#
20 entries
2026-07-31
ID: 588
CVE-2026-12497 - ProfilePress < 4.16.18 - Unauthenticated Privilege Escalation via Registration Role Selection
2026-07-31
ID: 582
CVE-2026-14172 - Rapid7 InsightVM, Nexpose, and Insight Agent Local Privilege Escalation via Unvalidated Executable Invocation
2026-07-31
ID: 569
CVE-2026-12736 - WPify Woo <= 5.4.16 - Authenticated (Shop Manager+) Privilege Escalation via Arbitrary Option Update via save_option REST Endpoint
2026-07-30
ID: 562
CVE-2026-56160 - Azure Red Hat OpenShift (ARO) Elevation of Privilege Vulnerability
2026-07-30
ID: 552
CVE-2026-16763 - localstack serverless-localstack Configuration index.js os command injection
2026-07-30
ID: 523
CVE-2026-47724 - nebula-mesh: API endpoints lack ownership checks, enabling cross-operator privilege escalation