Browse vulnerabilities
379,813 results
| CVE | Priority | EPSS | CVSS | KEV | What |
|---|---|---|---|---|---|
| CVE-2026-74625 | Medium | 0.7% | 7.5 | In the Linux kernel, the following vulnerability has been resolved: netfilter: bridge: re… | |
| CVE-2026-74626 | Medium | 0.7% | 7.5 | In the Linux kernel, the following vulnerability has been resolved: NTB: ntb_netdev: Pres… | |
| CVE-2026-74717 | Medium | 0.7% | 7.5 | In the Linux kernel, the following vulnerability has been resolved: net/mlx5: fw_tracer, … | |
| CVE-2026-75169 | Medium | 0.7% | 8.8 | An arbitrary file upload vulnerability in /cgi-bin/ugwupload.cgi of MBS-Solutions X-Serie … | |
| CVE-2026-75897 | Medium | 0.7% | 7.5 | Improper input validation in the capabilities route handler in OpenSearch Dashboards - the… | |
| CVE-2026-79310 | Medium | 0.7% | 8.5 | webpy web.py 0.76 is vulnerable to server-side template injection (SSTI). The template eng… | |
| CVE-2026-80527 | Medium | 0.7% | 7.5 | In the Linux kernel, the following vulnerability has been resolved: ceph: fix hanging __c… | |
| CVE-2026-80646 | Medium | 0.7% | 7.5 | In the Linux kernel, the following vulnerability has been resolved: ipv6: guard against p… | |
| CVE-2026-80987 | Medium | 0.7% | 7.5 | In the Linux kernel, the following vulnerability has been resolved: NTB: ntb_transport: R… | |
| CVE-2026-87824 | Medium | 0.7% | 7.5 | zstd-jni before 1.5.7-14 fails to validate the samples buffer capacity in Zstd.trainFromBu… | |
| CVE-2026-89476 | Medium | 0.7% | 7.5 | In the Linux kernel, the following vulnerability has been resolved: sctp: fix stream->out… | |
| CVE-2026-89477 | Medium | 0.7% | 7.5 | In the Linux kernel, the following vulnerability has been resolved: sctp: fix NULL deref … | |
| CVE-2026-89511 | Medium | 0.7% | 7.5 | In the Linux kernel, the following vulnerability has been resolved: qede: Fix NULL pointe… | |
| CVE-2026-89549 | Medium | 0.7% | 7.5 | In the Linux kernel, the following vulnerability has been resolved: sunrpc: route to a po… | |
| CVE-2026-89684 | Medium | 0.7% | 7.5 | In the Linux kernel, the following vulnerability has been resolved: nfsd: fix cpntf publi… | |
| CVE-2026-89699 | Medium | 0.7% | 7.5 | In the Linux kernel, the following vulnerability has been resolved: nfsd: validate symlin… | |
| CVE-2026-90102 | Medium | 0.7% | 7.5 | In the Linux kernel, the following vulnerability has been resolved: NFSv4/pnfs: key the d… | |
| CVE-2026-90103 | Medium | 0.7% | 7.5 | In the Linux kernel, the following vulnerability has been resolved: NFSv4.2: fix LAYOUTST… | |
| CVE-2026-90293 | Medium | 0.7% | 7.5 | In the Linux kernel, the following vulnerability has been resolved: IB/isert: post the fu… | |
| CVE-2026-90294 | Medium | 0.7% | 7.5 | In the Linux kernel, the following vulnerability has been resolved: IB/isert: delay the f… | |
| CVE-2023-36898 | Medium | 0.7% | 7.8 | Tablet Windows User Interface Application Core Remote Code Execution Vulnerability | |
| CVE-2023-6931 | Medium | 0.7% | 7.8 | A heap out-of-bounds write vulnerability in the Linux kernel's Performance Events system c… | |
| CVE-2024-26582 | Medium | 0.7% | 9.8 | In the Linux kernel, the following vulnerability has been resolved: net: tls: fix use-aft… | |
| CVE-2025-45145 | Medium | 0.7% | 7.5 | Directory traversal in Follett Software's Destiny Library Manager 22_0_2_rc1 and fixed in … | |
| CVE-2026-11352 | Medium | 0.7% | 7.5 | An issue in curl’s QUIC UDP receive function allows a malicious HTTP/3 server to trigger a… | |
| CVE-2026-42557 | Medium | 0.7% | 9.6 | jupyterlab is an extensible environment for interactive and reproducible computing, based … | |
| CVE-2026-74987 | Medium | 0.7% | 9.8 | Internally found bugs present in Thunderbird ESR 140.13, Thunderbird ESR 153.0 and Thunder… | |
| CVE-2026-74990 | Medium | 0.7% | 9.8 | Internally found bugs present in Thunderbird ESR 140.13, Thunderbird ESR 153.0 and Thunder… | |
| CVE-2026-80133 | Medium | 0.7% | 7.4 | Dell SCG 5.0 Appliance versions prior to 5.36.00.16 and Dell SCG 5.0 Application versions … | |
| CVE-2026-86153 | Medium | 0.7% | 9.1 | A vulnerability has been found in Tenda CP3 27.5.57.101. This affects the function CRedirS… | |
| CVE-2026-86712 | Medium | 0.7% | 8.8 | SiYuan before 3.8.2 trusts the attacker-writable text/siyuan clipboard MIME type and skips… | |
| CVE-2026-9323 | Medium | 0.7% | 8.1 | The urwid web display backend (urwid/display/web.py) generates web session identifiers (ur… | |
| CVE-2024-26782 | Medium | 0.7% | 9.8 | In the Linux kernel, the following vulnerability has been resolved: mptcp: fix double-fre… | |
| CVE-2024-43460 | Medium | 0.7% | 8.1 | Improper authorization in Dynamics 365 Business Central resulted in a vulnerability that a… | |
| CVE-2026-64268 | Medium | 0.7% | 9.8 | In the Linux kernel, the following vulnerability has been resolved: RDMA/siw: bound Read … | |
| CVE-2026-64269 | Medium | 0.7% | 9.1 | In the Linux kernel, the following vulnerability has been resolved: RDMA/rtrs-srv: Bound … | |
| CVE-2026-78654 | Medium | 0.7% | 7.3 | A vulnerability has been found in cleverbrush framework and deep up to 4.4.0. This impacts… | |
| CVE-2026-86189 | Medium | 0.7% | 9.8 | WWBN AVideo contains a path traversal vulnerability in notify.ffmpeg.json.php that allows … | |
| CVE-2021-47244 | Medium | 0.7% | 8.2 | In the Linux kernel, the following vulnerability has been resolved: mptcp: Fix out of bou… | |
| CVE-2022-41085 | Medium | 0.7% | 7.5 | Azure CycleCloud Elevation of Privilege Vulnerability | |
| CVE-2024-46763 | Medium | 0.7% | 7.5 | In the Linux kernel, the following vulnerability has been resolved: fou: Fix null-ptr-der… | |
| CVE-2026-61899 | Medium | 0.7% | 7.5 | Vulnerability in tapestry-core in Apache Tapestry 5.5.0+ on all platforms allows attackers… | |
| CVE-2026-67854 | Medium | 0.7% | 9.8 | SQL Injection vulnerability in Qcms v.6.0.6 allows a remote attacker to execute arbitrary … | |
| CVE-2026-10818 | Medium | 0.7% | 8.1 | The WPForms Pro plugin for WordPress is vulnerable to Arbitrary File Upload in all version… | |
| CVE-2026-15015 | Medium | 0.7% | 9.8 | The MountDev AI MCP Connector for WordPress plugin for WordPress is vulnerable to authoriz… | |
| CVE-2026-47995 | Medium | 0.7% | 8.1 | Adobe Commerce is affected by a stored Cross-Site Scripting (XSS) vulnerability that could… | |
| CVE-2026-92749 | Medium | 0.7% | 8.1 | SafeLine through 9.4.1 derives the management console session-signing secret from a time-s… | |
| CVE-2026-93606 | Medium | 0.7% | 10.0 | vm2 (npm) versions 3.12.0 and earlier contain a sandbox escape in `VM` and `NodeVM`. When … | |
| CVE-2021-26864 | Medium | 0.7% | 8.4 | Windows Virtual Registry Provider Elevation of Privilege Vulnerability | |
| CVE-2024-20339 | Medium | 0.7% | 8.6 | A vulnerability in the TLS processing feature of Cisco Firepower Threat Defense (FTD) Soft… |