CVE Vulnerability Database
Search and browse 390,025 CVE records with CVSS scores, EPSS exploit predictions, and CISA KEV status.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2026-57020 | HIGH | 7.1 | 0.3% | Jul 9, 2026 | An Improper Check for Unusual or Exceptional Conditions vulnerability in the packet forwarding engine (pfe) of Juniper N... |
| CVE-2026-57019 | HIGH | 7.1 | 0.3% | Jul 9, 2026 | An Improper Validation of Specified Quantity in Input vulnerability in the Packet Forwarding Engine (pfe) of Juniper Net... |
| CVE-2026-55689 | HIGH | 8.1 | 0.3% | Jul 9, 2026 | OpenFGA is an authorization/permission engine built for developers. Prior to 1.18.0, OpenFGA's OIDC authenticator skippe... |
| CVE-2026-55605 | MEDIUM | 5.3 | 0.4% | Jul 9, 2026 | DeepSeek MCP Server is an MCP server for DeepSeek V4. Starting in version 1.4.2 and prior to version 1.8.0, the self-hos... |
| CVE-2026-55604 | HIGH | 8.6 | 0.2% | Jul 9, 2026 | DeepSeek MCP Server is an MCP server for DeepSeek V4. Starting in version 1.4.2 and prior to version 1.7.0, the process-... |
| CVE-2026-55424 | MEDIUM | 5.4 | 0.5% | Jul 9, 2026 | Discourse is an open-source discussion platform. Prior to 2026.6.0, 2026.5.1, 2026.4.2, and 2026.1.5, a topic "featured ... |
| CVE-2026-55170 | MEDIUM | 5.4 | 0.3% | Jul 9, 2026 | OpenFGA is an authorization/permission engine built for developers. Prior to 1.18.0, when MySQL is being used as the dat... |
| CVE-2026-53963 | CRITICAL | 9 | 0.4% | Jul 9, 2026 | Discourse is an open-source discussion platform. Prior to 2026.6.0, 2026.5.1, 2026.4.2, and 2026.1.5, a malicious second... |
| CVE-2026-53962 | MEDIUM | 5.4 | 0.3% | Jul 9, 2026 | Discourse is an open-source discussion platform. Prior to 2026.6.0, 2026.5.1, 2026.4.2, and 2026.1.5, insufficient SVG s... |
| CVE-2026-53961 | MEDIUM | 6.5 | 0.2% | Jul 9, 2026 | Discourse is an open-source discussion platform. Prior to 2026.6.0, 2026.5.1, 2026.4.2, and 2026.1.5, the AWS SES bounce... |
| CVE-2026-49256 | HIGH | 7.5 | 0.4% | Jul 9, 2026 | Discourse is an open-source discussion platform. Prior to 2026.6.0, 2026.5.1, 2026.4.2, and 2026.1.5, restricted tag and... |
| CVE-2026-46413 | MEDIUM | 6.5 | 0.4% | Jul 9, 2026 | Discourse is an open-source discussion platform. Prior to 2026.6.0, 2026.5.1, 2026.4.2, and 2026.1.5, regular users coul... |
| CVE-2026-45788 | HIGH | 7.5 | 0.5% | Jul 9, 2026 | Discourse is an open-source discussion platform. Prior to 2026.6.0, 2026.5.1, 2026.4.2, and 2026.1.5, secure uploads cou... |
| CVE-2026-45780 | MEDIUM | 4.3 | 0.4% | Jul 9, 2026 | Discourse is an open-source discussion platform. Prior to 2026.6.0, 2026.5.1, 2026.4.2, and 2026.1.5, EventSerializer co... |
| CVE-2026-44787 | HIGH | 7.1 | 0.3% | Jul 9, 2026 | Discourse is an open-source discussion platform. Prior to 2026.6.0, 2026.5.1, 2026.4.2, and 2026.1.5, the signup flow co... |
| CVE-2026-39246 | HIGH | 7.5 | 0.5% | Jul 9, 2026 | decompress before 4.2.2 allows arbitrary symlink creation during archive extraction. When processing symlink entries (ty... |
| CVE-2026-39245 | MEDIUM | 6.2 | 0.3% | Jul 9, 2026 | decompress before 4.2.2 contains an improper path containment check that enables directory traversal and arbitrary file ... |
| CVE-2026-39243 | MEDIUM | 5.5 | 0.2% | Jul 9, 2026 | decompress before 4.2.2 allows arbitrary hardlink creation during archive extraction, enabling file read disclosure and ... |
| CVE-2026-38076 | HIGH | 7.5 | 0.2% | Jul 9, 2026 | An integer overflow in the jbig2_arith_iaid_ctx_new() function of Artifex commit cc37d0 allows attackers to cause a Deni... |
| CVE-2026-33803 | MEDIUM | 6.9 | 0.4% | Jul 9, 2026 | An Improper Restriction of Communication Channel to Intended Endpoints vulnerability in Juniper Networks Junos OS Evolve... |
| CVE-2026-33802 | MEDIUM | 6.8 | 0.1% | Jul 9, 2026 | A Missing Authorization vulnerability in the CLI of Juniper Networks Junos OS on EX Series allows a local, authenticated... |
| CVE-2026-15276 | LOW | 3.3 | 0.2% | Jul 9, 2026 | A flaw has been found in pdeljanov Symphonia up to 0.6.0. This vulnerability affects unknown code of the component Metad... |
| CVE-2026-15274 | LOW | 3.3 | 0.1% | Jul 9, 2026 | A vulnerability was detected in lo48576 fbxcel up to 0.9.0. This affects an unknown part of the file src/pull_parser/v74... |
| CVE-2026-15271 | HIGH | 7.5 | 0.7% | Jul 9, 2026 | A security vulnerability has been detected in TOTOLINK A3000RU, A3100R, A950RG, AC1200T10, CP450, CS185R_T10 and EX200 u... |
| CVE-2026-60120 | MEDIUM | 5.4 | 0.2% | Jul 9, 2026 | Bagisto before 2.4.4 contains a stored cross-site scripting vulnerability via client-side template injection that allows... |
