CVE Vulnerability Database

Search and browse 390,025 CVE records with CVSS scores, EPSS exploit predictions, and CISA KEV status.

CVE IDSeverityCVSSDescription
CVE-2026-54005HIGH7.1Kirby is an open-source content management system. Prior to 4.9.4 and 5.4.4, Kirby sites where a role has the pages.acce...
CVE-2026-54004MEDIUM6.3Kirby is an open-source content management system. Prior to 4.9.4 and 5.4.4, Kirby sites with content.fileRedirects enab...
CVE-2026-54003CRITICAL9.1Kirby is an open-source content management system. Prior to 4.9.4 and from 5.4.4, Kirby sites with no configured user ac...
CVE-2026-54002HIGH8.5Kirby is an open-source content management system. Prior to 4.9.4 and 5.4.4, Kirby sites and plugins that use the writer...
CVE-2026-50188MEDIUM6.9Kirby is an open-source content management system. Prior to 4.9.4 and 5.4.4, Kirby sites and plugins using the Kirby Htt...
CVE-2026-49276HIGH7.4Kirby is an open-source content management system. Prior to 4.9.4 and 5.4.4, Kirby sites using the writer field in any b...
CVE-2026-49274MEDIUM5.3Kirby is an open-source content management system. Prior to 4.9.4 and 5.4.4, Kirby sites using the pages field with role...
CVE-2026-13492HIGH8.8The UsersWP plugin for WordPress is vulnerable to Arbitrary File Deletion in versions up to, and including, 1.2.65. This...
CVE-2026-0287HIGH7.5Multiple denial of service vulnerabilities in Palo Alto Networks PAN-OS® software allow an unauthenticated attacker with...
CVE-2026-0286HIGH7.2A command injection vulnerability in the management plane of Palo Alto Networks PAN-OS® software enables an authenticate...
CVE-2026-0285MEDIUM4.9A server-side request forgery (SSRF) vulnerability in Palo Alto Networks PAN-OS software enables an authenticated admini...
CVE-2026-0284CRITICAL9.9An XML injection vulnerability in the Large Scale VPN (LSVPN) functionality of Palo Alto Networks PAN-OS® software enabl...
CVE-2026-0283HIGH7.2An authentication bypass vulnerability in Large Scale VPN ( LSVPN) functionality of Palo Alto Networks PAN-OS software a...
CVE-2026-0282MEDIUM6.5A file deletion vulnerability in Palo Alto Networks PAN-OS® software enables an unauthenticated attacker with network ac...
CVE-2026-0281HIGH7.1An information disclosure vulnerability in Palo Alto Networks PAN-OS® software enables an unauthenticated attacker with ...
CVE-2026-0280HIGH7.2An IPv6 packet processing vulnerability in the dataplane of Palo Alto Networks PAN-OS® software enables an unauthenticat...
CVE-2026-0279MEDIUM6.1Multiple cross site scripting vulnerabilities in the User-ID™ Authentication Portal (aka Captive Portal) service, Global...
CVE-2025-63579HIGH7.5Unauthorized use of Kyocera printers, allows all information stored in the Kyocera address book to be exported. The secu...
CVE-2026-61344MEDIUM6.9The Superior Court of California Hearing Reminder Service at https://www.hrs.courts.ca.gov exposes an API endpoint that ...
CVE-2026-61343HIGH8.6LibreBooking's email template editor save action passes the submitted template name directly into the destination file p...
CVE-2026-59827HIGH8.8Metabase is an open-source business intelligence and embedded analytics tool. Prior to 1.58.15, 1.59.12, 1.60.6.3, and 1...
CVE-2026-59826CRITICAL9.1Metabase is an open-source business intelligence and embedded analytics tool. From 1.55.0 until 1.58.15.1, 1.59.12, 1.60...
CVE-2026-59817MEDIUM5.3Ghost is a Node.js content management system. From 6.27.0 before 6.44.0, Ghost's public donation checkout flow allowed a...
CVE-2026-59734HIGH8.8Coolify is an open-source and self-hostable tool for managing servers, applications, and databases. Prior to 4.0.0-beta....
CVE-2026-59726CRITICAL10Ruflo is an agent meta-harness for Claude Code and Codex. Prior to 3.16.3, ruflo's default docker-compose deployment exp...