CVE Vulnerability Database

Search and browse 376,491 CVE records with CVSS scores, EPSS exploit predictions, and CISA KEV status.

CVE IDSeverityCVSSDescription
CVE-2026-15038CRITICAL9.8The InfiniteWP Client WordPress plugin before 1.13.6 does not properly verify the site-connection state and the authenti...
CVE-2026-19334MEDIUM5.3A flaw has been found in NightTrek Ollama-mcp up to 80cf2e17cfc144963a475b619093a2d13c13dbc9. This affects an unknown pa...
CVE-2026-19333MEDIUM5.3A vulnerability was detected in NightTrek Supabase-MCP cc994ab2d2a36b0af6ee7c7f3e6ce8e08cda2170/db03237d92f7dc2f0da0d70a...
CVE-2026-19332MEDIUM5.3A security vulnerability has been detected in NellyW8 MCP4EDA 1.0.0. Affected by this vulnerability is an unknown functi...
CVE-2026-19331MEDIUM5.3A vulnerability was identified in bazylhorsey obsidian-mcp-server 1.0.0. This affects the function readCanvas/writeCanva...
CVE-2026-19330MEDIUM5.3A vulnerability was determined in angrysky56 advanced-reasoning-mcp 1.0.0. The impacted element is the function create_s...
CVE-2026-19329MEDIUM5.3A vulnerability was found in andreahaku codex_mcp up to 1ff521cc6cc57cfe56ddef946c644b8534771390. The affected element i...
CVE-2026-10595HIGH7.5A path traversal vulnerability exists in parisneo/lollms version 2.1.0, specifically in the SPA catch-all route implemen...
CVE-2026-19328MEDIUM5.3A vulnerability has been found in aktsmm skill-ninja-mcp-server 0.1.0. Impacted is the function getInstalledSkills/insta...
CVE-2026-19327MEDIUM5.3A flaw has been found in abracadabra50 claude-sesh 1.0.0. This issue affects the function getEnrichedData/enrichSession ...
CVE-2026-19326MEDIUM4.4A vulnerability was detected in Jevon-Zhong Ai-doctor 0.0.1. This vulnerability affects the function deleteImage of the ...
CVE-2026-19325MEDIUM5.3A security vulnerability has been detected in IncomeStreamSurfer roo-code-memory-bank-mcp-server up to 9dcb2fb5e6b65a35a...
CVE-2026-19324LOW3.3A weakness has been identified in HelloGGX shadcn-vue-mcp up to e170e277b94235cde627803277fc8c41103a4d38. Affected by th...
CVE-2026-17510HIGH7.5Crypt::OpenSSL::PKCS12 versions before 1.98 for Perl allow a NULL pointer dereference in print_attribute via a zero leng...
CVE-2026-71993CRITICAL9.8MSI Radix AXE6600 router firmware version v781521 contains a command injection vulnerability in the openvpn function tha...
CVE-2026-71992CRITICAL9.8MSI Radix AXE6600 router firmware version v781521 contains a command injection vulnerability in the macfilter function t...
CVE-2026-71991CRITICAL9.8MSI Radix AXE6600 router firmware version v781521 contains a command injection vulnerability in the TelnetSSH function u...
CVE-2026-71990CRITICAL9.8MSI Radix AXE6600 router firmware version v781521 contains a command injection vulnerability in the TelnetSSH function u...
CVE-2026-71989CRITICAL9.8MSI Radix AXE6600 router firmware version v781521 contains a command injection vulnerability in the porTrigger function ...
CVE-2026-71988CRITICAL9.8MSI Radix AXE6600 router firmware version v781521 contains a command injection vulnerability in the portFw function that...
CVE-2026-71987CRITICAL9.8MSI Radix AXE6600 router firmware version v781521 contains a command injection vulnerability in the alg function that al...
CVE-2026-71986CRITICAL9.8MSI Radix AXE6600 router firmware version v781521 contains a command injection vulnerability in the dmz function that al...
CVE-2026-71985CRITICAL9.8MSI Radix AXE6600 router firmware version v781521 contains a command injection vulnerability in the accesscontrol functi...
CVE-2026-71984CRITICAL9.8MSI Radix AXE6600 router firmware version v781521 contains a command injection vulnerability in the urlfilter function t...
CVE-2026-19323MEDIUM5.3A security flaw has been discovered in azer react-analyzer-mcp up to 335f2a3585f265e2e88352b59b10d3b478d678b0. Affected ...