CVE Database

40083+ vulnerabilities with CVSS scores, EPSS exploit predictions, and CISA KEV status. Updated daily.

Filter: All CRITICAL HIGH MEDIUM LOW CISA KEV
Sort: Newest CVSS EPSS
CVE-2026-64226
7.8 HIGH

In the Linux kernel, the following vulnerability has been resolved: sched_ext: Avoid UAF in scx_root_enable_workfn() init failure path In scx_root_enable_workfn(), put_task_struct(p) is called before scx_error() …

Jul 24, 2026
CVE-2026-64223
8.1 HIGH

In the Linux kernel, the following vulnerability has been resolved: wifi: mac80211: consume only present negotiated TTLM maps ieee80211_tid_to_link_map_size_ok() validates negotiated TTLM elements against the …

Jul 24, 2026
CVE-2026-64222
7.0 HIGH

In the Linux kernel, the following vulnerability has been resolved: octeontx2-pf: avoid double free of pool->stack on AQ init failure otx2_pool_aq_init() frees pool->stack when mailbox …

Jul 24, 2026
CVE-2026-64221
7.8 HIGH

In the Linux kernel, the following vulnerability has been resolved: spi: ti-qspi: fix use-after-free after DMA setup failure The driver falls back to PIO mode …

Jul 24, 2026
CVE-2026-64219
7.0 HIGH

In the Linux kernel, the following vulnerability has been resolved: drm/amd/display: Validate payload length and link_index in dc_process_dmub_aux_transfer_async [Why&How] dc_process_dmub_aux_transfer_async() copies payload->length bytes into a …

Jul 24, 2026
CVE-2026-64218
7.8 HIGH

In the Linux kernel, the following vulnerability has been resolved: batman-adv: bla: fix report_work leak on backbone_gw purge batadv_bla_purge_backbone_gw() removes stale backbone gateway entries, but …

Jul 24, 2026
CVE-2026-64217
7.8 HIGH

In the Linux kernel, the following vulnerability has been resolved: netfs: Fix overrun check in netfs_extract_user_iter() Fix netfs_extract_user_iter() so that if iov_iter_extract_pages() overfills pages[], then …

Jul 24, 2026
CVE-2026-64210
7.5 HIGH

In the Linux kernel, the following vulnerability has been resolved: net/mlx5e: xsk: Fix unlocked writing to ICOSQ During napi poll, when the affinity changes and …

Jul 24, 2026
CVE-2026-64208
7.5 HIGH

In the Linux kernel, the following vulnerability has been resolved: crypto/krb5, rxrpc: Fix lack of pre-decrypt/pre-verify length checks Change the krb5 crypto library to provide …

Jul 24, 2026
CVE-2026-8789
8.1 HIGH

The Easy Appointments plugin for WordPress is vulnerable to unauthorized modification of data due to a missing capability check and missing nonce verification on the …

Jul 24, 2026
CVE-2026-16801
8.8 HIGH

Improper control of generation of code ('Code Injection') in the variables feature in Devolutions PowerShell Universal 2026.2.2 and earlier allows an authenticated user with variable …

Jul 24, 2026
CVE-2026-16800
8.8 HIGH

Improper control of generation of code ('Code Injection') in the schedule feature in Devolutions PowerShell Universal 2026.2.2 and earlier allows an authenticated user with schedule …

Jul 24, 2026
CVE-2026-9765
7.1 HIGH

Note: The CVE and blog post don't exist because we determined this is actually a cloud-only issue. Access Controls are “Broken” when a user can …

Jul 24, 2026
CVE-2026-66144
7.5 HIGH

Although remote policy references are not retrieved during policy normalization, if they are manually retrieved via the API it can cause a denial of service …

Jul 24, 2026
CVE-2026-66143
7.5 HIGH

It is possible to bypass the maximum number of normalized policy alternatives that was introduced in Apache Neethi 3.2.2 via certain crafted policies, which may …

Jul 24, 2026
CVE-2026-66142
7.5 HIGH

Apache Neethi is vulnerable to uncontrolled recursion when parsing policies that lack policy Ids or with deeply nested structures, which may lead to a denial …

Jul 24, 2026
CVE-2026-45816
7.5 HIGH

NULL Pointer Dereference vulnerability in Apache NimBLE in LE Long Term Key Request event. This requires disabled asserts (otherwise assert would trigger before NULL dereference) …

Jul 24, 2026
CVE-2026-45815
7.5 HIGH

Reachable Assertion vulnerability in Apache NimBLE. A specially crafted ATT Read Multiple Variable Response (BLE_ATT_OP_READ_MULT_VAR_RSP) may trigger assert in ATT parser. Severity is medium as …

Jul 24, 2026
CVE-2026-45813
8.8 HIGH

Out-of-bounds Write, Integer Underflow (Wrap or Wraparound) vulnerability in Apache NimBLE BASS service. Improper validation when parsing BASS service "Add Source" and "Modify Source" operation …

Jul 24, 2026
CVE-2026-45811
7.5 HIGH

Buffer Copy without Checking Size of Input ('Classic Buffer Overflow') vulnerability in Apache NimBLE. The HCI socket transport did not check whether a received HCI …

Jul 24, 2026
CVE-2026-15401
7.2 HIGH

The VikBooking Hotel Booking Engine & PMS plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the 'vbfX' parameter in all versions up to, …

Jul 24, 2026
CVE-2026-10033
7.3 HIGH

The EventON Action User plugin for WordPress is vulnerable to authorization bypass in all versions up to, and including, 2.5.14. This is due to the …

Jul 24, 2026
CVE-2026-49745
7.8 HIGH

Kernel software installed and running inside a Guest VM may post improper commands to the GPU Firmware to trigger a write of data outside the …

Jul 24, 2026
CVE-2026-49744
7.8 HIGH

Kernel software installed and running inside a Guest VM may post improper commands to the GPU Firmware to trigger a write of data outside the …

Jul 24, 2026
CVE-2026-49743
7.8 HIGH

Software installed and run as a non-privileged user may conduct improper GPU system calls to manipulate the lifetimes of synchronisation objects in the kernel, leading …

Jul 24, 2026
CVE-2026-16519
7.3 HIGH

A DLL hijacking vulnerability exists in the GeoVision GV-IP Device Utility desktop application. The application loads one or more dynamic-link libraries (DLLs) from an unsafe …

Jul 24, 2026
CVE-2026-14603
7.5 HIGH

The WowOptin: Next-Gen Popup Maker WordPress plugin before 1.4.38 does not have proper authorization on a REST endpoint, allowing unauthenticated users to disable all of …

Jul 24, 2026
CVE-2026-14172
7.8 HIGH

Rapid7 InsightVM, Nexpose, and the Insight Agent execute discovered executables during authenticated assessment without validating file ownership, allowing a local low-privileged user to run code …

Jul 24, 2026
CVE-2026-12981
7.5 HIGH

The CAFEHAUS API WordPress plugin through 1.0.0 does not have any authentication or authorisation when updating user passwords, allowing unauthenticated attackers to set the password …

Jul 24, 2026
CVE-2026-12497
7.5 HIGH

The Paid Membership Plugin, Ecommerce, User Registration Form, Login Form, User Profile & Restrict Content WordPress plugin before 4.16.18 does not consistently enforce the role …

Jul 24, 2026
CVE-2026-16870
8.8 HIGH

Multiple security vulnerabilities in Snowflake libsnowflakeclient versions prior to 2.9.2 could allow remote code execution and credential exfiltration. A stack-based buffer overflow in the file …

Jul 24, 2026
CVE-2026-66141
7.4 HIGH

Exim before 4.99.5 allows .forward privilege escalation because force_command for a pipe transport is mishandled.

Jul 24, 2026
CVE-2026-66140
8.4 HIGH

Exim before 4.99.5 allows directory traversal to access files outside of the spool area, and consequently gain privileges, because arguments related to queue-name are mishandled.

Jul 24, 2026
CVE-2026-66138
7.2 HIGH

In OpenStack Ironic Python Agent through 11.6.0, a project-scoped user with the manager role can achieve arbitrary code execution on a running Ironic-Python-Agent via a …

Jul 24, 2026
CVE-2026-12736
8.0 HIGH

The Wpify Woo plugin for WordPress is vulnerable to Privilege Escalation in versions up to, and including, 5.4.16. This is due to the SettingsApi::save_option() REST …

Jul 24, 2026
CVE-2026-56167
8.5 HIGH

Server-side request forgery (ssrf) in Azure AI Search allows an authorized attacker to elevate privileges over a network.

Jul 24, 2026
CVE-2026-35425
8.0 HIGH

Improper access control in Azure API Management (APIM) allows an authorized attacker to execute code over a network.

Jul 24, 2026
CVE-2026-40430
7.5 HIGH

Pronetiqs IntraVUE Versions 3.2.1a14 and prior have a plaintext storage of a password vulnerability that could expose cleartext credentials through the API.

Jul 23, 2026
CVE-2026-28698
8.6 HIGH

Pronetiqs IntraVUE versions 3.2.1a14 and prior have an exposure of sensitive system information to an unauthorized control sphere vulnerability which could expose the underlying host/share …

Jul 23, 2026
CVE-2026-65694
7.5 HIGH

Microweber CMS through 2.0.20 contains a path traversal vulnerability in the static file controller that allows unauthenticated remote attackers to read arbitrary files by supplying …

Jul 23, 2026
CVE-2026-65604
8.2 HIGH

Skipper contains an incomplete fix for CVE-2026-50197 in which oversized request bodies bypass Open Policy Agent (OPA) deny-on-presence Rego policies. When a request body exceeds …

Jul 23, 2026
CVE-2026-63313
7.7 HIGH

9Router before 0.4.72 contains a server-side request forgery (SSRF) vulnerability in the /v1/web/fetch endpoint. The endpoint accepts a user-controlled url parameter and passes it to …

Jul 23, 2026
CVE-2026-16807
8.8 HIGH

Out of bounds write in Codecs in Google Chrome prior to 150.0.7871.186 allowed a remote attacker to potentially perform a sandbox escape via a crafted …

Jul 23, 2026
CVE-2026-16806
8.8 HIGH

Use after free in WebMCP in Google Chrome prior to 150.0.7871.186 allowed a remote attacker to execute arbitrary code inside a sandbox via a crafted …

Jul 23, 2026
CVE-2026-16805
8.8 HIGH

Use after free in Blink in Google Chrome prior to 150.0.7871.186 allowed a remote attacker to execute arbitrary code inside a sandbox via a crafted …

Jul 23, 2026
CVE-2026-16804
8.3 HIGH

Use after free in Input in Google Chrome prior to 150.0.7871.186 allowed a remote attacker who had compromised the renderer process to potentially perform a …

Jul 23, 2026
CVE-2026-16765
7.3 HIGH

A vulnerability was determined in CodeAstro Online Classroom 1.0. Affected by this issue is some unknown functionality of the file /OnlineClassroom/loginlinkadmin.php. Executing a manipulation of …

Jul 23, 2026
CVE-2024-58355
8.9 HIGH

Cal.com (calcom/cal.diy) versions through 4.7.15 contain a stored cross-site scripting vulnerability. The single booking view (e.g., https://app.cal.com/booking/<id>) renders booking-question field labels via React's dangerouslySetInnerHTML without …

Jul 23, 2026
CVE-2024-58353
8.9 HIGH

Cal.com (repository calcom/cal.diy) in versions <= 4.7.15 is vulnerable to cross-site scripting (XSS) on the publicly accessible single booking view (e.g., /booking/<id>). Booking question (form …

Jul 23, 2026
CVE-2026-50039
7.5 HIGH

The affected product is vulnerable to a stack-based buffer overflow, which may allow an attacker to cause a memory corruption via a Read Request.

Jul 23, 2026

Scan your infrastructure for known CVEs

Free website and port scanning — find vulnerabilities before attackers do.