Anwendungssicherheit
🟠 CVE-2026-19355: High Schwachstelle
A vulnerability was determined in MingSoft MCMS up to 3.0.6. This affects the function ModelDataImpl.queryDiyFormData of the file /mdiy/form/data/list.do of...
🟠 CVE-2026-19351: High Schwachstelle
A vulnerability was found in dresende node-sql-query 0.1.25/0.1.26/0.1.27/0.1.28. Affected by this vulnerability is the function SelectQuery.from/SelectQuery.build in the library lib/Select.js...
🟠 CVE-2026-19344: High Schwachstelle
A vulnerability has been found in code-projects Task Management System 1.0. Affected by this issue is some unknown functionality of...
🟠 CVE-2026-19343: High Schwachstelle
A flaw has been found in code-projects Task Management System 1.0. Affected by this vulnerability is an unknown functionality of...
🟠 CVE-2026-18464: High Schwachstelle
The WP MAPS PRO WordPress plugin before 6.1.3 does not perform a capability check in one of its AJAX actions,...
🟠 CVE-2026-18357: High Schwachstelle
The WPC Order Tip for WooCommerce WordPress plugin before 3.3.1 does not perform authorisation or nonce checks in one of...
🟠 CVE-2026-19387: High Schwachstelle
A heap out-of-bounds write vulnerability was found in the GStreamer gst-plugins-bad adpcmdec element when decoding IMA/DVI ADPCM audio. Insufficient validation...
🟠 CVE-2026-17017: High Schwachstelle
The CubeWP Framework WordPress plugin before 1.1.31 does not properly sanitize and escape a parameter before using it in a...
🟠 CVE-2026-19346: High Schwachstelle
A vulnerability was determined in Tenda CH22 1.0.0.1. This vulnerability affects the function formCertListInfo of the file /goform/CertListInfo. This manipulation...
🔴 CVE-2026-18473: Critical Schwachstelle
The WP Directory Kit WordPress plugin before 1.5.5 does not properly sanitise and escape a parameter before using it in...