CVE Alert
Search enriched vulnerability data. Subscribe to real-time alerts.
196,295 results
No title available
No title available
Grandstream GXP1600 VoIP Phones - Unauthenticated stack buffer overflow
WP-DownloadManager <= 1.69 - Authenticated (Administrator+) Path Traversal to Arbitrary File Deletion via 'file' Parameter
TeamT5 ThreatSonar Anti-Ransomware - Arbitrary File Upload
Directory Traversal in AMR Printer Management by AMR
No title available
No title available
No title available
No title available
WPNakama <= 0.6.5 - Unauthenticated SQL Injection via 'order' REST API Parameter
Download Manager <= 3.3.46 - Reflected Cross-Site Scripting via 'redirect_to' Parameter
Advanced AJAX Product Filters <= 3.1.9.6 - Authenticated (Author+) PHP Object Injection via Live Composer Compatibility
Business Directory Plugin <= 6.4.21 - Unauthenticated SQL Injection via payment Parameter
ShopLentor <= 3.3.2 - Unauthenticated Email Relay Abuse via 'woolentor_suggest_price_action' AJAX Action
Business Directory Plugin <= 6.4.20 - Missing Authorization to Unauthenticated Arbitrary Listing Modification
No title available
Product Addons for Woocommerce – Product Options with Custom Fields <= 3.1.0 - Authenticated (Shop Manager+) Code Injection via Conditional Logic 'operator' Parameter
Ultimate Member <= 2.11.1 - Reflected Cross-Site Scripting via Filter Parameters
Membership Plugin – Restrict Content <= 3.2.18 - Authenticated (Administrator+) Stored Cross-Site Scripting via Invoice Settings
Subscribe to Alerts
Get notified when new critical vulnerabilities match your criteria.
Sign in to manage subscriptions