Anwendungssicherheit
🟡 CVE-2026-49008: Medium Schwachstelle
By accessing unencrypted information in the device firmware, an attacker can obtain credentials related to the integrity verification of a...
🟡 CVE-2026-16265: Medium Schwachstelle
The WP Maps WordPress plugin before 4.9.7 does not perform a capability check in one of its AJAX actions and...
🟡 CVE-2026-16039: Medium Schwachstelle
The MStore API WordPress plugin before 4.21.0 does not restrict its vendor-orders endpoint to the caller's own orders, allowing any...
🟠 CVE-2026-19211: High Schwachstelle
A vulnerability was found in SourceCodester Photo Share Website 1.0. This affects an unknown function of the file /social/ajax.php?action=signup. Performing...
🟠 CVE-2026-19196: High Schwachstelle
A vulnerability was found in SourceCodester Photo Share Website 1.0. The impacted element is an unknown function of the file...
🟠 CVE-2026-15816: High Schwachstelle
A flaw was found in dracut. The die() error-handling function writes its message into a shell script under the initramfs...
🟠 CVE-2026-49007: High Schwachstelle
By accessing unencrypted information in the device firmware, an attacker can obtain the initial login credentials for the device's web...
🟠 CVE-2026-16041: High Schwachstelle
The MStore API WordPress plugin before 4.21.0 does not perform authorization or purchase-ownership checks on its REST product-review creation route,...
🟠 CVE-2026-15361: High Schwachstelle
The Content Views WordPress plugin before 4.5 does not perform a capability check on one of its AJAX actions and...
🟠 CVE-2026-9169: High Schwachstelle
DLL Search Order Hijacking in LUCID Vision Labs Arena SDK 1.0.80.49 on Windows allows a local attacker to execute arbitrary...