CVE Vulnerability Database

Search and browse 394,365 CVE records with CVSS scores, EPSS exploit predictions, and CISA KEV status.

CVE IDSeverityCVSSDescription
CVE-2026-40079CRITICAL9.8Cacti is an open source performance and fault management framework. Versions 1.2.30 and prior are vulnerable to Command ...
CVE-2026-39951HIGH8.8Cacti is an open source performance and fault management framework. Versions 1.2.30 and prior have a Stored SQL Injectio...
CVE-2025-60473MEDIUM5.5A NULL pointer dereference in the gf_filter_in_parent_chain function (/filter_core/filter_pid.c) of GPAC Project/MP4Box ...
CVE-2025-60466MEDIUM5A use-after-free in the gf_filter_pid_get_packet function (/filter_core/filter_pid.c) of GPAC Project/MP4Box before 26.0...
CVE-2026-39955CRITICAL9.8Cacti is an open source performance and fault management framework. Versions 1.2.30 and prior have pre-authentication SQ...
CVE-2026-39948CRITICAL9.8Cacti is an open source performance and fault management framework. In versions 1.2.30 and prior, the rfilter request pa...
CVE-2026-39938CRITICAL9.8Cacti is an open source performance and fault management framework. Versions 1.2.30 and prior have unauthenticated LFI t...
CVE-2026-39900MEDIUM6.1Cacti is an open source performance and fault management framework. Versions 1.2.30 and prior are vulnerable to Reflecte...
CVE-2026-39899MEDIUM5.3Cacti is an open source performance and fault management framework. Versions 1.2.30 and prior are vulnerable to Path Tra...
CVE-2025-8106Rejected reason: This CVE ID has been rejected or withdrawn by its CVE Numbering Authority.
CVE-2025-60474HIGH7.5A buffer overflow in the gf_media_import function (/media_tools/av_parsers.c) of GPAC Project/MP4Box before 26.02.0 allo...
CVE-2025-60467HIGH7.5A use-after-free in the gf_filter_pid_inst_swap_delete_task function (/filter_core/filter_pid.c) of GPAC Project/MP4Box ...
CVE-2026-9779HIGH7.2ATEN Unizon doCryptoHugeFileToFile Improper Verification of Cryptographic Signature Remote Code Execution Vulnerability....
CVE-2026-9778HIGH7.2ATEN Unizon ImportDeviceList Directory Traversal Remote Code Execution Vulnerability. This vulnerability allows remote a...
CVE-2026-9777HIGH7.2ATEN Unizon restoreDB Directory Traversal Remote Code Execution Vulnerability. This vulnerability allows remote attacker...
CVE-2026-9776HIGH7.5ATEN Unizon writeFileToHttpServletResponse Directory Traversal Information Disclosure Vulnerability. This vulnerability ...
CVE-2026-9775MEDIUM6.5ATEN Unizon uploadSSL Directory Traversal Arbitrary File Deletion Vulnerability. This vulnerability allows remote attack...
CVE-2026-9774MEDIUM6.5ATEN Unizon updateLicense Directory Traversal Arbitrary File Deletion Vulnerability. This vulnerability allows remote at...
CVE-2026-9773HIGH8.8Unraid Web Server ToggleState Command Injection Remote Code Execution Vulnerability. This vulnerability allows remote at...
CVE-2026-9772HIGH8.8Unraid Web Server FileUpload Command Injection Remote Code Execution Vulnerability. This vulnerability allows remote att...
CVE-2026-55762HIGH8.1Rocket.Chat is an open-source, secure, fully customizable communications platform. Prior to 8.5.1, 8.4.4, 8.3.6, 8.2.6, ...
CVE-2026-55759HIGH7.4Rocket.Chat is an open-source, secure, fully customizable communications platform. Prior to 8.5.1, 8.4.4, 8.3.6, 8.2.6, ...
CVE-2026-55666CRITICAL9.3Rocket.Chat is an open-source, secure, fully customizable communications platform. Prior to 8.5.1, 8.4.4, 8.3.6, 8.2.6, ...
CVE-2026-55570CRITICAL9SiYuan is an open-source personal knowledge management system. Prior to 3.7.0, it does not escape the untrusted fields (...
CVE-2026-55455CRITICAL9.1Appsmith is a platform to build admin panels, internal tools, and dashboards. Prior to 2.1, the outbound HTTP host filte...