CVE Database

Comprehensive vulnerability intelligence with advanced analytics

In the Linux kernel, the following vulnerability has been resolved: scs: fix a wrong parameter in __scs_magic __scs_magic() needs a 'void *' variable, but a 'struct task_struct *' is given. 'task_scs(tsk)' is the starting address of the task's shadow call stack, and '__scs_magic(task_scs(tsk))' is the end address of the task's…

Published: Jan 14, 2026
Modified: Jan 14, 2026
EPSS: 0.02%
View Details
5.3

Libsndfile

Published: Jan 14, 2026
Modified: Jan 14, 2026
EPSS: 0.04%
View Details

In Crazy Bubble Tea mobile application authenticated attacker can obtain personal information about other users by enumerating a `loyaltyGuestId` parameter. Server does not verify the permissions required to obtain the data. This issue was fixed in version 915 (Android) and 7.4.1 (iOS).

Published: Jan 14, 2026
Modified: Jan 14, 2026
EPSS: 0.03%
View Details

Y Soft SafeQ 6 renders the Workflow Connector password field in a way that allows an administrator with UI access to reveal the value using browser developer/inspection tools. The affected customers are only those with a password-protected scan workflow connector. This issue affects Y Soft SafeQ 6 in versions before MU106.

Published: Jan 14, 2026
Modified: Jan 14, 2026
EPSS: 0.03%
View Details

A Improper Authentication vulnerability in TLP allows local users to arbitrarily control the power profile in use as well as the daemon’s log settings.This issue affects TLP: from 1.9 before 1.9.1.

Published: Jan 14, 2026
Modified: Jan 14, 2026
EPSS: 0.02%
View Details
5.3

Cypher Injection vulnerability in Apache Camel camel-neo4j component. This issue affects Apache Camel: from 4.10.0 before 4.10.8, from 4.14.0 before 4.14.3, from 4.15.0 before 4.17.0 Users are recommended to upgrade to version 4.10.8 for 4.10.x LTS and 4.14.3 for 4.14.x LTS and 4.17.0.

Published: Jan 14, 2026
Modified: Jan 15, 2026
EPSS: 0.02%
View Details

Lack of authorization of the InputManager D-Bus interface in InputPlumber versions before v0.63.0 can lead to local Denial-of-Service, information leak or even privilege escalation in the context of the currently active user session.

Published: Jan 14, 2026
Modified: Jan 14, 2026
EPSS: 0.01%
View Details

Polkit authentication dis isabled by default and a race condition in the Polkit authorization check in versions before v0.69.0 can lead to the same issues as in CVE-2025-66005.

Published: Jan 14, 2026
Modified: Jan 14, 2026
EPSS: 0.02%
View Details
8.6

External Control of File Name or Path (CWE-73) combined with Server-Side Request Forgery (CWE-918) can allow an attacker to cause arbitrary file disclosure through a specially crafted credentials JSON payload in the Google Gemini connector configuration. This requires an attacker to have authenticated access with privileges sufficient to create or…

Published: Jan 14, 2026
Modified: Jan 14, 2026
EPSS: 0.03%
View Details
5.4

In certain Arm CPUs, a CPP RCTX instruction executed on one Processing Element (PE) may inhibit TLB invalidation when a TLBI is issued to the PE, either by the same PE or another PE in the shareability domain. In this case, the PE may retain stale TLB entries which should…

Published: Jan 14, 2026
Modified: Jan 15, 2026
EPSS: 0.02%
View Details
6.5

Improper Validation of Array Index (CWE-129) in Packetbeat’s MongoDB protocol parser can allow an attacker to cause Overflow Buffers (CAPEC-100) through specially crafted network traffic. This requires an attacker to send a malformed payload to a monitored network interface where MongoDB protocol parsing is enabled.

Published: Jan 14, 2026
Modified: Jan 14, 2026
EPSS: 0.02%
View Details
10.0

Incorrect Privilege Assignment vulnerability in Modular DS allows Privilege Escalation.This issue affects Modular DS: from n/a through 2.5.1.

Published: Jan 14, 2026
Modified: Jan 14, 2026
EPSS: 0.04%
View Details
4.4

The Short Link plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the 'short_link_post_title' and 'short_link_page_title' parameters in all versions up to, and including, 1.0 due to insufficient input sanitization and output escaping. This makes it possible for authenticated attackers, with administrator-level access and above, to inject arbitrary web…

Published: Jan 14, 2026
Modified: Jan 14, 2026
EPSS: 0.03%
View Details
4.4

The LinkedIn SC plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the 'linkedin_sc_date_format', 'linkedin_sc_api_key', and 'linkedin_sc_secret_key' parameters in all versions up to, and including, 1.1.9 due to insufficient input sanitization and output escaping. This makes it possible for authenticated attackers, with administrator-level access and above, to inject arbitrary…

Published: Jan 14, 2026
Modified: Jan 14, 2026
EPSS: 0.03%
View Details
4.4

The Electric Studio Download Counter plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the plugin settings in all versions up to, and including, 2.4 due to insufficient input sanitization and output escaping. This makes it possible for authenticated attackers, with Administrator-level access and above, to inject arbitrary web…

Published: Jan 14, 2026
Modified: Jan 14, 2026
EPSS: 0.03%
View Details
4.4

The WMF Mobile Redirector plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the plugin settings in all versions up to, and including, 1.2 due to insufficient input sanitization and output escaping. This makes it possible for authenticated attackers, with Administrator-level access and above, to inject arbitrary web scripts…

Published: Jan 14, 2026
Modified: Jan 14, 2026
EPSS: 0.03%
View Details
4.4

The WP Allowed Hosts plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the 'allowed-hosts' parameter in all versions up to, and including, 1.0.8 due to insufficient input sanitization and output escaping. This makes it possible for authenticated attackers, with administrator-level access and above, to inject arbitrary web scripts…

Published: Jan 14, 2026
Modified: Jan 14, 2026
EPSS: 0.03%
View Details

Chainlit versions prior to 2.8.5 contain an authorization bypass through user-controlled key vulnerability. If this vulnerability is exploited, threads may be viewed or thread ownership may be obtained by an attacker who can log in to the product.

Published: Jan 14, 2026
Modified: Jan 14, 2026
EPSS: 0.03%
View Details
5.3

The Float Payment Gateway plugin for WordPress is vulnerable to unauthorized modification of data due to improper error handling in the verifyFloatResponse() function in all versions up to, and including, 1.1.9. This makes it possible for unauthenticated attackers to mark any WooCommerce order as failed.

Published: Jan 14, 2026
Modified: Jan 14, 2026
EPSS: 0.05%
View Details
5.3

The Aplazo Payment Gateway plugin for WordPress is vulnerable to unauthorized modification of data due to a missing capability check on the check_success_response() function in all versions up to, and including, 1.4.2. This makes it possible for unauthenticated attackers to set any WooCommerce order to `pending payment` status.

Published: Jan 14, 2026
Modified: Jan 14, 2026
EPSS: 0.05%
View Details
5.3

The PayHere Payment Gateway Plugin for WooCommerce plugin for WordPress is vulnerable to unauthorized modification of data due to an improper validation logic in the check_payhere_response function in all versions up to, and including, 2.3.9. This makes it possible for unauthenticated attackers to change the status of pending WooCommerce orders…

Published: Jan 14, 2026
Modified: Jan 14, 2026
EPSS: 0.03%
View Details
4.3

The Stopwords for comments plugin for WordPress is vulnerable to Cross-Site Request Forgery in all versions up to, and including, 1.1. This is due to missing nonce validation on the 'set_stopwords_for_comments' and 'delete_stopwords_for_comments' functions. This makes it possible for unauthenticated attackers to add or delete stopwords via a forged request…

Published: Jan 14, 2026
Modified: Jan 14, 2026
EPSS: 0.01%
View Details
4.3

The SocialChamp with WordPress plugin for WordPress is vulnerable to Cross-Site Request Forgery in all versions up to, and including, 1.3.3. This is due to missing nonce validation on the wpsc_settings_tab_menu function. This makes it possible for unauthenticated attackers to modify plugin settings via a forged request granted they can…

Published: Jan 14, 2026
Modified: Jan 14, 2026
EPSS: 0.01%
View Details
7.5

The Shipping Rate By Cities plugin for WordPress is vulnerable to SQL Injection via the 'city' parameter in all versions up to, and including, 2.0.0 due to insufficient escaping on the user supplied parameter and lack of sufficient preparation on the existing SQL query. This makes it possible for unauthenticated…

Published: Jan 14, 2026
Modified: Jan 14, 2026
EPSS: 0.06%
View Details