CVE Vulnerability Database

Search and browse 389,984 CVE records with CVSS scores, EPSS exploit predictions, and CISA KEV status.

CVE IDSeverityCVSSDescription
CVE-2026-15481HIGH8.8A security flaw has been discovered in Trendnet TEW-635BRM up to 1.00.03. This vulnerability affects the function ipoa_t...
CVE-2026-15480HIGH8.8A vulnerability was identified in Trendnet TEW-635BRM up to 1.00.03. This affects the function start_httpd of the file /...
CVE-2026-15479HIGH7.3A vulnerability was found in H3C NX15 V100R017. Affected by this vulnerability is the function change_passwd of the file...
CVE-2026-15478MEDIUM6.3A flaw has been found in IceHRM up to 35.0.1. This impacts an unknown function of the file core/src/Reports/User/Reports...
CVE-2026-15477MEDIUM6.3A vulnerability was detected in Bahmni bahmnicore up to 0.93. This affects the function additionalParams of the file /op...
CVE-2026-15476MEDIUM5.3A security vulnerability has been detected in QILING Disk Master 6.0.0.0. The impacted element is an unknown function in...
CVE-2026-15475MEDIUM5.3A weakness has been identified in MiniTool Partition Wizard up to 13.6. The affected element is an unknown function in t...
CVE-2026-15474MEDIUM4.3A security flaw has been discovered in Eleveo Call Recording Software 9.7.0. Impacted is an unknown function of the file...
CVE-2026-15473MEDIUM6.3A vulnerability was identified in Eleveo Call Recording Software 9.7.0. This issue affects some unknown processing of th...
CVE-2026-15472MEDIUM4.3A vulnerability was determined in Eleveo Call Recording Software 9.7.0. This vulnerability affects unknown code of the f...
CVE-2026-15471MEDIUM4.3A vulnerability was found in Eleveo Call Recording Software 9.7.0. This affects an unknown part of the file /callrec/pci...
CVE-2026-15470MEDIUM4.3A vulnerability has been found in Eleveo Call Recording Software 9.7.0. Affected by this issue is some unknown functiona...
CVE-2026-58281HIGH8.3Deserialization of untrusted data in Microsoft Edge (Chromium-based) allows an unauthorized attacker to execute code ove...
CVE-2026-10660MEDIUM6.4The Bluetooth BAP Broadcast Assistant GATT client in subsys/bluetooth/audio/bap_broadcast_assistant.c reassembled remote...
CVE-2026-61870HIGH7.5ImageMagick before 7.1.2-26 contains a memory leak vulnerability in the VIFF encoder when memory allocation fails. Attac...
CVE-2026-61861HIGH7.5ImageMagick before 7.1.2-26 contains a use-after-free vulnerability in the FormatMagickCaption method when memory alloca...
CVE-2026-61858MEDIUM5.3ImageMagick before 7.1.2-26 contains a policy bypass vulnerability in the APNG encoder and external delegates due to mis...
CVE-2026-61857HIGH7.5ImageMagick before 7.1.2-26 contains a heap use-after-free vulnerability caused by missing null check when parsing XMP p...
CVE-2026-61465MEDIUM6.5ImageMagick before 7.1.2-26 and 6.9.13-51 is missing a check for the allowed memory allocation limit in matrix-backed op...
CVE-2026-61454HIGH8.7The Grav Admin2 plugin (getgrav/grav-plugin-admin2) before 2.0.4 embeds a global JavaScript variable window.__GRAV_CONFI...
CVE-2026-61448LOW2.1Parse Server is affected by a stored cross-site scripting (XSS) vulnerability in versions >= 9.0.0, < 9.10.0-alpha.2 and...
CVE-2026-61447CRITICAL10PraisonAI before 1.6.78 contains a remote code execution vulnerability in CodeAgent._execute_python() that executes LLM-...
CVE-2026-61445CRITICAL9.9PraisonAI before 4.6.78 contains arbitrary file write and command execution vulnerabilities in the AICoder component due...
CVE-2026-61442HIGH7.1PraisonAI Platform (praisonai-platform) before 0.1.9 fails to enforce owner/admin authorization on the PATCH routes for ...
CVE-2026-61439HIGH8.7PraisonAI versions before 4.6.78 contain a prompt injection defense misconfiguration where the block threshold defaults ...