VULNERABILITY INTELLIGENCE

CVE index

Use CVSS, EPSS, CISA KEV, affected-version data, and source evidence as separate signals for prioritization.

NVD data is used under its public data terms. This service is not endorsed or certified by NVD.
19,904 CVE recordsPage 655 of 1327 · EPSS data 2026.08.04
ReviewHigh
CVE-2026-47261

bytecodealliance wasmtime

Wasmtime is a runtime for WebAssembly. In versions prior to 24.0.9, 36.0.10, and 44.0.2, when a filesystem preopen is given DirPerms::all() and FilePerms::READ without FilePerms::WRITE, this access control mechanism can be bypassed via the wasip2 descriptor.open-at or wasip1 path_open interfaces by opening a file with only the OpenFlags::TRUNCATE oflag. The root cause is that the clause handling OpenFlags::TRUNCATE in crates/wasi/src/filesystem.rs (Dir::open_at, lines 967–969) did not set open_mode |= OpenMode::WRITE;, which is later used for the access control check against FilePerms to de...

The CVSS severity warrants an early asset and exposure review.
ReviewHigh
CVE-2026-45441

Magepeople inc. WpEvently

CVE-2026-45441 affects Magepeople inc. WpEvently. Review the CVSS score, exploitation signals, affected versions, remediation status, and linked source material before making a change.

The CVSS severity warrants an early asset and exposure review.
ReviewCritical
CVE-2026-45439

Realtyna Realtyna Organic IDX plugin

CVE-2026-45439 affects Realtyna Realtyna Organic IDX plugin. Review the CVSS score, exploitation signals, affected versions, remediation status, and linked source material before making a change.

The CVSS severity warrants an early asset and exposure review.
ReviewHigh
CVE-2026-42775

Ruben Garcia AutomatorWP

CVE-2026-42775 affects Ruben Garcia AutomatorWP. Review the CVSS score, exploitation signals, affected versions, remediation status, and linked source material before making a change.

The CVSS severity warrants an early asset and exposure review.
ReviewHigh
CVE-2026-42687

EventPrime

CVE-2026-42687 affects EventPrime. Review the CVSS score, exploitation signals, affected versions, remediation status, and linked source material before making a change.

The CVSS severity warrants an early asset and exposure review.
ReviewHigh
CVE-2026-42686

EventPrime

CVE-2026-42686 affects EventPrime. Review the CVSS score, exploitation signals, affected versions, remediation status, and linked source material before making a change.

The CVSS severity warrants an early asset and exposure review.
ReviewHigh
CVE-2026-42667

Bookly

CVE-2026-42667 affects Bookly. Review the CVSS score, exploitation signals, affected versions, remediation status, and linked source material before making a change.

The CVSS severity warrants an early asset and exposure review.
ReviewHigh
CVE-2026-42666

Dimitri Grassi Salon booking system

CVE-2026-42666 affects Dimitri Grassi Salon booking system. Review the CVSS score, exploitation signals, affected versions, remediation status, and linked source material before making a change.

The CVSS severity warrants an early asset and exposure review.
ReviewCritical
CVE-2026-42665

Passionate Programmer Peter WP Data Access

CVE-2026-42665 affects Passionate Programmer Peter WP Data Access. Review the CVSS score, exploitation signals, affected versions, remediation status, and linked source material before making a change.

The CVSS severity warrants an early asset and exposure review.
ReviewHigh
CVE-2026-42661

aguilatechnologies WP Customer Area

CVE-2026-42661 affects aguilatechnologies WP Customer Area. Review the CVSS score, exploitation signals, affected versions, remediation status, and linked source material before making a change.

The CVSS severity warrants an early asset and exposure review.
ReviewHigh
CVE-2026-42658

Mamunur Rashid Classified Listing

CVE-2026-42658 affects Mamunur Rashid Classified Listing. Review the CVSS score, exploitation signals, affected versions, remediation status, and linked source material before making a change.

The CVSS severity warrants an early asset and exposure review.
ReviewHigh
CVE-2026-42650

Ruben Garcia AutomatorWP

CVE-2026-42650 affects Ruben Garcia AutomatorWP. Review the CVSS score, exploitation signals, affected versions, remediation status, and linked source material before making a change.

The CVSS severity warrants an early asset and exposure review.