Browse vulnerabilities
958 results
| CVE | Priority | EPSS | CVSS | KEV | What |
|---|---|---|---|---|---|
| CVE-2021-40438 | Act now | 100.0% | 9.0 | ● | A crafted request uri-path can cause mod_proxy to forward the request to an origin server … |
| CVE-2022-47986 | Act now | 100.0% | — | ● | IBM Aspera Faspex could allow a remote attacker to execute code on the system, caused by a… |
| CVE-2017-12615 | Act now | 99.6% | 8.1 | ● | When running Apache Tomcat 7.0.0 to 7.0.79 on Windows with HTTP PUTs enabled (e.g. via set… |
| CVE-2015-7450 | Act now | 97.8% | — | ● | Serialized-object interfaces in certain IBM analytics, business solutions, cognitive, IT i… |
| CVE-2021-4034 | Act now | 94.3% | 7.8 | ● | A local privilege escalation vulnerability was found on polkit's pkexec utility. The pkexe… |
| CVE-2019-4716 | Act now | 86.4% | — | ● | IBM Planning Analytics is vulnerable to a configuration overwrite that allows an unauthent… |
| CVE-2020-4427 | Act now | 70.0% | — | ● | IBM Data Risk Manager contains a security bypass vulnerability that could allow a remote a… |
| CVE-2020-4430 | Act now | 68.5% | — | ● | IBM Data Risk Manager contains a directory traversal vulnerability that could allow a remo… |
| CVE-2020-4428 | Act now | 61.7% | — | ● | IBM Data Risk Manager contains an unspecified vulnerability which could allow a remote, au… |
| CVE-2026-9198 | Act now | 28.7% | 9.8 | ● | IBM Langflow OSS 1.0.0 through 1.10.0 allows unauthenticated attackers to chain /api/v1/au… |
| CVE-2024-1086 | Act now | 28.1% | 7.8 | ● | A use-after-free vulnerability in the Linux kernel's netfilter: nf_tables component can be… |
| CVE-2023-46847 | High | 88.4% | 8.6 | Squid is vulnerable to a Denial of Service, where a remote attacker can perform buffer ov… | |
| CVE-2024-12085 | Medium | 8.8% | 7.5 | A flaw was found in rsync which could be triggered when rsync compares file checksums. Thi… | |
| CVE-2026-19295 | Medium | 3.3% | 9.9 | IBM Langflow OSS 1.0.0 through 1.11.1 allows an authenticated attacker to execute arbitrar… | |
| CVE-2026-17179 | Medium | 3.1% | 8.5 | IBM Db2 Mirror for i 7.4, 7.5, and 7.6 could allow a remote authenticated attacker to caus… | |
| CVE-2026-9103 | Medium | 2.8% | 9.8 | IBM Langflow OSS 1.0.0 through 1.10.0 could allow a remote attacker to gain unauthorized a… | |
| CVE-2000-1239 | Medium | 2.1% | 9.0 | The HTTP interface of Tivoli Lightweight Client Framework (LCF) in IBM Tivoli Management F… | |
| CVE-2026-81669 | Medium | 2.0% | 7.2 | IBM Guardium Data Protection 12.2 is vulnerable to a command injection vulnerability in th… | |
| CVE-2026-81937 | Medium | 2.0% | 7.2 | IBM Guardium Data Protection 12.2 is vulnerable to a command injection vulnerability in th… | |
| CVE-2026-84071 | Medium | 2.0% | 7.2 | IBM Guardium Data Protection 12.2 is vulnerable to OS command injection in the Universal C… | |
| CVE-2026-18729 | Medium | 1.9% | 8.8 | IBM Langflow OSS 1.0.0 through 1.11.1 could allow a remote authenticated attacker to execu… | |
| CVE-2026-16468 | Medium | 1.7% | 8.8 | IBM DataStage on Cloud Pak for Data 5.4.0.0 could allow a remote authenticated attacker to… | |
| CVE-2024-1132 | Medium | 1.6% | 8.1 | A flaw was found in Keycloak, where it does not properly validate URLs included in a redir… | |
| CVE-2026-14959 | Medium | 1.6% | 9.1 | IBM Aspera Faspex 5 5.0.0 through 5.0.15.4 could allow a remote authenticated attacker to … | |
| CVE-2026-16850 | Medium | 1.5% | 8.8 | IBM AIX 7.2, and 7.3 and IBM PowerVM VIOS 4.1 could allow a remote attacker to execute arb… | |
| CVE-2026-6721 | Medium | 1.4% | 9.8 | IBM Concert 1.0.0 through 3.0.0 allows an unauthenticated remote attacker can supply speci… | |
| CVE-2025-6021 | Medium | 1.4% | 7.5 | A flaw was found in libxml2's xmlBuildQName function, where integer overflows in buffer si… | |
| CVE-2023-6563 | Medium | 1.2% | 7.7 | An unconstrained memory consumption vulnerability was discovered in Keycloak. It can be tr… | |
| CVE-2022-1011 | Medium | 1.2% | 7.8 | A use-after-free flaw was found in the Linux kernel’s FUSE filesystem in the way a user tr… | |
| CVE-2026-42009 | Medium | 1.1% | 7.5 | A flaw was found in gnutls. A remote attacker could exploit an issue in the Datagram Trans… | |
| CVE-2026-15068 | Medium | 1.1% | 9.9 | IBM AIX 7.2, and 7.3 and IBM PowerVM VIOS 4.1 NIM could allow a remote authenticated attac… | |
| CVE-2026-8505 | Medium | 1.0% | 9.8 | IBM Langflow OSS 1.0.0 through 1.10.0 has a vulnerability in Langflow's webhook authentica… | |
| CVE-2026-19446 | Medium | 1.0% | 7.5 | IBM AIX 7.2, and 7.3 and IBM PowerVM VIOS 4.1 allows a remote unauthenticated attacker can… | |
| CVE-2026-14522 | Medium | 1.0% | 8.8 | IBM App Connect Enterprise 13.0.1.0 through 13.0.7.2, and 12.0.1.0 through 12.0.12.27 coul… | |
| CVE-2026-80442 | Medium | 1.0% | 9.9 | IBM Guardium Data Protection 12.2 is vulnerable to an authenticated OS command injection v… | |
| CVE-2026-81537 | Medium | 1.0% | 8.8 | IBM DataStage on Cloud Pak for Data 5.4.0.0 could allow a remote authenticated attacker to… | |
| CVE-2026-8476 | Medium | 1.0% | 9.9 | IBM Langflow OSS 1.0.0 through 1.10.0 contain a critical remote code execution vulnerabili… | |
| CVE-2026-14512 | Medium | 1.0% | 9.8 | IBM WebSphere Application Server 9.0, and 8.5 traditional is vulnerable to pre-authenticat… | |
| CVE-2023-6291 | Medium | 1.0% | 7.1 | A flaw was found in the redirect_uri validation logic in Keycloak. This issue may allow a … | |
| CVE-2026-12940 | Medium | 0.9% | 9.8 | IBM Langflow OSS 1.0.0 through 1.10.1 are vulnerable to unauthenticated remote code execu… | |
| CVE-2026-8633 | Medium | 0.9% | 9.8 | IBM Web Server Plug-ins for WebSphere Application Server and WebSphere Liberty 8.5, 9.0 IB… | |
| CVE-2026-16469 | Medium | 0.9% | 8.8 | IBM DataStage on Cloud Pak for Data 5.4.0.0 px-runtime could allow a remote authenticated … | |
| CVE-2026-80379 | Medium | 0.9% | 8.8 | IBM DataStage on Cloud Pak for Data 5.4.0.0 could allow a remote authenticated attacker to… | |
| CVE-2026-80425 | Medium | 0.9% | 8.8 | IBM DataStage on Cloud Pak for Data 5.4.0.0 could allow a remote authenticated attacker to… | |
| CVE-2026-17142 | Medium | 0.9% | 9.8 | IBM AIX 7.2, and 7.3 and IBM PowerVM VIOS 4.1 could allow a remote attacker to execute arb… | |
| CVE-2026-17481 | Medium | 0.9% | 8.8 | IBM Documentation Offline 1.0.0 through 1.4.1 could allow a remote attacker to execute arb… | |
| CVE-2026-16466 | Medium | 0.9% | 8.8 | IBM DataStage on Cloud Pak for Data 5.4.0.0 IBM DataStage could allow a remote authenticat… | |
| CVE-2026-84086 | Medium | 0.9% | 7.2 | IBM Guardium Data Protection 12.2 could allow a remote authenticated attacker to execute a… | |
| CVE-2026-16882 | Medium | 0.9% | 9.8 | IBM AIX 7.2, and 7.3 and IBM PowerVM VIOS 4.1 could allow a remote attacker to execute arb… | |
| CVE-2026-16956 | Medium | 0.9% | 9.8 | IBM Db2 Mirror for i 7.4, 7.5, and 7.6 could allow a remote attacker to execute arbitrary … |
Page 1 of 20
Next →