CVE Database

117989+ vulnerabilities with CVSS scores, EPSS exploit predictions, and CISA KEV status. Updated daily.

Filter: All CRITICAL HIGH MEDIUM LOW CISA KEV
Sort: Newest CVSS EPSS
CVE-2026-20476
5.5 MEDIUM

In ccci, there is a possible out of bounds read due to a missing bounds check. This could lead to local denial of service with …

Aug 3, 2026
CVE-2026-20475
6.0 MEDIUM

In display, there is a possible out of bounds write due to a missing bounds check. This could lead to local escalation of privilege if …

Aug 3, 2026
CVE-2026-20474
6.0 MEDIUM

In display, there is a possible escalation of privilege due to a race condition. This could lead to local escalation of privilege if a malicious …

Aug 3, 2026
CVE-2026-20473
6.0 MEDIUM

In display, there is a possible memory corruption due to use after free. This could lead to local escalation of privilege if a malicious actor …

Aug 3, 2026
CVE-2026-20472
4.4 MEDIUM

In TFA, there is a possible out of bounds write due to a missing bounds check. This could lead to local denial of service if …

Aug 3, 2026
CVE-2026-20471
4.6 MEDIUM

In DA, there is a possible out of bounds write due to a missing bounds check. This could lead to local denial of service, if …

Aug 3, 2026
CVE-2026-20470
6.2 MEDIUM

In Telephony, there is a possible information disclosure due to a missing permission check. This could lead to local information disclosure with no additional execution …

Aug 3, 2026
CVE-2026-20469
6.0 MEDIUM

In trusted_mem, there is a possible escalation of privilege due to improper input validation. This could lead to local escalation of privilege if a malicious …

Aug 3, 2026
CVE-2026-20468
6.0 MEDIUM

In apusys, there is a possible escalation of privilege due to a confused deputy. This could lead to local escalation of privilege if a malicious …

Aug 3, 2026
CVE-2026-20467
6.0 MEDIUM

In apusys, there is a possible escalation of privilege due to a missing bounds check. This could lead to local escalation of privilege if a …

Aug 3, 2026
CVE-2026-20466
6.1 MEDIUM

In sec boot, there is a possible escalation of privilege due to a heap buffer overflow. This could lead to local escalation of privilege, if …

Aug 3, 2026
CVE-2026-20465
8.1 HIGH

In wlan AP driver, there is a possible out of bounds write due to a missing bounds check. This could lead to remote (proximal/adjacent) escalation …

Aug 3, 2026
CVE-2026-20464
6.5 MEDIUM

In hevc decoder, there is a possible out of bounds write due to an integer overflow. This could lead to remote escalation of privilege if …

Aug 3, 2026
CVE-2026-18582
5.3 MEDIUM

A security flaw has been discovered in mz-automation libiec61850 up to 1.6.1. This vulnerability affects the function Reporting_RCBWriteAccessHandler of the file src/iec61850/server/mms_mapping/reporting.c of the component …

Aug 3, 2026
CVE-2026-8763

In Bouncy Castle for Java before 1.85, Name Constraints bypass via trailing dot in rfc822Name and URI. This issue also affects Bouncy Castle for Java …

Aug 3, 2026
CVE-2026-65875
7.1 HIGH

BaserCMS provided by baserCMS Users Community contains a CSV file injection vulnerability. If a user downloads and opens a CSV file containing malicious code injected …

Aug 3, 2026
CVE-2026-59652

In Bouncy Castle for Java before 1.85, LDAP filter injection in legacy jdk1.4 LDAPStoreHelper.

Aug 3, 2026
CVE-2026-59651

In Bouncy Castle for Java before 1.85, BKS keystore accepts legacy version with 16-bit integrity MAC key. This issue also affects Bouncy Castle for Java …

Aug 3, 2026
CVE-2026-59650

In Bouncy Castle for Java before 1.85, MTI/A0 DH agreement exponentiates unvalidated peer value. This issue also affects Bouncy Castle for Java LTS before 2.73.12.

Aug 3, 2026
CVE-2026-59649

In Bouncy Castle for Java before 1.85, OpenPGP user-attribute subpacket length bounded only by JVM max memory. This issue also affects Bouncy Castle for Java …

Aug 3, 2026
CVE-2026-59648

In Bouncy Castle for Java before 1.85, OpenPGP Argon2 S2K honours attacker-chosen memory and passes. This issue also affects Bouncy Castle for Java LTS before …

Aug 3, 2026
CVE-2026-59647

In Bouncy Castle for Java before 1.85, CRMF/CMP password-MAC honours unbounded iteration count. This issue also affects Bouncy Castle for Java LTS before 2.73.12, and …

Aug 3, 2026
CVE-2026-59646

In Bouncy Castle for Java before 1.85, DTLS handshake reassembler allocates buffer from unchecked 24-bit length. This issue also affects Bouncy Castle for Java LTS …

Aug 3, 2026
CVE-2026-59645

In Bouncy Castle for Java before 1.85, OER parser recurses without depth limit on self-referential IEEE 1609.2 schema. This issue also affects Bouncy Castle for …

Aug 3, 2026
CVE-2026-59644

In Bouncy Castle for Java before 1.85, MLS hash-ratchet honours arbitrary 32-bit generation counter from sender.

Aug 3, 2026
CVE-2026-59643

In Bouncy Castle for Java before 1.85, OpenPGP inline-signature policy failures silently ignored. This issue also affects Bouncy Castle for Java FIPS (BC-FJA) before bcpg-fips …

Aug 3, 2026
CVE-2026-59642

In Bouncy Castle for Java before 1.85, CMS AuthenticatedData content not bound to MAC when authAttrs present. This issue also affects Bouncy Castle for Java …

Aug 3, 2026
CVE-2026-59641

In Bouncy Castle for Java before 1.85, S/MIME validator trusts signer-asserted signingTime for path validation. This issue also affects Bouncy Castle for Java LTS before …

Aug 3, 2026
CVE-2026-59640

In Bouncy Castle for Java before 1.85, OpenPGP CFB quick-check oracle active on symmetric/session-key paths. This issue also affects Bouncy Castle for Java LTS before …

Aug 3, 2026
CVE-2026-59639

In Bouncy Castle for Java before 1.85, CMS verifySignatures returns true for SignedData with zero signers. This issue also affects Bouncy Castle for Java LTS …

Aug 3, 2026
CVE-2026-59638

In Bouncy Castle for Java before 1.85, JSSE hostname verifier CN-fallback enabled by default despite documented opt-in. This issue also affects Bouncy Castle for Java …

Aug 3, 2026
CVE-2026-18581
3.3 LOW

A vulnerability was determined in ggml-org llama.cpp e15efe0. Affected by this issue is some unknown functionality of the file common/jinja/parser.cpp of the component Jinja Minja …

Aug 3, 2026
CVE-2026-15055

In Bouncy Castle for Java before 1.85, PKCS#8 / PBES2 decryptors honour unbounded KDF cost from input. This issue also affects Bouncy Castle for Java …

Aug 3, 2026
CVE-2026-12185

In Bouncy Castle for Java before 1.85, BKS/UBER keystore allocates from untrusted lengths before integrity check. This issue also affects Bouncy Castle for Java LTS …

Aug 3, 2026
CVE-2026-3245
7.5 HIGH

A deserialization vulnerability in PRISMAproduction Version 6.5 or earlier that may lead to arbitrary code execution.

Aug 3, 2026
CVE-2026-18577
8.1 HIGH KEV

An incomplete patch for CVE-2026-18556 allows for authentication bypass and account takeover in N-central Versions through 2026.3.1

Aug 2, 2026
CVE-2026-10848
7.0 HIGH

The OCPP 1.6 client in subsys/net/lib/ocpp parsed inbound WAMP RPC frames in parse_rpc_msg() (subsys/net/lib/ocpp/ocpp_j.c) using a hand-rolled helper, extract_string_field(), that copied the message's uid and …

Aug 2, 2026
CVE-2026-9856
7.1 HIGH

A vulnerability in huggingface/transformers versions <=5.8.0.dev0 allows an attacker to perform arbitrary file writes via path traversal. The issue resides in the `save_pretrained()` methods of …

Aug 2, 2026
CVE-2026-65321
9.8 CRITICAL

PyAthena prior to 3.35.4 contains a sql injection vulnerability that allows unauthenticated attackers to inject arbitrary SQL by exploiting improper quote-escaping in DefaultParameterFormatter.format(), which routes …

Aug 2, 2026
CVE-2026-10774
2.4 LOW

Zephyr's Bluetooth Mesh subnet key management leaks one PSA Crypto key slot on every subnet-key teardown. In subsys/bluetooth/mesh/subnet.c, net_keys_create() imports the Private Beacon Key into …

Aug 2, 2026
CVE-2026-68583
5.4 MEDIUM

luci-app-adblock-fast before 1.2.4-4 contains a stored cross-site scripting vulnerability in the blocklist name field that allows lower-privileged users to inject active HTML. When an administrator …

Aug 2, 2026
CVE-2026-68582
6.5 MEDIUM

Vikunja versions >= 0.24.0 and <= 2.3.0 contain a broken object level authorization (BOLA) vulnerability in the task-collection endpoint (GET /api/v1/projects/{project}/views/{view}/tasks). The endpoint loads the …

Aug 2, 2026
CVE-2026-68581
8.1 HIGH

Vikunja versions 0.22.0 through 2.3.0 fail to validate the principal type in API token management. Because user IDs and link-share IDs are independent numeric sequences …

Aug 2, 2026
CVE-2026-68580
7.5 HIGH

FreeRDP before 3.29.0 contains integer overflow vulnerabilities in the audio input redirection channel (audin) across ALSA, sndio, WinMM, and OpenSL ES backends that fail to …

Aug 2, 2026
CVE-2026-68579
9.6 CRITICAL

FreeRDP before 3.30.0 (<= 3.29.0) contains a heap-based buffer overflow in the Windows clipboard client's CliprdrStream_Read function (client/Windows/wf_cliprdr.c). When an OLE paste consumer (e.g. explorer.exe) …

Aug 2, 2026
CVE-2026-68578
7.5 HIGH

ArcadeDB versions before 26.7.3 fail to bind the authenticated principal in the MCP HTTP transport, causing all engine permission checks to silently pass as no-ops. …

Aug 2, 2026
CVE-2026-67357
7.5 HIGH

ArcadeDB versions before 26.7.3 contain an information disclosure vulnerability in the MCP get_server_settings tool that leaks the arcadedb.ha.clusterToken in cleartext. Attackers with MCP access can …

Aug 2, 2026
CVE-2026-67356
8.8 HIGH

ArcadeDB before 26.7.3 binds the real LocalDatabase object into JavaScript trigger contexts with HostAccess.ALL, allowing schema-admins to call getSecurity().createUser() without permission checks. Attackers with UPDATE_SCHEMA …

Aug 2, 2026
CVE-2025-71401
5.9 MEDIUM

better-auth (npm) before 1.4.2 allows an external request to configure baseURL when it is not otherwise defined (e.g., BETTER_AUTH_URL is unset). An attacker able to …

Aug 2, 2026
CVE-2025-71400
7.1 HIGH

better-auth passkey versions before 1.4.0 contain an insecure direct object reference vulnerability in the passkey deletion endpoint that allows authenticated users to delete arbitrary passkeys …

Aug 2, 2026

Scan your infrastructure for known CVEs

Free website and port scanning — find vulnerabilities before attackers do.