CVE Vulnerability Database

Search and browse 376,668 CVE records with CVSS scores, EPSS exploit predictions, and CISA KEV status.

CVE IDSeverityCVSSDescription
CVE-2026-71488HIGH7.5league/commonmark is a PHP library for parsing and rendering CommonMark Markdown. From 0.6.0 until 2.9.0, specially craf...
CVE-2026-71478MEDIUM6.1league/commonmark is a PHP library for parsing and rendering CommonMark Markdown. From 1.5.0 until 2.9.0, the Attributes...
CVE-2026-71476HIGH8.7Nx is a monorepo solution for TypeScript and polyglot codebases. From version 20.8.0 until 22.7.7 and 23.0.2, the Nx sel...
CVE-2026-71447MEDIUM6.9AIL Project contains a stored cross-site scripting vulnerability in the translation controls displayed for chat messages...
CVE-2026-71446MEDIUM6.9AIL Framework contains a stored cross-site scripting vulnerability in the crawler domain view. Crawled URLs were embedde...
CVE-2026-71445HIGH8.2AIL Framework contained a reflected cross-site scripting vulnerability in the /tag/add_tags endpoint. When an error occu...
CVE-2026-71439MEDIUM5.3Mermaid is a JavaScript tool that uses Markdown-inspired text to create and modify diagrams and charts. From version 11....
CVE-2026-71438LOW2.4Mermaid is a JavaScript tool that uses Markdown-inspired text to create and modify diagrams and charts. Prior to 10.9.8 ...
CVE-2026-71437MEDIUM6.5Mermaid is a JavaScript tool that uses Markdown-inspired text to create and modify diagrams and charts. From version 11....
CVE-2026-71436MEDIUM5.3Mermaid is a JavaScript tool that uses Markdown-inspired text to create and modify diagrams and charts. From version 10....
CVE-2026-71435MEDIUM6.1Statamic is a Laravel and Git powered content management system (CMS). Prior to 5.74.3 and 6.24.2, the default ("automag...
CVE-2026-71434MEDIUM5.3Statamic is a Laravel and Git powered content management system (CMS). Prior to 5.74.3 and 6.24.2, public frontend forms...
CVE-2026-71433MEDIUM5.3LangGraph Checkpoint Postgres and SQLite Checkpoint are the Postgres and SQLite implementations of LangGraph's checkpoin...
CVE-2026-71430MEDIUM6.2node-re2 provides RE2 regular expression bindings for Node.js. Prior to version 1.25.1, the WrappedRE2::Replace function...
CVE-2026-71327HIGH7.6Traefik is an open source HTTP reverse proxy and load balancer. From 3.0.0 until 3.6.25 and 3.7.10, Traefik's Kubernetes...
CVE-2026-71326LOW2.1Traefik is an open source HTTP reverse proxy and load balancer. From 3.6.11 until 3.6.25 and 3.7.10, Traefik's BasicAuth...
CVE-2026-71325MEDIUM4.8Traefik is an open-source edge router that makes publishing services a fun and easy experience. Prior to 2.11.54, 3.6.25...
CVE-2026-71324HIGH7Traefik is an open source HTTP reverse proxy and load balancer. Prior to 2.11.53, 3.6.24, and 3.7.9, Traefik's default H...
CVE-2026-70640HIGH7.3llama.cpp builds b1886 through b7445 contain a race condition use-after-free vulnerability in the LLaMA-Android JNI wrap...
CVE-2026-70639MEDIUM6.8llama.cpp builds b1886 through b7445 contain a null pointer dereference vulnerability in the LLaMA-Android JNI wrapper w...
CVE-2026-70638HIGH8.5llama.cpp builds b1886 through b7445 contain an integer overflow vulnerability in the LLaMA-Android JNI wrapper where th...
CVE-2026-70636HIGH8.7Flowise through 3.1.4 contains an authentication bypass vulnerability that allows unauthenticated attackers to access th...
CVE-2026-70635HIGH7.1TimescaleDB through 2.29.1, fixed in commit 517c13e, contains an out-of-bounds read vulnerability that allows authentica...
CVE-2026-70634HIGH8.1TimescaleDB through 2.29.1, fixed in commit 517c13e, contains an out-of-bounds read in the Dictionary compression revers...
CVE-2026-70633HIGH7.1TimescaleDB through 2.29.1, fixed in commit 517c13e, contains an out-of-bounds read vulnerability in the Gorilla compres...