🛡️ CVE Vulnerability Database
CVE vulnerabilities with bilingual AI analysis tailored for Saudi Arabia
| CVE ID | Title / Description | Severity | CVSS | Status | Published |
|---|---|---|---|---|---|
| CVE-2026-22719 |
VMware Aria Operations contains a command injection vulnerability…
VMware Aria Operations contains a command injection vulnerability. A malicious unauthenticated actor…
|
HIGH |
8.1
|
⚡ ✅ KEV | Feb 25, 2026 |
| CVE-2026-25924 |
Kanboard is project management software focused on Kanban methodo…
Kanboard is project management software focused on Kanban methodology. Prior to 1.2.50, a security c…
|
HIGH |
8.4
|
⚡ ✅ | Feb 11, 2026 |
| CVE-2026-1560 |
The Custom Block Builder – Lazy Blocks plugin for WordPress is vu…
The Custom Block Builder – Lazy Blocks plugin for WordPress is vulnerable to Remote Code Execution i…
|
HIGH |
8.8
|
✅ | Feb 11, 2026 |
| CVE-2025-14541 |
The Lucky Wheel Giveaway plugin for WordPress is vulnerable to Re…
The Lucky Wheel Giveaway plugin for WordPress is vulnerable to Remote Code Execution in all versions…
|
HIGH |
7.2
|
✅ | Feb 11, 2026 |
| CVE-2026-25951 |
FUXA is a web-based Process Visualization (SCADA/HMI/Dashboard) s…
FUXA is a web-based Process Visualization (SCADA/HMI/Dashboard) software. Prior to 1.2.11, there is …
|
HIGH |
7.2
|
✅ | Feb 9, 2026 |
| CVE-2026-25498 |
Craft is a platform for creating digital experiences. In versions…
Craft is a platform for creating digital experiences. In versions 4.0.0-RC1 through 4.16.17 and 5.0.…
|
HIGH |
7.2
|
⚡ ✅ | Feb 9, 2026 |
| CVE-2020-37154 |
eLection 2.0 contains an authenticated SQL injection vulnerabilit…
eLection 2.0 contains an authenticated SQL injection vulnerability in the candidate management endpo…
|
HIGH |
7.1
|
✅ | Feb 7, 2026 |
| CVE-2020-37142 |
10-Strike Network Inventory Explorer 8.54 contains a structured e…
10-Strike Network Inventory Explorer 8.54 contains a structured exception handler buffer overflow vu…
|
HIGH |
8.4
|
✅ | Feb 5, 2026 |
| CVE-2026-25512 |
Group-Office is an enterprise customer relationship management an…
Group-Office is an enterprise customer relationship management and groupware tool. Prior to versions…
|
HIGH |
8.8
|
⚡ ✅ | Feb 4, 2026 |
| CVE-2026-25056 |
n8n is an open source workflow automation platform. Prior to vers…
n8n is an open source workflow automation platform. Prior to versions 1.118.0 and 2.4.0, a vulnerabi…
|
HIGH |
8.8
|
✅ | Feb 4, 2026 |
| CVE-2026-25055 |
n8n is an open source workflow automation platform. Prior to vers…
n8n is an open source workflow automation platform. Prior to versions 1.123.12 and 2.4.0, when workf…
|
HIGH |
8.1
|
✅ | Feb 4, 2026 |
| CVE-2026-1756 |
The WP FOFT Loader plugin for WordPress is vulnerable to arbitrar…
The WP FOFT Loader plugin for WordPress is vulnerable to arbitrary file uploads due to incorrect fil…
|
HIGH |
8.8
|
✅ | Feb 4, 2026 |
| CVE-2026-1730 |
The OS DataHub Maps plugin for WordPress is vulnerable to arbitra…
The OS DataHub Maps plugin for WordPress is vulnerable to arbitrary file uploads due to incorrect fi…
|
HIGH |
8.8
|
✅ | Feb 3, 2026 |
| CVE-2020-37113 |
GUnet OpenEclass 1.7.3 allows authenticated users to bypass file …
GUnet OpenEclass 1.7.3 allows authenticated users to bypass file extension restrictions when uploadi…
|
HIGH |
8.8
|
⚡ ✅ | Feb 3, 2026 |
| CVE-2020-37084 |
School ERP Pro 1.0 contains a remote code execution vulnerability…
School ERP Pro 1.0 contains a remote code execution vulnerability that allows authenticated admin us…
|
HIGH |
7.2
|
⚡ ✅ | Feb 3, 2026 |
| CVE-2026-25134 |
Group-Office is an enterprise customer relationship management an…
Group-Office is an enterprise customer relationship management and groupware tool. Prior to 6.8.150,…
|
HIGH |
8.8
|
⚡ ✅ | Feb 2, 2026 |
| CVE-2026-0805 |
An input neutralization vulnerability in the Backup Configuration…
An input neutralization vulnerability in the Backup Configuration component of Crafty Controller all…
|
HIGH |
8.2
|
✅ | Jan 30, 2026 |
| CVE-2020-37032 |
Wing FTP Server 6.3.8 contains a remote code execution vulnerabil…
Wing FTP Server 6.3.8 contains a remote code execution vulnerability in its Lua-based web console th…
|
HIGH |
8.8
|
⚡ ✅ | Jan 30, 2026 |
| CVE-2026-25116 |
Runtipi is a personal homeserver orchestrator. Starting in versio…
Runtipi is a personal homeserver orchestrator. Starting in version 4.5.0 and prior to version 4.7.2,…
|
HIGH |
7.6
|
⚡ ✅ | Jan 29, 2026 |
| CVE-2026-24780 |
AutoGPT is a platform that allows users to create, deploy, and ma…
AutoGPT is a platform that allows users to create, deploy, and manage continuous artificial intellig…
|
HIGH |
8.8
|
⚡ ✅ | Jan 29, 2026 |
| CVE-2026-1400 |
The AI Engine – The Chatbot and AI Framework for WordPress plugin…
The AI Engine – The Chatbot and AI Framework for WordPress plugin for WordPress is vulnerable to arb…
|
HIGH |
7.2
|
✅ | Jan 28, 2026 |
| CVE-2026-0911 |
The Hustle – Email Marketing, Lead Generation, Optins, Popups plu…
The Hustle – Email Marketing, Lead Generation, Optins, Popups plugin for WordPress is vulnerable to …
|
HIGH |
7.5
|
✅ | Jan 24, 2026 |
| CVE-2026-0796 |
ALGO 8180 IP Audio Alerter Web UI Command Injection Remote Code E…
ALGO 8180 IP Audio Alerter Web UI Command Injection Remote Code Execution Vulnerability. This vulner…
|
HIGH |
8.8
|
✅ | Jan 23, 2026 |
| CVE-2026-0795 |
ALGO 8180 IP Audio Alerter Web UI Command Injection Remote Code E…
ALGO 8180 IP Audio Alerter Web UI Command Injection Remote Code Execution Vulnerability. This vulner…
|
HIGH |
8.8
|
✅ | Jan 23, 2026 |
| CVE-2026-0786 |
ALGO 8180 IP Audio Alerter SCI Command Injection Remote Code Exec…
ALGO 8180 IP Audio Alerter SCI Command Injection Remote Code Execution Vulnerability. This vulnerabi…
|
HIGH |
8.8
|
✅ | Jan 23, 2026 |