Browse vulnerabilities
379,235 results
| CVE | Priority | EPSS | CVSS | KEV | What |
|---|---|---|---|---|---|
| CVE-2019-15992 | Medium | 4.1% | 7.2 | A vulnerability in the implementation of the Lua interpreter integrated in Cisco Adaptive … | |
| CVE-2024-21346 | Medium | 4.1% | 7.8 | Win32k Elevation of Privilege Vulnerability | |
| CVE-2020-1192 | Medium | 4.1% | 7.8 | A remote code execution vulnerability exists in Visual Studio Code when the Python extensi… | |
| CVE-2026-42198 | Medium | 4.1% | 7.5 | pgjdbc is an open source postgresql JDBC Driver. From version 42.2.0 to before version 42.… | |
| CVE-2019-3773 | Medium | 4.1% | 9.8 | Spring Web Services, versions 2.4.3, 3.0.4, and older unsupported versions of all three pr… | |
| CVE-2026-24301 | Medium | 4.1% | 8.8 | Improper neutralization of special elements used in a command ('command injection') in Mic… | |
| CVE-2023-21706 | Medium | 4.1% | 8.8 | Microsoft Exchange Server Remote Code Execution Vulnerability | |
| CVE-2021-27054 | Medium | 4.0% | 7.8 | Microsoft Excel Remote Code Execution Vulnerability | |
| CVE-2021-27057 | Medium | 4.0% | 7.8 | Microsoft Office Remote Code Execution Vulnerability | |
| CVE-2020-36180 | Medium | 4.0% | 8.1 | FasterXML jackson-databind 2.x before 2.9.10.8 mishandles the interaction between serializ… | |
| CVE-2020-36181 | Medium | 4.0% | 8.1 | FasterXML jackson-databind 2.x before 2.9.10.8 mishandles the interaction between serializ… | |
| CVE-2020-36182 | Medium | 4.0% | 8.1 | FasterXML jackson-databind 2.x before 2.9.10.8 mishandles the interaction between serializ… | |
| CVE-2021-27056 | Medium | 4.0% | 7.8 | Microsoft PowerPoint Remote Code Execution Vulnerability | |
| CVE-2026-50646 | Medium | 4.0% | 7.8 | Protection mechanism failure in .NET Framework allows an unauthorized attacker to execute … | |
| CVE-2026-50649 | Medium | 4.0% | 7.8 | Deserialization of untrusted data in .NET allows an unauthorized attacker to execute code … | |
| CVE-2021-34494 | Medium | 4.0% | 8.8 | Windows DNS Server Remote Code Execution Vulnerability | |
| CVE-2026-2740 | Medium | 4.0% | 8.4 | Zohocorp ManageEngine ADSelfService Plus version before 6525, DataSecurity Plus before 626… | |
| CVE-2020-1126 | Medium | 4.0% | 8.8 | A memory corruption vulnerability exists when Windows Media Foundation improperly handles … | |
| CVE-2021-36940 | Medium | 4.0% | 7.6 | Microsoft SharePoint Server Spoofing Vulnerability | |
| CVE-2020-14498 | Medium | 4.0% | 9.6 | HMS Industrial Networks AB eCatcher all versions prior to 6.5.5 is vulnerable to a stack-b… | |
| CVE-2020-1069 | Medium | 4.0% | 8.8 | A remote code execution vulnerability exists in Microsoft SharePoint Server when it fails … | |
| CVE-2026-14483 | Medium | 4.0% | 9.8 | The Realtyna Organic IDX plugin + WPL Real Estate plugin for WordPress is vulnerable to Ar… | |
| CVE-2026-18612 | Medium | 4.0% | 9.8 | A flaw has been found in GL-iNet GL-MT3000 up to 4.4.5. This vulnerability affects the fun… | |
| CVE-2020-1117 | Medium | 4.0% | 8.8 | A remote code execution vulnerability exists in the way that the Color Management Module (… | |
| CVE-2026-73522 | Medium | 4.0% | 7.5 | COVESA Open1722 through 0.9.2 contains a stack buffer overflow vulnerability that allows u… | |
| CVE-2021-27082 | Medium | 3.9% | 7.8 | Quantum Development Kit for Visual Studio Code Remote Code Execution Vulnerability | |
| CVE-2020-36189 | Medium | 3.9% | 8.1 | FasterXML jackson-databind 2.x before 2.9.10.8 mishandles the interaction between serializ… | |
| CVE-2026-95675 | Medium | 3.9% | 9.8 | D-Link DAP-1360 firmware version 6.14 and earlier contains an unauthenticated remote code … | |
| CVE-2020-3304 | Medium | 3.9% | 8.6 | A vulnerability in the web interface of Cisco Adaptive Security Appliance (ASA) Software a… | |
| CVE-2026-15826 | Medium | 3.9% | 9.8 | The User Profile Builder plugin for WordPress is vulnerable to Authentication Bypass via T… | |
| CVE-2021-26423 | Medium | 3.9% | 7.5 | .NET Core and Visual Studio Denial of Service Vulnerability | |
| CVE-2017-13728 | Medium | 3.9% | 7.5 | There is an infinite loop in the next_char function in comp_scan.c in ncurses 6.0, related… | |
| CVE-2026-47668 | Medium | 3.9% | 10.0 | DbGate is cross-platform database manager. In versions 7.1.8 and prior, DbGate's JSON scri… | |
| CVE-2021-27070 | Medium | 3.9% | 7.3 | Windows 10 Update Assistant Elevation of Privilege Vulnerability | |
| CVE-2018-0240 | Medium | 3.9% | 8.6 | Multiple vulnerabilities in the Application Layer Protocol Inspection feature of Cisco Ada… | |
| CVE-2020-1153 | Medium | 3.8% | 7.8 | A remote code execution vulnerability exists in the way that Microsoft Graphics Components… | |
| CVE-2026-18900 | Medium | 3.8% | 7.2 | A weakness has been identified in H3C NX15 V100R017. This impacts the function file.exec o… | |
| CVE-2026-18902 | Medium | 3.8% | 7.2 | A vulnerability was detected in H3C NX15 V100R017. Affected by this vulnerability is the f… | |
| CVE-2021-31183 | Medium | 3.8% | 7.5 | Windows TCP/IP Driver Denial of Service Vulnerability | |
| CVE-2025-71210 | Medium | 3.8% | 9.8 | A vulnerability in the Trend Micro Apex One management console could allow a remote attack… | |
| CVE-2000-0968 | Medium | 3.8% | 10.0 | Buffer overflow in Half Life dedicated server before build 3104 allows remote attackers to… | |
| CVE-2026-11498 | Medium | 3.8% | 8.8 | A vulnerability was found in Tenda HG7HG9 and HG10 300001138_en_xpon. Affected by this iss… | |
| CVE-2000-0943 | Medium | 3.8% | 7.5 | Buffer overflow in bftp daemon (bftpd) 1.0.11 allows remote attackers to cause a denial of… | |
| CVE-2020-1028 | Medium | 3.8% | 7.8 | A memory corruption vulnerability exists when Windows Media Foundation improperly handles … | |
| CVE-2020-1136 | Medium | 3.8% | 7.8 | A memory corruption vulnerability exists when Windows Media Foundation improperly handles … | |
| CVE-2018-13410 | Medium | 3.8% | 9.8 | Info-ZIP Zip 3.0, when the -T and -TT command-line options are used, allows attackers to c… | |
| CVE-2000-0964 | Medium | 3.8% | 10.0 | Buffer overflow in the web administration service for the HiNet LP5100 IP-phone allows rem… | |
| CVE-2025-71211 | Medium | 3.8% | 9.8 | A vulnerability in the Trend Micro Apex One management console could allow a remote attack… | |
| CVE-2026-41452 | Medium | 3.7% | 9.8 | Krayin CRM 2.2.4 contains a missing authentication vulnerability in the installer middlewa… | |
| CVE-2026-86299 | Medium | 3.7% | 9.9 | A vulnerability was detected in Linksys RE7000 2.0.15. This affects the function platform_… |