CVE Vulnerability Database
Search and browse 392,371 CVE records with CVSS scores, EPSS exploit predictions, and CISA KEV status.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2026-14241 | CRITICAL | 9.8 | 0.3% | Jun 30, 2026 | Memory safety bugs present in Firefox 152.0.3. Some of these bugs showed evidence of memory corruption and we presume th... |
| CVE-2026-14178 | MEDIUM | 5.9 | — | Jun 30, 2026 | openGauss 在处理带 NLS 参数的 to_timestamp 调用时,to_timestamp_with_fmt_nls() 会将 nls_fmt_str 保存到 u_sess->parser_cxt.nls_fmt_str。在 ... |
| CVE-2025-53648 | MEDIUM | 5.4 | — | Jun 30, 2026 | SQL misconfiguration in the Gravitino UI, in versions 1.0.0 and below, can allow a malicious user to read or truncate fi... |
| CVE-2026-8655 | CRITICAL | 9.8 | 0.4% | Jun 30, 2026 | Multiple Memory overflow vulnerabilities in NetScaler ADC and NetScaler Gateway leading to unpredictable or erroneous be... |
| CVE-2026-8452 | CRITICAL | 9.8 | 1.0% | Jun 30, 2026 | Memory overflow vulnerability NetScaler ADC and NetScaler Gateway leading to unpredictable or erroneous behavior and Den... |
| CVE-2026-8451 | HIGH | 7.5 | 0.5% | Jun 30, 2026 | Insufficient input validation in NetScaler ADC and NetScaler Gateway leading to memory overread if NetScaler ADC or NetS... |
| CVE-2026-8403 | MEDIUM | 6.1 | — | Jun 30, 2026 | Improper neutralization of input during web page generation ('cross-site scripting') vulnerability in Eksagate Electroni... |
| CVE-2026-6556 | CRITICAL | 9.1 | 0.3% | Jun 30, 2026 | @fastify/express versions 4.0.6 and earlier only rewrite the plugin prefix for middleware mount paths when the path argu... |
| CVE-2026-58374 | HIGH | 7.1 | 0.3% | Jun 30, 2026 | In hostapd before 2.12, a missing bounds check in AP-mode Wi-Fi 7 (IEEE 802.11be) Multi-Link Operation (MLO) association... |
| CVE-2026-58116 | HIGH | 8.8 | 0.5% | Jun 30, 2026 | LLaMA-Factory through 0.9.5 contains a remote code execution vulnerability that allows attackers with WebUI access to ex... |
| CVE-2026-58016 | CRITICAL | 9.1 | 0.5% | Jun 30, 2026 | A flaw was found in GLib. A state confusion issue exists in g_dbus_node_info_new_for_xml() in the gio/gdbusintrospection... |
| CVE-2026-58015 | HIGH | 7.5 | 0.7% | Jun 30, 2026 | A flaw was found in GLib. The D-Bus client-side implementation of the DBUS_COOKIE_SHA1 SASL authentication mechanism doe... |
| CVE-2026-58014 | HIGH | 8.6 | 0.4% | Jun 30, 2026 | A flaw was found in GLib. An off-by-one error can occur in the g_key_file_get_locale_string_list function in the gkeyfil... |
| CVE-2026-58013 | HIGH | 8.2 | 0.5% | Jun 30, 2026 | A flaw was found in GLib. A buffer over-read can occur in g_io_channel_read_line_backend() in the giochannel.c file when... |
| CVE-2026-58012 | HIGH | 8.2 | 0.5% | Jun 30, 2026 | A flaw was found in GLib. A buffer over-read can occur in the g_regex_replace function when used with the `G_REGEX_RAW` ... |
| CVE-2026-58011 | HIGH | 7.5 | 0.5% | Jun 30, 2026 | A flaw was found in GLib. An out-of-bounds read of only 2 bytes can occur in the g_date_time_get_ymd function in the gli... |
| CVE-2026-58010 | HIGH | 8.2 | 0.5% | Jun 30, 2026 | A flaw was found in GLib. An off-by-one error can occur in the gvs_tuple_is_normal function in the glib/gvariant-seriali... |
| CVE-2026-53433 | HIGH | 7.5 | 0.1% | Jun 30, 2026 | fzf is vulnerable to a Denial of Service (DoS) due to inefficient HTTP body processing in the --listen mode due to ineff... |
| CVE-2026-53432 | HIGH | 7.5 | 0.1% | Jun 30, 2026 | fzf is vulnerable to Integer Overflow leading to crash in FuzzyMatchV2 function. When input line length is approximately... |
| CVE-2026-4629 | MEDIUM | 6.5 | 0.3% | Jun 30, 2026 | A flaw was found in Keycloak. A highly privileged user with `manage-clients` permission can exploit this vulnerability b... |
| CVE-2026-47105 | — | — | — | Jun 30, 2026 | Rejected reason: This CVE ID has been rejected or withdrawn by its CVE Numbering Authority. |
| CVE-2026-44946 | HIGH | 7.4 | 0.3% | Jun 30, 2026 | A SAML authentication replay vulnerability in Rancher's Assertion Consumer Service (ACS) handler did not enforce one-t... |
| CVE-2026-14209 | MEDIUM | 4.3 | 0.2% | Jun 30, 2026 | A vulnerability was discovered in Keycloak's Admin UI extension that allows certain administrative users to bypass secur... |
| CVE-2026-13474 | HIGH | 7.5 | 0.4% | Jun 30, 2026 | Denial of service via malformed HTTP/2 requests in NetScaler ADC and NetScaler Gateway if HTTP/2 is enabled in HTTP Prof... |
| CVE-2026-12388 | MEDIUM | 6.5 | 0.2% | Jun 30, 2026 | A flaw was found in the Identity Provider (IdP) mapper component of Keycloak, which is used to manage how user informati... |
