CVE Database

11693+ vulnerabilities with CVSS scores, EPSS exploit predictions, and CISA KEV status. Updated daily.

Filter: All CRITICAL HIGH MEDIUM LOW CISA KEV
Sort: Newest CVSS EPSS
CVE-2026-57131
9.8 CRITICAL

PraisonAI is a multi-agent teams system. Prior to 4.6.58, praisonai.jobs.server.create_app mounts praisonai.jobs.router.create_router under /api/v1/runs without authentication or per-job authorization. Network clients can submit attacker-controlled prompts …

Sep 14, 2026
CVE-2026-57127
9.8 CRITICAL

PraisonAI is a multi-agent teams system. Prior to 4.6.58, recipe serve installs APIKeyAuthMiddleware or JWTAuthMiddleware when an operator selects api-key or JWT authentication, but each …

Sep 14, 2026
CVE-2026-57124
9.8 CRITICAL

PraisonAI is a multi-agent teams system. Prior to 4.6.59, the default UI host applications expose POST /api/mcp/connect without mandatory authentication and accept caller-controlled command and …

Sep 14, 2026
CVE-2026-82435
9.8 CRITICAL

Description The worker's Netty message decoder is installed ahead of the SASL authentication handlers in the pipeline and acts on frames before any authentication has …

Sep 14, 2026
CVE-2026-82431
9.8 CRITICAL

Description `SimpleACLAuthorizer` evaluated the user-level command set by returning early when `nimbus.users` was empty, before `nimbus.groups` was considered. An operator who restricted cluster access by …

Sep 14, 2026
CVE-2026-57125
9.8 CRITICAL

PraisonAI is a multi-agent teams system. Prior to praisonai 4.6.59 and praisonaiagents 1.6.59, the unauthenticated POST /api/v1/runs Jobs API accepts attacker-controlled agent_yaml, and the approve …

Sep 14, 2026
CVE-2026-57123
9.8 CRITICAL

PraisonAI is a multi-agent teams system. Prior to praisonaiagents 1.6.59, ToolsMCPServer.run_sse and launch_tools_mcp_server bind to 0.0.0.0 and create /sse and /messages/ routes without invoking the …

Sep 14, 2026
CVE-2026-82441
9.1 CRITICAL

Description A submitted topology carries two lists of blobstore keys, `dependency_jars` and `dependency_artifacts`, which the client fills in after uploading the corresponding blobs. Nimbus performed …

Sep 14, 2026
CVE-2026-82439
9.8 CRITICAL

Description The DRPC server kept a map from function name to request queue and created an entry the first time a function name was seen. …

Sep 14, 2026
CVE-2026-73370
9.8 CRITICAL

Incorrect Authorization vulnerability in Apache Syncope. Delegated administration security checks performed by Reconciliation service's pull and push, being incomplete, could accept calls by administrator not …

Sep 14, 2026
CVE-2026-90937
9.9 CRITICAL

froxlor versions before 2.2.5 fail to validate newline characters in subdomain redirect URLs, allowing authenticated customers to inject arbitrary nginx or Apache configuration directives. Attackers …

Sep 14, 2026
CVE-2026-78330
9.8 CRITICAL

Incorrect privilege assignment vulnerability in Apache Syncope. When the configured JWKS settings for internal JWT authentication are disclosed (at least protocol and key), an attacker …

Sep 14, 2026
CVE-2026-78299
9.1 CRITICAL

In Eclipse Embedded CDT versions 6.0 to 6.7 if the CMSIS-Pack archive extracts a compromised CMSIS pack the archive extraction can extract files to locations …

Sep 14, 2026
CVE-2026-77181
9.8 CRITICAL

Incorrect Authorization vulnerability in Apache Syncope. An administrator with ClientApp's update entitlement is unable to perform the related operation, while ClientApp's create entitlement is checked …

Sep 14, 2026
CVE-2026-77051
9.8 CRITICAL

Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in Apache Syncope. An administrator with adequate entitlements can achieve execution of …

Sep 14, 2026
CVE-2026-75030
9.8 CRITICAL

Missing Authorization vulnerability in Apache Syncope. An administrator with task execution entitlements might be able to mass (de)provision group members, regardless of their group-related administration …

Sep 14, 2026
CVE-2026-73668
9.8 CRITICAL

Incorrect Authorization vulnerability in Apache Syncope. An administrator with adequate entitlements in a given Realm may be able to read via REST the full Connector …

Sep 14, 2026
CVE-2026-73579
9.8 CRITICAL

Incorrect Authorization vulnerability in Apache Syncope. Any search requests are transformed into SQL, Neo4J or Elasticsearch / Opensearch queries, depending on the actual deployment configuration. …

Sep 14, 2026
CVE-2026-73470
9.8 CRITICAL

Improper Privilege Management vulnerability in Apache Syncope. Delegations can be created or updated with Roles not owned by the delegating User, or not for the …

Sep 14, 2026
CVE-2026-90919
9.8 CRITICAL

LightLLM through 1.2.0 contains a remote code execution vulnerability in the Config Server's unauthenticated /visual_register WebSocket endpoint that passes the first client frame directly to …

Sep 14, 2026
CVE-2026-90898
9.8 CRITICAL

Bifrost registers MCP clients through its management API. A stdio client is a command plus args. Bifrost starts that program in the gateway the moment …

Sep 14, 2026
CVE-2026-87802
9.1 CRITICAL

Improper verification of cryptographic signature vulnerability in Apache Syncope. When SRA is configured for OAuth 2.0 without JWKS set URI assigned, an attacker can forge …

Sep 14, 2026
CVE-2026-87785
9.1 CRITICAL

Authentication bypass by spoofing vulnerability in Apache Syncope. When the configured JWKS settings for internal JWT authentication are disclosed (at least protocol and key), an …

Sep 14, 2026
CVE-2026-86460
9.8 CRITICAL

Cypher injection vulnerability in the Neo4j persistence layer when processing some FIQL search conditions. This issue affects Apache Syncope: from 3.0.0-M0 through 3.0.16, from 4.0.0-M0 …

Sep 14, 2026
CVE-2026-82232
9.8 CRITICAL

Improper neutralization of special elements used in an SQL command ('SQL injection') vulnerability in Apache Syncope. An administrator with adequate entitlements can achieve execution of …

Sep 14, 2026
CVE-2026-90703
9.1 CRITICAL

A vulnerability has been found in D-Link DWR-M921 1.1.52. The affected element is the function system of the file /boafrm/formDiskCreateShare. Such manipulation of the argument …

Sep 14, 2026
CVE-2026-90702
9.1 CRITICAL

A flaw has been found in D-Link DWR-M921 1.1.52. Impacted is the function system of the file /boafrm/formDiskFormat. This manipulation of the argument partition causes …

Sep 14, 2026
CVE-2026-90699
9.9 CRITICAL

A weakness has been identified in D-Link DWR-M920 1.1.7. This issue affects the function sub_41E60C of the file /boafrm/formPinManageSetup. This manipulation of the argument newPin …

Sep 14, 2026
CVE-2026-90693
9.9 CRITICAL

A flaw has been found in D-Link DIR-878 120B05. This impacts the function SetWan3Settings of the component WAN Settings. This manipulation of the argument Primary/Secondary …

Sep 14, 2026
CVE-2026-90692
9.9 CRITICAL

A vulnerability was detected in D-Link DIR-878 120B05. This affects the function SetDynamicDNSIPv6Settings of the component Dynamic DNS IPv6 Settings. The manipulation of the argument …

Sep 14, 2026
CVE-2026-82787
9.8 CRITICAL

Missing authentication for critical function vulnerability exists in CPSL-08P1EN. If this vulnerability is exploited, an affected product may be operated by a remote attacker without …

Sep 14, 2026
CVE-2026-90680
9.9 CRITICAL

A security flaw has been discovered in D-Link DIR-823G 1.0.2B05_20181207. The impacted element is the function strcpy of the file /HNAP1/SetStaticRouteSettings of the component HNAP1. …

Sep 14, 2026
CVE-2026-90608
9.9 CRITICAL

A flaw has been found in Totolink A3002MU Hh-B20211125.1046. The affected element is the function formPortFw of the file /boafrm/formPortFw of the component boa. This …

Sep 14, 2026
CVE-2026-90607
9.9 CRITICAL

A vulnerability was detected in Totolink A3002MU Hh-B20211125.1046. Impacted is the function formNewSchedule of the file /boafrm/formNewSchedule of the component boa. The manipulation of the …

Sep 14, 2026
CVE-2026-90606
9.9 CRITICAL

A security vulnerability has been detected in Totolink A3002MU Hh-B20211125.1046. This issue affects the function formIpv6Setup of the file /boafrm/formIpv6Setup of the component boa. The …

Sep 14, 2026
CVE-2026-90605
9.9 CRITICAL

A weakness has been identified in Totolink A3002MU Hh-B20211125.1046. This vulnerability affects the function formFilter of the file /boafrm/formFilter of the component boa. Executing a …

Sep 14, 2026
CVE-2026-81648
10.0 CRITICAL

The CryptoPayment Gateway WordPress plugin from 1.2.1 to 1.2.2 does not apply an authorization check on one of its AJAX endpoints, allowing unauthenticated users to …

Sep 13, 2026
CVE-2026-90558
9.8 CRITICAL

sngrep through 1.8.4 contains stack buffer overflow vulnerabilities in SIP attribute formatting routines when header values exceed the 255-byte buffer limit. Attackers can craft malicious …

Sep 12, 2026
CVE-2026-78159
9.8 CRITICAL

The The Events Calendar plugin for WordPress is vulnerable to Remote Code Execution in all versions up to, and including, 6.17.3 via the parse_array function. …

Sep 12, 2026
CVE-2026-78006
9.8 CRITICAL

The The Events Calendar plugin for WordPress is vulnerable to Remote Code Execution in all versions up to, and including, 6.17.4 via the is_safe_widget_instance function. …

Sep 12, 2026
CVE-2026-85681
9.8 CRITICAL

The WP Component WordPress plugin through 2.2.4 does not have any capability or nonce checks on one of the actions it makes available to unauthenticated …

Sep 12, 2026
CVE-2026-84171
9.8 CRITICAL

The WP images upload on piclect WordPress plugin through 1.0 does not validate the name or type of uploaded files before writing them to a …

Sep 12, 2026
CVE-2026-82845
9.9 CRITICAL

The Masteriyo LMS WordPress plugin before 3.4.1 does not prevent user-supplied values held as metadata from being deserialized when they are read back, allowing users …

Sep 12, 2026
CVE-2026-81402
9.8 CRITICAL

The DS Ad Rotator WordPress plugin through 0.8 does not perform any capability check, nonce verification, or file-type validation on its image upload handler, allowing …

Sep 12, 2026
CVE-2026-77006
9.6 CRITICAL

The WebTotem Backups WordPress plugin through 1.0.1 does not validate a user-supplied file path, does not check the capability of the user making the request, …

Sep 12, 2026
CVE-2026-77005
9.6 CRITICAL

The CODE MONKEYS PROPOSALS WordPress plugin through 1.0.1 does not validate a user-supplied file path before deleting a file, and does not check the capability …

Sep 12, 2026
CVE-2026-75800
9.8 CRITICAL

The Frontegg SAML SSO WordPress plugin through 1.0.1 does not verify the signature or issuer of SAML authentication responses before establishing a session, allowing unauthenticated …

Sep 12, 2026
CVE-2026-87719
9.9 CRITICAL

GitLab has remediated an issue in GitLab EE affecting all versions from 18.3 before 19.1.8, 19.2 before 19.2.6, and 19.3 before 19.3.2 that under certain …

Sep 12, 2026
CVE-2026-85706
10.0 CRITICAL KEV

GitLab has remediated an issue in GitLab CE/EE affecting all versions from 18.7 before 19.1.8, 19.2 before 19.2.6, and 19.3 before 19.3.2 that, under certain …

Sep 12, 2026
CVE-2026-89713
9.1 CRITICAL

In the Linux kernel, the following vulnerability has been resolved: NFSD: check truncate permission under inode lock nfsd_setattr() checks whether a size update needs NFSD_MAY_TRUNC …

Sep 11, 2026

Scan your infrastructure for known CVEs

Free website and port scanning — find vulnerabilities before attackers do.