Skip to main content

CWE archive

CWE-784 CVEs

Programmatic archive

6 CVEs tagged with CWE-7841 Critical, 3 High, 1 Medium, 1 Low, 0 Unrated.

CVE-2026-60134

Published Jul 24, 2026

Weintek cMT3092X HMI allows a non-privileged user to modify cookies to gain elevated privileges.

CVSS 8.7 · High
evidence mentions
3
Buzz score
28.9

CVE-2026-45055

Published May 13, 2026

CubeCart is an ecommerce software solution. Prior to 6.7.2, CubeCart 6.6.x – 6.7.1 builds CC_STORE_URL directly from the Host request header at bootstrap, with no allowlist. The c…

CVSS 8.1 · High
evidence mentions
1
Buzz score
11.9

CVE-2024-9820

Published Oct 15, 2024

The WP 2FA with Telegram plugin for WordPress is vulnerable to Two-Factor Authentication Bypass in versions up to, and including, 3.0. This is due to the two-factor code being sto…

CVSS 6.5 · Medium
Vendor/product tagsBeta · best-effort
Showing 1-6 of 6 CVEsPage 1 of 1