Everything you care about in one place

Follow feeds: blogs, news, RSS and more. An effortless way to read and digest content of your choice.

Get Feeder

cvefeed.io

Latest High/Critical Vulnerabilitiy Feed

Get the latest updates from Latest High/Critical Vulnerabilitiy Feed directly as they happen.

Follow now 163 followers

Latest posts

Last updated about 1 hour ago

CVE-2026-12227 - Visual Composer Website Builder <= 45.16.0 - Unauthenticated Local File Inclusion via 'vcv-template' Parameter

about 3 hours ago

CVEFEED.io, wordfence.com The Visual Composer Website Builder plugin for WordPress is vulnerable...

CVE-2026-78308 - Authentication Bypass in DIAEnergie

about 4 hours ago

Improper Authentication vulnerability in DIAEnergie allows Authentication Bypass. This issue affects DIAEnergie:...

CVE-2026-78309 - SQL Injection in DIAEnergie

about 4 hours ago

SQL Injection vulnerability in DIAEnergie. This issue affects DIAEnergie: before 1.11.00.022. Impact...

CVE-2026-78311 - SQL Injection in DIAEnergie

about 4 hours ago

SQL Injection vulnerability in DIAEnergie. This issue affects DIAEnergie: before 1.11.00.022. Impact...

CVE-2026-78312 - Path Traversal in DIAEnergie

about 4 hours ago

Path Traversal in DIAEnergie. This issue affects DIAEnergie: before 1.11.00.022. Impact Affected...

CVE-2026-85682 - YOP Poll <= 7.0.10 - Unauthenticated Origin Validation Error to Administrator Account Takeover via '/auth/wp-login-redirect' REST Route

about 4 hours ago

CVEFEED.io, wordfence.com The YOP Poll plugin for WordPress is vulnerable to Origin...

CVE-2026-97151 - Mammoth.js Prototype Pollution and Arbitrary File Disclosure

about 10 hours ago

CVEFEED.io mammoth (aka mammoth.js) before 1.12.2 is vulnerable to prototype pollution when...

CVE-2026-96891 - D-Link DIR-825 rp-l2tp tunnel.c tunnel_set_params out-of-bounds write

about 10 hours ago

CVEFEED.io, vuldb.com A vulnerability was identified in D-Link DIR-825 3.00b32. Affected is...

CVE-2026-97152 - Nanomsg WebSocket Transport Buffer Overflow

about 10 hours ago

CVEFEED.io Nanomsg versions 0.5-beta through 1.x before 1.2.3 has a remotely exploitable...

CVE-2026-18467 - Paytium: Mollie payment forms & donations <= 5.0.3 - Unauthenticated Privilege Escalation via 'pt_form_field[pt-user-role]' Parameter

about 12 hours ago

CVEFEED.io The Paytium: Mollie payment forms &amp; donations plugin for WordPress is...

CVE-2026-97055 - SigNoz before 0.143.0 Authentication Bypass via Empty JWT Secret

about 12 hours ago

CVEFEED.io SigNoz from v0.8.0 before v0.143.0 defaults the JWT tokenizer signing secret...

CVE-2026-82370 - Unauthenticated remote command injection in the Brocade SANnav orchestrator HTTP service

about 14 hours ago

CVEFEED.io Unauthenticated remote command injection in the Brocade SANnav orchestrator HTTP service...