CVE Vulnerability Database

Search and browse 389,967 CVE records with CVSS scores, EPSS exploit predictions, and CISA KEV status.

CVE IDSeverityCVSSDescription
CVE-2025-11698CRITICAL9.2A denial-of-service issue exists in 5380/5480/5580 controllers boot firmware lower than version 1.072. This vulnerabilit...
CVE-2026-9653HIGH8.7A denial-of-service security issue exists across all the 1756-EN2, EN3, and ENBT communication module due to improper va...
CVE-2026-9140HIGH8.7A denial-of-service security issue exists in the 1719-AENTR. The security issue stems from improper handling of a UDP un...
CVE-2026-8590HIGH8.7Vulnerability in Spotfire Spotfire Enterprise (Spotfire Server modules), Spotfire Spotfire Enterprise with External Cons...
CVE-2026-60114HIGH8.7Sustainable Irrigation Platform (SIP) through version 5.2.16 contains a path traversal vulnerability that allows attacke...
CVE-2026-58479CRITICAL9.8Sustainable Irrigation Platform (SIP) through version 5.2.16 contains a command injection vulnerability in the optional ...
CVE-2026-58478MEDIUM6.5Sustainable Irrigation Platform (SIP) through version 5.2.16 contains a server-side request forgery (SSRF) vulnerability...
CVE-2026-58477HIGH7.5Sustainable Irrigation Platform (SIP) through version 5.2.16 contains a mass assignment vulnerability that allows unauth...
CVE-2026-58476HIGH8.1Sustainable Irrigation Platform (SIP) through version 5.2.16 contains a cross-site request forgery vulnerability that al...
CVE-2026-58475MEDIUM6.1Sustainable Irrigation Platform (SIP) through version 5.2.16 contains a stored cross-site scripting vulnerability that a...
CVE-2026-52837MEDIUM6.9Easy!Appointments is a self hosted appointment scheduler. In versions up to and including 1.5.2, the booking reschedule ...
CVE-2026-51105HIGH7.5Buffer Overflow vulnerability in aMULE-Project aMule v.2.3.3 allows a remote attacker to cause a denial of service via t...
CVE-2026-15736HIGH8.3Snowflake SQLAlchemy versions prior to 1.11.0 contain several security vulnerabilities, including: Improper handling of ...
CVE-2026-15696HIGH8.8A vulnerability has been found in Tenda BE12 Pro 16.03.66.23. The impacted element is the function fromVirtualSer of the...
CVE-2026-15695HIGH8.8A flaw has been found in Tenda BE12 Pro 16.03.66.23. The affected element is the function fromDhcpListClient of the file...
CVE-2026-15694HIGH8.8A vulnerability was detected in Tenda BE12 Pro 16.03.66.23. Impacted is the function fromSetIpBind of the file /goform/S...
CVE-2026-15265CRITICAL9.1A path traversal vulnerability in Tenable Agent 11.2.0 and 11.1.3 and lower allows a privileged attacker to write arbitr...
CVE-2026-14903MEDIUM6.5Path traversal in Ivanti  Xtraction before version 2026.2.1 allows a remote authenticated attacker to read arbitrary fil...
CVE-2026-14902MEDIUM6.1An open redirect in Ivanti Xtraction before version 2026.2.1 allows a remote unauthenticated attacker to redirect users ...
CVE-2026-10714HIGH8.8A security issue exists within FactoryTalk® Services Platform (FTSP), allowing an attacker to bypass JWT signature valid...
CVE-2026-10672CRITICAL9.1subsys/net/lib/lwm2m/lwm2m_pull_context.c copied the firmware-update Package URI into a fixed static buffer (context.uri...
CVE-2026-10671HIGH7.1In Zephyr's kernel pipe implementation, the userspace syscall verifier z_vrfy_k_pipe_init() in kernel/pipe.c used K_SYSC...
CVE-2026-10670MEDIUM5.5The CONFIG_USERSPACE verification handler for the k_thread_name_copy() system call (z_vrfy_k_thread_name_copy() in kerne...
CVE-2026-10669HIGH7.8On Xtensa SoCs built with CONFIG_XTENSA_MPU and CONFIG_USERSPACE, arch_buffer_validate() in arch/xtensa/core/mpu.c — the...
CVE-2026-10573MEDIUM6.3A denial-of-service security issue exists in 1734 POINT I/O™ module. The security issue stems from improper handling of ...