Anwendungssicherheit

🟠 CVE-2025-41770: High Schwachstelle ANWENDUNGSSICHERHEIT

🟠 CVE-2025-41770: High Schwachstelle

An unauthenticated denial-of-service vulnerability in the device's PLCnext Engineer communication interface allow an remote attacker to interrupt access via the...

14. Aug. 2026 Keine Kommentare
🟠 CVE-2026-18048: High Schwachstelle ANWENDUNGSSICHERHEIT

🟠 CVE-2026-18048: High Schwachstelle

The WP Photo Album Plus WordPress plugin before 9.2.07.002 does not validate a client-controlled value used to build a file...

14. Aug. 2026 Keine Kommentare
🟠 CVE-2026-16253: High Schwachstelle ANWENDUNGSSICHERHEIT

🟠 CVE-2026-16253: High Schwachstelle

The Total Upkeep WordPress plugin before 1.17.3 does not adequately protect the secret that authorizes its backup-restore functionality and exposes...

14. Aug. 2026 Keine Kommentare
🟠 CVE-2026-47231: High Schwachstelle ANWENDUNGSSICHERHEIT

🟠 CVE-2026-47231: High Schwachstelle

Admidio is an open-source user management solution. Prior to version 5.0.10, `modules/documents-files.php` gates state-changing modes by checking that the actor...

14. Aug. 2026 Keine Kommentare
🟠 CVE-2026-19594: High Schwachstelle ANWENDUNGSSICHERHEIT

🟠 CVE-2026-19594: High Schwachstelle

Insufficient input sanitization in Snowflake Python API (`snowflake.core`) versions prior to 1.13.0 allowed confused-deputy privilege escalation through two related weaknesses:...

14. Aug. 2026 Keine Kommentare
🟠 CVE-2026-18230: High Schwachstelle ANWENDUNGSSICHERHEIT

🟠 CVE-2026-18230: High Schwachstelle

The WP Directory Kit WordPress plugin before 1.5.6 does not sanitise and escape a parameter before using it in a...

14. Aug. 2026 Keine Kommentare
🟠 CVE-2026-18057: High Schwachstelle ANWENDUNGSSICHERHEIT

🟠 CVE-2026-18057: High Schwachstelle

The Events Manager WordPress plugin before 7.4.1 does not sanitise and escape a user-controlled value before using it in a...

14. Aug. 2026 Keine Kommentare
🟠 CVE-2026-16977: High Schwachstelle ANWENDUNGSSICHERHEIT

🟠 CVE-2026-16977: High Schwachstelle

The Form Maker by 10Web WordPress plugin before 1.15.45 does not properly parameterize a user-controlled value that is substituted into...

14. Aug. 2026 Keine Kommentare
🟠 CVE-2026-18474: High Schwachstelle ANWENDUNGSSICHERHEIT

🟠 CVE-2026-18474: High Schwachstelle

The WP Directory Kit WordPress plugin before 1.5.6 does not sanitise and escape a parameter before using it in a...

14. Aug. 2026 Keine Kommentare
🟠 CVE-2026-13613: High Schwachstelle ANWENDUNGSSICHERHEIT

🟠 CVE-2026-13613: High Schwachstelle

The KiviCare WordPress plugin before 4.5.2 does not properly sanitise and escape user-supplied parameters before using them in a SQL...

14. Aug. 2026 Keine Kommentare