CVE Database

38893+ vulnerabilities with CVSS scores, EPSS exploit predictions, and CISA KEV status. Updated daily.

Filter: All CRITICAL HIGH MEDIUM LOW CISA KEV
Sort: Newest CVSS EPSS
CVE-2026-0045
7.8 HIGH

In bta_jv_rfcomm_connect of bta_jv_act.cc, there is a possible bypass of bonding for a secure connection due to a logic error in the code. This could …

Jun 1, 2026
CVE-2026-0036
7.8 HIGH

In startAnimation of StageCoordinator.java, there is a possible tapjacking issue due to a tapjacking/overlay attack. This could lead to local escalation of privilege with no …

Jun 1, 2026
CVE-2026-0009
7.8 HIGH

In multiple locations, there is a possible tapjacking due to a logic error in the code. This could lead to local escalation of privilege with …

Jun 1, 2026
CVE-2025-48652
7.8 HIGH

In performPreInstallChecks of InstallRepository.kt, there is a possible way to bypass MDM policy due to a logic error in the code. This could lead to …

Jun 1, 2026
CVE-2025-48649
7.8 HIGH

In multiple locations, there is a possible way to reset user-selected permissions selections due to a permissions bypass. This could lead to local escalation of …

Jun 1, 2026
CVE-2025-48595
8.4 HIGH KEV

In multiple locations, there is a possible way to achieve code execution due to an integer overflow. This could lead to local escalation of privilege …

Jun 1, 2026
CVE-2025-48570
7.8 HIGH

In multiple functions of PipTaskOrganizer.java, there is a possible way to launch an activity from the background due to a confused deputy. This could lead …

Jun 1, 2026
CVE-2025-32348
7.8 HIGH

In multiple locations, there is a possible background activity launch due to a missing permission check. This could lead to local escalation of privilege with …

Jun 1, 2026
CVE-2025-26418
7.8 HIGH

In setUserDisclaimerAcknowledged of CarDevicePolicyService.java, there is a possible way to bypass the user dialog when adding an account to a managed device due to a …

Jun 1, 2026
CVE-2025-22426
7.8 HIGH

In many functions of ComputerEngine.java, there is a possible way to access URIs across users due to a logic error in the code. This could …

Jun 1, 2026
CVE-2025-22424
7.8 HIGH

In multiple locations, there is a possible way to reveal images across users due to improper input validation. This could lead to local escalation of …

Jun 1, 2026
CVE-2018-25434
8.2 HIGH

WP AutoSuggest 0.24 contains an SQL injection vulnerability that allows unauthenticated attackers to execute arbitrary SQL queries by injecting malicious code through the wpas_keys parameter. …

Jun 1, 2026
CVE-2018-25433
8.2 HIGH

Joomla Component JE Photo Gallery 1.1 contains an SQL injection vulnerability that allows unauthenticated attackers to extract database information by injecting malicious SQL code through …

Jun 1, 2026
CVE-2018-25432
8.4 HIGH

Arm Whois 3.11 contains a buffer overflow vulnerability that allows local attackers to execute arbitrary code by overwriting the structured exception handler. Attackers can craft …

Jun 1, 2026
CVE-2018-25431
7.1 HIGH

No-Cms 1.0 contains an SQL injection vulnerability in the order_by parameter of the manage_privilege export endpoint that allows authenticated attackers to manipulate database queries. Attackers …

Jun 1, 2026
CVE-2018-25430
7.1 HIGH

Paroiciel 11.20 contains an SQL injection vulnerability that allows authenticated attackers to execute arbitrary SQL queries by injecting malicious code through the eGeqIdEquipe parameter. Attackers …

Jun 1, 2026
CVE-2018-25429
7.1 HIGH

Paroiciel 11.20 contains an SQL injection vulnerability that allows authenticated attackers to execute arbitrary SQL queries by injecting malicious code through the zProIdPro parameter. Attackers …

Jun 1, 2026
CVE-2018-25428
8.2 HIGH

Paroiciel 11.20 contains an SQL injection vulnerability that allows unauthenticated attackers to execute arbitrary SQL queries by injecting malicious code through the tRecIdListe parameter. Attackers …

Jun 1, 2026
CVE-2026-49136
7.5 HIGH

Banana Slides through 0.4.0, patched in commit e8bc490, contains a path traversal vulnerability in the generate_image() function within the AI service backend that allows unauthenticated …

Jun 1, 2026
CVE-2026-49135
7.1 HIGH

CodexBar prior to 0.32.0 contains an insecure temporary file handling vulnerability that allows local attackers to access sensitive credentials or tamper with build artifacts by …

Jun 1, 2026
CVE-2026-49134
7.1 HIGH

CodexBar prior to 0.32.0 contains a privilege escalation vulnerability in the CLI installer that allows local attackers to execute arbitrary commands as root by exploiting …

Jun 1, 2026
CVE-2026-37234
8.2 HIGH

FlexRIC v2.0.0 allows a single SCTP connection to bind multiple xapp_ids by sending multiple E42_SETUP_REQUESTs. On disconnect, only the first registered xapp_id's resources are cleaned …

Jun 1, 2026
CVE-2026-24751
8.2 HIGH

Kiteworks is a private data network (PDN). Prior to version 9.3.0, a reflected XSS vulnerability in Kiteworks Secure Data Forms could allow an external attacker …

Jun 1, 2026
CVE-2026-10288
7.3 HIGH

A vulnerability was identified in code-projects Hotel and Tourism Reservation System 1.0. This issue affects the function password_verify of the file /admin/login.php of the component …

Jun 1, 2026
CVE-2026-10287
7.3 HIGH

A vulnerability was determined in SourceCodester SEO Meta Tag Extractor 1.0. This vulnerability affects the function get_headers of the file /index.php. This manipulation of the …

Jun 1, 2026
CVE-2025-70099
7.5 HIGH

A NULL pointer dereference in the ext4_dir_en_get_name_len function in include/ext4_dir.h of lwext4 1.0.0 allows attackers to cause a denial of service by supplying a specially …

Jun 1, 2026
CVE-2026-9614
8.8 HIGH

An Improper Access Control vulnerability in Ivanti Neurons for ITSM (cloud and on-premises) allows a remote authenticated attacker to gain administrative access.

Jun 1, 2026
CVE-2026-9330
8.5 HIGH

IBM WebSphere Application Server 9.0, and 8.5 is affected by an improper validation of user-supplied data during deserialization using the SAML Web Single Sign-On component. …

Jun 1, 2026
CVE-2026-7770
8.8 HIGH

IBM i Access Family 1.1.5.0 through 1.1.9.12 IBM i Access Client Solutions (ACS) is vulnerable to remote code execution when configured to listen for requests …

Jun 1, 2026
CVE-2026-49121
8.1 HIGH

AI Tensor Engine for ROCm (AITER) through 0.1.14 contains an unauthenticated remote code execution vulnerability in the MessageQueue.recv() function within shm_broadcast.py that allows unauthenticated remote …

Jun 1, 2026
CVE-2026-47294
8.0 HIGH

Deserialization of untrusted data in Microsoft Office SharePoint allows an authorized attacker to execute code over a network.

Jun 1, 2026
CVE-2026-45722
7.1 HIGH

Nextcloud is an open source content collaboration platform. From versions 0.9.0 to before 0.9.7, and 1.0.0 to before 1.0.2, a missing sanitization in the Tables …

Jun 1, 2026
CVE-2026-45545
8.2 HIGH

Nextcloud is an open source content collaboration platform. From versions 0.7.0 to before 0.7.7, 0.8.0 to before 0.8.10, 0.9.0 to before 0.9.8, and 1.0.0 to …

Jun 1, 2026
CVE-2026-45302
8.2 HIGH

parse-nested-form-data is a tiny node module for parsing FormData by name into objects and arrays. Prior to version 1.0.1, parseFormData() walks bracket and dot-notation FormData …

Jun 1, 2026
CVE-2026-45281
8.1 HIGH

Nextcloud is an open source content collaboration platform. In Nextcloud Server from versions 32.0.0 to before 32.0.9, and 33.0.0 to before 33.0.3, with the knowledge …

Jun 1, 2026
CVE-2026-43958
7.8 HIGH

A flaw was found in rrdcached, a component of rrdtool. A local attacker with access to a rrdcached socket can exploit a stack-based buffer overflow …

Jun 1, 2026
CVE-2026-43624
8.2 HIGH

F5-TTS through version 1.1.20 contains a path traversal vulnerability in the finetune Gradio handlers that allows unauthenticated attackers to write arbitrary files by passing unsanitized …

Jun 1, 2026
CVE-2026-43623
8.8 HIGH

microtar through 0.1.0 contains a stack-based buffer overflow vulnerability in the raw_to_header() function in src/microtar.c that allows attackers to corrupt adjacent stack memory by supplying …

Jun 1, 2026
CVE-2026-41013
8.1 HIGH

Input validation bypass in SMB volume mount handling in CloudFoundry Foundation diego-release allows low-privileged CF space developer to inject arbitrary kernel CIFS mount options via …

Jun 1, 2026
CVE-2026-37235
7.5 HIGH

FlexRIC v2.0.0 trusts the xapp_id field from E42 message payloads without binding it to the sender's SCTP association. The validation function valid_xapp_id() only checks that …

Jun 1, 2026
CVE-2026-37233
7.5 HIGH

FlexRIC v2.0.0 contains an authorization bypass in the iApp's xApp isolation mechanism. The equality function eq_xapp_ric_gen_id() in src/ric/iApp/xapp_ric_id.c compares m0->xapp_id against itself (m0->xapp_id) instead of …

Jun 1, 2026
CVE-2026-37232
8.6 HIGH

An issue was discovered in OpenAirInterface5G 2.4.0 (nr-softmodem) in the E2SM-KPM RAN Function's PRB utilization metric calculation. The functions fill_RRU_PrbTotDl() and fill_RRU_PrbTotUl() in openair2/E2AP/RAN_FUNCTION/O-RAN/ran_func_kpm_subs.c (lines …

Jun 1, 2026
CVE-2026-37231
7.5 HIGH

FlexRIC v2.0.0 uses a uint16_t counter for xapp_id assignment but stores the value in uint32_t message fields. After 65,530+ E42_SETUP_REQUESTs, the 16-bit counter wraps around …

Jun 1, 2026
CVE-2026-37230
7.5 HIGH

FlexRIC v2.0.0 crashes when the near-RT RIC receives a RIC_INDICATION message with a ran_func_id that does not exist in its registry. The lookup returns NULL, …

Jun 1, 2026
CVE-2026-37229
7.5 HIGH

FlexRIC v2.0.0 contains a reachable assertion in e2ap_create_pdu() triggered when ASN.1 PER decoding fails. A remote unauthenticated attacker can send any non-PER byte sequence (e.g., …

Jun 1, 2026
CVE-2026-37228
7.5 HIGH

FlexRIC v2.0.0 contains a reachable assertion in e2ap_recv_sctp_msg() (src/lib/ep/e2ap_ep.c). The function allocates a fixed 32KB receive buffer and enforces assert(rc < len) on the sctp_recvmsg() …

Jun 1, 2026
CVE-2026-37226
7.5 HIGH

FlexRIC v2.0.0 crashes when the iApp receives an E42_RIC_SUBSCRIPTION_REQUEST referencing a non-existent E2 Node. The lookup function returns NULL, which is enforced by assert() in …

Jun 1, 2026
CVE-2026-10281
7.3 HIGH

A weakness has been identified in Enderfga claw-orchestrator up to 3.5.5. This affects the function EmbeddedServer of the file src/embedded-server.ts of the component API Endpoint. …

Jun 1, 2026
CVE-2026-10280
7.3 HIGH

A security flaw has been discovered in horizon921 mcpilot 0.1.0. The impacted element is an unknown function of the file client/src/app/api/mcp/call/route.ts of the component MCP …

Jun 1, 2026
CVE-2026-0072
7.8 HIGH

In addInputMethodListener of com.android.server.inputmethod.InputMethodManagerService, there is a missing permission check. This could lead to local escalation of privilege with no additional execution privileges needed. User …

Jun 1, 2026

Scan your infrastructure for known CVEs

Free website and port scanning — find vulnerabilities before attackers do.