cve.li

Recent

CVE-2026-105163CWE-367CWE-362

crossplane crossplane-runtime ImageConfig client.go Get toctou

Published 2026-10-04 by VulDB

CVE-2026-105219CWE-1333

Mammoth.js 1.3.0 before 1.12.3 ReDoS via Style Map Tokeniser

Published 2026-10-04 by VulnCheck

CVE-2026-105218CWE-295

gopay before 1.5.119 Disabled TLS Certificate Verification in xhttp Client

Published 2026-10-04 by VulnCheck

CVE-2026-105217CWE-295

Cockpit CMS 2.12.0 before 2.14.1 Disabled TLS Verification via cron.php

Published 2026-10-04 by VulnCheck

CVE-2026-105216CWE-295

go-micro before 6.0.0 Disabled TLS Certificate Verification via tls.Config Helper

Published 2026-10-04 by VulnCheck

CVE-2026-105161CWE-347CWE-345

invariant-systems-ai aiir Policy Gate signature verification

Published 2026-10-04 by VulDB

CVE-2026-105086CWE-79

WWBN AVideo 12.4 through 29.2.0 Stored XSS via Double-Encoded Video Title

Published 2026-10-04 by VulnCheck

CVE-2026-104402CWE-201

WordPress Mindio Magic MCP plugin <= 0.5.6 - Sensitive Data Exposure vulnerability

Published 2026-10-04 by Patchstack

CVE-2026-105224CWE-79

YesWiki before 4.6.7 Stored XSS via Bazar valeur Action

Published 2026-10-04 by VulnCheck

CVE-2026-105089CWE-79

WWBN AVideo through 29.2.0 Stored XSS via trailer1 in YouPHPFlix2 Templates

Published 2026-10-04 by VulnCheck

Load more ↓