Browse vulnerabilities

958 results

CVEPriorityEPSSCVSSKEVWhat
CVE-2021-40438 Act now 100.0% 9.0 ● A crafted request uri-path can cause mod_proxy to forward the request to an origin server …
CVE-2022-47986 Act now 100.0% — ● IBM Aspera Faspex could allow a remote attacker to execute code on the system, caused by a…
CVE-2017-12615 Act now 99.6% 8.1 ● When running Apache Tomcat 7.0.0 to 7.0.79 on Windows with HTTP PUTs enabled (e.g. via set…
CVE-2015-7450 Act now 97.8% — ● Serialized-object interfaces in certain IBM analytics, business solutions, cognitive, IT i…
CVE-2021-4034 Act now 94.3% 7.8 ● A local privilege escalation vulnerability was found on polkit's pkexec utility. The pkexe…
CVE-2019-4716 Act now 86.4% — ● IBM Planning Analytics is vulnerable to a configuration overwrite that allows an unauthent…
CVE-2020-4427 Act now 70.0% — ● IBM Data Risk Manager contains a security bypass vulnerability that could allow a remote a…
CVE-2020-4430 Act now 68.5% — ● IBM Data Risk Manager contains a directory traversal vulnerability that could allow a remo…
CVE-2020-4428 Act now 61.7% — ● IBM Data Risk Manager contains an unspecified vulnerability which could allow a remote, au…
CVE-2026-9198 Act now 28.7% 9.8 ● IBM Langflow OSS 1.0.0 through 1.10.0 allows unauthenticated attackers to chain /api/v1/au…
CVE-2024-1086 Act now 28.1% 7.8 ● A use-after-free vulnerability in the Linux kernel's netfilter: nf_tables component can be…
CVE-2023-46847 High 88.4% 8.6 Squid is vulnerable to a Denial of Service, where a remote attacker can perform buffer ov…
CVE-2024-12085 Medium 8.8% 7.5 A flaw was found in rsync which could be triggered when rsync compares file checksums. Thi…
CVE-2026-19295 Medium 3.3% 9.9 IBM Langflow OSS 1.0.0 through 1.11.1 allows an authenticated attacker to execute arbitrar…
CVE-2026-17179 Medium 3.1% 8.5 IBM Db2 Mirror for i 7.4, 7.5, and 7.6 could allow a remote authenticated attacker to caus…
CVE-2026-9103 Medium 2.8% 9.8 IBM Langflow OSS 1.0.0 through 1.10.0 could allow a remote attacker to gain unauthorized a…
CVE-2000-1239 Medium 2.1% 9.0 The HTTP interface of Tivoli Lightweight Client Framework (LCF) in IBM Tivoli Management F…
CVE-2026-81669 Medium 2.0% 7.2 IBM Guardium Data Protection 12.2 is vulnerable to a command injection vulnerability in th…
CVE-2026-81937 Medium 2.0% 7.2 IBM Guardium Data Protection 12.2 is vulnerable to a command injection vulnerability in th…
CVE-2026-84071 Medium 2.0% 7.2 IBM Guardium Data Protection 12.2 is vulnerable to OS command injection in the Universal C…
CVE-2026-18729 Medium 1.9% 8.8 IBM Langflow OSS 1.0.0 through 1.11.1 could allow a remote authenticated attacker to execu…
CVE-2026-16468 Medium 1.7% 8.8 IBM DataStage on Cloud Pak for Data 5.4.0.0 could allow a remote authenticated attacker to…
CVE-2024-1132 Medium 1.6% 8.1 A flaw was found in Keycloak, where it does not properly validate URLs included in a redir…
CVE-2026-14959 Medium 1.6% 9.1 IBM Aspera Faspex 5 5.0.0 through 5.0.15.4 could allow a remote authenticated attacker to …
CVE-2026-16850 Medium 1.5% 8.8 IBM AIX 7.2, and 7.3 and IBM PowerVM VIOS 4.1 could allow a remote attacker to execute arb…
CVE-2026-6721 Medium 1.4% 9.8 IBM Concert 1.0.0 through 3.0.0 allows an unauthenticated remote attacker can supply speci…
CVE-2025-6021 Medium 1.4% 7.5 A flaw was found in libxml2's xmlBuildQName function, where integer overflows in buffer si…
CVE-2023-6563 Medium 1.2% 7.7 An unconstrained memory consumption vulnerability was discovered in Keycloak. It can be tr…
CVE-2022-1011 Medium 1.2% 7.8 A use-after-free flaw was found in the Linux kernel’s FUSE filesystem in the way a user tr…
CVE-2026-42009 Medium 1.1% 7.5 A flaw was found in gnutls. A remote attacker could exploit an issue in the Datagram Trans…
CVE-2026-15068 Medium 1.1% 9.9 IBM AIX 7.2, and 7.3 and IBM PowerVM VIOS 4.1 NIM could allow a remote authenticated attac…
CVE-2026-8505 Medium 1.0% 9.8 IBM Langflow OSS 1.0.0 through 1.10.0 has a vulnerability in Langflow's webhook authentica…
CVE-2026-19446 Medium 1.0% 7.5 IBM AIX 7.2, and 7.3 and IBM PowerVM VIOS 4.1 allows a remote unauthenticated attacker can…
CVE-2026-14522 Medium 1.0% 8.8 IBM App Connect Enterprise 13.0.1.0 through 13.0.7.2, and 12.0.1.0 through 12.0.12.27 coul…
CVE-2026-80442 Medium 1.0% 9.9 IBM Guardium Data Protection 12.2 is vulnerable to an authenticated OS command injection v…
CVE-2026-81537 Medium 1.0% 8.8 IBM DataStage on Cloud Pak for Data 5.4.0.0 could allow a remote authenticated attacker to…
CVE-2026-8476 Medium 1.0% 9.9 IBM Langflow OSS 1.0.0 through 1.10.0 contain a critical remote code execution vulnerabili…
CVE-2026-14512 Medium 1.0% 9.8 IBM WebSphere Application Server 9.0, and 8.5 traditional is vulnerable to pre-authenticat…
CVE-2023-6291 Medium 1.0% 7.1 A flaw was found in the redirect_uri validation logic in Keycloak. This issue may allow a …
CVE-2026-12940 Medium 0.9% 9.8 IBM Langflow OSS 1.0.0 through 1.10.1  are vulnerable to unauthenticated remote code execu…
CVE-2026-8633 Medium 0.9% 9.8 IBM Web Server Plug-ins for WebSphere Application Server and WebSphere Liberty 8.5, 9.0 IB…
CVE-2026-16469 Medium 0.9% 8.8 IBM DataStage on Cloud Pak for Data 5.4.0.0 px-runtime could allow a remote authenticated …
CVE-2026-80379 Medium 0.9% 8.8 IBM DataStage on Cloud Pak for Data 5.4.0.0 could allow a remote authenticated attacker to…
CVE-2026-80425 Medium 0.9% 8.8 IBM DataStage on Cloud Pak for Data 5.4.0.0 could allow a remote authenticated attacker to…
CVE-2026-17142 Medium 0.9% 9.8 IBM AIX 7.2, and 7.3 and IBM PowerVM VIOS 4.1 could allow a remote attacker to execute arb…
CVE-2026-17481 Medium 0.9% 8.8 IBM Documentation Offline 1.0.0 through 1.4.1 could allow a remote attacker to execute arb…
CVE-2026-16466 Medium 0.9% 8.8 IBM DataStage on Cloud Pak for Data 5.4.0.0 IBM DataStage could allow a remote authenticat…
CVE-2026-84086 Medium 0.9% 7.2 IBM Guardium Data Protection 12.2 could allow a remote authenticated attacker to execute a…
CVE-2026-16882 Medium 0.9% 9.8 IBM AIX 7.2, and 7.3 and IBM PowerVM VIOS 4.1 could allow a remote attacker to execute arb…
CVE-2026-16956 Medium 0.9% 9.8 IBM Db2 Mirror for i 7.4, 7.5, and 7.6 could allow a remote attacker to execute arbitrary …
Page 1 of 20 Next →