CVE Database

45217+ vulnerabilities with CVSS scores, EPSS exploit predictions, and CISA KEV status. Updated daily.

Filter: All CRITICAL HIGH MEDIUM LOW CISA KEV
Sort: Newest CVSS EPSS
CVE-2026-80606
7.8 HIGH

In the Linux kernel, the following vulnerability has been resolved: drm/xe/userptr: Hold notifier_lock for write on inject test path When CONFIG_DRM_XE_USERPTR_INVAL_INJECT=y, xe_pt_svm_userptr_pre_commit() runs vma_check_userptr() with …

Aug 28, 2026
CVE-2026-80604
8.8 HIGH

In the Linux kernel, the following vulnerability has been resolved: HID: core: Fix OOB read in hid_get_report for numbered reports When a caller passes a …

Aug 28, 2026
CVE-2026-80601
8.8 HIGH

In the Linux kernel, the following vulnerability has been resolved: batman-adv: gw: acquire ethernet header only after skb realloc The pskb_may_pull() called by batadv_get_vid() could …

Aug 28, 2026
CVE-2026-80599
8.1 HIGH

In the Linux kernel, the following vulnerability has been resolved: batman-adv: dat: ensure accessible eth_hdr proto field When batadv_get_vid() accesses the proto field of the …

Aug 28, 2026
CVE-2026-80598
7.8 HIGH

In the Linux kernel, the following vulnerability has been resolved: ntfs3: fix out-of-bounds read in decompress_lznt decompress_lznt() does not validate array index bounds before accessing …

Aug 28, 2026
CVE-2026-80596
8.4 HIGH

In the Linux kernel, the following vulnerability has been resolved: Input: ims-pcu - only expose sysfs attributes on control interface When the driver was converted …

Aug 28, 2026
CVE-2026-80593
8.4 HIGH

In the Linux kernel, the following vulnerability has been resolved: hwmon: (asus_atk0110) Check package count before accessing element atk_ec_present() walks the management group package returned …

Aug 28, 2026
CVE-2026-80591
7.8 HIGH

In the Linux kernel, the following vulnerability has been resolved: f2fs: fix listxattr handling of corrupted xattr entries Validate the xattr entry before reading its …

Aug 28, 2026
CVE-2026-80590
8.6 HIGH

In the Linux kernel, the following vulnerability has been resolved: inet: frags: strip GSO state from fragments before reassembly A virtio_net_hdr (tun/tap, or AF_PACKET with …

Aug 28, 2026
CVE-2026-79996
7.2 HIGH

The User Registration & Membership WordPress plugin before 5.2.6 does not perform a capability check when saving its login settings, allowing authenticated users who have …

Aug 28, 2026
CVE-2026-6286
7.2 HIGH

The Booking for Appointments and Events Calendar – Amelia plugin for WordPress is vulnerable to Stored Cross-Site Scripting via customer name fields in versions up …

Aug 28, 2026
CVE-2026-5097
7.5 HIGH

The wpForo Forum plugin for WordPress is vulnerable to SQL Injection via the 'referer' parameter in all versions up to, and including, 2.4.17. This is …

Aug 28, 2026
CVE-2026-19423
8.1 HIGH

The Ultimate Member WordPress plugin before 2.13.0 does not validate a submitted role selection when it cannot resolve the set of roles a profile form …

Aug 28, 2026
CVE-2026-19084
7.5 HIGH

The shared-files-pro WordPress plugin before 1.7.70 does not validate the file path supplied when creating a featured image, allowing unauthenticated attackers to read arbitrary files …

Aug 28, 2026
CVE-2026-14558
7.2 HIGH

The User Frontend WordPress plugin before 4.3.10 does not properly validate field type definitions and deserialises user-controlled post metadata when rendering submitted posts, allowing users …

Aug 28, 2026
CVE-2026-77365
7.2 HIGH

The Optimole – Optimize Images | Convert WebP & AVIF | CDN & Lazy Load | Image Optimization plugin for WordPress is vulnerable to Stored …

Aug 28, 2026
CVE-2026-76053
7.2 HIGH

The TranslatePress – Translate Multilingual sites with AI Translation plugin for WordPress is vulnerable to Stored Cross-Site Scripting via Comment Noise-Key Injection into HTML Parser …

Aug 28, 2026
CVE-2026-18983
7.5 HIGH

The One User Avatar | User Profile Picture plugin for WordPress is vulnerable to Stored Cross-Site Scripting in all versions up to, and including, 2.5.4 …

Aug 28, 2026
CVE-2026-18978
7.2 HIGH

The LiteSpeed Cache plugin for WordPress is vulnerable to Stored Cross-Site Scripting via Comment Content in all versions up to, and including, 7.8.1 due to …

Aug 28, 2026
CVE-2026-18324
7.2 HIGH

The Forminator Forms – Contact Form, Payment Form & Custom Form Builder plugin for WordPress is vulnerable to Stored Cross-Site Scripting via Rich-Text Textarea Field …

Aug 28, 2026
CVE-2026-38822
7.6 HIGH

In openNDS before 11.0.0, the client_params.sh script, invoked by the openNDS daemon to serve the authenticated client status page, is vulnerable to OS command injection …

Aug 28, 2026
CVE-2026-38821
7.1 HIGH

A heap-based buffer overflow vulnerability exists in openNDS before 11.0.0 that allows an unauthenticated attacker on the captive portal network to crash the openNDS daemon …

Aug 28, 2026
CVE-2026-38820
8.3 HIGH

openNDS before 11.0.0 is susceptible to unauthenticated OS command execution via shell command injection through the fas query parameter on the /opennds_preauth/ endpoint because of …

Aug 28, 2026
CVE-2026-82072
8.8 HIGH

Out of bounds read in V8 in Google Chrome prior to 151.0.7922.72 allowed a remote attacker to execute arbitrary code inside the sandbox via a …

Aug 28, 2026
CVE-2026-78037
8.8 HIGH

Xiiaozet LK100W is vulnerable to OS command injection through its web-based management interface. An authenticated attacker may be able to execute arbitrary operating system commands …

Aug 28, 2026
CVE-2026-77977
8.1 HIGH

Ebyte gateway product's vendor configuration utility does not require authentication before allowing certain disruptive administrative actions when default credentials remain configured. An unauthenticated attacker on …

Aug 28, 2026
CVE-2026-76945
7.5 HIGH

The affected Ebyte device relies on client-managed authentication tokens without sufficient server-side validation. An attacker may replay or manipulate authentication tokens to gain unauthorized access …

Aug 28, 2026
CVE-2026-76940
7.5 HIGH

The affected Ebyte device does not restrict repeated authentication attempts through rate limiting or account lockout mechanisms. This could allow an attacker to perform automated …

Aug 28, 2026
CVE-2026-76060
8.8 HIGH

An authenticated OS command injection vulnerability exists in ZoneMinder's event export functionality. The exportFile HTTP request parameter is passed unsanitized into a shell command executed …

Aug 28, 2026
CVE-2026-75814
8.8 HIGH

The Ebyte device does not adequately verify the origin or authenticity of requests submitted to the web management interface. An unauthenticated remote attacker could persuade …

Aug 28, 2026
CVE-2026-75813
7.5 HIGH

Certain configuration endpoints may lack proper server-side authorization checks, allowing unauthorized users to access or modify sensitive device settings. This could result in full compromise …

Aug 28, 2026
CVE-2026-75419
8.8 HIGH

go-wind-cms (GoWind) before 1.0.0 has a missing authorization vulnerability. The NewAuthorizer() function in app/admin/service/internal/data/data.go and app/app/service/internal/data/data.go returns a no-op authorization engine (noop.State{}), so the authz …

Aug 28, 2026
CVE-2026-75418
7.5 HIGH

A path traversal vulnerability exists in the built-in preview/development web server of Lektor <3.3.14 on Windows. An attacker with network access to the server can …

Aug 28, 2026
CVE-2026-75417
7.2 HIGH

A SQL injection vulnerability was found in YzmCMS 7.5. The issue occurs in the get_arrchildid() function within application/admin/controller/category.class.php, where the user-controlled parentid parameter is concatenated …

Aug 28, 2026
CVE-2026-75339
8.8 HIGH

The storage endpoint /storage/upload of cjbi admin3 v3.0.0 are missing permission checks. /Any logged-in user can upload arbitrary files, and any anonymous attacker can download …

Aug 28, 2026
CVE-2026-73809
7.5 HIGH

A cleartext transmission of sensitive information vulnerability exists in certain Ebyte gateway products. The web management interface does not adequately protect sensitive communications using transport-layer …

Aug 28, 2026
CVE-2026-67560
7.5 HIGH

Bendix EC80 Brake ECU is vulnerable to a stack-based buffer overflow, which may allow an attacker to crash the ECU. A crafted payload can then …

Aug 28, 2026
CVE-2026-54330
8.1 HIGH

Ceph is an open-source distributed storage platform providing object, block, and file storage. In versions prior to 20.2.4 and 19.2.6, the Ceph Object Gateway (RGW) …

Aug 28, 2026
CVE-2026-54085
7.1 HIGH

Wazuh is an open-source security platform providing unified XDR and SIEM protection for endpoints and cloud workloads. In versions 4.2.0 through 4.14.6, multiple active response …

Aug 28, 2026
CVE-2026-54083
8.1 HIGH

Wazuh is an open-source security platform providing unified XDR and SIEM protection for endpoints and cloud workloads. The ip-customblock active response script contains a path …

Aug 28, 2026
CVE-2026-44629
7.9 HIGH

Improper access control to the Synergis Softwire installation folder. This vulnerability affects Streamvault all-in-one appliances (SV-100E and SV-300E series) and Synergis Softwire installed on Windows …

Aug 28, 2026
CVE-2026-39944
8.8 HIGH

Ceph is an open-source distributed storage platform providing object, block, and file storage. In versions prior to 20.2.4 and 19.2.6, the RADOS Gateway (RGW) protects …

Aug 28, 2026
CVE-2026-38350
7.5 HIGH

An integer overflow in the target_sws_fuzzer() function (libswscale/output.c) of FFmpeg N-122528-gdd2976b9e1 allows attackers to cause a Denial of Service (DoS) via supplying a crafted input.

Aug 28, 2026
CVE-2026-38349
7.5 HIGH

An integer overflow in the hScale16To19_c() function (libswscale/output.c) of FFmpeg N-122528-gdd2976b9e1 allows attackers to cause a Denial of Service (DoS) via supplying a crafted image …

Aug 28, 2026
CVE-2026-38348
7.5 HIGH

An integer overflow in the libswscale/utils.c component of FFmpeg N-122528-gdd2976b9e1 allows attackers to cause a Denial of Service (DoS) via supplying a crafted image file.

Aug 28, 2026
CVE-2026-38347
7.5 HIGH

A heap overflow in the ff_sws_alphablendaway function (libswscale/alphablend.c) of FFmpeg git-master commit 722a217 allows attackers to cause a Denial of Service (DoS) via a crafted …

Aug 28, 2026
CVE-2026-38346
7.5 HIGH

An integer overflow in the yuv2planeX_8_c() function (libswscale/output.c) of FFmpeg N-122528-gdd2976b9e1 allows attackers to cause a Denial of Service (DoS) via supplying a crafted video …

Aug 28, 2026
CVE-2026-38344
7.5 HIGH

A NULL pointer dereference in the get_min_buffer_size function (/libswscale/slice.c) of FFmpeg N-122528-gdd2976b9e1 allows attackers to cause a Denial of Service (DoS) via supplying a crafted …

Aug 28, 2026
CVE-2026-18965
8.8 HIGH

PayRange API is missing proper authorization on management endpoints, which allows verbose details of every device on the PayRange network to be publicly accessible, with …

Aug 28, 2026
CVE-2026-18717
7.4 HIGH

ASE2000 2.35 through 2.37 is vulnerable to an improper certificate validation vulnerability, which may allow an attacker to impersonate the trusted peer, complete the TLS …

Aug 28, 2026

Scan your infrastructure for known CVEs

Free website and port scanning — find vulnerabilities before attackers do.