CVE Database

11693+ vulnerabilities with CVSS scores, EPSS exploit predictions, and CISA KEV status. Updated daily.

Filter: All CRITICAL HIGH MEDIUM LOW CISA KEV
Sort: Newest CVSS EPSS
CVE-2026-81700
9.8 CRITICAL

openssl_encrypt versions before 1.4.9 contain a signature verification vulnerability in gpg_runner.verify_detached that accepts revoked and expired keys by only checking VALIDSIG status without inspecting REVKEYSIG, …

Aug 27, 2026
CVE-2026-81098
9.1 CRITICAL

The Telnyx MCP server exposed its HTTP transport on every interface and did not require a caller credential. packages/mcp-server/src/http.ts served MCP on the root path …

Aug 27, 2026
CVE-2026-81096
10.0 CRITICAL

ToolUniverse ran caller-supplied Python inside a sandbox that could be escaped, on a server that required no authentication. The executor behind the python_code_executor tool, in …

Aug 27, 2026
CVE-2026-81094
9.1 CRITICAL

The mcp-router CLI served its MCP aggregator on every interface and enforced authentication only when the operator asked for it. The serve command in apps/cli/src/commands/serve.ts …

Aug 27, 2026
CVE-2026-75357
9.8 CRITICAL

An issue in Bilibili Desktop v.1.17.9 allows a remote attacker to execute arbitrary code via the bili-inject.js and bili-bridge.js components.

Aug 27, 2026
CVE-2026-57499
9.1 CRITICAL

Liman is open source server management software. Prior to 2.2.2 - 1103, an OS command injection vulnerability in the log rotation configuration endpoint allows an …

Aug 27, 2026
CVE-2026-26897
9.8 CRITICAL

An issue in EcoOnline EHS (com.airsweb.v10) application for Android, version 0.2.499 allows a remote attacker to obtain sensitive information and execute arbitrary code via the …

Aug 27, 2026
CVE-2026-16279
9.3 CRITICAL

An Improper Authorization vulnerability affecting 3DPassport in 3DSwymer from Release 3DEXPERIENCE R2023x through Release 3DEXPERIENCE R2026x could allow an attacker to gain access to some …

Aug 27, 2026
CVE-2026-74233
9.8 CRITICAL

Zbtlink WE1326, WE357, WE5926, WE5926-WD, WE826-Q, WE826-T2, WE826-WD, WG108, and WG3526 firmware 19.1101, Zbtlink WE2426-C firmware 19.1112, Zbtlink WE5926-EC_QP firmware 20.0516, Zbtlink WF3526-P firmware 19.051, …

Aug 27, 2026
CVE-2026-74232
9.8 CRITICAL

Zbtlink L3_V2_8 firmware 3.0.0.4.528, Zbtlink WE826-T2 firmware 19.1101, Zbtlink ZBT-7628 firmware 1.0.0.2.007, Zbtlink ZBT-ZBT7621 firmware 1.0.0.3.001, MoreQuick MQAC-7620, MQAC-7620A, MQAP-7620, MQAP-7620A, and MQAP-7628 firmware 1.0.0.2.000, …

Aug 27, 2026
CVE-2026-78292
9.8 CRITICAL

Unauthenticated PHP Object Injection in Hash Form <= 1.4.1 versions.

Aug 27, 2026
CVE-2026-78288
9.3 CRITICAL

Unauthenticated SQL Injection in Beautiful Taxonomy Filters <= 2.4.6 versions.

Aug 27, 2026
CVE-2026-78286
9.8 CRITICAL

Unauthenticated PHP Object Injection in Geo Controller <= 8.9.8 versions.

Aug 27, 2026
CVE-2026-78274
9.1 CRITICAL

Editor Arbitrary File Upload in Fluent Boards Pro <= 2.0.11 versions.

Aug 27, 2026
CVE-2026-78260
9.3 CRITICAL

Unauthenticated SQL Injection in Epayco <= 8.4.6 versions.

Aug 27, 2026
CVE-2026-59354
9.6 CRITICAL

In versions of Spring Security's OAuth2 Authorization Server module 7.0.0 through 7.0.4, when Dynamic Client Registration is explicitly enabled, the registration endpoint performs insufficient validation …

Aug 27, 2026
CVE-2026-32566
9.8 CRITICAL

Unauthenticated Privilege Escalation in ACPT (Pro) - Custom Post Types Plugin for WordPress <= 2.0.63 versions.

Aug 27, 2026
CVE-2026-32479
9.3 CRITICAL

Unauthenticated SQL Injection in Visitor Traffic Real Time Statistics Pro <= 11.17 versions.

Aug 27, 2026
CVE-2026-77016
9.6 CRITICAL

The Workeera WordPress plugin before 1.0.6 does not restrict which values may be written to a user's own candidate profile, and does not validate or …

Aug 27, 2026
CVE-2026-59270
9.4 CRITICAL

Spring Security's embedded UnboundID LDAP server (UnboundIdContainer) unconditionally registers an administrative credential and binds its listener to all available network interfaces. Spring Security 7.1.0 Spring …

Aug 27, 2026
CVE-2026-47892
9.8 CRITICAL

A WebFlux application using functional endpoints and deployed with DispatcherServlet may be vulnerable to a header predicate bypass in a pre-flight request. Spring Framework 7.0.0 …

Aug 27, 2026
CVE-2026-47891
9.8 CRITICAL

A Spring WebFlux application that relies on the Aalto XML processor to parse XML input does not correctly enforce the maxInMemorySize limit. Spring Framework 7.0.0 …

Aug 27, 2026
CVE-2026-47890
9.8 CRITICAL

Spring MVC and WebFlux applications are vulnerable to stream corruption when using Server-Sent Events (SSE) with view fragments. Spring Framework 7.0.0 - 7.0.8 Spring Framework …

Aug 27, 2026
CVE-2026-47884
9.8 CRITICAL

Use of XsltView in a Spring MVC application can result in SSRF and RCE attack if the application has an "/**" mapping that results in …

Aug 27, 2026
CVE-2026-75340
9.1 CRITICAL

The device metadata import interface /device/instance/{productId}/property-metadata/import of jetlinks community 2.11 is vulnerable to Server-side request forgery (SSRF).

Aug 26, 2026
CVE-2026-75338
9.8 CRITICAL

disconf (Distributed Configuration Management Platform) 2.6.36 is vulnerable to Incorrect Access Control. The config-fetching APIs /api/config/item, /api/config/file, /api/config/list and /api/config/simple/list are exposed without authentication. The …

Aug 26, 2026
CVE-2026-75336
9.8 CRITICAL

Funiture 1.0.0 is vulnerable to SQL Injection in the backend tool interfaces /sys/tool/select.json and /sys/tool/update.json.

Aug 26, 2026
CVE-2026-75332
9.1 CRITICAL

Zyplayer-Doc <=1.0.0 is vulnerable to Server-Side Request Forgery (SSRF) via WikiPageWebService.download().

Aug 26, 2026
CVE-2026-75330
9.8 CRITICAL

The front-end interface /superdiamond/preview/{projectCode}/{module}/{type} of super-diamond-server <= 1.3.3 is vulnerable to SQL injection. The module parameter is directly concatenated into the SQL IN clause through …

Aug 26, 2026
CVE-2026-75329
9.8 CRITICAL

The Netty configuration distribution service (port 8283) of super-diamond-server <= 1.3.3 has no authentication mechanism. Attackers can directly obtain the full configuration of any project …

Aug 26, 2026
CVE-2026-75414
9.8 CRITICAL

In AntFlow V2.0.0, ActivitiTest.java enables users to execute JUEL expressions without filtering the user input, which leads to a command execution vulnerability.

Aug 26, 2026
CVE-2026-75411
9.8 CRITICAL

JeecgBoot v3.9.2 is vulnerable to Remote command execution. The CodeNode component of the AI Flow module supports Groovy script execution. While the `SecurityCheck` class employs …

Aug 26, 2026
CVE-2026-52103
9.8 CRITICAL

A zero-click remote code execution (RCE) vulnerability in the /Terminal/Notification.hs component of SimpleX Chat before v6.5 allows attackers to execute arbitrary commands in the context …

Aug 26, 2026
CVE-2025-51679
9.1 CRITICAL

An issue was discovered in openRISC OR1200 commit 83ac6b. A mismatch between the RTL and netlist can lead to unexpected behavior.

Aug 26, 2026
CVE-2026-75334
9.8 CRITICAL

The report module in the backend of smart-web2 v1.3.1 is vulnerable to arbitrary SQL execution. The sqlResource.sql parameter is stored in the t_report_sql_resource table through …

Aug 26, 2026
CVE-2026-75327
9.8 CRITICAL

In DocSys-master V2.02.85, the uploadMarkdownPic interface in src/com/DocSystem/controller/DocController.java has an arbitrary file upload vulnerability:

Aug 26, 2026
CVE-2026-68000
9.8 CRITICAL

The front-end interface /cms/category/list of MCMS <=6.2.0 is vulnerable to SQL injection. The size parameter is directly concatenated into the LIMIT clause of SQL through …

Aug 26, 2026
CVE-2026-60004
9.8 CRITICAL KEV

Gitea before 1.27.1 allows remote code execution via the diffpatch API through Git hook installation.

Aug 26, 2026
CVE-2026-26448
9.8 CRITICAL

Stomper 5e2741e is vulnerable to Use-After-Free. When a client sends multiple CONNECT frames on the same TCP connection, and subsequently another client (or a later …

Aug 26, 2026
CVE-2025-70293
9.8 CRITICAL

An issue was discovered in Denx U-Boot before 2026.04. An integer overflow vulnerability exists in function ext4fs_get_bgdtable, the size calculation can lead to under allocation …

Aug 26, 2026
CVE-2025-70290
9.8 CRITICAL

An issue was discovered in Denx U-Boot before 2026.04. An integer overflow vulnerability in the ZFS filesystem support can be triggered by malformed on-disk metadata. …

Aug 26, 2026
CVE-2026-75325
9.8 CRITICAL

DWSurvey v6.14.0 is is vulnerable to authentication bypass via the '/api/dwsurvey/none/' and '/api/dwsurvey/up/**' parameters.

Aug 26, 2026
CVE-2026-70419
9.1 CRITICAL

Dell Cloud Disaster Recovery, versions 20.2 and prior, contain an Improper Neutralization of Special Elements used in an OS Command ('OS Command Injection') vulnerability. A …

Aug 26, 2026
CVE-2026-51106
9.3 CRITICAL

An issue in TokTok qTox v1.18.4 allows a local attacker to cause a denial of service via the src/persistence/serialize.cpp component

Aug 26, 2026
CVE-2025-61165
9.8 CRITICAL

An arbitrary file upload vulnerability in the /v1/my_drive/batch_upload component of cohere North AI v1.1.5 allows attackers to exeute arbitrary code via uploading a crafted file.

Aug 26, 2026
CVE-2025-61163
9.8 CRITICAL

Cohere North AI v1.1.5 was discovered to contain excessively permissive cross-domain policy with untrusted domains. This occurs via the server failing to validate the Origin …

Aug 26, 2026
CVE-2023-42179
9.8 CRITICAL

Bird Home Automation GmbH D1101V-F 000140 is vulnerable to Incorrect Access Control via the Key derivation process, password validation process.

Aug 26, 2026
CVE-2026-81032
9.8 CRITICAL

NebulaGraph exposes its runtime configuration over an unauthenticated HTTP service. Each daemon starts the web service defined in src/webservice/WebService.cpp, whose bind address defaults to all …

Aug 26, 2026
CVE-2026-80428
9.8 CRITICAL

ILIAS deserialises stored session data for an unauthenticated caller. The Shibboleth back-channel endpoint at components/ILIAS/AuthShibboleth/resources/shib_logout.php runs in a context that ilInitialisation exempts from authentication, and …

Aug 26, 2026
CVE-2026-54569
9.8 CRITICAL

SENAITE.CORE is the core framework for the SENAITE laboratory information management system. From 2.0.0 to 2.6.0, the SENAITE.CORE JSON API permits unauthenticated remote code execution …

Aug 26, 2026

Scan your infrastructure for known CVEs

Free website and port scanning — find vulnerabilities before attackers do.