CVE Database

11693+ vulnerabilities with CVSS scores, EPSS exploit predictions, and CISA KEV status. Updated daily.

Filter: All CRITICAL HIGH MEDIUM LOW CISA KEV
Sort: Newest CVSS EPSS
CVE-2026-82078
9.1 CRITICAL KEV

An unsafe dynamic class loading vulnerability exists in the database connection utilities of PaperCut MF and PaperCut NG. The application instantiates database driver classes based …

Aug 28, 2026
CVE-2026-81578
9.8 CRITICAL KEV

An improper access control vulnerability exists in the web management interface of PaperCut MF and PaperCut NG. Under specific conditions, unauthenticated remote requests targeting administrative …

Aug 28, 2026
CVE-2026-37751
9.8 CRITICAL

An OS command injection vulnerability in the killSessionSync function (lib/agent-runtime.ts) of 23blocks-OS ai-maestro v0.24.17 allows attackers to execute arbitrary commands via a crafted input.

Aug 28, 2026
CVE-2026-82244
9.1 CRITICAL

Budibase versions before 3.41.3 contain a remote code execution vulnerability in plugin handling that allows authenticated admin users to execute arbitrary code by uploading a …

Aug 28, 2026
CVE-2026-82222
10.0 CRITICAL

Deserialization of Untrusted Data vulnerability in Liquid Web / StellarWP GiveWP allows Object Injection. This issue affects GiveWP: from n/a through 4.16.7.1.

Aug 28, 2026
CVE-2026-42007
9.1 CRITICAL

An attacker that has valid credentials can use a Sieve script with the editheader extension to trigger a use-after-free in the mail editing code, and …

Aug 28, 2026
CVE-2026-80714
9.8 CRITICAL

In the Linux kernel, the following vulnerability has been resolved: ipvs: do not propagate one-packet flag to synced conns Synced connections can be created before …

Aug 28, 2026
CVE-2026-80694
9.8 CRITICAL

In the Linux kernel, the following vulnerability has been resolved: net: ethernet: mtk_eth_soc: pass eth to mtk_handle_irq_rx in poll_controller mtk_handle_irq_rx expects a struct mtk_eth * …

Aug 28, 2026
CVE-2026-80693
9.3 CRITICAL

In the Linux kernel, the following vulnerability has been resolved: idpf: bound interrupt-vector register fill to the allocated array idpf_get_reg_intr_vecs() fills the caller-allocated reg_vals[] array …

Aug 28, 2026
CVE-2026-80684
9.3 CRITICAL

In the Linux kernel, the following vulnerability has been resolved: KVM: s390: pci: Fix NULL dereference on AIBV allocation failure The airq_iv_create() can return NULL …

Aug 28, 2026
CVE-2026-80681
9.8 CRITICAL

In the Linux kernel, the following vulnerability has been resolved: vxlan: re-fetch eth header after route_shortcircuit() Before route_shortcircuit(), the eth header pointer is cached from …

Aug 28, 2026
CVE-2026-80674
9.8 CRITICAL

In the Linux kernel, the following vulnerability has been resolved: ntfs: validate resident attribute lists and harden the validator A base inode's $ATTRIBUTE_LIST is sanity-checked …

Aug 28, 2026
CVE-2026-80673
9.8 CRITICAL

In the Linux kernel, the following vulnerability has been resolved: ntfs: bound the look-ahead attribute-list entry in ntfs_external_attr_find() When resolving an attribute lookup with a …

Aug 28, 2026
CVE-2026-80671
9.3 CRITICAL

In the Linux kernel, the following vulnerability has been resolved: perf sched: Fix register_pid() overflow, strcpy, and BUG_ON register_pid() has several issues when processing untrusted …

Aug 28, 2026
CVE-2026-80670
9.1 CRITICAL

In the Linux kernel, the following vulnerability has been resolved: perf tools: Use perf_env__get_cpu_topology() in machine__resolve() machine__resolve() accesses env->cpu[al->cpu].socket_id after checking al->cpu >= 0 and …

Aug 28, 2026
CVE-2026-80668
9.8 CRITICAL

In the Linux kernel, the following vulnerability has been resolved: netfilter: nf_conntrack_expect: use conntrack GC to reap expectations This patch replaces the timer API by …

Aug 28, 2026
CVE-2026-80634
9.8 CRITICAL

In the Linux kernel, the following vulnerability has been resolved: netfilter: flowtable: avoid num_encaps underflow on bridge VLAN untag The DEV_PATH_BR_VLAN_UNTAG case post-decrements info->num_encaps inside …

Aug 28, 2026
CVE-2026-80630
9.8 CRITICAL

In the Linux kernel, the following vulnerability has been resolved: net/sched: sch_fq_codel: Do not call qdisc_tree_reduce_backlog during peek before restoring qlen Whenever fq_codel drops packets …

Aug 28, 2026
CVE-2026-80617
9.8 CRITICAL

In the Linux kernel, the following vulnerability has been resolved: net: airoha: fix foe_check_time allocation size foe_check_time is declared as u16 pointer but was allocated …

Aug 28, 2026
CVE-2026-80612
9.8 CRITICAL

In the Linux kernel, the following vulnerability has been resolved: net: lwtunnel: Drop skb metadata before LWT encapsulation skb metadata is meant for passing information …

Aug 28, 2026
CVE-2026-80609
9.8 CRITICAL

In the Linux kernel, the following vulnerability has been resolved: qede: fix out-of-bounds check for cqe->len_list[] Move index check before element access.

Aug 28, 2026
CVE-2026-80603
9.1 CRITICAL

In the Linux kernel, the following vulnerability has been resolved: netfilter: nf_conntrack_irc: fix parse_dcc() off-by-one OOB read parse_dcc() treats data_end as an inclusive end pointer, …

Aug 28, 2026
CVE-2026-80600
9.8 CRITICAL

In the Linux kernel, the following vulnerability has been resolved: batman-adv: dat: acquire ARP hw source only after skb realloc The pskb_may_pull() called by batadv_get_vid() …

Aug 28, 2026
CVE-2026-78032
9.8 CRITICAL

SOY CMS contains an issue with deserialization of untrusted data. An arbitrary code may be executed by an attacker with the web server privilege.

Aug 28, 2026
CVE-2026-76581
9.8 CRITICAL

The WPMU DEV Dashboard plugin for WordPress is vulnerable to Authentication Bypass in all versions up to, and including, 5.0.1. This is due to inconsistent …

Aug 28, 2026
CVE-2026-40541
9.0 CRITICAL

An improper neutralization of input during web page generation ('Cross-site Scripting') vulnerability in extract domain in Synology Chat Server before 2.4.5-22148 allows remote authenticated users, …

Aug 28, 2026
CVE-2026-82082
9.8 CRITICAL

NUMail developed by Green-Computing has an OS Command Injection vulnerability. Unauthenticated remote attackers can inject arbitrary OS commands and execute them on the server.

Aug 28, 2026
CVE-2026-61800
9.1 CRITICAL

Wazuh is an open-source security platform providing unified XDR and SIEM protection for endpoints and cloud workloads. In versions 4.4.0 through 4.14.6, a party holding …

Aug 28, 2026
CVE-2026-78239
9.8 CRITICAL

Xiiaozet LK100W exposes a critical management function that can be invoked without authentication, allowing a remote attacker to enable administrative services that should be restricted. …

Aug 28, 2026
CVE-2026-76943
9.8 CRITICAL

Xiiaozet LK100Wt contains an authentication weakness within an administrative service that may allow an attacker to bypass intended access controls and obtain command execution capabilities. …

Aug 28, 2026
CVE-2026-76179
9.8 CRITICAL

An improper protection of authentication tokens vulnerability exists in certain Ebyte gateway products. Authentication tokens used by the web management interface are insufficiently protected during …

Aug 28, 2026
CVE-2026-75337
9.8 CRITICAL

The static resource interface /api/static/{deployKey}/ of Yu AI Code Mother v4.3 is vulnerable to path traversal. The user-controlled path is concatenated to the preview root …

Aug 28, 2026
CVE-2026-73125
9.8 CRITICAL

Ebyte device web management interface does not consistently enforce authentication before granting access to administrative functionality. An unauthenticated remote attacker could access sensitive configuration information, …

Aug 28, 2026
CVE-2026-71187
9.8 CRITICAL

The Ebyte device relies on client side authentication logic that can be reproduced by unauthenticated users. An attacker may generate valid authentication requests and bypass …

Aug 28, 2026
CVE-2026-69658
9.8 CRITICAL

MQTT credentials and control traffic are transmitted in cleartext, exposing sensitive information to network-level attackers. This may enable unauthorized device impersonation and disruption of messaging …

Aug 28, 2026
CVE-2026-50152
9.1 CRITICAL

Ceph is an open-source distributed storage platform providing object, block, and file storage. In versions prior to 20.2.4 and 19.2.6, the Monitor subscription handler fails …

Aug 28, 2026
CVE-2026-59313
9.8 CRITICAL

Spring MVC applications using the functional web framework are vulnerable to stream corruption when using Server-Sent Events (SSE). Spring Framework 7.0.0 - 7.0.8 Spring Framework …

Aug 27, 2026
CVE-2026-59283
9.1 CRITICAL

Applications that evaluate Spring Expression Language (SpEL) expressions using SimpleEvaluationContext may be vulnerable to a safety guard bypass when the SpEL expression compiler is active. …

Aug 27, 2026
CVE-2026-37007
9.8 CRITICAL

A vulnerability in FileWriterTool in crewai-tools <= 1.10.2rc1 allows a remote attacker to achieve code execution via malicious path traversal sequences in the filename argument.

Aug 27, 2026
CVE-2026-37006
9.8 CRITICAL

A vulnerability in the WebSocket endpoint of gpt-researcher v0.14.7 and before allows an unauthenticated remote attacker to achieve code execution via malicious Model Context Protocol …

Aug 27, 2026
CVE-2026-37004
9.8 CRITICAL

BerriAI litellm <=1.82.4 is vulnerable to Server-Side Template Injection (SSTI), which allows unauthenticated remote attackers to execute arbitrary OS commands via a crafted dotprompt_content parameter …

Aug 27, 2026
CVE-2026-37003
9.8 CRITICAL

Agno up to and including 2.5.8 is vulnerable to Remote Code Execution (RCE) via prompt injection. The PythonTools and ShellTools components pass unsanitized, LLM-generated arguments …

Aug 27, 2026
CVE-2026-35869
9.8 CRITICAL

A Command Injection vulnerability exists in the bs_SetLimitCli_info function within the libshare.so library of LB-link Router AC450M V4.0.0. This flaw occurs due to insufficient validation …

Aug 27, 2026
CVE-2026-35868
9.8 CRITICAL

A Command Injection vulnerability exists in the bs_SetLimitCli_info function within the libshare.so library of LB-link Router AC2100_AZ3 V1.0.4. This flaw occurs due to insufficient validation …

Aug 27, 2026
CVE-2026-30612
9.8 CRITICAL

An issue in Time4 Popcorn for Windows <= 6.2.1.18 and Time4Popcorn for MacOS <= 6.2.1.17 and Time4Popcorn for Android <= 3.5.0.173 allows a remote attacker …

Aug 27, 2026
CVE-2026-19092
9.8 CRITICAL

The Tutor LMS WordPress plugin before 4.0.6 does not prevent request data from overwriting internal variables while rendering templates, allowing unauthenticated users to invoke arbitrary …

Aug 27, 2026
CVE-2026-81735
10.0 CRITICAL

startServer.ts in the mcp-http-server package of UI-TARS-desktop defaulted its listen address to '::' when no host was given, so startSseAndStreamableHttpMcpServer bound the Streamable HTTP and …

Aug 27, 2026
CVE-2026-81707
9.8 CRITICAL

openssl_encrypt before 1.4.9 fails to sanitize the email field of imported identity documents, allowing attackers to inject ANSI escape sequences that forge the fingerprint verification …

Aug 27, 2026
CVE-2026-81702
9.8 CRITICAL

openssl_encrypt before 1.4.9 fails to re-derive and validate fingerprints when loading identities from identity.json, allowing attackers to substitute public keys in identity stores. Attackers can …

Aug 27, 2026
CVE-2026-81701
9.8 CRITICAL

openssl_encrypt versions before 1.4.9 use a denylist to identify trusted built-in plugins, allowing unsigned plugins in top-level plugins/ directories and unknown subdirectories to bypass signature …

Aug 27, 2026

Scan your infrastructure for known CVEs

Free website and port scanning — find vulnerabilities before attackers do.