CVE Vulnerability Database

Search and browse 393,427 CVE records with CVSS scores, EPSS exploit predictions, and CISA KEV status.

CVE IDSeverityCVSSDescription
CVE-2026-27882MEDIUM4.8Coolify is an open-source and self-hostable tool for managing servers, applications, and databases. Prior to 4.0.0-beta....
CVE-2026-27881MEDIUM5Coolify is an open-source and self-hostable tool for managing servers, applications, and databases. Prior to 4.0.0-beta....
CVE-2026-35098MEDIUM6.9KTM System e-BOK does not implement any limit or timeout on consecutive login attempts, allowing an attacker to perform ...
CVE-2026-35097MEDIUM6.9KTM System e-BOK enforces a maximum password length of six numeric digits and does not permit the use of any alphabetic,...
CVE-2026-35096MEDIUM5.1KTM System e-BOK is vulnerable to Cross‑Site Request Forgery (CSRF) in both the email-change and password-change functio...
CVE-2026-35095MEDIUM4.8KTM System e-BOK allows the session identifier to be set by the client prior to authentication. If a cookie with a valid...
CVE-2026-14241CRITICAL9.8Memory safety bugs present in Firefox 152.0.3. Some of these bugs showed evidence of memory corruption and we presume th...
CVE-2026-14178MEDIUM5.9openGauss 在处理带 NLS 参数的 to_timestamp 调用时,to_timestamp_with_fmt_nls() 会将 nls_fmt_str 保存到 u_sess->parser_cxt.nls_fmt_str。在 ...
CVE-2025-53648MEDIUM5.4SQL misconfiguration in the Gravitino UI, in versions 1.0.0 and below, can allow a malicious user to read or truncate fi...
CVE-2026-8655CRITICAL9.8Multiple Memory overflow vulnerabilities in NetScaler ADC and NetScaler Gateway leading to unpredictable or erroneous be...
CVE-2026-8452CRITICAL9.8Memory overflow vulnerability NetScaler ADC and NetScaler Gateway leading to unpredictable or erroneous behavior and Den...
CVE-2026-8451HIGH7.5Insufficient input validation in NetScaler ADC and NetScaler Gateway leading to memory overread if NetScaler ADC or NetS...
CVE-2026-8403MEDIUM6.1Improper neutralization of input during web page generation ('cross-site scripting') vulnerability in Eksagate Electroni...
CVE-2026-6556CRITICAL9.1@fastify/express versions 4.0.6 and earlier only rewrite the plugin prefix for middleware mount paths when the path argu...
CVE-2026-58374HIGH7.1In hostapd before 2.12, a missing bounds check in AP-mode Wi-Fi 7 (IEEE 802.11be) Multi-Link Operation (MLO) association...
CVE-2026-58116HIGH8.8LLaMA-Factory through 0.9.5 contains a remote code execution vulnerability that allows attackers with WebUI access to ex...
CVE-2026-58016CRITICAL9.1A flaw was found in GLib. A state confusion issue exists in g_dbus_node_info_new_for_xml() in the gio/gdbusintrospection...
CVE-2026-58015HIGH7.5A flaw was found in GLib. The D-Bus client-side implementation of the DBUS_COOKIE_SHA1 SASL authentication mechanism doe...
CVE-2026-58014HIGH8.6A flaw was found in GLib. An off-by-one error can occur in the g_key_file_get_locale_string_list function in the gkeyfil...
CVE-2026-58013HIGH8.2A flaw was found in GLib. A buffer over-read can occur in g_io_channel_read_line_backend() in the giochannel.c file when...
CVE-2026-58012HIGH8.2A flaw was found in GLib. A buffer over-read can occur in the g_regex_replace function when used with the `G_REGEX_RAW` ...
CVE-2026-58011HIGH7.5A flaw was found in GLib. An out-of-bounds read of only 2 bytes can occur in the g_date_time_get_ymd function in the gli...
CVE-2026-58010HIGH8.2A flaw was found in GLib. An off-by-one error can occur in the gvs_tuple_is_normal function in the glib/gvariant-seriali...
CVE-2026-53433HIGH7.5fzf is vulnerable to a Denial of Service (DoS) due to inefficient HTTP body processing in the --listen mode due to ineff...
CVE-2026-53432HIGH7.5fzf is vulnerable to Integer Overflow leading to crash in FuzzyMatchV2 function. When input line length is approximately...