Recent vulnerabilities


ID CVSS Description Vendor Product Published Updated
cve-2026-57858 9.3 (v4.0) 8.9 (v3.1) Cal.com Cal.diy 6.2.0 Stored XSS via BookingPageTagMan… Cal.com
Cal.com Self-Hosted (Cal.diy)
2026-08-12T12:23:08.673Z 2026-08-13T15:59:16.585Z
cve-2026-70468 7.3 (v3.1) A authentication bypass using an alternate path o… Fortinet
FortiManager
2026-08-12T12:19:04.307Z 2026-08-13T03:55:29.713Z
cve-2026-26035 8.8 (v3.1) An Improper Authentication vulnerability [CWE-287… Fortinet
FortiWeb
2026-08-12T12:19:03.031Z 2026-08-13T03:55:28.475Z
cve-2026-70466 4.8 (v3.1) A incomplete list of disallowed inputs vulnerabil… Fortinet
FortiWeb
2026-08-12T12:19:02.791Z 2026-09-15T15:18:13.972Z
cve-2026-71407 5.1 (v3.1) A Stack-based Buffer Overflow vulnerability [CWE-… Fortinet
FortiOS
2026-08-12T12:19:02.684Z 2026-08-13T03:55:40.765Z
cve-2026-70467 3.4 (v3.1) A server-side request forgery (ssrf) vulnerabilit… Fortinet
FortiSIEM
2026-08-12T12:19:02.208Z 2026-08-13T15:41:52.642Z
cve-2026-71408 5 (v3.1) A allocation of resources without limits or throt… Fortinet
FortiOS
2026-08-12T12:19:00.441Z 2026-08-12T13:43:25.034Z
cve-2026-70465 7.3 (v3.1) A buffer copy without checking size of input ('cl… Fortinet
FortiClientWindows
2026-08-12T11:52:25.666Z 2026-08-13T03:55:27.282Z
cve-2026-11325 8.8 (v3.1) cloudflare/pages-action is deprecated — migration requ… Cloudflare
https://github.com/cloudflare/pages-action
2026-08-12T11:31:15.102Z 2026-08-12T12:06:10.745Z
cve-2026-18044 Estatik Real Estate Plugin < 4.3.4 - Unauthenticated A… Unknown
Estatik Real Estate Plugin
2026-08-12T11:24:02.980Z 2026-08-12T12:08:41.797Z
cve-2026-17008 Quick PayPal Payments <= 5.7.50 - Unauthenticated Paym… Unknown
Quick Paypal Payments
2026-08-12T11:24:02.220Z 2026-08-12T12:09:28.657Z
cve-2026-16990 Payment Button for PayPal <= 1.2.3.44 - Unauthenticate… Unknown
Payment Button for PayPal
2026-08-12T11:24:00.946Z 2026-08-12T12:10:20.775Z
cve-2026-16747 Kirki < 6.2.1 - Unauthenticated Arbitrary Shortcode Ex… Unknown
Kirki
2026-08-12T11:24:00.245Z 2026-08-12T12:12:18.556Z
cve-2026-16621 Payment Gateway for PayPal on WooCommerce < 9.2.1 - Un… Unknown
Payment Gateway for PayPal on WooCommerce
2026-08-12T11:23:59.378Z 2026-08-12T12:14:24.803Z
cve-2026-15213 Welcart e-Commerce < 2.11.33 - Unauthenticated Payment… Unknown
Welcart e-Commerce
2026-08-12T11:23:58.523Z 2026-08-12T12:15:36.791Z
cve-2026-15045 Wallet System for WooCommerce < 2.7.10 - Customer+ Che… Unknown
Wallet System for WooCommerce
2026-08-12T11:23:57.834Z 2026-08-12T12:16:50.889Z
cve-2026-70560 4.8 (v4.0) 5.4 (v3.1) Ultimate POS Stored XSS via First Name Field in Leave … Ultimate Fosters
Ultimate POS (Stock Management & Point of Sale)
2026-08-12T11:17:17.254Z 2026-08-12T12:27:37.973Z
cve-2026-68868 Apache Airflow Google provider: google Secret Manager … Apache Software Foundation
Apache Airflow Google provider
2026-08-12T10:27:56.154Z 2026-09-16T14:56:15.356Z
cve-2026-67284 5.3 (v4.0) Joomla Extension - tabaoca.org - Improper ACL checks a… tabaoca.org
Cotton Cloud extension for Joomla
2026-08-12T09:58:45.778Z 2026-08-12T13:59:26.919Z
cve-2026-18652 6.5 (v3.1) Velociraptor STACK Type Download Path Bypasses Denied … Rapid7
Velociraptor
2026-08-12T09:56:10.329Z 2026-08-24T05:12:59.867Z
cve-2026-64951 3.5 (v3.1) Velociraptor DoS triggered by Divide by Zero panic Rapid7
Velociraptor
2026-08-12T09:49:25.635Z 2026-08-12T12:29:02.448Z
cve-2026-64952 6.5 (v3.1) Velociraptor Hunt Deletion With Insufficient Permissio… Rapid7
Velociraptor
2026-08-12T09:44:53.125Z 2026-08-12T12:30:22.032Z
cve-2026-64955 6.1 (v3.1) Velociraptor CSV Formula Injection in Export Pipeline Rapid7
Velociraptor
2026-08-12T09:39:26.928Z 2026-08-12T12:29:40.570Z
cve-2026-18663 5.9 (v3.1) 389-ds-base: 389-ds-base: pre-authentication double-fr… Red Hat
Red Hat Directory Server 11
2026-08-12T09:35:26.681Z 2026-08-13T15:41:09.335Z
cve-2026-67283 6.9 (v4.0) Joomla Extension - tabaoca.org - Improper ACL implemen… tabaoca.org
Cotton Cloud extension for Joomla
2026-08-12T09:06:03.182Z 2026-08-12T13:58:45.912Z
cve-2026-67282 10 (v4.0) Joomla Extension - fabrikar.com - Unauthenticated remo… fabrikar.com
Fabrik extension for Joomla
2026-08-12T09:05:34.959Z 2026-08-12T13:58:16.562Z
cve-2026-19566 N/A Net::CIDR::Set versions before 0.23 for Perl allow mem… RRWO
Net::CIDR::Set
2026-08-12T08:39:59.029Z 2026-08-12T19:49:32.903Z
cve-2025-41771 5.3 (v4.0) 4.3 (v3.1) SQL injection Phoenix Contact
AXC F 1152
2026-08-12T08:06:48.361Z 2026-08-12T12:32:06.185Z
cve-2025-41770 8.7 (v4.0) 7.5 (v3.1) Unauthenticated Denial of Service Phoenix Contact
AXC F 1152
2026-08-12T08:06:26.952Z 2026-08-12T16:57:03.036Z
cve-2025-41769 9.3 (v4.0) 9.8 (v3.1) Unauthenticated Buffer Overflow in PROFINET Service Phoenix Contact
AXC F 1152
2026-08-12T08:05:54.382Z 2026-08-13T15:39:23.555Z
ID CVSS Description Vendor Product Published Updated
ID Description Package Published Updated
ID Description Type
ID Description Updated
ID Description Updated
ID Description Updated
ID Description