🛡️ مركز معلومات الثغرات
قاعدة بيانات الثغرات والتهديدات الأمنية المحدّثة
| المعرّف | الخطورة | CVSS | الوصف | الحالة | النشر |
|---|---|---|---|---|---|
| CVE-2023-54361 | متوسط | 6.1 |
Joomla iProperty Real Estate 4.1.1 contains a reflected cross-site scripting vulnerability that allows attackers to inje…
|
— | أبريل 9, 2026 |
| CVE-2023-54360 | متوسط | 6.1 |
Joomla JLex Review 6.0.1 contains a reflected cross-site scripting vulnerability that allows attackers to inject malicio…
|
— | أبريل 9, 2026 |
| CVE-2026-21904 | متوسط | 6.1 |
An Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Juniper Network…
|
— | أبريل 9, 2026 |
| CVE-2023-54363 | متوسط | 6.1 |
Joomla Solidres 2.13.3 contains a reflected cross-site scripting vulnerability that allows unauthenticated attackers to …
|
— | أبريل 9, 2026 |
| CVE-2023-54358 | متوسط | 6.1 |
WordPress adivaha Travel Plugin 2.3 contains a reflected cross-site scripting vulnerability that allows unauthenticated …
|
— | أبريل 9, 2026 |
| CVE-2026-35622 | متوسط | 5.9 |
OpenClaw before 2026.3.22 contains an improper authentication verification vulnerability in Google Chat app-url webhook …
|
— | أبريل 9, 2026 |
| CVE-2026-33773 | متوسط | 5.8 |
An Incorrect Initialization of Resource vulnerability in the packet forwarding engine (pfe) of Juniper Networks Junos OS…
|
— | أبريل 9, 2026 |
| CVE-2026-33776 | متوسط | 5.5 |
A Missing Authorization vulnerability in the CLI of Juniper Networks Junos OS and Junos OS Evolved allows a local user w…
|
— | أبريل 9, 2026 |
| CVE-2026-33786 | متوسط | 5.5 |
An Improper Check for Unusual or Exceptional Conditions vulnerability in the chassis control daemon (chassisd) of Junipe…
|
— | أبريل 9, 2026 |
| CVE-2026-33787 | متوسط | 5.5 |
An Improper Check for Unusual or Exceptional Conditions vulnerability in the chassis control daemon (chassisd) of Junipe…
|
— | أبريل 9, 2026 |
| CVE-2026-4124 | متوسط | 5.4 |
The Ziggeo plugin for WordPress is vulnerable to Missing Authorization in all versions up to, and including, 3.1.1. The …
|
— | أبريل 9, 2026 |
| CVE-2026-5986 | متوسط | 5.3 |
A weakness has been identified in Zod jsVideoUrlParser up to 0.5.1. The impacted element is the function getTime in the …
|
— | أبريل 9, 2026 |
| CVE-2026-35640 | متوسط | 5.3 |
OpenClaw before 2026.3.25 parses JSON request bodies before validating webhook signatures, allowing unauthenticated atta…
|
— | أبريل 9, 2026 |
| CVE-2026-35633 | متوسط | 5.3 |
OpenClaw before 2026.3.22 contains an unbounded memory allocation vulnerability in remote media HTTP error handling that…
|
— | أبريل 9, 2026 |
| CVE-2026-5833 | متوسط | 5.3 |
A security vulnerability has been detected in awwaiid mcp-server-taskwarrior up to 1.0.1. This impacts the function serv…
|
— | أبريل 9, 2026 |
| CVE-2026-35626 | متوسط | 5.3 |
OpenClaw before 2026.3.22 contains an unauthenticated resource exhaustion vulnerability in voice call webhook handling t…
|
— | أبريل 9, 2026 |
| CVE-2026-2519 | متوسط | 5.3 |
The Online Scheduling and Appointment Booking System – Bookly plugin for WordPress is vulnerable to price manipulation v…
|
— | أبريل 9, 2026 |
| CVE-2026-35634 | متوسط | 5.1 |
OpenClaw before 2026.3.23 contains an authentication bypass vulnerability in the Canvas gateway where authorizeCanvasReq…
|
— | أبريل 9, 2026 |
| CVE-2026-1340 | حرج | 9.8 |
Ivanti Endpoint Manager Mobile (EPMM) — CVE-2026-1340
Ivanti Endpoint Manager Mobile (EPMM) contains a code injection vu…
|
— | أبريل 8, 2026 |
| CVE-2026-1346 | حرج | 9.3 |
IBM Verify Identity Access Container 11.0 through 11.0.2 and IBM Security Verify Access Container 10.0 through 10.0.9.1 …
|
— | أبريل 8, 2026 |