CVE Database

121173+ vulnerabilities with CVSS scores, EPSS exploit predictions, and CISA KEV status. Updated daily.

Filter: All CRITICAL HIGH MEDIUM LOW CISA KEV
Sort: Newest CVSS EPSS
CVE-2026-65650
4.3 MEDIUM

Elgg before 7.0.0 does not check image dimensions to prevent denial of service via a large avatar upload.

Jul 22, 2026
CVE-2026-64835
8.8 HIGH

FFmpeg versions 4.4 through 8.1.2 contain an out-of-bounds memory access vulnerability in the ADX audio decoder within libavcodec/adxdec.c that allows attackers to trigger both out-of-bounds …

Jul 22, 2026
CVE-2026-64834
7.5 HIGH

FFmpeg versions 0.6.3 through 8.1.2 contain an infinite loop vulnerability in the RTP/ASF demuxer within libavformat/rtpdec_asf.c that allows remote attackers to cause denial of service …

Jul 22, 2026
CVE-2026-64833
7.1 HIGH

FFmpeg versions 0.7.1 through 8.1.2 contain an out-of-bounds read vulnerability in the S/PDIF muxer that allows attackers to access memory beyond buffer boundaries by supplying …

Jul 22, 2026
CVE-2026-64832
8.8 HIGH

FFmpeg versions 4.4 through 8.1.2 contain a double-free vulnerability in the NVIDIA NVDEC hardware decoder within libavcodec/nvdec.c that allows attackers to trigger memory corruption by …

Jul 22, 2026
CVE-2026-16157
7.8 HIGH

Duplicati v2.3.0.1 backup software gives Authenticated Users MODIFY permissions that propagate to all subdirectories. Installing the software outside of the Program Files directory, or on …

Jul 22, 2026
CVE-2026-7328

Missing authorization in Caliptra Core Runtime Firmware (INVOKE_DPE_MLDSA87, CM_AES_GCM_DECRYPT_DMA, EXTERNAL_MAILBOX_CMD commands) in subsystem mode allows a privileged local attacker to cause a denial of service …

Jul 22, 2026
CVE-2026-65013
8.8 HIGH

Onlook through 0.2.32, fixed in commit 423e2e9, contains a broken object level authorization vulnerability that allows authenticated attackers to access and manipulate other users' resources …

Jul 22, 2026
CVE-2026-65012
5.3 MEDIUM

InvokeAI before 6.13.7 contains an unauthenticated directory enumeration vulnerability in the GET /api/v2/models/scan_folder endpoint that accepts attacker-controlled scan_path parameters. Unauthenticated attackers can recursively enumerate arbitrary …

Jul 22, 2026
CVE-2026-65011
4.3 MEDIUM

Graylog2 Server before commit 46a2eeb contains a missing per-entity permission check in the POST /events/definitions/{definitionId}/duplicate endpoint that allows authenticated users to clone any event definition. …

Jul 22, 2026
CVE-2026-64831
8.8 HIGH

FFmpeg versions 8.0 through 8.1.2 contains a stack buffer overflow vulnerability in the Vulkan HEVC hardware decoder that allows remote attackers to overwrite return addresses …

Jul 22, 2026
CVE-2026-64830
8.8 HIGH

FFmpeg versions 2.1 through 8.1.2 contains a heap buffer overflow vulnerability in the VobSub subtitle demuxer that allows attackers to corrupt adjacent heap memory by …

Jul 22, 2026
CVE-2026-16615
6.8 MEDIUM

A flaw was found in librest. The PKCE implementation for OAuth authorization uses the GRand function from the GLib API, a cryptographically insecure pseudo-random number …

Jul 22, 2026
CVE-2026-64828
6.1 MEDIUM

Froiden TableTrack through 1.3.10 contains a stored cross-site scripting vulnerability that allows unauthenticated attackers to inject arbitrary HTML and JavaScript through the order notes field …

Jul 22, 2026
CVE-2026-49499
8.8 HIGH

Dell PowerProtect Data Manager, versions prior to 20.2.0.0, contain(s) a Generation of Incorrect Security Tokens vulnerability in the IAM. A low privileged attacker with remote …

Jul 22, 2026
CVE-2026-46738
9.1 CRITICAL

Dell PowerProtect Data Manager, versions prior to 20.2.0.0, contain(s) an Improper Input Validation vulnerability in the REST API. A high privileged attacker with remote access …

Jul 22, 2026
CVE-2026-46737
6.7 MEDIUM

Dell PowerProtect Data Manager, versions prior to 20.2.0.0, contain(s) an Improper Input Validation vulnerability in the REST API. A high privileged attacker with remote access …

Jul 22, 2026
CVE-2026-44276
6.0 MEDIUM

Dell PowerProtect Data Manager, versions prior to 20.2.0.0, contain(s) an Exposure of Sensitive Information to an Unauthorized Actor vulnerability in the REST API. A high …

Jul 22, 2026
CVE-2026-40714
7.2 HIGH

Dell PowerProtect Data Manager, versions prior to 20.2.0.0, contain(s) an Improper Input Validation vulnerability. A high privileged attacker with remote access could potentially exploit this …

Jul 22, 2026
CVE-2026-40712
9.1 CRITICAL

Dell PowerProtect Data Manager, versions prior to 20.2.0.0, contain(s) an Improper Input Validation vulnerability in the REST API. A high privileged attacker with remote access …

Jul 22, 2026
CVE-2026-16607
7.8 HIGH

A vulnerability in Fujitsu Software Linux openFT and Fujitsu Software Oracle Solaris openFT before version 12.1D00 allows for local privilege escalation to root of an …

Jul 22, 2026
CVE-2026-16606
9.8 CRITICAL

A vulnerability in Fujitsu Software Linux openFT and Fujitsu Software Oracle Solaris openFT before version 12.1D00 allows for unauthenticated remote code execution (pre-auth RCE) on …

Jul 22, 2026
CVE-2026-16552

Rejected reason: The reported issue is invalid, as it requires root privileges to reproduce, and it is out of scope of the threat model of …

Jul 22, 2026
CVE-2026-48029
7.1 HIGH

libheif is a HEIF and AVIF file format decoder and encoder. Versions 1.19.0 through 1.21.2 have a heap OOB read in ImageItem_Grid::decode_grid_tile via irot-induced tile-coordinate …

Jul 22, 2026
CVE-2026-2395
9.8 CRITICAL

Improper neutralization of special elements used in an SQL command ('SQL injection') vulnerability in Xpoda Türkiye Informatics Technology Inc. No Code Platform allows SQL Injection. …

Jul 22, 2026
CVE-2026-14985
7.8 HIGH

The Analog Way Picturall Quad Compact Mark II version 3.5.8, contains a local privilege escalation vulnerability in the core firmware. This is due to improper …

Jul 22, 2026
CVE-2026-13321
8.6 HIGH

The BIND resolver accepts validly-signed NSEC records where the "Next Domain Name" field points outside the signer's zone. This issue affects BIND 9 versions 9.11.0 …

Jul 22, 2026
CVE-2026-13204
7.5 HIGH

If a provably insecure domain is covered by both an NSEC and NSEC3 record at the parent, and there exist an RRSIG for only one …

Jul 22, 2026
CVE-2026-12617
7.5 HIGH

The issue is unexpected program termination based on ordering and/or specific content in responses to queries for CNAME or DNAME, and A records. Specifically, if …

Jul 22, 2026
CVE-2026-11721
7.5 HIGH

It is possible for an attacker's zone to respond to a query with an RRSIG that has a smaller number of labels than the zone …

Jul 22, 2026
CVE-2026-11622
7.5 HIGH

A DNSSEC validating resolver that is under a random subdomain attack against a DNSSEC-signed zone can suffer from runaway memory usage. The attacker needs to …

Jul 22, 2026
CVE-2026-11605
7.5 HIGH

The issue is a resource exhaustion vulnerability associated with DNSSEC validation. BIND always validates all RRSIG records in an answer, even if they are not …

Jul 22, 2026
CVE-2026-11331
7.5 HIGH

An attacker who knows (or guesses) that a resolver uses RPZ with wildcard CNAME policies can craft query names long enough to trigger a NAMETOOLONG …

Jul 22, 2026
CVE-2026-10822
6.5 MEDIUM

If BIND encounters a particular invalid data structure in a DNS record, it will accept the invalid data, and may subsequently abort and exit. BIND …

Jul 22, 2026
CVE-2026-10723
6.8 MEDIUM

BIND may accept incorrect child-zone NSEC3 records as valid, which could allow an attacker to forge authenticated NXDOMAIN responses. This issue affects BIND 9 versions …

Jul 22, 2026
CVE-2026-62145
7.5 HIGH

A vulnerability in Check Point Gaia Portal allows an authenticated attacker with read-only Gaia Portal privileges to execute commands with root privileges.

Jul 22, 2026
CVE-2026-62144
9.1 CRITICAL

An authentication bypass vulnerability in Check Point Security Management and Multi-Domain Security Management allows an unauthenticated remote attacker to execute administrative commands on the Management …

Jul 22, 2026
CVE-2026-56444
5.9 MEDIUM

In NLnet Labs Unbound 1.20.0 up to and including 1.25.1, when Unbound is configured with 'serve-expired: yes' and 'serve-expired-client-timeout > discard-timeout > 0' (contrary to …

Jul 22, 2026
CVE-2026-56416
4.8 MEDIUM

In NLnet Labs Unbound up to and including version 1.25.1, when the validator builds the canonical RDATA form for an RRSIG-covered PX/RP/MINFO/SOA RRset, it computes …

Jul 22, 2026
CVE-2026-55991
5.9 MEDIUM

In NLnet Labs Unbound 1.22.0 up to and including 1.25.1, a remote unauthenticated client can trigger a libngtcp2 assertion (if compiled with assertions on) and …

Jul 22, 2026
CVE-2026-55990
5.9 MEDIUM

In NLnet Labs Unbound 1.7.0 up to and including 1.25.1, when the 'dnscrypt:' clause lists more 'dnscrypt-provider-cert:' files than there are matching 'dnscrypt-secret-key:' files, Unbound …

Jul 22, 2026
CVE-2026-55973
7.5 HIGH

In NLnet Labs Unbound 1.23.0 up to and including 1.25.1, when 'dns-error-reporting: yes' is set, the EDNS Report-Channel option (code 18) from the last upstream …

Jul 22, 2026
CVE-2026-55717
5.9 MEDIUM

In NLnet Labs Unbound 1.10.0 up to and including 1.25.1, when 'serve-expired: yes' is set together with a 'response-ip: <net> redirect' /'response-ip-data: <net> CNAME <target>' …

Jul 22, 2026
CVE-2026-55708
3.1 LOW

In NLnet Labs Unbound 1.6.0 up to and including 1.25.1, the 'view_local_data' and 'view_local_datas' commands of 'unbound-control' create a bare local zones tree for an …

Jul 22, 2026
CVE-2026-54478
3.7 LOW

In NLnet Labs Unbound 1.18.0 up to and including 1.25.1, when Unbound listens on a 'proxy-protocol-port' interface with 'answer-cookie: yes', the RFC 9018 server-cookie SipHash …

Jul 22, 2026
CVE-2026-53910

diff3 tool from GNU diffutils is vulnerable to a heap‑based buffer overflow due to multiple signed integer overflows in line‑mapping calculations. Incorrect arithmetic in mapping …

Jul 22, 2026
CVE-2026-52863
5.9 MEDIUM

In NLnet Labs Unbound 1.25.0 up to and including 1.25.1, a fix that makes the 'respip' and 'dns64' modules work together, creates a shallow copy …

Jul 22, 2026
CVE-2026-50252
9.3 CRITICAL

In NLnet Labs Unbound 1.4.22 up to and including 1.25.1, UDP source port is randomized and intended to serve as a secret value that increases …

Jul 22, 2026
CVE-2026-50251
5.3 MEDIUM

In NLnet Labs Unbound up to and including version 1.25.1, when 'unwanted-reply-threshold' is enabled (set to any value greater than zero), glue records of 0.0.0.0/::0 …

Jul 22, 2026
CVE-2026-50248
6.5 MEDIUM

In NLnet Labs Unbound 1.7.0 up to and including 1.25.1, when an auth/rpz zone has a configured primary hostname that resolves to BOGUS A/AAAA, it …

Jul 22, 2026

Scan your infrastructure for known CVEs

Free website and port scanning — find vulnerabilities before attackers do.