CVE Database

121173+ vulnerabilities with CVSS scores, EPSS exploit predictions, and CISA KEV status. Updated daily.

Filter: All CRITICAL HIGH MEDIUM LOW CISA KEV
Sort: Newest CVSS EPSS
CVE-2026-64257
9.1 CRITICAL

In the Linux kernel, the following vulnerability has been resolved: smb: client: reject overlapping data areas in SMB2 responses Commit 53b7c271f06b ("smb: client: restrict implied …

Jul 25, 2026
CVE-2026-64256

In the Linux kernel, the following vulnerability has been resolved: xfs: don't wrap around quota ids in dqiterate LOLLM noticed that q_id is an unsigned …

Jul 25, 2026
CVE-2026-16766
9.8 CRITICAL

Catalyst::View::Wkhtmltopdf versions before 0.6.1 for Perl allow shell command injection (RCE) via PDF render options. Options are passed directly to the wkhtmltopdf command without sanitization. …

Jul 25, 2026
CVE-2026-15425
6.4 MEDIUM

The Yoast SEO – Advanced SEO with real-time guidance and built-in AI plugin for WordPress is vulnerable to Stored Cross-Site Scripting via Post Slug (post_name) …

Jul 25, 2026
CVE-2026-14955
6.5 MEDIUM

The Checkout Field Editor for WooCommerce (Pro) plugin for WordPress is vulnerable to Directory Traversal in all versions up to, and including, 3.7.7 via the …

Jul 25, 2026
CVE-2026-10818
8.1 HIGH

The WPForms Pro plugin for WordPress is vulnerable to Arbitrary File Upload in all versions up to, and including, 1.10.1.1 via the ajax_chunk_upload_finalize function. This …

Jul 25, 2026
CVE-2026-66374
8.1 HIGH

Knot Resolver before 6.4.1 allows remote code execution via a heap-based buffer overflow in the DoQ (DNS-over-QUIC) receive path.

Jul 25, 2026
CVE-2026-66373
7.5 HIGH

Redis before 8.8.0, in the unusual case where an authenticated attacker can execute RESTORE, allows remote code execution via a RESTORE payload where the same …

Jul 25, 2026
CVE-2026-66339
6.5 MEDIUM

A flaw was found in libsoup. After a CONNECT tunnel is established through an HTTP proxy, libsoup incorrectly attaches the Proxy-Authorization header to subsequent HTTPS …

Jul 24, 2026
CVE-2026-66338
5.4 MEDIUM

A flaw was found in libsoup. The chunked transfer encoding parser uses a permissive parsing function for chunk sizes that silently accepts inputs violating RFC …

Jul 24, 2026
CVE-2026-66337
6.5 MEDIUM

A flaw was found in libsoup. An unsigned integer underflow in the soup_filter_input_stream_read_until() function causes a heap buffer over-read when parsing multipart HTTP responses. A …

Jul 24, 2026
CVE-2026-61892
8.8 HIGH

Weintek cMT3092X HMI allows a non-privileged user to modify tokens to escalate privileges.

Jul 24, 2026
CVE-2026-61886
6.5 MEDIUM

Weintek cMT3092X HMI stores user account passwords in plaintext.

Jul 24, 2026
CVE-2026-60135
6.5 MEDIUM

An attacker can modify data that should be restricted to read‑only access.

Jul 24, 2026
CVE-2026-60134
8.8 HIGH

Weintek cMT3092X HMI allows a non-privileged user to modify cookies to gain elevated privileges.

Jul 24, 2026
CVE-2026-16280
9.8 CRITICAL

An integer overflow when calculating physical offsets for sparse PMRs may result in 32-bit truncation of address computations for PMRs larger than 4 GB. This …

Jul 24, 2026
CVE-2026-61884
9.8 CRITICAL

The web management interface of Tycon Systems TPDIN-Monitor-WEB2 does not perform server-side validation of credentials during the login process. By submitting empty values for both …

Jul 24, 2026
CVE-2026-55985
4.3 MEDIUM

The web management interface in Tycon Systems TPDIN-Monitor-WEB2 stores and displays system credentials in cleartext on a certain configuration page accessible to authenticated users. Any …

Jul 24, 2026
CVE-2025-71408
7.8 HIGH

NLTK (Natural Language Toolkit) before version 3.9.3 contains an eval injection vulnerability in the nltk.collocations module that allows an attacker who controls command-line arguments to …

Jul 24, 2026
CVE-2026-66041
8.8 HIGH

FFmpeg 7.0 through 8.1.2, fixed in commit 4da9812, contains a heap out-of-bounds write vulnerability in the vf_quirc filter that allows an attacker to corrupt heap …

Jul 24, 2026
CVE-2026-66040
8.8 HIGH

FFmpeg through 8.1.2, fixed in commit b506faf, contains a heap out-of-bounds write vulnerability in the native PNG and APNG encoders that allows remote attackers to …

Jul 24, 2026
CVE-2026-66039
8.8 HIGH

FFmpeg through 8.1.2, fixed in commit aafb5c6, contains a signed integer overflow vulnerability in the MACE6 audio decoder that allows attackers to corrupt heap memory …

Jul 24, 2026
CVE-2026-66038
6.5 MEDIUM

FFmpeg through 8.1.2, fixed in commit 8670835, contains an information disclosure vulnerability in the LCL/ZLIB video decoder that allows attackers to expose uninitialized heap memory …

Jul 24, 2026
CVE-2026-66037
6.5 MEDIUM

FFmpeg through 8.1.2, fixed in commit 5d7112c, contains an uncontrolled resource consumption vulnerability in the IAMF demuxer that allows an unauthenticated attacker to cause multi-gigabyte …

Jul 24, 2026
CVE-2026-66036
8.8 HIGH

FFmpeg through 8.1.2, fixed in commit 5d7112c, contains a heap out-of-bounds write vulnerability in the vf_hqdn3d filter that allows attackers to corrupt heap memory by …

Jul 24, 2026
CVE-2026-62835
9.3 CRITICAL

Improper authorization in Azure Portal allows an unauthorized attacker to disclose information over a network.

Jul 24, 2026
CVE-2026-57531
5.4 MEDIUM

Milkdown before 7.21.3 contains a DOM cross-site scripting vulnerability in the @milkdown/plugin-emoji package that allows unauthenticated attackers to execute arbitrary JavaScript in the host application's …

Jul 24, 2026
CVE-2026-57530
5.4 MEDIUM

Milkdown before 7.21.3 contains a stored cross-site scripting vulnerability in the @milkdown/preset-commonmark and @milkdown/components packages that allows attackers with document write access to execute arbitrary …

Jul 24, 2026
CVE-2026-54342
8.1 HIGH

In epa4all, prior to version 2026-05-20, an attacker on the network path between epa4all and any backend (ePA Aktensystem, Konnektor, IDP, TSS) can present a …

Jul 24, 2026
CVE-2026-48037

Hulumi is an open-source toolkit that ships secure-by-default cloud and platform infrastructure components for Pulumi. Prior to version 1.4.0, AccountFoundation reuse paths silently downgrade GuardDuty …

Jul 24, 2026
CVE-2026-48036

Hulumi is an open-source toolkit that ships secure-by-default cloud and platform infrastructure components for Pulumi. Prior to version 1.4.0, consumers running drift detection in CI …

Jul 24, 2026
CVE-2026-48035

Hulumi is an open-source toolkit that ships secure-by-default cloud and platform infrastructure components for Pulumi. Prior to version 1.4.0, consumers using AccountFoundation could ship an …

Jul 24, 2026
CVE-2026-48034

Hulumi is an open-source toolkit that ships secure-by-default cloud and platform infrastructure components for Pulumi. Prior to version 1.4.0, there is a bypass via decoy …

Jul 24, 2026
CVE-2026-48033

Hulumi is an open-source toolkit that ships secure-by-default cloud and platform infrastructure components for Pulumi. Prior to version 1.4.0, policy packs can be bypassed by …

Jul 24, 2026
CVE-2026-48032

Hulumi is an open-source toolkit that ships secure-by-default cloud and platform infrastructure components for Pulumi. Prior to version 1.4.0, IAM-role policy checks can be bypassed …

Jul 24, 2026
CVE-2026-48021
9.1 CRITICAL

In epa4all, prior to version 2026-05-20, an attacker who can intercept the TLS connection between epa4all and the ePA backend can complete the VAU handshake …

Jul 24, 2026
CVE-2026-17107
8.5 HIGH

A flaw was found in the cluster-proxy service-proxy component used in Red Hat Advanced Cluster Management for Kubernetes (RHACM) and multicluster-engine (MCE). The service-proxy appends …

Jul 24, 2026
CVE-2026-66035
7.5 HIGH

libssh2 through 1.11.1, fixed in commit 42e33d8, contains a pre-authentication heap buffer overflow vulnerability that allows a malicious SSH server to corrupt heap metadata in …

Jul 24, 2026
CVE-2026-66034
7.5 HIGH

libssh2 through 1.11.1, fixed in commit a13bb6c, contains a missing bounds check vulnerability that allows a malicious SSH server to trigger an arbitrary-length heap out-of-bounds …

Jul 24, 2026
CVE-2026-66033
7.5 HIGH

libssh2 through 1.11.1, fixed in commit a2ed82d, contains a pre-authentication integer underflow vulnerability in the ssh2_cipher_crypt() function in src/openssl.c that allows a malicious SSH server …

Jul 24, 2026
CVE-2026-66032
8.8 HIGH

libssh2 through 1.11.1, fixed in commit 5e47761, contains a double-free vulnerability in the sftp_open() function in src/sftp.c that allows a malicious SSH server to corrupt …

Jul 24, 2026
CVE-2026-65711
7.2 HIGH

sysPass through version 3.2.11 contains an OS command injection vulnerability that allows authenticated administrators to execute arbitrary commands as the web server process user by …

Jul 24, 2026
CVE-2026-65710
7.1 HIGH

sysPass through version 3.2.11 contains a missing authorization vulnerability that allows authenticated users with the PUBLICLINK_CREATE profile flag to trigger unauthorized decryption and persistent storage …

Jul 24, 2026
CVE-2026-65709
8.3 HIGH

sysPass through version 3.2.11 contains a missing object-level authorization vulnerability in the JSON-RPC API that allows API token holders to enumerate account metadata, overwrite passwords, …

Jul 24, 2026
CVE-2026-65708
8.1 HIGH

sysPass through version 3.2.11 contains an insecure direct object reference vulnerability that allows any authenticated attacker to access account file attachments belonging to accounts they …

Jul 24, 2026
CVE-2026-65707
6.5 MEDIUM

Likeshop through 3.0.5 contains an authenticated SQL injection vulnerability that allows admin-level users to extract arbitrary database contents by submitting unsanitized POST parameters to the …

Jul 24, 2026
CVE-2026-65623

Inefficient Algorithmic Complexity vulnerability in mtrudel bandit allows unauthenticated remote denial of service via CPU exhaustion during WebSocket fragment reassembly. The size guard 'Elixir.Bandit.WebSocket.Connection':oversize_message?/2 called …

Jul 24, 2026
CVE-2026-66027
8.3 HIGH

Suna before 0.9.102 contains a broken access control vulnerability in the message queue API that allows authenticated attackers to access and manipulate queue resources belonging …

Jul 24, 2026
CVE-2026-65693
7.2 HIGH

Microweber CMS through 2.0.20 contains a server-side template injection vulnerability that allows authenticated administrators to achieve arbitrary OS command execution by injecting Twig expressions into …

Jul 24, 2026
CVE-2026-64255
8.8 HIGH

In the Linux kernel, the following vulnerability has been resolved: wifi: iwlwifi: mld: validate sta_mask before ffs() in BA session handlers Three BA session handlers …

Jul 24, 2026

Scan your infrastructure for known CVEs

Free website and port scanning — find vulnerabilities before attackers do.