Every CVE of the last six months, updated daily.
Published vulnerabilities straight from the National Vulnerability Database, with severity, CWE class and affected products. Search it, filter it, and see what landed today.
- 450 published in the last 24 hours
- 2,964 in the last 7 days
- 58,450 in the last six months
Source: NVD (National Vulnerability Database) · Updated Sep 23, 2026
Showing 2 of 2
Weintek cMT3092X HMI allows a non-privileged user to modify cookies to gain elevated privileges.
CubeCart is an ecommerce software solution. Prior to 6.7.2, CubeCart 6.6.x – 6.7.1 builds CC_STORE_URL directly from the Host request header at bootstrap, with no allowlist. The constant is embedded verbatim into transactional email links, most critically the
Find the bug before an attacker does.
Sign in with GitHub and run your first audit in under a minute. The free plan needs no credit card.