CVEリスト - 高リスク・悪用確認済み脆弱性

NVD や CVE、ほか複数の脅威フィードを束ね、RCE など高リスクな事象を深く追える一覧です。CVSS と EPSS を組み合わせ、Exploit 参照や PoC の有無から悪用しやすさを追跡します。ベンダー修正や緩和策の文脈とあわせて優先度を決め、対応サイクルを短く保ちつつ重要資産を守る支援をします。

Assigner(CNA/発行元):[email protected] この条件を外す

CVSS スコア
表示中 120 / 1195
«« 先頭 « 前へ 1 / 60 次へ »
CVE 説明 CVSS 最大値 EPSS(%) 公開 更新
CVE-2026-9691 Unauthenticated PHP Object Injection in Integration for ActiveCampaign and Contact Form 7, WPForms, Elementor, Ninja Forms <= 1.1.1 versions. 9.8 0.48% 2026-06-15 2026-06-17
CVE-2026-57700 Unrestricted Upload of File with Dangerous Type vulnerability in Daan.Dev OMGF Pro allows Using Malicious Files. This issue affects OMGF Pro: from n/a through 5.2.6. 10.0 0.37% 2026-06-25 2026-06-29
CVE-2026-57658 Administrator Arbitrary File Upload in TemplateSpare <= 4.2.0 versions. 9.1 0.28% 2026-06-26 2026-06-26
CVE-2026-57331 Performer Arbitrary File Deletion in Paid Videochat Turnkey Site <= 7.4.8 versions. 9.9 該当なし 2026-06-29 2026-06-29
CVE-2026-56070 Unauthenticated SQL Injection in Advance Product Search <= 1.4.4 versions. 9.3 0.24% 2026-06-26 2026-06-26
CVE-2026-56068 Unauthenticated SQL Injection in JetEngine <= 3.8.10.2 versions. 9.3 0.24% 2026-06-26 2026-06-29
CVE-2026-56067 Unauthenticated SQL Injection in JetSmartFilters <= 3.8.3 versions. 9.3 0.24% 2026-06-26 2026-06-26
CVE-2026-56062 Unauthenticated SQL Injection in Quotes llama <= 3.1.5 versions. 9.3 0.24% 2026-06-26 2026-06-26
CVE-2026-56059 Subscriber Arbitrary File Upload in Travel Booking <= 2.2.5 versions. 9.9 0.36% 2026-06-26 2026-06-26
CVE-2026-56058 Subscriber Arbitrary File Upload in Quform <= 2.23.0 versions. 9.9 0.36% 2026-06-26 2026-06-26
CVE-2026-56057 Subscriber PHP Object Injection in Uncanny Automator Pro <= 7.3.0.6 versions. 9.8 0.43% 2026-06-26 2026-06-26
CVE-2026-56036 Unauthenticated SQL Injection in 워드프레스 결제 심플페이 <= 5.5.6 versions. 9.3 0.24% 2026-06-26 2026-06-26
CVE-2026-56034 Unauthenticated SQL Injection in Library Management System <= 3.5.7 versions. 9.3 0.29% 2026-06-26 2026-06-29
CVE-2026-56033 Unauthenticated Privilege Escalation in Dokan Pro <= 5.0.4 versions. 9.8 0.33% 2026-06-26 2026-06-26
CVE-2026-56032 Subscriber PHP Object Injection in Buddyboss Platform <= 3.0.4 versions. 9.8 0.53% 2026-06-26 2026-06-26
CVE-2026-56030 Unauthenticated Privilege Escalation in Paytium <= 5.0.2 versions. 9.8 0.33% 2026-06-26 2026-06-26
CVE-2026-56028 Unauthenticated Privilege Escalation in Easy Elements for Elementor &#8211; Addons &amp; Website Templates <= 1.4.9 versions. 9.8 0.36% 2026-06-26 2026-06-29
CVE-2026-56027 Customer Arbitrary File Upload in Booster for WooCommerce <= 8.0.1 versions. 9.9 0.33% 2026-06-26 2026-06-26
CVE-2026-54849 Unauthenticated SQL Injection in Premmerce Wishlist for WooCommerce <= 1.1.11 versions. 9.3 0.23% 2026-06-25 2026-06-25
CVE-2026-54843 Unauthenticated SQL Injection in MDTF <= 1.3.7 versions. 9.3 0.23% 2026-06-25 2026-06-25
«« 先頭 « 前へ 1 / 60 次へ »
cvelogic Threat Intelligence