CVE Database

60353+ vulnerabilities with CVSS scores, EPSS exploit predictions, and CISA KEV status. Updated daily.

Filter: All CRITICAL HIGH MEDIUM LOW CISA KEV
Sort: Newest CVSS EPSS
CVE-2026-57177
4.3 MEDIUM

Python Social Auth is a social authentication/registration mechanism. Prior to version 5.0.0, the LoginRadius backend did not validate OAuth state during the authentication flow. Applications …

Sep 24, 2026
CVE-2026-57176
6.8 MEDIUM

Python Social Auth is a social authentication/registration mechanism. Prior to version 5.0.0, the Vend OAuth2 backend used only the numeric Vend user_id as the social-auth …

Sep 24, 2026
CVE-2026-57175
6.4 MEDIUM

Python Social Auth is a social authentication/registration mechanism. Prior to version 5.0.0, the SAML backend accepted SAML responses on the Assertion Consumer Service endpoint without …

Sep 24, 2026
CVE-2026-54461
6.5 MEDIUM

Habitica is a habit tracker application that treats goals like a role-playing game. From 4.172.1 until 5.48.2, a query parameter on Habitica's /api/v3/groups/:groupId/members route is …

Sep 24, 2026
CVE-2026-94281
6.5 MEDIUM

An out-of-bounds read in libXi's XListInputDevices() class parsing in libXi before 1.8.4 could be used by malicious X servers to crash an attached X client.

Sep 24, 2026
CVE-2026-93545
6.5 MEDIUM

An out-of-bounds read in libXi's XListInputDevices() in libXi before 1.8.4 could be used by malicious X servers to crash an attached X client.

Sep 24, 2026
CVE-2026-93544
6.5 MEDIUM

An out-of-bounds read in libXi's XI2 XIQueryDevice reply parsing in libXi before 1.8.4 can be used by a malicious X server to crash an attached …

Sep 24, 2026
CVE-2026-93542
6.5 MEDIUM

An out-of-bounds read in libXi's XI2 class parsing via size_classes() and copy_classes() in libXi before 1.8.4 could be used by malicous servers to crash the …

Sep 24, 2026
CVE-2026-91161
6.4 MEDIUM

OpenWA is a free, open source, self-hosted WhatsApp API gateway. Prior to 0.23.5, the GET /api/sessions/{sessionId}/groups/{groupId}/invite-code endpoint and the GroupGetInviteCode MCP tool have no OPERATOR …

Sep 24, 2026
CVE-2026-91134
5.4 MEDIUM

Discourse is an open-source discussion platform. Prior to 2026.1.8, 2026.6.3, 2026.7.2, and 2026.8.0, the Discourse post sanitizer allowed a stored cross-origin iframe to bypass the …

Sep 24, 2026
CVE-2026-91133
6.5 MEDIUM

Discourse is an open-source discussion platform. Prior to 2026.1.8, 2026.6.3, 2026.7.2, and 2026.8.0, authenticated users could supply unescaped SQL LIKE metacharacters to upload-resolution patterns, causing …

Sep 24, 2026
CVE-2026-91132
4.3 MEDIUM

Discourse is an open-source discussion platform. Prior to 2026.1.8, 2026.6.3, 2026.7.2, and 2026.8.0, sites using wildcard patterns in the allowed_iframes setting could accept a crafted …

Sep 24, 2026
CVE-2026-88384
5.5 MEDIUM

OpenEXR 3.4.14 contains a NULL Pointer Dereference in the C++ attribute parsing path. A specially crafted EXR file containing an unknown-type attribute with dataSize set …

Sep 24, 2026
CVE-2026-88377
6.2 MEDIUM

Bento4 1.6.0.0 contains an integer underflow vulnerability in the avcC and hvcC configuration atom parsers. A specially crafted MP4 file containing an atom with a …

Sep 24, 2026
CVE-2026-88367
6.5 MEDIUM

NanoSVG 239e102ec contains an incorrect numeric conversion vulnerability in nsvg__curveDivs() during SVG stroke rasterization. A specially crafted SVG document containing an extremely large stroke-width can …

Sep 24, 2026
CVE-2026-84302
4.2 MEDIUM

Discourse is an open-source discussion platform. Prior to 2026.1.6, 2026.5.2, 2026.6.1, and 2026.7.0, Discourse AI reviewables associated with private messages could appear in the moderator …

Sep 24, 2026
CVE-2026-79763
5.3 MEDIUM

Termix is a web-based server management platform with SSH terminal, tunneling, and file editing capabilities. From 2.4.0 until 2.5.1, the POST /users/totp/disable and POST /users/totp/backup-codes …

Sep 24, 2026
CVE-2026-79762
5.5 MEDIUM

Termix is a web-based server management platform with SSH terminal, tunneling, and file editing capabilities. From 1.7.0 until 2.5.1, Termix derives the keys that wrap …

Sep 24, 2026
CVE-2026-47132
5.4 MEDIUM

phpMyFAQ is an open source FAQ web application. Prior to version 4.2.0-alpha, an authenticated SQL LIKE wildcard injection vulnerability in phpMyFAQ’s chat user search allows …

Sep 24, 2026
CVE-2026-97226
6.3 MEDIUM

A vulnerability has been found in DbGate up to 7.2.5/7.3.1-premium-beta.1. This impacts the function fs.readFile of the file packages/api/src/controllers/files.js of the component files-style Endpoint. The …

Sep 24, 2026
CVE-2026-97225
6.3 MEDIUM

A flaw has been found in DbGate up to 7.2.5-beta.5. This affects an unknown function of the file packages/api/src/controllers/runners.js of the component JSON Runner. Executing …

Sep 24, 2026
CVE-2026-96746
6.5 MEDIUM

An out-of-bounds write in the connection-monitoring logic of the MongoDB C Driver may allow an unauthenticated party who controls name resolution and the responses of …

Sep 24, 2026
CVE-2026-96745
5.6 MEDIUM

Deserialization of untrusted data in the command monitoring support of the MongoDB PHP Driver can cause class names embedded in document content to be honored …

Sep 24, 2026
CVE-2026-93541
6.5 MEDIUM

An out-of-bounds read in libXi's XQueryDeviceState() in libXi before 1.8.4 could be used by a

Sep 24, 2026
CVE-2026-92680
5.5 MEDIUM

Araxis Merge for Windows version 2011.4074 through 2026.0 stores user-configured credentials for remote servers in the Windows registry and does not apply sufficient cryptographic protection. …

Sep 24, 2026
CVE-2026-88370
5.3 MEDIUM

libconfini 1.16.4 contains a heap out-of-bounds write condition involving the bundled load_ini_buffer.h utility and strip_ini_cache(). The bundled utility allocates exactly ini_length bytes, while strip_ini_cache() unconditionally …

Sep 24, 2026
CVE-2026-88358
6.5 MEDIUM

simdjson 4.6.1 contains a one-byte out-of-bounds read vulnerability in dom::parser::parse_unpadded(). A specially crafted truncated JSON document whose final structural token closes a nested array or …

Sep 24, 2026
CVE-2026-79761
6.6 MEDIUM

Termix is a web-based server management platform with SSH terminal, tunneling, and file editing capabilities. From 1.7.0 until 2.5.1, the Termix SSH key deployment flow …

Sep 24, 2026
CVE-2026-79760
6.4 MEDIUM

Termix is a web-based server management platform with SSH terminal, tunneling, and file editing capabilities. From 2.5.0 until 2.5.1, Termix allows authenticated users to configure …

Sep 24, 2026
CVE-2026-79759
4.3 MEDIUM

Termix is a web-based server management platform with SSH terminal, tunneling, and file editing capabilities. From 1.7.0 until 2.5.1, the POST /credentials/:id/deploy-to-host endpoint resolves credential …

Sep 24, 2026
CVE-2026-79758
5.4 MEDIUM

Termix is a web-based server management platform with SSH terminal, tunneling, and file editing capabilities. From 1.8.0 until 2.5.1, authenticated Termix users can access the …

Sep 24, 2026
CVE-2026-76907
6.5 MEDIUM

LaSuite Doc is a collaborative note taking, wiki and documentation platform. From 4.8.2 until 5.4.0, GET /api/v1.0/documents/search/ accepts sequential seven-digit document paths to scope descendant …

Sep 24, 2026
CVE-2025-32000
4.3 MEDIUM

HCL Sametime is vulnerable to insufficient input sanitization. The application did not appropriately sanitize user input. When user input is implicitly or explicitly trusted without …

Sep 24, 2026
CVE-2026-97224
4.3 MEDIUM

A vulnerability was detected in Excalidraw up to 0.18.1. The impacted element is an unknown function of the file packages/excalidraw/data/restore.ts of the component Imported File …

Sep 24, 2026
CVE-2026-77825
4.9 MEDIUM

IBM ContextForge MCP Gateway 1.0.0 through 1.0.8 was vulnerable to path traversal in its Admin API log-download endpoint (`GET /v1/admin/logs/file`). The path confinement check uses …

Sep 24, 2026
CVE-2026-77707
5.9 MEDIUM

Improper certificate validation vulnerability in HAVELSAN Inc. Liman Render Engine allows Adversary in the Middle (AiTM). This issue affects Liman Render Engine: from 1.0 before …

Sep 24, 2026
CVE-2026-77703
5.9 MEDIUM

Key exchange without entity authentication vulnerability in HAVELSAN Inc. Liman Render Engine allows Adversary in the Middle (AiTM). This issue affects Liman Render Engine: from …

Sep 24, 2026
CVE-2026-6544
6.2 MEDIUM

IBM Concert 1.0.0 through 3.0.0 allows recursive copying of directories without proper controls which can lead to unintentional inclusion of sensitive or unnecessary files and …

Sep 24, 2026
CVE-2026-65422
6.5 MEDIUM

A flaw in the authorization mechanism for Media Gateway API in Genetec Security Center may allow a user with no playback privileges to generate video …

Sep 24, 2026
CVE-2026-18870
4.3 MEDIUM

IBM PowerVM Hypervisor FW1120.00 through FW1120.01, FW1110.00 through FW1110.31, FW1060.00 through FW1060.81, and FW950.00 through FW950.H3 could allow a remote attacker to obtain sensitive information …

Sep 24, 2026
CVE-2026-97062
5.4 MEDIUM

Aureus ERP through 1.6.0 stores uploaded SVG files on its public disk and serves them from the application origin, allowing authenticated users to upload malicious …

Sep 24, 2026
CVE-2026-97061
4.3 MEDIUM

Black Candy through 3.2.1 fails to scope playlist search queries to the authenticated session user, allowing any authenticated user to enumerate all playlists on the …

Sep 24, 2026
CVE-2026-97058
5.3 MEDIUM

sprintf-js through 1.1.3 passes unbounded precision specifiers to toFixed, toExponential, and toPrecision methods without validation, causing uncaught RangeError exceptions. Attackers who control format strings can …

Sep 24, 2026
CVE-2026-88359
6.5 MEDIUM

libfyaml 0.9.6 contains a stack exhaustion vulnerability in fy_atom_iter_format(). When processing a specially crafted YAML document containing a very large literal or folded block scalar, …

Sep 24, 2026
CVE-2026-77798
6.5 MEDIUM

Velociraptor contains a deadlock condition that may be triggered by authenticated users. The issue stems from a lock management bug in the user management module.

Sep 24, 2026
CVE-2026-17504
5.1 MEDIUM

IBM PowerVM Hypervisor FW1120.00 through FW1120.01, FW1110.00 through FW1110.31, FW1060.00 through FW1060.81, and FW950.00 through FW950.H3 is affected by a vulnerability in the partition firmware …

Sep 24, 2026
CVE-2026-17503
5.1 MEDIUM

IBM PowerVM Hypervisor FW1120.00 through FW1120.01, FW1110.00 through FW1110.31, FW1060.00 through FW1060.81, and FW950.00 through FW950.H3 is affected by a vulnerability in the partition firmware …

Sep 24, 2026
CVE-2026-17413
5.1 MEDIUM

IBM PowerVM Hypervisor FW1120.00 through FW1120.01, FW1110.00 through FW1110.31, FW1060.00 through FW1060.81, and FW950.00 through FW950.H3 is affected by a vulnerability in the RTAS firmware-to-OS …

Sep 24, 2026
CVE-2026-94416
6.8 MEDIUM

An authorization bypass was found in the Ansible Automation Platform (AAP) gateway. The gateway API allows an authenticated administrator to create a new service key …

Sep 24, 2026
CVE-2026-88916
6.8 MEDIUM

Incorrect Authorization vulnerability in TÜBİTAK ULAKBİM UlakPDF allows Privilege Escalation. This issue affects UlakPDF: through 09092026.

Sep 24, 2026

Scan your infrastructure for known CVEs

Free website and port scanning — find vulnerabilities before attackers do.