CVE Vulnerability Database
Search and browse 394,249 CVE records with CVSS scores, EPSS exploit predictions, and CISA KEV status.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2026-5757 | HIGH | 7.5 | 0.5% | Jun 26, 2026 | Unauthenticated remote information disclosure vulnerability in Ollama's model quantization engine allows an attacker to ... |
| CVE-2026-47214 | HIGH | 7.1 | 0.2% | Jun 26, 2026 | Docling simplifies document processing by parsing diverse formats and providing integrations with the generative AI ecos... |
| CVE-2026-45195 | HIGH | 7.8 | 0.1% | Jun 26, 2026 | Kernel software installed and running inside a Host VM may post improper commands to the GPU Firmware to trigger a memor... |
| CVE-2026-44018 | HIGH | 7.1 | 0.1% | Jun 26, 2026 | Docling simplifies document processing by parsing diverse formats and providing integrations with the generative AI ecos... |
| CVE-2026-21734 | HIGH | 7.7 | 0.1% | Jun 26, 2026 | A web page that contains unusual GPU shader code is loaded into the GPU compiler process and can trigger a write out-of-... |
| CVE-2026-12411 | CRITICAL | 9.6 | 0.1% | Jun 26, 2026 | Broken Access Control in the devLXDInstancePatchHandler component of Canonical LXD allows an untrusted guest to mount, r... |
| CVE-2026-0828 | HIGH | 7.5 | — | Jun 26, 2026 | Kernel driver ProcessMonitorDriver.sys in Safetica's endpoint client x64 , versions 10.5.75.0 and 11.11.4.0, allows unpr... |
| CVE-2026-0685 | CRITICAL | 9.8 | — | Jun 26, 2026 | Server side template inject (SSTI) in the expression evaluation component in Genshi Template Engine version 0.7.9 allows... |
| CVE-2025-11919 | CRITICAL | 9.6 | — | Jun 26, 2026 | The default JVM can access files and directories under `/tmp/` including the `$TemporaryDirectory` of other users on the... |
| CVE-2023-20572 | MEDIUM | 5.6 | — | Jun 26, 2026 | An observable timing discrepancy in the ASP could allow a privileged attacker to perform a brute-force attack against th... |
| CVE-2023-20540 | LOW | 1.8 | — | Jun 26, 2026 | An observable timing discrepancy in the ASP could allow a privileged attacker to perform a brute-force attack against th... |
| CVE-2026-9699 | MEDIUM | 6.8 | — | Jun 26, 2026 | Mattermost Plugins versions <=11.6 10.18.11 11.3.6 11.6.5.0 fail to sanitize error responses from the OpenAI API before ... |
| CVE-2026-57667 | HIGH | 8.5 | 0.2% | Jun 26, 2026 | Sales Representative SQL Injection in Groundhogg <= 4.5 versions. |
| CVE-2026-57665 | MEDIUM | 5.3 | — | Jun 26, 2026 | Unauthenticated Insecure Direct Object References (IDOR) in GravityView <= 3.0.0 versions. |
| CVE-2026-57664 | MEDIUM | 4.3 | — | Jun 26, 2026 | Unauthenticated Sensitive Data Exposure in Bopo – WooCommerce Product Bundle Builder <= 1.1.6 versions. |
| CVE-2026-57663 | HIGH | 8.5 | — | Jun 26, 2026 | Contributor SQL Injection in Recipe Maker For Your Food Blog from Zip Recipes <= 8.2.7 versions. |
| CVE-2026-57662 | HIGH | 8.5 | — | Jun 26, 2026 | Contributor SQL Injection in Contest Gallery <= 30.0.0 versions. |
| CVE-2026-57661 | MEDIUM | 5.4 | — | Jun 26, 2026 | Subscriber Broken Access Control in WPComplete <= 2.9.5.5 versions. |
| CVE-2026-57660 | MEDIUM | 5.3 | 0.2% | Jun 26, 2026 | Unauthenticated Broken Access Control in Booking and Rental Manager <= 2.7.1 versions. |
| CVE-2026-57659 | HIGH | 8.8 | — | Jun 26, 2026 | Unauthenticated Cross Site Request Forgery (CSRF) in Paid Memberships Pro - Add Member From Admin <= 0.7.2 versions. |
| CVE-2026-57658 | CRITICAL | 9.1 | — | Jun 26, 2026 | Administrator Arbitrary File Upload in TemplateSpare <= 4.2.0 versions. |
| CVE-2026-57657 | MEDIUM | 4.3 | — | Jun 26, 2026 | Unauthenticated Cross Site Request Forgery (CSRF) in Gmail SMTP <= 1.2.3.19 versions. |
| CVE-2026-57656 | MEDIUM | 5.9 | — | Jun 26, 2026 | Author Cross Site Scripting (XSS) in Hester Core <= 1.1.8 versions. |
| CVE-2026-57655 | HIGH | 8.2 | — | Jun 26, 2026 | Unauthenticated Cross Site Request Forgery (CSRF) in Child Theme Wizard <= 1.4 versions. |
| CVE-2026-57654 | MEDIUM | 6.5 | 0.2% | Jun 26, 2026 | Affiliate Broken Access Control in Affiliates Manager <= 2.9.49 versions. |
