🛡️ مركز معلومات الثغرات
قاعدة بيانات الثغرات والتهديدات الأمنية المحدّثة
| المعرّف | الخطورة | CVSS | الوصف | الحالة | النشر |
|---|---|---|---|---|---|
| CVE-2026-4326 | مرتفع | 8.8 |
The Vertex Addons for Elementor plugin for WordPress is vulnerable to Missing Authorization in all versions up to and in…
|
— | أبريل 9, 2026 |
| CVE-2026-39911 | مرتفع | 8.8 |
Hashgraph Guardian through version 3.5.0 contains an unsandboxed JavaScript execution vulnerability in the Custom Logic …
|
— | أبريل 9, 2026 |
| CVE-2026-5815 | مرتفع | 8.8 |
A vulnerability was detected in D-Link DIR-645 1.01/1.02/1.03. Impacted is the function hedwigcgi_main of the file /cgi-…
|
— | أبريل 9, 2026 |
| CVE-2026-5830 | مرتفع | 8.8 |
A vulnerability was identified in Tenda AC15 15.03.05.18. This affects the function websGetVar of the file /goform/SysTo…
|
— | أبريل 9, 2026 |
| CVE-2026-35638 | مرتفع | 8.8 |
OpenClaw before 2026.3.22 contains a privilege escalation vulnerability in the Control UI that allows unauthenticated se…
|
— | أبريل 9, 2026 |
| CVE-2026-5980 | مرتفع | 8.8 |
A flaw has been found in D-Link DIR-605L 2.13B01. Affected by this issue is the function formSetMACFilter of the file /g…
|
— | أبريل 9, 2026 |
| CVE-2026-5981 | مرتفع | 8.8 |
A vulnerability has been found in D-Link DIR-605L 2.13B01. This affects the function formAdvFirewall of the file /goform…
|
— | أبريل 9, 2026 |
| CVE-2026-5979 | مرتفع | 8.8 |
A vulnerability was detected in D-Link DIR-605L 2.13B01. Affected by this vulnerability is the function formVirtualServ …
|
— | أبريل 9, 2026 |
| CVE-2026-33785 | مرتفع | 8.8 |
A Missing Authorization vulnerability in the CLI of Juniper Networks Junos OS on MX Series allows a local, authenticated…
|
— | أبريل 9, 2026 |
| CVE-2026-5984 | مرتفع | 8.8 |
A vulnerability was identified in D-Link DIR-605L 2.13B01. Impacted is the function formSetLog of the file /goform/formS…
|
— | أبريل 9, 2026 |
| CVE-2026-5983 | مرتفع | 8.8 |
A vulnerability was determined in D-Link DIR-605L 2.13B01. This issue affects the function formSetDDNS of the file /gofo…
|
— | أبريل 9, 2026 |
| CVE-2026-5982 | مرتفع | 8.8 |
A vulnerability was found in D-Link DIR-605L 2.13B01. This vulnerability affects the function formAdvNetwork of the file…
|
— | أبريل 9, 2026 |
| CVE-2026-35639 | مرتفع | 8.8 |
OpenClaw before 2026.3.22 contains a privilege escalation vulnerability in the device.pair.approve method that allows an…
|
— | أبريل 9, 2026 |
| CVE-2026-5988 | مرتفع | 8.8 |
A vulnerability was detected in Tenda F451 1.0.0.7. This impacts the function formWrlsafeset of the file /goform/AdvSetW…
|
— | أبريل 9, 2026 |
| CVE-2025-13914 | مرتفع | 8.7 |
A Key Exchange without Entity Authentication vulnerability in the SSH implementation of Juniper Networks Apstra allows a…
|
— | أبريل 9, 2026 |
| CVE-2026-39942 | مرتفع | 8.5 |
Directus is a real-time API and App dashboard for managing SQL database content. Prior to 11.17.0, the PATCH /files/{id}…
|
— | أبريل 9, 2026 |
| CVE-2023-54359 | مرتفع | 8.2 |
WordPress adivaha Travel Plugin 2.3 contains a time-based blind SQL injection vulnerability that allows unauthenticated …
|
— | أبريل 9, 2026 |
| CVE-2026-34512 | مرتفع | 8.1 |
OpenClaw before 2026.3.25 contains an improper access control vulnerability in the HTTP /sessions/:sessionKey/kill route…
|
— | أبريل 9, 2026 |
| CVE-2026-35645 | مرتفع | 8.1 |
OpenClaw before 2026.3.25 contains a privilege escalation vulnerability in the gateway plugin subagent fallback deleteSe…
|
— | أبريل 9, 2026 |
| CVE-2026-33793 | مرتفع | 7.8 |
An Execution with Unnecessary Privileges vulnerability in the User Interface (UI) of Juniper Networks Junos OS and Junos…
|
— | أبريل 9, 2026 |