| CVE ID | Title | Vendor | Product | Severity | CVSS Score | Published At | AI Analysis |
|---|---|---|---|---|---|---|---|
| CVE-2026-23669 | RPC Runtime Library Remote Code Execution Vulnerability | Microsoft | Windows 10 Version 1607 | High | 8.8 | 2026-03-10 17:04:37 | Deep Dive |
| CVE-2026-23668 | Windows Graphics Component Elevation of Privilege Vulnerability | Microsoft | Windows 10 Version 1607 | High | 7.0 | 2026-03-10 17:04:36 | Deep Dive |
| CVE-2026-30870 | Some sync filters in PowerSync Service ignored using `config.edition: 3` | powersync-ja | powersync-service | Medium | 6.5 | 2026-03-09 22:31:40 | Deep Dive |
| CVE-2026-29062 | jackson-core: Nesting Depth Constraint Bypass in `UTF8DataInputJsonParser` potentially allowing Resource Exhaustion | FasterXML | jackson-core | 中危 | - | 2026-03-06 07:14:25 | Deep Dive |
| CVE-2026-28072 | WordPress pixfort Core plugin <= 3.2.22 - Reflected Cross Site Scripting (XSS) vulnerability | PixFort | pixfort Core | 中危 | - | 2026-03-05 05:54:21 | Deep Dive |
| CVE-2026-28071 | WordPress pixfort Core plugin <= 3.2.22 - Broken Access Control vulnerability | PixFort | pixfort Core | 中危 | - | 2026-03-05 05:54:21 | Deep Dive |
| CVE-2026-27344 | WordPress inseri core plugin <= 1.0.5 - Broken Access Control vulnerability | inseriswiss | inseri core | Medium | 5.9 | 2026-03-05 05:53:53 | Deep Dive |
| CVE-2025-69338 | WordPress Riode Core plugin <= 1.6.26 - SQL Injection vulnerability | don-themes | Riode Core | 中危 | - | 2026-03-05 05:53:31 | Deep Dive |
| CVE-2026-28402 | nimiq/core-rs-albatross's nimiq-blockchain missing proposal body root verification | nimiq | core-rs-albatross | High | 7.1 | 2026-02-27 21:08:54 | Deep Dive |
| CVE-2026-2252 | XML External Entity (XXE) vulnerability resulting in Server-Side Request Forgery (SSRF) | Xerox | FreeFlow Core | High | 7.5 | 2026-02-27 08:18:18 | Deep Dive |
| CVE-2026-2251 | Path Traversal leading to Remote Code Execution (RCE) | Xerox | FreeFlow Core | Critical | 9.8 | 2026-02-27 08:08:52 | Deep Dive |
| CVE-2026-3263 | go2ismail Asp.Net-Core-Inventory-Order-Management-System Security API improper authorization | go2ismail | Asp.Net-Core-Inventory-Order-Management-System | Medium | 6.3 | 2026-02-26 21:32:09 | Deep Dive |
| CVE-2026-3262 | go2ismail Asp.Net-Core-Inventory-Order-Management-System Administrative redirect | go2ismail | Asp.Net-Core-Inventory-Order-Management-System | Medium | 6.3 | 2026-02-26 21:02:11 | Deep Dive |
| CVE-2026-27621 | TypiCMS Core has Stored Cross-Site Scripting (XSS) via SVG File Upload | TypiCMS | Core | - | - | 2026-02-25 02:36:12 | Deep Dive |
| CVE-2025-69366 | WordPress Emerce Core plugin <= 1.8 - SQL Injection vulnerability | TeconceTheme | Emerce Core | - | - | 2026-02-20 15:46:51 | Deep Dive |
| CVE-2025-69337 | WordPress Wolmart Core plugin <= 1.9.6 - SQL Injection vulnerability | don-themes | Wolmart Core | - | - | 2026-02-20 15:46:50 | Deep Dive |
| CVE-2025-69365 | WordPress Uroan Core plugin <= 1.4.4 - SQL Injection vulnerability | TeconceTheme | Uroan Core | - | - | 2026-02-20 15:46:50 | Deep Dive |
| CVE-2025-69310 | WordPress Woodly Core plugin <= 1.4 - SQL Injection vulnerability | TeconceTheme | Woodly Core | - | - | 2026-02-20 15:46:49 | Deep Dive |
| CVE-2025-69306 | WordPress Electio Core plugin <= 1.4 - SQL Injection vulnerability | TeconceTheme | Electio Core | - | - | 2026-02-20 15:46:48 | Deep Dive |
| CVE-2025-69308 | WordPress Nestbyte Core plugin <= 1.2 - SQL Injection vulnerability | TeconceTheme | Nestbyte Core | - | - | 2026-02-20 15:46:48 | Deep Dive |