is an unknown function of the file console/backend/commons/src/main/resources/mapper/ChatBotMarketMapper.xml of the component getBotList API endpoint. Executing a …
DEFERRED
MEDIUM
6.3CVSS
CVE-2026-95930 · Sep 23, 2026
A security vulnerability has been detected in iFlytek astron-agent up to 1.0.6. Affected by this vulnerability is the function UrlCheckTool.checkUrl of the component debugToolV2 API endpoint. The manipulation of the argument endPoint leads …
DEFERRED
MEDIUM
4.3CVSS
CVE-2026-95957 · Sep 23, 2026
A vulnerability was found in SourceCodester Smart Attendance System with QR Code Scanner 1.0. This issue affects the function prepend of the file student_signup.php of the component Self-Registration. Performing a manipulation of the argume…
DEFERRED
MEDIUM
3.3CVSS
CVE-2026-95958 · Sep 23, 2026
A security flaw has been discovered in JusticeRage Manalyze 1.0.0. Impacted is the function PE::_parse_relocations of the file manape/pe.cpp of the component PE Parser. Performing a manipulation of the argument BlockSize results in integer …
DEFERRED
LOW
10.0CVSS
CVE-2026-96257 · Sep 23, 2026
A flaw has been found in Fast FAC1203R Gigabit Edition 2.0.4. Affected by this issue is the function copy_msg_element of the component Device Discovery Service. Executing a manipulation can lead to stack-based buffer overflow. The attack ca…
DEFERRED
CRITICAL
4.3CVSS
CVE-2026-96258 · Sep 23, 2026
A vulnerability has been found in onSite internet GmbH Auktion NG Auktionssoftware up to 20260722. This affects an unknown part of the file /forgotpasswd.html of the component Public Password Reset Endpoint. The manipulation of the argument…
DEFERRED
MEDIUM
8.6CVSS
CVE-2022-4997 · Sep 23, 2026
The jet-form-builder-stripe-gateway WordPress plugin before 1.1.0 does not sanitise and escape a payment token before using it in a SQL statement, allowing unauthenticated users to extract arbitrary data from the database, including passwor…
DEFERRED
HIGH
6.8CVSS
CVE-2025-15696 · Sep 23, 2026
The Real3D Flipbook WordPress plugin before 5.4 does not sanitize or escape several flipbook editor fields before rendering them back in the admin editor, allowing users with the Author role and above to inject arbitrary web scripts that e…
DEFERRED
MEDIUM
8.2CVSS
CVE-2026-14321 · Sep 23, 2026
The divi-dash WordPress plugin before 1.0.7 does not validate the source of the client IP address it uses for rate limiting and banning, allowing unauthenticated attackers to spoof arbitrary IP addresses in order to bypass rate limiting, ba…
DEFERRED
HIGH
6.5CVSS
CVE-2026-16264 · Sep 23, 2026
The Newsletters WordPress plugin before 4.18.1 does not perform an ownership check on some of its subscriber management actions, and issues a management session to unauthenticated visitors on request, allowing attackers to read any subscrib…
DEFERRED
MEDIUM
4.3CVSS
CVE-2026-18364 · Sep 23, 2026
The zportals WordPress plugin before 6.4.2 does not perform any capability or nonce check on several of its AJAX actions, allowing users with a subscriber-level account to modify the zportals WordPress plugin before 6.4.2's stored integrati…
DEFERRED
MEDIUM
4.3CVSS
CVE-2026-18365 · Sep 23, 2026
The zportals WordPress plugin before 6.4.2 does not perform any capability or nonce check on one of its AJAX actions, allowing users with a subscriber-level account to disclose the display name and email address of every registered user, in…
DEFERRED
MEDIUM
7.5CVSS
CVE-2026-19438 · Sep 23, 2026
Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') vulnerability in ABB Mint Workbench I.
This issue affects Mint Workbench I: through 5876.
DEFERRED
HIGH
9.0CVSS
CVE-2026-75799 · Sep 23, 2026
The YAHMAN Add-ons WordPress plugin before 0.9.31 does not validate the type of the remote files it caches in a publicly accessible directory, allowing unauthenticated attackers to write arbitrary PHP files on the server and achieve RCE whe…
DEFERRED
CRITICAL
5.3CVSS
CVE-2026-77765 · Sep 23, 2026
The Better Payment WordPress plugin before 2.3.4 does not validate the submitted payment amount server-side against the merchant's configured fixed price before building the gateway charge, allowing unauthenticated users to pay an arbitrar…
DEFERRED
MEDIUM
4.3CVSS
CVE-2026-77766 · Sep 23, 2026
The Directorist: AI-Powered Business Directory, Listings & Classified Ads WordPress plugin before 8.9.5 does not scope one of its REST collection endpoints to the requesting user, allowing users with a subscriber-level account to read every…
DEFERRED
MEDIUM
6.5CVSS
CVE-2026-80342 · Sep 23, 2026
The Payment Plugins for PayPal WooCommerce WordPress plugin before 2.0.27 does not verify that a PayPal order supplied in a payment request belongs to the WooCommerce order being paid unless that PayPal order has already been completed, all…
DEFERRED
MEDIUM
4.6CVSS
CVE-2026-81338 · Sep 23, 2026
The MasterStudy LMS WordPress Plugin WordPress plugin before 3.7.50 does not properly sanitise and restrict HTML in user-submitted content before storing it and rendering it to other users, allowing users with subscriber-level accounts and…
DEFERRED
MEDIUM
4.3CVSS
CVE-2026-81339 · Sep 23, 2026
The MasterStudy LMS WordPress Plugin WordPress plugin before 3.7.50 does not perform a per-object ownership check when returning a quiz attempt result, allowing any authenticated user with a minimal (subscriber) role to read other students…
DEFERRED
MEDIUM
9.0CVSS
CVE-2026-82843 · Sep 23, 2026
The WP OAuth Server ( Login with WordPress ) WordPress plugin before 6.4.0 does not bind the OpenID Connect identity assertion it issues to the authorization grant being exchanged, returning instead the assertion belonging to whichever user…
DEFERRED
CRITICAL