Export limit exceeded: 398492 CVEs match your query. Please refine your search to export 10,000 CVEs or fewer.
Export limit exceeded: 398492 CVEs match your query. Please refine your search to export 10,000 CVEs or fewer.
Search
Search Results (398492 CVEs found)
| CVE | Vendors | Products | Updated | CVSS v3.1 |
|---|---|---|---|---|
| CVE-2026-81455 | 1 Dell | 1 Thinos | 2026-09-25 | 8.6 High |
| Dell ThinOS 10, versions prior to SecurityAddon_2605.10.2766_T10, contain a Missing Authentication for Critical Function vulnerability. An unauthenticated attacker with remote access could potentially exploit this vulnerability, leading to Unauthorized access. | ||||
| CVE-2026-81473 | 1 Dell | 1 Rugged Control Center | 2026-09-25 | 8.1 High |
| Dell Rugged Control Center (RCC), versions prior to 5.2.206, contain an Improper Authorization vulnerability. A low privileged attacker with local access could potentially exploit this vulnerability, leading to Elevation of Privileges. | ||||
| CVE-2026-56792 | 1 Dell | 1 Rugged Control Center | 2026-09-25 | 4.4 Medium |
| Dell Rugged Control Center (RCC), versions prior to 5.2.206, contain an Improper Authorization vulnerability. A low privileged attacker with local access could potentially exploit this vulnerability, leading to Elevation of Privileges. | ||||
| CVE-2026-82164 | 1 Dell | 1 Trusted Device Client | 2026-09-25 | 7.1 High |
| Dell Trusted Device Client, versions prior to 8.1.359.0, contain an Incorrect Permission Assignment for Critical Resource vulnerability. A low privileged attacker with local access could potentially exploit this vulnerability, leading to Information tampering. | ||||
| CVE-2026-93289 | 1 Eufy | 2 Omni C20, Omni X10 Pro | 2026-09-25 | 7.5 High |
| The affected products are vulnerable to command injection attack that could allow an unauthenticated attacker to execute system commands during the pairing process. | ||||
| CVE-2026-93290 | 1 Eufy | 1 Omni C20 | 2026-09-25 | 5.5 Medium |
| Omni C20 uses hard-coded credentials that could allow an attacker to monitor log files to obtain credentials to access information like mapping data. | ||||
| CVE-2026-84399 | 1 Botslab | 1 G980h | 2026-09-25 | 8.8 High |
| The Botslab G980H dash camera firmware contains an authorization vulnerability in its session based command functionality. The product does not sufficiently associate an authenticated session with the client connection that established it, and subsequent privileged operations rely on possession of a valid session identifier without adequately validating the requesting client's authenticated context. An unauthenticated attacker with adjacent network access could potentially use valid session state associated with another client to access privileged functionality. | ||||
| CVE-2026-93291 | 1 Eufy | 1 Omni C20 | 2026-09-25 | 9.4 Critical |
| Omni C20 lacks proper certificate validation which could allow an attacker to perform a man-in-the-middle attack which could allow them to execute arbitrary code. | ||||
| CVE-2026-82566 | 1 Botslab | 1 G980h | 2026-09-25 | 8.8 High |
| The Botslab G980H dash camera firmware contains a session management vulnerability in which authentication state can remain valid after the associated client connection has been terminated or replaced. Under certain connection conditions, a newly established connection can displace an existing client while previously established session state remains active until a separate expiration mechanism invalidates it. An unauthenticated attacker with adjacent network access could potentially take advantage of this residual authentication state to access functionality associated with another client's session. | ||||
| CVE-2026-85496 | 1 Botslab | 1 G980h | 2026-09-25 | 8.8 High |
| The Botslab G980H dash camera firmware generates session identifiers using a small sequential value space rather than a suitably unpredictable source. An unauthenticated attacker with adjacent network access and knowledge that an active session exists could potentially determine a valid session identifier and use it to bypass intended authorization controls. | ||||
| CVE-2026-93354 | 1 Gimanh | 1 Taskview-community | 2026-09-25 | 8.1 High |
| Taskview Community before 1.56.0 contains a missing authentication vulnerability that allows unauthenticated attackers to register arbitrary OAuth clients and take over user accounts by exploiting the OAuth 2.0 Dynamic Client Registration endpoint, which is enabled by default and requires no authentication. Attackers can send a POST request to the registration endpoint to obtain a client_id and client_secret, then craft a malicious authorization link pointing to an attacker-controlled redirect URI to capture authorization codes and exchange them for access tokens granting full API access to victim account data. | ||||
| CVE-2026-82716 | 1 Botslab | 1 G980h | 2026-09-25 | 4.6 Medium |
| The Botslab G980H dash camera firmware includes sensitive configuration information, including WiFi credentials, in diagnostic logs generated during the support process. These logs remain accessible on removable storage after the support operation has completed. An unauthenticated attacker with physical access to the storage media could retrieve the logs and obtain sensitive device information. | ||||
| CVE-2026-82708 | 1 Botslab | 1 G980h | 2026-09-25 | 6.5 Medium |
| The Botslab G980H dash camera firmware contains a path traversal vulnerability in its HTTP server. An attacker with access to the device's WiFi network could submit a crafted request to access files within the device's removable storage that were not intended to be directly accessible through the web server. Exposed files could include recordings, images, diagnostic logs, or firmware files. | ||||
| CVE-2026-82585 | 1 Botslab | 1 G980h | 2026-09-25 | 6.5 Medium |
| The Botslab G980H dash camera firmware transmits sensitive information over unencrypted HTTP and RTSP connections. An attacker capable of intercepting communications on the device's WiFi network could obtain stored recordings, live video, location information, images, diagnostic logs, or other sensitive information exchanged between the device and its mobile application. | ||||
| CVE-2026-95699 | 1 Mrsteam | 2 Isteamx Application, Isteamx Hub | 2026-09-25 | 9.6 Critical |
| Prior to 9/18/2026, the iSteamX mobile application's AWS policy could grant authenticated users access to wildcard MQTT topics, which can expose other users' device data and allow the attacker to start and stop other connected users' devices. This risked exposing user profile information and potential scalding due to unintended device activation. | ||||
| CVE-2026-78393 | 1 Wordpress-extensions | 1 Link Library | 2026-09-25 | 6.1 Medium |
| The Link Library WordPress plugin before 7.9.6 does not properly escape some parameters before outputting them in the addresses of links it generates on its front-end directory pages, leading to Reflected Cross-Site Scripting which could be used against any visitor, including logged-in administrators. | ||||
| CVE-2026-78394 | 1 Wordpress-extensions | 1 Link Library | 2026-09-25 | 4.1 Medium |
| The Link Library WordPress plugin before 7.9.6 does not sanitize a user-supplied destination folder before writing a generated image to disk, allowing users with the Contributor role and above to create directories and write or overwrite image files anywhere the web server can write, including outside the site's document root. The written file name is always numeric with a fixed image extension, so executable code cannot be planted this way. | ||||
| CVE-2026-17577 | 2 Sslzen, Wordpress-extensions | 2 Ssl Zen, Ssl Zen | 2026-09-25 | 6.1 Medium |
| The SSL Zen plugin for WordPress is vulnerable to Reflected Cross-Site Scripting via the 'uri' (and 'host') parameters in versions up to, and including, 4.7.42. The ssl_zen_messages::getMessages() function builds the 'token_missmatch' message using base64_decode(sanitize_text_field($_REQUEST['uri'])) and (optionally) base64_decode(sanitize_text_field($_REQUEST['host'])). sanitize_text_field() cannot strip HTML/JavaScript that is hidden inside a base64-encoded blob, and the resulting decoded raw HTML is echoed unescaped by showMessage() . This makes it possible for unauthenticated attackers to inject arbitrary web scripts in pages that execute if they can successfully trick a user into performing an action such as clicking on a specially crafted link. | ||||
| CVE-2026-94573 | 2 Addonsorg, Wordpress-extensions | 2 Repeater Fields For Gravity Forms, Repeater Fields For Elementor Forms | 2026-09-25 | 7.2 High |
| The Repeater Fields for Elementor Forms plugin for WordPress is vulnerable to Stored Cross-Site Scripting via Repeater Field Value in all versions up to, and including, 2.2.7 due to insufficient input sanitization and output escaping. This makes it possible for unauthenticated attackers to inject arbitrary web scripts in pages that will execute whenever a user accesses an injected page. | ||||
| CVE-2026-6082 | 1 Novadigits Technologies | 1 Stockagile | 2026-09-25 | N/A |
| Stored Cross-Site Scripting (XSS) vulnerability in StockAgile API and management panel. The vulnerability is present on the server side in REST endpoint '/inventory/configuration/payment-methods' that allow the injection and persistence of malicious JavaScript code through parameters such as ‘code’, ‘name’, and other text fields. The scripts that are entered are not filtered or validated correctly before being displayed on the web panel that authenticated users can access. Exploiting this vulnerability could allow a remote, previously authenticated attacker to execute arbitrary JavaScript code. | ||||