CVE Find is a real-time vulnerability database indexing 378 440 security flaws (CVE) from MITRE, NVD, CISA KEV, CWE and CAPEC. 3940 new CVEs were published in the last 7 days.
Data aggregated from: MITRE Corporation (CVE, CWE, CAPEC), National Vulnerability Database – NIST (NVD), CISA Known Exploited Vulnerabilities (KEV), FIRST (EPSS).
| CVE ID | Published | Description | Score | Severity | |
|---|---|---|---|---|---|
CVE-2026-22072 |
2026-08-17 06h13 +00:00 |
Loading arbitrary external URLs through WebView components introduces malicious JS code that can ste... |
8.3 |
High |
|
CVE-2026-19983 |
2026-08-17 05h17 +00:00 |
A vulnerability was detected in GL.iNet A1300, AX1800, AXT1800, MT2500, MT3000, MT6000, X3000 and XE... Command InjectionOS Command Injection |
8.3 |
High |
|
CVE-2026-19977 |
2026-08-17 03h00 +00:00 |
A vulnerability was detected in EFM ipTIME A3004T 14.19.0. The affected element is the function http... Authorization problems |
10 |
Critical |
|
CVE-2026-19961 |
2026-08-16 23h00 +00:00 |
A vulnerability was detected in Edimax EW-7478APC 1.04. Affected is the function formWlSiteSurvey of... Overflow |
9.4 |
Critical |
|
CVE-2026-19959 |
2026-08-16 22h30 +00:00 |
A weakness has been identified in Edimax EW-7478APC 1.04. This affects the function formWanTcpipSetu... Overflow |
9.4 |
Critical |
|
CVE-2026-74791 |
2026-08-16 14h16 +00:00 |
Scriban before 7.0.0 fails to clear the CachedTemplates dictionary when TemplateContext.Reset() is c... |
8.6 |
High |
|
CVE-2026-74790 |
2026-08-16 14h16 +00:00 |
Scriban before 7.0.0 caches TypedObjectAccessor by Type only without considering MemberFilter change... |
9.1 |
Critical |
|
CVE-2026-73061 |
2026-08-16 14h16 +00:00 |
Scriban before 7.2.2 contains an access-modifier bypass vulnerability in TypedObjectAccessor that al... |
9.8 |
Critical |
|
CVE-2026-73056 |
2026-08-16 14h16 +00:00 |
SiYuan kernel versions before 3.7.4 contain an improper restriction of excessive authentication atte... |
9.8 |
Critical |
|
CVE-2026-74251 |
2026-08-16 12h51 +00:00 |
Joomla Extension - phoca.cz - Unauthenticated SQL injection via attribute filter in Phoca Cart 5.0.... SQL Injection |
9.3 |
Critical |