CVE Vulnerability Database
Search and browse 392,327 CVE records with CVSS scores, EPSS exploit predictions, and CISA KEV status.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2026-37106 | CRITICAL | 9.8 | 0.5% | Jun 30, 2026 | An issue in DokuWiki 2025-05-14b "Librarian" 56.2 allows a remote attacker to create an account via the register functio... |
| CVE-2026-35505 | HIGH | 8.7 | 0.4% | Jun 30, 2026 | An unauthenticated remote attacker can repeatedly send crafted connection requests to leak memory. In single-process dep... |
| CVE-2026-11541 | CRITICAL | 9.8 | 0.3% | Jun 30, 2026 | IBM CICS Transaction Gateway for Multiplatforms 9.1, 9.2, 9.3, and 10.1 IBM WebSphere Application Server 9.0, and 8.5 an... |
| CVE-2026-10585 | MEDIUM | 5.4 | 0.3% | Jun 30, 2026 | A stored cross-site scripting vulnerability was identified in GitHub Enterprise Server that allowed an authenticated att... |
| CVE-2026-9132 | MEDIUM | 6.5 | 0.3% | Jun 30, 2026 | A missing authorization vulnerability was identified in GitHub Enterprise Server that allowed an authenticated user to r... |
| CVE-2026-9106 | MEDIUM | 5.5 | 0.3% | Jun 30, 2026 | A UI misrepresentation vulnerability was identified in GitHub Enterprise Server that allowed an OAuth application to gai... |
| CVE-2026-44628 | HIGH | 8.7 | 0.4% | Jun 30, 2026 | An unauthenticated attacker can crash the worklist server with a single crafted query when the server has a valid Called... |
| CVE-2026-13207 | HIGH | 8.7 | 0.4% | Jun 30, 2026 | FUXA versions 1.3.1 and prior contain an authentication bypass vulnerability via dot-segment path normalization in the R... |
| CVE-2026-11594 | MEDIUM | 6.1 | 0.3% | Jun 30, 2026 | IBM WebSphere Application Server 9.0, and 8.5 is affected by a cross-site scripting vulnerability in the administrative ... |
| CVE-2026-10562 | MEDIUM | 5.9 | 0.3% | Jun 30, 2026 | An unauthenticated URL redirection vulnerability has been identified in Archer AX20 V2 due to improper validation of use... |
| CVE-2025-36359 | MEDIUM | 6.5 | 0.2% | Jun 30, 2026 | IBM DevOps Automation 1.0.1 and IBM DevOps Loop 1.0.2 does not invalidate session IDs after expiration which could allow... |
| CVE-2025-36336 | MEDIUM | 5.9 | 0.2% | Jun 30, 2026 | IBM watsonx.data intelligence 5.2.0, 5.2.1, 5.2.2, 5.3.0 transmits data in clear text that could allow an attacker to ob... |
| CVE-2025-36333 | MEDIUM | 4.3 | 0.3% | Jun 30, 2026 | IBM watsonx.data intelligence 5.2.0, 5.2.1, 5.2.2, 5.3.0 could allow an authenticated user to perform unauthorized actio... |
| CVE-2025-36328 | MEDIUM | 4.3 | 0.4% | Jun 30, 2026 | IBM watsonx.data intelligence 5.2.0, 5.2.1, 5.2.2, 5.3.0 could allow a remote attacker to obtain sensitive information w... |
| CVE-2025-36327 | MEDIUM | 6.5 | 0.4% | Jun 30, 2026 | IBM watsonx.data intelligence 5.2.0, 5.2.1, 5.2.2, 5.3.0 could allow an authenticated user to bypass security controls a... |
| CVE-2025-36324 | MEDIUM | 4.3 | 0.3% | Jun 30, 2026 | IBM watsonx.data intelligence 5.2.0, 5.2.1, 5.2.2, 5.3.0 s vulnerable to server-side request forgery (SSRF). This may al... |
| CVE-2025-36323 | MEDIUM | 5.4 | 0.2% | Jun 30, 2026 | IBM watsonx.data intelligence 5.2.0, 5.2.1, 5.2.2, 5.3.0 is vulnerable to cross-site scripting. This vulnerability allow... |
| CVE-2025-36321 | MEDIUM | 5.7 | 0.4% | Jun 30, 2026 | IBM watsonx.data intelligence 5.2.0, 5.2.1, 5.2.2, 5.3.0 is vulnerable to HTML injection. A remote attacker could inject... |
| CVE-2025-36320 | MEDIUM | 6.4 | 0.3% | Jun 30, 2026 | IBM watsonx.data intelligence 5.2.0, 5.2.1, 5.2.2, 5.3.0 is vulnerable to stored cross-site scripting. This vulnerabilit... |
| CVE-2025-36319 | MEDIUM | 4.3 | 0.4% | Jun 30, 2026 | IBM watsonx.data intelligence 5.2.0, 5.2.1, 5.2.2, 5.3.0 could allow an authenticated user to cause a temporary denial u... |
| CVE-2025-12530 | MEDIUM | 5.9 | 0.1% | Jun 30, 2026 | IBM watsonx.data intelligence 5.2.2, 5.3.0, 5.3.1, 5.3.1 through Patch 1 transmits data in clear text that could allow a... |
| CVE-2026-9836 | HIGH | 7.5 | 0.2% | Jun 30, 2026 | IBM InfoSphere Information Server 11.7.0.0 through 11.7.1.6 is affected by an information disclosure vulnerability. |
| CVE-2026-9002 | MEDIUM | 6.5 | 0.3% | Jun 30, 2026 | IBM WebSphere Extreme Scale 8.6.1.0 through 8.6.1.6 could allow an adjacent attacker to cause a denial of service due to... |
| CVE-2026-7874 | CRITICAL | 9.1 | 0.2% | Jun 30, 2026 | IBM Langflow OSS 1.0.0 through 1.10.0 Langflow could allow disclosure of all stored credentials due to the use of a weak... |
| CVE-2026-7873 | CRITICAL | 9.9 | 0.3% | Jun 30, 2026 | IBM Langflow OSS 1.0.0 through 1.10.0 allows authenticated attackers to execute arbitrary OS commands and read sensitive... |
