CVE Vulnerability Database

Search and browse 376,500 CVE records with CVSS scores, EPSS exploit predictions, and CISA KEV status.

CVE IDSeverityCVSSDescription
CVE-2026-71945CRITICAL9.8D-Link DWR-M961 devices with hardware version C1 and firmware version before 1.1.5_C1_202607071108 contain a command inj...
CVE-2026-71944CRITICAL9.8D-Link DWR-M961 devices with hardware version C1 and firmware version before 1.1.5_C1_202607071108 contain a command inj...
CVE-2026-67620HIGH7.7Flowise through 3.1.4 contains a server-side request forgery vulnerability in the SSRF guard implemented in httpSecurity...
CVE-2026-42170HIGH7.8A heap-based buffer overflow vulnerability exists in the GIMP DDS (DirectDraw Surface) file parser. When a crafted DDS f...
CVE-2026-19288MEDIUM5.3A vulnerability has been found in astralisone rive-mcp-server-core up to db1d0cc4cd52589116360428b7504fd0ca748b3e. This ...
CVE-2026-19287MEDIUM5.3A flaw has been found in abrinsmead mindpilot-mcp 0.5.0. Affected by this issue is some unknown functionality of the com...
CVE-2026-19285MEDIUM5.3A vulnerability was detected in aaronsb memory-graph up to 5cfd2382778837b9f6399080956eee670d00452c. Affected by this vu...
CVE-2026-19284MEDIUM5.3A security vulnerability has been detected in MauricioMilano coder-api up to 1.1.0. Affected is the function createProje...
CVE-2026-19282MEDIUM5.3A weakness has been identified in andreahaku llm_memory_mcp up to f11dc8bcff3ff8cf943a2945f99ff3b0bdc8a6d0. This impacts...
CVE-2026-19281MEDIUM5.3A security flaw has been discovered in adolfosalasgomez3011 slidev-builder-mcp 2.1.0. This affects the function generate...
CVE-2026-19279MEDIUM5.3A vulnerability was identified in MIMICLab mcp-pdf-vision 1.1.0. The impacted element is the function load_pdf of the fi...
CVE-2026-68082CRITICAL9.8In the Linux kernel, the following vulnerability has been resolved: libceph: fix two unsafe bare decodes in decode_lock...
CVE-2026-68081In the Linux kernel, the following vulnerability has been resolved: KVM: nVMX: Put vmcs12 pages if nested VM-Enter fail...
CVE-2026-19270MEDIUM5.3A security flaw has been discovered in Hulupeep mcp-ui-probe up to 0.2.0. Affected is the function get_journey/delete_jo...
CVE-2026-19268MEDIUM6.3A vulnerability was identified in abdullah1854 MCPGateway up to 549f494a9e363f40530149de324b8097de424230. This impacts t...
CVE-2026-19266MEDIUM5.5A vulnerability was determined in Kirachon context-engine up to 1.9.0. This affects the function execGitCommand of the f...
CVE-2026-19263HIGH7.3A vulnerability was found in INQUIRELAB mcp-bridge-api up to b30a82aa1d1d1139e0de846c41c8aadee6e06114. The impacted elem...
CVE-2026-19259MEDIUM5.3A vulnerability has been found in MZ Automation libiec61850 up to 1.6.1. The affected element is the function MmsMapping...
CVE-2026-16955MEDIUM5The AI Engine WordPress plugin before 3.6.6 does not confine a caller-supplied file path before reading it and forwardi...
CVE-2026-16953MEDIUM4.8The AI Engine WordPress plugin before 3.6.4 does not verify ownership of a guest's uploaded chatbot files before deleti...
CVE-2026-16948HIGH8.1The Solace Extra WordPress plugin before 1.6.1 does not perform capability checks in several of its AJAX actions and exp...
CVE-2026-16608MEDIUM5.3The Download Monitor WordPress plugin before 5.2.6 does not perform authorization checks on one of its download-logging ...
CVE-2026-16595MEDIUM6.5The WP Directory Kit WordPress plugin before 1.5.5 does not perform authorization or nonce checks on one of its authenti...
CVE-2026-16594HIGH7.5The WP Directory Kit WordPress plugin before 1.5.5 does not perform authorization or nonce checks on one of its authenti...
CVE-2026-16590MEDIUM6.5The WP Directory Kit WordPress plugin before 1.5.5 does not perform authorization or nonce checks on one of its authenti...