CVE Vulnerability Database

Search and browse 375,585 CVE records with CVSS scores, EPSS exploit predictions, and CISA KEV status.

CVE IDSeverityCVSSDescription
CVE-2026-73432MEDIUM5.1Vulnerability-Lookup contains a server-side request forgery (SSRF) vulnerability in the remote-instance synchronization ...
CVE-2026-73431HIGH8.8Vulnerability-Lookup contains an authentication weakness in its account activation and password-recovery mechanism. Ac...
CVE-2026-73405MEDIUM5.3An authorization bypass vulnerability in Vulnerability-Lookup allowed inactive or unconfirmed accounts to subscribe to S...
CVE-2026-73374MEDIUM6.1A stored cross-site scripting (XSS) vulnerability existed in Vulnerability-Lookup in the render_tag_badges Jinja filter ...
CVE-2026-73291HIGH7.1Seerr is an open-source media request and discovery manager for Jellyfin, Plex, and Emby. Prior to version 3.4.0, Seerr'...
CVE-2026-73290MEDIUM5.3RustFS is a distributed object storage system built in Rust. Prior to 1.0.0-beta.12, an anonymous ListObjectVersions req...
CVE-2026-73289HIGH8.1RustFS is a distributed object storage system built in Rust. Prior to 1.0.0-beta.12, RustFS evaluates the ForAllValues: ...
CVE-2026-73288MEDIUM6.1RustFS is a distributed object storage system built in Rust. Prior to 1.0.0-rc.1, RustFS Object Lock enforcement in crat...
CVE-2026-73287MEDIUM5.4RustFS is a distributed object storage system built in Rust. Prior to 1.0.0-beta.12, RustFS handles FTPS MKD in FtpsDriv...
CVE-2026-73286HIGH8.1RustFS is a distributed object storage system built in Rust. Prior to 1.0.0-beta.12, RustFS get_condition_values folds a...
CVE-2026-73285HIGH7.5RustFS is a distributed object storage system built in Rust. From 1.0.0-alpha.64 until 1.0.0-rc.1, RustFS external OPA a...
CVE-2026-73284HIGH8.8RustFS is a distributed object storage system built in Rust. RustFS AddServiceAccount in rustfs/src/admin/handlers/servi...
CVE-2026-73265MEDIUM6.5RustFS is a distributed object storage system built in Rust. RustFS authorizes explicit versionId reads in GetObject, Co...
CVE-2026-73264HIGH7.6Prowler is a cloud security platform. Prior to 5.33.1, an authenticated user with Lighthouse provider configuration acce...
CVE-2026-73263CRITICAL9.9Prowler is a cloud security platform. Prior to 5.36.0, the Kubernetes provider connection test accepted kubeconfig_conte...
CVE-2026-73262MEDIUM5.4Prowler is a cloud security platform. Prior to 5.37.0, Prowler's HTML output formatter in prowler/lib/outputs/html/html....
CVE-2026-68760MEDIUM5.3An unauthenticated user may bypass authentication under specific cache conditions.
CVE-2026-68757HIGH7.5A user with access to a valid SAML response may impersonate another user under specific conditions.
CVE-2026-68756MEDIUM6.6A party with write access to stored session data may affect JFrog Artifactory under specific conditions.
CVE-2026-68755MEDIUM4.3A bundle writer may create misleading release promotion information under specific conditions.
CVE-2026-68754MEDIUM6.5A repository publisher without delete permission may modify protected package content under specific conditions.
CVE-2026-68753MEDIUM5.3An unauthenticated user may access restricted Artifactory content when a credentialed remote repository is configured in...
CVE-2026-68752HIGH7.2A Project Resource Manager may gain broader administrative privileges under specific conditions.
CVE-2026-67287MEDIUM6.3Joomla Extension - joomshaper.com - Unauthenticated comment creation in SP Page Builder < 6.8.0 - An unauthenticated att...
CVE-2026-67286MEDIUM6.3Joomla Extension - joomshaper.com - Unauthenticated arbitrary directory creation and file write in SP Page Builder < 6.8...