CVE Database

48111+ vulnerabilities with CVSS scores, EPSS exploit predictions, and CISA KEV status. Updated daily.

Filter: All CRITICAL HIGH MEDIUM LOW CISA KEV
Sort: Newest CVSS EPSS
CVE-2026-61817
8.5 HIGH

pg_partman is a PostgreSQL extension that manages partitioned tables by time or ID. Prior to 5.5.0, run_maintenance(), show_partitions(), show_partition_info(), undo_partition(), and partition_data_time() interpolate the writable …

Sep 18, 2026
CVE-2026-61721
8.0 HIGH

FluidSynth is a software synthesizer based on the SoundFont 2 specifications. From 2.5.0 until 2.5.6, the native DLS loader assigns file-controlled wsmp.loop_start and wsmp.loop_length values …

Sep 18, 2026
CVE-2026-61714
7.8 HIGH

FluidSynth is a software synthesizer based on the SoundFont 2 specifications. From 2.2.4 until 2.5.6, configuring synth.midi-channels above 16 allows the MIDI player to index …

Sep 18, 2026
CVE-2026-17619
8.6 HIGH

IBM Platform RTM is vulnerable to SQL injection. A remote attacker could send specially crafted SQL statements, which could allow the attacker to view, add, …

Sep 18, 2026
CVE-2026-11727
8.1 HIGH

IBM MQ for HPE NonStop 8.1.0 through 8.1.0.40 IBM MQ C client could allow a remote attacker to cause a denial of service or potentially …

Sep 18, 2026
CVE-2026-11726
8.1 HIGH

IBM MQ for HPE NonStop 8.1.0 through 8.1.0.40 could allow an authenticated attacker to obtain sensitive information or cause a denial of service due to …

Sep 18, 2026
CVE-2026-11725
8.8 HIGH

IBM MQ could allow an authenticated attacker to cause a denial of service or potentially execute arbitrary code due to an integer overflow in MQINQ …

Sep 18, 2026
CVE-2026-11716
7.5 HIGH

IBM MQ for HPE NonStop 8.1.0 through 8.1.0.40 could allow an authenticated attacker to cause a denial of service or potentially execute arbitrary code during …

Sep 18, 2026
CVE-2017-20284
7.5 HIGH

Caucho Resin contains a path traversal vulnerability in the documentation webapp (resin-doc) that allows remote unauthenticated attackers to read arbitrary files by supplying a relative …

Sep 18, 2026
CVE-2026-75894
7.5 HIGH

In osmo-iuh from 0.1.0 through 1.8.0 a reachable assertion was found in the ranap_handle_co_dt() function via a arbitrarily sized NAS-PDU that leads to process crash …

Sep 18, 2026
CVE-2026-75893
7.5 HIGH

In osmo-bsc from 1.0.1 through 1.14.1 a heap based buffer overflow issue was found in the ipaccess_proxy_read_msg() function via IPA frame lengths.

Sep 18, 2026
CVE-2021-48008
7.5 HIGH

Chanjet CRM contains an unauthenticated SQL injection vulnerability that allows remote attackers to execute arbitrary SQL queries by manipulating the site_id GET parameter in the …

Sep 18, 2026
CVE-2019-25776
7.5 HIGH

Weaver E-cology contains an unauthenticated SQL injection vulnerability that allows remote attackers to execute arbitrary SQL queries by submitting malicious input through the userIdentifiers GET …

Sep 18, 2026
CVE-2026-93761
7.5 HIGH

An inefficient regular expression complexity issue in the in-memory query evaluation component of the Mongoid library may allow an unauthenticated party to cause excessive processing …

Sep 18, 2026
CVE-2026-93760
8.2 HIGH

Mongoid does not restrict which query operators may come from caller-supplied filter data when an application hands that data to its query-building methods. In an …

Sep 18, 2026
CVE-2026-93759
8.6 HIGH

Mongoid does not neutralize a string-typed query criterion supplied to its query builder, and instead passes it to the database as a server-side JavaScript expression. …

Sep 18, 2026
CVE-2026-93753
7.5 HIGH

deepmerge through 4.3.1 contains a prototype poisoning vulnerability in the mergeObject() function that fails to properly validate keys being written to target objects. Attackers can …

Sep 18, 2026
CVE-2026-93752
7.5 HIGH

CSSOM through 0.5.0 contains a denial of service vulnerability in CSSStyleDeclaration.setProperty() that fails to validate reserved property names. Attackers can supply a stylesheet with a …

Sep 18, 2026
CVE-2026-93749
7.5 HIGH

source-map-js through 1.2.1 fails to validate the per-section offset line value in indexed source maps, allowing attackers to specify arbitrary numeric values. Attackers can supply …

Sep 18, 2026
CVE-2026-93748
7.5 HIGH

http-cache-semantics through 4.2.0 fails to properly validate security-zeroed cache entries when processing client max-stale directives, allowing unauthenticated attackers to retrieve cached responses belonging to other …

Sep 18, 2026
CVE-2026-91127
8.2 HIGH

File Viewer is a browser-native viewer for Office, PDF, CAD, archive, and other files in private and internal web applications. Prior to @file-viewer/doc 2.3.1 and …

Sep 18, 2026
CVE-2026-85058
7.5 HIGH

Moquette is a lightweight Java MQTT broker. Prior to 0.18.1, PostOffice.publishWill publishes a client-controlled Last Will message through publish2Subscribers without invoking the authorizator.canWrite check used …

Sep 18, 2026
CVE-2026-84975
7.4 HIGH

PJSIP is a free and open source multimedia communication library written in C. In 2.17 and earlier, the OpenSSL and GnuTLS backends in pjlib/src/pj/ssl_sock_ossl.c and …

Sep 18, 2026
CVE-2026-81180
8.8 HIGH

SysReptor is a fully customizable pentest reporting platform. Prior to 2026.61, authenticated users of SysReptor Professional can upload image files whose formats cause image processing …

Sep 18, 2026
CVE-2026-81179
8.1 HIGH

SysReptor is a fully customizable pentest reporting platform. Prior to 2026.58, installations that enable password reset by email while configuring ALLOWED_HOSTS with a wildcard accept …

Sep 18, 2026
CVE-2026-69184
7.5 HIGH

c-ares is an asynchronous resolver library. Prior to 1.34.7, ares_dns_name_parse() enforces backward DNS compression pointers but does not bound the total pointer hops or assembled …

Sep 18, 2026
CVE-2026-62279
7.1 HIGH

LubeLogger is a self-hosted, open-source, web-based vehicle maintenance and fuel mileage tracker. Prior to 1.6.8, an authenticated user could submit caller-controlled recordIds to the DuplicateRecordsToOtherVehicles …

Sep 18, 2026
CVE-2026-62278
8.1 HIGH

LubeLogger is a self-hosted, open-source, web-based vehicle maintenance and fuel mileage tracker. Prior to 1.6.8, authenticated non-administrative users could reach HandleTranslationFileUpload and influence the name …

Sep 18, 2026
CVE-2026-61552
7.2 HIGH

Icinga 2 is an open source monitoring system. From 2.4 until 2.14.9, 2.15.4, and 2.16.2, the /v1/objects API writes attacker-controlled template names into generated configuration …

Sep 18, 2026
CVE-2026-61551
8.6 HIGH

Icinga 2 is an open source monitoring system. Prior to 2.14.9, 2.15.4, and 2.16.2, parsing deeply nested JSON can exhaust the call stack because nesting …

Sep 18, 2026
CVE-2026-33625
8.8 HIGH

LMDeploy is a toolkit for compressing, deploying, and serving large language models. Versions 012.1 through 0.12.2 contain a code injection vulnerability in `lmdeploy/pytorch/config.py` line 620 …

Sep 18, 2026
CVE-2026-32641
7.5 HIGH

Parseable is a log analytics platform built for high-volume data ingestion and analysis. Prior to 3.0.0, src/handlers/http/middleware.rs uses unwrap() while parsing the x-amz-firehose-common-attributes header before …

Sep 18, 2026
CVE-2026-93758
8.1 HIGH

An insecure direct object reference in the nested attributes handling of the Mongoid object-document mapper may allow a user with basic application privileges to reference …

Sep 18, 2026
CVE-2026-93559
7.3 HIGH

A vulnerability was identified in Forget-C Jellyfish AI Short Drama Studio 0.1.0-alpha/0.2.0/0.3.0/0.3.1/0.3.2. This affects an unknown function of the file backend/app/dependencies.py of the component FastAPI. …

Sep 18, 2026
CVE-2026-91149
7.5 HIGH

A flaw was found in Cockpit. An unauthenticated remote attacker can exploit this vulnerability by initiating and sustaining numerous simultaneous connections to the `cockpit-tls` service. …

Sep 18, 2026
CVE-2026-77301
7.5 HIGH

adm-zip is a JavaScript library for creating and extracting ZIP archives in Node.js. Prior to 0.6.1, getData() in zipEntry.js trusts an entry's central-directory uncompressed size …

Sep 18, 2026
CVE-2026-77239
8.1 HIGH

WACRM is a self-hostable CRM template for WhatsApp. In version 0.7.0 and earlier, WACRM flow and automation write routes authenticate account viewers but do not …

Sep 18, 2026
CVE-2026-61833
8.1 HIGH

zot is a container image and artifact registry based on the Open Container Initiative Distribution Specification. Prior to 2.1.18, the bearer authentication handler in pkg/api/authn.go …

Sep 18, 2026
CVE-2026-61672
7.1 HIGH

Capsule is a multi-tenancy and policy-based framework for Kubernetes. Prior to 0.13.7, ForbiddenListSpec.ExactMatch in pkg/api/forbidden_list.go sorts denied metadata keys case-insensitively and then uses sort.SearchStrings, which …

Sep 18, 2026
CVE-2026-61548
8.1 HIGH

Rsyslog is a rocket-fast system for log processing. From 7.5.4 until 8.2606.0, the optional mmpstrucdata plugin's parseSD_PARAM function in plugins/mmpstrucdata/mmpstrucdata.c stores RFC5424 parameter values in …

Sep 18, 2026
CVE-2026-58197
8.8 HIGH

ToolHive is a utility designed to simplify the deployment and management of Model Context Protocol servers. Prior to ToolHive CLI 0.30.1 and ToolHive Studio 0.38.0, …

Sep 18, 2026
CVE-2026-46655
7.8 HIGH

virtio-win provides Windows paravirtualized drivers for QEMU and KVM. From mm210 until mm320, the Viosock driver permits a low-privilege local process to submit an IOCTL_SELECT …

Sep 18, 2026
CVE-2026-93690
7.5 HIGH

uri-js through 4.4.1 contains a denial of service vulnerability in the removeDotSegments function that loops infinitely when a path segment begins with Unicode line or …

Sep 18, 2026
CVE-2026-93688
7.5 HIGH

SGLang through 0.5.19 in prefill/decode disaggregation mode with Mooncake KV transfer backend fails to validate bootstrap_room values, allowing unbounded transfer state allocation. Unauthenticated attackers can …

Sep 18, 2026
CVE-2026-93687
7.5 HIGH

braces through 3.0.3 contains a stack overflow vulnerability in the recursive AST walkers that lack depth guards. Attackers can supply deeply nested brace patterns under …

Sep 18, 2026
CVE-2026-88259
7.5 HIGH

CareCam CM2507 IP cameras do not require authentication for access to its network video streaming service. An unauthenticated attacker with network access to the affected …

Sep 18, 2026
CVE-2026-86520
7.5 HIGH

Bransys ELD is shipped with hardcoded MQTT credentials, which will grant read access to real-time data for every active device across a subset of carriers …

Sep 18, 2026
CVE-2026-84447
7.5 HIGH

libheif is a HEIF and AVIF file format decoder and encoder. In 1.23.1 and earlier, crafted grid, iovl, and iden reference graphs can repeatedly decode …

Sep 18, 2026
CVE-2026-84446
7.5 HIGH

libheif is a HEIF and AVIF file format decoder and encoder. Prior to 1.23.2, crafted HEIF sequence timing and edit-list data can make Track::init_sample_timing_table() compute …

Sep 18, 2026
CVE-2026-84444
7.4 HIGH

libheif is a HEIF and AVIF file format decoder and encoder. Prior to 1.23.2, when WITH_UNCOMPRESSED_CODEC is enabled, heif_context_add_image_tile() accepts an independently constructed tile whose …

Sep 18, 2026

Scan your infrastructure for known CVEs

Free website and port scanning — find vulnerabilities before attackers do.