Blog

"Prevention is cheaper than a breach"

Live Vulnerability Intelligence

Threat Database

Search CVEs, inspect descriptions, and open detail pages with AI-assisted technical context.

Total1,249
Critical1,249
High0
Medium0
Reset
Showing 421-440 of 1249 records
Threat Entry Updated 2026-01-20

CVE-2026-22755 - Vivotek Affected device model numbers are FD8365, FD8365v2, FD9165, FD9171, FD9187, FD9189, FD9365, FD9371, FD9381, FD93 Plugin

Improper Neutralization of Special Elements used in a Command ('Command Injection') vulnerability in Vivotek Affected device model numbers are FD8365, FD8365v2, FD9165, FD9171, FD9187, FD9189, FD9365, FD9371, FD9381, FD9387, FD9389, FD9391,FE9180,FE9181, FE9191, FE9381, FE9382, FE9391, FE9582, IB9365, IB93587LPR, IB9371,IB9381, IB9387, IB9389, IB939,IP9165,IP9171, IP9172, IP9181, IP9191, IT9389, MA9321, MA9322, MS9321, MS9390, TB9330 (Firmware modules) allows OS Command Injection.This issue affects Affected device model numbers are FD8365, FD8365v2, FD9165, FD9171, FD9187, FD9189, FD9365, FD9371, FD9381, FD9387, FD9389, FD9391,FE9180,FE9181, FE9191, FE9381, FE9382, FE9391, FE9582, IB9365, IB93587LPR, IB9371,IB9381, IB9387, IB9389, IB939,IP9165,IP9171, IP9172, IP9181, IP9191,…

PLUGIN Vivotek Affected device model numbers are FD8365, FD8365v2, FD9165, FD9171, FD9187, FD9189, FD9365, FD9371, FD9381, FD93

CVE-2026-22755

CRITICAL CVSS 9.3 2026-01-13
Threat Entry Updated 2026-01-22

CVE-2026-0892 - Firefox Plugin

Memory safety bugs present in Firefox 146 and Thunderbird 146. Some of these bugs showed evidence of memory corruption and we presume that with enough effort some of these could have been exploited to run arbitrary code. This vulnerability affects Firefox < 147 and Thunderbird < 147.

PLUGIN Firefox

CVE-2026-0892

CRITICAL CVSS 9.8 2026-01-13
Threat Entry Updated 2026-01-22

CVE-2026-0884 - Firefox ESR Plugin

Use-after-free in the JavaScript Engine component. This vulnerability affects Firefox < 147, Firefox ESR < 140.7, Thunderbird < 147, and Thunderbird < 140.7.

PLUGIN Firefox ESR

CVE-2026-0884

CRITICAL CVSS 9.8 2026-01-13
Threat Entry Updated 2026-01-22

CVE-2026-0879 - Firefox ESR Plugin

Sandbox escape due to incorrect boundary conditions in the Graphics component. This vulnerability affects Firefox < 147, Firefox ESR < 115.32, Firefox ESR < 140.7, Thunderbird < 147, and Thunderbird < 140.7.

PLUGIN Firefox ESR

CVE-2026-0879

CRITICAL CVSS 9.8 2026-01-13
Threat Entry Updated 2026-01-13

CVE-2025-14829 - Through 2 Plugin

The E-xact | Hosted Payment | WordPress plugin through 2.0 is vulnerable to arbitrary file deletion due to insufficient file path validation. This makes it possible for unauthenticated attackers to delete arbitrary files on the server.

PLUGIN Through 2

CVE-2025-14829

CRITICAL CVSS 9.1 2026-01-13
Threat Entry Updated 2026-01-13

CVE-2026-0501 - SAP S/4HANA Private Cloud and On-Premise (Financials � General Ledger) Plugin

Due to insufficient input validation in SAP S/4HANA Private Cloud and On-Premise (Financials General Ledger), an authenticated user could execute crafted SQL queries to read, modify, and delete backend database data. This leads to a high impact on the confidentiality, integrity, and availability of the application.

PLUGIN SAP S/4HANA Private Cloud and On-Premise (Financials � General Ledger)

CVE-2026-0501

CRITICAL CVSS 9.9 2026-01-13
Threat Entry Updated 2026-01-22

CVE-2026-0500 - SAP Wily Introscope Enterprise Manager (WorkStation) Plugin

Due to the usage of vulnerable third party component in SAP Wily Introscope Enterprise Manager (WorkStation), an unauthenticated attacker could create a malicious JNLP (Java Network Launch Protocol) file accessible by a public facing URL. When a victim clicks on the URL the accessed Wily Introscope Server could execute OS commands on the victim's machine. This could completely compromising confidentiality, integrity and availability of the system.

PLUGIN SAP Wily Introscope Enterprise Manager (WorkStation)

CVE-2026-0500

CRITICAL CVSS 9.6 2026-01-13
Threat Entry Updated 2026-01-22

CVE-2026-0498 - SAP S/4HANA (Private Cloud and On-Premise) Plugin

SAP S/4HANA (Private Cloud and On-Premise) allows an attacker with admin privileges to exploit a vulnerability in the function module exposed via RFC. This flaw enables the injection of arbitrary ABAP code/OS commands into the system, bypassing essential authorization checks. This vulnerability effectively functions as a backdoor, creating the risk of full system compromise, undermining the confidentiality, integrity and availability of the system.

PLUGIN SAP S/4HANA (Private Cloud and On-Premise)

CVE-2026-0498

CRITICAL CVSS 9.1 2026-01-13
Threat Entry Updated 2026-01-13

CVE-2026-0491 - SAP Landscape Transformation Plugin

SAP Landscape Transformation allows an attacker with admin privileges to exploit a vulnerability in the function module exposed via RFC. This flaw enables the injection of arbitrary ABAP code/OS commands into the system, bypassing essential authorization checks. This vulnerability effectively functions as a backdoor, creating the risk of full system compromise, undermining the confidentiality, integrity and availability of the system.

PLUGIN SAP Landscape Transformation

CVE-2026-0491

CRITICAL CVSS 9.1 2026-01-13
Threat Entry Updated 2026-01-21

CVE-2026-22813 - Opencode Plugin

OpenCode is an open source AI coding agent. The markdown renderer used for LLM responses will insert arbitrary HTML into the DOM. There is no sanitization with DOMPurify or even a CSP on the web interface to prevent JavaScript execution via HTML injection. This means controlling the LLM response for a chat session gets JavaScript execution on the http://localhost:4096 origin. This vulnerability is fixed in 1.1.10.

PLUGIN Opencode

CVE-2026-22813

CRITICAL CVSS 9.4 2026-01-12
Threat Entry Updated 2026-01-21

CVE-2026-22794 - Appsmith Plugin

Appsmith is a platform to build admin panels, internal tools, and dashboards. Prior to 1.93, the server uses the Origin value from the request headers as the email link baseUrl without validation. If an attacker controls the Origin, password reset / email verification links in emails can be generated pointing to the attacker’s domain, causing authentication tokens to be exposed and potentially leading to account takeover. This vulnerability is fixed in 1.93.

PLUGIN Appsmith

CVE-2026-22794

CRITICAL CVSS 9.6 2026-01-12
Threat Entry Updated 2026-01-21

CVE-2026-22799 - Emlog Plugin

Emlog is an open source website building system. emlog v2.6.1 and earlier exposes a REST API endpoint (/index.php?rest-api=upload) for media file uploads. The endpoint fails to implement proper validation of file types, extensions, and content, allowing authenticated attackers (with a valid API key or admin session cookie) to upload arbitrary files (including malicious PHP scripts) to the server. An attacker can obtain the API key either by gaining administrator access to enable the REST API setting, or via information disclosure vulnerabilities in the application. Once uploaded, the malicious PHP file…

PLUGIN Emlog

CVE-2026-22799

CRITICAL CVSS 9.3 2026-01-12
Threat Entry Updated 2026-02-26

CVE-2026-22785 - Orval Plugin

orval generates type-safe JS clients (TypeScript) from any valid OpenAPI v3 or Swagger v2 specification. Prior to 7.18.0, the MCP server generation logic relies on string manipulation that incorporates the summary field from the OpenAPI specification without proper validation or escaping. This allows an attacker to "break out" of the string literal and inject arbitrary code. This vulnerability is fixed in 7.18.0.

PLUGIN Orval

CVE-2026-22785

CRITICAL CVSS 9.3 2026-01-12
Threat Entry Updated 2026-01-16

CVE-2026-22781 - TinyWeb Plugin

TinyWeb is a web server (HTTP, HTTPS) written in Delphi for Win32. TinyWeb HTTP Server before version 1.98 is vulnerable to OS command injection via CGI ISINDEX-style query parameters. The query parameters are passed as command-line arguments to the CGI executable via Windows CreateProcess(). An unauthenticated remote attacker can execute arbitrary commands on the server by injecting Windows shell metacharacters into HTTP requests. This vulnerability is fixed in 1.98.

PLUGIN TinyWeb

CVE-2026-22781

CRITICAL CVSS 10.0 2026-01-12
Threat Entry Updated 2026-01-16

CVE-2026-22783 - Iris Web Plugin

Iris is a web collaborative platform that helps incident responders share technical details during investigations. Prior to 2.4.24, the DFIR-IRIS datastore file management system has a vulnerability where mass assignment of the file_local_name field combined with path trust in the delete operation enables authenticated users to delete arbitrary filesystem paths. The vulnerability manifests through a three-step attack chain: authenticated users upload a file to the datastore, update the file's file_local_name field to point to an arbitrary filesystem path through mass assignment, then trigger the delete operation which removes the target…

PLUGIN Iris Web

CVE-2026-22783

CRITICAL CVSS 9.6 2026-01-12
Threat Entry Updated 2026-01-15

CVE-2026-22252 - LibreChat Plugin

LibreChat is a ChatGPT clone with additional features. Prior to v0.8.2-rc2, LibreChat's MCP stdio transport accepts arbitrary commands without validation, allowing any authenticated user to execute shell commands as root inside the container through a single API request. This vulnerability is fixed in v0.8.2-rc2.

PLUGIN LibreChat

CVE-2026-22252

CRITICAL CVSS 9.1 2026-01-12
Threat Entry Updated 2026-01-22

CVE-2026-22688 - WeKnora Plugin

WeKnora is an LLM-powered framework designed for deep document understanding and semantic retrieval. Prior to version 0.2.5, there is a command injection vulnerability that allows authenticated users to inject stdio_config.command/args into MCP stdio settings, causing the server to execute subprocesses using these injected values. This issue has been patched in version 0.2.5.

PLUGIN WeKnora

CVE-2026-22688

CRITICAL CVSS 9.9 2026-01-10
Threat Entry Updated 2026-01-14

CVE-2026-22600 - Openproject Plugin

OpenProject is an open-source, web-based project management software. A Local File Read (LFR) vulnerability exists in the work package PDF export functionality of OpenProject prior to version 16.6.4. By uploading a specially crafted SVG file (disguised as a PNG) as a work package attachment, an attacker can exploit the backend image processing engine (ImageMagick). When the work package is exported to PDF, the backend attempts to resize the image, triggering the ImageMagick text: coder. This allows an attacker to read arbitrary local files that the application user has permissions to…

PLUGIN Openproject

CVE-2026-22600

CRITICAL CVSS 9.1 2026-01-10
Scroll to top