CVE Vulnerability Database

Search and browse 390,021 CVE records with CVSS scores, EPSS exploit predictions, and CISA KEV status.

CVE IDSeverityCVSSDescription
CVE-2026-21056MEDIUM4.8Improper authorization in Samsung Health prior to version 7.00.0.107 allows local attackers to access connected device i...
CVE-2026-21055HIGH8.5Improper export of android application components in Bixby prior to version 4.0.70.8 allows local attackers to execute a...
CVE-2026-21054MEDIUM6.9Improper export of android application components in InputSharing prior to version 2.7.01.4 allows local attackers to ac...
CVE-2026-21053MEDIUM5.1Improper input validation in Samsung Email prior to version 6.2.13.1 allows local attackers to create arbitrary files wi...
CVE-2026-21052MEDIUM6.8Path traversal in SemClipboardService prior to SMR Jul-2026 Release 1 allows local privileged attackers to access files ...
CVE-2026-21051MEDIUM5.1Incorrect default permissions in WLAN security prior to SMR Jul-2026 Release 1 allows local attackers to configure Tence...
CVE-2026-21050MEDIUM5.1Improper access control in SmartThingsKit prior to SMR Jul-2026 Release 1 allows local attackers to access sensitive inf...
CVE-2026-21049HIGH8.4Out-of-bounds write in libpadm.so library prior to SMR Jul-2026 Release 1 allows local attackers to execute arbitrary co...
CVE-2026-21048HIGH8.3Out-of-bounds write in parsing DNG format in libimagecodec.media.quram.so prior to SMR Jul-2026 Release 1 allows remote ...
CVE-2026-21046HIGH8.4Time-of-check time-of-use race condition in fabricKeymaster trustlet prior to SMR Jul-2026 Release 1 allows local privil...
CVE-2026-21045HIGH8.3Out-of-bounds write in parsing TIFF format in libimagecodec.media.quram.so prior to SMR Jul-2026 Release 1 allows remote...
CVE-2026-21044MEDIUM5.8Improper authorization in KnoxGuardManager prior to SMR Jul-2026 Release 1 allows local attackers to bypass the persiste...
CVE-2026-21043MEDIUM6.7Path traversal in Wallpaper service prior to SMR Jul-2026 Release 1 allows local privileged attackers to access files wi...
CVE-2026-21042HIGH8.7Out-of-bounds write in libsavsac.so prior to SMR Jul-2026 Release 1 allows remote attackers to execute arbitrary code.
CVE-2026-21041MEDIUM6.9Improper access control in SamsungSEAgentService prior to SMR Jul-2026 Release 1 allows local attackers to access sensit...
CVE-2026-21040MEDIUM6.9Improper access control in IAFDService prior to SMR Jul-2026 Release 1 allows local privileged attackers to use the priv...
CVE-2026-21039MEDIUM6.9Improper access control in Settings prior to SMR Jul-2026 Release 1 allows local attackers to configure Theft protection...
CVE-2026-15332MEDIUM6.3A security flaw has been discovered in zhayujie CowAgent up to 2.1.0. The impacted element is an unknown function of the...
CVE-2026-15331MEDIUM5.4A vulnerability was identified in zhayujie CowAgent up to 2.1.0. The affected element is the function _add_url/_add_pack...
CVE-2026-15330HIGH7.3A vulnerability was determined in zhayujie CowAgent up to 2.1.1. Impacted is the function _build_image_content/_download...
CVE-2026-15302MEDIUM5.3The ARMember plugin for WordPress is vulnerable to Directory Traversal in all versions up to, and including, 4.0.27 via ...
CVE-2026-15301MEDIUM6.4The BuddyHolis TableSearch plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the ‘placeholder’ param...
CVE-2026-15300CRITICAL9.1The GEO my WP plugin for WordPress was vulnerable to SQL Injection via the 'distance', 'lat', and 'lng' parameters in ve...
CVE-2026-15299MEDIUM6.4The Animation Addons for Elementor plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the 'weather_st...
CVE-2026-15298HIGH7.2The TelSender plugin for WordPress is vulnerable to DOM-Based Cross-Site Scripting in all versions up to, and including,...