Live
2026年8月30日
Sources: NVD · GHSA · OSV · CISA KEV · JVN
ログイン
新規登録
JA
·
EN
·
FR
SecPulse
v1
脆弱性
KEV
タグ
カテゴリ
脆弱性
KEV
タグ
カテゴリ
ホーム
/
カテゴリ
/
Webアプリケーション
🌐
Webアプリケーション
slug: web-application
🛡 関連する脆弱性
283
ID
タイトル
重要度
検知
CVE-2026-78161
A vulnerability was found in warmcat libwebsockets 4.5.0. Impacted is the function...
High
6日前
CVE-2026-9769
Uncontrolled recursion DoS in JustHTML() via deeply nested HTML
High
1週間前
CVE-2026-4671
justhtml before 1.18.0 contains multiple low-severity denial-of-service issues in CSS selector...
High
1週間前
CVE-2026-30819
Combodo iTop is a web based IT service management tool. Prior to 3.2.3, iTop has a reflected Cross-Site Scripting (XSS) vulnerability in its dashboard revert functionality with the parameter dashboard...
High
1週間前
CVE-2026-30866
Combodo iTop is a web based IT service management tool. Prior to 3.2.3, unauthenticated users can access uploaded sensitive via sniffed url. This issue has been fixed in version 3.2.3.
High
1週間前
CVE-2026-27490
Combodo iTop is a web based IT service management tool. Prior to 3.2.3, inline images that are accessible without being authenticated are protected by a weak 24-bit pseudo-random secret. This issue ha...
High
1週間前
CVE-2026-27462
Combodo iTop is a web based IT service management tool. Prior to 3.2.3, iTop returns different responses for valid/invalid usernames depending on multiple factors in the reset password mechanism, lead...
High
1週間前
CVE-2026-54682
DiscordChatExporter saves Discord chat logs to a file. Prior to 2.47.2, HTML exports generated with markdown formatting disabled pass attacker-controlled content through FormatMarkdownAsync and Format...
High
1週間前
CVE-2026-73197
A flaw was found in FreeIPA. A remote, unauthenticated attacker can exploit this vulnerability by...
High
1週間前
CVE-2026-19905
A weakness has been identified in Jinher OA 1.0. Impacted is an unknown function of the file /C6...
High
2週間前
CVE-2026-14279
The Wholesale Market plugin for WordPress is vulnerable to privilege escalation in versions up to...
High
2週間前
CVE-2026-73680
Cockpit CMS 2.14.0 and prior contains a command injection vulnerability in the FFmpeg integration...
High
2週間前
CVE-2026-19825
A security vulnerability has been detected in SourceCodester Simple Client Management System 1.0....
High
2週間前
CVE-2026-19826
A vulnerability was detected in alldatacenter alldata up to 0.6.8. This affects the function...
High
2週間前
CVE-2026-19794
The WP-Stats plugin for WordPress is vulnerable to Stored Cross-Site Scripting in all versions up...
High
2週間前
CVE-2026-19762
A vulnerability was found in DTStack Taier 1.4.0. Affected by this vulnerability is the function...
High
2週間前
CVE-2026-19764
A vulnerability was identified in Raisecom Communication Command and Dispatch Management Platform...
High
2週間前
CVE-2026-19758
A vulnerability was determined in dromara lamp-cloud up to 5.10.0. This issue affects some...
High
2週間前
CVE-2026-19757
A vulnerability was found in Dromara lamp-cloud up to 5.10.0. This vulnerability affects unknown...
High
2週間前
CVE-2026-73654
Trigger.dev: Prototype pollution via run metadata operations → process-wide cross-tenant DoS
High
2週間前
CVE-2026-72777
Next AI Draw.io through 0.4.16 contains a server-side request forgery vulnerability in the POST ...
High
2週間前
CVE-2026-18146
The Fluent Forms – Customizable Contact Forms, Survey, Quiz, & Conversational Form Builder plugin...
High
2週間前
CVE-2026-73031
telegram-search contains a stored cross-site scripting vulnerability that allows remote attackers...
High
2週間前
CVE-2026-73222
Claude Code Templates is a CLI tool for configuring and monitoring Claude Code. Prior to 1.29.4, the Claude Code Studio server launched by the --studio option in cli-tool/src/sandbox-server.js binds t...
High
2週間前
CVE-2026-15426
The AcyMailing – An Ultimate Newsletter Plugin and Marketing Automation Solution for WordPress...
High
2週間前
CVE-2026-67620
Flowise through 3.1.4 contains a server-side request forgery vulnerability in the SSRF guard...
High
3週間前
CVE-2026-48026
lakeFS is an open-source tool that transforms object storage into a Git-like repositories. Prior to version 1.81.1 of the open source edition and 1.84.0 of the enterprise edition, lakeFS Web UI render...
High
3週間前
CVE-2026-18325
The Forminator Forms – Contact Form, Payment Form & Custom Form Builder plugin for WordPress is...
High
3週間前
CVE-2026-16636
The FluentSMTP – WP SMTP Plugin with Amazon SES, SendGrid, MailGun, Postmark, Google and Any SMTP...
High
3週間前
CVE-2026-15991
The File Manager plugin for WordPress is vulnerable to arbitrary file deletion due to insufficient file path validation in the connector function in all versions from 6.0 - 6.9. This makes it possible...
High
3週間前
« Previous
Next »
Showing
31
to
60
of
283
results
1
2
3
4
5
6
7
8
9
10
🍪 Cookie について
当サイトはログイン状態の保持・言語設定・サービス改善のために Cookie を使用します。詳細は下記リンクをご確認ください。
すべて受け入れる
必須のみ
詳細 →