CVE Database

45572+ vulnerabilities with CVSS scores, EPSS exploit predictions, and CISA KEV status. Updated daily.

Filter: All CRITICAL HIGH MEDIUM LOW CISA KEV
Sort: Newest CVSS EPSS
CVE-2026-41449
7.8 HIGH

UAC (Unix-like Artifacts Collector) versions prior to 3.3.0 contain a command injection vulnerability in the _run_command function that allows attackers to execute arbitrary commands by …

Aug 21, 2026
CVE-2026-74583
7.8 HIGH

In the Linux kernel, the following vulnerability has been resolved: net/sched: cls_route: fix fastmap use-after-free on filter The route4 classifier maintains a 16-slot fastmap cache …

Aug 21, 2026
CVE-2026-74582
7.8 HIGH

In the Linux kernel, the following vulnerability has been resolved: packet: use consistent hard_header_len in non-ring send paths packet_snd() reads dev->hard_header_len multiple times while allocating …

Aug 21, 2026
CVE-2026-74580
8.8 HIGH

In the Linux kernel, the following vulnerability has been resolved: vhost: reset the vring metadata cache on vring reconfiguration vq->meta_iotlb[] caches the vhost_iotlb_map that backs …

Aug 21, 2026
CVE-2026-39909
8.1 HIGH

llama.cpp before b8585 contains a use-after-free vulnerability in the RPC server's GRAPH_RECOMPUTE handler that allows unauthenticated remote attackers to achieve arbitrary read and write access …

Aug 21, 2026
CVE-2026-75933
7.3 HIGH

Jet Admin allows an authenticated attacker to inject JavaScript via the sign-in page's scripts and styles option. Injected script is executed in the context of …

Aug 21, 2026
CVE-2026-75932
8.6 HIGH

Jet Admin allows an attacker to create a malicious app and connect it to a target user's custom domain, edit the authentication configuration, and reroute …

Aug 21, 2026
CVE-2026-54789
7.5 HIGH

mod_auth_openidc is an OpenID Certified authentication and authorization module for the Apache 2.x HTTP server that implements the OpenID Connect Relying Party functionality. Prior to …

Aug 21, 2026
CVE-2026-49114
7.1 HIGH

In ONNX before 1.21.0, the 'save_external_data' function builds the external-data file path from the model's external_data location field and opens it for writing without 'O_NOFOLLOW/O_EXCL', …

Aug 21, 2026
CVE-2026-22681
8.5 HIGH

OpenViking before 0.3.4 contains a server-side request forgery vulnerability that allows authenticated low-privilege attackers to access internal network services by submitting arbitrary URLs to the …

Aug 21, 2026
CVE-2026-77815
7.5 HIGH

to_abs_path in scripts/iib/tool.py normalised the requested path with os.path.normpath, which collapses dot segments but does not resolve symbolic links. A symlink placed inside a scanned …

Aug 21, 2026
CVE-2026-77814
7.5 HIGH

is_path_trusted in scripts/iib/api.py compares the requested path against each allowed parent directory with path.startswith(parent_path), without appending a path separator. A directory whose name merely begins …

Aug 21, 2026
CVE-2026-75501
7.5 HIGH

A vulnerability in the Calix EXOS firmware for the GS7 XGS (GS5239XG) residential router allows unauthenticated remote attackers to modify NAT port‑forwarding rules via the …

Aug 21, 2026
CVE-2026-55622
7.7 HIGH

Incus is a system container and virtual machine manager. Prior to version 7.2.0, missing authorization checks exist for instance copying where an attacker knowing the …

Aug 21, 2026
CVE-2026-55621
7.7 HIGH

Incus is a system container and virtual machine manager. Prior to version 7.2.0, missing authorization checks exist for custom volume copying where an attacker knowing …

Aug 21, 2026
CVE-2026-59654
7.5 HIGH

Missing Release of Resource after Effective Lifetime vulnerability in Apache CloudStack's scoped global configuration functionality. It affects different modules and plugins of the CloudStack management …

Aug 21, 2026
CVE-2026-77775
8.6 HIGH

Headroom's LLM proxy lets a client choose the upstream destination with the x-headroom-base-url request header. _resolve_openai_upstream_base in headroom/proxy/handlers/openai.py accepts the header value, requires only that …

Aug 21, 2026
CVE-2026-59279
7.5 HIGH

The MCP Streamable HTTP server transport (WebFlux and WebMvc variants) does not place any limit on the number of sessions it retains, and by default …

Aug 21, 2026
CVE-2026-77767
7.5 HIGH

Reconmap's API applies a fallback authorization policy in apps/api/app/Program.cs that requires an authenticated user holding the administrator role, so controllers without their own attribute reject …

Aug 21, 2026
CVE-2026-47827
7.5 HIGH

Command Injection in BOSH CLI tool on windows in Cloud Foundry allows a remote attacker to execute arbitrary shell commands via command injection vulnerabilities

Aug 21, 2026
CVE-2026-68745
8.1 HIGH

Certificate validation failures in SAML authentication in Apache CloudStack 4.20.3.0 and 4.22.1.0 on all platforms allow a malicious agent to forge a SAML response to …

Aug 21, 2026
CVE-2026-66722
7.2 HIGH

Improper authorization for CRUD operations on Project Roles and Project Role permissions for domain admins in CloudStack. A Domain Admin can create, update, delete, and …

Aug 21, 2026
CVE-2026-63046
8.8 HIGH

Improper Neutralization of Argument Delimiters in a Command ('Argument Injection') vulnerability in Apache InLong. Agent Installer's ModuleManager executes arbitrary shell commands via ExcuteLinux.exeCmd() with no …

Aug 21, 2026
CVE-2026-61400
8.8 HIGH

Improper Neutralization of Special Elements used in a Command ('Command Injection') vulnerability in Apache CloudStack's run and get diagnostics functionality for the system VMs and …

Aug 21, 2026
CVE-2026-61397
7.5 HIGH

Exposure of Sensitive Information to an Unauthorized Actor vulnerability in Apache CloudStack's OAuth2 authentication plugin and Google OAuth integration. This issue affects Apache CloudStack: from …

Aug 21, 2026
CVE-2026-59799
8.8 HIGH

Improper Privilege Management vulnerability in Apache CloudStack's Two-factor authentication plugin allowing bypass of the two-factor authentication disable flow. This issue affects Apache CloudStack: from 4.18.0.0 …

Aug 21, 2026
CVE-2026-59780
7.5 HIGH

Exposure of Sensitive Information to an Unauthorized Actor vulnerability in Apache CloudStack's LDAP authentication plugin while listing LDAP providers. LDAP configurations can be listed by …

Aug 21, 2026
CVE-2026-59657
7.5 HIGH

Cleartext Storage of Sensitive Information vulnerability in Apache CloudStack with AsyncJob storage in the database. This issue affects Apache CloudStack: from 4.0.0 through 4.20.3.0 and …

Aug 21, 2026
CVE-2026-59655
7.5 HIGH

Exposure of Sensitive Information to an Unauthorized Actor vulnerability in Apache CloudStack's OAuth authentication plugin while listing OAuth providers. This issue affects Apache CloudStack: from …

Aug 21, 2026
CVE-2026-50222
7.5 HIGH

Missing Authorization, Exposure of Sensitive Information to an Unauthorized Actor vulnerability in Apache CloudStack's Userdata reference APIs. Several userdata-related APIs in Apache CloudStack, including deleteUserData, …

Aug 21, 2026
CVE-2026-50112
8.8 HIGH

SSRF via Metalink Mirror URL Resolution: An authenticated tenant can register a template pointing to an attacker-controlled metalink file containing internal targets. The Secondary Storage …

Aug 21, 2026
CVE-2026-47359
8.8 HIGH

Improper Neutralization of Special Elements used in an OS Command ('OS Command Injection') vulnerability in Apache CloudStack's NAS backup provider plugin. The addBackupRepository API (available …

Aug 21, 2026
CVE-2026-16323
7.5 HIGH

Execution after redirect (EAR) vulnerability in FuyaWeb Internet and Informatics Services ArchitectPanel Web Admin Panel allows Authentication Bypass. This issue affects ArchitectPanel Web Admin Panel: …

Aug 21, 2026
CVE-2026-75796
7.2 HIGH

The AI Engine WordPress plugin before 3.6.1 does not verify that the requesting user is authorized to act on the targeted account before performing privileged …

Aug 21, 2026
CVE-2026-18781
8.1 HIGH

The Drag and Drop Multiple File Upload for Contact Form 7 WordPress plugin before 1.3.9.9 does not validate the final name of an uploaded file …

Aug 21, 2026
CVE-2026-16576
7.2 HIGH

The Dokan: AI Powered WooCommerce Multivendor Marketplace Solution WordPress plugin before 5.0.14 does not correctly check user capabilities on some of its admin REST API …

Aug 21, 2026
CVE-2026-65644
7.5 HIGH

Rocket.Chat in versions before 8.8.0, 8.7.1, 8.6.2, 8.5.3, 8.4.6, 8.3.8, 8.2.8, 8.1.8, and 7.10.15 has a REST API endpoint POST /api/v1/livechat/visitor that accepts an unauthenticated, …

Aug 21, 2026
CVE-2026-45201
7.8 HIGH

Software installed and run as a non-privileged user may conduct improper GPU system calls to pass invalid log2 page size when allocating physical pages leading …

Aug 21, 2026
CVE-2026-45199
7.8 HIGH

Kernel software installed and running inside a Guest VM may post improper commands to the GPU Firmware to trigger a write of data outside the …

Aug 21, 2026
CVE-2026-18409
7.2 HIGH

The WPForms Pro plugin for WordPress is vulnerable to Stored Cross-Site Scripting via Single Line Text and Paragraph Text Field Values in all versions up …

Aug 21, 2026
CVE-2026-73267
7.7 HIGH

A flaw was found in the clusterclaims-controller component of multicluster engine (MCE). A tenant with standard permissions to create and delete ClusterClaim resources can exploit …

Aug 21, 2026
CVE-2026-77642
7.5 HIGH

tor before 0.4.9.9 was prone to an out-of-bounds write when parsing a consensus or detached signature with unexpected signature digest type. Impact is minor for …

Aug 20, 2026
CVE-2026-72860
8.5 HIGH

The POST /api/provider-nodes/validate route in 9router takes a caller-supplied baseUrl and issues server-side HTTP requests to it, guarding the destination with assertPublicUrl from src/shared/utils/ssrfGuard.js. That …

Aug 20, 2026
CVE-2026-72848
8.6 HIGH

SitemapLoader.parse_sitemap in langchain_community/document_loaders/sitemap.py applies the documented restrict_to_same_domain control only to leaf url entries. The loop over url elements filters cross-domain locations, but the loop over …

Aug 20, 2026
CVE-2026-72818
7.5 HIGH

The URLS regular expression in nltk/tokenize/casual.py, compiled into TweetTokenizer.WORD_RE and applied by TweetTokenizer.tokenize, contains a naked-domain branch whose domain-label prefix [a-z0-9]+(?:[.\-][a-z0-9]+)* is unbounded. Input consisting …

Aug 20, 2026
CVE-2026-69855
7.7 HIGH

Server-side request forgery (ssrf) in Microsoft Copilot in Azure allows an authorized attacker to disclose information over a network.

Aug 20, 2026
CVE-2026-69558
8.6 HIGH

Authorization bypass through user-controlled key in Microsoft Partner Center allows an unauthorized attacker to disclose information over a network.

Aug 20, 2026
CVE-2026-69543
8.5 HIGH

Server-side request forgery (ssrf) in Azure Virtual Machines allows an authorized attacker to elevate privileges over a network.

Aug 20, 2026
CVE-2026-69519
8.6 HIGH

Observable response discrepancy in Azure Stack HCI allows an unauthorized attacker to disclose information over a network.

Aug 20, 2026
CVE-2026-69419
8.5 HIGH

Integer overflow or wraparound in Azure Data Manager for Energy allows an authorized attacker to execute code over a network.

Aug 20, 2026

Scan your infrastructure for known CVEs

Free website and port scanning — find vulnerabilities before attackers do.