CVE Database

132614+ vulnerabilities with CVSS scores, EPSS exploit predictions, and CISA KEV status. Updated daily.

Filter: All CRITICAL HIGH MEDIUM LOW CISA KEV
Sort: Newest CVSS EPSS
CVE-2026-13734
6.5 MEDIUM

Zephyr's WireGuard VPN data-plane receive handler wg_process_data_message() in subsys/net/lib/wireguard/wg_crypto.c validated the anti-replay counter too late. After AEAD decryption of a MESSAGE_TRANSPORT_DATA packet succeeded, the code …

Aug 28, 2026
CVE-2025-64649
5.9 MEDIUM

IBM Concert 1.0.0 through 2.3.1 could allow a remote attacker to perform unauthorized actions using man in the middle techniques due to improper certificate validation.

Aug 28, 2026
CVE-2025-36290
5.9 MEDIUM

IBM Integrated Analytics System 1.0.0.0 through 1.0.31.0 does not validate or improperly validates TLS certificate validation, which could allow an attacker to obtain sensitive information …

Aug 28, 2026
CVE-2025-36271
5.9 MEDIUM

IBM Integrated Analytics System 1.0.0.0 through 1.0.31.0 uses weaker than expected cryptographic algorithms that could allow an attacker to decrypt highly sensitive information.

Aug 28, 2026
CVE-2026-82343
6.1 MEDIUM

A flaw was found in the file-psd plugin in GIMP. When processing a specially crafted PSD image file, the plugin does not properly validate the …

Aug 28, 2026
CVE-2026-82329
9.8 CRITICAL KEV

JFrog Artifactory contains an authentication weakness that, under default configuration, may allow an unauthenticated attacker with network access to obtain administrative privileges.

Aug 28, 2026
CVE-2026-82306
6.5 MEDIUM

StarRocks through 4.0.13 contains an information disclosure vulnerability in the query_detail endpoint that returns unfiltered query history for all users. Authenticated attackers with low privileges …

Aug 28, 2026
CVE-2026-82291
8.1 HIGH

HeyForm before 3.0.0-rc.8 reflects the request Origin header in CORS responses while allowing credentials, enabling cross-origin requests with authentication. Attackers can execute authenticated GraphQL queries …

Aug 28, 2026
CVE-2026-82290
5.3 MEDIUM

Chainlit through 2.12.0 fails to validate ownership of feedback records in PUT and DELETE endpoints. Authenticated attackers can delete or modify other users' feedback by …

Aug 28, 2026
CVE-2026-82289
7.4 HIGH

Gitingest through 0.3.1 fails to properly validate hostnames in _validate_host, accepting any host with a git., gitlab., or github. prefix regardless of known-hosts list membership. …

Aug 28, 2026
CVE-2026-82288
7.5 HIGH

Stable Diffusion WebUI through 1.10.1 contains a credential disclosure vulnerability in the /sdapi/v1/cmd-flags endpoint that returns parsed command-line arguments including gradio_auth and api_auth values in …

Aug 28, 2026
CVE-2026-82287
8.1 HIGH

Rybbit before 2.7.0 contains a CORS misconfiguration vulnerability that allows attackers to bypass origin restrictions by reflecting any request origin in Access-Control-Allow-Origin responses while credentials …

Aug 28, 2026
CVE-2026-82286
8.6 HIGH

gpt-crawler through 1.5.1 fails to validate the outputFileName parameter in the POST /crawl endpoint, allowing unauthenticated attackers to write arbitrary files to any filesystem path. …

Aug 28, 2026
CVE-2026-82285
8.2 HIGH

bisheng through 2.6.0-fix2 contains a server-side request forgery vulnerability in the POST /api/v1/workflow/report/callback endpoint that lacks authentication and applies no URL scheme restrictions or host …

Aug 28, 2026
CVE-2026-82284
8.1 HIGH

Quivr versions through 0.0.322 fail to validate chat ownership in the GET /chat/{chat_id}/history, DELETE /chat/{chat_id}, and POST /chat/{chat_id}/question/answer endpoints. Authenticated attackers can read other users' …

Aug 28, 2026
CVE-2026-82283
8.1 HIGH

VoltAgent through 2.1.20 fails to validate conversation ownership in memory API handlers, allowing authenticated users to access other users' conversations. Attackers can read, modify, and …

Aug 28, 2026
CVE-2026-82282
8.0 HIGH

Atlantis through 0.47.1 fails to authenticate the /github-app/setup endpoint, allowing unauthenticated attackers to access GitHub App credentials. Attackers can observe or intercept the GitHub redirect …

Aug 28, 2026
CVE-2026-82281
7.4 HIGH

Kotaemon through 0.12.0 fails to properly validate conversation ownership in select_conv, delete_conv, rename_conv, and on_set_public_conversation functions in control.py. Attackers can read other users' chat histories, …

Aug 28, 2026
CVE-2026-82280
7.1 HIGH

Quivr through 0.0.322 fails to validate ownership in prompt endpoints, allowing authenticated users to modify any prompt by identifier. Attackers with read-only access to shared …

Aug 28, 2026
CVE-2026-82279
8.1 HIGH

HyperDX through 1.10.1 fails to enforce role-based access controls in team management endpoints, allowing any team member to perform administrative actions. Attackers can delete team …

Aug 28, 2026
CVE-2026-82278
8.8 HIGH

BISHENG before 2.6.0 contains a remote code execution vulnerability in the workflow run_once endpoint that allows authenticated users to execute arbitrary Python code. Attackers can …

Aug 28, 2026
CVE-2026-82277
9.8 CRITICAL

Argo Rollouts dashboard through 1.10.0 binds to all interfaces and exposes mutating Rollout operations without authentication, authorization, or CSRF protection. Attackers on the same network …

Aug 28, 2026
CVE-2026-82276
5.3 MEDIUM

StarRocks through 4.0.13 contains an authentication bypass vulnerability in five REST handler classes that override execute() directly instead of implementing executeWithoutPassword(). Attackers can access six …

Aug 28, 2026
CVE-2026-82275
7.5 HIGH

Qwen-Agent through 0.0.34 contains a path traversal vulnerability in the document parser that fails to restrict file access to intended directories. Attackers can supply absolute …

Aug 28, 2026
CVE-2026-82274
4.7 MEDIUM

Twenty through 2.35.0 contains an open redirect vulnerability in the OAuthPropagatorController.propagateOAuthCallback endpoint that treats the state query parameter as a redirect URL. Attackers can craft …

Aug 28, 2026
CVE-2026-82273
6.5 MEDIUM

Mastra through 1.63.0 contains an authentication bypass vulnerability in the memory API thread ownership validation when mapUserToResourceId callback is omitted from configuration. Authenticated attackers can …

Aug 28, 2026
CVE-2026-82272
6.5 MEDIUM

Immich through 3.1.0 fails to properly enforce locked asset visibility when assets are locked through the single-asset endpoint, allowing them to remain accessible through shared …

Aug 28, 2026
CVE-2026-82271
6.5 MEDIUM

R2R through 3.6.5 fails to properly validate user ownership in conversation update and message handlers, allowing authenticated users to modify other users' conversations. Attackers can …

Aug 28, 2026
CVE-2026-82270
7.5 HIGH

Portkey AI Gateway through 1.15.2 contains a server-side request forgery vulnerability in the /v1/proxy/* route that lacks requestValidator middleware. Attackers can set the x-portkey-custom-host header …

Aug 28, 2026
CVE-2026-82269
8.1 HIGH

Gophish through 0.12.1 fails to enforce account lockout and password change requirements in the API authentication middleware. Attackers with valid API keys can bypass these …

Aug 28, 2026
CVE-2026-82268
7.5 HIGH

Qwen-Agent through 0.0.34 contains a server-side request forgery vulnerability in the document parsing path that treats caller-supplied paths as URLs without scheme restriction or host …

Aug 28, 2026
CVE-2026-82267
5.4 MEDIUM

Komodo through 2.3.2 discloses internal resource identifiers and writes audit entries before performing permission checks in the /execute and /execute/{variant} handlers. Authenticated users can guess …

Aug 28, 2026
CVE-2026-82266
9.8 CRITICAL

Redpanda through 26.2.2 binds the Admin API to 0.0.0.0:9644 with admin_api_require_auth defaulting to false, treating unauthenticated requests as superusers. Attackers can reach port 9644 without …

Aug 28, 2026
CVE-2026-82265
6.5 MEDIUM

Zipkin through 3.6.1 exposes Spring Boot Actuator endpoints on the tracing API port without authentication, allowing unauthenticated attackers to access sensitive information. Attackers can read …

Aug 28, 2026
CVE-2026-82264
6.8 MEDIUM

Duplicacy through 3.2.5 contains a path traversal vulnerability in the restore function that fails to validate entry paths deserialized from snapshot files. Attackers can craft …

Aug 28, 2026
CVE-2026-82263
6.8 MEDIUM

Logto through 1.42.0 contains a server-side request forgery vulnerability in the OIDC SSO connector creation endpoint that fails to validate the issuer URL parameter. Tenant …

Aug 28, 2026
CVE-2026-82262
6.8 MEDIUM

Logto through 1.42.0 contains a server-side request forgery vulnerability in the POST /api/hooks/:id/test endpoint that accepts arbitrary URLs without host validation. Tenant administrators with Management …

Aug 28, 2026
CVE-2026-82021
8.3 HIGH

Hermes Agent 0.18.2 prior to 0.19.0 contains a supply chain vulnerability in its bundled MCP catalog that allows a remote attacker to execute arbitrary code …

Aug 28, 2026
CVE-2026-82020
6.8 MEDIUM

Hermes Agent 0.16.0 prior to 0.17.0 contains an improper path restriction vulnerability that allows attackers who can influence ingested message content to overwrite the credential …

Aug 28, 2026
CVE-2026-81849
8.8 HIGH

Improper limitation of a pathname to a restricted directory in the aws:downloadContent plugin in amazon-ssm-agent before 3.3.4515.0 might allow an authenticated remote user whose ssm:SendCommand …

Aug 28, 2026
CVE-2026-77939
6.5 MEDIUM

Flextype CMS through v1.0.0-dev contains an expression language injection vulnerability that allows authenticated attackers with a valid API token to read arbitrary files by passing …

Aug 28, 2026
CVE-2026-77586
8.0 HIGH

In MongoDB Connector for BI, MongoDB object names such as collection, field, and index names are placed into the quoted identifiers of the DDL text …

Aug 28, 2026
CVE-2026-77218
4.9 MEDIUM

PLANET GS-4210-16P2S V3 firmware before 3.441b260626 contains authenticated stack buffer overflow vulnerabilities in /cgi-bin/dispatcher.cgi. The web_login_first_post handler copies the usrPass POST parameter into a fixed-size …

Aug 28, 2026
CVE-2026-77217
4.9 MEDIUM

PLANET GS-4210-16P2S V3 firmware before 3.441b260626 contains authenticated stack buffer overflow and null pointer dereference vulnerabilities in /cgi-bin/dispatcher.cgi. The web_radiusSrv*_post family of handlers copies the …

Aug 28, 2026
CVE-2026-77184
5.2 MEDIUM

In MongoDB Connector for BI, the description text of a collection's JSON schema validator is incorporated into the comment text of the DDL returned by …

Aug 28, 2026
CVE-2026-76798
6.3 MEDIUM

The MongoSQL Transition Readiness Tool writes query text and user names read from BI Connector log files into its generated HTML report without encoding them …

Aug 28, 2026
CVE-2026-76797
6.3 MEDIUM

The MongoSQL Transition Readiness Tool writes database and collection names into its generated CSV reports without neutralizing leading characters that spreadsheet applications treat as formulas. …

Aug 28, 2026
CVE-2026-76794
4.6 MEDIUM

MongoSQL Transition Readiness Tool does not sufficiently encode database metadata before including it in generated HTML. A MongoDB user with write access can introduce crafted …

Aug 28, 2026
CVE-2026-75486
8.0 HIGH

Synk Sweater Comb before 3.8.8 contains a command injection vulnerability that allows an attacker who controls the .vervet.yaml configuration file to execute arbitrary OS commands …

Aug 28, 2026
CVE-2026-75126
4.9 MEDIUM

PLANET GS-4210-16P2S V3 firmware before 3.441b260626 contains multiple authenticated stack buffer overflow vulnerabilities in /cgi-bin/dispatcher.cgi. The following handlers copy attacker-controlled POST parameters into fixed-size stack …

Aug 28, 2026

Scan your infrastructure for known CVEs

Free website and port scanning — find vulnerabilities before attackers do.