CVE Database

117989+ vulnerabilities with CVSS scores, EPSS exploit predictions, and CISA KEV status. Updated daily.

Filter: All CRITICAL HIGH MEDIUM LOW CISA KEV
Sort: Newest CVSS EPSS
CVE-2026-65698
5.3 MEDIUM

Void through 1.3.4 contains a path traversal vulnerability in the AI agent file-reading tools that allows network-adjacent attackers to read arbitrary host files outside the …

Jul 23, 2026
CVE-2026-65697
6.1 MEDIUM

Fathom Lite through 1.3.1 contains a stored cross-site scripting vulnerability in the analytics collection endpoint that allows unauthenticated attackers to inject a javascript: URI into …

Jul 23, 2026
CVE-2026-65696
5.4 MEDIUM

Overseerr through 1.35.0 contains an authorization bypass through user-controlled key vulnerability in the push subscription API that allows authenticated users to list, read, and delete …

Jul 23, 2026
CVE-2026-65695
6.8 MEDIUM

Office-Word-MCP-Server through 1.1.11 contains a path traversal vulnerability in its document tools that allows attackers who can influence the filename argument to read arbitrary .docx …

Jul 23, 2026
CVE-2026-44909
7.5 HIGH

Proxygen lacked a generalized slow-consumer detection mechanism in its core HTTP session layer. A remote, unauthenticated attacker could exploit HTTP/2 flow-control by setting SETTINGS_INITIAL_WINDOW_SIZE to …

Jul 23, 2026
CVE-2026-16768
5.3 MEDIUM

A flaw was found in gdk-pixbuf. When parsing a specially crafted ICO file with pixel values that exceed the defined palette range, an out-of-bounds read …

Jul 23, 2026
CVE-2026-65917
8.8 HIGH

CyberPanel through 1.9.1, fixed in commit b198460, contains an insecure direct object reference (IDOR) vulnerability in the IncBackups application's incremental-backup handlers (deleteBackup, fetchRestorePoints, and restorePoint) …

Jul 23, 2026
CVE-2026-65916
8.1 HIGH

CyberPanel through 1.9.1, fixed in commit b198460, contains a missing authorization vulnerability in the cancelBackupCreation handler that allows authenticated users to kill, delete, and corrupt …

Jul 23, 2026
CVE-2026-48539
5.4 MEDIUM

GFI Archiver before 15.13 contains a stored cross-site scripting vulnerability in the MailInsights scheduled report configuration that allows authenticated attackers to inject arbitrary web script …

Jul 23, 2026
CVE-2026-48538
5.4 MEDIUM

GFI Archiver before 15.13 contains a stored cross-site scripting vulnerability in the default import settings configuration that allows authenticated attackers to inject arbitrary web script …

Jul 23, 2026
CVE-2026-48537
5.4 MEDIUM

GFI Archiver before 15.13 contains a stored cross-site scripting vulnerability in the File Archive Assistant configuration that allows authenticated attackers to inject arbitrary web script …

Jul 23, 2026
CVE-2026-48536
5.4 MEDIUM

GFI Archiver before 15.13 contains a stored cross-site scripting vulnerability in the General Settings SMTP configuration that allows authenticated attackers to inject arbitrary web script …

Jul 23, 2026
CVE-2026-48535
5.4 MEDIUM

GFI Archiver before 15.13 contains a stored cross-site scripting vulnerability in the Call Home proxy server configuration that allows authenticated attackers to inject arbitrary web …

Jul 23, 2026
CVE-2026-48534
5.4 MEDIUM

GFI Archiver before 15.13 contains a stored cross-site scripting vulnerability in the IMAP Server configuration that allows authenticated attackers to inject arbitrary web script or …

Jul 23, 2026
CVE-2026-48533

Rejected reason: This CVE ID has been rejected or withdrawn by its CVE Numbering Authority.

Jul 23, 2026
CVE-2026-48532
5.4 MEDIUM

GFI Archiver before 15.13 contains a stored cross-site scripting vulnerability in the File History Retention Policy configuration that allows authenticated attackers to inject arbitrary web …

Jul 23, 2026
CVE-2026-48531
5.4 MEDIUM

GFI Archiver before 15.13 contains a stored cross-site scripting vulnerability in the Retention Policy configuration that allows authenticated attackers to inject arbitrary web script or …

Jul 23, 2026
CVE-2026-48530
5.4 MEDIUM

GFI Archiver before 15.13 contains a stored cross-site scripting vulnerability in the Classification Rules configuration that allows authenticated attackers to inject arbitrary web script or …

Jul 23, 2026
CVE-2026-16584
7.0 HIGH

Improper handling of an initialization failure in AWS API MCP Server from 0.2.13 through 1.3.46 might allow an actor to bypass the user-configured security policy …

Jul 23, 2026
CVE-2026-15617
9.1 CRITICAL

Logto performs principal lookup without normalizing email and identifier strings, enabling principal collision and unauthorized account access via case- or Unicode-different identities.

Jul 23, 2026
CVE-2026-15616
9.1 CRITICAL

Logto does not enforce locally configured MFA during SSO authentication, allowing users to bypass second-factor requirements and grants unauthorized access.

Jul 23, 2026
CVE-2026-15615
7.5 HIGH

Logto omits validation of the SAML <Conditions> element, enabling attackers to strip time and audience restrictions and replay assertions indefinitely.

Jul 23, 2026
CVE-2026-15614
7.5 HIGH

Logto silently fails to delete IdP-initiated SAML sessions, enabling session replay and reuse within the session’s validity window.

Jul 23, 2026
CVE-2026-15612
9.1 CRITICAL

Logto bypasses OIDC nonce validation when the nonce claim is absent from the id_token, enabling replay of authentication tokens and weakening session-binding.

Jul 23, 2026
CVE-2026-15611
9.1 CRITICAL

Logto allows unverified email-based SSO account linking, enabling an attacker to register an identity at a permissive IdP using a victim’s email and gain unauthorized …

Jul 23, 2026
CVE-2026-11804
5.2 MEDIUM

Improper handling of insufficient permissions or privileges vulnerability in Tridium Niagara Framework on Windows, Linux, QNX, Tridium Niagara Enterprise Security on Windows, Linux, QNX allows …

Jul 23, 2026
CVE-2026-43823
7.5 HIGH

When initializing an RSA public key from DER or PEM bytes throws an error, the EVP_PKEY* is double-freed: first in the catch block, then in …

Jul 23, 2026
CVE-2026-43820
7.7 HIGH

NIOSSLCertificate._subjectAlternativeNames provides access to the raw bytes for a cert's SANs. NIOSSL provides access to a buffer assumed to be backed by an ASN1_STRING, but …

Jul 23, 2026
CVE-2026-8287
4.3 MEDIUM

Allocation of resources without limits or throttling vulnerability in BizimHesap Information Systems Industry and Trade Inc. Online Pre-Accounting Software allows Excessive Allocation. This issue affects …

Jul 23, 2026
CVE-2026-65914
6.1 MEDIUM

DOMPurify before 3.3.2 contains a mutation-XSS vulnerability when sanitized HTML is reinserted into special parsing contexts using innerHTML with wrappers like script, xmp, iframe, noembed, …

Jul 23, 2026
CVE-2026-65913
6.1 MEDIUM

DOMPurify before 3.3.2 contains a prototype pollution vulnerability in USE_PROFILES mode that allows attackers to bypass attribute filtering by polluting Array.prototype properties. Attackers can set …

Jul 23, 2026
CVE-2026-65912
6.1 MEDIUM

DOMPurify before 3.3.2 contains a URI validation bypass vulnerability when ADD_ATTR is provided as a predicate function via EXTRA_ELEMENT_HANDLING.attributeCheck. Attackers can supply a predicate that …

Jul 23, 2026
CVE-2026-65911
6.1 MEDIUM

In DOMPurify through 3.3.3, function predicates supplied via ADD_ATTR or ADD_TAGS to DOMPurify.sanitize() persist in internal state (EXTRA_ELEMENT_HANDLING) across subsequent sanitize() calls on the same …

Jul 23, 2026
CVE-2026-65904
4.7 MEDIUM

DOMPurify through 3.3.3 fails to sanitize DOM elements passed via IN_PLACE mode when the element originates from a different window/realm (e.g., an iframe's contentDocument). A …

Jul 23, 2026
CVE-2026-65903
6.1 MEDIUM

DOMPurify before 3.4.0 contains a logic error in the ADD_TAGS function where short-circuit evaluation allows forbidden tags to bypass FORBID_TAGS restrictions. Attackers can craft input …

Jul 23, 2026
CVE-2026-65902
6.1 MEDIUM

DOMPurify before 3.4.7 (affected versions <= 3.4.5) passes direct references to the module-level DEFAULT_ALLOWED_TAGS and DEFAULT_ALLOWED_ATTR sets to the uponSanitizeElement and uponSanitizeAttribute hooks via data.allowedTags …

Jul 23, 2026
CVE-2026-65901
6.1 MEDIUM

DOMPurify through 3.4.6 contains a cross-site scripting vulnerability in IN_PLACE mode that trusts attacker-controlled nodeName on live non-form nodes. Attackers can supply hostile live DOM …

Jul 23, 2026
CVE-2026-65900
6.1 MEDIUM

DOMPurify versions >=3.0.0 and before 3.4.8, when configured with SAFE_FOR_TEMPLATES together with a DOM output mode (RETURN_DOM, RETURN_DOM_FRAGMENT, or IN_PLACE), fail to strip template expressions …

Jul 23, 2026
CVE-2026-65899
6.1 MEDIUM

DOMPurify 3.0.0 before 3.4.9 does not reset the retained Trusted Types policy when clearConfig() is called, so a DOMPurify instance reused across trust boundaries stays …

Jul 23, 2026
CVE-2026-65898
7.2 HIGH

DOMPurify before 3.4.11 fails to clone the ALLOWED_ATTR allowlist when setConfig() is used with an uponSanitizeAttribute hook, allowing the hook to permanently mutate the shared …

Jul 23, 2026
CVE-2026-65690
8.8 HIGH

Bold Reports Standalone Report Designer before 14.1.12 contains a missing filepath validation vulnerability in its file upload functionality that allows authenticated attackers to traverse outside …

Jul 23, 2026
CVE-2026-65689
9.8 CRITICAL

Bold Reports Standalone Report Designer before 14.1.12 contains a missing filepath validation vulnerability in its database download feature that allows unauthenticated attackers to read arbitrary …

Jul 23, 2026
CVE-2026-65688
9.8 CRITICAL

Bold Reports Standalone Report Designer before 14.1.12 contains a missing filepath validation vulnerability in its font processing feature that allows unauthenticated attackers to read arbitrary …

Jul 23, 2026
CVE-2026-65687
9.8 CRITICAL

Bold Reports Standalone Report Designer before 14.1.12 contains a missing filepath validation vulnerability in its SVG processing feature that allows unauthenticated attackers to read arbitrary …

Jul 23, 2026
CVE-2026-16735
5.3 MEDIUM

A security vulnerability has been detected in release-it conventional-changelog up to 11.0.1. This affects the function writeChangelog of the file index.js of the component Changelog …

Jul 23, 2026
CVE-2026-16733
5.3 MEDIUM

A weakness has been identified in bahmutov find-cypress-specs up to 1.54.12. The impacted element is the function shell.exec of the file src/index.js of the component …

Jul 23, 2026
CVE-2026-14257
7.5 HIGH

brace-expansion through 5.0.7 is vulnerable to denial of service via memory exhaustion. The expand() function limits the number of results with a max option (default …

Jul 23, 2026
CVE-2026-65908
8.6 HIGH

In JetBrains PyCharm before 2026.1.4, 2026.2 arbitrary code execution via malicious Python executable was possible on untrusted project open

Jul 23, 2026
CVE-2026-65907
9.1 CRITICAL

In JetBrains TeamCity before 2026.1.2, 2025.11.6 code execution in Git VCS roots was possible

Jul 23, 2026
CVE-2026-65906
8.8 HIGH

In JetBrains TeamCity before 2026.1.2, 2025.11.6 сode execution via Kotlin DSL sandbox escape was possible

Jul 23, 2026

Scan your infrastructure for known CVEs

Free website and port scanning — find vulnerabilities before attackers do.