Monitor vulnerabilities that affect your stack.
Sign up free to get alerts when software you use is affected.
CVE Vulnerabilities - 16 April 2026
RSS927 vulnerabilities published on 16 April 2026
Severity:
CGA-gcm2-xrr7-rg87
CGA-54w8-pqv3-3gvj
CGA-54w8-pqv3-3gvj
CGA-28r4-j7vp-3jr8
CGA-28r4-j7vp-3jr8
MuPDF mutool leaks sensitive information from crafted PDFs
DEBIAN-CVE-2026-40505
An attacker can use a specially crafted PDF to access your computer's terminal and display fake messages to trick you. This can be a way for an attacker to trick you into doing something you shouldn't...
Drupal 9.4.3 and earlier vulnerable to arbitrary file upload
DEBIAN-CVE-2026-41080
Drupal content management system versions 9.4.3 and earlier allow attackers to upload and execute arbitrary files on the server, potentially leading to system compromise. This is a serious security ri...
FFmpeg: Critical Data Corruption in Movie Files
DEBIAN-CVE-2026-40962
A critical security issue has been discovered in FFmpeg, a popular software used to process multimedia files. If exploited, this issue could allow an attacker to intentionally corrupt movie files, pot...
MINI-j833-63wr-r9wv
MINI-j833-63wr-r9wv
WordPress Plugin 'WP Project Manager' Allows Unauthenticated File Upload
MINI-v3v3-gfrp-hw94
A plugin for managing projects in WordPress allows attackers to upload arbitrary files without needing a password. This means an attacker could potentially upload malicious code to your website. To pr...
Adobe Acrobat and Reader: Unrestricted File Access Vulnerability
MINI-mmxf-q5j4-jm29
Adobe Acrobat and Reader users may be able to access files they shouldn't. This could allow unauthorized access to sensitive information or malicious files. Update to the latest version to prevent thi...
MINI-vwfm-h85w-qjmw
MINI-vwfm-h85w-qjmw
MINI-r6mp-c8cv-gx4j
MINI-r6mp-c8cv-gx4j
MINI-f472-6mpw-qvxp
MINI-f472-6mpw-qvxp
MINI-g3gc-pmh5-c69p
MINI-g3gc-pmh5-c69p
MINI-fwhr-9v65-frjr
MINI-fwhr-9v65-frjr
WordPress Plugin 'WP User Manager' Allows Unauthenticated Access to User Data
MINI-cf84-fr3f-jjg7
A security issue in the WP User Manager plugin for WordPress allows attackers to access user data without needing a password. This could allow hackers to steal sensitive information or take control of...
MINI-cr5c-8frf-8gvw
MINI-cr5c-8frf-8gvw
MINI-8274-3ph2-7xx8
MINI-8274-3ph2-7xx8
MINI-6739-m6g9-mvcx
MINI-6739-m6g9-mvcx
MINI-499q-248m-p2fh
MINI-499q-248m-p2fh
MINI-3wc2-hw99-vv3j
MINI-3wc2-hw99-vv3j
MINI-3j4v-42mx-mh5x
MINI-3j4v-42mx-mh5x
MINI-3f4m-gp5w-9f2p
MINI-3f4m-gp5w-9f2p
MINI-9x63-cqj4-qmhv
MINI-9x63-cqj4-qmhv
MINI-3rhc-mr2m-h438
MINI-3rhc-mr2m-h438
WordPress Plugin 'WP Rocket' Allows Unauthenticated File Uploads
MINI-8c26-6rwf-qw8m
A security issue exists in a popular WordPress plugin called WP Rocket, which could allow an attacker to upload malicious files to a site without needing a password. This could lead to unauthorized ac...