Anwendungssicherheit
🟡 CVE-2026-77189: Medium Schwachstelle
The Charitable – Donation & Fundraising Platform (Donation Forms, Recurring Donations & Fundraising Campaigns) plugin for WordPress is vulnerable to...
🟠 CVE-2026-84192: High Schwachstelle
LibreNMS before 26.3.1 contains a stored cross-site scripting vulnerability in legacy PHP templates that output SNMP-sourced and syslog-sourced data without...
🟠 CVE-2026-19914: High Schwachstelle
The Welcart e-Commerce plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the 'custom_order' parameter in all versions up...
🟠 CVE-2026-84059: High Schwachstelle
A flaw has been found in ICP DAS UA-2200 and UA-5200 up to 20260704. The affected element is the function...
🟠 CVE-2026-84199: High Schwachstelle
Kyverno before 1.16.2 contains a server-side request forgery (SSRF) vulnerability in the APICall feature. The URL field in a Policy's...
🟠 CVE-2026-84195: High Schwachstelle
Kyverno before 1.16.4 automatically attaches the admission controller's ServiceAccount token to outbound HTTP requests in apiCall service mode without explicit...
🟠 CVE-2026-59680: High Schwachstelle
An OS command injection vulnerability was found in yast2-users. When displaying the "Password Settings" tab of a user, get_password_term() in...
🟠 CVE-2026-19513: High Schwachstelle
The Gravity Forms plugin for WordPress is vulnerable to Arbitrary File Upload in all versions up to, and including, 3.0.2....
🟠 CVE-2026-84128: High Schwachstelle
Privilege escalation in the WebDriver BiDi component. This vulnerability was fixed in Firefox 155 and Thunderbird 155.
🟠 CVE-2026-84123: High Luecke in Mozilla Firefox
Privilege escalation due to use-after-free in the Graphics: WebGPU component. This vulnerability was fixed in Firefox 155, Firefox ESR 153.2,...