CVE Database

48241+ vulnerabilities with CVSS scores, EPSS exploit predictions, and CISA KEV status. Updated daily.

Filter: All CRITICAL HIGH MEDIUM LOW CISA KEV
Sort: Newest CVSS EPSS
CVE-2026-62895
8.8 HIGH

Permissive cross-domain policy with untrusted domains in Azure Arc allows an unauthorized attacker to elevate privileges over a network.

Sep 8, 2026
CVE-2026-62813
7.5 HIGH

Use after free in Active Directory Domain Services allows an authorized attacker to execute code over a network.

Sep 8, 2026
CVE-2026-62810
7.8 HIGH

Heap-based buffer overflow in Active Directory Certificate Services (AD CS) allows an authorized attacker to elevate privileges locally.

Sep 8, 2026
CVE-2026-62804
7.8 HIGH

External control of file name or path in Microsoft Office Word allows an unauthorized attacker to execute code locally.

Sep 8, 2026
CVE-2026-62759
7.5 HIGH

Authentication bypass by spoofing in Windows Netlogon allows an unauthorized attacker to perform spoofing over an adjacent network.

Sep 8, 2026
CVE-2026-62744
8.8 HIGH

Heap-based buffer overflow in Microsoft Windows Media Foundation allows an unauthorized attacker to execute code over a network.

Sep 8, 2026
CVE-2026-62706
8.8 HIGH

Out-of-bounds read in Microsoft Windows Media Foundation allows an unauthorized attacker to execute code over a network.

Sep 8, 2026
CVE-2026-62697
7.8 HIGH

Use after free in Windows Push Notifications allows an authorized attacker to elevate privileges locally.

Sep 8, 2026
CVE-2026-62694
7.0 HIGH

Use after free in Windows Installer allows an authorized attacker to elevate privileges locally.

Sep 8, 2026
CVE-2026-58611
7.8 HIGH

Improper authorization in XBox Gaming Services allows an authorized attacker to elevate privileges locally.

Sep 8, 2026
CVE-2026-58600
7.8 HIGH

Heap-based buffer overflow in Microsoft Windows Codecs Library allows an unauthorized attacker to elevate privileges locally.

Sep 8, 2026
CVE-2026-58599
7.8 HIGH

Heap-based buffer overflow in Microsoft Windows Codecs Library allows an unauthorized attacker to execute code locally.

Sep 8, 2026
CVE-2026-57099
7.5 HIGH

Allocation of resources without limits or throttling in ASP.NET Core allows an unauthorized attacker to deny service over a network.

Sep 8, 2026
CVE-2026-57098
7.5 HIGH

Improper verification of cryptographic signature in Windows RDP Client allows an unauthorized attacker to disclose information over a network.

Sep 8, 2026
CVE-2026-56198
7.8 HIGH

Out-of-bounds read in Microsoft Trace Data Helper allows an authorized attacker to elevate privileges locally.

Sep 8, 2026
CVE-2026-56177
7.8 HIGH

Use after free in Windows Server allows an authorized attacker to elevate privileges locally.

Sep 8, 2026
CVE-2026-56172
7.8 HIGH

Use after free in Windows VHD miniport driver allows an authorized attacker to elevate privileges locally.

Sep 8, 2026
CVE-2026-55007
8.1 HIGH

Double free in Microsoft Exchange Server allows an unauthorized attacker to execute code over a network.

Sep 8, 2026
CVE-2026-50349
7.0 HIGH

Concurrent execution using shared resource with improper synchronization ('race condition') in Windows Ancillary Function Driver for WinSock allows an authorized attacker to elevate privileges locally.

Sep 8, 2026
CVE-2026-47297
8.1 HIGH

Deserialization of untrusted data in SQL Server allows an unauthorized attacker to execute code over a network.

Sep 8, 2026
CVE-2026-86073
7.6 HIGH

n8n is an open source workflow automation platform. Prior to 2.37.7 and 2.38.1, the OAuth token endpoint bound an authorization code's first access token to …

Sep 8, 2026
CVE-2026-84393
8.1 HIGH

A improper validation of certificate with host mismatch vulnerability in Fortinet FortiOS 7.6.1 through 7.6.6, FortiProxy 7.6.2 through 7.6.6 may allow attacker to information disclosure …

Sep 8, 2026
CVE-2026-84387
7.2 HIGH

A improper neutralization of special elements used in a command ('command injection') vulnerability in Fortinet FortiSandbox 5.2.0, FortiSandbox 5.0.0 through 5.0.6, FortiSandbox 4.4.0 through 4.4.9 …

Sep 8, 2026
CVE-2026-82075
7.5 HIGH

An uncontrolled resource consumption weakness exists in the request-handling path of the MongoDB sharded-cluster router process. A client that has network access to a router …

Sep 8, 2026
CVE-2026-82071
8.1 HIGH

Insufficient validation of storage engine configuration options in MongoDB Server allows an authenticated user with write privileges to supply crafted parameters during collection creation that …

Sep 8, 2026
CVE-2026-82067
8.1 HIGH

Improper handling of case sensitivity in the configuration validation component of MongoDB Server may cause the authorization subsystem to remain in a default disabled state …

Sep 8, 2026
CVE-2026-82064
7.5 HIGH

A security issue in MongoDB Server allows an unauthenticated network user to cause a denial of service on a specific type of replica set member. …

Sep 8, 2026
CVE-2026-82061
8.1 HIGH

A use-after-free security issue exists in the server's query execution memory tracking subsystem. An authenticated user with read privileges can trigger a write to freed …

Sep 8, 2026
CVE-2026-82053
8.1 HIGH

A security issue exists in MongoDB's LDAP authorization integration where pooled LDAP connections can retain stale authentication identities after user authentication under certain configurations. Subsequent …

Sep 8, 2026
CVE-2026-47625
7.5 HIGH

NVIDIA Triton Inference Server for Linux contains a vulnerability where an attacker could abuse missing authorization. A successful exploit of this vulnerability might lead to …

Sep 8, 2026
CVE-2026-20293
7.1 HIGH

A vulnerability in the Unified Extensible Firmware Interface (UEFI) Shell implementation of Cisco UCS Servers and UCS-based appliances could allow an authenticated attacker with valid …

Sep 8, 2026
CVE-2026-16497
7.5 HIGH

NVIDIA Triton Inference Server for Linux contains a vulnerability where an attacker could cause excessive iteration. A successful exploit of this vulnerability might lead to …

Sep 8, 2026
CVE-2026-86738
8.7 HIGH

Snipe-IT versions before 8.7.0 contain a CSS injection vulnerability in the Custom CSS field due to incomplete sanitization that reverses HTML encoding on greater-than and …

Sep 8, 2026
CVE-2026-86733
7.2 HIGH

Snipe-IT before 8.7.0 streams the SQL entry from an uploaded backup archive directly into the MySQL/MariaDB command-line client (`mysql`) without the --binary-mode flag, so the …

Sep 8, 2026
CVE-2026-86732
8.8 HIGH

Craft CMS versions before 5.10.12 contain a remote code execution vulnerability in the element-index endpoint that allows authenticated content editors to instantiate arbitrary classes through …

Sep 8, 2026
CVE-2026-86730
8.8 HIGH

Craft CMS versions before 5.10.12 fail to properly cleanse string-typed field-layout elements, allowing authenticated control-panel users to inject Yii2 behavior attachments and event handlers. Attackers …

Sep 8, 2026
CVE-2026-86729
7.4 HIGH

WWBN AVideo through commit e01e41ecc (no patched version available) exposes get_api_preauthorize in plugin/API/API.php as a second, undocumented login path. Unlike get_api_signIn, which enforces a rate …

Sep 8, 2026
CVE-2026-86728
7.5 HIGH

AVideo through 29.0 contains an authentication bypass vulnerability in plugin/PlayLists/epg.json.php that exposes live-stream keys and private EPG schedules to unauthenticated users. Attackers can request the …

Sep 8, 2026
CVE-2026-86727
7.5 HIGH

AVideo through 29.0 contains an information disclosure vulnerability in plugin/Live/stats.json.php that allows unauthenticated attackers to retrieve stream keys and m3u8 URLs by accessing the endpoint …

Sep 8, 2026
CVE-2026-86725
7.1 HIGH

AVideo through c3edcc274c389816d434acadac07ee78eaf330c1 contains a missing authorization vulnerability in the SocialMediaPublisher plugin's add.json.php endpoint that allows authenticated users to modify other users' OAuth token records. …

Sep 8, 2026
CVE-2026-86723
8.1 HIGH

AVideo through c3edcc274c389816d434acadac07ee78eaf330c1 contains an authentication bypass vulnerability in LoginControl::verifyChallenge() that uses loose comparison (==) instead of strict comparison (===) against unset session values. Attackers …

Sep 8, 2026
CVE-2026-86722
8.1 HIGH

AVideo through commit c3edcc274c389816d434acadac07ee78eaf330c1 contains an authentication bypass vulnerability where sqlDAL caches empty result sets that writeSql never invalidates. Attackers with a valid password can …

Sep 8, 2026
CVE-2026-86721
7.5 HIGH

AVideo through commit c3edcc274c contains an authorization bypass vulnerability where a session cookie named 'key' with value 'value' overrides the $_REQUEST['key'] parameter in saveLive.php and …

Sep 8, 2026
CVE-2026-86720
8.1 HIGH

WWBN AVideo through commit c3edcc274c389816d434acadac07ee78eaf330c1 fails to validate ownership of live_restreams_id in resendRestreamer.json.php, allowing authenticated users with canStream to access other users' restream destinations. Attackers …

Sep 8, 2026
CVE-2026-86718
7.1 HIGH

WWBN AVideo through commit c3edcc274c389816d434acadac07ee78eaf330c1 contains a cross-site request forgery vulnerability in deleteHistory.json.php and finishAll.json.php that allows unauthenticated attackers to mutate live history by making …

Sep 8, 2026
CVE-2026-86666
7.3 HIGH

A security flaw has been discovered in aircheng-org iWebShop-5 up to 5.15. Impacted is the function upload_json/uploadFile of the file controllers/pic.php. The manipulation results in …

Sep 8, 2026
CVE-2026-86600
8.2 HIGH

In affected Snowflake drivers, WORKLOAD_IDENTITY authentication requests a cloud workload-identity token and attaches it to the login request without verifying that the configured host is …

Sep 8, 2026
CVE-2026-79572
7.5 HIGH

An XXE (XML External Entity) vulnerability in the level-rule module of Distribution Management v1.0.0 allows attackers to read sensitive files, scan internal networks, or launch …

Sep 8, 2026
CVE-2026-16037
7.5 HIGH

Observable timing discrepancy vulnerability in PayTR Payment and Electronic Money Institution Inc. PayTR Virtual Pos iFrame API (v9x) WHMCS Module allows Black Box Reverse Engineering. …

Sep 8, 2026
CVE-2026-16025
7.5 HIGH

Improper validation of specified quantity in input vulnerability in PayTR Payment and Electronic Money Institution Inc. PayTR Virtual Pos iFrame API (v9x) WHMCS Module allows …

Sep 8, 2026

Scan your infrastructure for known CVEs

Free website and port scanning — find vulnerabilities before attackers do.