VulnSea

CWE-269

CVEs classified under CWE-269, newest first.

470 CVEsRSS

CVE-2026-14359High· 8.8
2w ago

The YITH WooCommerce Waitlist Premium plugin for WordPress is vulnerable to Privilege Escalation in versions up to, and including, 3.35.0

The YITH WooCommerce Waitlist Premium plugin for WordPress is vulnerable to Privilege Escalation in versions up to, and including, 3.35.0. This is due to the add_user_in_waiting_list() function registered on the wp_ajax_yith_wcwtl_add_us…

▾ TwilightYith · YITH WooCommerce Waitlist PremiumEPSS 0.24%via NVD
CVE-2026-17553High· 7.2
2w ago

The WP EasyCart plugin for WordPress is vulnerable to privilege escalation in versions up to, and including, 5.9.3

The WP EasyCart plugin for WordPress is vulnerable to privilege escalation in versions up to, and including, 5.9.3. This is due to the ec_ajax_save_page_default_options() AJAX handler iterating over every $_POST key and passing it direct…

▾ Twilightlevelfourstorefront · Shopping Cart & eCommerce StoreEPSS 0.43%via NVD
CVE-2026-76801High· 8.8
2w ago

The FireBox – WooCommerce Popup Builder, Exit Intent Popup, Email Optin & Cart Abandonment plugin for WordPress is vulnerable to Remote Code Execution in all versions up to, and including, 3.1.10 via the value function

The FireBox – WooCommerce Popup Builder, Exit Intent Popup, Email Optin & Cart Abandonment plugin for WordPress is vulnerable to Remote Code Execution in all versions up to, and including, 3.1.10 via the value function. This is due to a …

▾ Twilightfireplugins · FireBox – WooCommerce Popup Builder, Exit Intent Popup, Email Optin & Cart AbandonmentEPSS 0.94%via NVD
CVE-2026-28659High· 7.8⚖ disputed
2w ago

In MicroXR Blobstore, there is a possible way to access other app's files due to a missing permission check

In MicroXR Blobstore, there is a possible way to access other app's files due to a missing permission check. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is not needed …

▾ Twilightgoogle · android_xrEPSS 0.19%via NVD
CVE-2026-84869Critical· 9.9CISA KEVPoC
2w ago

A condition in the ScreenConnect client may allow files to be transferred and executed through an active remote session without authorization or Host confirmation in certain circumstances

A condition in the ScreenConnect client may allow files to be transferred and executed through an active remote session without authorization or Host confirmation in certain circumstances. ScreenConnect servers are not impacted.

▾ Hadalconnectwise · screenconnectEPSS 0.92%via NVD
CVE-2026-49883Medium· 5.5⚖ disputed
2w ago

In checkReadPermission of PermissionsManager.java, there is a possible way to monitor sensitive device state data due to a missing permission check

In checkReadPermission of PermissionsManager.java, there is a possible way to monitor sensitive device state data due to a missing permission check. This could lead to local information disclosure with no additional execution privileges …

▾ Sunlitgoogle · androidEPSS 0.17%via NVD
CVE-2026-58874High· 7.8
2w ago

In multiple functions of SmsController.java, there is a possible escalation of privilege due to a missing permission check

In multiple functions of SmsController.java, there is a possible escalation of privilege due to a missing permission check. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction…

▾ Twilightgoogle · androidEPSS 0.09%via NVD
CVE-2026-58846High· 7.8
2w ago

In kvm_iommu_map_sg of iommu.c, there is a possible use after free due to a missing permission check

In kvm_iommu_map_sg of iommu.c, there is a possible use after free due to a missing permission check. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is not needed for exp…

▾ Twilightgoogle · androidEPSS 0.11%via NVD
CVE-2026-68830Medium· 5.5
2w ago

Improper link resolution before file access ('link following') in Windows Universal Plug and Play (UPnP) Device Host allows an authorized attacker to disclose information locally.

Improper link resolution before file access ('link following') in Windows Universal Plug and Play (UPnP) Device Host allows an authorized attacker to disclose information locally.

▾ Sunlitmicrosoft · windows_10_1607EPSS 0.37%via NVD
CVE-2026-66818High· 8.8
2w ago

Improper privilege management in SQL Server allows an authorized attacker to elevate privileges over a network.

Improper privilege management in SQL Server allows an authorized attacker to elevate privileges over a network.

▾ Twilightmicrosoft · sql_server_2017EPSS 0.78%via NVD
CVE-2026-77968High· 8.2
2w ago

A flaw was found in hawtio-operator

A flaw was found in hawtio-operator. The operator's ClusterRole grants secrets: [create, get, list, update, watch] across all namespaces. While the operator uses a controller-runtime label-selector cache as a memory optimization, the Ser…

▾ TwilightRed Hat · rhbac-4/hawtio-operator-bundleEPSS 0.42%via NVD
CVE-2026-86516Medium· 4.7
2w ago

A vulnerability was detected in elenavanengelenmaslova mocknest-serverless 0.9.0

A vulnerability was detected in elenavanengelenmaslova mocknest-serverless 0.9.0. The affected element is an unknown function of the file deployment/aws/shared/github-oidc-role.yaml of the component AWS GitHub OIDC Deployment Helper Scri…

▾ Sunlitelenavanengelenmaslova · mocknest-serverlessEPSS 0.40%via NVD
CVE-2026-85640Medium· 6.3
2w ago

Zohocorp ManageEngine Endpoint Central versions below 11.5.2600.15 are vulnerable to Privilege Escalation Due to Outdated Component

Zohocorp ManageEngine Endpoint Central versions below 11.5.2600.15 are vulnerable to Privilege Escalation Due to Outdated Component

▾ SunlitEPSS 0.38%via NVD
CVE-2026-14444High· 7.5
2w ago

The WP Fusion (Pro) plugin for WordPress is vulnerable to Privilege Escalation in all versions up to, and including, 3.47.13

The WP Fusion (Pro) plugin for WordPress is vulnerable to Privilege Escalation in all versions up to, and including, 3.47.13. This is due to insufficient authorization checks on the role parameter in the ThriveCart Auto Login handler's t…

▾ TwilightVery Good Plugins · WP Fusion (Pro)EPSS 0.21%via NVD
CVE-2026-77697Medium· 6.3
2w ago

Zohocorp ManageEngine Endpoint Central versions below 11.4.2540.23 are vulnerable to Privilege Escalation During JAR Extraction

Zohocorp ManageEngine Endpoint Central versions below 11.4.2540.23 are vulnerable to Privilege Escalation During JAR Extraction

▾ SunlitZohocorp · ManageEngine Endpoint CentralEPSS 0.38%via NVD
CVE-2026-80166High· 7.8
2w ago

Dell SCG 5.0 Appliance versions prior to 5.36.00.16 and Dell SCG 5.0 Application versions prior to 5.36.00.00, contains an Improper Privilege Management vulnerability

Dell SCG 5.0 Appliance versions prior to 5.36.00.16 and Dell SCG 5.0 Application versions prior to 5.36.00.00, contains an Improper Privilege Management vulnerability. An unauthenticated attacker with local access could potentially explo…

▾ Twilightdell · secure_connect_gatewayEPSS 0.14%via NVD
CVE-2026-80178Medium· 5.5
2w ago

Dell SCG 5.0 Appliance versions prior to 5.36.00.16 and Dell SCG 5.0 Application versions prior to 5.36.00.00, contains an Improper Privilege Management vulnerability

Dell SCG 5.0 Appliance versions prior to 5.36.00.16 and Dell SCG 5.0 Application versions prior to 5.36.00.00, contains an Improper Privilege Management vulnerability. A low privileged attacker with local access could potentially exploit…

▾ Sunlitdell · secure_connect_gatewayEPSS 0.14%via NVD
CVE-2026-77699Medium· 5.0
2w ago

Zohocorp ManageEngine Endpoint Central versions below 11.5.2605.01 are vulnerable to Local privilege escalation due to loading a dll from an untrusted path.

Zohocorp ManageEngine Endpoint Central versions below 11.5.2605.01 are vulnerable to Local privilege escalation due to loading a dll from an untrusted path.

▾ SunlitZohocorp · ManageEngine Endpoint CentralEPSS 0.29%via NVD
CVE-2026-77698Medium· 5.7
2w ago

Zohocorp ManageEngine Endpoint Central versions before 11.5.2605.01 are vulnerable to local privilege escalation due to Agent upgrade.

Zohocorp ManageEngine Endpoint Central versions before 11.5.2605.01 are vulnerable to local privilege escalation due to Agent upgrade.

▾ SunlitZohocorp · ManageEngine Endpoint CentralEPSS 0.35%via NVD
CVE-2026-86275Medium· 5.3PoC
2w ago

A vulnerability was detected in SourceCodester Syllabus-Aligned Learning Management & Examination System 1.0

A vulnerability was detected in SourceCodester Syllabus-Aligned Learning Management & Examination System 1.0. This vulnerability affects the function register of the file auth.php. Performing a manipulation of the argument role results i…

▾ TwilightSourceCodester · Syllabus-Aligned Learning Management & Examination SystemEPSS 0.48%via NVD
CVE-2026-18480High· 8.8
3w ago

The SureCart WordPress plugin before 4.6.3 does not ensure that the account affected by a customer update is the same account its permission check authorised, allowing users with a subscriber-level account to change another user's email…

The SureCart WordPress plugin before 4.6.3 does not ensure that the account affected by a customer update is the same account its permission check authorised, allowing users with a subscriber-level account to change another user's email…

▾ TwilightEPSS 0.24%via NVD
CVE-2026-86153Critical· 9.1
3w ago

A vulnerability has been found in Tenda CP3 27.5.57.101

A vulnerability has been found in Tenda CP3 27.5.57.101. This affects the function CRedirServer::SetRedirectEnable of the file Functions/Redirect.cpp. The manipulation leads to improper privilege management. Remote exploitation of the at…

▾ MidnightTenda · CP3EPSS 0.71%via NVD
CVE-2026-86195High· 8.7PoC
3w ago

grav-plugin-api versions before 1.0.20 contain a privilege escalation vulnerability in the InvitationsController where the stripSuperFlags() method only removes nested super flags but fails to strip dot-keyed equivalents like api.super

grav-plugin-api versions before 1.0.20 contain a privilege escalation vulnerability in the InvitationsController where the stripSuperFlags() method only removes nested super flags but fails to strip dot-keyed equivalents like api.super. …

▾ Midnightgetgrav · grav-plugin-apiEPSS 0.39%via NVD
CVE-2026-81543High· 8.8
3w ago

The Abandoned Cart Pro for WooCommerce plugin for WordPress is vulnerable to Privilege Escalation in all versions up to, and including, 10.7.1

The Abandoned Cart Pro for WooCommerce plugin for WordPress is vulnerable to Privilege Escalation in all versions up to, and including, 10.7.1. This is due to missing capability checks and nonce verification on multiple AJAX actions incl…

▾ TwilightEPSS 0.44%via NVD
CVE-2026-78362Critical· 9.8
3w ago

The SEO Flow by LupsOnline WordPress plugin before 3.0.3 does not correctly validate the credential supplied with its API requests, allowing unauthenticated users to be served as the administrator who configured the SEO Flow by LupsOnlin…

The SEO Flow by LupsOnline WordPress plugin before 3.0.3 does not correctly validate the credential supplied with its API requests, allowing unauthenticated users to be served as the administrator who configured the SEO Flow by LupsOnlin…

▾ MidnightEPSS 0.50%via NVD
CVE-2026-75166High· 8.8
3w ago

Insecure Permission vulnerability in MBS-Solutions X-Serie Gateway firmware V6_00_05 allows the low-privileged service user to execute /usr/bin/tcpdump as root without a password

Insecure Permission vulnerability in MBS-Solutions X-Serie Gateway firmware V6_00_05 allows the low-privileged service user to execute /usr/bin/tcpdump as root without a password. By leveraging the tcpdump -z option, an authenticated att…

▾ TwilightEPSS 0.74%via NVD
CVE-2026-71625Critical· 9.8PoC
3w ago

An issue in slimkit plus ThinkSNS+ v.2.4 allows a remote attacker to escalate privileges via the ResetPasswordController.php component

An issue in slimkit plus ThinkSNS+ v.2.4 allows a remote attacker to escalate privileges via the ResetPasswordController.php component

▾ AbyssalEPSS 0.74%via NVD
CVE-2026-75160Critical· 9.1
3w ago

An issue in X-Serie Gateway Firmware V6_00_05 allows a remote attacker to escalate privileges via the endpoints /cgi-bin/wwwugw.cgi and /cgi-bin/ugwdownload.cgi.

An issue in X-Serie Gateway Firmware V6_00_05 allows a remote attacker to escalate privileges via the endpoints /cgi-bin/wwwugw.cgi and /cgi-bin/ugwdownload.cgi.

▾ MidnightEPSS 0.60%via NVD
CVE-2026-85513Medium· 6.3PoC
3w ago

StackStorm st2 NoOp RBAC backend actionexecutions.py privileges management

A weakness has been identified in StackStorm st2 up to 3.9.0. This issue affects the function assert_user_is_admin_if_user_query_param_is_provided of the file st2api/st2api/controllers/v1/actionexecutions.py of the component NoOp RBAC ba…

▾ TwilightStackStorm · st2EPSS 0.43%via CVEORG
CVE-2026-85154Critical· 9.8
3w ago

WWBN AVideo contains an authentication failure vulnerability where the video_id_hash credential is a non-expiring, non-revocable bearer token that grants full administrator session access to the video owner's account

WWBN AVideo contains an authentication failure vulnerability where the video_id_hash credential is a non-expiring, non-revocable bearer token that grants full administrator session access to the video owner's account. Attackers who obtai…

▾ MidnightEPSS 0.64%via NVD
CWE-269 vulnerabilities (CVEs) — page 10 · VulnSea