CVE Vulnerability Database

Search and browse 390,364 CVE records with CVSS scores, EPSS exploit predictions, and CISA KEV status.

CVE IDSeverityCVSSDescription
CVE-2026-53692MEDIUM5.9Redeight CMS version 1.0 uses the MD5 algorithm without a salt to store user passwords. Because MD5 is a cryptographical...
CVE-2026-53691HIGH8.6An Unrestricted File Upload vulnerability in Redeight CMS version 1.0 allows authenticated attackers to achieve Remote C...
CVE-2026-53690CRITICAL9.3An SQL Injection vulnerability exists in Redeight CMS version 1.0 via the "userEmail" parameter in the POST "/admin/inde...
CVE-2026-41053HIGH8.8Incorrect authentication caching in the team member ship expansion of the Rancher Github authentication provider caused ...
CVE-2026-14162CRITICAL9.8Hospital Queuing Management developed by Advantech has a Sensitive Data Exposure vulnerability, allowing unauthenticated...
CVE-2026-14161HIGH8.7Hospital Quening Management developed by Advantech has a Sensitive Data Exposure vulnerability, allowing unauthenticated...
CVE-2026-13766CRITICAL9.8DBIx::QuickORM versions before 0.000026 for Perl allow SQL injection via unquoted SQL identifiers. The default SQL buil...
CVE-2026-54475HIGH7.5Missing Authorization vulnerability in Apache ActiveMQ Broker, Apache ActiveMQ All, Apache ActiveMQ. Apache ActiveMQ Cl...
CVE-2026-53917HIGH7.5Memory Allocation with Excessive Size Value vulnerability in Apache ActiveMQ, Apache ActiveMQ All, Apache ActiveMQ Clien...
CVE-2026-53916HIGH7.5Memory Allocation with Excessive Size Value vulnerability in Apache ActiveMQ, Apache ActiveMQ All, Apache ActiveMQ Stomp...
CVE-2026-52760MEDIUM6.1Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Apache ActiveMQ, A...
CVE-2026-50750HIGH7.5Denial of Service via Out of Memory vulnerability in Apache ActiveMQ Broker, Apache ActiveMQ, Apache ActiveMQ All. Foll...
CVE-2026-50734HIGH7.5Memory Allocation with Excessive Size Value vulnerability in Apache ActiveMQ Client, Apache ActiveMQ, Apache ActiveMQ Al...
CVE-2026-49877HIGH8.1Improper Authorization vulnerability in Apache ActiveMQ. An authenticated low-privilege Web Console user by default can...
CVE-2026-49434HIGH7.5Improper Input Validation vulnerability in Apache ActiveMQ Broker, Apache ActiveMQ, Apache ActiveMQ All. An attacker th...
CVE-2026-49432HIGH7.5Improper Input Validation vulnerability in Apache ActiveMQ, Apache ActiveMQ All, Apache ActiveMQ Stomp. A remote unauth...
CVE-2026-13316MEDIUM4.4A flaw has been found in foreman when HTTP parameters are modified in http_proxies_controller and http_proxy files. Atta...
CVE-2026-9711CRITICAL9.8The EventON - WordPress Virtual Event Calendar Plugin plugin for WordPress (full) is vulnerable to SQL Injection via the...
CVE-2026-8141HIGH7.2The Ajax Load More - Filters plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the 'taxonomy_include...
CVE-2026-6954MEDIUM5.1Cross-Site Scripting (XSS) vulnerability in Intermark IT's WebControl CMS v3.5. This vulnerability allows an attacker to...
CVE-2026-6953MEDIUM5.1HTML injection vulnerability in Intermark IT's WebControl CMS v3.5. This vulnerability allows an attacker to send an ema...
CVE-2026-13149HIGH7.7brace-expansion through 5.0.6 is vulnerable to denial of service. The expand() function exhibits exponential-time comple...
CVE-2026-12610MEDIUM6.4A flaw was found in sssd. When authenticating with a YubiKey, the SSSD PAM responder can crash due to a use-after-free v...
CVE-2026-12076CRITICAL9.3Raytha CMS is vulnerable to SQL Injection within the OData filter parsing pipeline.  The vulnerability allows a remote, ...
CVE-2026-10763HIGH7PROMOD V is using insecure HTTP communication instead of HTTPS. The vulnerability is due to the lack of HTTPS support fr...