CVE Database

10684+ vulnerabilities with CVSS scores, EPSS exploit predictions, and CISA KEV status. Updated daily.

Filter: All CRITICAL HIGH MEDIUM LOW CISA KEV
Sort: Newest CVSS EPSS
CVE-2026-31633
9.8 CRITICAL

In the Linux kernel, the following vulnerability has been resolved: rxrpc: Fix integer overflow in rxgk_verify_response() In rxgk_verify_response(), there's a potential integer overflow due to …

Apr 24, 2026
CVE-2026-31609
9.8 CRITICAL

In the Linux kernel, the following vulnerability has been resolved: smb: client: avoid double-free in smbd_free_send_io() after smbd_send_batch_flush() smbd_send_batch_flush() already calls smbd_free_send_io(), so we should …

Apr 24, 2026
CVE-2026-31608
9.8 CRITICAL

In the Linux kernel, the following vulnerability has been resolved: smb: server: avoid double-free in smb_direct_free_sendmsg after smb_direct_flush_send_list() smb_direct_flush_send_list() already calls smb_direct_free_sendmsg(), so we should …

Apr 24, 2026
CVE-2026-31607
9.8 CRITICAL

In the Linux kernel, the following vulnerability has been resolved: usbip: validate number_of_packets in usbip_pack_ret_submit() When a USB/IP client receives a RET_SUBMIT response, usbip_pack_ret_submit() unconditionally …

Apr 24, 2026
CVE-2026-31589
9.8 CRITICAL

In the Linux kernel, the following vulnerability has been resolved: mm: call ->free_folio() directly in folio_unmap_invalidate() We can only call filemap_free_folio() if we have a …

Apr 24, 2026
CVE-2026-31536
9.8 CRITICAL

In the Linux kernel, the following vulnerability has been resolved: smb: server: let send_done handle a completion without IB_SEND_SIGNALED With smbdirect_send_batch processing we likely have …

Apr 24, 2026
CVE-2026-25660
9.8 CRITICAL

CodeChecker is an analyzer tooling, defect database and viewer extension for the Clang Static Analyzer and Clang Tidy. Authentication bypass occurs when the URL ends …

Apr 24, 2026
CVE-2026-21515
9.9 CRITICAL

Exposure of sensitive information to an unauthorized actor in Azure IOT Central allows an authorized attacker to elevate privileges over a network.

Apr 24, 2026
CVE-2026-1952
9.8 CRITICAL

Delta Electronics AS320T has denial of service via the undocumented subfunction vulnerability.

Apr 24, 2026
CVE-2026-1951
9.8 CRITICAL

Delta Electronics AS320T has no checking of the length of the buffer with the directory name vulnerability.

Apr 24, 2026
CVE-2026-1950
9.8 CRITICAL

Delta Electronics AS320T has No checking of the length of the buffer with the file name vulnerability.

Apr 24, 2026
CVE-2026-1949
9.8 CRITICAL

Delta Electronics AS320T has incorrect calculation of the buffer size on the stack in the GET/PUT request handler of the web service.

Apr 24, 2026
CVE-2026-33078
9.8 CRITICAL

Roxy-WI is a web interface for managing Haproxy, Nginx, Apache and Keepalived servers. Versions prior to 8.2.6.4 have a SQL injection vulnerability in the haproxy_section_save …

Apr 24, 2026
CVE-2026-33076
9.8 CRITICAL

Roxy-WI is a web interface for managing Haproxy, Nginx, Apache and Keepalived servers. Prior to version 8.2.6.4, the haproxy_section_save interface presents a vulnerability that could …

Apr 24, 2026
CVE-2026-40630
9.8 CRITICAL

A vulnerability in SenseLive X3050’s web management interface allows unauthorized access to certain configuration endpoints due to improper access control enforcement. An attacker with network …

Apr 24, 2026
CVE-2026-40620
9.8 CRITICAL

A vulnerability in SenseLive X3050’s embedded management service allows full administrative control to be established without any form of authentication or authorization on the SenseLive …

Apr 24, 2026
CVE-2026-35503
9.8 CRITICAL

A vulnerability in SenseLive X3050’s web management interface allows authentication logic to be performed entirely on the client side, relying on hardcoded values within browser-executed …

Apr 24, 2026
CVE-2026-27843
9.1 CRITICAL

A vulnerability exists in SenseLive X3050's web management interface that allows critical configuration parameters to be modified without sufficient authentication or server-side validation. By applying …

Apr 24, 2026
CVE-2026-25775
9.8 CRITICAL

A vulnerability in SenseLive X3050’s remote management service allows firmware retrieval and update operations to be performed without authentication or authorization. The service accepts firmware-related …

Apr 24, 2026
CVE-2026-41274
9.8 CRITICAL

Flowise is a drag & drop user interface to build a customized large language model flow. Prior to 3.1.0, the GraphCypherQAChain node forwards user-provided input …

Apr 23, 2026
CVE-2026-35431
10.0 CRITICAL

Server-side request forgery (ssrf) in Microsoft Entra ID Entitlement Management allows an unauthorized attacker to perform spoofing over a network.

Apr 23, 2026
CVE-2026-33819
10.0 CRITICAL

Deserialization of untrusted data in Microsoft Bing allows an unauthorized attacker to execute code over a network.

Apr 23, 2026
CVE-2026-33102
9.3 CRITICAL

Url redirection to untrusted site ('open redirect') in M365 Copilot allows an unauthorized attacker to elevate privileges over a network.

Apr 23, 2026
CVE-2026-32210
9.3 CRITICAL

Server-side request forgery (ssrf) in Microsoft Dynamics 365 (Online) allows an unauthorized attacker to perform spoofing over a network.

Apr 23, 2026
CVE-2026-26210
9.8 CRITICAL

KTransformers through 0.5.3 contains an unsafe deserialization vulnerability in the balance_serve backend mode where the scheduler RPC server binds a ZMQ ROUTER socket to all …

Apr 23, 2026
CVE-2026-24303
9.6 CRITICAL

Improper access control in Microsoft Partner Center allows an authorized attacker to elevate privileges over a network.

Apr 23, 2026
CVE-2026-6942
9.8 CRITICAL

radare2-mcp version 1.6.0 and earlier contains an os command injection vulnerability that allows remote attackers to execute arbitrary commands by bypassing the command filter through …

Apr 23, 2026
CVE-2026-41276
9.8 CRITICAL

Flowise is a drag & drop user interface to build a customized large language model flow. Prior to 3.1.0, this vulnerability allows remote attackers to …

Apr 23, 2026
CVE-2026-41268
9.8 CRITICAL

Flowise is a drag & drop user interface to build a customized large language model flow. Prior to 3.1.0, Flowise is vulnerable to a critical …

Apr 23, 2026
CVE-2026-41265
9.8 CRITICAL

Flowise is a drag & drop user interface to build a customized large language model flow. Prior to 3.1.0, the specific flaw exists within the …

Apr 23, 2026
CVE-2026-41264
9.8 CRITICAL

Flowise is a drag & drop user interface to build a customized large language model flow. Prior to 3.1.0, the specific flaw exists within the …

Apr 23, 2026
CVE-2026-25874
9.8 CRITICAL

LeRobot through 0.5.1 contains an unsafe deserialization vulnerability in the async inference pipeline where pickle.loads() is used to deserialize data received over unauthenticated gRPC channels …

Apr 23, 2026
CVE-2026-41247
9.8 CRITICAL

elFinder is an open-source file manager for web, written in JavaScript using jQuery UI. Prior to 2.1.67, elFinder contains a command injection vulnerability in the …

Apr 23, 2026
CVE-2026-6920
9.6 CRITICAL

Out of bounds read in GPU in Google Chrome on Android prior to 147.0.7727.117 allowed a remote attacker who had compromised the renderer process to …

Apr 23, 2026
CVE-2026-6919
9.6 CRITICAL

Use after free in DevTools in Google Chrome prior to 147.0.7727.117 allowed a remote attacker who had compromised the renderer process to potentially perform a …

Apr 23, 2026
CVE-2026-31533
9.8 CRITICAL

In the Linux kernel, the following vulnerability has been resolved: net/tls: fix use-after-free in -EBUSY error path of tls_do_encryption The -EBUSY handling in tls_do_encryption(), introduced …

Apr 23, 2026
CVE-2026-31181
9.8 CRITICAL

An issue was discovered in ToToLink A3300R firmware v17.0.0cu.557_B20221024 allowing attackers to execute arbitrary commands via the stunServerAddr parameter to /cgi-bin/cstecgi.cgi.

Apr 23, 2026
CVE-2026-31178
9.8 CRITICAL

An issue was discovered in ToToLink A3300R firmware v17.0.0cu.557_B20221024 allowing attackers to execute arbitrary commands via the stunMaxAlive parameter to /cgi-bin/cstecgi.cgi.

Apr 23, 2026
CVE-2026-31177
9.8 CRITICAL

An issue was discovered in ToToLink A3300R firmware v17.0.0cu.557_B20221024 allowing attackers to execute arbitrary commands via the stunMinAlive parameter to /cgi-bin/cstecgi.cgi.

Apr 23, 2026
CVE-2026-31175
9.8 CRITICAL

An issue was discovered in ToToLink A3300R firmware v17.0.0cu.557_B20221024 allowing attackers to execute arbitrary commands via the stunEnable parameter to /cgi-bin/cstecgi.cgi.

Apr 23, 2026
CVE-2026-40472
9.9 CRITICAL

In hackage-server, user-controlled metadata from .cabal files are rendered into HTML href attributes without proper sanitization, enabling stored Cross-Site Scripting (XSS) attacks.

Apr 23, 2026
CVE-2026-40471
9.6 CRITICAL

hackage-server lacked Cross-Site Request Forgery (CSRF) protection across its endpoints. Scripts on foreign sites could trigger requests to hackage server, possibly abusing latent credentials to …

Apr 23, 2026
CVE-2026-40470
9.9 CRITICAL

A critical XSS vulnerability affected hackage-server and hackage.haskell.org. HTML and JavaScript files provided in source packages or via the documentation upload facility were served as-is …

Apr 23, 2026
CVE-2026-39087
9.8 CRITICAL

ntfy before 2.22.0 allows SSRF because of an unanchored regular expression.

Apr 23, 2026
CVE-2026-23751
9.8 CRITICAL

Kofax Capture, now referred to as Tungsten Capture, version 6.0.0.0 (other versions may be affected) exposes a deprecated .NET Remoting HTTP channel on port 2424 …

Apr 23, 2026
CVE-2025-62373
9.8 CRITICAL

Pipecat is an open-source Python framework for building real-time voice and multimodal conversational agents. Versions 0.0.41 through 0.0.93 have a vulnerability in `LivekitFrameSerializer` – an …

Apr 23, 2026
CVE-2025-50229
9.8 CRITICAL

Jizhicms v2.5.4 is vulnerable to SQL injection in the product editing module.

Apr 23, 2026
CVE-2026-41460
9.8 CRITICAL

SocialEngine versions 7.8.0 and prior contain a SQL injection vulnerability in the /activity/index/get-memberall endpoint where user-supplied input passed via the text parameter is not sanitized …

Apr 23, 2026
CVE-2026-39440
9.9 CRITICAL

Improper Control of Generation of Code ('Code Injection') vulnerability in Funnelforms LLC FunnelFormsPro allows Remote Code Inclusion.This issue affects FunnelFormsPro: from n/a through 3.8.1.

Apr 23, 2026
CVE-2026-6887
9.8 CRITICAL

Borg SPM 2007 (Sales Ended in 2008) developed by BorG Technology Corporation has a SQL Injection vulnerability, allowing unauthenticated remote attackers to inject arbitrary SQL …

Apr 23, 2026

Scan your infrastructure for known CVEs

Free website and port scanning — find vulnerabilities before attackers do.