MEDIUM severity

158 records · 71 with a public proof-of-concept

CVSS 4.0–6.9. Real impact, usually with preconditions such as authentication or user interaction.

  1. MEDIUM 6.8CVE-2026-55747public PoC

    The pocketflow-coding-agent cookbook example in The-Pocket/PocketFlow implements a helper as a thin os.path.join(workdir, p) wrapper with no canonicalization or containment check, used unguarded by the ReadFile, ListFiles, PatchRead, and PatchApply file-access

    AI risk analysis on Exploit-DB.ai →

  2. MEDIUM 6.8CVE-2026-70620public PoC

    Odysseus before commit 87babb5 contains a server-side request forgery vulnerability that allows admin-privileged attackers to direct the server to probe internal network resources by supplying arbitrary URLs to the embedding endpoint configuration without sche

    AI risk analysis on Exploit-DB.ai →

  3. MEDIUM 6.8CVE-2026-16293

    The PowerPress Podcasting plugin by Blubrry WordPress plugin before 11.16.11 does not sanitise and escape some of its Podcast Episode settings, which could allow users with a role as low as Contributor to perform Stored Cross-Site Scripting attacks even when t

    AI risk analysis on Exploit-DB.ai →

  4. MEDIUM 6.8CVE-2026-16069

    The Brizy WordPress plugin before 2.8.19 does not sanitize or escape featured-image focal-point coordinates submitted through one of its AJAX actions before storing them and later echoing them into HTML attributes in the post editor's Featured Image meta box,

    AI risk analysis on Exploit-DB.ai →

  5. MEDIUM 6.8CVE-2026-14939

    The Visualizer WordPress plugin before 4.0.6 does not restrict a user-supplied URL to safe address ranges before fetching it server-side, allowing users with Contributor-level access and above to perform Server-Side Request Forgery against link-local instance

    AI risk analysis on Exploit-DB.ai →

  6. MEDIUM 6.8CVE-2026-14872

    The Database for Contact Form 7, WPforms, Elementor forms WordPress plugin before 1.5.5 does not properly sanitise and escape a parameter before using it in a SQL statement, leading to a SQL Injection exploitable by users granted a specific capability which is

    AI risk analysis on Exploit-DB.ai →

  7. MEDIUM 6.7CVE-2026-66839

    NetKids iMark, provided by Integrated Systems Technologies, Inc., contains an Unquoted Search Path or Element vulnerability (CWE-428). An authenticated attacker may exploit this vulnerability to execute arbitrary code with SYSTEM privileges.

    AI risk analysis on Exploit-DB.ai →

  8. MEDIUM 6.7CVE-2026-66344

    NetKids iMark, provided by Integrated Systems Technologies, Inc., contains an Uncontrolled Search Path Element vulnerability (CWE-427). An authenticated attacker may exploit this vulnerability to execute arbitrary code with SYSTEM privileges.

    AI risk analysis on Exploit-DB.ai →

  9. MEDIUM 6.7CVE-2026-70594public PoC

    Ghost is a Node.js content management system. From 2.2.0 until 6.54.1, Ghost Admin did not invalidate existing sessions on login which could have allowed for session fixation attacks. Successful exploitation would have required another vulnerability on the sam

    AI risk analysis on Exploit-DB.ai →

  10. MEDIUM 6.7CVE-2026-48121public PoC

    @langchain/langgraph-checkpoint-mongodb provides a LangGraph.js CheckpointSaver implementation that uses MongoDB for storage. Versions 1.3.0 and below are vulnerable to NoSQL injection: checkpoint identifiers (thread_id, checkpoint_ns, checkpoint_id) from conf

    AI risk analysis on Exploit-DB.ai →

  11. MEDIUM 6.7CVE-2026-24076

    Memory Corruption when processing registry values with incorrect types using a direct query method.

    aqt1000 firmware · aqt1000 · cologne firmware · cologne · fastconnect 6200 firmware · fastconnect 6200

    AI risk analysis on Exploit-DB.ai →

  12. MEDIUM 6.6CVE-2026-70593public PoC

    Ghost is a Node.js content management system. From 0.10.0 until 6.54.1, a vulnerability in custom themes allowed a staff user to write files outside of the uploads directory. This could be used to alter the behavior of the installation through custom theme upl

    AI risk analysis on Exploit-DB.ai →

  13. MEDIUM 6.6CVE-2026-47619public PoC

    NVIDIA Dynamo for Linux examples and recipes contain a vulnerability where an attacker could cause a system failure. A successful exploit of this vulnerability might lead to code execution, data tampering, denial of service, and information disclosure.

    dynamo · linux kernel

    AI risk analysis on Exploit-DB.ai →

  14. MEDIUM 6.5CVE-2026-16100

    A flaw was found in the user-event metrics recording of Keycloak. When metrics are enabled, the system records raw error messages from failed account operations as Prometheus metric labels. Because these error messages can include user-supplied input like none

    build of keycloak

    AI risk analysis on Exploit-DB.ai →

  15. MEDIUM 6.5CVE-2026-7456

    The Udimi Tools plugin for WordPress is vulnerable to unauthorized modification of data due to a missing capability check on the `ajax_disconnect()` function in all versions up to, and including, 3.2. This makes it possible for authenticated attackers, with Su

    AI risk analysis on Exploit-DB.ai →

  16. MEDIUM 6.5CVE-2026-71282public PoC

    ChirpStack's SQLite-backend device tag filtering (chirpstack/src/storage/device.rs, in both get_count and list) interpolates the user-supplied tag KEY directly into a raw SQL fragment via Rust's format! macro , while only the tag VALUE is safely parameter-boun

    AI risk analysis on Exploit-DB.ai →

  17. MEDIUM 6.5CVE-2026-71273public PoC

    OpenBK7231T's /cfg_wifi_set endpoint (src/httpserver/http_fns.c) accepts configuration changes via a plain GET request with no CSRF token. If the parameter is absent from the request, an else-branch silently clears the device's web admin password to an empty s

    AI risk analysis on Exploit-DB.ai →

  18. MEDIUM 6.5CVE-2026-71260public PoC

    ESPHome through 2026.7.0-dev discloses plaintext passwords via its web_server component. In WebServer::text_json_ (esphome/components/web_server/web_server.cpp), a text entity configured with mode: password (TEXT_MODE_PASSWORD) has its JSON "state" field corre

    AI risk analysis on Exploit-DB.ai →

  19. MEDIUM 6.5CVE-2026-71225

    A flaw was found in libkcapi. When performing one-shot symmetric cipher operations on large inputs (over 64 KiB) in stateful modes such as Counter (CTR) or Cipher Block Chaining (CBC), the library improperly reuses the Initialization Vector (IV) for each inter

    AI risk analysis on Exploit-DB.ai →

  20. MEDIUM 6.5CVE-2026-0516

    A improper neutralization of HTTP Headers for Scripting Syntax vulnerability in SonicOS could allow a remote attacker to manipulate the Host header and redirect firewall management users to arbitrary web domains.

    AI risk analysis on Exploit-DB.ai →

  21. MEDIUM 6.5CVE-2026-71251public PoC

    Akaunting's shared download route (app/Http/Controllers/Common/Uploads.php::download, reachable at uploads/{id}/download behind only generic auth middleware) fetched the requested Media record by ID with no verification that it belonged to the requesting porta

    AI risk analysis on Exploit-DB.ai →

  22. MEDIUM 6.5CVE-2026-71247public PoC

    Documenso's sign-field-with-token.ts, used by the live document-signing UI, allows a recipient with the ASSISTANT role to fetch and complete fields belonging to any later-or-equal-order, not-yet-signed recipient in the same envelope, with no restriction on fie

    AI risk analysis on Exploit-DB.ai →

  23. MEDIUM 6.5CVE-2026-71244public PoC

    Paperless-ngx's MailAccountViewSet.test action, when called with an existing account's ID and a masked password field, reuses the stored password, account_type, refresh_token, and expiration from that existing account while allowing the caller to supply a diff

    AI risk analysis on Exploit-DB.ai →

  24. MEDIUM 6.5CVE-2026-14574public PoC

    In Eclipse Theia versions 0.7.0 and up until including 1.73.1, the `PreferenceUtils.merge` function in `@theia/core` recursively merges preference values without rejecting prototype-related keys (`__proto__`, `constructor`, `prototype`). Because this function

    theia

    AI risk analysis on Exploit-DB.ai →

  25. MEDIUM 6.5CVE-2026-7726

    The Layouts for WPBakery plugin for WordPress is vulnerable to unauthorized actions due to a missing capability check on the `Layouts_WPB_Remote::template_sync()` callback registered via `wp_ajax_nopriv_handle_sync` in all versions up to, and including, 1.1.3.

    AI risk analysis on Exploit-DB.ai →

  26. MEDIUM 6.5CVE-2026-71208public PoC

    KubeSphere's cluster-controller reconciliation (pkg/utils/clusterclient/clusterclient.go, addCluster) processes every Cluster custom resource's connection configuration and immediately calls Discovery.ServerVersion against the CRD-specified Kubernetes API endp

    AI risk analysis on Exploit-DB.ai →

  27. MEDIUM 6.5CVE-2026-71205public PoC

    changedetection.io's /login route checks the submitted password against a single PBKDF2-HMAC-SHA256 hash with no per-IP or per-session rate limiting, failed-attempt counter, or lockout (no rate-limiting library is present in requirements.txt).

    AI risk analysis on Exploit-DB.ai →

  28. MEDIUM 6.5CVE-2026-15281

    The User Access Manager plugin for WordPress is vulnerable to Second-Order SQL Injection via the 'id' parameter of the wp_ajax_save-attachment-compat AJAX action in versions up to, and including, 2.3.12. This is due to insufficient validation on the objectId v

    AI risk analysis on Exploit-DB.ai →

  29. MEDIUM 6.5CVE-2026-11977

    The WP Post Author – Author Box, Multiple Authors, Guest Authors & Custom Avatars plugin for WordPress is vulnerable to generic SQL Injection via the 'wpma_metabox_authors_list' parameter in all versions up to, and including, 3.9.1 due to insufficient escaping

    AI risk analysis on Exploit-DB.ai →

  30. MEDIUM 6.5CVE-2026-11454

    The Groundhogg — CRM, Newsletters, and Marketing Automation plugin for WordPress is vulnerable to Insecure Direct Object Reference in all versions up to, and including, 4.5.2 via the GET /wp-json/gh/v4/contacts/<id> REST endpoint. The endpoint's permission cal

    AI risk analysis on Exploit-DB.ai →

  31. MEDIUM 6.5CVE-2026-68080

    It was not possible to govern the rate at which the broker would respond to an echo flow, enabling an authenticated attacker to cause excessive resource usage and potential denial of service. This issue affects Apache Qpid Broker-J: through 10.0.1. Users are

    qpid broker-j

    AI risk analysis on Exploit-DB.ai →

  32. MEDIUM 6.5CVE-2026-68078

    It was not possible to govern the maximum number of transfer frames per incoming delivery, enabling an authenticated attacker to cause excessive resource usage and potential denial of service. This issue affects Apache Qpid Broker-J: through 10.0.1. Users ar

    qpid broker-j

    AI risk analysis on Exploit-DB.ai →

  33. MEDIUM 6.5CVE-2026-68077

    An authenticated attacker can craft a disposition frame with large or illegal ranges causing excessive CPU usage due to naive range handling, leading to denial of service. This issue affects Apache Qpid Broker-J: through 10.0.1. Users are recommended to upgr

    qpid broker-j

    AI risk analysis on Exploit-DB.ai →

  34. MEDIUM 6.5CVE-2026-68075

    An authenticated attacker could exceed the session flow control incoming window potentially leading to denial of service. This issue affects Apache Qpid Broker-J: through 10.0.1. Users are recommended to upgrade to version 10.1.0, which fixes the issue.

    qpid broker-j

    AI risk analysis on Exploit-DB.ai →

  35. MEDIUM 6.5CVE-2026-67591

    An authenticated attacker could exceed the session flow control incoming window potentially leading to denial of service. This issue affects Apache Qpid ProtonJ2: through 1.1.0. Users are recommended to upgrade to version 1.2.0, which fixes the issue.

    qpid protonj2

    AI risk analysis on Exploit-DB.ai →

  36. MEDIUM 6.5CVE-2026-67555

    It was not possible to govern the maximum number of transfer frames per incoming delivery, enabling an authenticated attacker to cause excessive resource usage and potential denial of service This issue affects Apache Qpid Proton-Dotnet: through 1.0.0. Users

    qpid proton-dotnet

    AI risk analysis on Exploit-DB.ai →

  37. MEDIUM 6.5CVE-2026-67554

    An authenticated attacker can craft a disposition frame with large or illegal ranges causing excessive CPU usage due to naive range handling, leading to denial of service. This issue affects Apache Qpid Proton-Dotnet: through 1.0.0. Users are recommended to

    qpid proton-dotnet

    AI risk analysis on Exploit-DB.ai →

  38. MEDIUM 6.5CVE-2026-67553

    An authenticated attacker could exceed the session flow control incoming window potentially leading to denial of service. This issue affects Apache Qpid Proton-Dotnet: through 1.0.0. Users are recommended to upgrade to version 1.1.0, which fixes the issue.

    qpid proton-dotnet

    AI risk analysis on Exploit-DB.ai →

  39. MEDIUM 6.5CVE-2026-66277

    It was not possible to govern the maximum number of transfer frames per incoming delivery, enabling an authenticated attacker to cause excessive resource usage and potential denial of service. This issue affects Apache Qpid Proton-J: through 0.34.1. Users ar

    qpid proton-j

    AI risk analysis on Exploit-DB.ai →

  40. MEDIUM 6.5CVE-2026-66276

    An authenticated attacker can craft a disposition frame with large or illegal ranges causing excessive CPU usage due to naive range handling, leading to denial of service. This issue affects Apache Qpid Proton-J: through 0.34.1. Users are recommended to upgr

    qpid proton-j

    AI risk analysis on Exploit-DB.ai →

  41. MEDIUM 6.5CVE-2026-66275

    An authenticated attacker could exceed the session flow control incoming window potentially leading to denial of service. This issue affects Apache Qpid Proton-J: through 0.34.1. Users are recommended to upgrade to version 0.35.0, which fixes the issue.

    qpid proton-j

    AI risk analysis on Exploit-DB.ai →

  42. MEDIUM 6.5CVE-2026-49004

    The built-in PostgreSQL service on the mobile device suffers from misconfiguration flaws and command injection vulnerabilities. This service listens on a specific port, runs with root privileges, and is protected by weak credentials. The database supports the

    AI risk analysis on Exploit-DB.ai →

  43. MEDIUM 6.5CVE-2026-16968

    The GeoDirectory WordPress plugin before 2.8.168 does not restrict a user-search handler to users allowed to list users, allowing any authenticated user with Contributor-level access or higher to retrieve the email addresses of all registered users, including

    AI risk analysis on Exploit-DB.ai →

  44. MEDIUM 6.5CVE-2026-7753

    The Cost Calculator Builder plugin for WordPress is vulnerable to unauthorized access of sensitive data due to a missing capability check on the `cost-calculator-custom-export-run` AJAX action (handler `CCBExportImport::export_calculators()`) in all versions u

    AI risk analysis on Exploit-DB.ai →

  45. MEDIUM 6.5CVE-2026-15941

    The plugin provides an Admin Search page that allows users with the `edit_posts` capability to run Relevanssi searches from the WordPress dashboard. The AJAX handler accepts a URL-encoded `args` parameter, parses it into a `WP_Query`, and then passes user-cont

    AI risk analysis on Exploit-DB.ai →

  46. MEDIUM 6.5CVE-2026-11421

    The ERP: Complete HR, Accounting & CRM Suite with WooCommerce CRM Support plugin for WordPress is vulnerable to SQL Injection via the 'erpadvancefilter' parameter in all versions up to, and including, 1.17.4 due to insufficient escaping on the user supplied pa

    AI risk analysis on Exploit-DB.ai →

  47. MEDIUM 6.5CVE-2026-70493public PoC

    Open WebUI is an extensible, feature-rich, and user-friendly self-hosted AI platform. From 0.9.6 until 0.11.0, the built-in knowledge search path in backend/open_webui/tools/knowledge_fs.py and backend/open_webui/tools/builtin.py let a chat participant choose

    AI risk analysis on Exploit-DB.ai →

  48. MEDIUM 6.5CVE-2026-70491public PoC

    Open WebUI is an extensible, feature-rich, and user-friendly self-hosted AI platform. In 0.10.2 and earlier, the GET /api/v1/tools/, GET /api/v1/tools/list, and GET /api/v1/tools/id/{id} endpoints in backend/open_webui/routers/tools.py returned full Python too

    AI risk analysis on Exploit-DB.ai →

  49. MEDIUM 6.5CVE-2026-70489public PoC

    Open WebUI is an extensible, feature-rich, and user-friendly self-hosted AI platform. From 0.9.0 until 0.11.0, automation recurrence parsing in backend/open_webui/utils/automations.py anchored minutely and hourly rules at a fixed date of 2000-01-01 and then wa

    AI risk analysis on Exploit-DB.ai →

  50. MEDIUM 6.5CVE-2026-69704public PoC

    Atals-Livre contains a SQL injection vulnerability that allows attackers to manipulate database queries by passing unsanitized input through a GET parameter to the supp() deletion helper function. Attackers can inject malicious SQL syntax via the vulnerable GE

    AI risk analysis on Exploit-DB.ai →

  51. MEDIUM 6.5CVE-2026-69702

    SnailJob 1.7.0 contains a denial of service vulnerability in the FuryUtil.deserialize helper that allows authenticated attackers to crash the server by supplying a crafted Zstandard-compressed payload with an inflated frame_content_size field in the frame head

    AI risk analysis on Exploit-DB.ai →

  52. MEDIUM 6.5CVE-2026-47621public PoC

    NVIDIA Dynamo for Linux contains a vulnerability where an attacker could cause a race condition in the LoRA manager singleton initialization. A successful exploit of this vulnerability might lead to denial of service and data tampering.

    dynamo · linux kernel

    AI risk analysis on Exploit-DB.ai →

  53. MEDIUM 6.5CVE-2026-47620public PoC

    NVIDIA Dynamo for Linux contains a vulnerability where an attacker could cause a race condition in the LoRA manager singleton initialization. A successful exploit of this vulnerability might lead to data tampering and denial of service.

    dynamo · linux kernel

    AI risk analysis on Exploit-DB.ai →

  54. MEDIUM 6.5CVE-2026-24078

    Information Disclosure when IPSec negotiation fails or is not established properly during NG-eCall SIP signaling.

    5g fixed wireless access platform firmware · 5g fixed wireless access platform · ar8035 firmware · ar8035 · csra6620 firmware · csra6620

    AI risk analysis on Exploit-DB.ai →

  55. MEDIUM 6.5CVE-2026-24077

    Information Disclosure when processing wireless network channel switch information with improperly formatted length fields.

    aqt1000 firmware · aqt1000 · ar8035 firmware · ar8035 · csra6620 firmware · csra6620

    AI risk analysis on Exploit-DB.ai →

  56. MEDIUM 6.5CVE-2026-67618public PoC

    marimo before 0.23.15 contains a configuration injection vulnerability that allows notebook authors to exfiltrate operator API keys by embedding a malicious base_url in PEP-723 inline script metadata, which is merged into session configuration with higher prec

    AI risk analysis on Exploit-DB.ai →

  57. MEDIUM 6.5CVE-2026-67199

    Perspective 5.0.0 contains a denial of service vulnerability that allows remote attackers to block the server event loop indefinitely by submitting a crafted expression containing unbounded for or while loop constructs in a TableMakeViewReq message. Attackers

    AI risk analysis on Exploit-DB.ai →

  58. MEDIUM 6.5CVE-2026-70368

    A stack-based out-of-bounds read vulnerability exists in the "s_vlog" function of stunnel, when handling oversized log messages via "vsnprintf". A remote attacker with network access to a stunnel service can send protocol inputs that trigger a log message long

    AI risk analysis on Exploit-DB.ai →

  59. MEDIUM 6.5CVE-2026-63248public PoC

    In Eclipse Milo versions 0.6.0 through 1.1.4, OPC UA server diagnostics nodes do not enforce access authorization. An anonymous client can enable diagnostics over a None/None endpoint without a certificate; with a trusted client application certificate over Si

    milo

    AI risk analysis on Exploit-DB.ai →

  60. MEDIUM 6.5CVE-2026-18809

    Information disclosure in Firefox for Android and Firefox Focus for Android. This vulnerability was fixed in Firefox 153.0.3.

    AI risk analysis on Exploit-DB.ai →

  61. MEDIUM 6.5CVE-2026-18772public PoC

    Improperly controlled sequential memory allocation vulnerability in Samsung Open Source rlottie allows Exponential Data Expansion.

    AI risk analysis on Exploit-DB.ai →

  62. MEDIUM 6.5CVE-2026-14465

    Insufficient session expiration vulnerability in Bilin Software and Informatics Consultancy Inc. HUMANIST Digital Human Resources allows Reusing Session IDs (aka Session Replay). This issue affects HUMANIST Digital Human Resources: from 26.0 before 26.1.

    AI risk analysis on Exploit-DB.ai →

  63. MEDIUM 6.5CVE-2026-14194

    Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') vulnerability in Bilin Software and Informatics Consultancy Inc. HUMANIST Digital Human Resources allows Path Traversal. This issue affects HUMANIST Digital Human Resources: from 2

    AI risk analysis on Exploit-DB.ai →

  64. MEDIUM 6.5CVE-2026-14816

    The GDPR Framework By Data443 WordPress plugin before 2.4.0 does not properly verify authorization or the identity of the data subject when recording cookie-consent choices and privacy requests, allowing unauthenticated attackers to forge consent records for a

    AI risk analysis on Exploit-DB.ai →

  65. MEDIUM 6.4CVE-2026-7441

    The Simple Yearly Archive plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the `posttype` attribute of the `SimpleYearlyArchive` shortcode in all versions up to, and including, 2.2.4 due to insufficient input sanitization and output escapi

    AI risk analysis on Exploit-DB.ai →

  66. MEDIUM 6.4CVE-2026-6972

    The SKT Skill Bar plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the `chart_size` attribute of the `skillwrapper` shortcode in all versions up to, and including, 2.6. This is due to insufficient input sanitization and output escaping on

    AI risk analysis on Exploit-DB.ai →

  67. MEDIUM 6.3CVE-2026-18896public PoC

    A vulnerability was determined in lavkush-maurya Student-Registration-System 1.0. The affected element is an unknown function of the file /student/changepass.php. Executing a manipulation of the argument oldpass can lead to sql injection. It is possible to lau

    AI risk analysis on Exploit-DB.ai →

  68. MEDIUM 6.3CVE-2026-18818

    A weakness has been identified in Ehco1996 django-sspanel up to 2023.12.26. This affects the function TicketDetailView of the file apps/sspanel/views.py of the component Support Ticket Handler. Executing a manipulation can lead to authorization bypass. The att

    AI risk analysis on Exploit-DB.ai →

  69. MEDIUM 6.3CVE-2026-70490public PoC

    Open WebUI is an extensible, feature-rich, and user-friendly self-hosted AI platform. From 0.8.8 until 0.11.0, the terminal WebSocket route in backend/open_webui/routers/terminals.py authenticated its own first-message JWT and never applied the verified-user r

    AI risk analysis on Exploit-DB.ai →

  70. MEDIUM 6.3CVE-2026-54020public PoC

    Open WebUI is an extensible, feature-rich, and user-friendly self-hosted AI platform. Prior to 0.11.0, Open WebUI resolved a hostname during URL validation and rejected private, loopback, and link-local addresses, but the HTTP clients resolved the hostname aga

    AI risk analysis on Exploit-DB.ai →

  71. MEDIUM 6.3CVE-2026-18775public PoC

    A vulnerability has been found in NousResearch hermes-agent up to 0.16.0. This vulnerability affects the function browser_snapshot of the file tools/browser_tool.py of the component Browser Tooling. Such manipulation leads to server-side request forgery. The a

    AI risk analysis on Exploit-DB.ai →

  72. MEDIUM 6.3CVE-2026-18774public PoC

    A flaw has been found in NousResearch hermes-agent up to 0.16.0. This affects the function save_url_image of the file agent/image_gen_provider.py of the component xAI Image Generation Provider. This manipulation causes server-side request forgery. The attack m

    AI risk analysis on Exploit-DB.ai →

  73. MEDIUM 6.3CVE-2026-18773public PoC

    A vulnerability was detected in NousResearch hermes-agent up to 2026.6.5. Affected by this issue is the function _check_slash_access of the file gateway/run.py of the component Quick Command Handler. The manipulation results in incorrect authorization. The att

    AI risk analysis on Exploit-DB.ai →

  74. MEDIUM 6.3CVE-2026-18766public PoC

    A flaw has been found in chetans9 core-php-admin-panel up to 90d07ed5aac5e0f09b6a5828d7bb2eb83010763f. This issue affects some unknown processing of the file /Applications/MAMP/htdocs/core-php-admin-panel-master/customers.php. Executing a manipulation of the a

    AI risk analysis on Exploit-DB.ai →

  75. MEDIUM 6.2CVE-2026-71293public PoC

    Statamic CMS's user-augmentation resolver, AugmentedUser::get in src/Auth/AugmentedUser.php, contains an explicit case for the handle that returns the user's raw two-factor recovery codes with no access restriction.

    AI risk analysis on Exploit-DB.ai →

  76. MEDIUM 6.2CVE-2026-71204public PoC

    changedetection.io's /settings save handler builds an update dict from form.data['application'] and blind-merges it into the stored application settings via .update.

    AI risk analysis on Exploit-DB.ai →

  77. MEDIUM 6.1CVE-2026-71286public PoC

    The render-template component of ember-dynamic-render-template (addon/components/render-template.js) passes its property directly into Ember/Glimmer's compileTemplate (from @ember/template-compilation) with no sanitization, allow-listing, or validation of the

    AI risk analysis on Exploit-DB.ai →

  78. MEDIUM 6.1CVE-2026-71249public PoC

    299Ko's public contact form (plugin/contact/controllers/ContactController.php, home) sets raw POST field values (name, firstname, email, message) into the page template with no sanitization. The template engine's variable output function (common/Template.php,

    AI risk analysis on Exploit-DB.ai →

  79. MEDIUM 6.1CVE-2026-17532

    The Seraphinite Accelerator plugin for WordPress is vulnerable to Reflected Cross-Site Scripting via the 'seraph_accel_prep' parameter in versions up to, and including, 2.29.15. This is due to the CacheExtractPreparePageParams() function using PHP's loose ineq

    AI risk analysis on Exploit-DB.ai →

  80. MEDIUM 6.1CVE-2026-17505

    The Translate Multilingual sites – TranslatePress plugin for WordPress is vulnerable to Reflected Cross-Site Scripting via the 's' parameter in versions up to, and including, 3.2.5. This is due to the translate_page() function unconditionally replacing the plu

    AI risk analysis on Exploit-DB.ai →

  81. MEDIUM 6.1CVE-2026-16583

    The Orbit Fox: Duplicate Page, Menu Icons, SVG Support, Cookie Notice, Custom Fonts & More WordPress plugin before 3.0.8 does not sanitize uploaded SVG files when its SVG upload feature is enabled, allowing authenticated users with the upload capability (Autho

    AI risk analysis on Exploit-DB.ai →

  82. MEDIUM 6.1CVE-2026-8790

    The Football Pool plugin for WordPress is vulnerable to Reflected Cross-Site Scripting via the `shouttext` POST parameter of the Shoutbox widget in all versions up to, and including, 2.13.4 due to insufficient input sanitization and output escaping. When a sho

    AI risk analysis on Exploit-DB.ai →

  83. MEDIUM 6.1CVE-2026-52370public PoC

    A reflected cross-site scripting (XSS) vulnerability in the Forum posting function of O2OA v10 allows attackers to execute arbitrary Javascript in the context of the victim's browser via a crafted URL.

    AI risk analysis on Exploit-DB.ai →

  84. MEDIUM 6.1CVE-2026-51144public PoC

    Cross Site Scripting vulnerability in Soliton Systems MailZen Management Protal v.2.62, v.2.63 allows a remote attacker to execute arbitrary code via the Role Name, First Name, Last Name, and Username fields.

    AI risk analysis on Exploit-DB.ai →

  85. MEDIUM 6.1CVE-2026-16792

    An improper certificate validation vulnerability was reported in multiple Lenovo XClarity Orchestrator (LXCO) 2.2.0 microservices that could allow an adjacent network attacker to intercept sensitive communications by performing a machine-in-the-middle attack a

    AI risk analysis on Exploit-DB.ai →

  86. MEDIUM 6.1CVE-2026-15920public PoC

    An issue was discovered in Django 5.2 before 5.2.17 and 6.0 before 6.0.8. `django.contrib.admin.utils.display_for_field()` renders `URLField` values as clickable links in the admin without validating the URL. A value stored with an unsafe scheme is displayed a

    AI risk analysis on Exploit-DB.ai →

  87. MEDIUM 5.9CVE-2026-48154public PoC

    GoRest is a Golang starter kit built with the Gin framework for prototyping and developing RESTful APIs. In versions prior to 1.12.2 nMemorySecret2FA contains a race condition due to an unsynchronized package-level map used to store 2FA secrets. Multiple HTTP

    AI risk analysis on Exploit-DB.ai →

  88. MEDIUM 5.9CVE-2026-16547

    The REST API Log WordPress plugin before 1.7.1 does not bind the token protecting its log download feature to the log entry being requested, nor does it check the capability of the requester, allowing unauthenticated users in possession of any such token to do

    AI risk analysis on Exploit-DB.ai →

  89. MEDIUM 5.8CVE-2026-10526

    The EmbedPress WordPress plugin before 4.6.1 does not validate user-supplied URLs before making server-side requests through unauthenticated endpoints, allowing unauthenticated attackers to induce the site to send HTTP requests to internal hosts and services

    AI risk analysis on Exploit-DB.ai →

  90. MEDIUM 5.5CVE-2026-14304public PoC

    In Eclipse Accessibility Tools Framework (ACTF) versions up to 1.6.0 (including source code versions up to v20260630 and ACTF based application miChecker versions up to 3.1.0), it has been identified that an XML External Entity (XXE) vulnerability exists. I

    accessibility tools framework · michecker

    AI risk analysis on Exploit-DB.ai →

  91. MEDIUM 5.5CVE-2026-70592public PoC

    Ghost is a Node.js content management system. From 1.20.1 until 6.54.1, an Administrator-level user could remotely overwrite certain files on the filesystem through the database backup filename, leading to integrity and availability issues. The database export

    AI risk analysis on Exploit-DB.ai →

  92. MEDIUM 5.5CVE-2026-68743

    A flaw was found in SSSD. The extract_authtok_v1() function in the PAM responder does not validate the auth_token_length field against the remaining buffer size before processing. A local attacker can exploit this via a crafted protocol v1 request to the PAM r

    AI risk analysis on Exploit-DB.ai →

  93. MEDIUM 5.4CVE-2026-16071

    A flaw was found in the LDAP storage provider of Keycloak, which is used to federate user identities from external directories. The issue occurs when a delegated administrator performs a search using a specific LDAP entry Distinguished Name (DN). Due to missin

    build of keycloak

    AI risk analysis on Exploit-DB.ai →

  94. MEDIUM 5.4CVE-2026-71275public PoC

    OpenBK7231T's http_fn_ota_exec() (src/httpserver/http_fns.c) reflects the `host` query parameter directly into an HTML response via hprintf255(request, "<h3>OTA requested for %s!</h3>", tmpA) with no HTML encoding, allowing a crafted URL such as /ota_exec?host

    AI risk analysis on Exploit-DB.ai →

  95. MEDIUM 5.4CVE-2026-16942

    The WP Custom HTML Page WordPress plugin through 0.6.2 does not sanitise HTML stored through one of its custom page handlers, nor restrict it to users allowed to post unfiltered HTML, allowing users with the Author role to store JavaScript that is served unesc

    AI risk analysis on Exploit-DB.ai →

  96. MEDIUM 5.4CVE-2026-70481public PoC

    Open WebUI is an extensible, feature-rich, and user-friendly self-hosted AI platform. From 0.5.0 until 0.11.0, the standard channel message update and delete handlers accepted any caller holding write access on the channel without checking that the caller wrot

    AI risk analysis on Exploit-DB.ai →

  97. MEDIUM 5.4CVE-2026-67196

    Perspective 5.0.0 contains a cross-site scripting vulnerability in the built-in Debug plugin that allows attackers to inject arbitrary HTML and JavaScript by writing table cell values containing unescaped HTML markup, which are interpolated directly into inner

    AI risk analysis on Exploit-DB.ai →

  98. MEDIUM 5.4CVE-2026-70367

    A Server-Side Request Forgery (SSRF) bypass vulnerability exists in “stunnel” 5.79 and lower when configured in SOCKS proxy mode. This flaw allows a client to bypass intended localhost restrictions by using IPv4-mapped IPv6 addresses (e.g., “::ffff:127.0.0.1”)

    AI risk analysis on Exploit-DB.ai →

  99. MEDIUM 5.4CVE-2026-14219

    URL redirection to untrusted site ('open redirect') vulnerability in Bilin Software and Informatics Consultancy Inc. HUMANIST Digital Human Resources allows Phishing. This issue affects HUMANIST Digital Human Resources: from 26.0 before 26.1.

    AI risk analysis on Exploit-DB.ai →

  100. MEDIUM 5.4CVE-2026-14192

    Improper neutralization of input during web page generation ('cross-site scripting') vulnerability in Bilin Software and Informatics Consultancy Inc. HUMANIST Digital Human Resources allows Stored XSS. This issue affects HUMANIST Digital Human Resources: from

    AI risk analysis on Exploit-DB.ai →

  101. MEDIUM 5.4CVE-2026-16548

    The Chat Widget: Floating Customer Support Button for 30+ Channels, Supporting SMS, Calls, and Chat WordPress plugin before 1.8.2 does not validate the type, extension, content, or size of files submitted to its public response endpoint and stores them under

    AI risk analysis on Exploit-DB.ai →

  102. MEDIUM 5.4CVE-2026-14848

    The Paid Membership Subscriptions WordPress plugin before 3.0.8 does not verify that the subscription being modified through its change-subscription checkout belongs to the current user, allowing any authenticated user with Subscriber-level access and above t

    AI risk analysis on Exploit-DB.ai →

  103. MEDIUM 5.3CVE-2026-12762

    IBM Cloud Pak For Business Automation 24.0.0, 24.0.1, 25.0.0, and 26.0.0 could allow a remote attacker to obtain sensitive information exposed in manifest files.

    business automation insights

    AI risk analysis on Exploit-DB.ai →

  104. MEDIUM 5.3CVE-2026-71210public PoC

    Mealie's AsyncSafeTransport SSRF guard (mealie/pkgs/safehttp/transport.py) resolves a target hostname once, checks the resolved IP against private-range rules, but then issues the actual outbound HTTP request using the original hostname, which the underlying a

    AI risk analysis on Exploit-DB.ai →

  105. MEDIUM 5.3CVE-2026-71203public PoC

    changedetection.io's REST API resources are protected by an @auth.check_token decorator validating the caller's x-api-key header, except the Spec resource registered at /api/v1/full-spec (changedetectionio/api/Spec.py), whose get method carries neither @auth.c

    AI risk analysis on Exploit-DB.ai →

  106. MEDIUM 5.3CVE-2026-55998public PoC

    The endpoint /v3/import/{token}_{clusterId}.yaml retrieves the cluster object before validating the token. When a valid cluster ID references a cluster that has private registry secrets configured, a nil pointer dereference in pkg/systemtemplate/private_regist

    AI risk analysis on Exploit-DB.ai →

  107. MEDIUM 5.3CVE-2026-16981

    The DHL Shipping Germany for WooCommerce WordPress plugin before 4.0.1 does not perform any authorization check (no capability, nonce, login, or ownership check) on one of its shipping-label download endpoints, so an unauthenticated attacker can enumerate sequ

    AI risk analysis on Exploit-DB.ai →

  108. MEDIUM 5.3CVE-2026-45705public PoC

    OpenSIPS is a Session Initiation Protocol (SIP) server implementation. In versions prior to 3.6.6 and 4.0.0-rc1, the find_line_delimiter() function in the multipart body parser performs an out-of-bounds read via strncmp() when searching for MIME boundary delim

    AI risk analysis on Exploit-DB.ai →

  109. MEDIUM 5.3CVE-2026-18853public PoC

    A security vulnerability has been detected in ZomboDroid Meme Generator App 4.6830 on Android. This issue affects the function t5.l.c of the component com.zombodroid.MemeGenerator. Such manipulation leads to path traversal. Local access is required to approach

    AI risk analysis on Exploit-DB.ai →

  110. MEDIUM 5.3CVE-2026-70487public PoC

    Open WebUI is an extensible, feature-rich, and user-friendly self-hosted AI platform. From 0.8.8 until 0.11.0, inline direct model metadata accepted client-supplied knowledge attachments without filtering them against the caller's read access. Any authenticate

    AI risk analysis on Exploit-DB.ai →

  111. MEDIUM 5.3CVE-2026-47622public PoC

    NVIDIA Dynamo for Linux contains a vulnerability where an attacker could cause the generation of error messages that contain sensitive information. A successful exploit of this vulnerability might lead to information disclosure.

    dynamo · linux kernel

    AI risk analysis on Exploit-DB.ai →

  112. MEDIUM 5.3CVE-2026-18785public PoC

    A vulnerability was determined in o6 open62541 ca356b088ada7dee824d1b4acd07c1ff07ce242b. Impacted is the function UA_Client_getRemoteDataTypes of the file examples/custom_datatype/client_types_custom.c. Executing a manipulation can lead to use after free. It i

    AI risk analysis on Exploit-DB.ai →

  113. MEDIUM 5.3CVE-2026-18784public PoC

    A vulnerability was found in o6 open62541 up to 1.5.5. This issue affects the function UA_Client_readNodeClassAttribute of the file src/client/ua_client_highlevel.c. Performing a manipulation results in heap-based buffer overflow. Attacking locally is a requir

    AI risk analysis on Exploit-DB.ai →

  114. MEDIUM 5.3CVE-2026-15830public PoC

    An issue was discovered in Django 5.2 before 5.2.17 and 6.0 before 6.0.8. GeoDjango's `django.contrib.gis.geos.GEOSGeometry` is subject to a potential denial-of-service when parsing deeply nested `GEOMETRYCOLLECTION` objects supplied as well-known text (WKT),

    AI risk analysis on Exploit-DB.ai →

  115. MEDIUM 5.3CVE-2026-15337public PoC

    An issue was discovered in Django 5.2 before 5.2.17 and 6.0 before 6.0.8. `django.utils.translation.check_for_language()` is subject to a potential denial-of-service attack when given many distinct, very long language codes, which are retained as keys in an in

    AI risk analysis on Exploit-DB.ai →

  116. MEDIUM 5.3CVE-2026-14202

    Observable response discrepancy vulnerability in Bilin Software and Informatics Consultancy Inc. HUMANIST Digital Human Resources allows Account Footprinting. This issue affects HUMANIST Digital Human Resources: from 26.0 before 26.1.

    AI risk analysis on Exploit-DB.ai →

  117. MEDIUM 5.3CVE-2026-16536

    The Simple Google Calendar Outlook Events Widget WordPress plugin before 3.1.0 does not validate a user-supplied URL before performing a server-side request, allowing unauthenticated attackers to perform Server-Side Request Forgery attacks and, in some cases,

    AI risk analysis on Exploit-DB.ai →

  118. MEDIUM 5.1CVE-2026-71227

    A flaw was found in libkcapi. A local attacker can influence an application that uses the Asynchronous Input/Output (AIO) interface. By reusing an AIO-enabled handle after a prior completion error, the _kcapi_aio_read_all() function can enter a non-terminating

    AI risk analysis on Exploit-DB.ai →

  119. MEDIUM 5CVE-2026-71201

    In OpenStack Ironic through 38.0.0, a project reader that makes a crafted request to Ironic can return Portgroups assigned to Nodes owned or leased by another project.

    AI risk analysis on Exploit-DB.ai →

  120. MEDIUM 5CVE-2026-18816public PoC

    A vulnerability was identified in Baserow up to 2.3.2. Affected by this vulnerability is the function verify of the file backend/src/baserow/api/two_factor_auth/views.py of the component 2FA Verify Endpoint. Such manipulation leads to improper authentication.

    AI risk analysis on Exploit-DB.ai →

  121. MEDIUM 5CVE-2026-70588public PoC

    Ghost is a Node.js content management system. From 5.26.0 until 6.54.1, the Universal Import feature in Ghost Admin failed to properly sanitize imported content resulting in XSS in post content. This issue is fixed in version 6.54.1.

    AI risk analysis on Exploit-DB.ai →

  122. MEDIUM 5CVE-2026-66300public PoC

    SNOMED International Snowstorm contains a reflected XSS vulnerability within the "Web Route" redirection functionality. An attacker can inject arbitrary JavaScript which will execute upon a target user navigating to a crafted, malicious link. Fixed in 10.12.2

    AI risk analysis on Exploit-DB.ai →

  123. MEDIUM 4.9CVE-2026-71283public PoC

    Fledge's backup-restore upload handler, upload_backup (python/fledge/services/core/api/backup_restore.py), calls tarfile.extractall(temp_path) on an admin-uploaded tar archive with no filter argument and no per-member path validation. Requires the admin role (

    AI risk analysis on Exploit-DB.ai →

  124. MEDIUM 4.9CVE-2026-5651

    The Askeet plugin for WordPress is vulnerable to SQL Injection via the 'sql_query' parameter in multiple AJAX actions (askeet_execute_sql_query, askeet_export_all_results) in all versions up to, and including, 3.0. This is due to the askeet_is_safe_query() fil

    AI risk analysis on Exploit-DB.ai →

  125. MEDIUM 4.9CVE-2026-11969

    The WP TripAdvisor Review Slider plugin for WordPress is vulnerable to generic SQL Injection via 'curselrevs[]' Parameter in all versions up to, and including, 14.3 due to insufficient escaping on the user supplied parameter and lack of sufficient preparation

    AI risk analysis on Exploit-DB.ai →

  126. MEDIUM 4.9CVE-2026-11920

    The JoomSport – for Sports: Team & League, Football, Hockey & more plugin for WordPress is vulnerable to time-based SQL Injection via the 'order' parameter in all versions up to, and including, 5.7.9 due to insufficient escaping on the user supplied parameter

    AI risk analysis on Exploit-DB.ai →

  127. MEDIUM 4.9CVE-2026-5062

    The PrettyLinks – Affiliate Links, Link Branding, Link Tracking, Marketing and Stripe Payments Plugin plugin for WordPress is vulnerable to SQL Injection via the 's' (search) parameter on the Pretty Links listing page in all versions up to, and including, 3.6.

    AI risk analysis on Exploit-DB.ai →

  128. MEDIUM 4.9CVE-2026-18103

    A flaw was found in dhcp-server. A remote attacker with network access to the OMAPI (Open Management Application Programming Interface) port, especially if not secured with TSIG (Transaction Signature) key authentication, could send a specially crafted lease c

    AI risk analysis on Exploit-DB.ai →

  129. MEDIUM 4.8CVE-2026-70590public PoC

    Ghost is a Node.js content management system. Prior to 6.54.1, any staff-level user was able to leak the hashed passwords of other staff users through the Ghost Admin API. An offline password-guessing attack against the hashes could lead to account takeover if

    AI risk analysis on Exploit-DB.ai →

  130. MEDIUM 4.8CVE-2026-70589public PoC

    Ghost is a Node.js content management system. From 4.22.0 until 6.54.1, a missing validation check allowed users to redeem subscription offers that were no longer active. This issue is fixed in version 6.54.1.

    AI risk analysis on Exploit-DB.ai →

  131. MEDIUM 4.8CVE-2026-15233

    The Nested Pages WordPress plugin before 3.2.15 does not properly escape post titles before outputting them into HTML attributes on an administrative listing screen, allowing users with the Editor role (or Contributor/Author when the Nested Pages WordPress plu

    AI risk analysis on Exploit-DB.ai →

  132. MEDIUM 4.8CVE-2026-14824

    The Quiz and Survey Master (QSM) WordPress plugin before 11.2.2 does not properly escape a question setting before outputting it into an unquoted HTML attribute, allowing users with contributor-level access and above to inject arbitrary JavaScript that execut

    AI risk analysis on Exploit-DB.ai →

  133. MEDIUM 4.7CVE-2026-13477

    IBM QRadar 7.6.0.0 through 7.6.0.1, and 7.5.0 through 7.5.0 UP 15 Interim Fix 005 could allow an authenticated privileged user to execute arbitrary commands with normal user privileges on the system due to improper validation of user supplied input.

    qradar security information and event manager

    AI risk analysis on Exploit-DB.ai →

  134. MEDIUM 4.7CVE-2026-15452

    The Smash Balloon Social Photo Feed – Easy Social Feeds Plugin plugin for WordPress is vulnerable to Reflected Cross-Site Scripting via REQUEST_URI Query String in all versions up to, and including, 6.11.3 due to insufficient input sanitization and output esca

    AI risk analysis on Exploit-DB.ai →

  135. MEDIUM 4.7CVE-2026-18856public PoC

    A vulnerability was determined in Poesis Rhymix CMS up to 2.1.33. This impacts the function procImporterAdminCheckXmlFile of the file modules/importer/importer.admin.controller.php of the component Data Import Module. This manipulation of the argument filename

    AI risk analysis on Exploit-DB.ai →

  136. MEDIUM 4.7CVE-2026-16296

    The Clearfy Cache WordPress plugin before 2.4.3 does not validate the redirect target in its Cyrlitera old-URL redirect handler, passing a decoded request URI to an unsafe redirect function, which allows unauthenticated attackers to redirect visitors to an ar

    AI risk analysis on Exploit-DB.ai →

  137. MEDIUM 4.4CVE-2026-71212

    xidown (a yt-dlp/ffmpeg GUI wrapper) builds its yt-dlp command-line invocation (xidown/core/scanner.py and downloader.py) by appending the user-provided or scanned URL as a bare trailing positional argument, with no '--' end-of-options marker and no scheme val

    AI risk analysis on Exploit-DB.ai →

  138. MEDIUM 4.4CVE-2026-5116

    The Contact Form 7 – Dynamic Text Extension plugin for WordPress is vulnerable to Stored Cross-Site Scripting in all versions up to, and including, 5.0.5. This is due to insufficient output escaping on form shortcode keys displayed in the admin "Scan Forms for

    AI risk analysis on Exploit-DB.ai →

  139. MEDIUM 4.4CVE-2026-5108

    The Super Progressive Web Apps plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the `superpwa_settings[offline_message_txt]` setting in all versions up to, and including, 2.2.43. This is due to insufficient input sanitization and output es

    AI risk analysis on Exploit-DB.ai →

  140. MEDIUM 4.4CVE-2026-47487public PoC

    NVIDIA Triton Inference Server for Linux contains a vulnerability where a user could cause files outside the model repository to be read, written to, or modified by providing a path in the model name to the Triton MLflow plugin. A successful exploit of this vu

    AI risk analysis on Exploit-DB.ai →

  141. MEDIUM 4.3CVE-2026-71250public PoC

    Firefly III's webhook URL validator (IsValidWebhookUrl.php) filters most private/reserved IPv4 ranges but contains an explicit early-return that allows any resolved address in 127.0.0.0/8, permitting an authenticated user (with webhooks enabled, which is off b

    AI risk analysis on Exploit-DB.ai →

  142. MEDIUM 4.3CVE-2026-71246public PoC

    Pixelfed's SearchController (behind the auth middleware) accepts a URL via its remote-search parameters and fetches it server-side through ActivityPubFetchService, whose validateUrl only blocks the literal hosts 127.0.0.1, localhost, and ::1 and requires https

    AI risk analysis on Exploit-DB.ai →

  143. MEDIUM 4.3CVE-2026-71240public PoC

    DjangoCRM's toggle_default_sorting view is the only route in common/urls.py that is not wrapped in login_required or staff_member_required, and it redirects to a caller-supplied next_url GET parameter after only checking secure_url(next_url), which merely veri

    AI risk analysis on Exploit-DB.ai →

  144. MEDIUM 4.3CVE-2026-7105

    The Xpro Addons plugin for WordPress is vulnerable to unauthorized creation of data due to a missing capability check on the `get_menu_content_editor()` function in all versions up to, and including, 1.5.1. This makes it possible for authenticated attackers, w

    AI risk analysis on Exploit-DB.ai →

  145. MEDIUM 4.3CVE-2026-55996public PoC

    A denial-of-service vulnerability was identified in multiple TLS listeners in Rancher. Both the cattle-cluster-agent component running in downstream clusters and the Rancher server itself use the dynamiclistener library to serve TLS traffic. Without an effecti

    AI risk analysis on Exploit-DB.ai →

  146. MEDIUM 4.3CVE-2026-17515

    The MLSImport: IDX Plugin & MLS Plugin for Real Estate Listings WordPress plugin before 7.0.4 does not have authorisation and CSRF checks in one of its AJAX actions, allowing any authenticated user, such as a subscriber, to read the contents of the MLSImport:

    AI risk analysis on Exploit-DB.ai →

  147. MEDIUM 4.3CVE-2026-16613

    The GDPR Cookie Compliance WordPress plugin before 5.1.0 expires the visitor's cookies from an action that is reachable without authentication and performs no request-origin check, allowing an attacker to log any user out and delete the site's cookies by luri

    AI risk analysis on Exploit-DB.ai →

  148. MEDIUM 4.3CVE-2026-18903

    A vulnerability was determined in yeqifu warehouse up to aaf29962ba407d22d991781de28796ee7b4670e4. This issue affects some unknown processing of the file src/main/java/com/yeqifu/sys/controller/FileController.java. This manipulation of the argument path causes

    AI risk analysis on Exploit-DB.ai →

  149. MEDIUM 4.3CVE-2026-18819public PoC

    A security vulnerability has been detected in RackTables up to 0.22.0/e5fff9f8aab339798ed47e8c6d7d977ed97a82bd. This vulnerability affects unknown code. The manipulation leads to cross-site request forgery. The attack is possible to be carried out remotely. Th

    AI risk analysis on Exploit-DB.ai →

  150. MEDIUM 4.3CVE-2026-70488public PoC

    Open WebUI is an extensible, feature-rich, and user-friendly self-hosted AI platform. From 0.9.6 until 0.11.0, the sync cleanup endpoint authorized write access to the knowledge base in the URL but then acted on directory and file ids supplied in the request b

    AI risk analysis on Exploit-DB.ai →

  151. MEDIUM 4.3CVE-2026-70484public PoC

    Open WebUI is an extensible, feature-rich, and user-friendly self-hosted AI platform. From 0.7.0 until 0.11.0, the legacy chat-completions features block trusted a client-supplied image_generation flag and did not re-check the features.image_generation permiss

    AI risk analysis on Exploit-DB.ai →

  152. MEDIUM 4.3CVE-2026-16546

    The Wired Impact Volunteer Management WordPress plugin before 2.8.2 does not have authorisation checks in one of its AJAX actions, and does not verify that the RSVP being removed belongs to the requesting user, allowing users with a role as low as Subscriber t

    AI risk analysis on Exploit-DB.ai →

  153. MEDIUM 4.3CVE-2026-16295

    The Clearfy Cache WordPress plugin before 2.4.3 does not perform a capability check in one of its admin-page dispatch paths, allowing any authenticated user such as a Subscriber to render admin-only settings pages and disclose their contents, including admini

    AI risk analysis on Exploit-DB.ai →

  154. MEDIUM 4.3CVE-2026-16056

    The Contest Gallery WordPress plugin before 30.0.7 does not perform any capability or nonce check in one of its handlers, allowing any authenticated user down to Subscriber to read the site's entire stored OpenAI prompt history.

    AI risk analysis on Exploit-DB.ai →

  155. MEDIUM 4.3CVE-2026-16035

    The miniOrange 2FA WordPress plugin before 6.2.7 does not restrict who can trigger its second-factor configuration OTP send, nor bind the OTP recipient to the enrolling user's own address, allowing a low-privileged user to send one-time-passcode emails to arb

    AI risk analysis on Exploit-DB.ai →

  156. MEDIUM 4.3CVE-2026-12698

    The wpForo Forum WordPress plugin before 3.1.3 does not restrict which profile fields a member may set when editing their own account, allowing users with a subscriber-level account to write administrator-controlled account-state and reputation fields on their

    AI risk analysis on Exploit-DB.ai →

  157. MEDIUM 4.1CVE-2026-70591public PoC

    Ghost is a Node.js content management system. From 0.10.0 until 6.54.1, a Server-Side Request Forgery in Ghost Admin image fetching allowed any staff-level user to perform a blind HTTP GET request against internal hosts. No output was returned, but this could

    AI risk analysis on Exploit-DB.ai →

  158. MEDIUM 4.1CVE-2026-70480public PoC

    Open WebUI is an extensible, feature-rich, and user-friendly self-hosted AI platform. From 0.6.34 until 0.11.0, Open WebUI renders vega and vega-lite fenced code blocks in chat content by building a Vega view in the viewer browser without a restricted resource

    AI risk analysis on Exploit-DB.ai →