Browse vulnerabilities
379,235 results
| CVE | Priority | EPSS | CVSS | KEV | What |
|---|---|---|---|---|---|
| CVE-2026-2942 | Medium | 1.1% | 9.8 | The ProSolution WP Client plugin for WordPress is vulnerable to arbitrary file uploads due… | |
| CVE-2021-26865 | Medium | 1.1% | 8.8 | Windows Container Execution Agent Elevation of Privilege Vulnerability | |
| CVE-2026-31228 | Medium | 1.1% | 9.8 | The Adversarial Robustness Toolbox (ART) thru 1.20.1 contains a remote code execution vuln… | |
| CVE-2026-66321 | Medium | 1.1% | 7.4 | Access of resource using incompatible type ('type confusion') in Microsoft Edge (Chromium-… | |
| CVE-2026-86184 | Medium | 1.1% | 9.8 | Lara Dashboard before 1.3.0 contains an authentication bypass vulnerability in the screens… | |
| CVE-2026-40984 | Medium | 1.1% | 7.5 | In Micrometer, it is possible for a user to provide specially crafted HTTP requests that m… | |
| CVE-2026-42440 | Medium | 1.1% | 7.5 | OOM Denial of Service via Unbounded Array Allocation in Apache OpenNLP AbstractModelReader… | |
| CVE-2023-22460 | Medium | 1.1% | 7.5 | go-ipld-prime is an implementation of the InterPlanetary Linked Data (IPLD) spec interface… | |
| CVE-2026-86242 | Medium | 1.1% | 8.1 | Bifrost HTTP transport before 2.0.0 accepts an enabled custom plugin whose path is an HTTP… | |
| CVE-2026-31040 | Medium | 1.1% | 9.8 | A vulnerability was identified in stata-mcp prior to v1.13.0 where insufficient validation… | |
| CVE-2026-67868 | Medium | 1.1% | 9.8 | A heap-based out-of-bounds write vulnerability exists in S2OPC 1.7.3 in server-side EventF… | |
| CVE-2026-67870 | Medium | 1.1% | 9.8 | In open62541 v1.5.5, the server-side AddReferences implementation contains an incomplete v… | |
| CVE-2026-75050 | Medium | 1.1% | 7.1 | In JetBrains YouTrack before 2026.1.13901, 2026.2.17950 doS attack was possible via craft… | |
| CVE-2026-18911 | Medium | 1.1% | 7.5 | ManageEngine DataSecurity Plus versions before 6310 are vulnerable to an agent authenticat… | |
| CVE-2026-40033 | Medium | 1.1% | 8.8 | FreeRDP before 3.26.0 contains a heap-buffer-overflow vulnerability in gdi_CacheToSurface … | |
| CVE-2026-44186 | Medium | 1.1% | 7.3 | Loop with Unreachable Exit Condition ('Infinite Loop') vulnerability in the mod_proxy_ftp … | |
| CVE-2026-67623 | Medium | 1.1% | 8.8 | Mistral Vibe before 2.23.3 contains a remote code execution vulnerability that allows atta… | |
| CVE-2026-5608 | Medium | 1.1% | 8.8 | A vulnerability was detected in Belkin F9K1122 1.00.33. Affected is the function formWlanS… | |
| CVE-2026-5610 | Medium | 1.1% | 8.8 | A vulnerability has been found in Belkin F9K1015 1.00.10. Affected by this issue is the fu… | |
| CVE-2026-5611 | Medium | 1.1% | 8.8 | A vulnerability was found in Belkin F9K1015 1.00.10. This affects the function formCrossBa… | |
| CVE-2026-5612 | Medium | 1.1% | 8.8 | A vulnerability was determined in Belkin F9K1015 1.00.10. This vulnerability affects the f… | |
| CVE-2026-5613 | Medium | 1.1% | 8.8 | A vulnerability was identified in Belkin F9K1015 1.00.10. This issue affects the function … | |
| CVE-2026-5628 | Medium | 1.1% | 8.8 | A security vulnerability has been detected in Belkin F9K1015 1.00.10. Impacted is the func… | |
| CVE-2026-5629 | Medium | 1.1% | 8.8 | A vulnerability was detected in Belkin F9K1015 1.00.10. The affected element is the functi… | |
| CVE-2026-73720 | Medium | 1.1% | 7.2 | Insecure file operations in the API of HPE Networking Fabric Composer could allow an authe… | |
| CVE-2026-73769 | Medium | 1.1% | 7.2 | A vulnerability in the web-based management interface of vulnerable CPPM systems could all… | |
| CVE-2026-76690 | Medium | 1.1% | 7.2 | A vulnerability exists in a component of the HPE Networking EdgeConnect SD-WAN Gateways th… | |
| CVE-2023-21800 | Medium | 1.1% | 7.8 | Windows Installer Elevation of Privilege Vulnerability | |
| CVE-2026-3987 | Medium | 1.1% | 7.2 | A path traversal vulnerability in the Fireware OS Web UI on WatchGuard Firebox systems may… | |
| CVE-2026-55175 | Medium | 1.1% | 7.5 | Spinnaker is an open source, multi-cloud continuous delivery platform. Prior to versions 2… | |
| CVE-2021-26887 | Medium | 1.1% | 7.8 | An elevation of privilege vulnerability exists in Microsoft Windows when Folder redirectio… | |
| CVE-2023-1829 | Medium | 1.1% | 7.8 | A use-after-free vulnerability in the Linux Kernel traffic control index filter (tcindex) … | |
| CVE-2026-3243 | Medium | 1.1% | 8.8 | The Advanced Members for ACF plugin for WordPress is vulnerable to arbitrary file deletion… | |
| CVE-2026-39862 | Medium | 1.1% | 8.8 | Tophat is a mobile applications testing harness. Prior to 2.5.1, Tophat is affected by rem… | |
| CVE-2026-65770 | Medium | 1.1% | 10.0 | Improper neutralization of argument delimiters in a command ('argument injection') in Azur… | |
| CVE-2023-35387 | Medium | 1.1% | 8.8 | Windows Bluetooth A2DP driver Elevation of Privilege Vulnerability | |
| CVE-2025-50329 | Medium | 1.1% | 9.8 | An issue in ConeXware, Inc Power Archiver v.22.00.11 and before allows a remote attacker t… | |
| CVE-2026-47114 | Medium | 1.1% | 8.8 | IINA before 1.4.3 contains a user-assisted command execution vulnerability that allows rem… | |
| CVE-2025-66273 | Medium | 1.1% | 7.2 | A command injection vulnerability has been reported to affect several QNAP operating syste… | |
| CVE-2025-66279 | Medium | 1.1% | 7.2 | A command injection vulnerability has been reported to affect several QNAP operating syste… | |
| CVE-2026-75686 | Medium | 1.1% | 9.3 | Adobe Connect is affected by an Improper Input Validation vulnerability that could result … | |
| CVE-2026-15068 | Medium | 1.1% | 9.9 | IBM AIX 7.2, and 7.3 and IBM PowerVM VIOS 4.1 NIM could allow a remote authenticated attac… | |
| CVE-2021-34498 | Medium | 1.0% | 7.8 | Windows GDI Elevation of Privilege Vulnerability | |
| CVE-2021-34512 | Medium | 1.0% | 7.8 | Windows Storage Spaces Controller Elevation of Privilege Vulnerability | |
| CVE-2021-34513 | Medium | 1.0% | 7.8 | Windows Storage Spaces Controller Elevation of Privilege Vulnerability | |
| CVE-2026-45661 | Medium | 1.0% | 9.9 | Dokploy is a free, self-hostable Platform as a Service (PaaS). In 0.26.5 and earlier, a cr… | |
| CVE-2026-70579 | Medium | 1.0% | 7.5 | Out-of-bounds read in Windows Mobile Broadband allows an unauthorized attacker to disclose… | |
| CVE-2026-77521 | Medium | 1.0% | 10.0 | MaxKB is an open-source AI assistant for enterprise. Prior to version 2.10.5-lts, assistan… | |
| CVE-2026-88889 | Medium | 1.0% | 7.8 | Renovate before 44.14.7 contains a command injection vulnerability in the Maven Wrapper ma… | |
| CVE-2026-93012 | Medium | 1.0% | 9.8 | Email::Sender::Transport::Sendmail versions before 2.602 for Perl allow arbitrary command … |