Search

Found 41,692 results in 6069ms · Match type: Filtered list

0
KEVHas exploit
Reset
CVE Severity CVSS Risk Flags OS Vendor Published Description
CVE-2026-35418 high 7.8 7.8 FIX windows windows 25d ago Use after free in Windows Cloud Files Mini Filter Driver allows an authorized attacker to elevate privileges locally.
CVE-2026-35417 high 7.8 7.8 FIX windows windows 25d ago Use after free in Windows Win32K - GRFX allows an authorized attacker to elevate privileges locally.
CVE-2026-35416 high 7.0 7.0 FIX windows windows 25d ago Access of resource using incompatible type ('type confusion') in Windows Ancillary Function Driver for WinSock allows an authorized attacker to elevate privileges locally.
CVE-2026-35415 high 7.8 7.8 FIX windows windows 25d ago Integer overflow or wraparound in Windows Storage Spaces Controller allows an authorized attacker to elevate privileges locally.
CVE-2026-34687 high 7.8 7.8 macos macos adobe 25d ago Illustrator versions 29.8.6, 30.3 and earlier are affected by a Heap-based Buffer Overflow vulnerability that could result in arbitrary code execution in the context of the current user. Exploitation…
CVE-2026-34676 high 7.8 7.8 adobe 25d ago Substance3D - Painter versions 12.0.2 and earlier are affected by an out-of-bounds write vulnerability that could result in arbitrary code execution in the context of the current user. Exploitation o…
CVE-2026-34675 high 7.8 7.8 adobe 25d ago Substance3D - Painter versions 12.0.2 and earlier are affected by an out-of-bounds write vulnerability that could result in arbitrary code execution in the context of the current user. Exploitation o…
CVE-2026-34661 high 7.8 7.8 macos macos adobe 25d ago Illustrator versions 29.8.6, 30.3 and earlier are affected by an out-of-bounds write vulnerability that could result in arbitrary code execution in the context of the current user. Exploitation of th…
CVE-2026-34644 high 7.8 7.8 adobe 25d ago After Effects versions 26.0, 25.6.4 and earlier are affected by an Integer Overflow or Wraparound vulnerability that could result in arbitrary code execution in the context of the current user. Explo…
CVE-2026-34643 high 7.8 7.8 adobe 25d ago After Effects versions 26.0, 25.6.4 and earlier are affected by an out-of-bounds write vulnerability that could result in arbitrary code execution in the context of the current user. Exploitation of …
CVE-2026-34642 high 7.8 7.8 adobe 25d ago After Effects versions 26.0, 25.6.4 and earlier are affected by a Heap-based Buffer Overflow vulnerability that could result in arbitrary code execution in the context of the current user. Exploitati…
CVE-2026-34640 high 7.8 7.8 adobe 25d ago Media Encoder versions 26.0.2, 25.6.4 and earlier are affected by an Integer Overflow or Wraparound vulnerability that could result in arbitrary code execution in the context of the current user. Exp…
CVE-2026-34639 high 7.8 7.8 adobe 25d ago Media Encoder versions 26.0.2, 25.6.4 and earlier are affected by an out-of-bounds write vulnerability that could result in arbitrary code execution in the context of the current user. Exploitation o…
CVE-2026-34638 high 7.8 7.8 macos macos adobe 25d ago Premiere Pro versions 26.0.2, 25.6.4 and earlier are affected by a Use After Free vulnerability that could result in arbitrary code execution in the context of the current user. Exploitation of this …
CVE-2026-34637 high 7.8 7.8 macos macos adobe 25d ago Premiere Pro versions 26.0.2, 25.6.4 and earlier are affected by an out-of-bounds write vulnerability that could result in arbitrary code execution in the context of the current user. Exploitation of…
CVE-2026-34636 high 7.8 7.8 macos macos adobe 25d ago Premiere Pro versions 26.0.2, 25.6.4 and earlier are affected by an out-of-bounds write vulnerability that could result in arbitrary code execution in the context of the current user. Exploitation of…
CVE-2026-34351 high 7.8 7.8 FIX windows windows 25d ago Concurrent execution using shared resource with improper synchronization ('race condition') in Windows TCP/IP allows an authorized attacker to elevate privileges locally.
CVE-2026-34347 high 7.0 7.0 FIX windows windows 25d ago Use after free in Windows Win32K - GRFX allows an authorized attacker to elevate privileges locally.
CVE-2026-34345 high 7.0 7.0 FIX windows windows 25d ago Access of resource using incompatible type ('type confusion') in Windows Ancillary Function Driver for WinSock allows an authorized attacker to elevate privileges locally.
CVE-2026-34344 high 7.8 7.8 FIX windows windows 25d ago Access of resource using incompatible type ('type confusion') in Windows Ancillary Function Driver for WinSock allows an authorized attacker to elevate privileges locally.
CVE-2026-34343 high 7.8 7.8 FIX windows windows 25d ago Heap-based buffer overflow in Windows Application Identity (AppID) Subsystem allows an authorized attacker to elevate privileges locally.
CVE-2026-34342 high 7.0 7.0 FIX windows windows 25d ago Concurrent execution using shared resource with improper synchronization ('race condition') in Windows Print Spooler Components allows an authorized attacker to elevate privileges locally.
CVE-2026-34341 high 7.0 7.0 FIX windows windows 25d ago Double free in Windows Link-Layer Discovery Protocol (LLDP) allows an authorized attacker to elevate privileges locally.
CVE-2026-34340 high 7.0 7.0 FIX windows windows 25d ago Use after free in Windows Projected File System allows an authorized attacker to elevate privileges locally.
CVE-2026-34338 high 7.8 7.8 FIX windows windows 25d ago Use after free in Windows Telephony Service allows an authorized attacker to elevate privileges locally.
CVE-2026-34337 high 7.8 7.8 FIX windows windows 25d ago Use after free in Windows Cloud Files Mini Filter Driver allows an authorized attacker to elevate privileges locally.
CVE-2026-34336 high 7.8 7.8 FIX windows windows 25d ago Integer overflow or wraparound in Windows DWM Core Library allows an authorized attacker to elevate privileges locally.
CVE-2026-34334 high 7.8 7.8 FIX windows windows 25d ago Concurrent execution using shared resource with improper synchronization ('race condition') in Windows TCP/IP allows an authorized attacker to elevate privileges locally.
CVE-2026-34333 high 7.8 7.8 FIX windows windows 25d ago Use after free in Windows Win32K - GRFX allows an authorized attacker to elevate privileges locally.
CVE-2026-34332 high 8.0 8.0 FIX windows windows 25d ago Use after free in Windows Kernel-Mode Drivers allows an authorized attacker to execute code over a network.
CVE-2026-34331 high 7.0 7.0 FIX windows windows 25d ago Concurrent execution using shared resource with improper synchronization ('race condition') in Windows Win32K - GRFX allows an authorized attacker to elevate privileges locally.
CVE-2026-34330 high 7.8 7.8 FIX windows windows 25d ago Concurrent execution using shared resource with improper synchronization ('race condition') in Windows Win32K - GRFX allows an authorized attacker to elevate privileges locally.
CVE-2026-34329 high 8.8 8.8 FIX windows windows 25d ago Heap-based buffer overflow in Windows Message Queuing allows an unauthorized attacker to execute code over an adjacent network.
CVE-2026-33841 high 7.8 7.8 FIX windows windows 25d ago Heap-based buffer overflow in Windows Kernel allows an authorized attacker to elevate privileges locally.
CVE-2026-33840 high 7.8 7.8 FIX windows windows 25d ago Concurrent execution using shared resource with improper synchronization ('race condition') in Windows Win32K - GRFX allows an authorized attacker to elevate privileges locally.
CVE-2026-33839 high 7.0 7.0 FIX windows windows 25d ago Concurrent execution using shared resource with improper synchronization ('race condition') in Windows Win32K - GRFX allows an authorized attacker to elevate privileges locally.
CVE-2026-33838 high 7.8 7.8 FIX windows windows 25d ago Double free in Windows Message Queuing allows an authorized attacker to elevate privileges locally.
CVE-2026-33837 high 7.8 7.8 FIX windows windows 25d ago Heap-based buffer overflow in Windows TCP/IP allows an authorized attacker to elevate privileges locally.
CVE-2026-33835 high 7.8 7.8 FIX windows windows 25d ago Use after free in Windows Cloud Files Mini Filter Driver allows an authorized attacker to elevate privileges locally.
CVE-2026-33834 high 7.8 7.8 FIX windows windows 25d ago Improper access control in Windows Event Logging Service allows an authorized attacker to elevate privileges locally.
CVE-2026-33833 high 8.2 8.2 windows windows microsoft 25d ago Improper neutralization of special elements in output used by a downstream component ('injection') in Azure Machine Learning allows an unauthorized attacker to perform spoofing over a network.
CVE-2026-33821 high 7.7 7.7 windows windows microsoft 25d ago Improper privilege management in Microsoft Dynamics 365 Customer Insights allows an authorized attacker to elevate privileges over a network.
CVE-2026-33117 critical 9.1 9.1 windows windows microsoft 25d ago The Java Key Vault Keys library in the Azure SDK for Java contains an issue in the local cryptographic verification path where authentication tag comparison was implemented incorrectly. In affected a…
CVE-2026-33112 high 8.8 8.8 windows windows microsoft 25d ago Deserialization of untrusted data in Microsoft Office SharePoint allows an authorized attacker to execute code over a network.
CVE-2026-33110 high 8.8 8.8 windows windows microsoft 25d ago Deserialization of untrusted data in Microsoft Office SharePoint allows an authorized attacker to execute code over a network.
CVE-2026-32204 high 7.8 7.8 windows windows microsoft 25d ago External control of file name or path in Azure Monitor Agent allows an authorized attacker to elevate privileges locally.
CVE-2026-32177 high 7.3 7.3 windows windows 25d ago Heap-based buffer overflow in .NET allows an unauthorized attacker to elevate privileges locally.
CVE-2026-32161 high 7.5 7.5 FIX windows windows 25d ago Concurrent execution using shared resource with improper synchronization ('race condition') in Windows Native WiFi Miniport Driver allows an unauthorized attacker to execute code over an adjacent net…
CVE-2026-31242 critical 9.1 9.1 mem0 25d ago The mem0 v1.0.0 server lacks authentication and authorization controls for its memory reset functionality accessible via the DELETE /memories endpoint. An unauthenticated attacker can send a DELETE r…
CVE-2026-31240 high 7.5 7.5 25d ago mem0 server lacks authentication and authorization controls for its memory management API endpoints
CVE-2026-31239 critical 9.8 9.8 25d ago mamba language model framework vulnerable to insecure deserialization when loading pre-trained models from HuggingFace Hub
CVE-2026-31238 critical 9.8 9.8 25d ago Ludwig framework is vulnerable to insecure deserialization in its model serving component
CVE-2026-31237 critical 9.8 9.8 25d ago Ludwig framework is vulnerable to insecure deserialization through its predict() method.
CVE-2026-31236 critical 9.8 9.8 debian debian 25d ago llm CLI tool contains a code injection vulnerability via `--functions` command-line argument
CVE-2026-31235 critical 9.8 9.8 25d ago imgaug contains an insecure deserialization vulnerability in BackgroundAugmenter class within multicore.py module
CVE-2026-31234 critical 9.8 9.8 25d ago Horovod contains an insecure deserialization vulnerability in its KVStore HTTP server component
CVE-2026-31233 critical 9.8 9.8 25d ago Guardrails AI contains a code injection vulnerability in its Hub package installation mechanism
CVE-2026-31232 high 8.8 8.8 25d ago The CosyVoice project thru commit 6e01309e01bc93bbeb83bdd996b1182a81aaf11e (2025-30-21) contains an insecure deserialization vulnerability (CWE-502) in its model loading process. When loading model f…
CVE-2026-31231 critical 9.8 9.8 25d ago Cognee thru v0.4.0 contains a critical remote code execution vulnerability in its notebook cell execution API endpoint. The endpoint is designed to execute arbitrary Python code provided by the user,…
CVE-2026-31230 critical 9.8 9.8 25d ago The Adversarial Robustness Toolbox (ART) thru 1.20.1 contains a command-line argument injection vulnerability in its Kubeflow component (robustness_evaluation_fgsm_pytorch.py). The script uses the un…
CVE-2026-31229 critical 9.8 9.8 25d ago The Adversarial Robustness Toolbox (ART) thru 1.20.1 contains an insecure deserialization vulnerability (CWE-502) in its Kubeflow component's model loading functionality. When loading model weights f…
CVE-2026-29204 critical 9.1 9.1 25d ago Insufficient ownership check in `clientarea.php` allows an authenticated client area user to submit requests using another user’s `addonId` without any ownership validation leading to unauthorized ac…
CVE-2026-26083 critical 9.8 9.8 fortinet 25d ago A missing authorization vulnerability in Fortinet FortiSandbox 5.0.0 through 5.0.1, FortiSandbox 4.4.0 through 4.4.8, FortiSandbox Cloud 5.0.2 through 5.0.5, FortiSandbox PaaS 23.4 all versions, Fort…
CVE-2026-25088 high 8.8 8.8 fortinet 25d ago An improper neutralization of special elements used in an sql command ('sql injection') vulnerability in Fortinet FortiNDR 7.6.0 through 7.6.2, FortiNDR 7.4.0 through 7.4.9, FortiNDR 7.2 all versions…
CVE-2026-20767 high 7.8 7.8 intel 25d ago Improper input validation for some Intel(R) QAT software drivers for Windows before version 1.13 within Ring 3: User Applications may allow an escalation of privilege. Unprivileged software adversary…
CVE-2026-20714 high 7.8 7.8 intel 25d ago Out-of-bounds write for some Intel(R) QAT software drivers for Windows before version 1.13 within Ring 3: User Applications may allow a escalation of privilege. Unprivileged software adversary with a…
CVE-2025-53844 high 8.8 8.8 25d ago A out-of-bounds write vulnerability in Fortinet FortiOS 7.6.0 through 7.6.3, FortiOS 7.4.0 through 7.4.8, FortiOS 7.2.0 through 7.2.11 allows attacker to execute unauthorized code or commands via spe…
CVE-2025-53681 high 7.2 7.2 fortinet 25d ago An improper neutralization of special elements used in an SQL Command ("SQL Injection&") vulnerability [CWE-89] vulnerability in Fortinet FortiMail 7.6.0 through 7.6.3, FortiMail 7.4.0 through 7.4.5,…
CVE-2025-46311 high 7.5 7.5 FIX macos macos 25d ago An inconsistent user interface issue was addressed with improved state management. This issue is fixed in iOS 18.7.3 and iPadOS 18.7.3, iOS 26.2 and iPadOS 26.2. An app may be able to access sensitiv…
CVE-2026-5089 high 7.3 7.3 FIX debian debian 25d ago YAML::Syck versions before 1.38 for Perl has an out-of-bounds read. The base60 (sexagesimal) parsing code in perl_syck.h has a buffer underflow bug in both int#base60 and float#base60 handlers. Whe…
CVE-2026-43993 high 8.2 8.2 25d ago JunoClaw is an agentic AI platform built on Juno Network. Prior to 0.x.y-security-1, the WAVS bridge's computeDataVerify called fetch() on agent-supplied URLs without validating scheme, port, or reso…
CVE-2026-43992 critical 9.8 9.8 25d ago JunoClaw is an agentic AI platform built on Juno Network. Prior to 0.x.y-security-1, every MCP write tool (send_tokens, execute_contract, instantiate_contract, upload_wasm, ibc_transfer, etc.) accept…
CVE-2026-43991 high 8.4 8.4 25d ago JunoClaw is an agentic AI platform built on Juno Network. Prior to 0.x.y-security-1, substring-based blocklist in plugin-shell's command-safety check could be bypassed by adversarial argument constru…
CVE-2026-43990 high 8.4 8.4 25d ago JunoClaw is an agentic AI platform built on Juno Network. Prior to 0.x.y-security-1, plugin-shell's run_command wrapped every agent-supplied command in 'sh -c' / 'cmd /C' and passed the full argument…
CVE-2026-43989 high 8.5 8.5 25d ago JunoClaw is an agentic AI platform built on Juno Network. Prior to 0.x.y-security-1, the upload_wasm MCP tool accepted a filesystem path from the agent and uploaded whatever bytes the path resolved t…
CVE-2025-65719 critical 9.8 9.8 25d ago An issue in Open Source Kubectl MCP Server v1.1.1 allows attackers to execute arbitrary code on a victim system via user interaction with a crafted HTML page.
CVE-2026-42074 critical 9.8 9.8 gitlawb 26d ago OpenClaude is an open-source coding-agent command line interface for cloud and local model providers. Prior to version 0.5.1, the dangerouslyDisableSandbox parameter is exposed as part of the BashToo…
CVE-2026-43515 critical 9.1 9.1 FIX slesdebian debian apache 26d ago Improper Authorization vulnerability when multiple method constraints define an HTTP method for the same extension in Apache Tomcat. This issue affects Apache Tomcat: from 11.0.0-M1 through 11.0.21,…
CVE-2026-43513 high 7.5 7.5 FIX slesdebian debian apache 26d ago Improper Handling of Case Sensitivity vulnerability in LockOutRealm in Apache Tomcat. This issue affects Apache Tomcat: from 11.0.0-M1 through 11.0.21, from 10.1.0-M1 through 10.1.54, from 9.0.0.M1 …
CVE-2026-43512 critical 9.8 9.8 FIX slesdebian debian apache 26d ago DEPRECATED: Authentication Bypass Issues vulnerability in digest authentication in Apache Tomcat. This issue affects Apache Tomcat: from 11.0.0-M1 through 11.0.21, from 10.1.0-M1 through 10.1.54, fr…
CVE-2026-42498 high 7.3 7.3 FIX slesdebian debian apache 26d ago Exposure of HTTP Authentication Header to unexpected hosts during WebSocket authentication vulnerability in Apache Tomcat. This issue affects Apache Tomcat: from 11.0.0-M1 through 11.0.21, from 10.1…
CVE-2026-41293 critical 9.8 9.8 FIX slesdebian debian apache 26d ago Improper Input Validation vulnerability in Apache Tomcat. This issue affects Apache Tomcat: from 11.0.0-M1 through 11.0.21, from 10.1.0-M1 through 10.1.54, from 9.0.0.M1 through 9.0.117, from 10.0.0…
CVE-2026-41284 high 7.5 7.5 FIX slesdebian debian apache 26d ago Allocation of Resources Without Limits or Throttling vulnerability in Apache Tomcat. This issue affects Apache Tomcat: from 11.0.0-M1 through 11.0.21, from 10.1.0-M1 through 10.1.54, from 9.0.0.M1 t…
CVE-2026-34187 critical 9.8 9.8 artica 26d ago Improper Neutralization of Special Elements used in an SQL Command vulnerability allows SQL Injection via graph container parameter. This issue affects Pandora FMS: from 777 through 800
CVE-2026-31228 critical 9.8 9.8 26d ago The Adversarial Robustness Toolbox (ART) thru 1.20.1 contains a remote code execution vulnerability in its Kubeflow component. The robustness evaluation function for PyTorch models uses the unsafe ev…
CVE-2026-31226 critical 9.8 9.8 26d ago The TinyZero project thru commit 6652a63c57fa7e5ccde3fc9c598c7176ff15b839 (2025-58-24) contains a critical command injection vulnerability (CWE-78) in its HDFS file operation utilities. The vulnerabi…
CVE-2026-31224 high 8.8 8.8 snorkel 26d ago Snorkel MultitaskClassifier.load uses an unsafe torch.load
CVE-2026-31223 high 8.8 8.8 snorkel 26d ago Snorkel BaseLabeler.load uses an unsafe pickle.load
CVE-2026-31220 critical 9.8 9.8 26d ago PySyft server-side arbitrary Python execution after code approval
CVE-2026-31219 high 8.8 8.8 26d ago The _load_model() function in the neural_magic_training.py script of the optimate project in commit a6d302f912b481c94370811af6b11402f51d377f (2024-07-21) is vulnerable to insecure deserialization (CW…
CVE-2026-31218 high 8.8 8.8 26d ago The _load_model() function in the neural_magic_training.py script of the optimate project in commit a6d302f912b481c94370811af6b11402f51d377f (2024-07-21) is vulnerable to insecure deserialization (CW…
CVE-2026-31217 critical 9.8 9.8 nebuly 26d ago The _load_model() function in the neural_magic_training.py script of the optimate project in commit a6d302f912b481c94370811af6b11402f51d377f (2024-07-21) allows arbitrary code execution. When a user …
CVE-2026-31216 critical 9.1 9.1 nexent 26d ago The nexent v1.7.5.2 backend service contains an unauthorized arbitrary storage file deletion vulnerability in its file management API. The DELETE /storage/{object_name:path} endpoint lacks authentica…
CVE-2026-31215 critical 9.1 9.1 nexent 26d ago The nexent v1.7.5.2 backend service contains an unauthorized arbitrary file deletion vulnerability in its ElasticSearch service interface. The DELETE /{index_name}/documents endpoint lacks proper aut…
CVE-2026-31214 critical 9.8 9.8 26d ago The torch-checkpoint-shrink.py script in the ml-engineering project in commit 0099885db36a8f06556efe1faf552518852cb1e0 (2025-20-27) contains an insecure deserialization vulnerability (CWE-502). The s…
CVE-2026-30810 high 8.8 8.8 artica 26d ago Server-Side Request Forgery vulnerability allows Privilege Escalation via API Checker extension. This issue affects Pandora FMS: from 777 through 800
CVE-2026-30808 high 8.1 8.1 artica 26d ago Session Fixation vulnerability allows Session Hijacking via crafted session ID. This issue affects Pandora FMS: from 777 through 800
CVE-2026-30807 high 8.8 8.8 artica 26d ago Cross-Site Request Forgery vulnerability allows an attacker to perform unauthorized actions via crafted web page. This issue affects Pandora FMS: from 777 through 800
CVE-2026-30805 critical 9.1 9.1 artica 26d ago Insecure Default Initialization of Resource vulnerability allows Authentication Bypass via API access. This issue affects Pandora FMS: from 777 through 800
CVE-2023-27753 high 8.0 8.0 26d ago An arbitrary file upload vulnerability in MK-Auth 23.01K4.9 allows attackers to execute arbitrary code via uploading a crafted PHP file.