CVE Database

130945+ vulnerabilities with CVSS scores, EPSS exploit predictions, and CISA KEV status. Updated daily.

Filter: All CRITICAL HIGH MEDIUM LOW CISA KEV
Sort: Newest CVSS EPSS
CVE-2026-76450
4.9 MEDIUM

A vulnerability in Cisco Identity Services Engine (ISE) and Cisco ISE Passive Identity Connector (ISE-PIC) could allow an authenticated, remote attacker to conduct an SQL …

Sep 16, 2026
CVE-2026-76449
4.9 MEDIUM

A vulnerability in Cisco Identity Services Engine (ISE) and Cisco ISE Passive Identity Connector (ISE-PIC) could allow an authenticated, remote attacker to conduct an SQL …

Sep 16, 2026
CVE-2026-76448
4.9 MEDIUM

A vulnerability in Cisco Identity Services Engine (ISE) and Cisco ISE Passive Identity Connector (ISE-PIC) could allow an authenticated, remote attacker to conduct an SQL …

Sep 16, 2026
CVE-2026-76447
5.3 MEDIUM

A vulnerability in the Online Certificate Status Protocol (OCSP) responder of Cisco ISE and Cisco ISE-PIC could allow an unauthenticated, remote attacker to cause an …

Sep 16, 2026
CVE-2026-76446
4.9 MEDIUM

A vulnerability in an API of Cisco ISE and Cisco ISE-PIC could allow an authenticated, remote attacker to read specific files on the underlying operating system …

Sep 16, 2026
CVE-2026-76444
5.3 MEDIUM

A vulnerability in an internal service of Cisco ISE and Cisco ISE-PIC could allow an unauthenticated, remote attacker to retrieve sensitive configuration information from an …

Sep 16, 2026
CVE-2026-76439
5.3 MEDIUM

A vulnerability in the endpoint posture status reporting functionality of the guest portal web application of Cisco ISE could allow an unauthenticated, remote attacker to …

Sep 16, 2026
CVE-2026-76438
6.5 MEDIUM

A vulnerability in the web-based management interface of Cisco BroadWorks CommPilot Application Software could allow an authenticated, remote attacker with low privileges to alter configurations …

Sep 16, 2026
CVE-2026-76434
4.9 MEDIUM

A vulnerability in the certificate import functionality of the web-based management interface of Cisco ISE and Cisco ISE-PIC could allow an authenticated, remote attacker to …

Sep 16, 2026
CVE-2026-76433
5.3 MEDIUM

A vulnerability in the client provisioning download feature of Cisco ISE and Cisco ISE-PIC could allow an unauthenticated, remote attacker to access protected files on …

Sep 16, 2026
CVE-2026-76432
4.9 MEDIUM

A vulnerability in the web-based management interface of Cisco ISE and Cisco ISE-PIC could allow an authenticated, remote attacker with administrative-level privileges to write arbitrary …

Sep 16, 2026
CVE-2026-76431
4.9 MEDIUM

A vulnerability in the file management function of the web-based management interface of Cisco ISE and Cisco ISE-PIC could allow an authenticated, remote attacker to …

Sep 16, 2026
CVE-2026-76428
4.9 MEDIUM

A vulnerability in the REST APIs of Cisco ISE and Cisco ISE-PIC could allow an authenticated, remote attacker to conduct SQL injection attacks against the …

Sep 16, 2026
CVE-2026-76427
4.9 MEDIUM

A vulnerability in the offline profiler feed service of Cisco ISE could allow an authenticated, remote attacker to read arbitrary files that are stored on …

Sep 16, 2026
CVE-2026-76426
4.9 MEDIUM

A vulnerability in the REST API of Cisco ISE and Cisco ISE-PIC could allow an authenticated, remote attacker to conduct SQL injection attacks against the …

Sep 16, 2026
CVE-2026-76425
7.6 HIGH

A vulnerability in the APIs of Cisco ISE could allow an authenticated, remote attacker to conduct SQL injection attacks against the backend database. This vulnerability …

Sep 16, 2026
CVE-2026-76424
7.2 HIGH

A vulnerability in the REST API of Cisco ISE could allow an authenticated, remote attacker to upload or copy arbitrary files on an affected device. …

Sep 16, 2026
CVE-2026-76413
8.2 HIGH

A vulnerability in Cisco Adaptive Security Device Manager (ASDM) single sign-on (SSO) handler for Cisco Secure FMC Software could allow an unauthenticated, remote attacker to …

Sep 16, 2026
CVE-2026-76412
8.5 HIGH

A vulnerability in the remote diagnostics debugger of Cisco Secure FMC Software could allow an authenticated, remote attacker to enable the remote diagnostics debugger service. …

Sep 16, 2026
CVE-2026-76409
8.8 HIGH

As part of Cisco's ongoing commitment to proactive security and product quality, the Cisco Nexus Dashboard engineering team has conducted a comprehensive internal security review. …

Sep 16, 2026
CVE-2026-75513
9.1 CRITICAL

Marten is a .NET Transactional Document DB and Event Store on PostgreSQL. From version 7.0.0 until 9.13.0, several Marten LINQ and tenant-management paths interpolate runtime, …

Sep 16, 2026
CVE-2026-63506
8.8 HIGH

Tina is a headless content management system. Prior to @tinacms/auth 1.1.4 and next-tinacms-azure 15.0.1, isAuthorized accepts a request-controlled clientID and asks isUserAuthorized to validate the …

Sep 16, 2026
CVE-2026-62997

Kedro-Datasets provides data connectors for Kedro. From version 5.0.0 until 9.5.0, kedro_datasets_experimental.pytorch.PyTorchDataset in kedro-datasets loads .pt model files with torch.load without enforcing weights_only=True, and user-supplied …

Sep 16, 2026
CVE-2026-20360
8.8 HIGH

As part of Cisco's ongoing commitment to proactive security and product quality, the Cisco Nexus Dashboard engineering team has conducted a comprehensive internal security review. …

Sep 16, 2026
CVE-2026-20352
8.6 HIGH

A vulnerability in the RADIUS feature of Cisco Identity Services Engine (ISE) could allow an unauthenticated, remote attacker to cause a denial of service (DoS) …

Sep 16, 2026
CVE-2026-20350
4.7 MEDIUM

A vulnerability in the web-based management interface of Cisco ThousandEyes Virtual Appliance could allow an authenticated, remote attacker to inject arbitrary operating system commands. This …

Sep 16, 2026
CVE-2026-20344
8.8 HIGH

A vulnerability in the web-based management interface of Cisco Secure FMC Software could allow an authenticated, remote attacker to perform a SQL injection attack against …

Sep 16, 2026
CVE-2026-20343
7.5 HIGH

A vulnerability in a critical API for Cisco Secure FMC Software could allow an unauthenticated, remote attacker to download sensitive files and use unbounded disk …

Sep 16, 2026
CVE-2026-20342
7.7 HIGH

A vulnerability in a specific file download API of Cisco Secure FMC Software could allow an authenticated, remote attacker to download arbitrary files from an …

Sep 16, 2026
CVE-2026-20340
8.8 HIGH

A vulnerability in Cisco Secure FMC Software could allow an authenticated, remote attacker to execute arbitrary commands at the root privilege level. This vulnerability is due …

Sep 16, 2026
CVE-2026-20336
8.8 HIGH

As part of Cisco's ongoing commitment to proactive security and product quality, the Cisco Secure Adaptive Security Appliance Software, Cisco Secure Firewall Threat Defense Software …

Sep 16, 2026
CVE-2026-20335
8.1 HIGH

As part of Cisco's ongoing commitment to proactive security and product quality, the Cisco Secure Adaptive Security Appliance Software, Cisco Secure Firewall Threat Defense Software …

Sep 16, 2026
CVE-2026-20334
8.4 HIGH

As part of Cisco's ongoing commitment to proactive security and product quality, the Cisco Secure Adaptive Security Appliance Software, Cisco Secure Firewall Threat Defense Software …

Sep 16, 2026
CVE-2026-20333
8.8 HIGH

As part of Cisco's ongoing commitment to proactive security and product quality, the Cisco Secure Adaptive Security Appliance Software, Cisco Secure Firewall Threat Defense Software …

Sep 16, 2026
CVE-2026-20332
9.9 CRITICAL

As part of Cisco's ongoing commitment to proactive security and product quality, the Cisco Secure Adaptive Security Appliance Software, Cisco Secure Firewall Threat Defense Software …

Sep 16, 2026
CVE-2026-20323
8.3 HIGH

A vulnerability in the sftunnel inter-device communication protocol of Cisco Secure FMC Software and Cisco Secure FTD Software could allow an unauthenticated, adjacent attacker to …

Sep 16, 2026
CVE-2026-20309
6.1 MEDIUM

A vulnerability in the web-based management interface of Cisco Identity Services Engine (ISE) could allow an unauthenticated, remote attacker to conduct a reflected cross-site scripting …

Sep 16, 2026
CVE-2026-20300
7.1 HIGH

A vulnerability in Cisco ISE could allow an authenticated, remote attacker to conduct SQL injection attacks on an affected device. To exploit this vulnerability, the …

Sep 16, 2026
CVE-2026-20295
8.6 HIGH

A vulnerability in the sftunnel inter-device communication protocol of Cisco Secure FMC Software and Cisco Secure FTD Software could allow an unauthenticated, remote attacker to …

Sep 16, 2026
CVE-2026-20290
5.8 MEDIUM

A vulnerability in SSL/TLS certificate parsing in the Snort 2 Detection Engine of Cisco Secure Firewall Threat Defense (FTD) Software could allow an unauthenticated, remote …

Sep 16, 2026
CVE-2026-20287
6.5 MEDIUM

As part of Cisco's ongoing commitment to proactive security and product quality, the Cisco Identity Services Engine (ISE) and Cisco ISE Passive Identity Connector (ISE-PIC) …

Sep 16, 2026
CVE-2026-20286
4.3 MEDIUM

A vulnerability in the web-based management interface of Cisco Identify Services Engine (ISE) could allow an authenticated, remote attacker to modify parts of the configuration …

Sep 16, 2026
CVE-2026-20285
4.3 MEDIUM

A vulnerability in the web-based management interface of Cisco Identity Services Engine (ISE) and Cisco ISE Passive Identity Connector (ISE-PIC) could allow an authenticated, remote …

Sep 16, 2026
CVE-2026-20284
9.1 CRITICAL

A vulnerability in the SXP REST API of Cisco ISE could allow an authenticated, remote attacker to conduct SQL injection attacks. This vulnerability is due …

Sep 16, 2026
CVE-2026-20283
6.5 MEDIUM

A vulnerability in the IPsec Open API endpoint of Cisco ISE could allow an authenticated, remote attacker to inject arbitrary commands on the underlying operating …

Sep 16, 2026
CVE-2026-20282
4.9 MEDIUM

A vulnerability in Cisco ISE could allow an authenticated, remote attacker to obtain write access on the underlying operating system of an affected device. This …

Sep 16, 2026
CVE-2026-20250
8.6 HIGH

A vulnerability in Datagram TLS (DTLS) message handling of Cisco Secure Firewall Adaptive Security Appliance (ASA) Software and Cisco Secure Firewall Threat Defense (FTD) Software …

Sep 16, 2026
CVE-2026-20249
8.6 HIGH

A vulnerability in the certification authentication feature of Internet Key Exchange version 2 (IKEv2) for Cisco Secure Firewall Adaptive Security Appliance (ASA) Software and Cisco Secure …

Sep 16, 2026
CVE-2026-20248
6.8 MEDIUM

A vulnerability in the DNS over TCP implementation of Cisco Secure Firewall Adaptive Security Appliance (ASA) Software and Cisco Secure Firewall Threat Defense (FTD) Software …

Sep 16, 2026
CVE-2026-20247
7.5 HIGH

A vulnerability in Cisco ISE could allow an unauthenticated, remote attacker to conduct SQL injection attacks on an affected device. This vulnerability is due to …

Sep 16, 2026

Scan your infrastructure for known CVEs

Free website and port scanning — find vulnerabilities before attackers do.