CVE Feed

    Dashboard / CVE

    5.5
    Medium

    CVE-2026-17572

    Last Modified: 18 Aug 2026

    Heap-based buffer overflow in the SOHM list-index deserialization code in HDF5 through 2.1.1 on all platforms allows attackers to cause a denial of service (crash) via a crafted HDF5 file whose shared-message list index declares a num_messages count exceeding list_max, triggering out-of-bounds heap reads and writes in H5SM__cache_list_deserialize and H5SM__cache_list_verify_chksum.

    Published: 27 Jul 2026
    4.8
    Medium

    CVE-2026-47078

    Last Modified: 30 Jul 2026

    Relative Path Traversal vulnerability in Erlang OTP (stdlib zip module) allows writing files outside the intended extraction directory via a crafted zip archive. zip:unzip/1,2 and zip:extract/1,2 validate entry paths using zip:check_dir_level/2, which tracks directory depth as a running integer counter: .. decrements it, normal path components increment it. The caller rejects only paths where the final counter value is less than zero. A path such as ../x/y causes the counter to go negative mid-traversal then recover to zero, passing validation while resolving to a location outside the extraction directory when joined with the current working directory via add_cwd. This vulnerability is associated with program file lib/stdlib/src/zip.erl. This issue affects OTP from OTP 27.1 before OTP 29.0.4, OTP 28.5.0.4 and OTP 27.3.4.15, corresponding to stdlib from 6.1 before 8.0.3, 7.3.0.1 and 6.2.2.4.

    Published: 27 Jul 2026
    6.3
    Medium

    CVE-2026-42792

    Last Modified: 28 Jul 2026

    Improper Handling of Exceptional Conditions vulnerability in Erlang OTP erts (epmd) allows an unauthenticated remote attacker to permanently terminate the Erlang Port Mapper Daemon (epmd) via connection slot exhaustion. The do_accept function in erts/epmd/src/epmd_srv.c calls epmd_cleanup_exit() when accept(2) returns EMFILE (per-process file descriptor limit reached) or ENFILE (system-wide file descriptor limit reached), rather than treating these as recoverable conditions. An attacker can exhaust epmd's file descriptor slots by holding many TCP connections open while periodically sending a single byte to reset the idle timeout, then causing accept(2) to return EMFILE, which kills the daemon. epmd has no per-source-IP connection cap, making the attack feasible from a single source. On Debian/Ubuntu default packaging the impact is amplified: the systemd unit inherits a low file descriptor soft limit, and repeated daemon deaths trigger systemd's start-rate-limit, permanently failing both epmd.service and epmd.socket and requiring manual operator intervention to recover. This issue affects OTP from OTP 17.0 before OTP 29.0.4, OTP 28.5.0.4 and OTP 27.3.4.15.

    Published: 27 Jul 2026
    8.7
    High

    CVE-2026-58227

    Last Modified: 27 Jul 2026

    The Erlang/OTP ssl application does not detect cycles when reconstructing an incomplete peer certificate chain during a TLS or DTLS handshake. In ssl_certificate:handle_incomplete_chain/5, the received chain is passed to ssl_certificate:build_certificate_chain/5, which walks issuer relationships via ssl_certificate:do_certificate_chain/7 with no cycle detection and no depth limit. When the peer supplies two mutually cross-signed certificates in unordered form (A issues B, B issues A), the issuer lookup alternates between the two certificates and the pair of functions recurses indefinitely, growing the call stack and chain accumulator without bound. An unauthenticated remote attacker can send a crafted certificate chain in a TLS or DTLS Certificate handshake message to exhaust available memory and crash the BEAM node. Only a TCP connection and a partial handshake are required; no authentication or completed handshake is needed, and both TLS/DTLS servers and clients are affected when processing peer certificate messages. This issue affects OTP from OTP 23.2 before OTP 29.0.4, OTP 28.5.0.4 and OTP 27.3.4.15, corresponding to ssl from 10.2 before 11.7.4, 11.6.0.4 and 11.2.12.11.

    Published: 27 Jul 2026
    4.8
    Medium

    CVE-2025-59181

    Last Modified: 27 Jul 2026

    Ericsson Packet Core Controller (PCC) versions prior to 1.39 contain a directory traversal vulnerability in Configuration Management that could allow an attacker to change directory permissions, denying access to legitimate users.

    Published: 27 Jul 2026
    5.1
    Medium

    CVE-2025-59180

    Last Modified: 27 Jul 2026

    Ericsson Packet Core Controller (PCC) versions prior to 1.38 contain a hardcoded credential vulnerability in the alarm system. An attacker with access to the cluster with knowledge of the hardcoded credential can read alarm and alert information.

    Published: 27 Jul 2026
    8.7
    High

    CVE-2026-66050

    Last Modified: 27 Jul 2026

    NitroShare Desktop through 0.3.4 contains a path traversal vulnerability in its LAN file transfer server that allows unauthenticated attackers on the same network to write arbitrary files by sending a crafted filename containing directory traversal sequences in the JSON item header name field. Attackers can exploit the lack of path validation to write files outside the transfer root directory to arbitrary locations the current user has write access, including the Windows Startup folder, enabling persistent code execution on the next user login.

    Published: 27 Jul 2026
    4.8
    Medium

    CVE-2025-59178

    Last Modified: 27 Jul 2026

    Ericsson Packet Core Controller (PCC) versions prior to 1.39 contain an Exposure of Sensitive System Information vulnerability in Configuration Management allowing an attacker to enumerate other users on the system.

    Published: 27 Jul 2026
    6.5
    Medium

    CVE-2026-10819

    Last Modified: 27 Jul 2026

    Mattermost versions 11.6.x <= 11.6.5, 10.11.x <= 10.11.20, 11.8.x <= 11.8.1, 11.7.x <= 11.7.4 fail to limit the number of frames and enforce the file size cap on animated GIF uploads, which allows an authenticated attacker to cause a denial of service via a crafted animated GIF uploaded as a custom emoji.. Mattermost Advisory ID: MMSA-2026-00695

    Published: 27 Jul 2026
    4.3
    Medium

    CVE-2026-10600

    Last Modified: 27 Jul 2026

    Mattermost versions 11.8.x <= 11.8.0, 11.7.x <= 11.7.3, 11.6.x <= 11.6.5, 10.11.x <= 10.11.20 fail to bound the time and resource consumption of server-side document content extraction which allows an authenticated user with file-upload permission to degrade file uploads for all users on the server via repeatedly uploading small documents that are cheap to upload but expensive to extract, saturating the shared extraction worker pool.. Mattermost Advisory ID: MMSA-2026-00694

    Published: 27 Jul 2026
    6.8
    Medium

    CVE-2025-59177

    Last Modified: 27 Jul 2026

    Ericsson Packet Core Controller (PCC) versions prior to 1.39 contain a vulnerability in Configuration Management, allowing an attacker to execute specifically crafted commands to reveal system secret through error messages.

    Published: 27 Jul 2026
    8.5
    High

    CVE-2025-59172

    Last Modified: 27 Jul 2026

    Ericsson Packet Core Controller (PCC) versions prior to 1.38 contain an Improper Neutralization of Special Elements vulnerability allowing an attacker to execute arbitrary code as root.

    Published: 27 Jul 2026
    5.3
    Medium

    CVE-2026-66477

    Last Modified: 28 Jul 2026

    Unauthenticated Broken Access Control in Gillion <= 4.13 versions.

    Published: 27 Jul 2026
    4.9
    Medium

    CVE-2026-66476

    Last Modified: 28 Jul 2026

    Administrator Arbitrary File Deletion in Easy Digital Downloads <= 3.6.9 versions.

    Published: 27 Jul 2026
    5.9
    Medium

    CVE-2026-66475

    Last Modified: 27 Jul 2026

    Shop manager Cross Site Scripting (XSS) in Checkout Field Editor for WooCommerce &#8211; Checkout Manager <= 3.0.5 versions.

    Published: 27 Jul 2026
    4.3
    Medium

    CVE-2026-66474

    Last Modified: 27 Jul 2026

    Unauthenticated Cross Site Request Forgery (CSRF) in Insert Headers and Footers Code – HT Script <= 1.1.8 versions.

    Published: 27 Jul 2026
    6.5
    Medium

    CVE-2026-66448

    Last Modified: 27 Jul 2026

    Contributor Cross Site Scripting (XSS) in Gallery PhotoBlocks <= 1.3.3 versions.

    Published: 27 Jul 2026
    6.5
    Medium

    CVE-2026-66445

    Last Modified: 27 Jul 2026

    Contributor Cross Site Scripting (XSS) in Open User Map <= 1.4.46 versions.

    Published: 27 Jul 2026
    5.4
    Medium

    CVE-2026-66442

    Last Modified: 27 Jul 2026

    Subscriber Broken Access Control in YayPricing <= 3.5.6 versions.

    Published: 27 Jul 2026
    5.3
    Medium

    CVE-2026-66438

    Last Modified: 28 Jul 2026

    Unauthenticated Sensitive Data Exposure in Exclusive Addons Elementor <= 2.8.0 versions.

    Published: 27 Jul 2026
    4.9
    Medium

    CVE-2026-66437

    Last Modified: 27 Jul 2026

    Contributor Server Side Request Forgery (SSRF) in Feedzy <= 5.2.4 versions.

    Published: 27 Jul 2026
    6.5
    Medium

    CVE-2026-66434

    Last Modified: 27 Jul 2026

    Contributor Cross Site Scripting (XSS) in Photonic Gallery & Lightbox for Flickr, SmugMug & Others <= 3.33 versions.

    Published: 27 Jul 2026
    6.5
    Medium

    CVE-2026-66433

    Last Modified: 27 Jul 2026

    Contributor Cross Site Scripting (XSS) in Location Weather <= 3.0.6 versions.

    Published: 27 Jul 2026
    4.3
    Medium

    CVE-2026-66428

    Last Modified: 27 Jul 2026

    Unauthenticated Cross Site Request Forgery (CSRF) in WP Google Review Slider <= 18.4 versions.

    Published: 27 Jul 2026
    7.6
    High

    CVE-2026-66427

    Last Modified: 27 Jul 2026

    Administrator SQL Injection in WP Google Review Slider <= 18.4 versions.

    Published: 27 Jul 2026
    5
    Medium

    CVE-2026-65568

    Last Modified: 28 Jul 2026

    Contributor Broken Access Control in Visual Composer Website Builder <= 45.15.0 versions.

    Published: 27 Jul 2026
    5.3
    Medium

    CVE-2026-65567

    Last Modified: 27 Jul 2026

    Unauthenticated Broken Access Control in Event Tickets <= 5.29.0.1 versions.

    Published: 27 Jul 2026
    5.3
    Medium

    CVE-2026-65564

    Last Modified: 27 Jul 2026

    Unauthenticated Sensitive Data Exposure in MapPress Maps for WordPress <= 2.97.6 versions.

    Published: 27 Jul 2026
    5.9
    Medium

    CVE-2026-65563

    Last Modified: 27 Jul 2026

    Author Cross Site Scripting (XSS) in Orbit Fox by ThemeIsle <= 3.0.7 versions.

    Published: 27 Jul 2026
    6.5
    Medium

    CVE-2026-65562

    Last Modified: 27 Jul 2026

    Contributor Cross Site Scripting (XSS) in BetterDocs <= 4.6.2 versions.

    Published: 27 Jul 2026
    6.5
    Medium

    CVE-2026-65561

    Last Modified: 27 Jul 2026

    Contributor Cross Site Scripting (XSS) in WordPress Social Login and Register <= 7.8.0 versions.

    Published: 27 Jul 2026
    5.4
    Medium

    CVE-2026-65558

    Last Modified: 27 Jul 2026

    Unauthenticated Server Side Request Forgery (SSRF) in AffiliateX <= 2.3.5 versions.

    Published: 27 Jul 2026
    5.9
    Medium

    CVE-2026-65557

    Last Modified: 27 Jul 2026

    Shop manager Cross Site Scripting (XSS) in Abandoned Cart Lite for WooCommerce <= 6.8.0 versions.

    Published: 27 Jul 2026
    6.8
    Medium

    CVE-2026-65436

    Last Modified: 28 Jul 2026

    Editor Arbitrary File Deletion in Kirki <= 6.0.13 versions.

    Published: 27 Jul 2026
    6.5
    Medium

    CVE-2026-65435

    Last Modified: 27 Jul 2026

    Unauthenticated Broken Access Control in Thrive Leads Version <= 10.9.2 versions.

    Published: 27 Jul 2026
    6.5
    Medium

    CVE-2026-65434

    Last Modified: 27 Jul 2026

    Subscriber Sensitive Data Exposure in ЮKassa для WooCommerce <= 2.16.1 versions.

    Published: 27 Jul 2026
    6.5
    Medium

    CVE-2026-65433

    Last Modified: 27 Jul 2026

    Subscriber Broken Access Control in RT Mega Menu – Mega Menu Builder for Elementor &amp; Gutenberg <= 1.5.1 versions.

    Published: 27 Jul 2026
    6.5
    Medium

    CVE-2026-59560

    Last Modified: 27 Jul 2026

    Subscriber Broken Access Control in FundEngine <= 1.7.8 versions.

    Published: 27 Jul 2026
    6.5
    Medium

    CVE-2026-59559

    Last Modified: 27 Jul 2026

    Subscriber Cross Site Scripting (XSS) in RT Mega Menu – Mega Menu Builder for Elementor &amp; Gutenberg <= 1.5.1 versions.

    Published: 27 Jul 2026
    7.1
    High

    CVE-2026-59558

    Last Modified: 28 Jul 2026

    Unauthenticated Cross Site Scripting (XSS) in Booking Calendar <= 11.4.2 versions.

    Published: 27 Jul 2026
    6.5
    Medium

    CVE-2026-59557

    Last Modified: 27 Jul 2026

    Unauthenticated Broken Access Control in Events Made Easy <= 3.1.3 versions.

    Published: 27 Jul 2026
    7.1
    High

    CVE-2026-59556

    Last Modified: 27 Jul 2026

    Unauthenticated Cross Site Scripting (XSS) in Dynamic Pricing With Discount Rules for WooCommerce <= 4.5.11 versions.

    Published: 27 Jul 2026
    7.1
    High

    CVE-2026-59553

    Last Modified: 27 Jul 2026

    Unauthenticated Cross Site Scripting (XSS) in Product Feed Manager <= 7.6.1 versions.

    Published: 27 Jul 2026
    7.2
    High

    CVE-2026-59552

    Last Modified: 27 Jul 2026

    Unauthenticated Server Side Request Forgery (SSRF) in 3D Flipbook PDF Viewer &amp; Embedder <= 1.4.2 versions.

    Published: 27 Jul 2026
    8.5
    High

    CVE-2026-59551

    Last Modified: 27 Jul 2026

    Subscriber SQL Injection in rtMedia for WordPress, BuddyPress and bbPress <= 4.7.10 versions.

    Published: 27 Jul 2026
    9.3
    Critical

    CVE-2026-59550

    Last Modified: 28 Jul 2026

    Unauthenticated SQL Injection in AWP Classifieds <= 4.4.7 versions.

    Published: 27 Jul 2026
    9.3
    Critical

    CVE-2026-59549

    Last Modified: 27 Jul 2026

    Unauthenticated SQL Injection in rtMedia for WordPress, BuddyPress and bbPress <= 4.7.10 versions.

    Published: 27 Jul 2026
    7.5
    High

    CVE-2026-59548

    Last Modified: 27 Jul 2026

    Unauthenticated Sensitive Data Exposure in Byteflows Travel &amp; Hotel Booking <= 1.0.0 versions.

    Published: 27 Jul 2026
    7.4
    High

    CVE-2026-59546

    Last Modified: 27 Jul 2026

    Subscriber Broken Authentication in Hide My WP Ghost <= 7.0.06 versions.

    Published: 27 Jul 2026
    7.5
    High

    CVE-2026-59539

    Last Modified: 27 Jul 2026

    Subscriber Insecure Direct Object References (IDOR) in Paid Member Subscriptions <= 3.0.7 versions.

    Published: 27 Jul 2026