Browse vulnerabilities
379,235 results
| CVE | Priority | EPSS | CVSS | KEV | What |
|---|---|---|---|---|---|
| CVE-2026-82766 | Medium | 1.9% | 8.8 | Improper neutralization of special elements used in an OS command ('OS Command Injection')… | |
| CVE-2026-82774 | Medium | 1.9% | 8.8 | Improper neutralization of special elements used in an OS command ('OS Command Injection')… | |
| CVE-2026-82777 | Medium | 1.9% | 8.8 | Improper neutralization of special elements used in an OS command ('OS Command Injection')… | |
| CVE-2026-82779 | Medium | 1.9% | 8.8 | Improper neutralization of special elements used in an OS command ('OS Command Injection')… | |
| CVE-2026-82791 | Medium | 1.9% | 8.8 | Improper neutralization of special elements used in an OS command ('OS Command Injection')… | |
| CVE-2026-82794 | Medium | 1.9% | 8.8 | SolarView Compact contains an OS command Injection vulnerability in in Schedule Settings. … | |
| CVE-2020-3191 | Medium | 1.9% | 8.6 | A vulnerability in DNS over IPv6 packet processing for Cisco Adaptive Security Appliance (… | |
| CVE-2026-8732 | Medium | 1.9% | 9.8 | The WP Maps Pro plugin for WordPress is vulnerable to Privilege Escalation via Administrat… | |
| CVE-2026-8679 | Medium | 1.9% | 7.5 | The AudioIgniter plugin for WordPress is vulnerable to Insecure Direct Object Reference in… | |
| CVE-2020-3529 | Medium | 1.9% | 8.6 | A vulnerability in the SSL VPN negotiation process for Cisco Adaptive Security Appliance (… | |
| CVE-2026-45633 | Medium | 1.9% | 9.9 | Dokploy is a free, self-hostable Platform as a Service (PaaS). In 0.26.6 and earlier, Dokp… | |
| CVE-2026-84285 | Medium | 1.9% | 8.8 | An OS Command Injection vulnerability affecting Tuleap Enterprise Edition from 17.3 throug… | |
| CVE-2026-19626 | Medium | 1.9% | 9.9 | A remote code execution vulnerability exists in Tenable Security Center's report generatio… | |
| CVE-2020-3189 | Medium | 1.8% | 8.6 | A vulnerability in the VPN System Logging functionality for Cisco Firepower Threat Defense… | |
| CVE-2020-3255 | Medium | 1.8% | 7.5 | A vulnerability in the packet processing functionality of Cisco Firepower Threat Defense (… | |
| CVE-2000-0955 | Medium | 1.8% | 7.5 | Cisco Virtual Central Office 4000 (VCO/4K) uses weak encryption to store usernames and pas… | |
| CVE-2026-5487 | Medium | 1.8% | 7.5 | DriveLock Directory Traversal Information Disclosure Vulnerability. This vulnerability all… | |
| CVE-2026-5491 | Medium | 1.8% | 7.5 | DriveLock Directory Traversal Information Disclosure Vulnerability. This vulnerability all… | |
| CVE-2023-52355 | Medium | 1.8% | 7.5 | An out-of-memory flaw was found in libtiff that could be triggered by passing a crafted ti… | |
| CVE-2017-6625 | Medium | 1.8% | 7.1 | A "Cisco Firepower Threat Defense 6.0.0 through 6.2.2 and Cisco ASA with FirePOWER Module … | |
| CVE-2019-12678 | Medium | 1.8% | 7.5 | A vulnerability in the Session Initiation Protocol (SIP) inspection module of Cisco Adapti… | |
| CVE-2026-63076 | Medium | 1.8% | 7.5 | Issue summary: OpenSSL CMP password based protection verification only checks whether the … | |
| CVE-2024-43475 | Medium | 1.8% | 7.3 | Microsoft Windows Admin Center Information Disclosure Vulnerability | |
| CVE-2026-75984 | Medium | 1.8% | 7.4 | A vulnerability was detected in TRENDnet TEW-823DRU 1.1.02b01. Impacted is an unknown func… | |
| CVE-2026-75985 | Medium | 1.8% | 7.4 | A flaw has been found in TRENDnet Router 1.1.02b01. The affected element is an unknown fun… | |
| CVE-2026-76583 | Medium | 1.8% | 7.4 | A vulnerability was identified in TRENDnet TV-IP751WIC 11.03.03. Affected by this vulnerab… | |
| CVE-2026-76591 | Medium | 1.8% | 7.4 | A security flaw has been discovered in TRENDnet TEW-755AP up to 20260702. This affects the… | |
| CVE-2026-82597 | Medium | 1.8% | 7.4 | A vulnerability was identified in TOTOLINK NR1800X 9.1.0u.6681_B20230703. This affects the… | |
| CVE-2020-3562 | Medium | 1.8% | 8.6 | A vulnerability in the SSL/TLS inspection of Cisco Firepower Threat Defense (FTD) Software… | |
| CVE-2026-27893 | Medium | 1.8% | 8.8 | vLLM is an inference and serving engine for large language models (LLMs). Starting in vers… | |
| CVE-2024-21372 | Medium | 1.8% | 8.8 | Windows OLE Remote Code Execution Vulnerability | |
| CVE-2026-27960 | Medium | 1.8% | 9.8 | OpenCTI is an open source platform for managing cyber threat intelligence knowledge and ob… | |
| CVE-2026-50776 | Medium | 1.8% | 7.5 | Directory Traversal vulnerability in Pronis Loisirs Billetterie CSE - < 04/2026 allows a r… | |
| CVE-2026-83527 | Medium | 1.8% | 8.1 | An Authentication Bypass vulnerability in Sentry before R10.8.2, R10.7.3 and R10.6.4 allow… | |
| CVE-2019-1696 | Medium | 1.8% | 7.5 | Multiple vulnerabilities in the Server Message Block (SMB) Protocol preprocessor detection… | |
| CVE-2026-44359 | Medium | 1.8% | 10.0 | Meshtastic is an open source mesh networking solution. Prior to version 2.7.21.1370b23, th… | |
| CVE-2026-45769 | Medium | 1.8% | 7.5 | Suricata is a network Intrusion Detection System, Intrusion Prevention System and Network … | |
| CVE-2026-73299 | Medium | 1.8% | 10.0 | Prompty is a markdown file format (.prompty) for LLM prompts. Prior to 0.1.5 and 2.0.0-bet… | |
| CVE-2026-71904 | Medium | 1.8% | 7.2 | Multiple DrayTek VigorAP models contain a command injection vulnerability in the tr069Test… | |
| CVE-2026-71913 | Medium | 1.8% | 7.2 | Multiple DrayTek VigorAP models contain a command injection vulnerability in the upload_se… | |
| CVE-2026-71916 | Medium | 1.8% | 7.2 | Multiple DrayTek VigorSwitch models contain a command injection vulnerability in the comma… | |
| CVE-2026-71931 | Medium | 1.8% | 7.2 | Multiple DrayTek VigorSwitch models contain a command injection vulnerability in the tftp_… | |
| CVE-2020-3572 | Medium | 1.8% | 8.6 | A vulnerability in the SSL/TLS session handler of Cisco Adaptive Security Appliance (ASA) … | |
| CVE-2025-57231 | Medium | 1.8% | 7.5 | Path Traversal in avatar attachments in Docmost v0.21.0 allows an unauthenticated maliciou… | |
| CVE-2019-12673 | Medium | 1.8% | 7.5 | A vulnerability in the FTP inspection engine of Cisco Adaptive Security (ASA) Software and… | |
| CVE-2024-21358 | Medium | 1.8% | 8.8 | Microsoft WDAC OLE DB provider for SQL Server Remote Code Execution Vulnerability | |
| CVE-2024-21360 | Medium | 1.8% | 8.8 | Microsoft WDAC OLE DB provider for SQL Server Remote Code Execution Vulnerability | |
| CVE-2024-21365 | Medium | 1.8% | 8.8 | Microsoft WDAC OLE DB provider for SQL Server Remote Code Execution Vulnerability | |
| CVE-2024-21366 | Medium | 1.8% | 8.8 | Microsoft WDAC OLE DB provider for SQL Server Remote Code Execution Vulnerability | |
| CVE-2024-21370 | Medium | 1.8% | 8.8 | Microsoft WDAC OLE DB provider for SQL Server Remote Code Execution Vulnerability |