Browse vulnerabilities
379,813 results
| CVE | Priority | EPSS | CVSS | KEV | What |
|---|---|---|---|---|---|
| CVE-2026-47066 | Medium | 0.7% | 7.5 | Loop with Unreachable Exit Condition ('Infinite Loop') vulnerability in benoitc hackney al… | |
| CVE-2026-47067 | Medium | 0.7% | 7.5 | Allocation of Resources Without Limits or Throttling vulnerability in benoitc hackney allo… | |
| CVE-2026-47071 | Medium | 0.7% | 7.5 | Uncontrolled Resource Consumption vulnerability in benoitc hackney allows Flooding. The SO… | |
| CVE-2026-47077 | Medium | 0.7% | 7.5 | Allocation of Resources Without Limits or Throttling vulnerability in benoitc hackney allo… | |
| CVE-2026-48594 | Medium | 0.7% | 7.5 | Improper Handling of Highly Compressed Data (Data Amplification) vulnerability in elixir-t… | |
| CVE-2026-49755 | Medium | 0.7% | 7.5 | Improper Handling of Highly Compressed Data (Data Amplification) vulnerability in wojtekma… | |
| CVE-2026-53069 | Medium | 0.7% | 7.5 | In the Linux kernel, the following vulnerability has been resolved: net, bpf: fix null-pt… | |
| CVE-2026-57227 | Medium | 0.7% | 7.5 | Suricata is a network Intrusion Detection System, Intrusion Prevention System and Network … | |
| CVE-2026-59932 | Medium | 0.7% | 7.5 | PhpSpreadsheet is a pure PHP library for reading and writing spreadsheet files. In version… | |
| CVE-2026-59933 | Medium | 0.7% | 7.5 | PhpSpreadsheet is a pure PHP library for reading and writing spreadsheet files. In version… | |
| CVE-2026-64116 | Medium | 0.7% | 7.5 | In the Linux kernel, the following vulnerability has been resolved: ipv6: ioam: add NULL … | |
| CVE-2026-64430 | Medium | 0.7% | 7.5 | In the Linux kernel, the following vulnerability has been resolved: NTB: epf: Avoid calli… | |
| CVE-2026-67215 | Medium | 0.7% | 7.5 | cJSON through 1.7.19 is vulnerable to uncontrolled recursion leading to stack exhaustion w… | |
| CVE-2026-68129 | Medium | 0.7% | 7.5 | In the Linux kernel, the following vulnerability has been resolved: gve: fix Rx queue sta… | |
| CVE-2026-74281 | Medium | 0.7% | 7.5 | In the Linux kernel, the following vulnerability has been resolved: tipc: reject inverted… | |
| CVE-2026-74621 | Medium | 0.7% | 7.5 | In the Linux kernel, the following vulnerability has been resolved: net/sched: act_ct: fi… | |
| CVE-2026-74692 | Medium | 0.7% | 7.5 | In the Linux kernel, the following vulnerability has been resolved: net/smc: fix TOCTOU r… | |
| CVE-2026-74696 | Medium | 0.7% | 7.5 | In the Linux kernel, the following vulnerability has been resolved: tcp: fix TFO max_qlen… | |
| CVE-2026-90067 | Medium | 0.7% | 7.5 | In the Linux kernel, the following vulnerability has been resolved: libceph: validate ban… | |
| CVE-2026-90228 | Medium | 0.7% | 7.5 | In the Linux kernel, the following vulnerability has been resolved: nvmet: fix NULL point… | |
| CVE-2026-92787 | Medium | 0.7% | 9.8 | Feast through 0.66.0 fails to verify JWT token signatures before establishing user identit… | |
| CVE-2026-93151 | Medium | 0.7% | 7.5 | In the Linux kernel, the following vulnerability has been resolved: nvmet-rdma: fix respo… | |
| CVE-2026-93488 | Medium | 0.7% | 7.5 | A flaw was found in Netty. SpdySessionHandler accepts an unlimited number of concurrent re… | |
| CVE-2021-40447 | Medium | 0.7% | 7.8 | Windows Print Spooler Elevation of Privilege Vulnerability | |
| CVE-2024-38250 | Medium | 0.7% | 7.8 | Windows Graphics Component Elevation of Privilege Vulnerability | |
| CVE-2024-56626 | Medium | 0.7% | 8.8 | In the Linux kernel, the following vulnerability has been resolved: ksmbd: fix Out-of-Bou… | |
| CVE-2026-15017 | Medium | 0.7% | 8.8 | The MDJM Event Management plugin for WordPress is vulnerable to Privilege Escalation in al… | |
| CVE-2026-34617 | Medium | 0.7% | 8.7 | Adobe Connect versions 2025.3, 12.10 and earlier are affected by a Cross-Site Scripting (X… | |
| CVE-2026-34686 | Medium | 0.7% | 8.7 | Adobe Commerce versions 2.4.9-beta1, 2.4.8-p4, 2.4.7-p9, 2.4.6-p14, 2.4.5-p16, 2.4.4-p17 a… | |
| CVE-2026-41249 | Medium | 0.7% | 8.2 | CoreShop is a Pimcore enhanced eCommerce solution. In versions 5.0.1 through 5.1.0-beta.1,… | |
| CVE-2026-47994 | Medium | 0.7% | 8.7 | Adobe Commerce is affected by a stored Cross-Site Scripting (XSS) vulnerability that could… | |
| CVE-2026-58163 | Medium | 0.7% | 7.5 | Apache Traffic Server mishandles on-disk cache fields and object lifetimes, corrupting sta… | |
| CVE-2026-63462 | Medium | 0.7% | 7.5 | Unleash is an open-source feature management platform. Prior to 7.5.2, 7.6.5, and 8.0.2, t… | |
| CVE-2026-15218 | Medium | 0.7% | 7.9 | A flaw was found in the maas-api and maas-controller ServiceAccounts within Red Hat OpenSh… | |
| CVE-2026-33870 | Medium | 0.7% | 7.5 | Netty is an asynchronous, event-driven network application framework. In versions prior to… | |
| CVE-2026-43629 | Medium | 0.7% | 8.1 | llama.cpp builds b4882 through b9058 contain a heap buffer overflow vulnerability in the K… | |
| CVE-2026-43777 | Medium | 0.7% | 7.5 | This issue was addressed with improved input validation. This issue is fixed in macOS Sequ… | |
| CVE-2026-49987 | Medium | 0.7% | 8.8 | Repomix is a tool that packs repositories into AI-friendly files. Prior to 1.14.1, src/cor… | |
| CVE-2026-65364 | Medium | 0.7% | 7.5 | An out-of-bounds read was addressed with improved bounds checking. This issue is fixed in … | |
| CVE-2026-73633 | Medium | 0.7% | 7.5 | Uncontrolled resource consumption vulnerability in the JSON plugin of Apache Struts. When … | |
| CVE-2026-73635 | Medium | 0.7% | 7.5 | Allocation of resources without limits or throttling vulnerability in Apache Struts. When … | |
| CVE-2026-84553 | Medium | 0.7% | 7.5 | A resource exhaustion issue was addressed with improved input validation. This issue is fi… | |
| CVE-2026-89649 | Medium | 0.7% | 9.1 | In the Linux kernel, the following vulnerability has been resolved: ceph: bound xattr val… | |
| CVE-2026-93569 | Medium | 0.7% | 8.2 | A flaw was found in Netty. A remote unauthenticated attacker can exploit a vulnerability i… | |
| CVE-2026-45583 | Medium | 0.7% | 7.5 | Improper control of generation of code ('code injection') in Microsoft Exchange Server all… | |
| CVE-2026-63559 | Medium | 0.7% | 7.5 | An integer overflow in the UA_Variant arrayDimensions product computation in open62541 ma… | |
| CVE-2026-65646 | Medium | 0.7% | 9.9 | Improper neutralization of special elements in in Plesk's DNS zone management functionalit… | |
| CVE-2026-82448 | Medium | 0.7% | 9.8 | Shinobi before commit 5a76c74f contains a hardcoded connection key in the child node servi… | |
| CVE-2024-26689 | Medium | 0.7% | 8.8 | In the Linux kernel, the following vulnerability has been resolved: ceph: prevent use-aft… | |
| CVE-2024-53217 | Medium | 0.7% | 7.5 | In the Linux kernel, the following vulnerability has been resolved: NFSD: Prevent NULL de… |