CVE Database

38893+ vulnerabilities with CVSS scores, EPSS exploit predictions, and CISA KEV status. Updated daily.

Filter: All CRITICAL HIGH MEDIUM LOW CISA KEV
Sort: Newest CVSS EPSS
CVE-2026-36607
8.8 HIGH

Mercusys AC12G (EU) V1 router with firmware AC12G(EU)_V1_200909 allows unauthenticated brute-force attacks via the TDDP password change endpoint (code=10), which lacks the rate limiting applied …

Jun 3, 2026
CVE-2026-36606
7.1 HIGH

Mercusys AC12G (EU) V1 router with firmware AC12G(EU)_V1_200909 encrypts configuration backups with a hardcoded DES key using single DES in ECB mode. An attacker who …

Jun 3, 2026
CVE-2026-36603
8.1 HIGH

Mercusys AC12G (EU) V1 router with firmware AC12G(EU)_V1_200909 exposes 15 of 18 UPnP IGD actions without authentication on port 1900, including AddPortMapping and GetExternalIPAddress. UPnP …

Jun 3, 2026
CVE-2026-20230
8.6 HIGH KEV

A vulnerability in Cisco Unified Communications Manager (Unified CM) and Cisco Unified Communications Manager Session Management Edition (Unified CM SME) could allow an unauthenticated, remote …

Jun 3, 2026
CVE-2026-37462
7.5 HIGH

An integer underflow in the BGPUpdate.DecodeFromBytes function (/bgp/bgp.go) of gobgp v4.3.0 allows attackers to cause a Denial of Service (DoS) via supplying a crafted BGP …

Jun 3, 2026
CVE-2026-36574
7.8 HIGH

A DLL hijacking vulnerability in Wassimulator (GitHub) CactusViewer v2.3.0 allows attackers to escalate privileges and execute arbitrary code via a crafted DLL.

Jun 3, 2026
CVE-2026-37460
7.5 HIGH

Missing input validation in the rfapiRibBi2Ri() function (rfapi_rib.c) of FRRouting (FRR) stable/10.0 to stable/10.6 allows attackers to cause a Denial of Service (DoS) via supplying …

Jun 3, 2026
CVE-2022-49042
7.8 HIGH

An inclusion of functionality from untrusted control sphere vulnerability in MinGW DLL component in Synology Hyper Backup Explorer before 3.0.1-0156 allows local users to execute …

Jun 3, 2026
CVE-2022-49036
7.8 HIGH

An inclusion of functionality from untrusted control sphere vulnerability in OpenSSL configuration in Synology Active Backup for Business Recovery Media Creator before 2.5.0-2081 allows local …

Jun 3, 2026
CVE-2026-35085
8.8 HIGH

A remote attacker with user privileges can exploit a stack buffer overflow in gdv-serverconfig to gain full system access as root.

Jun 3, 2026
CVE-2026-35084
8.8 HIGH

A remote attacker with user privileges can exploit a stack buffer overflow in dali-devconfig to gain full system access as root.

Jun 3, 2026
CVE-2026-35083
8.8 HIGH

A remote attacker with user privileges can exploit a stack buffer overflow to gain full system access as root.

Jun 3, 2026
CVE-2026-35082
8.8 HIGH

The ugw-logread method allows a remote attacker with user privileges to access arbitrary local files due to insufficient validation of user-supplied input.

Jun 3, 2026
CVE-2026-35081
8.1 HIGH

The ugw-logstop method allows a remote attacker with user privileges to terminate arbitrary processes due to insufficient validation of user-supplied input.

Jun 3, 2026
CVE-2026-35080
8.1 HIGH

The ugw-restoreinfo method allows a remote attacker with user privileges to delete arbitrary local files due to insufficient validation of user-controlled input.

Jun 3, 2026
CVE-2026-35079
8.1 HIGH

The ugw-restore method allows a remote attacker with user privileges to delete arbitrary local files due to insufficient validation of user-controlled input.

Jun 3, 2026
CVE-2026-35078
8.1 HIGH

The ugw-logstop method allows a remote attacker with user privileges to delete arbitrary local files due to insufficient validation of user-controlled input.

Jun 3, 2026
CVE-2026-35077
8.1 HIGH

The ugw-delete-file method allows a remote attacker with user privileges to delete arbitrary local files due to insufficient validation of user-controlled input.

Jun 3, 2026
CVE-2026-35076
8.1 HIGH

The bac-scanresult method allows a remote attacker with user privileges to delete arbitrary local files due to insufficient validation of user-controlled input.

Jun 3, 2026
CVE-2026-41032
7.5 HIGH

It is possible for an unauthenticated adjacent attacker to download log files of the controller, which may disclose some restricted information.

Jun 3, 2026
CVE-2025-15656
8.8 HIGH

Incorrect Privilege Assignment vulnerability in Mojoomla School Management allows Privilege Escalation. This issue affects School Management: from n/a through 93.2.0.

Jun 3, 2026
CVE-2025-15655
7.6 HIGH

Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in Mojoomla School Management allows SQL Injection. This issue affects School Management: …

Jun 3, 2026
CVE-2025-14774
7.4 HIGH

Incorrect Authorization vulnerability in ABB T-MAC Plus. This issue affects T-MAC Plus: 4.0-24.

Jun 3, 2026
CVE-2025-14773
8.0 HIGH

Improper neutralization of input during web page generation ('cross-site scripting') vulnerability in ABB T-MAC Plus. This issue affects T-MAC Plus: 4.0-24.

Jun 3, 2026
CVE-2025-14772
8.8 HIGH

Authorization bypass through User-Controlled key vulnerability in ABB T-MAC Plus. This issue affects T-MAC Plus: 4.0-24.

Jun 3, 2026
CVE-2026-4035
7.7 HIGH

A vulnerability in mlflow/mlflow versions prior to 3.11.0 allows for the resolution of environment variables in AI Gateway secrets, which can be exploited to exfiltrate …

Jun 3, 2026
CVE-2025-15654
7.1 HIGH

Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Fox-themes Prague allows Reflected XSS. This issue affects Prague: from n/a through 2.2.8.

Jun 3, 2026
CVE-2026-50031
7.5 HIGH

ipmi-oem in FreeIPMI before 1.6.18 has exploitable buffer overflows on response messages. The Intelligent Platform Management Interface (IPMI) specification defines a set of interfaces for …

Jun 3, 2026
CVE-2026-10704
7.3 HIGH

A vulnerability was detected in SourceCodester Pizzafy E-Commerce System 1.0. Affected by this vulnerability is the function Login of the file /admin/admin_class_novo.php of the component …

Jun 3, 2026
CVE-2026-9516
7.5 HIGH

Cpanel::JSON::XS versions before 4.41 for Perl allow denial of service via UTF-8 BOM prefixed input when a decode filter callback throws. To skip a leading …

Jun 3, 2026
CVE-2026-9334
7.3 HIGH

Cpanel::JSON::XS versions before 4.41 for Perl allow type confusion via duplicate object keys when dupkeys_as_arrayref is enabled. decode_hv() collapses duplicate object keys into an array …

Jun 3, 2026
CVE-2026-10694
7.3 HIGH

A vulnerability was detected in SourceCodester Online Food Ordering System 2.0. Affected by this issue is the function include of the file /index.php. The manipulation …

Jun 3, 2026
CVE-2026-44654
8.1 HIGH

LibreChat is an enhanced ChatGPT clone that supports multiple AI providers. In versions up to and including 0.8.3, a shared-agent editor can delete file records …

Jun 2, 2026
CVE-2026-42504
7.5 HIGH

Decoding a maliciously-crafted MIME header containing many invalid encoded-words can consume excessive CPU.

Jun 2, 2026
CVE-2026-35482
8.0 HIGH

alf.io is an open source ticket reservation system for conferences, trade shows, workshops, and meetups. Prior to version 2.0-M5-2606, a sandbox escape vulnerability in the …

Jun 2, 2026
CVE-2026-31942
7.1 HIGH

LibreChat is an enhanced ChatGPT clone that supports multiple AI providers. In versions up to and including 0.7.6, an Insecure Direct Object Reference (IDOR) vulnerability …

Jun 2, 2026
CVE-2024-14036
7.5 HIGH

Dräger Core 1.0.5 and Dräger M540 Converter Service 1.0.9 contain a denial of service vulnerability that allows network-adjacent attackers to trigger high CPU load by …

Jun 2, 2026
CVE-2022-4992
8.6 HIGH

Dräger Infinity Acute Care System and Standalone Infinity M540 patient monitors versions VG4.1.1, VG4.0.3, and lower (with VG4.2 partially affected) contain a network message handling …

Jun 2, 2026
CVE-2021-4481
8.2 HIGH

Dräger Protector Software prior to version 6.4.2 contains a local privilege escalation vulnerability due to insecure file system permissions that allows local attackers to execute …

Jun 2, 2026
CVE-2021-4480
8.2 HIGH

Dräger Protector Software prior to version 6.4.2 contains a local privilege escalation vulnerability due to insecure file system permissions that allows local attackers to execute …

Jun 2, 2026
CVE-2026-49443
8.8 HIGH

authentik is an open-source identity provider. Prior to versions 2025.12.6, 2026.2.4, and 2026.5.1, an attacker with the ability to change a source connection, and an …

Jun 2, 2026
CVE-2026-49143
8.8 HIGH

BrowserStack Runner through 0.9.5 contains a remote code execution vulnerability in the /_log HTTP handler that allows unauthenticated network-adjacent attackers to execute arbitrary code by …

Jun 2, 2026
CVE-2026-47201
8.5 HIGH

authentik is an open-source identity provider. Prior to versions 2025.12.5, 2026.2.3, and 2026.5.1, authentik's SAML Source ACS endpoint is vulnerable to XML Signature Wrapping when …

Jun 2, 2026
CVE-2026-10620
7.3 HIGH

A flaw has been found in code-projects Student Admission System 1.0. Affected is an unknown function of the file /index.php. This manipulation of the argument …

Jun 2, 2026
CVE-2026-10619
7.3 HIGH

A vulnerability was detected in sayan365 student-management-system up to 7f3c9ce7d410332335c2affac93a385485051800. This impacts an unknown function. The manipulation results in improper authentication. The attack can be …

Jun 2, 2026
CVE-2026-8036
7.1 HIGH

Improper input validation in NI-PAL may allow a local authenticated user to access arbitrary system memory, potentially leading to privilege escalation. This vulnerability affects NI-PAL …

Jun 2, 2026
CVE-2026-8035
7.1 HIGH

Improper input validation in the NI-PAL kernel driver may allow a local authenticated user to cause a denial of service by triggering a crash due …

Jun 2, 2026
CVE-2026-5073
7.5 HIGH

The ARMember Premium plugin for WordPress is vulnerable to SQL Injection via the 'order' parameter of the 'arm_directory_paging_action' AJAX action in all versions up to, …

Jun 2, 2026
CVE-2026-49120
8.5 HIGH

Medplum before 5.1.14 contains a server-side request forgery vulnerability in the subscription worker that allows authenticated users to perform unauthorized internal network requests by creating …

Jun 2, 2026
CVE-2026-47265
7.5 HIGH

AIOHTTP is an asynchronous HTTP client/server framework for asyncio and Python. Prior to version 3.14.0, cookies set with the `cookies` parameter on requests are sent …

Jun 2, 2026

Scan your infrastructure for known CVEs

Free website and port scanning — find vulnerabilities before attackers do.