CVE Database

48241+ vulnerabilities with CVSS scores, EPSS exploit predictions, and CISA KEV status. Updated daily.

Filter: All CRITICAL HIGH MEDIUM LOW CISA KEV
Sort: Newest CVSS EPSS
CVE-2026-74745
7.5 HIGH

In the Linux kernel, the following vulnerability has been resolved: eth: bnxt: avoid deadlock when canceling IRQ affinity notifier Unregistering IRQ affinity notifiers waits for …

Aug 26, 2026
CVE-2026-74742
7.5 HIGH

In the Linux kernel, the following vulnerability has been resolved: veth: fix queue index used to wake the peer txq in veth_poll veth_poll() derives the …

Aug 26, 2026
CVE-2026-74741
7.5 HIGH

In the Linux kernel, the following vulnerability has been resolved: net: ngbe: fix NULL pointer dereference in non-MSI-X interrupt enabling In non-MSI-X mode (such as …

Aug 26, 2026
CVE-2026-74739
7.8 HIGH

In the Linux kernel, the following vulnerability has been resolved: net/sched: cls_u32: skip hash tables in u32_bind_class() u32_walk() enumerates both struct tc_u_hnode and struct tc_u_knode …

Aug 26, 2026
CVE-2026-74736
7.8 HIGH

In the Linux kernel, the following vulnerability has been resolved: net/sched: cls_bpf: reject dev-bound programs bound to a different device cls_bpf_prog_from_efd() obtained a SCHED_CLS program …

Aug 26, 2026
CVE-2026-54550
7.4 HIGH

IzPack is a widely used tool for packaging applications on the Java platform as cross-platform installers. In 5.2.6 and earlier, UnpackerBase.unpack() in izpack-installer/src/main/java/com/izforge/izpack/installer/unpacker/UnpackerBase.java obtains an …

Aug 26, 2026
CVE-2026-54511
8.6 HIGH

LogTape is an unobtrusive logging library. Prior to 1.3.11, 2.0.14, and 2.1.5, the @logtape/syslog package's escapeStructuredDataValue() function in packages/syslog/src/syslog.ts does not neutralize C0 control characters …

Aug 26, 2026
CVE-2026-75960
8.1 HIGH

Rently Smart Home versions 20.1.0 and prior are vulnerable to an Insufficiently Protected Credentials vulnerability. This could allow an attacker to retrieve pins including the …

Aug 26, 2026
CVE-2026-73108
7.5 HIGH

RustDesk versions before 1.4.7 contain an uncontrolled speculative memory allocation vulnerability in BytesCodec. Before authentication, the decoder trusts the payload length encoded in a four-byte …

Aug 26, 2026
CVE-2026-19271
7.5 HIGH

Improper Neutralization of Special Elements used in an LDAP Query ('LDAP Injection') vulnerability in TÜBİTAK BİLGEM Software Technologies Research Institute Liderahenk allows LDAP Injection. This …

Aug 26, 2026
CVE-2026-18252
7.3 HIGH

GitLab has remediated an issue in GitLab EE affecting all versions from 18.9 before 19.1.7, 19.2 before 19.2.5, and 19.3 before 19.3.1 that, under certain …

Aug 26, 2026
CVE-2026-15990
7.5 HIGH

The Formidable Charts plugin for WordPress is vulnerable to Directory Traversal in all versions up to, and including, 2.0.1 via the 'frm_graph' parameter. This makes …

Aug 26, 2026
CVE-2026-77658
7.8 HIGH

A stack-based buffer overflow vulnerability exists in the Dia diagram editor when processing Network Bus objects from Dia XML project files. In objects/network/bus.c, bus_load() reads …

Aug 26, 2026
CVE-2026-63041
8.8 HIGH

Reliance on Untrusted Inputs in a Security Decision vulnerability in Apache APISIX. This vulnerability allows an attacker to escalate privilege or perform an authorization bypass …

Aug 26, 2026
CVE-2026-15985
8.1 HIGH

The Classified Listing - Mobile Number Verification plugin for WordPress is vulnerable to Authentication Bypass in all versions up to, and including, 1.6.0. This is …

Aug 26, 2026
CVE-2026-80205
7.5 HIGH

NLTK versions before 3.10.0 contain a regular expression denial of service vulnerability in Text.findall() and TokenSearcher.findall() methods that accept user-supplied regular expressions without validation or …

Aug 26, 2026
CVE-2026-80350
7.1 HIGH

OneUptime's webhook target check rejects private and loopback addresses given in IPv4 form and a small set of IPv6 forms, but has no case for …

Aug 26, 2026
CVE-2026-80348
8.8 HIGH

TarsWeb enforces its per-application roles by calling AuthService from individual controller methods, and four methods in app/controller/patch/PatchController.js make no such call. uploadAndPublish accepts a package …

Aug 26, 2026
CVE-2026-80347
7.5 HIGH

mcp-fetch checks a fetch target against its SSRF guard without removing the brackets that surround an IPv6 literal. isSafeUrl reads the hostname from the parsed …

Aug 26, 2026
CVE-2026-80346
7.1 HIGH

StarRocks performs no privilege check when a legacy synchronous materialized view is dropped. Every other statement type routed through AuthorizerStmtVisitor calls into Authorizer before execution, …

Aug 26, 2026
CVE-2026-77538
8.2 HIGH

A malicious actor with access to the network could exploit an Improper Access Control vulnerability found in UniFi Connect Application to escalate privileges within the …

Aug 26, 2026
CVE-2026-19042
8.8 HIGH

A command injection vulnerability in TeamViewer Full Client and Host for Linux prior to version 15.81.5 allows a remote attacker to execute arbitrary commands in …

Aug 26, 2026
CVE-2026-18794
8.2 HIGH

The OpenRGB network protocol allows attackers to cause memory exhaustion and out-of-bounds memory reads and writes by passing inconsistent data.

Aug 26, 2026
CVE-2026-16444
7.5 HIGH

Improper neutralization of path traversal sequences in TeamViewer Desktop Clients prior Version 15.81.5 allows an authenticated remote session participant to write files to unintended locations …

Aug 26, 2026
CVE-2026-80237
8.8 HIGH

EFence developed by Thinking Software Technology has an Arbitrary File Upload vulnerability. Authenticated remote attackers can upload and execute web shell backdoors, thereby enabling arbitrary …

Aug 26, 2026
CVE-2026-80236
8.2 HIGH

Efence developed by Thinking Software Technology has a SQL Injection vulnerability. Unauthenticated remote attackers can access file upload functionality and read database contents.

Aug 26, 2026
CVE-2026-80233
7.2 HIGH

CAYIN CMS-WS, CMS-SE, and SMP series products developed by CAYIN Technology have an Arbitrary File Upload vulnerability. Privileged remote attackers can upload and execute web …

Aug 26, 2026
CVE-2026-78237
7.8 HIGH

Insufficient input validation in ABR allows a low-privileged user to inject malicious entries into the sudoers file, resulting in persistent root access that remained effective …

Aug 26, 2026
CVE-2026-78236
8.8 HIGH

An insecure PIN derivation mechanism in ABR allows a low-privileged user to escalate privileges to administrator by communicating over Cross-Process Communication (XPC) while masquerading as …

Aug 26, 2026
CVE-2026-75977
8.8 HIGH

The Mang Board WP plugin for WordPress is vulnerable to Missing Authorization via Authentication Cookie Forgery in all versions up to, and including, 2.3.7. This …

Aug 26, 2026
CVE-2026-18884
7.5 HIGH

The WooCommerce Lottery plugin for WordPress is vulnerable to Time-Based SQL Injection via 'orderby' and 'order' GET Parameters in all versions up to, and including, …

Aug 26, 2026
CVE-2026-18331
7.2 HIGH

The Formidable Forms – WordPress Form Builder for Contact Forms, Calculators, Quizzes & More plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the …

Aug 26, 2026
CVE-2026-77693
8.7 HIGH

The Order Tip for WooCommerce WordPress plugin before 1.6.0 does not check the capability of the user requesting a file deletion, nor does it restrict …

Aug 26, 2026
CVE-2026-75797
7.7 HIGH

The AI Engine WordPress plugin before 3.7.2 does not confine a caller-supplied URL when mapping it to a local filesystem path before reading the file …

Aug 26, 2026
CVE-2026-74928
7.5 HIGH

The Project Manager WordPress plugin before 4.0.7 does not have any authorisation check on its import routes, allowing unauthenticated users to create WordPress accounts with …

Aug 26, 2026
CVE-2026-74851
7.2 HIGH

The Pods WordPress plugin before 3.3.9.1 does not correctly compare a display callback against its list of blocked functions, allowing users with the author role …

Aug 26, 2026
CVE-2026-58097
7.8 HIGH

mp_SetEnddisc() copied a user-supplied PSN endpoint value without length validation, allowing a buffer overflow via the ppp(8) command interface. A local user with access to …

Aug 26, 2026
CVE-2026-58096
8.8 HIGH

LcpDecodeConfig() did not validate the length of received endpoint discriminator options against the minimum required by RFC 1717. Undersized options would trigger an out-of-bounds write. …

Aug 26, 2026
CVE-2026-58095
8.8 HIGH

mp_Enddisc() used incorrect length calculations when formatting endpoint discriminator addresses for display, allowing a received endpoint option to overflow a global result buffer. A malicious …

Aug 26, 2026
CVE-2026-58094
7.8 HIGH

The FIOSSHMLPGCNF ioctl(2) operation configures the page size for a largepage shared memory object. This is intended to be used immediately after creating the object, …

Aug 26, 2026
CVE-2026-58093
7.0 HIGH

The TIOCSCTTY ioctl handler drops the tty lock in order to acquire the process tree lock. After reacquiring the tty lock, the handler did not …

Aug 26, 2026
CVE-2026-19760
7.2 HIGH

The WP Fastest Cache – WordPress Cache Plugin plugin for WordPress is vulnerable to Stored Cross-Site Scripting via HTTP Host Header in all versions up …

Aug 26, 2026
CVE-2026-19718
8.1 HIGH

The BlogVault Backup & Staging WordPress plugin before 6.65, MalCare WordPress Security Plugin WordPress plugin before 6.65, The WP Remote WordPress Plugin WordPress plugin before …

Aug 26, 2026
CVE-2026-80202
8.8 HIGH

Kimai before 2.56.0 does not enforce team-membership checks in TimesheetVoter::voteOnAttribute(), which maps permissions only to own_timesheet or other_timesheet. As a result, any authenticated user with …

Aug 26, 2026
CVE-2026-80198
7.5 HIGH

Kimai versions before 2.56.0 fail to restrict the config() Twig function in sandboxed invoice and export templates, allowing administrators to access arbitrary configuration keys. Attackers …

Aug 26, 2026
CVE-2026-80196
7.5 HIGH

Kimai before 2.58.0 contains an authentication bypass vulnerability where password reset links remain valid after password changes because the LoginLink signature covers only the user …

Aug 26, 2026
CVE-2026-80193
8.8 HIGH

Kimai before 2.62.0 fails to validate create_other_timesheet permission in the QuickEntry controller when creating new timesheets. Authenticated users with view_other_timesheet and edit_other_timesheet permissions can create …

Aug 26, 2026
CVE-2026-80192
8.1 HIGH

@better-auth/sso before 1.6.27 (and before 1.4.8 in the 1.4.x line and before 1.7.0-rc.5 in the 1.7 prerelease line) contains two domain-ownership flaws. When domain verification …

Aug 26, 2026
CVE-2026-80191
7.5 HIGH

GROWI applies its page-viewer permission check to attachment requests only when the request carries an authenticated user. retrieveAttachmentFromIdParam in apps/app/src/server/routes/attachment/get.ts guards the check with a …

Aug 26, 2026
CVE-2026-76148
7.8 HIGH

CorvusSKK contains a code injection vulnerability, which may lead to arbitrary code execution on the affected product.

Aug 26, 2026

Scan your infrastructure for known CVEs

Free website and port scanning — find vulnerabilities before attackers do.