Browse vulnerabilities
379,235 results
| CVE | Priority | EPSS | CVSS | KEV | What |
|---|---|---|---|---|---|
| CVE-2021-27058 | Medium | 3.5% | 7.8 | Microsoft Office ClickToRun Remote Code Execution Vulnerability | |
| CVE-2026-50509 | Medium | 3.5% | 7.8 | Deserialization of untrusted data in Windows Wireless Wide Area Network Service allows an … | |
| CVE-2026-19598 | Medium | 3.5% | 9.8 | The Pods – Custom Content Types and Fields plugin for WordPress is vulnerable to Privilege… | |
| CVE-2026-48362 | Medium | 3.5% | 10.0 | ColdFusion is affected by an Improper Neutralization of Special Elements used in an OS Com… | |
| CVE-2026-76195 | Medium | 3.5% | 10.0 | Adobe Campaign Classic (ACC) is affected by an Improper Neutralization of Special Elements… | |
| CVE-2026-76197 | Medium | 3.5% | 10.0 | Adobe Campaign Classic (ACC) is affected by an Improper Neutralization of Special Elements… | |
| CVE-2026-20843 | Medium | 3.5% | 7.8 | Improper access control in Windows Routing and Remote Access Service (RRAS) allows an auth… | |
| CVE-2026-23921 | Medium | 3.5% | 8.8 | A low privilege Zabbix user with API access can exploit a blind SQL injection vulnerabilit… | |
| CVE-2021-24090 | Medium | 3.5% | 7.8 | Windows Error Reporting Elevation of Privilege Vulnerability | |
| CVE-2026-84434 | Medium | 3.5% | 9.8 | The Gravity Forms plugin for WordPress is vulnerable to Arbitrary File Upload in all versi… | |
| CVE-2000-0969 | Medium | 3.5% | 10.0 | Format string vulnerability in Half Life dedicated server build 3104 and earlier allows re… | |
| CVE-2023-5685 | Medium | 3.5% | 7.5 | A flaw was found in XNIO. The XNIO NotifierState that can cause a Stack Overflow Exception… | |
| CVE-2021-36926 | Medium | 3.5% | 7.5 | Windows Services for NFS ONCRPC XDR Driver Information Disclosure Vulnerability | |
| CVE-2021-36932 | Medium | 3.5% | 7.5 | Windows Services for NFS ONCRPC XDR Driver Information Disclosure Vulnerability | |
| CVE-2021-36933 | Medium | 3.5% | 7.5 | Windows Services for NFS ONCRPC XDR Driver Information Disclosure Vulnerability | |
| CVE-2006-2198 | Medium | 3.5% | 7.6 | OpenOffice.org (aka StarOffice) 1.1.x up to 1.1.5 and 2.0.x before 2.0.3 allows user-assis… | |
| CVE-2006-2199 | Medium | 3.5% | 7.6 | Unspecified vulnerability in Java Applets in OpenOffice.org 1.1.x (aka StarOffice) up to 1… | |
| CVE-2021-26885 | Medium | 3.5% | 7.8 | Windows WalletService Elevation of Privilege Vulnerability | |
| CVE-2026-9436 | Medium | 3.5% | 9.8 | A flaw has been found in Totolink A8000RU 7.1cu.643_b20200521. The impacted element is the… | |
| CVE-2021-34504 | Medium | 3.4% | 7.8 | Windows Address Book Remote Code Execution Vulnerability | |
| CVE-2024-35249 | Medium | 3.4% | 8.8 | Microsoft Dynamics 365 Business Central Remote Code Execution Vulnerability | |
| CVE-2021-34479 | Medium | 3.4% | 7.8 | Microsoft Visual Studio Spoofing Vulnerability | |
| CVE-2026-42945 | Medium | 3.4% | 8.1 | NGINX Plus and NGINX Open Source have a vulnerability in the ngx_http_rewrite_module modul… | |
| CVE-2026-90847 | Medium | 3.4% | 9.1 | A vulnerability was determined in EFM ipTIME C200E 1.094. The impacted element is an unkno… | |
| CVE-2024-38237 | Medium | 3.4% | 7.8 | Kernel Streaming WOW Thunk Service Driver Elevation of Privilege Vulnerability | |
| CVE-2026-74233 | Medium | 3.4% | 9.8 | Zbtlink WE1326, WE357, WE5926, WE5926-WD, WE826-Q, WE826-T2, WE826-WD, WG108, and WG3526 f… | |
| CVE-2026-65694 | Medium | 3.4% | 7.5 | Microweber CMS through 2.0.20 contains a path traversal vulnerability in the static file c… | |
| CVE-2024-38242 | Medium | 3.4% | 7.8 | Kernel Streaming Service Driver Elevation of Privilege Vulnerability | |
| CVE-2026-5562 | Medium | 3.4% | 7.3 | A vulnerability was identified in provectus kafka-ui up to 0.7.2. This impacts the functio… | |
| CVE-2026-5463 | Medium | 3.4% | 8.6 | Command injection vulnerability in console.run_module_with_output() in pymetasploit3 throu… | |
| CVE-2000-0978 | Medium | 3.3% | 7.5 | bbd server in Big Brother System and Network Monitor before 1.5c2 allows remote attackers … | |
| CVE-2023-21812 | Medium | 3.3% | 7.8 | Windows Common Log File System Driver Elevation of Privilege Vulnerability | |
| CVE-2026-82689 | Medium | 3.3% | 9.9 | A vulnerability was detected in D-Link DNS-320L, DNS-327L, DNS-340L and DNS-345 up to 2026… | |
| CVE-2026-82692 | Medium | 3.3% | 9.9 | A vulnerability was found in D-Link DNS-340L and DNS-345 up to 20260717. This affects an u… | |
| CVE-2026-85223 | Medium | 3.3% | 9.9 | A vulnerability was found in D-Link DNS-340L 1.01B04. Affected by this issue is some unkno… | |
| CVE-2026-90699 | Medium | 3.3% | 9.9 | A weakness has been identified in D-Link DWR-M920 1.1.7. This issue affects the function s… | |
| CVE-2026-71966 | Medium | 3.3% | 8.8 | CyberPanel 2.4.3, fixed in commit eca0c3c, contains an authenticated command injection vul… | |
| CVE-2026-12571 | Medium | 3.3% | 9.8 | An authentication bypass in ManageEngine DDI Central's password-reset workflow allows acco… | |
| CVE-2026-69096 | Medium | 3.3% | 8.8 | OpenWrt luci-app-dockerman (LuCI master and openwrt-25.12 snapshots containing the ucode d… | |
| CVE-2020-1061 | Medium | 3.3% | 7.5 | A remote code execution vulnerability exists in the way that the Microsoft Script Runtime … | |
| CVE-2026-19295 | Medium | 3.3% | 9.9 | IBM Langflow OSS 1.0.0 through 1.11.1 allows an authenticated attacker to execute arbitrar… | |
| CVE-2020-1112 | Medium | 3.3% | 8.5 | An elevation of privilege vulnerability exists when the Windows Background Intelligent Tra… | |
| CVE-2021-36960 | Medium | 3.3% | 7.5 | Windows SMB Information Disclosure Vulnerability | |
| CVE-2021-42306 | Medium | 3.3% | 8.1 | An information disclosure vulnerability manifests when a user or an application uploads un… | |
| CVE-2026-82004 | Medium | 3.3% | 10.0 | Adobe Campaign Classic (ACC) is affected by an Improper Neutralization of Special Elements… | |
| CVE-2021-33772 | Medium | 3.3% | 7.5 | Windows TCP/IP Driver Denial of Service Vulnerability | |
| CVE-2021-33785 | Medium | 3.3% | 7.5 | Windows AF_UNIX Socket Provider Denial of Service Vulnerability | |
| CVE-2021-33788 | Medium | 3.3% | 7.5 | Windows LSA Denial of Service Vulnerability | |
| CVE-2021-34476 | Medium | 3.3% | 7.5 | Bowser.sys Denial of Service Vulnerability | |
| CVE-2021-34490 | Medium | 3.3% | 7.5 | Windows TCP/IP Driver Denial of Service Vulnerability |