Total
4394 CVE
| CVE | Vendors | Products | Updated | CVSS v2 | CVSS v3 |
|---|---|---|---|---|---|
| CVE-2026-18391 | 2026-08-26 | N/A | 9.8 CRITICAL | ||
| The WooCommerce Subscriptions WordPress plugin before 9.1.0 does not validate user input before unserializing it on stores with High-Performance Order Storage enabled, leading to a PHP Object Injection issue which unauthenticated users can escalate to Remote Code Execution via a gadget chain present in the bundled dependencies. | |||||
| CVE-2026-19089 | 2026-08-26 | N/A | 9.8 CRITICAL | ||
| The Product Input Fields for WooCommerce WordPress plugin before 2.0.2 does not validate uploaded file types when its accepted-types setting is left empty, which its own documentation advertises as accepting all files, allowing unauthenticated attackers to upload arbitrary files and achieve remote code execution on servers that do not honour the directory's access rules. | |||||
| CVE-2026-18080 | 2026-08-26 | N/A | 9.8 CRITICAL | ||
| The ERP: Complete HR, Accounting & CRM Suite Built for WooCommerce plugin for WordPress is vulnerable to Unrestricted File Type Upload in all versions up to, and including, 1.17.8 via the save_attachments() function. This is due to missing file extension validation and missing path normalization when CRM Email Connect processes inbound IMAP email attachments. This makes it possible for unauthenticated attackers to send a crafted email to the site's configured inbound mailbox with a forged References header matching the plugin's expected pattern and an attachment filename such as `../helper.php`, causing the cron-based IMAP sync job to write attacker-controlled PHP outside of the .htaccess-protected `crm-attachments` directory and into `wp-content/uploads/`. On configurations where PHP executes in uploads, this can lead to remote code execution. Exploitation requires the CRM module and IMAP Email Connect feature to be enabled and configured. | |||||
| CVE-2026-80050 | 2026-08-26 | N/A | 6.5 MEDIUM | ||
| ContiNew Admin fails to apply file-upload permission checks or file-type allowlist validation to multipart upload endpoints, allowing authenticated users to store files with arbitrary extensions. Attackers can initialize chunked uploads, send file parts, and complete uploads to leave arbitrary files in the storage backend accessible via web server URLs. | |||||
| CVE-2026-77681 | 2026-08-26 | 6.5 MEDIUM | 6.3 MEDIUM | ||
| A vulnerability was identified in CodeAstro Online Job Portal 1.0. Affected by this vulnerability is an unknown functionality of the file /users/update-profile.php. The manipulation of the argument Name leads to unrestricted upload. The attack can be initiated remotely. The exploit is publicly available and might be used. | |||||
| CVE-2017-12617 | 6 Apache, Canonical, Debian and 3 more | 58 Tomcat, Ubuntu Linux, Debian Linux and 55 more | 2026-08-25 | 6.8 MEDIUM | 8.1 HIGH |
| When running Apache Tomcat versions 9.0.0.M1 to 9.0.0, 8.5.0 to 8.5.22, 8.0.0.RC1 to 8.0.46 and 7.0.0 to 7.0.81 with HTTP PUTs enabled (e.g. via setting the readonly initialisation parameter of the Default servlet to false) it was possible to upload a JSP file to the server via a specially crafted request. This JSP could then be requested and any code it contained would be executed by the server. | |||||
| CVE-2025-23171 | 1 Versa-networks | 1 Versa Director | 2026-08-25 | N/A | 7.2 HIGH |
| The Versa Director SD-WAN orchestration platform provides an option to upload various types of files. The Versa Director does not correctly limit file upload permissions. The UI appears not to allow file uploads but uploads still succeed. In addition, the Versa Director discloses the full filename of uploaded temporary files, including the UUID prefix. Insecure UCPE image upload in Versa Director allows an authenticated attacker to upload a webshell. Exploitation Status: Versa Networks is not aware of any reported instance where this vulnerability was exploited. Proof of concept for this vulnerability has been disclosed by third party security researchers. Workarounds or Mitigation: There are no workarounds to disable the GUI option. Versa recommends that Director be upgraded to one of the remediated software versions. | |||||
| CVE-2026-78202 | 2026-08-24 | 7.5 HIGH | 7.3 HIGH | ||
| A vulnerability was found in itsourcecode Payroll System 1.0. This affects the function save_settings of the file admin_class.php. The manipulation of the argument img results in unrestricted upload. The attack may be performed from remote. The exploit has been made public and could be used. | |||||
| CVE-2026-78245 | 2026-08-24 | 7.5 HIGH | 7.3 HIGH | ||
| A flaw has been found in itsourcecode Online Pharmacy System 1.0. This affects the function move_uploaded_file of the file all_users/register.php of the component User Registration. Executing a manipulation of the argument photo can lead to unrestricted upload. The attack may be launched remotely. The exploit has been published and may be used. | |||||
| CVE-2026-76995 | 2026-08-24 | 5.8 MEDIUM | 4.7 MEDIUM | ||
| A vulnerability was identified in SourceCodester Simple Online Food Ordering System 1.0. This issue affects some unknown processing of the file /admin/ajax.php?action=save_menu. The manipulation of the argument img leads to unrestricted upload. The attack is possible to be carried out remotely. The exploit is publicly available and might be used. | |||||
| CVE-2026-76800 | 2026-08-21 | 6.5 MEDIUM | 6.3 MEDIUM | ||
| A flaw has been found in DeDeCMS 3. Affected by this vulnerability is an unknown functionality of the file /include/dialog/select_media_post.php. Executing a manipulation of the argument uploadfile can lead to unrestricted upload. The attack can be executed remotely. The exploit has been published and may be used. | |||||
| CVE-2026-74016 | 2026-08-20 | N/A | 9.9 CRITICAL | ||
| Subscriber Arbitrary File Upload in Smart Cleaning <= 4.8.6 versions. | |||||
| CVE-2026-74014 | 2026-08-20 | N/A | 9.9 CRITICAL | ||
| Subscriber Arbitrary File Upload in IT Residence <= 3.2.1 versions. | |||||
| CVE-2026-66600 | 2026-08-20 | N/A | 9.1 CRITICAL | ||
| Author Arbitrary File Upload in Media LIbrary Assistant <= 3.39 versions. | |||||
| CVE-2026-74018 | 2026-08-20 | N/A | 9.9 CRITICAL | ||
| Subscriber Arbitrary File Upload in Warehouse Cargo <= 2.6.9 versions. | |||||
| CVE-2026-32463 | 2026-08-20 | N/A | 9.9 CRITICAL | ||
| Contributor Arbitrary File Upload in Sync Post With Other Site <= 1.9.3 versions. | |||||
| CVE-2026-32474 | 2026-08-20 | N/A | 9.9 CRITICAL | ||
| Contributor Arbitrary File Upload in Templatiq <= 0.2.5 versions. | |||||
| CVE-2024-14046 | 2026-08-20 | 6.5 MEDIUM | 6.3 MEDIUM | ||
| A security vulnerability has been detected in OpenBoxes up to 0.9.1. This issue affects the function DocumentController of the file grails-app/controllers/org/pih/warehouse/core/DocumentController.groovy of the component Document Upload Controller. The manipulation leads to unrestricted upload. It is possible to initiate the attack remotely. The exploit has been disclosed publicly and may be used. Upgrading to version 0.9.2 is capable of addressing this issue. The identifier of the patch is e945d6bfcec29642f514e7d298dfba2cc6cd7cd4. Upgrading the affected component is recommended. | |||||
| CVE-2026-28192 | 2026-08-20 | N/A | 9.6 CRITICAL | ||
| Unauthenticated Arbitrary File Upload in Piotnet Addons For Elementor Pro <= 7.1.67 versions. | |||||
| CVE-2026-32475 | 2026-08-20 | N/A | 9.0 CRITICAL | ||
| Unrestricted Upload of File with Dangerous Type vulnerability in Elementor Elementor Pro allows Using Malicious Files. This issue affects Elementor Pro: from n/a through 4.2.1. | |||||
