377,174 CVE lengkap 1999–2026

CVE Notifier

Arsip lengkap dari cve.org (CVE Record), skor CVSS dari NVD, dan daftar eksploitasi aktif dari CISA KEV. Ter-update tiap 30 menit.

arsip 377,174 CVE • 12,754 critical • 1,713 KEV

  • 1999–2026
  • 395.000+ CVE
  • cve.org
  • NVD CVSS
  • CISA KEV
  • Auto-update 30m
  • SQLite full-text

Menampilkan 12 dari 377,174 entri — halaman 170/31432

CVE-2026-73170 CWE-94 N/A

CVE-2026-73170

Nozomi Networks Labs identified a CWE-94: Improper Control of Generation of Code ('Code Injection') vulnerability in the Modbus CSV import workflow of Advantech EKI-1242EIMS in firmware version V1.06.01 that allows a rem…

cve.org Advantech:EKI-1242IEIMS · Advantech:EKI-1242EIMS 16 Sep 2026
CVE-2026-73169 CWE-79 N/A

CVE-2026-73169

Nozomi Networks Labs identified a CWE-79: Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in the Modbus transaction management interface of Advantech EKI-1242EIMS in fir…

cve.org Advantech:EKI-1242IEIMS · Advantech:EKI-1242EIMS 16 Sep 2026
CVE-2026-73167 CWE-78 N/A

CVE-2026-73167

Nozomi Networks Labs identified a CWE-78: Improper Neutralization of Special Elements used in an OS Command ('OS Command Injection') vulnerability in the web management interface of Advantech EKI-1242IEIMS in firmware ve…

cve.org Advantech:EKI-1242IEIMS · Advantech:EKI-1242EIMS 16 Sep 2026
CVE-2026-73166 CWE-94 N/A

CVE-2026-73166

Nozomi Networks Labs identified a CWE-94: Improper Control of Generation of Code ('Code Injection') vulnerability in the web management interface of Advantech EKI-1242IEIMS in firmware version V1.06.01 that allows a remo…

cve.org Advantech:EKI-1242IEIMS · Advantech:EKI-1242EIMS 16 Sep 2026
CVE-2026-73165 CWE-78 N/A

CVE-2026-73165

Nozomi Networks Labs identified a CWE-78: Improper Neutralization of Special Elements used in an OS Command ('OS Command Injection') vulnerability in the web management interface of Advantech EKI-1242IEIMS in firmware ve…

cve.org Advantech:EKI-1242IEIMS · Advantech:EKI-1242EIMS 16 Sep 2026
CVE-2026-73164 CWE-78 N/A

CVE-2026-73164

Nozomi Networks Labs identified a CWE-78: Improper Neutralization of Special Elements used in an OS Command ('OS Command Injection') vulnerability in the web management interface of Advantech EKI-1242IEIMS in firmware ve…

cve.org Advantech:EKI-1242IEIMS · Advantech:EKI-1242EIMS 16 Sep 2026
CVE-2026-73163 CWE-78 N/A

CVE-2026-73163

Nozomi Networks Labs identified a CWE-78: Improper Neutralization of Special Elements used in an OS Command ('OS Command Injection') vulnerability in the web management interface of Advantech EKI-1242IEIMS in firmware ve…

cve.org Advantech:EKI-1242IEIMS · Advantech:EKI-1242EIMS 16 Sep 2026
CVE-2026-19535 CWE-352 N/A

CVE-2026-19535

Nozomi Networks Labs identified a CWE-352: Cross-Site Request Forgery (CSRF) vulnerability in the LuCI administrative web interface of Advantech EKI-1242IEIMS in firmware version V1.06.01 that allows a remote unauthentic…

cve.org Advantech:EKI-1242IEIMS · Advantech:EKI-1242EIMS 16 Sep 2026
CVE-2026-92360 CWE-346 6.3

ag-ui-protocol ag-ui Event Application Layer agent.ts prepareRunAgentInput origin validation

A weakness has been identified in ag-ui-protocol ag-ui 1.0. The impacted element is the function prepareRunAgentInput of the file agent/agent.ts of the component Event Application Layer. This manipulation of the argument…

cve.org ag-ui-protocol:ag-ui 16 Sep 2026
CVE-2026-88817 CWE-269 N/A

Privilege escalation via legacy access group creation endpoint

An authenticated, non-guest user of Curiosity Workspace could enroll themselves as an administrator and member of an existing access group without an invitation or approval. It did not grant application-wide administr…

cve.org Curiosity · GmbH:Curiosity · Workspace 16 Sep 2026
CVE-2026-92359 CWE-942 3.1

ag-ui-protocol ag-ui CORSMiddleware utils.py create_strands_app cross-domain policy

A security flaw has been discovered in ag-ui-protocol ag-ui 0.3.0. The affected element is the function create_strands_app of the file integrations/aws-strands/python/src/ag_ui_strands/utils.py of the component CORSMiddl…

cve.org ag-ui-protocol:ag-ui 16 Sep 2026
CVE-2026-92465 CWE-89 7.6

WordPress WP Mega Menu plugin <= 1.4.2 - SQL Injection vulnerability

Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in Themeum WP Mega Menu allows Blind SQL Injection. This issue affects WP Mega Menu: from n/a through 1.4.2.

cve.org Themeum:WP · Mega · Menu 16 Sep 2026

Statistik

Arsip lengkap kerentanan dari semua sumber — live dari database.

cache/cve.db • 25 Sep 2026 19:35
377,174 Total CVE terindeks
▲ 1999–2026
60,905 Tahun 2026
12,754 Critical (skor ≥ 9)
1,713 CISA KEV aktif

Distribusi Severity

CVSS v3
12,754 critical
  • Critical 12,754 (8%)
  • High 61,345 (41%)
  • Medium 68,090 (45%)
  • Low 8,634 (6%)
150,872 dinilai • 226,302 belum

Tren CVE per Tahun

1999–2026
2017
2018
2019
2020
2021
2022
2023
2024
2025
2026

cve.org

Arsip penuh CVE dari CVE Program — id, deskripsi, CWE, referensi.

245,461 CVE Record

NVD

Kerentanan dengan skor CVSS v3.x dari NIST National Vulnerability Database.

150,872 CVSS dinilai

Wordfence

Kerentanan plugin/theme WordPress dari Wordfence Intelligence.

11,134 WordPress

WPScan

Kerentanan ekosistem WordPress dari WPScan (Patchstack).

5,444 WordPress

GitHub

CVE yang menyentuh ekosistem GitHub (judul/deskripsi/produk).

3,208 Ekosistem

MITRE

CNA asli yang menerbitkan dan mengelola CVE Record.

114,963 CNA Publish

Sumber Data

cve.org

Arsip CVE Program — id, deskripsi, CWE, referensi. Update tiap 30 menit via delta release.

NVD

Skor CVSS v3.1 untuk entri yang dinilai NIST NVD.

CISA KEV

Kerentanan yang aktif dieksploitasi — prioritas tinggi.

WPScan

Kerentanan ekosistem WordPress.

Wordfence

Kerentanan plugin/theme WordPress.

GitHub

Security Advisories ekosistem open source.