CVE Vulnerability Database
Search and browse 390,021 CVE records with CVSS scores, EPSS exploit predictions, and CISA KEV status.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2026-21056 | MEDIUM | 4.8 | 0.1% | Jul 10, 2026 | Improper authorization in Samsung Health prior to version 7.00.0.107 allows local attackers to access connected device i... |
| CVE-2026-21055 | HIGH | 8.5 | 0.1% | Jul 10, 2026 | Improper export of android application components in Bixby prior to version 4.0.70.8 allows local attackers to execute a... |
| CVE-2026-21054 | MEDIUM | 6.9 | 0.1% | Jul 10, 2026 | Improper export of android application components in InputSharing prior to version 2.7.01.4 allows local attackers to ac... |
| CVE-2026-21053 | MEDIUM | 5.1 | 0.1% | Jul 10, 2026 | Improper input validation in Samsung Email prior to version 6.2.13.1 allows local attackers to create arbitrary files wi... |
| CVE-2026-21052 | MEDIUM | 6.8 | 0.1% | Jul 10, 2026 | Path traversal in SemClipboardService prior to SMR Jul-2026 Release 1 allows local privileged attackers to access files ... |
| CVE-2026-21051 | MEDIUM | 5.1 | 0.1% | Jul 10, 2026 | Incorrect default permissions in WLAN security prior to SMR Jul-2026 Release 1 allows local attackers to configure Tence... |
| CVE-2026-21050 | MEDIUM | 5.1 | 0.1% | Jul 10, 2026 | Improper access control in SmartThingsKit prior to SMR Jul-2026 Release 1 allows local attackers to access sensitive inf... |
| CVE-2026-21049 | HIGH | 8.4 | 0.1% | Jul 10, 2026 | Out-of-bounds write in libpadm.so library prior to SMR Jul-2026 Release 1 allows local attackers to execute arbitrary co... |
| CVE-2026-21048 | HIGH | 8.3 | 0.4% | Jul 10, 2026 | Out-of-bounds write in parsing DNG format in libimagecodec.media.quram.so prior to SMR Jul-2026 Release 1 allows remote ... |
| CVE-2026-21046 | HIGH | 8.4 | 0.1% | Jul 10, 2026 | Time-of-check time-of-use race condition in fabricKeymaster trustlet prior to SMR Jul-2026 Release 1 allows local privil... |
| CVE-2026-21045 | HIGH | 8.3 | 0.4% | Jul 10, 2026 | Out-of-bounds write in parsing TIFF format in libimagecodec.media.quram.so prior to SMR Jul-2026 Release 1 allows remote... |
| CVE-2026-21044 | MEDIUM | 5.8 | 0.1% | Jul 10, 2026 | Improper authorization in KnoxGuardManager prior to SMR Jul-2026 Release 1 allows local attackers to bypass the persiste... |
| CVE-2026-21043 | MEDIUM | 6.7 | 0.1% | Jul 10, 2026 | Path traversal in Wallpaper service prior to SMR Jul-2026 Release 1 allows local privileged attackers to access files wi... |
| CVE-2026-21042 | HIGH | 8.7 | 0.2% | Jul 10, 2026 | Out-of-bounds write in libsavsac.so prior to SMR Jul-2026 Release 1 allows remote attackers to execute arbitrary code. |
| CVE-2026-21041 | MEDIUM | 6.9 | 0.1% | Jul 10, 2026 | Improper access control in SamsungSEAgentService prior to SMR Jul-2026 Release 1 allows local attackers to access sensit... |
| CVE-2026-21040 | MEDIUM | 6.9 | 0.1% | Jul 10, 2026 | Improper access control in IAFDService prior to SMR Jul-2026 Release 1 allows local privileged attackers to use the priv... |
| CVE-2026-21039 | MEDIUM | 6.9 | 0.1% | Jul 10, 2026 | Improper access control in Settings prior to SMR Jul-2026 Release 1 allows local attackers to configure Theft protection... |
| CVE-2026-15332 | MEDIUM | 6.3 | 0.2% | Jul 10, 2026 | A security flaw has been discovered in zhayujie CowAgent up to 2.1.0. The impacted element is an unknown function of the... |
| CVE-2026-15331 | MEDIUM | 5.4 | 0.4% | Jul 10, 2026 | A vulnerability was identified in zhayujie CowAgent up to 2.1.0. The affected element is the function _add_url/_add_pack... |
| CVE-2026-15330 | HIGH | 7.3 | 0.4% | Jul 10, 2026 | A vulnerability was determined in zhayujie CowAgent up to 2.1.1. Impacted is the function _build_image_content/_download... |
| CVE-2026-15302 | MEDIUM | 5.3 | 0.5% | Jul 10, 2026 | The ARMember plugin for WordPress is vulnerable to Directory Traversal in all versions up to, and including, 4.0.27 via ... |
| CVE-2026-15301 | MEDIUM | 6.4 | 0.2% | Jul 10, 2026 | The BuddyHolis TableSearch plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the ‘placeholder’ param... |
| CVE-2026-15300 | CRITICAL | 9.1 | 0.3% | Jul 10, 2026 | The GEO my WP plugin for WordPress was vulnerable to SQL Injection via the 'distance', 'lat', and 'lng' parameters in ve... |
| CVE-2026-15299 | MEDIUM | 6.4 | 0.2% | Jul 10, 2026 | The Animation Addons for Elementor plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the 'weather_st... |
| CVE-2026-15298 | HIGH | 7.2 | 0.3% | Jul 10, 2026 | The TelSender plugin for WordPress is vulnerable to DOM-Based Cross-Site Scripting in all versions up to, and including,... |
