Search

Found 46,094 results in 7305ms · Match type: Filtered list

0
KEVHas exploit
Reset
CVE Severity CVSS Risk Flags OS Vendor Published Description
CVE-2026-20643 high 8.0 FIX rhel slesdebian debian 20d ago WebKitGTK vulnerabilities
CVE-2026-20636 high 8.0 FIX rhel slesdebian debian 20d ago WebKitGTK vulnerabilities
CVE-2026-20635 high 8.0 FIX rhel slesdebian debian 20d ago WebKitGTK vulnerabilities
CVE-2026-20608 high 8.0 FIX rhel slesdebian debian 20d ago WebKitGTK vulnerabilities
CVE-2026-1502 high 8.0 FIX rhel slesdebian debian 20d ago Important: python3.12 security update
CVE-2026-0968 low 3.1 3.1 FIX rheldebian debian sles libssh 20d ago Moderate: libssh security update
CVE-2026-0966 high 8.2 8.2 FIX rheldebian debian sles libsshredhat 20d ago Moderate: libssh security update
CVE-2026-0965 low 3.3 3.3 FIX rheldebian debian sles libssh 20d ago Moderate: libssh security update
CVE-2026-0672 high 8.0 FIX rhel slesdebian debian 20d ago Important: python3.12 security update
CVE-2025-9615 low 3.3 3.3 FIX rhel slesdebian debian 20d ago Low: NetworkManager security update
CVE-2025-8277 low 3.1 3.1 FIX rheldebian debian sles 20d ago Moderate: libssh security update
CVE-2025-68121 critical 10.0 10.0 FIX rocky rheldebian debian golanggoogle 20d ago During session resumption in crypto/tls, if the underlying Config has its ClientCAs or RootCAs fields mutated between the initial handshake and the resumed handshake, the resumed handshake may succee…
CVE-2025-61726 high 8.0 FIX rocky rheldebian debian google 20d ago The net/url package does not set a limit on the number of query parameters in a query. While the maximum size of query parameters in URLs is generally limited by the maximum request header size, the …
CVE-2025-55754 critical 9.6 9.6 FIX rhel slesdebian debian apache 20d ago Improper Neutralization of Escape, Meta, or Control Sequences vulnerability in Apache Tomcat. Tomcat did not escape ANSI escape sequences in log messages. If Tomcat was running in a console on a Win…
CVE-2025-55668 high 8.0 FIX rhel slesdebian debian 20d ago Session Fixation vulnerability in Apache Tomcat via rewrite valve. This issue affects Apache Tomcat: from 11.0.0-M1 through 11.0.7, from 10.1.0-M1 through 10.1.41, from 9.0.0.M1 through 9.0.105. Old…
CVE-2025-4878 low 3.6 3.6 FIX rheldebian debian sles 20d ago Moderate: libssh security update
CVE-2025-46701 high 8.0 FIX arch arch rhel sles 20d ago Improper Handling of Case Sensitivity vulnerability in Apache Tomcat's GCI servlet allows security constraint bypass of security constraints that apply to the pathInfo component of a URI mapped to th…
CVE-2025-46299 high 8.0 FIX rhel slesdebian debian 20d ago WebKitGTK vulnerabilities
CVE-2025-43511 high 8.0 FIX rhel slesdebian debian 20d ago WebKitGTK vulnerabilities
CVE-2025-43457 high 8.0 FIX rhel slesdebian debian 20d ago WebKitGTK vulnerabilities
CVE-2025-43214 high 8.0 FIX rhel slesdebian debian 20d ago WebKitGTK vulnerabilities
CVE-2025-43213 high 8.0 FIX rhel slesdebian debian 20d ago WebKitGTK vulnerabilities
CVE-2025-39866 high 7.8 7.8 FIX rhel slesdebian debian 20d ago Linux kernel (Xilinx) vulnerabilities
CVE-2025-15284 high 8.0 FIX rheldebian debian 20d ago Important: linux-sgx security update
CVE-2025-15282 high 8.0 FIX rhel slesdebian debian 20d ago Important: python3.12 security update
CVE-2025-13837 high 8.0 FIX rhel slesdebian debian 20d ago Important: python3.12 security update
CVE-2025-11234 high 7.5 7.5 FIX rocky rhel sles 20d ago A flaw was found in QEMU. If the QIOChannelWebsock object is freed while it is waiting to complete a handshake, a GSource is leaked. This can lead to the callback firing later on and triggering a use…
CVE-2026-30950 high 7.1 7.1 20d ago AutoGPT is a workflow automation platform for creating, deploying, and managing continuous artificial intelligence agents. Versions 0.6.36 through 0.6.50 are vulnerable to Authenticated Session Hijac…
CVE-2026-8851 high 8.1 8.1 FIX debian debian 20d ago SOGo versions 5.12.7 and prior contains a SQL injection vulnerability in the Access Control List management functionality that allows authenticated users to extract arbitrary data from the database b…
CVE-2026-8838 critical 9.8 9.8 aws 20d ago amazon-redshift-python-driver vulnerable to Remote Code Execution via eval() Injection
CVE-2026-4137 high 7.8 7.8 lfprojects 20d ago MLFlow Creates a Temporary File With Insecure Permissions
CVE-2026-27130 critical 9.9 9.9 20d ago Dokploy is a free, self-hostable Platform as a Service (PaaS). Versions 0.26.6 and below have OS command injection through the appName parameter. 3 chained issues cause this problem: inadequate input…
CVE-2026-25244 critical 9.8 9.8 openjsf 20d ago WebdriverIO BrowserStack Service has a Command Injection issue
CVE-2026-22810 high 7.3 7.3 joplinappmsiemens 20d ago Joplin is an open source note-taking and to-do application that organises notes and lists into notebooks. Versions prior to 3.5.7 contain a path traversal vulnerability in the importer which allows o…
CVE-2026-46522 high 9.0 EXPFIX debian debian 20d ago ImageMagick: Infinite Loop in the MIFF decoder can lead to CPU exhaustion
CVE-2026-46520 high 8.0 FIX debian debian 20d ago ImageMagick: Heap Buffer Over-Write in IPL decoder when reading multiple images of different dimensions
CVE-2026-45367 high 8.0 20d ago HAPI FHIR: ReDoS via FHIRPath matches()/replaceMatches() in FHIR Validator HTTP Endpoint
CVE-2026-45553 high 7.5 7.5 20d ago NiceGUI is a Python-based UI framework. Prior to version 3.12.0, ui.restructured_text() renders reStructuredText server-side with Docutils without disabling file insertion directives. When a NiceGUI …
CVE-2026-45686 high 7.5 7.5 sles opentelemetry 20d ago OpenTelemetry eBPF Instrumentation provides eBPF instrumentation based on the OpenTelemetry standard. From version 0.7.0 to before version 0.9.0, a remotely reachable integer overflow in OBI's memcac…
CVE-2026-45685 high 7.5 7.5 sles opentelemetry 20d ago OpenTelemetry eBPF Instrumentation provides eBPF instrumentation based on the OpenTelemetry standard. From version 0.1.0 to before version 0.9.0, malformed MongoDB wire messages can trigger uncaught …
CVE-2026-47092 high 7.8 7.8 jarrodwatts 20d ago Claude HUD through 0.0.12, patched in commit 234d9aa, contains a command injection vulnerability that allows local attackers to execute arbitrary commands by manipulating the COMSPEC environment vari…
CVE-2026-47091 low 3.3 3.3 jarrodwatts 20d ago Claude HUD through 0.0.12, patched in commit 234d9aa, contains a path traversal vulnerability that allows attackers to read arbitrary files by supplying an unvalidated transcript_path value via stdin…
CVE-2026-45245 high 7.4 7.4 steipete 20d ago Summarize's hover summary feature allows malicious pages to dispatch synthetic mouseover events over attacker-controlled links
CVE-2026-45683 low 3.8 3.8 sles opentelemetry 20d ago OpenTelemetry eBPF Instrumentation provides eBPF instrumentation based on the OpenTelemetry standard. Prior to version 0.9.0, the Java TLS ioctl probe reads user-controlled ioctl pointers with bpf_pr…
CVE-2026-45680 high 7.5 7.5 sles opentelemetry 20d ago OpenTelemetry eBPF Instrumentation provides eBPF instrumentation based on the OpenTelemetry standard. Prior to version 0.9.0, OBI replays BPF probe hits into histogram observations by looping once pe…
CVE-2026-8836 critical 9.8 9.8 FIX debian debian 20d ago A vulnerability was found in lwIP up to 2.2.1. Affected is the function snmp_parse_inbound_frame of the file src/apps/snmp/snmp_msg.c of the component snmpv3 USM Handler. Performing a manipulation of…
CVE-2026-45242 high 7.1 7.1 steipete 20d ago Summarize contains a path traversal vulnerability
CVE-2026-45495 high 8.8 8.8 windows windows microsoft 20d ago Microsoft Edge (Chromium-based) Remote Code Execution Vulnerability
CVE-2026-45230 critical 9.1 9.1 20d ago DumbAssets through 1.0.11 contains a path traversal vulnerability in the POST /api/delete-file endpoint and filesToDelete array parameters that allows unauthenticated attackers to delete arbitrary fi…
CVE-2026-42822 critical 10.0 10.0 windows windows microsoft 20d ago Improper authentication in Azure Local Disconnected Operations allows an unauthorized attacker to elevate privileges over a network.
CVE-2026-29963 high 7.5 7.5 hsclabs 20d ago HSC MailInspector 5.3.3-7 has a Path Traversal vulnerability due to improper validation of user-supplied input in the /tap/dw.php endpoint. The text parameter is used to construct file paths without …
CVE-2026-29962 high 7.5 7.5 hsclabs 20d ago HSC MailInspector v5.3.3-7 contains a Local File Inclusion (LFI) vulnerability caused by improper control of user-supplied file paths. The endpoint /vendor/phpunit/phpunit.php processes user-controll…
CVE-2023-24215 critical 9.1 9.1 20d ago Incorrect access control in the /uci/get/ endpoint of NOVUS AirGate 4G firmware v1.1.16 allows unauthenticated attackers to obtain administrator credentials via a crafted POST request.
CVE-2026-45678 high 7.5 7.5 sles opentelemetry 20d ago OpenTelemetry eBPF Instrumentation provides eBPF instrumentation based on the OpenTelemetry standard. Prior to version 0.9.0, the Postgres protocol parser assumes BIND message payloads contain a vali…
CVE-2026-42306 high 8.0 20d ago Docker: Race condition in docker cp allows bind mount redirection to host path
CVE-2026-45727 high 8.0 20d ago CloakBrowser is a tool to bypass bot detection tests. Prior to version 0.3.28, the cloakserve CDP multiplexer uses the user-supplied fingerprint query parameter directly as a filesystem path componen…
CVE-2026-41567 high 7.2 7.2 sles 20d ago Moby is an open source container framework. In versions prior to 29.5.1 and in moby/moby v2 prior to v2.0.0-beta.14, when a compressed archive is uploaded to a container via `PUT /containers/{id}/arc…
CVE-2026-45707 high 8.1 8.1 n8n-mcp 20d ago n8n-MCP is an MCP server that provides AI assistants access to n8n node documentation, properties, and operations. Prior to 2.51.2, when ENABLE_MULTI_TENANT=true, the HTTP transport documents that th…
CVE-2026-45697 critical 9.8 9.8 20d ago Formie is a Craft CMS plugin for creating forms. Prior to 2.2.20 and 3.1.24, unauthenticated users could submit crafted values into Hidden fields (with Default value → Custom) that were evaluated as …
CVE-2026-45327 high 8.2 8.2 20d ago TinyIce is a streaming server for audio and video. In versions 0.8.95 through 2.4.1, missing authentication on WebRTC ingest endpoint allows unauthenticated stream injection. Version 2.5.0 fixes the …
CVE-2026-41085 high 8.8 8.8 20d ago Thermo Fisher Scientific Torrent Suite Dx through 5.14.2 has a privilege escalation vulnerability that may allow an authenticated user with limited access privileges to gain unauthorized administrato…
CVE-2026-45325 high 8.0 20d ago @tmlmobilidade/utils has prototype pollution in its setValueAtPath
CVE-2026-2728 low 2.5 20d ago LibreNMS: Cross-Site Scripting in ShowConfigController
CVE-2026-45302 high 8.2 8.2 20d ago parse-nested-form-data is a tiny node module for parsing FormData by name into objects and arrays. Prior to version 1.0.1, parseFormData() walks bracket and dot-notation FormData field names into nes…
CVE-2026-45300 high 7.4 7.4 debian debian 20d ago The AsyncHttpClient (AHC) library allows Java applications to easily execute HTTP requests and asynchronously process HTTP responses. Versions on the 2.x branch prior to 2.15.0 and the 3.x branch pri…
CVE-2026-46385 high 8.0 20d ago iskorotkov/avro is a fast Go Avro codec. Prior to 2.33.0, the Avro array and map decoders looped over an attacker-controlled block-count value without checking the underlying reader's error state ins…
CVE-2026-45270 high 8.0 20d ago CI4MS: Stored XSS in Pages Module Content via Broken html_purify Validation Rule
CVE-2026-46384 high 8.0 20d ago iskorotkov/avro is a fast Go Avro codec. Prior to 2.33.0, several Avro decoder paths read attacker-controlled 64-bit values from the wire format and either narrowed them to platform-sized int before …
CVE-2026-45149 high 7.5 7.5 debian debian juliangruber 20d ago The brace-expansion library generates arbitrary strings containing a common prefix and suffix. From 5.0.0 to before 5.0.6, the max option was being applied too late. When expanding a single large num…
CVE-2025-57282 high 8.8 8.8 20d ago ngrok is Vulnerable to Command Injection
CVE-2025-56352 high 7.5 7.5 20d ago In tinyMQTT commit 6226ade15bd4f97be2d196352e64dd10937c1962 (2024-02-18), the broker mishandles protocol violations during CONNECT packet parsing. When receiving a CONNECT packet with a zero-length C…
CVE-2026-41949 high 7.5 7.5 dify 20d ago Dify before version 1.14.2 contains an authorization bypass vulnerability in the file preview endpoint that allows any authenticated user to read up to 3,000 characters of any uploaded document acros…
CVE-2026-41948 critical 9.4 9.4 dify 20d ago Dify version 1.14.1 and prior contain a path traversal vulnerability that allows authenticated users to manipulate requests forwarded to the Plugin Daemon's internal REST API by exploiting insufficie…
CVE-2026-41947 critical 9.1 9.1 dify 20d ago Dify before version 1.14.2 contains an authorization bypass vulnerability that allows authenticated editor users to set and enable trace configurations for any application regardless of tenant owners…
CVE-2026-39079 high 7.5 7.5 20d ago An issue in prestashop upsshipping all versions through at least 2.4.0 allows a remote attacker to obtain sensitive information via the /modules/upsshipping/logs/, and /modules/upsshipping/lib/UPSBas…
CVE-2026-26462 high 7.3 7.3 20d ago Offline Hospital Management System 5.3.0 allows remote code execution due to an improper Electron renderer configuration. The application enables Node.js integration while disabling context isolation…
CVE-2026-45627 high 8.2 8.2 20d ago Arcane is an interface for managing Docker containers, images, networks, and volumes. Prior to 1.19.0, the unauthenticated GET /api/app-images/logo endpoint reflects a user-supplied color query param…
CVE-2026-45625 critical 9.9 9.9 20d ago Arcane is an interface for managing Docker containers, images, networks, and volumes. Prior to 1.19.0, Arcane's huma-based REST API exposes nine endpoints under /api/customize/git-repositories and /a…
CVE-2026-45135 high 8.0 20d ago Caddy: Unsafe Unicode Handling in FastCGI splitPos Allows Execution of Non-PHP Files
CVE-2026-46510 high 8.2 8.2 20d ago form-data-objectizer converts FormData to object. Prior to 1.0.1, form-data-objectizer walks bracket-notation form keys (e.g. name[sub]) into nested objects without filtering __proto__, constructor, …
CVE-2026-42009 high 7.5 7.5 FIX debian debian sleswindows windows 20d ago GnuTLS vulnerabilities
CVE-2026-8803 low 3.7 3.7 20d ago A flaw has been found in opensourcepos Open Source Point of Sale up to 3.4.2. Impacted is the function Login of the file app/Models/Employee.php of the component Employee Login. This manipulation cau…
CVE-2026-7304 critical 9.8 9.8 lmsys 20d ago SGLang: Unauthenticated RCE via --enable-custom-logit-processor
CVE-2026-7302 critical 9.1 9.1 lmsys 20d ago SGLang's multimodal generation runtime has an unauthenticated path traversal vulnerability
CVE-2026-7301 critical 9.8 9.8 lmsys 20d ago SGLanG: Multimodal scheduler deserializes untrusted pickle data on 0.0.0.0 ROUTER socket
CVE-2026-7498 high 8.8 8.8 21d ago Improper neutralization of input during web page generation ('cross-site scripting') vulnerability in Basamak Information Technology Consulting and Organization Trade Ltd. Co. DernekWeb allows Stored…
CVE-2026-6347 high 7.6 7.6 mattermost 21d ago Mattermost doesn't sanitize sensitive configuration fields in the Mattermost Calls plugin
CVE-2026-6346 high 8.7 8.7 mattermost 21d ago Mattermost doesn't sanitize sensitive configuration fields before including them in support packet generation
CVE-2026-4643 low 3.5 3.5 mattermost 21d ago Mattermost Desktop App versions <=6.1 6.0.1 5.4.13.0 fail to prevent server-rendered content from closing an underlying application view in the Mattermost Desktop App which allows a malicious server …
CVE-2026-8788 high 7.3 7.3 21d ago Net::Statsd::Lite versions through 0.10.0 for Perl allowed metric injections. The values from the set_add method were not checked for newlines, colons or pipes. Metrics generated from untrusted sour…
CVE-2026-6334 low 3.8 3.8 mattermost 21d ago Mattermost doesn't enforce client identity binding during the OAuth authorization code redemption flow
CVE-2026-6495 high 7.1 7.1 21d ago The Ajax Load More WordPress plugin before 7.8.4 does not sanitise and escape a parameter before outputting it back in the page, leading to a Reflected Cross-Site Scripting which could be used again…
CVE-2026-6381 high 7.5 7.5 21d ago The WP Maps WordPress plugin before 4.9.3 does not properly sanitize a parameter before using it in a file path, allowing authenticated users to perform Local File Inclusion attacks.
CVE-2026-6379 high 8.6 8.6 21d ago The WP Photo Album Plus WordPress plugin before 9.1.11.001 does not properly sanitize and escape a parameter before using it in a SQL query, allowing unauthenticated users to perform SQL injection at…
CVE-2026-3220 high 8.8 8.8 21d ago The Autoptimize WordPress plugin before 3.1.15, Clearfy Cache WordPress plugin before 2.4.2, Speed Optimizer WordPress plugin before 7.7.9 are vulnerable to unauthenticated Stored Cross-Site Script…
CVE-2026-8785 high 7.3 7.3 21d ago A flaw has been found in projectworlds hospital-management-system-in-php 1.0. Affected by this vulnerability is the function getAllPatientDetail of the file update_info.php of the component GET Param…
CVE-2026-8776 high 8.8 8.8 21d ago A vulnerability has been found in Edimax BR-6428NS 1.10. This vulnerability affects the function formPPTPSetup of the file /goform/formPPTPSetup of the component POST Request Handler. Such manipulati…
CVE-2026-8775 high 8.8 8.8 21d ago A flaw has been found in Edimax BR-6428NS 1.10. This affects the function formL2TPSetup of the file /goform/formL2TPSetup of the component POST Request Handler. This manipulation of the argument L2TP…
CVE-2026-8771 high 7.3 7.3 21d ago org.linlinjava:litemall-wx-api has an Injection issue
CVE-2026-8770 low 3.3 3.3 continue 21d ago A vulnerability was identified in continuedev continue up to 1.2.22. This affects the function lsTool of the file core/tools/implementations/lsTool.ts of the component JSON-RPC Server. Such manipulat…