Browse vulnerabilities
379,813 results
| CVE | Priority | EPSS | CVSS | KEV | What |
|---|---|---|---|---|---|
| CVE-2026-16919 | Medium | 0.8% | 9.8 | IBM AIX 7.2, and 7.3 and IBM PowerVM VIOS 4.1 could allow a remote attacker to execute arb… | |
| CVE-2026-17118 | Medium | 0.8% | 9.8 | IBM AIX 7.2, and 7.3 and IBM PowerVM VIOS 4.1 could allow a remote attacker to execute arb… | |
| CVE-2026-17136 | Medium | 0.8% | 9.8 | IBM AIX 7.2, and 7.3 and IBM PowerVM VIOS 4.1 could allow a remote attacker to execute arb… | |
| CVE-2026-17160 | Medium | 0.8% | 9.8 | IBM AIX 7.2, and 7.3 and IBM PowerVM VIOS 4.1 could allow a remote attacker to execute arb… | |
| CVE-2026-17184 | Medium | 0.8% | 9.8 | IBM Db2 Mirror for i 7.4, 7.5, and 7.6 could allow a remote attacker to execute arbitrary … | |
| CVE-2026-17218 | Medium | 0.8% | 9.8 | IBM i 7.6, 7.5, 7.4, and 7.3 could allow a remote attacker to execute arbitrary code due t… | |
| CVE-2026-17482 | Medium | 0.8% | 9.8 | IBM Documentation Offline 1.0.0 through 1.4.1 could allow a remote attacker to execute arb… | |
| CVE-2026-73125 | Medium | 0.8% | 9.8 | Ebyte device web management interface does not consistently enforce authentication before… | |
| CVE-2026-85878 | Medium | 0.8% | 9.9 | Improper authorization in Azure Database for PostgreSQL allows an authorized attacker to e… | |
| CVE-2024-26811 | Medium | 0.8% | 9.8 | In the Linux kernel, the following vulnerability has been resolved: ksmbd: validate paylo… | |
| CVE-2026-16816 | Medium | 0.8% | 9.9 | IBM AIX 7.2, and 7.3 and IBM PowerVM VIOS 4.1 could allow a remote authenticated attacker … | |
| CVE-2026-16906 | Medium | 0.8% | 8.8 | IBM i 7.6, and 7.5 could allow a remote authenticated attacker to execute arbitrary comman… | |
| CVE-2026-17417 | Medium | 0.8% | 8.8 | IBM i 7.6, 7.5, 7.4, and 7.3 could allow a remote authenticated attacker to execute arbitr… | |
| CVE-2026-17623 | Medium | 0.8% | 8.8 | IBM Langflow OSS 1.0.0 through 1.10.3 could allow a remote authenticated attacker to execu… | |
| CVE-2026-17642 | Medium | 0.8% | 8.8 | IBM i 7.6, 7.5, 7.4, and 7.3 could allow a remote authenticated attacker to execute arbitr… | |
| CVE-2026-18835 | Medium | 0.8% | 9.9 | IBM AIX 7.2, and 7.3 and IBM PowerVM VIOS 4.1 could allow a remote authenticated attacker … | |
| CVE-2026-46746 | Medium | 0.8% | 8.8 | A vulnerability has been identified in SINEC INS (All versions < V1.0 SP2 Update 6). The a… | |
| CVE-2026-48448 | Medium | 0.8% | 8.6 | Adobe Campaign Classic (ACC) is affected by an Improper Neutralization of Special Elements… | |
| CVE-2026-78575 | Medium | 0.8% | 8.8 | IBM Langflow OSS 1.0.0 through 1.11.5 could allow a remote authenticated attacker to execu… | |
| CVE-2026-82098 | Medium | 0.8% | 8.8 | IBM DataStage on Cloud Pak for Data 5.4.0.0 could allow a remote authenticated attacker to… | |
| CVE-2026-96541 | Medium | 0.8% | 7.5 | A denial-of-service flaw was found in gnome-remote-desktop. An unauthenticated remote atta… | |
| CVE-2026-49494 | Medium | 0.8% | 7.5 | Xcitium Client Security (XCS) before 13.8.2.10019 and Comodo Internet Security (CIS) throu… | |
| CVE-2026-50270 | Medium | 0.8% | 7.5 | dd-trace-java is a Datadog APM client for Java. Prior to 1.62.0, W3C baggage extraction do… | |
| CVE-2026-50271 | Medium | 0.8% | 7.5 | Datadog dd-trace-py is the Datadog Python APM client. Prior to 4.8.2, Datadog tracing libr… | |
| CVE-2026-50272 | Medium | 0.8% | 7.5 | dd-trace is the Datadog APM client for Node.js. Prior to 5.100.0, W3C baggage propagation … | |
| CVE-2026-50274 | Medium | 0.8% | 7.5 | Datadog dd-trace-go is a Go client library for Datadog application performance monitoring,… | |
| CVE-2026-50276 | Medium | 0.8% | 7.5 | dd-trace-rb is Datadog's client library for Ruby. Prior to 2.32.0, W3C baggage extraction … | |
| CVE-2026-50277 | Medium | 0.8% | 7.5 | dd-trace-cpp is the Datadog distributed tracing library for C++. Prior to 2.1.0, dd-trace-… | |
| CVE-2026-54788 | Medium | 0.8% | 7.5 | dd-trace-rs provides Datadog application performance monitoring for Rust. From 0.1.0 until… | |
| CVE-2026-72033 | Medium | 0.8% | 9.8 | In the Linux kernel, the following vulnerability has been resolved: orangefs: keep the re… | |
| CVE-2026-73507 | Medium | 0.8% | 7.5 | Netty is an asynchronous, event-driven network application framework. Prior to 4.1.136.Fin… | |
| CVE-2026-74394 | Medium | 0.8% | 9.8 | In the Linux kernel, the following vulnerability has been resolved: RDMA/srpt: fix intege… | |
| CVE-2026-86076 | Medium | 0.8% | 8.8 | n8n is an open source workflow automation platform. Prior to 1.123.76, 2.37.7, and 2.38.2,… | |
| CVE-2026-89059 | Medium | 0.8% | 7.5 | A flaw was found in RESTEasy's IIOImageProvider, which decodes attacker-supplied image req… | |
| CVE-2026-90151 | Medium | 0.8% | 9.8 | In the Linux kernel, the following vulnerability has been resolved: NFSv4: remove callbac… | |
| CVE-2026-93558 | Medium | 0.8% | 7.5 | A flaw was found in Netty's WebSocketServerExtensionHandler. A remote, unauthenticated att… | |
| CVE-2026-93564 | Medium | 0.8% | 7.5 | A flaw was found in Netty. A reference-count leak in the HAProxy PROXY-v2 message decoder … | |
| CVE-2024-40923 | Medium | 0.8% | 9.8 | In the Linux kernel, the following vulnerability has been resolved: vmxnet3: disable rx d… | |
| CVE-2026-16096 | Medium | 0.8% | 8.8 | A vulnerability has been found in Shibby Tomato 1.28 RT-N5x MIPSR2 Build 124. This affects… | |
| CVE-2026-18607 | Medium | 0.8% | 8.8 | A security vulnerability has been detected in Wavlink WN572, WN570H, WN573, WN529, WN530, … | |
| CVE-2026-49164 | Medium | 0.8% | 8.1 | Heap-based buffer overflow in Active Directory Domain Services allows an unauthorized atta… | |
| CVE-2026-50439 | Medium | 0.8% | 8.1 | Use after free in Microsoft Message Queuing Queue Manager allows an unauthorized attacker … | |
| CVE-2026-50487 | Medium | 0.8% | 8.1 | Use after free in Microsoft Windows DNS allows an unauthorized attacker to elevate privile… | |
| CVE-2026-50694 | Medium | 0.8% | 8.1 | Use after free in Windows Secure Socket Tunneling Protocol (SSTP) allows an unauthorized a… | |
| CVE-2026-50775 | Medium | 0.8% | 9.8 | A blind SSRF attack in DataHub v.1.5.0.1 allows a remote attacker to execute arbitrary cod… | |
| CVE-2026-5544 | Medium | 0.8% | 8.8 | A security flaw has been discovered in UTT HiPER 1250GW up to 3.2.7-210907-180535. The imp… | |
| CVE-2026-55579 | Medium | 0.8% | 9.8 | Pheditor is a single-file editor and file manager written in PHP. From version 2.0.1 to be… | |
| CVE-2026-5566 | Medium | 0.8% | 8.8 | A vulnerability was detected in UTT HiPER 1250GW up to 3.2.7-210907-180535. This affects t… | |
| CVE-2026-57087 | Medium | 0.8% | 8.8 | Heap-based buffer overflow in Microsoft Windows Media Foundation allows an unauthorized at… | |
| CVE-2026-68004 | Medium | 0.8% | 9.8 | An issue in OSSRS SRS (Simple Realtime Server) <v5.0.213 allows a remote attacker to execu… |