CVE Vulnerability Database
Search and browse 390,037 CVE records with CVSS scores, EPSS exploit predictions, and CISA KEV status.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2026-44512 | MEDIUM | 5.5 | 0.2% | Jul 8, 2026 | Open Neural Network Exchange (ONNX) is an open standard for machine learning interoperability. From 1.9.0 before 1.22.0,... |
| CVE-2026-44332 | MEDIUM | 5.3 | 0.5% | Jul 8, 2026 | Fiber is an Express inspired web framework written in Go. Prior to 3.3.0, the default Authorizer function in the BasicAu... |
| CVE-2026-36028 | MEDIUM | 6.8 | 0.2% | Jul 8, 2026 | A protection mechanism failure in the Code 27 Companion Hub allows an attacker with physical access to completely bypass... |
| CVE-2026-36027 | MEDIUM | 6.8 | 0.3% | Jul 8, 2026 | An issue in Code27 Companion Hub SQ3A.220705.003.A1 allows a physically proximate attacker to execute arbitrary code via... |
| CVE-2026-15154 | MEDIUM | 6.5 | 0.5% | Jul 8, 2026 | A flaw was found in `guardrails-detectors`, a component of Red Hat OpenShift AI. This vulnerability, known as Regular Ex... |
| CVE-2026-14891 | HIGH | 8.7 | 0.3% | Jul 8, 2026 | HashiCorp Nomad and Nomad Enterprise are vulnerable to a sandbox escape in the Docker task driver that may allow a job s... |
| CVE-2026-14373 | HIGH | 7.7 | 0.2% | Jul 8, 2026 | HashiCorp Nomad and Nomad Enterprise did not enforce the allow_privileged restriction for the Docker task driver's host ... |
| CVE-2026-14361 | MEDIUM | 4.7 | 0.1% | Jul 8, 2026 | The consul-template library before version 0.42.1 is vulnerable to a path redirection issue in the writeToFile template ... |
| CVE-2026-59938 | MEDIUM | 5.3 | 0.3% | Jul 8, 2026 | pypdf is a free and open-source pure-python PDF library. Prior to 6.14.0, an attacker can craft a PDF with declared imag... |
| CVE-2026-59937 | HIGH | 7.5 | 0.3% | Jul 8, 2026 | pypdf is a free and open-source pure-python PDF library. Prior to 6.14.0, an attacker can craft a PDF with repeated malf... |
| CVE-2026-50813 | MEDIUM | 6.1 | 0.1% | Jul 8, 2026 | An issue in SQLite before Fossil check-in 869a51ae84df allows a local attacker to obtain sensitive information via the S... |
| CVE-2026-50812 | MEDIUM | 5.5 | 0.1% | Jul 8, 2026 | A NULL pointer dereference in the SQLite Session Extension in SQLite 3.53.1 and SQLite trunk builds before check-in e807... |
| CVE-2026-14362 | MEDIUM | 4.9 | 0.3% | Jul 8, 2026 | HashiCorp memberlist before version 0.6.0 is vulnerable to a denial-of-service issue in its push/pull state handling tha... |
| CVE-2026-60102 | HIGH | 8.8 | 1.8% | Jul 8, 2026 | Horde Virtual File System (VFS) API before 3.0.1 contains an OS command injection vulnerability in the Horde_Vfs_Smb dri... |
| CVE-2026-59930 | MEDIUM | 4.3 | 0.1% | Jul 8, 2026 | Mistune is a Python Markdown parser with renderers and plugins. Prior to 3.3.0, the toc plugin and TableOfContents direc... |
| CVE-2026-59929 | MEDIUM | 6.1 | 0.2% | Jul 8, 2026 | Mistune is a Python Markdown parser with renderers and plugins. Prior to 3.3.0, the safe_url filter in src/mistune/rende... |
| CVE-2026-59928 | HIGH | 7.5 | 0.3% | Jul 8, 2026 | Mistune is a Python Markdown parser with renderers and plugins. Prior to 3.3.0, a Markdown document containing many repe... |
| CVE-2026-59927 | MEDIUM | 5.3 | 0.3% | Jul 8, 2026 | Mistune is a Python Markdown parser with renderers and plugins. Prior to 3.3.0, the Include directive in src/mistune/dir... |
| CVE-2026-59926 | MEDIUM | 6.1 | 0.3% | Jul 8, 2026 | Mistune is a Python Markdown parser with renderers and plugins. Prior to 3.2.1, render_admonition() in src/mistune/direc... |
| CVE-2026-59925 | HIGH | 7.5 | 0.3% | Jul 8, 2026 | Mistune is a Python Markdown parser with renderers and plugins. Prior to 3.3.0, long sequences of well-formed double-ast... |
| CVE-2026-59924 | MEDIUM | 5.9 | 0.3% | Jul 8, 2026 | Mistune is a Python Markdown parser with renderers and plugins. Prior to 3.3.0, Include.parse() joins and normalizes use... |
| CVE-2026-59923 | MEDIUM | 6.1 | 0.2% | Jul 8, 2026 | Mistune is a Python Markdown parser with renderers and plugins. Prior to 3.3.0, HTMLRenderer.safe_url() does not block p... |
| CVE-2026-59922 | HIGH | 7.5 | 0.3% | Jul 8, 2026 | Mistune is a Python Markdown parser with renderers and plugins. Prior to 3.3.0, a run of closed tilde, equals-sign, or c... |
| CVE-2026-59897 | MEDIUM | 5.3 | 0.1% | Jul 8, 2026 | Hono is a Web application framework that provides support for any JavaScript runtime. From 4.3.3 before 4.12.27, the AWS... |
| CVE-2026-59896 | MEDIUM | 6.5 | 0.2% | Jul 8, 2026 | Hono is a Web application framework that provides support for any JavaScript runtime. From 4.11.8 before 4.12.27, hono/j... |
