🛡️ CVE Vulnerability Database
CVE vulnerabilities with bilingual AI analysis tailored for Saudi Arabia
| CVE ID | Title / Description | Severity | CVSS | Status | Published |
|---|---|---|---|---|---|
| CVE-2026-3489 |
The DirectoryPress – Business Directory And Classified Ad Listing plugin for WordPress is vulnerable…
|
HIGH |
7.5
|
— | Apr 16, 2026 |
| CVE-2026-33207 |
DataEase is an open-source data visualization and analytics platform. Versions 2.10.20 and below con…
|
HIGH |
8.8
|
⚡ | Apr 16, 2026 |
| CVE-2026-33121 |
DataEase is an open-source data visualization and analytics platform. Versions 2.10.20 and below con…
|
HIGH |
8.8
|
⚡ | Apr 16, 2026 |
| CVE-2026-33084 |
DataEase is an open-source data visualization and analytics platform. Versions 2.10.20 and below con…
|
HIGH |
8.8
|
⚡ | Apr 16, 2026 |
| CVE-2026-33083 |
DataEase is an open-source data visualization and analytics platform. Versions 2.10.20 and below con…
|
HIGH |
8.8
|
⚡ | Apr 16, 2026 |
| CVE-2026-1620 |
The Livemesh Addons for Elementor plugin for WordPress is vulnerable to Local File Inclusion in all …
|
HIGH |
8.8
|
— | Apr 16, 2026 |
| CVE-2025-14868 |
The Career Section plugin for WordPress is vulnerable to Cross-Site Request Forgery leading to Path …
|
HIGH |
8.8
|
— | Apr 16, 2026 |
| CVE-2023-3634 |
In products of the MSE6 product-family by Festo a remote authenticated, low privileged attacker coul…
|
HIGH |
8.8
|
— | Apr 16, 2026 |
| CVE-2026-6384 |
A flaw was found in gimp. This buffer overflow vulnerability in the GIF image loading component's `R…
|
HIGH |
7.3
|
— | Apr 15, 2026 |
| CVE-2026-5694 |
The Quick Interest Slider plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the …
|
HIGH |
7.2
|
— | Apr 15, 2026 |
| CVE-2026-5617 |
The Login as User plugin for WordPress is vulnerable to Privilege Escalation in all versions up to, …
|
HIGH |
8.8
|
— | Apr 15, 2026 |
| CVE-2026-4145 |
During an internal security assessment, a potential vulnerability was discovered in Lenovo Software …
|
HIGH |
7.8
|
— | Apr 15, 2026 |
| CVE-2026-4134 |
During an internal security assessment, a potential vulnerability was discovered in Lenovo Software …
|
HIGH |
7.3
|
— | Apr 15, 2026 |
| CVE-2026-3643 |
The Accessibly plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the REST API in…
|
HIGH |
7.2
|
— | Apr 15, 2026 |
| CVE-2026-34632 |
Adobe Photoshop Installer was affected by an Uncontrolled Search Path Element vulnerability that cou…
|
HIGH |
8.2
|
— | Apr 15, 2026 |
| CVE-2026-2834 |
The Age Verification & Identity Verification by Token of Trust plugin for WordPress is vulnerable to…
|
HIGH |
7.2
|
— | Apr 15, 2026 |
| CVE-2026-22676 |
Barracuda RMM versions prior to 2025.2.2 contain a privilege escalation vulnerability that allows lo…
|
HIGH |
7.8
|
— | Apr 15, 2026 |
| CVE-2026-20205 |
In Splunk MCP Server app versions below 1.0.3 , a user who holds a role with access to the Splunk `_…
|
HIGH |
7.2
|
— | Apr 15, 2026 |
| CVE-2026-20204 |
In Splunk Enterprise versions below 10.2.1, 10.0.5, 9.4.10, and 9.3.11, and Splunk Cloud Platform ve…
|
HIGH |
7.1
|
— | Apr 15, 2026 |
| CVE-2026-0827 |
During an internal security assessment, a potential vulnerability was discovered in Lenovo Diagnosti…
|
HIGH |
7.1
|
— | Apr 15, 2026 |
| CVE-2026-6227 |
The BackWPup plugin for WordPress is vulnerable to Local File Inclusion via the `block_name` paramet…
|
HIGH |
7.2
|
— | Apr 14, 2026 |
| CVE-2026-4388 |
The Form Maker by 10Web plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the Ma…
|
HIGH |
7.2
|
— | Apr 14, 2026 |
| CVE-2026-4369 |
A maliciously crafted HTML payload in an assembly variant name, when displayed during the delete con…
|
HIGH |
7.1
|
— | Apr 14, 2026 |
| CVE-2026-4352 |
The JetEngine plugin for WordPress is vulnerable to SQL Injection via the Custom Content Type (CCT) …
|
HIGH |
7.5
|
— | Apr 14, 2026 |
| CVE-2026-4345 |
A maliciously crafted HTML payload, stored in a design name and exported to CSV, can trigger a Store…
|
HIGH |
7.1
|
— | Apr 14, 2026 |