Skip to main content

Over 150 LLM Providers · Over 5,300 Models The most extensible AI-powered pentesting platform. Open source. Star on GitHub

22,671 of 57,566 · Page 445/454
7.1
CVE-2026-70837

Vulnerability in the Oracle Financials for Asia/Pacific product of Oracle E-Business Suite (component: Internal Operatio

7.1
CVE-2026-70839

Vulnerability in the Oracle Financials for EMEA product of Oracle E-Business Suite (component: Internal Operations). Su

7.1
CVE-2026-70844

Vulnerability in the Oracle Loans product of Oracle E-Business Suite (component: Internal Operations). Supported versio

7.1
CVE-2026-70845

Vulnerability in the Oracle Loans product of Oracle E-Business Suite (component: Internal Operations). Supported versio

7.1
CVE-2026-70858

Vulnerability in the Oracle WebCenter Content product of Oracle Fusion Middleware (component: Content Server). Supporte

7.1
CVE-2026-70867

Vulnerability in Oracle Application Testing Suite. The supported version that is affected is 13.3.0.1. Easily exploita

7.1
CVE-2026-70902

Vulnerability in the Oracle Hyperion Data Relationship Management product of Oracle Hyperion (component: Access and secu

7.1
CVE-2026-70933

Vulnerability in the Oracle Hyperion Financial Management product of Oracle Hyperion (component: Security). The suppor

7.1
CVE-2026-70934

Vulnerability in the Oracle Hyperion Financial Management product of Oracle Hyperion (component: Security). The suppor

7.1
CVE-2026-70935

Vulnerability in the Oracle Hyperion Financial Management product of Oracle Hyperion (component: Security). The suppor

7.1
CVE-2026-70936

Vulnerability in the Oracle Hyperion Financial Management product of Oracle Hyperion (component: Security). The suppor

7.1
CVE-2026-70967

Vulnerability in the Oracle Hyperion Infrastructure Technology product of Oracle Hyperion (component: Installation and C

7.1
CVE-2026-70971

Vulnerability in the Oracle Hyperion Infrastructure Technology product of Oracle Hyperion (component: Installation and C

7.1
CVE-2026-71003

Vulnerability in the Oracle Commerce Guided Search / Oracle Commerce Experience Manager product of Oracle Commerce (comp

7.1
CVE-2026-71012

Vulnerability in the Oracle Commerce Guided Search / Oracle Commerce Experience Manager product of Oracle Commerce (comp

7.1
CVE-2026-16570

The NextScripts: Social Networks Auto-Poster WordPress plugin before 4.4.8 does not escape some of the query-string para

7.1
CVE-2026-19055

The ProSolution WP Client WordPress plugin before 2.0.11 does not sanitise and escape several parameters before reflecti

7.1
CVE-2026-19056

The ProSolution WP Client WordPress plugin before 2.0.11 does not sanitise and escape a parameter before reflecting it i

7.1
CVE-2026-49421

The kernel function that implements unlinkat(2) and funlinkat(2) validated the AT_RESOLVE_BENEATH flag but failed to pas

7.1
CVE-2026-61986

Unauthenticated Cross Site Scripting (XSS) in Contest Gallery <= 30.0.5 versions.

7.1
CVE-2026-66596

Unauthenticated Cross Site Scripting (XSS) in Newsletter <= 9.3.3 versions.

7.1
CVE-2026-73182

Unauthenticated Cross Site Scripting (XSS) in BBQ Pro <= 3.9 versions.

7.1
CVE-2026-73184

Unauthenticated Cross Site Scripting (XSS) in Global Gallery <= 11.1.2 versions.

7.1
CVE-2026-73354

Unauthenticated Cross Site Scripting (XSS) in SimplyRETS Real Estate IDX <= 3.2.8 versions.

7.1
CVE-2026-56088

Dell OpenManage Enterprise, versions prior to 4.7.0, contains an Improper Neutralization of Special Elements used in an

7.1
CVE-2026-76223

ArcadeDB (com.arcadedb) versions 26.7.3 and earlier fail to enforce the UPDATE_SCHEMA permission check when a DEFINE FUN

7.1
CVE-2026-49253

electerm is an open-sourced terminal/ssh/sftp/telnet/serialport/RDP/VNC/Spice/ftp client. Prior to 3.11.11, electerm use

7.1
CVE-2026-75147

FFmpeg before commit 983dae9 contains an out-of-bounds read in the AV1 RTP packetizer (libavformat/rtpenc_av1.c). The ke

7.1
CVE-2026-17183

An authenticated user with permission to create or edit alert rules can bypass datasource query authorization by marking

7.1
CVE-2026-62680

Orval generates type-safe JavaScript clients in TypeScript from OpenAPI v3 and Swagger v2 specifications. Prior to 8.22.

7.1
CVE-2026-54491

Koel is a free, open-source music streaming solution. Prior to 9.7.1, outbound podcast and radio fetch paths perform a p

7.1
CVE-2026-68553

Coturn is a free open source implementation of TURN and STUN Server. Prior to 4.13.0, an authenticated TURN user can pla

7.1
CVE-2026-76251

In Splunk Enterprise versions below 10.4.2, 10.2.6, and 10.0.9, a user who does not hold the "admin" or "power" Splunk r

7.1
CVE-2026-76330

In Splunk Enterprise versions below 10.4.2, 10.2.6, 10.0.9, and 9.4.14, an unauthenticated user could trick an authentic

7.1
CVE-2026-76332

In Splunk Enterprise versions below 10.4.2, 10.2.6, 10.0.9, and 9.4.14, an unauthenticated user could trick an authentic

7.1
CVE-2026-76333

In Splunk Enterprise versions below 10.4.2, 10.2.6, 10.0.9, and 9.4.14, a user who holds the "power" Splunk role could s

7.1
CVE-2026-76336

In Splunk Enterprise versions below 10.4.2 and 10.2.6, a user who does not hold the "admin" or "power" Splunk roles coul

7.1
CVE-2026-66581

Unauthenticated Cross Site Scripting (XSS) in JetEngine <= 3.8.14.1 versions.

7.1
CVE-2026-66582

Unauthenticated Cross Site Scripting (XSS) in TranslatePress <= 3.3.2 versions.

7.1
CVE-2026-66590

Unauthenticated Cross Site Scripting (XSS) in Tagembed <= 7.4 versions.

7.1
CVE-2026-66597

Unauthenticated Cross Site Scripting (XSS) in wpDataTables <= 6.5.1.4 versions.

7.1
CVE-2026-66598

Unauthenticated Cross Site Scripting (XSS) in B2BKing Premium <= 5.6.07 versions.

7.1
CVE-2026-66604

Unauthenticated Cross Site Scripting (XSS) in GeoDirectory <= 2.8.173 versions.

7.1
CVE-2026-66605

Unauthenticated Cross Site Scripting (XSS) in Swatchly – WooCommerce Variation Swatches for Products <= 1.4.13 versions.

7.1
CVE-2026-66606

Unauthenticated Cross Site Scripting (XSS) in SmartSMTP <= 1.2.0 versions.

7.1
CVE-2026-66607

Unauthenticated Cross Site Scripting (XSS) in Advance Product Search <= 1.4.8 versions.

7.1
CVE-2026-66611

Unauthenticated Cross Site Scripting (XSS) in Paymob for WooCommerce <= 4.1.10 versions.

7.1
CVE-2026-66612

Unauthenticated Cross Site Scripting (XSS) in Aora <= 1.3.19 versions.

7.1
CVE-2026-66614

Unauthenticated Cross Site Scripting (XSS) in SEO Plugin by Squirrly SEO <= 14.2.2 versions.

7.1
CVE-2026-66615

Unauthenticated Cross Site Scripting (XSS) in Podlove Podcast Publisher <= 4.5.4 versions.

Scan for 2026 Vulnerabilities

CyberStrike detects these CVEs across your infrastructure automatically.

Get Started