377,174 CVE lengkap 1999–2026

CVE Notifier

Arsip lengkap dari cve.org (CVE Record), skor CVSS dari NVD, dan daftar eksploitasi aktif dari CISA KEV. Ter-update tiap 30 menit.

arsip 377,174 CVE • 12,754 critical • 1,713 KEV

  • 1999–2026
  • 395.000+ CVE
  • cve.org
  • NVD CVSS
  • CISA KEV
  • Auto-update 30m
  • SQLite full-text

Menampilkan 12 dari 377,174 entri — halaman 382/31432

CVE-2026-90696 CWE-79 3.5

SourceCodester Inventory Management System Product Management products_handler.php cross site scripting

A vulnerability was determined in SourceCodester Inventory Management System 1.0. Affected by this issue is some unknown functionality of the file /api/products_handler.php of the component Product Management Module. Exe…

cve.org SourceCodester:Inventory · Management · System 14 Sep 2026
CVE-2026-90695 CWE-79 3.5

SourceCodester Inventory Management System Vendor Management vendors_handler.php cross site scripting

A vulnerability was found in SourceCodester Inventory Management System 1.0. Affected by this vulnerability is an unknown functionality of the file /api/vendors_handler.php of the component Vendor Management. Performing …

cve.org SourceCodester:Inventory · Management · System 14 Sep 2026
CVE-2026-90694 CWE-79 3.5

SourceCodester Inventory Management System Customer Management customers_handler.php cross site scripting

A vulnerability has been found in SourceCodester Inventory Management System 1.0. Affected is an unknown function of the file /api/customers_handler.php of the component Customer Management Module. Such manipulation of t…

cve.org SourceCodester:Inventory · Management · System 14 Sep 2026
CVE-2026-12518 CWE-269 N/A

Local privilege escalation in the Logi Options+ updater service on Windows

A local privilege escalation vulnerability in the Logitech Logi Options+ updater service on Windows allows a low-privileged local user to execute arbitrary code as SYSTEM.

cve.org Logitech:Logi · Options+ 14 Sep 2026
CVE-2026-90693 CWE-121 9.9

D-Link DIR-878 WAN Settings SetWan3Settings stack-based overflow

A flaw has been found in D-Link DIR-878 120B05. This impacts the function SetWan3Settings of the component WAN Settings. This manipulation of the argument Primary/Secondary causes stack-based buffer overflow. Remote expl…

cve.org D-Link:DIR-878 14 Sep 2026
CVE-2026-90692 CWE-121 9.9

D-Link DIR-878 Dynamic DNS IPv6 Settings SetDynamicDNSIPv6Settings stack-based overflow

A vulnerability was detected in D-Link DIR-878 120B05. This affects the function SetDynamicDNSIPv6Settings of the component Dynamic DNS IPv6 Settings. The manipulation of the argument IPv6Address/Hostname results in stac…

cve.org D-Link:DIR-878 14 Sep 2026
CVE-2026-71198 CWE-918 N/A

CVE-2026-71198

In OpenStack Glance before 32.0.1, the location API does not validate destination hosts when adding an HTTP location to an image. Unlike the web-download import path, the location API only checks the URL scheme and does …

MITRE OpenStack:Glance 14 Sep 2026
CVE-2026-85125 CWE-940 5.4

CVE-2026-85125

The Android application "YAMAP -Social Trekking GPS App" contains an improper access control vulnerability in its WebView implementation. The in-app browser may cause information leakage from the app or redirect users to…

cve.org YAMAP · INC.:YAMAP · -Social 14 Sep 2026
CVE-2026-82796 CWE-79 5.4

CVE-2026-82796

SolarView Compact contains a cross-site scripting vulnerability in Image Management. If this vulnerability is exploited, an arbitrary OS command may be executed by an attacker who can log in to the product.

cve.org Contec · Co., · Ltd.:SV-CPT-MC310 14 Sep 2026
CVE-2026-82795 CWE-79 5.4

CVE-2026-82795

SolarView Compact contains a cross-site scripting vulnerability in Schedule Settings and Mail Send Setting. If this vulnerability is exploited, an arbitrary OS command may be executed by an attacker who can log in to the…

cve.org Contec · Co., · Ltd.:SV-CPT-MC310 14 Sep 2026
CVE-2026-82794 CWE-78 8.8

CVE-2026-82794

SolarView Compact contains an OS command Injection vulnerability in in Schedule Settings. If this vulnerability is exploited, an arbitrary OS command may be executed by an attacker who can log in to the product.

cve.org Contec · Co., · Ltd.:SV-CPT-MC310 14 Sep 2026
CVE-2026-82793 CWE-434 7.2

CVE-2026-82793

Unrestricted upload of file with dangerous type issue exists in Contec CAN 2.0B Communication Wireless LAN / USB Converter Unit. If a specially crafted file is uploaded by a remote authenticated attacker, arbitrary code …

cve.org Contec · Co., · Ltd.:CAN-2-WF 14 Sep 2026

Statistik

Arsip lengkap kerentanan dari semua sumber — live dari database.

cache/cve.db • 01 Oct 2026 07:49
377,174 Total CVE terindeks
▲ 1999–2026
60,905 Tahun 2026
12,754 Critical (skor ≥ 9)
1,713 CISA KEV aktif

Distribusi Severity

CVSS v3
12,754 critical
  • Critical 12,754 (8%)
  • High 61,345 (41%)
  • Medium 68,090 (45%)
  • Low 8,634 (6%)
150,872 dinilai • 226,302 belum

Tren CVE per Tahun

1999–2026
2017
2018
2019
2020
2021
2022
2023
2024
2025
2026

cve.org

Arsip penuh CVE dari CVE Program — id, deskripsi, CWE, referensi.

245,461 CVE Record

NVD

Kerentanan dengan skor CVSS v3.x dari NIST National Vulnerability Database.

150,872 CVSS dinilai

Wordfence

Kerentanan plugin/theme WordPress dari Wordfence Intelligence.

11,134 WordPress

WPScan

Kerentanan ekosistem WordPress dari WPScan (Patchstack).

5,444 WordPress

GitHub

CVE yang menyentuh ekosistem GitHub (judul/deskripsi/produk).

3,208 Ekosistem

MITRE

CNA asli yang menerbitkan dan mengelola CVE Record.

114,963 CNA Publish

Sumber Data

cve.org

Arsip CVE Program — id, deskripsi, CWE, referensi. Update tiap 30 menit via delta release.

NVD

Skor CVSS v3.1 untuk entri yang dinilai NIST NVD.

CISA KEV

Kerentanan yang aktif dieksploitasi — prioritas tinggi.

WPScan

Kerentanan ekosistem WordPress.

Wordfence

Kerentanan plugin/theme WordPress.

GitHub

Security Advisories ekosistem open source.