CVE Database

132506+ vulnerabilities with CVSS scores, EPSS exploit predictions, and CISA KEV status. Updated daily.

Filter: All CRITICAL HIGH MEDIUM LOW CISA KEV
Sort: Newest CVSS EPSS
CVE-2026-88270
6.5 MEDIUM

GeoVision GV-LPC2211 V1.13 allows a Guest user to enter SSVR firmware-upgrade mode and disrupt live services before any firmware image is validated.

Sep 10, 2026
CVE-2026-88269
6.5 MEDIUM

GeoVision GV-LPC2211 V1.13 allows a Guest user to retrieve persistent device configuration containing plaintext administrative and user credentials through SSVR.

Sep 10, 2026
CVE-2026-88268
6.5 MEDIUM

GeoVision GV-LPC2211 V1.13 contains an authenticated stack buffer overflow in SSVR fragment reassembly that allows a valid user to crash the SSVR service.

Sep 10, 2026
CVE-2026-88265
5.6 MEDIUM

A flaw was found in crun. After pivot_root, reopening /dev/null for stdio can follow a symlink and attach a host file to container stdio, then …

Sep 10, 2026
CVE-2026-88264
5.6 MEDIUM

A flaw was found in crun. When the container configuration does not give /dev a dedicated mount, terminal setup can redirect /dev/console onto an attacker-controlled …

Sep 10, 2026
CVE-2026-84042
7.8 HIGH

A flaw was found in crun. When crun is built with libkrun and a container is started rootful with passt networking (krun.use_passt), crun can execute …

Sep 10, 2026
CVE-2026-59679
9.0 CRITICAL

fs_read_glyphs() in the libXfont2 font-server client (src/fc/fserve.c) indexes the per-character encoding[] array using num_chars from the FS_QueryXBitmaps16 reply, but that array was allocated with a …

Sep 10, 2026
CVE-2026-44950
9.0 CRITICAL

fs_read_glyphs() in the libXfont2 font-server client (src/fc/fserve.c) copies each glyph's bitmap into a single buffer. Existing checks validates only that the source slice (position, length) …

Sep 10, 2026
CVE-2026-42808
6.8 MEDIUM

An issue was discovered in Bosch Sensortec COINES_SDK versions 2.0 through 2.11. The host streaming API function {{coines_read_stream_sensor_data()}} fails to validate the boundaries of the …

Sep 10, 2026
CVE-2026-42807
8.0 HIGH

A heap-based buffer overflow vulnerability in the PC bridge protocol decoder of BoschSensortec COINES_SDK (versions 2.10 through 2.12.2) allows attackers to cause a denial of …

Sep 10, 2026
CVE-2026-42806
4.3 MEDIUM

An out-of-bounds read vulnerability was discovered in the Bosch BME690 SensorAPI (C-driver) in version v1.0.3 and prior, specifically within the field data parsing logic in …

Sep 10, 2026
CVE-2026-42805
8.4 HIGH

A stack-based buffer overflow vulnerability exists in the Bosch Sensortec BHI385 SensorAPI (C library) within the debug message parser function bhi385_parse_debug_message (located in bhi385_parse.c). The …

Sep 10, 2026
CVE-2026-42804
7.6 HIGH

A stack-based buffer overflow vulnerability exists in the Bosch Sensortec BHI360 SensorAPI(C-Library) in versions up to and including commit d6b200416a. The vulnerability is located within …

Sep 10, 2026
CVE-2026-13745

A vulnerability in the Gemini CLI and associated GitHub Action allowed an unprivileged attacker to achieve an arbitrary code execution in Gemini CLI via untrusted …

Sep 10, 2026
CVE-2026-88770
6.5 MEDIUM

A flaw was found in the Device Authorization Grant flow of Keycloak, an identity and access management solution. The issue occurs because the token redemption …

Sep 10, 2026
CVE-2026-88763
5.9 MEDIUM

A flaw was found in the skupper-router component of Red Hat Service Interconnect, which is used to provide secure communication between distributed services. The issue …

Sep 10, 2026
CVE-2026-80354
8.1 HIGH

Authorization bypass through User-Controlled key vulnerability in Apache Camel K. An authorization vulnerability in custom resource resolution allows a tenant to reference secrets by name …

Sep 10, 2026
CVE-2026-80352
9.8 CRITICAL

Improper Control of Generation of Code ('Code Injection') vulnerability in Apache Camel K. A YAML injection vulnerability in custom resource configuration allows an authorized CR …

Sep 10, 2026
CVE-2026-80351
9.8 CRITICAL

Improper neutralization of directives in dynamically evaluated code ('eval injection') vulnerability in Apache Camel K. An improper neutralization of directives in dynamically evaluated Maven configuration …

Sep 10, 2026
CVE-2026-7188
9.8 CRITICAL

Improper neutralization of special elements used in an SQL command ('SQL injection') vulnerability in Armiya Information Technologies Ltd. Co. Access Control System allows SQL Injection. …

Sep 10, 2026
CVE-2026-87804

Rejected reason: no security impact

Sep 10, 2026
CVE-2026-82925
8.1 HIGH

The Site Reviews WordPress plugin before 8.3.0 does not prevent request data from being deserialized, and derives the key protecting that data by padding out …

Sep 10, 2026
CVE-2026-82582
4.3 MEDIUM

An authorization bypass vulnerability exists in SHIRASAGI through a user-controlled key, which may allow an unauthorized attacker to retrieve files from the groupware's shared file …

Sep 10, 2026
CVE-2026-81635
5.4 MEDIUM

A cross-site scripting vulnerability exists in SHIRASAGI, which may allow an attacker to execute an arbitrary script in the web browser of a user who …

Sep 10, 2026
CVE-2026-81431
7.2 HIGH

The Registration Form for WooCommerce WordPress plugin before 1.1.3 does not validate that the form referenced during registration is a legitimate registration form, reading the …

Sep 10, 2026
CVE-2026-78361
9.1 CRITICAL

The zipMoney(Zip Co) Payments Plugin for WooCommerce WordPress plugin before 2.4.0 does not perform any authorisation checks on one of its front-end request handlers, and …

Sep 10, 2026
CVE-2026-77771
7.5 HIGH

The miniOrange 2FA WordPress plugin before 6.3.1, miniOrange 2FA WordPress plugin before 19.3 does not scope its second-factor attempt limit to the account being attacked, …

Sep 10, 2026
CVE-2026-77770
10.0 CRITICAL

The miniOrange 2FA WordPress plugin before 6.3.1, miniOrange 2FA WordPress plugin before 19.3 does not require a validated transaction before deleting site options whose names …

Sep 10, 2026
CVE-2026-19840
6.5 MEDIUM

The Notiqoo WordPress plugin before 1.4.14 does not have capability checks on several of its AJAX actions and builds the name of the option to …

Sep 10, 2026
CVE-2026-19439
7.5 HIGH

The Ultimate Gift Cards for WooCommerce WordPress plugin before 3.2.10 does not have any authorisation check when displaying gift card details, allowing unauthenticated users to …

Sep 10, 2026
CVE-2026-19436
7.5 HIGH

The Ultimate Gift Cards for WooCommerce WordPress plugin before 3.2.10 does not reconcile the value of the gift card coupon it issues against the amount …

Sep 10, 2026
CVE-2026-0304

A privilege escalation vulnerability in Palo Alto Networks Cortex XDR Broker VM enables an authenticated low privileged user with man-in-the-middle (MitM) access to execute code …

Sep 10, 2026
CVE-2026-0303

A code execution vulnerability in Palo Alto Networks Checkov by Prisma® Cloud can allow arbitrary code execution when Checkov scans a directory that contains an …

Sep 10, 2026
CVE-2026-0302

An OS command injection vulnerability in Palo Alto Networks Checkov by Prisma® Cloud enables a local user to execute arbitrary commands in the processes running …

Sep 10, 2026
CVE-2026-85645
6.1 MEDIUM

The Form Maker by 10Web – Mobile-Friendly Drag & Drop Contact Form Builder plugin for WordPress is vulnerable to Reflected Cross-Site Scripting via the bulk_action …

Sep 10, 2026
CVE-2026-84939
9.1 CRITICAL

Path traversal vulnerability in Apache FreeMarker template loading mechanism, if the attacker can specify an arbitrary malformed locale identifier to FreeMarker, and the localized lookup …

Sep 10, 2026
CVE-2026-82079
8.4 HIGH

A stack-based buffer overflow vulnerability in the Nintendo Switch local wireless networking functionality may allow an attacker within wireless range to execute arbitrary code using …

Sep 10, 2026
CVE-2026-0310

A buffer overflow vulnerability in the XML processing functionality of Palo Alto Networks PAN-OS® software enables an unauthenticated attacker with network access to the management …

Sep 10, 2026
CVE-2026-0309

A command injection vulnerability in Palo Alto Networks PAN-OS® software enables an authenticated administrator to bypass system restrictions and run arbitrary commands as a root …

Sep 10, 2026
CVE-2026-0308

A stored cross-site scripting (XSS) vulnerability in Palo Alto Networks PAN-OS® software enables a malicious authenticated administrator to store or execute a JavaScript payload using …

Sep 10, 2026
CVE-2026-0307

Multiple local privilege escalation vulnerabilities in the Palo Alto Networks GlobalProtect™ app allows a local user to escalate their privileges to NT AUTHORITY\SYSTEM on Windows …

Sep 10, 2026
CVE-2026-0306

A vulnerability in the EndPoint Data Loss Prevention (DLP) enforcement of Palo Alto Networks Prisma® Access Agent enables a local user to bypass configured DLP …

Sep 10, 2026
CVE-2026-0305

An information disclosure vulnerability in the Palo Alto Networks Prisma® Access Agent on Linux enables a local user to access sensitive configuration data and credentials. …

Sep 10, 2026
CVE-2026-75880
6.5 MEDIUM

An authenticated client could attach a consumer with a selector containing crafted wildcard usage that results in excessive evaluation during message delivery attempts, occupying a …

Sep 10, 2026
CVE-2026-67593
9.1 CRITICAL

A remote attacker can craft an Openwire RemoveSubscriptionInfo command to cause the deletion of a queue on the Artemis broker before the connection authentication and …

Sep 10, 2026
CVE-2026-57967
9.8 CRITICAL

An unauthenticated remote attacker can craft a CORE protocol SESSION_REATTACH packet to steal an existing session and assume ongoing execution of the previously authenticated session. …

Sep 10, 2026
CVE-2026-57822
6.5 MEDIUM

When the broker is processing message-based management requests, sent by an authenticated messaging client that is authorized with MANAGE permission to perform management-via-messaging, the parameter …

Sep 10, 2026
CVE-2026-49364
9.1 CRITICAL

An unauthenticated network-adjacent attacker can leverage discovery to capture cluster administrative credentials during the initial cluster connection handshake. This issue affects Apache Artemis: from 2.50.0 …

Sep 10, 2026
CVE-2026-49363
7.5 HIGH

An unauthenticated remote attacker connecting with the CORE protocol can discover cluster node details by sending a SUBSCRIBE_TOPOLOGY request prior to authentication. This issue affects …

Sep 10, 2026
CVE-2026-49362
7.5 HIGH

An unauthenticated remote attacker can create arbitrary durable queues via the CORE protocol, leading to unauthorized broker state manipulation and potential denial of service. This …

Sep 10, 2026

Scan your infrastructure for known CVEs

Free website and port scanning — find vulnerabilities before attackers do.