Export limit exceeded: 369854 CVEs match your query. Please refine your search to export 10,000 CVEs or fewer.
Search
Search Results (369854 CVEs found)
| CVE | Vendors | Products | Updated | CVSS v3.1 |
|---|---|---|---|---|
| CVE-2026-64809 | 2026-07-23 | 8.4 High | ||
| In JetBrains PhpStorm before 2026.2 arbitrary code execution was possible before granting project trust via the configured interpreter | ||||
| CVE-2026-64808 | 2026-07-23 | 8.4 High | ||
| In JetBrains PhpStorm before 2026.2 arbitrary code execution was possible before granting project trust via project tooling | ||||
| CVE-2026-64807 | 2026-07-23 | 7.8 High | ||
| In JetBrains WebStorm before 2026.2 arbitrary code execution was possible via a project-supplied linter configuration | ||||
| CVE-2026-64806 | 2026-07-23 | 8.4 High | ||
| In JetBrains WebStorm before 2026.2 arbitrary code execution was possible before granting project trust via the configured Node.js interpreter | ||||
| CVE-2026-64805 | 2026-07-23 | 8.4 High | ||
| In JetBrains WebStorm before 2026.2 arbitrary code execution was possible before granting project trust via project-local package-manager tooling | ||||
| CVE-2026-64804 | 2026-07-23 | 8.4 High | ||
| In JetBrains WebStorm before 2026.2 arbitrary code execution was possible before granting project trust via project-local linter tooling | ||||
| CVE-2026-64803 | 2026-07-23 | 7.8 High | ||
| In JetBrains GoLand before 2026.2 arbitrary code execution was possible before granting project trust via the configured Go SDK | ||||
| CVE-2026-64802 | 2026-07-23 | 7.8 High | ||
| In JetBrains GoLand before 2026.2 arbitrary code execution was possible before granting project trust in the Go Modules integration | ||||
| CVE-2026-64800 | 2026-07-23 | 3.5 Low | ||
| In JetBrains GoLand before 2026.2 sensitive configuration values written to log files by default | ||||
| CVE-2026-65471 | 2026-07-23 | 9.6 Critical | ||
| Unauthenticated Cross Site Request Forgery (CSRF) in Avada Core <= 5.15.6 versions. | ||||
| CVE-2026-61981 | 2026-07-23 | 5.4 Medium | ||
| Unauthenticated Cross Site Request Forgery (CSRF) in Simple Link Directory Pro <= 15.0.8 versions. | ||||
| CVE-2026-65468 | 2026-07-23 | 5.3 Medium | ||
| Unauthenticated Broken Access Control in JetBooking <= 4.1.2 versions. | ||||
| CVE-2026-65467 | 2026-07-23 | 4.9 Medium | ||
| Contributor Server Side Request Forgery (SSRF) in JetEngine <= 3.8.11 versions. | ||||
| CVE-2026-65466 | 2026-07-23 | 4.9 Medium | ||
| Custom role Server Side Request Forgery (SSRF) in JetBooking <= 4.1.2 versions. | ||||
| CVE-2026-65465 | 2026-07-23 | 6.5 Medium | ||
| Contributor Cross Site Scripting (XSS) in JetElements For Elementor <= 2.9.1.1 versions. | ||||
| CVE-2026-61973 | 2026-07-23 | 4.3 Medium | ||
| Subscriber Broken Access Control in ShopLentor Pro <= 2.8.5 versions. | ||||
| CVE-2026-61972 | 2026-07-23 | 5.3 Medium | ||
| Unauthenticated Broken Access Control in ShopLentor Pro <= 2.8.5 versions. | ||||
| CVE-2026-59544 | 2026-07-23 | 9.8 Critical | ||
| Unauthenticated PHP Object Injection in Thrive Quiz Builder <= 10.9.3.0 versions. | ||||
| CVE-2026-59514 | 2026-07-23 | 9.3 Critical | ||
| Unauthenticated SQL Injection in Buddyboss Platform <= 3.0.5 versions. | ||||
| CVE-2026-65522 | 2026-07-23 | 6.5 Medium | ||
| Contributor Cross Site Scripting (XSS) in Manual - Documentation, Knowledge Base & Education WordPress Theme <= 7.5.4 versions. | ||||