CVE Vulnerability Database
Search and browse 394,439 CVE records with CVSS scores, EPSS exploit predictions, and CISA KEV status.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2026-49859 | MEDIUM | 5.2 | 0.1% | Jun 23, 2026 | Deno is a JavaScript, TypeScript, and WebAssembly runtime. Prior to 2.8.1, when fetch() was called, Deno checked the des... |
| CVE-2026-49440 | HIGH | 7.4 | 0.1% | Jun 23, 2026 | Deno is a JavaScript, TypeScript, and WebAssembly runtime. Prior to 2.8.1, node:crypto.checkPrime(candidate[, options][,... |
| CVE-2026-49411 | MEDIUM | 6.5 | 0.1% | Jun 23, 2026 | Deno is a JavaScript, TypeScript, and WebAssembly runtime. Prior to 2.8.0, the Node.js compatibility TCP path checked th... |
| CVE-2026-49406 | MEDIUM | 5.5 | 0.1% | Jun 23, 2026 | Deno is a JavaScript, TypeScript, and WebAssembly runtime. Prior to 2.7.12, when Deno was run in BYONM mode (nodeModules... |
| CVE-2026-49402 | HIGH | 8.1 | 0.3% | Jun 23, 2026 | Deno is a JavaScript, TypeScript, and WebAssembly runtime. Prior to 2.7.10, Deno's node:child_process implementation pro... |
| CVE-2026-49401 | HIGH | 8.4 | 0.1% | Jun 23, 2026 | Deno is a JavaScript, TypeScript, and WebAssembly runtime. Prior to 2.7.14, Deno's permission system enforces filesystem... |
| CVE-2026-45692 | LOW | 3.8 | 0.1% | Jun 23, 2026 | Caddy is an extensible server platform that uses TLS by default. From 2.4.0 until 2.11.3, the authorization layer and th... |
| CVE-2026-45135 | HIGH | 8.1 | 0.4% | Jun 23, 2026 | Caddy is an extensible server platform that uses TLS by default. From 2.7.0 until 2.11.3, the FastCGI transport's splitP... |
| CVE-2026-44726 | CRITICAL | 9.1 | 0.1% | Jun 23, 2026 | Deno is a JavaScript, TypeScript, and WebAssembly runtime. From 2.0.0 until 2.7.8, a flaw in Deno's Node.js tls compatib... |
| CVE-2026-0864 | MEDIUM | 5.5 | 0.1% | Jun 23, 2026 | When using the "configparser" module to write configuration files containing multi-line text values with carriage return... |
| CVE-2025-71382 | HIGH | 7.1 | 0.3% | Jun 23, 2026 | MuPDF before 1.27.0-rc1 contains an uncontrolled recursion vulnerability in the EPUB CSS rendering engine that allows re... |
| CVE-2025-61029 | HIGH | 7.5 | 0.4% | Jun 23, 2026 | An issue in the sqlo_untry component of openlink virtuoso-opensource v7.2.11 allows attackers to cause a Denial of Servi... |
| CVE-2025-61024 | HIGH | 7.5 | 0.4% | Jun 23, 2026 | An issue in the sqlo_try_in_loop component of openlink virtuoso-opensource v7.2.11 allows attackers to cause a Denial of... |
| CVE-2020-9713 | MEDIUM | 5.5 | 0.2% | Jun 23, 2026 | Adobe Acrobat and Reader versions 2020.009.20074 and earlier, 2020.001.30002, 2017.011.30171 and earlier, and 2015.006.3... |
| CVE-2020-9711 | MEDIUM | 5.5 | 0.2% | Jun 23, 2026 | Acrobat Reader versions 2020.009.20074, 2020.001.30002, 2017.011.30171, 2015.006.30523 and earlier are affected by an ou... |
| CVE-2020-9695 | HIGH | 7.8 | 0.2% | Jun 23, 2026 | Acrobat Reader versions 2020.009.20074, 2020.001.30002, 2017.011.30171, 2015.006.30523 and earlier are affected by an ou... |
| CVE-2026-56968 | MEDIUM | 5.3 | 0.3% | Jun 23, 2026 | GNU SASL before 2.2.4 lacks sanitization of a short challenge in _gsasl_ntlm_client_step in the NTLM client, which could... |
| CVE-2026-56117 | MEDIUM | 5.5 | 0.1% | Jun 23, 2026 | dhcpcd through 10.3.2, fixed in commit 78ea09e, contains a heap use-after-free vulnerability in the control socket handl... |
| CVE-2026-56116 | HIGH | 7.1 | 0.2% | Jun 23, 2026 | dhcpcd through 10.3.2, fixed in commit 708b4a5, contains a memory leak vulnerability in the IPv6 Router Advertisement ro... |
| CVE-2026-56115 | HIGH | 8.8 | 0.3% | Jun 23, 2026 | Bootimus through 0.1.70 contains a broken access control vulnerability that allows authenticated low-privileged users to... |
| CVE-2026-56114 | MEDIUM | 6.5 | 0.2% | Jun 23, 2026 | dhcpcd through 10.3.2, fixed in commit 2f00c7b, contains a one-byte stack out-of-bounds write vulnerability in dhcp6_mak... |
| CVE-2026-56113 | MEDIUM | 6.5 | 0.2% | Jun 23, 2026 | dhcpcd through 10.3.2, fixed in commit 5733d3c, contains a heap use-after-free vulnerability that allows unauthenticated... |
| CVE-2026-55450 | CRITICAL | 9.3 | 0.3% | Jun 23, 2026 | Langflow is a tool for building and deploying AI-powered agents and workflows. Prior to 1.9.1, unauthenticated users can... |
| CVE-2026-55447 | CRITICAL | 9.6 | 0.4% | Jun 23, 2026 | Langflow is a tool for building and deploying AI-powered agents and workflows. Prior to 1.9.2, by controlling a files th... |
| CVE-2026-55446 | HIGH | 7.5 | 0.3% | Jun 23, 2026 | Langflow is a tool for building and deploying AI-powered agents and workflows. Prior to 1.0.19, an attacker can send a /... |
