CVE Vulnerability Database

Search and browse 394,358 CVE records with CVSS scores, EPSS exploit predictions, and CISA KEV status.

CVE IDSeverityCVSSDescription
CVE-2026-8660CRITICAL9.8OS Command Injection vulnerability in the ping action of Rapid7 InsightConnect Ping Plugin on Linux allows remote attack...
CVE-2026-8592CRITICAL9.8OS Command Injection vulnerability in the process_string action of Rapid7 InsightConnect AWK Plugin on Linux allows remo...
CVE-2026-9155HIGH8.8OS Command Injection vulnerability in Rapid7 InsightConnect Sed Plugin on Linux allows authenticated attackers to execut...
CVE-2026-9154MEDIUM6.5Arbitrary File Write vulnerability in Rapid7 InsightConnect Sed Plugin on Linux allows authenticated attackers to write ...
CVE-2026-9153MEDIUM6.5Arbitrary File Read vulnerability in Rapid7 InsightConnect Sed Plugin on Linux allows authenticated attackers to read ar...
CVE-2026-57589HIGH7.8sys/kern/sysv_sem.c in OpenBSD through 7.9 has a use-after-free allowing local privilege escalation to root. This is a c...
CVE-2026-9787HIGH8.8Quest NetVault Backup NVBULogDaemon Command Injection Remote Code Execution Vulnerability. This vulnerability allows rem...
CVE-2026-9786HIGH8.8Quest NetVault Backup NVBUDashboard SQL Injection Remote Code Execution Vulnerability. This vulnerability allows remote ...
CVE-2026-9785HIGH8.8Quest NetVault Backup NVBULibrarySlot SQL Injection Remote Code Execution Vulnerability. This vulnerability allows remot...
CVE-2026-9784HIGH8.8Quest NetVault Backup NVBULibraryPort SQL Injection Remote Code Execution Vulnerability. This vulnerability allows remot...
CVE-2026-9783HIGH8.8Quest NetVault Backup NVBURemovableMedia SQL Injection Remote Code Execution Vulnerability. This vulnerability allows re...
CVE-2026-9782HIGH8.8Quest NetVault Backup NVBUDeviceDrive SQL Injection Remote Code Execution Vulnerability. This vulnerability allows remot...
CVE-2026-9781HIGH8.8Quest NetVault Backup NVBURASDevice SQL Injection Remote Code Execution Vulnerability. This vulnerability allows remote ...
CVE-2026-9780HIGH8.8Quest NetVault Backup addclient3 Cross-Site Scripting Authentication Bypass Vulnerability. This vulnerability allows rem...
CVE-2026-8663HIGH8.8OS Command Injection vulnerability in Rapid7 InsightConnect RPM Plugin on Linux allows authenticated attackers to execut...
CVE-2026-8659HIGH8.8OS Command Injection vulnerability in Rapid7 InsightConnect SQLmap Plugin on Linux allows authenticated attackers to exe...
CVE-2026-7570HIGH8.8Quest NetVault Backup NVBUDashboard SQL Injection Remote Code Execution Vulnerability. This vulnerability allows remote ...
CVE-2026-7569HIGH8.8Quest NetVault Backup viewclient Cross-Site Scripting Authentication Bypass Vulnerability. This vulnerability allows rem...
CVE-2026-40079CRITICAL9.8Cacti is an open source performance and fault management framework. Versions 1.2.30 and prior are vulnerable to Command ...
CVE-2026-39951HIGH8.8Cacti is an open source performance and fault management framework. Versions 1.2.30 and prior have a Stored SQL Injectio...
CVE-2025-60473MEDIUM5.5A NULL pointer dereference in the gf_filter_in_parent_chain function (/filter_core/filter_pid.c) of GPAC Project/MP4Box ...
CVE-2025-60466MEDIUM5A use-after-free in the gf_filter_pid_get_packet function (/filter_core/filter_pid.c) of GPAC Project/MP4Box before 26.0...
CVE-2026-39955CRITICAL9.8Cacti is an open source performance and fault management framework. Versions 1.2.30 and prior have pre-authentication SQ...
CVE-2026-39948CRITICAL9.8Cacti is an open source performance and fault management framework. In versions 1.2.30 and prior, the rfilter request pa...
CVE-2026-39938CRITICAL9.8Cacti is an open source performance and fault management framework. Versions 1.2.30 and prior have unauthenticated LFI t...