cve.li

Recent

CVE-2026-3228CWE-79

NextScripts: Social Networks Auto-Poster <= 4.4.6 - Authenticated (Contributor+) Stored Cross-Site Scripting via 'nxs_fbembed' Shortcode

Published 2026-03-10 by Wordfence

CVE-2026-2724CWE-79

Unlimited Elements For Elementor <= 2.0.5 - Unauthenticated Stored Cross-Site Scripting via Form Entry Fields

Published 2026-03-10 by Wordfence

CVE-2026-23907CWE-22

Apache PDFBox Examples: Path Traversal in PDFBox ExtractEmbeddedFiles Example Code

Published 2026-03-10 by apache

CVE-2026-3315CWE-276CWE-250CWE-732

Local Privilege Escalation Due to Writable Executable in Privileged Visionline Service Path

Published 2026-03-10 by NCSC-FI

CVE-2026-1261CWE-79

MetForm Pro <= 3.9.6 - Unauthenticated Stored Cross-Site Scripting

Published 2026-03-10 by Wordfence

CVE-2025-41712CWE-732

Incorrect Permission Assignment on power analyzer

Published 2026-03-10 by CERTVDE

CVE-2025-41711CWE-327

Use of a Broken or Risky Cryptographic Algorithm for firmware images of power analyzer

Published 2026-03-10 by CERTVDE

CVE-2025-41710CWE-798

Use of Hard-coded Credentials in power analyzer

Published 2026-03-10 by CERTVDE

CVE-2025-41709CWE-78

Command injection in power analyzer via Modbus-TCP and Modbus-RTU

Published 2026-03-10 by CERTVDE

CVE-2026-2364CWE-367

CODESYS Installer TOCTOU Privilege Escalation

Published 2026-03-10 by CERTVDE

Load more ↓