CVE Vulnerability Database
Search and browse 394,358 CVE records with CVSS scores, EPSS exploit predictions, and CISA KEV status.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2026-12244 | HIGH | 8.8 | 0.3% | Jun 25, 2026 | If NSD is configured as secondary for a zone, the primary of that zone can crash NSD with an AXFR containing a DNS messa... |
| CVE-2026-10824 | MEDIUM | 6.5 | 0.2% | Jun 25, 2026 | The Masteriyo LMS WordPress plugin before 2.2.1 does not perform authorization checks in a course-progress REST API con... |
| CVE-2026-8330 | MEDIUM | 4.4 | 0.1% | Jun 25, 2026 | GitLab has remediated an issue in GitLab CE/EE affecting all versions from 9.3 before 18.11.6, 19.0 before 19.0.3, and 1... |
| CVE-2026-5952 | MEDIUM | 4.3 | 0.2% | Jun 25, 2026 | GitLab has remediated an issue in GitLab CE/EE affecting all versions from 17.11 before 18.11.6, 19.0 before 19.0.3, and... |
| CVE-2026-5796 | MEDIUM | 4.3 | 0.2% | Jun 25, 2026 | GitLab has remediated an issue in GitLab CE/EE affecting all versions from 13.6 before 18.11.6, 19.0 before 19.0.3, and ... |
| CVE-2026-5309 | MEDIUM | 5.4 | 0.2% | Jun 25, 2026 | GitLab has remediated an issue in GitLab EE affecting all versions from 18.6 before 18.11.6, 19.0 before 19.0.3, and 19.... |
| CVE-2026-3176 | LOW | 3.1 | 0.2% | Jun 25, 2026 | GitLab has remediated an issue in GitLab EE affecting all versions from 18.6 before 18.11.6, 19.0 before 19.0.3, and 19.... |
| CVE-2026-2238 | MEDIUM | 5.3 | 0.2% | Jun 25, 2026 | GitLab has remediated an issue in GitLab CE/EE affecting all versions from 17.5 before 18.11.6, 19.0 before 19.0.3, and ... |
| CVE-2026-1606 | MEDIUM | 4.3 | 0.2% | Jun 25, 2026 | GitLab has remediated an issue in GitLab CE/EE affecting all versions from 14.8 before 18.11.6, 19.0 before 19.0.3, and ... |
| CVE-2026-13311 | HIGH | 8.7 | 0.4% | Jun 25, 2026 | shell-quote prior to 1.8.5 finalizes parsed tokens in parse() using Array.prototype.concat as a reduce accumulator, whic... |
| CVE-2026-12635 | LOW | 3.1 | 0.2% | Jun 25, 2026 | GitLab has remediated an issue in GitLab CE/EE affecting all versions from 8.3 before 18.11.6, 19.0 before 19.0.3, and 1... |
| CVE-2026-12053 | HIGH | 7.5 | 0.3% | Jun 25, 2026 | GitLab has remediated an issue in GitLab EE affecting all versions from 19.1 before 19.1.1 that under certain conditions... |
| CVE-2026-11379 | MEDIUM | 5.3 | 0.2% | Jun 25, 2026 | GitLab has remediated an issue in GitLab EE affecting all versions from 13.11 prior to 18.11.6, 19.0 prior to 19.0.3, an... |
| CVE-2026-10712 | MEDIUM | 6.1 | 0.3% | Jun 25, 2026 | GitLab has remediated an issue in GitLab CE/EE affecting all versions from 18.10 before 18.11.6, 19.0 before 19.0.3, and... |
| CVE-2026-10086 | MEDIUM | 5.4 | 0.3% | Jun 25, 2026 | GitLab has remediated an issue in GitLab EE affecting all versions from 16.4 before 18.11.6, 19.0 before 19.0.3, and 19.... |
| CVE-2026-0934 | LOW | 3.8 | 0.2% | Jun 25, 2026 | GitLab has remediated an issue in GitLab EE affecting all versions from 17.9 before 18.11.6, 19.0 before 19.0.3, and 19.... |
| CVE-2026-2508 | MEDIUM | 6.5 | 0.2% | Jun 25, 2026 | The Gravity Forms Booking plugin for WordPress is vulnerable to time-based SQL Injection via the ‘staff_id’ parameter in... |
| CVE-2026-12079 | MEDIUM | 6.5 | 0.2% | Jun 25, 2026 | The Dokan Pro plugin for WordPress is vulnerable to time-based SQL Injection via the ’orderby’ parameter in all versions... |
| CVE-2026-12077 | HIGH | 7.5 | 0.3% | Jun 25, 2026 | The Dokan Pro plugin for WordPress is vulnerable to time-based SQL Injection via the via 'latitude' and 'longitude' para... |
| CVE-2026-10833 | MEDIUM | 6.4 | 0.2% | Jun 25, 2026 | The Gutenberg Essential Blocks – Page Builder for Gutenberg Blocks & Patterns plugin for WordPress is vulnerable to Stor... |
| CVE-2026-8662 | MEDIUM | 4.3 | 0.2% | Jun 25, 2026 | Path Traversal vulnerability in the create_archive function of Rapid7 InsightConnect Compression Plugin on Linux allows ... |
| CVE-2026-8658 | HIGH | 8.8 | 0.7% | Jun 25, 2026 | OS Command Injection vulnerability in Rapid7 InsightConnect Tcpdump Plugin on Linux allows authenticated attackers to ex... |
| CVE-2026-8666 | CRITICAL | 9.8 | 0.6% | Jun 25, 2026 | OS Command Injection vulnerability in the traceroute action of Rapid7 InsightConnect Traceroute Plugin on Linux allows r... |
| CVE-2026-8665 | CRITICAL | 9.8 | 0.6% | Jun 25, 2026 | OS Command Injection vulnerability in the TR action of Rapid7 InsightConnect Translate Plugin on Linux allows remote att... |
| CVE-2026-8664 | HIGH | 8.8 | 0.7% | Jun 25, 2026 | OS Command Injection vulnerability in Rapid7 InsightConnect Finger Plugin on Linux allows authenticated attackers to exe... |
