CVE Database

45217+ vulnerabilities with CVSS scores, EPSS exploit predictions, and CISA KEV status. Updated daily.

Filter: All CRITICAL HIGH MEDIUM LOW CISA KEV
Sort: Newest CVSS EPSS
CVE-2026-78379
8.1 HIGH

Improper neutralization of input used for LLM prompting in the python_repl tool in Amazon Strands Agents Tools before 0.8.5 might allow remote actors to execute …

Aug 25, 2026
CVE-2026-55620
7.5 HIGH

eml_parser serves as a python module for parsing eml files and returning various information found in the e-mail as well as computed information. Prior to …

Aug 25, 2026
CVE-2026-55609
7.1 HIGH

sublinear-time-solver is a Rust and WebAssembly library for solving asymmetric diagonally dominant systems in sublinear time. Prior to consciousness-explorer 1.1.2 and sublinear-time-solver 1.6.0, the export_state …

Aug 25, 2026
CVE-2026-79992
7.8 HIGH

A flaw was found in Emacs TRAMP. A local attacker could exploit this vulnerability by processing maliciously crafted filenames. This occurs because TRAMP concatenates login …

Aug 25, 2026
CVE-2026-75770
7.8 HIGH

Substance3D - Painter is affected by an out-of-bounds write vulnerability that could result in arbitrary code execution in the context of the current user. Exploitation …

Aug 25, 2026
CVE-2026-75769
7.8 HIGH

Substance3D - Painter is affected by a Heap-based Buffer Overflow vulnerability that could result in arbitrary code execution in the context of the current user. …

Aug 25, 2026
CVE-2026-75768
7.8 HIGH

Substance3D - Painter is affected by an Untrusted Search Path vulnerability that could result in arbitrary code execution in the context of the current user. …

Aug 25, 2026
CVE-2026-75767
7.8 HIGH

Substance3D - Painter is affected by a Heap-based Buffer Overflow vulnerability that could result in arbitrary code execution in the context of the current user. …

Aug 25, 2026
CVE-2026-75766
7.8 HIGH

Substance3D - Painter is affected by a Heap-based Buffer Overflow vulnerability that could result in arbitrary code execution in the context of the current user. …

Aug 25, 2026
CVE-2026-75750
7.8 HIGH

Substance3D - Painter is affected by a Heap-based Buffer Overflow vulnerability that could result in arbitrary code execution in the context of the current user. …

Aug 25, 2026
CVE-2026-75749
7.8 HIGH

Substance3D - Painter is affected by an out-of-bounds write vulnerability that could result in arbitrary code execution in the context of the current user. Exploitation …

Aug 25, 2026
CVE-2026-71564
7.8 HIGH

Substance3D - Designer is affected by an out-of-bounds write vulnerability that could result in arbitrary code execution in the context of the current user. Exploitation …

Aug 25, 2026
CVE-2026-71443
7.5 HIGH

CAI Content Credentials is affected by an Improper Input Validation vulnerability that could result in an application denial-of-service. An attacker could exploit this vulnerability to …

Aug 25, 2026
CVE-2026-71442
7.5 HIGH

CAI Content Credentials is affected by an Integer Underflow (Wrap or Wraparound) vulnerability that could result in an application denial-of-service. An attacker could exploit this …

Aug 25, 2026
CVE-2026-71399
7.8 HIGH

Adobe XD is affected by a Buffer Overflow vulnerability that could result in arbitrary code execution in the context of the current user. An attacker …

Aug 25, 2026
CVE-2026-71382
7.8 HIGH

Substance3D - Sampler is affected by an out-of-bounds write vulnerability that could result in arbitrary code execution in the context of the current user. Exploitation …

Aug 25, 2026
CVE-2026-71360
7.5 HIGH

CAI Content Credentials is affected by an Uncontrolled Resource Consumption vulnerability that could lead to application denial-of-service. An attacker could exploit this vulnerability to exhaust …

Aug 25, 2026
CVE-2026-59982
7.1 HIGH

OpenEXR is the reference implementation and specification for the EXR image format, widely used in the motion picture industry. OpenEXR versions before 3.2.11, 3.3.0 through …

Aug 25, 2026
CVE-2026-48433
7.8 HIGH

Substance3D - Designer is affected by a Heap-based Buffer Overflow vulnerability that could result in arbitrary code execution in the context of the current user. …

Aug 25, 2026
CVE-2026-48432
7.8 HIGH

Substance3D - Designer is affected by a Heap-based Buffer Overflow vulnerability that could result in arbitrary code execution in the context of the current user. …

Aug 25, 2026
CVE-2026-48431
7.8 HIGH

Substance3D - Designer is affected by a Heap-based Buffer Overflow vulnerability that could result in arbitrary code execution in the context of the current user. …

Aug 25, 2026
CVE-2026-48430
7.8 HIGH

Substance3D - Designer is affected by a Heap-based Buffer Overflow vulnerability that could result in arbitrary code execution in the context of the current user. …

Aug 25, 2026
CVE-2026-48428
7.8 HIGH

Substance3D - Designer is affected by a Heap-based Buffer Overflow vulnerability that could result in arbitrary code execution in the context of the current user. …

Aug 25, 2026
CVE-2026-48427
7.8 HIGH

Substance3D - Designer is affected by an out-of-bounds write vulnerability that could result in arbitrary code execution in the context of the current user. Exploitation …

Aug 25, 2026
CVE-2026-48426
7.8 HIGH

Substance3D - Designer is affected by an out-of-bounds write vulnerability that could result in arbitrary code execution in the context of the current user. Exploitation …

Aug 25, 2026
CVE-2026-48425
7.8 HIGH

Substance3D - Sampler is affected by a Heap-based Buffer Overflow vulnerability that could result in arbitrary code execution in the context of the current user. …

Aug 25, 2026
CVE-2026-48424
7.8 HIGH

Substance3D - Sampler is affected by a Heap-based Buffer Overflow vulnerability that could result in arbitrary code execution in the context of the current user. …

Aug 25, 2026
CVE-2026-48423
7.8 HIGH

Substance3D - Sampler is affected by a Heap-based Buffer Overflow vulnerability that could result in arbitrary code execution in the context of the current user. …

Aug 25, 2026
CVE-2026-48422
7.8 HIGH

Substance3D - Sampler is affected by a Heap-based Buffer Overflow vulnerability that could result in arbitrary code execution in the context of the current user. …

Aug 25, 2026
CVE-2026-48421
7.8 HIGH

Substance3D - Sampler is affected by an out-of-bounds write vulnerability that could result in arbitrary code execution in the context of the current user. Exploitation …

Aug 25, 2026
CVE-2026-48420
7.8 HIGH

Substance3D - Sampler is affected by an out-of-bounds write vulnerability that could result in arbitrary code execution in the context of the current user. Exploitation …

Aug 25, 2026
CVE-2026-48419
7.8 HIGH

Substance3D - Sampler is affected by an out-of-bounds write vulnerability that could result in arbitrary code execution in the context of the current user. Exploitation …

Aug 25, 2026
CVE-2026-48418
7.8 HIGH

Substance3D - Sampler is affected by an out-of-bounds write vulnerability that could result in arbitrary code execution in the context of the current user. Exploitation …

Aug 25, 2026
CVE-2026-48417
7.8 HIGH

Substance3D - Sampler is affected by a Stack-based Buffer Overflow vulnerability that could result in arbitrary code execution in the context of the current user. …

Aug 25, 2026
CVE-2026-75498
7.2 HIGH

Webkul QloApps does not validate request parameters before a database query. A remote, authenticated attacker with administrative privileges could send a crafted SQL query to …

Aug 25, 2026
CVE-2026-75497
7.2 HIGH

Webkul QloApps does not validate request parameters before a database query. A remote, authenticated attacker with administrative privileges could send a crafted SQL query to …

Aug 25, 2026
CVE-2026-75496
7.2 HIGH

Webkul QloApps does not perform proper validation on uploaded file extensions or MIME types before moving the file to a publicly accessible directory. A remote, …

Aug 25, 2026
CVE-2026-64204
7.8 HIGH

There is a memory corruption vulnerability recently discovered in NI LabVIEW that may result in information disclosure or arbitrary code execution. Successful exploitation requires an …

Aug 25, 2026
CVE-2026-64203
7.8 HIGH

There is a memory corruption vulnerability recently discovered in NI LabVIEW that may result in information disclosure or arbitrary code execution. Successful exploitation requires an …

Aug 25, 2026
CVE-2026-64202
7.8 HIGH

There is a memory corruption vulnerability recently discovered in NI LabVIEW that may result in information disclosure or arbitrary code execution. Successful exploitation requires an …

Aug 25, 2026
CVE-2026-64201
7.8 HIGH

There is a memory corruption vulnerability recently discovered in NI LabVIEW that may result in information disclosure or arbitrary code execution. Successful exploitation requires an …

Aug 25, 2026
CVE-2026-59189
7.1 HIGH

OpenEXR is the reference implementation and specification for the EXR image format, widely used in the motion picture industry. In OpenEXRUtil versions 3.3.0 through 3.3.12 …

Aug 25, 2026
CVE-2026-59187
7.1 HIGH

OpenEXR is the reference implementation and specification for the EXR image format, widely used in the motion picture industry. OpenEXR versions 3.3.0 through 3.3.12 and …

Aug 25, 2026
CVE-2026-59186
7.1 HIGH

OpenEXR is the reference implementation and specification for the EXR image format, widely used in the motion picture industry. In versions before 3.2.11, 3.3.0 through …

Aug 25, 2026
CVE-2026-59184
7.1 HIGH

OpenEXR is the reference implementation and specification for the EXR image format, widely used in the motion picture industry. Versions before 3.2.11, 3.3.0 through 3.3.12, …

Aug 25, 2026
CVE-2026-55585
8.8 HIGH

QWED is open-source AI verification infrastructure for deterministic verification of LLM outputs, tool calls, code, schemas, and agent state before production execution. Prior to 5.1.2, …

Aug 25, 2026
CVE-2026-55571
8.2 HIGH

djust provides Phoenix LiveView-style reactive server-side rendering for Django with Rust-powered performance. Prior to 1.0.4, LiveViewConsumer.handle_mount sends a `{"type":"navigate","to":...}` frame when login_required, permission_required, or a …

Aug 25, 2026
CVE-2026-55553
7.5 HIGH

urllib is an HTTP client for Node.js that supports authentication, redirects, timeouts, and other request features. Prior to 4.9.1 and 2.44.1, urllib follows redirects through …

Aug 25, 2026
CVE-2026-47626
8.2 HIGH

NVIDIA DGX Spark contains a vulnerability in the system firmware, where a privileged attacker could be able to cause an out-of-bounds write. A successful exploit …

Aug 25, 2026
CVE-2026-24263
8.2 HIGH

NVIDIA DGX Spark contains a vulnerability in the system firmware, where a privileged attacker could be able to cause a NULL pointer dereference. A successful …

Aug 25, 2026

Scan your infrastructure for known CVEs

Free website and port scanning — find vulnerabilities before attackers do.