CVE Database

53435+ vulnerabilities with CVSS scores, EPSS exploit predictions, and CISA KEV status. Updated daily.

Filter: All CRITICAL HIGH MEDIUM LOW CISA KEV
Sort: Newest CVSS EPSS
CVE-2026-13068
4.2 MEDIUM

An authenticated user holding cursor termination privileges on one database may incorrectly be permitted to terminate active cursors on a separate database, disrupting ongoing query …

Jul 22, 2026
CVE-2026-13067
6.3 MEDIUM

When PROXY protocol v2 is used on the Unix domain socket path, roles derived from X.509 client certificates may not be validated against the configured …

Jul 22, 2026
CVE-2026-13066
6.5 MEDIUM

Improper handling of DBPointer objects during BSON serialization in MongoDB's server-side JavaScript engine can result in internal process memory contents being included in data returned …

Jul 22, 2026
CVE-2026-13065
6.5 MEDIUM

A user with read-only privileges is able to craft an aggregation pipeline using the $linearFill window function operator with a specific sortBy expression type to …

Jul 22, 2026
CVE-2026-13064
6.5 MEDIUM

Certain query operations involving deeply nested $jsonSchema constructs can trigger disproportionate CPU consumption in affected MongoDB deployments, potentially leading to resource exhaustion. The resulting CPU-bound …

Jul 22, 2026
CVE-2026-13063
4.3 MEDIUM

An authenticated user with standard read/write privileges can cause the mongod process to terminate due to an out-of-memory condition by sending a crafted aggregation command. …

Jul 22, 2026
CVE-2026-13062
6.5 MEDIUM

An authenticated user with write privileges on a Queryable Encryption-enabled collection may be able to modify internal encryption metadata fields that are intended to be …

Jul 22, 2026
CVE-2026-13061
4.3 MEDIUM

An authenticated user may be able to view session metadata belonging to other users on the system through the $listSessions aggregation stage. This information is …

Jul 22, 2026
CVE-2026-13060
6.5 MEDIUM

An authenticated user with limited read privileges may be able to access documents from collections they are not authorized to read, due to an inconsistency …

Jul 22, 2026
CVE-2026-13057
5.3 MEDIUM

An issue in the server’s Atlas Search integration allows an authenticated user to bypass per-user access controls. In sharded topologies, the $search and $searchMeta aggregation …

Jul 22, 2026
CVE-2026-13056
6.5 MEDIUM

Using expressions that generate large arrays it is possible to craft a query that creates very large intermediate objects in memory, causing the server to …

Jul 22, 2026
CVE-2026-13055
6.5 MEDIUM

The `$_internalIndexKey` aggregation expression can be used by any authenticated user to crash a MongoDB server (mongod). The expression fails to handle compound wildcard index …

Jul 22, 2026
CVE-2026-3482
5.3 MEDIUM

IBM Sterling B2B Integrator and IBM Sterling File Gateway 6.2.0.0 through 6.2.0.5_2, 6.2.1.0 through 6.2.1.1_2, and 6.2.2.0 through 6.2.2.0_1 could allow an unauthenticated user to …

Jul 22, 2026
CVE-2026-65650
4.3 MEDIUM

Elgg before 7.0.0 does not check image dimensions to prevent denial of service via a large avatar upload.

Jul 22, 2026
CVE-2026-65012
5.3 MEDIUM

InvokeAI before 6.13.7 contains an unauthenticated directory enumeration vulnerability in the GET /api/v2/models/scan_folder endpoint that accepts attacker-controlled scan_path parameters. Unauthenticated attackers can recursively enumerate arbitrary …

Jul 22, 2026
CVE-2026-65011
4.3 MEDIUM

Graylog2 Server before commit 46a2eeb contains a missing per-entity permission check in the POST /events/definitions/{definitionId}/duplicate endpoint that allows authenticated users to clone any event definition. …

Jul 22, 2026
CVE-2026-16615
6.8 MEDIUM

A flaw was found in librest. The PKCE implementation for OAuth authorization uses the GRand function from the GLib API, a cryptographically insecure pseudo-random number …

Jul 22, 2026
CVE-2026-64828
6.1 MEDIUM

Froiden TableTrack through 1.3.10 contains a stored cross-site scripting vulnerability that allows unauthenticated attackers to inject arbitrary HTML and JavaScript through the order notes field …

Jul 22, 2026
CVE-2026-46737
6.7 MEDIUM

Dell PowerProtect Data Manager, versions prior to 20.2.0.0, contain(s) an Improper Input Validation vulnerability in the REST API. A high privileged attacker with remote access …

Jul 22, 2026
CVE-2026-44276
6.0 MEDIUM

Dell PowerProtect Data Manager, versions prior to 20.2.0.0, contain(s) an Exposure of Sensitive Information to an Unauthorized Actor vulnerability in the REST API. A high …

Jul 22, 2026
CVE-2026-10822
6.5 MEDIUM

If BIND encounters a particular invalid data structure in a DNS record, it will accept the invalid data, and may subsequently abort and exit. BIND …

Jul 22, 2026
CVE-2026-10723
6.8 MEDIUM

BIND may accept incorrect child-zone NSEC3 records as valid, which could allow an attacker to forge authenticated NXDOMAIN responses. This issue affects BIND 9 versions …

Jul 22, 2026
CVE-2026-56444
5.9 MEDIUM

In NLnet Labs Unbound 1.20.0 up to and including 1.25.1, when Unbound is configured with 'serve-expired: yes' and 'serve-expired-client-timeout > discard-timeout > 0' (contrary to …

Jul 22, 2026
CVE-2026-56416
4.8 MEDIUM

In NLnet Labs Unbound up to and including version 1.25.1, when the validator builds the canonical RDATA form for an RRSIG-covered PX/RP/MINFO/SOA RRset, it computes …

Jul 22, 2026
CVE-2026-55991
5.9 MEDIUM

In NLnet Labs Unbound 1.22.0 up to and including 1.25.1, a remote unauthenticated client can trigger a libngtcp2 assertion (if compiled with assertions on) and …

Jul 22, 2026
CVE-2026-55990
5.9 MEDIUM

In NLnet Labs Unbound 1.7.0 up to and including 1.25.1, when the 'dnscrypt:' clause lists more 'dnscrypt-provider-cert:' files than there are matching 'dnscrypt-secret-key:' files, Unbound …

Jul 22, 2026
CVE-2026-55717
5.9 MEDIUM

In NLnet Labs Unbound 1.10.0 up to and including 1.25.1, when 'serve-expired: yes' is set together with a 'response-ip: <net> redirect' /'response-ip-data: <net> CNAME <target>' …

Jul 22, 2026
CVE-2026-52863
5.9 MEDIUM

In NLnet Labs Unbound 1.25.0 up to and including 1.25.1, a fix that makes the 'respip' and 'dns64' modules work together, creates a shallow copy …

Jul 22, 2026
CVE-2026-50251
5.3 MEDIUM

In NLnet Labs Unbound up to and including version 1.25.1, when 'unwanted-reply-threshold' is enabled (set to any value greater than zero), glue records of 0.0.0.0/::0 …

Jul 22, 2026
CVE-2026-50248
6.5 MEDIUM

In NLnet Labs Unbound 1.7.0 up to and including 1.25.1, when an auth/rpz zone has a configured primary hostname that resolves to BOGUS A/AAAA, it …

Jul 22, 2026
CVE-2026-50046
5.9 MEDIUM

In NLnet Labs Unbound 1.15.0 up to and including 1.25.1, the TLS server name used for DNS-over-TLS (DoT) forwarded queries is tied to a struct's …

Jul 22, 2026
CVE-2026-50045
5.3 MEDIUM

In NLnet Labs Unbound 1.22.0 up to and including 1.25.1, a single client query for a deeply nested name under a DNSSEC-signed parent can cause …

Jul 22, 2026
CVE-2026-44621
5.9 MEDIUM

With NLnet Labs Unbound up to and including version 1.25.1, applications using libunbound and configured with 'unwanted-reply-threshold', could eventually be abruptly terminated if the threshold …

Jul 22, 2026
CVE-2026-16560
5.3 MEDIUM

A heap-buffer-overflow flaw was found in Directory Server (389-ds-base). When a DN contains a legacy-quoted value, the server won't close the heap allocation allowing another …

Jul 22, 2026
CVE-2026-14932
6.5 MEDIUM

In Progress® Telerik® UI for AJAX prior to v2026.2.708, the obsolete RadChart component's ChartImage.axd handler is vulnerable to unauthenticated file read and deletion of image-extension …

Jul 22, 2026
CVE-2026-14865
5.3 MEDIUM

In Progress® Telerik® UI for AJAX prior to v2026.2.708, the internal LayoutBuilder control processes client-state XML without disabling DTD processing, allowing unauthenticated denial of service …

Jul 22, 2026
CVE-2026-14586
5.9 MEDIUM

In NLnet Labs Unbound 1.22.0 up to and including 1.25.1, in DNS-over-QUIC environments, with high concurrency and under pressure, an assertion in libngtcp2 about monotonic …

Jul 22, 2026
CVE-2026-13192
6.5 MEDIUM

In Progress® Telerik® UI for AJAX prior to v2026.2.708, insufficient validation of content submitted to the RadEditor PDF export feature may allow an authenticated attacker …

Jul 22, 2026
CVE-2026-13188
5.9 MEDIUM

In Progress® Telerik® UI for AJAX prior to v2026.2.708, DialogHandler request parameters may be tampered with, potentially altering dialog server-side behavior and enabling chained exploitation.

Jul 22, 2026
CVE-2026-65599
6.5 MEDIUM

n8n versions before 1.123.64, 2.29.8, and 2.30.1 contain a credential exposure vulnerability: when configured with a Google Service Account key, the full PEM private key …

Jul 22, 2026
CVE-2026-65597
5.4 MEDIUM

n8n before 1.123.64, 2.x before 2.29.8, and before 2.30.1 contains a DOM-based cross-site scripting vulnerability in the HTML preview, which renders execution output into an …

Jul 22, 2026
CVE-2026-65594
6.5 MEDIUM

n8n before 2.29.8 and 2.30.x before 2.30.1 (affected from 2.27.0, when the OAuth 2.1 consent and token-issuance flow was introduced) does not verify that the …

Jul 22, 2026
CVE-2026-65593
5.4 MEDIUM

n8n versions before 1.123.64, 2.29.8, and 2.30.1 contain a server-side request forgery vulnerability in the dynamic-node-parameters endpoints that lack authorization scopes. Authenticated attackers can supply …

Jul 22, 2026
CVE-2026-65592
5.4 MEDIUM

n8n before 1.123.64, 2.29.8, and 2.30.1 contains a stored DOM cross-site scripting vulnerability in the Resource Locator component, which passes the workflow-persisted cachedResultUrl parameter to …

Jul 22, 2026
CVE-2026-65589
6.5 MEDIUM

n8n versions before 1.123.64 fail to properly mask custom HTTP header credentials in LLM sub-node execution data, writing plaintext API keys and secrets to workflow …

Jul 22, 2026
CVE-2026-65014
5.3 MEDIUM

n8n before 2.28.0 (and before 2.27.4 on the 2.27.x branch) registers the DELETE /${restEndpoint}/test-webhook/:id endpoint before authentication middleware is applied, allowing any unauthenticated network caller …

Jul 22, 2026
CVE-2026-61392
5.3 MEDIUM

There is a information disclosure vulnerability in some Hikvision cameras, allowing unauthenticated attackers to obtain partial information from the device’s memory.

Jul 22, 2026
CVE-2026-57599
6.6 MEDIUM

There is a privilege escalation vulnerability in some Hikvision cameras. Due to incorrect permission allocation in the device program, attackers can escalate privileges and gain …

Jul 22, 2026
CVE-2026-44192
6.6 MEDIUM

A flaw was found in the Ansible Lightspeed Model Context Protocol (MCP) server. This vulnerability, known as path traversal, allows an attacker to manipulate an …

Jul 22, 2026
CVE-2026-16544
6.5 MEDIUM

A flaw was found in AWX. The websocket event consumer performs RBAC authorization checks only for event groups that are mapped in the consumer_access() function …

Jul 22, 2026

Scan your infrastructure for known CVEs

Free website and port scanning — find vulnerabilities before attackers do.