CVE Vulnerability Database

Search and browse 394,712 CVE records with CVSS scores, EPSS exploit predictions, and CISA KEV status.

CVE IDSeverityCVSSDescription
CVE-2026-49290HIGH7.6Slopsmith is a self-contained web application for browsing, playing, and practicing Rocksmith 2014 Custom DLC (CDLC). Pr...
CVE-2026-49287HIGH7.4Statamic is a Laravel and Git powered content management system (CMS). Prior to 5.73.23 and 6.20.0, the fix for CVE-2026...
CVE-2026-49286HIGH8.1PhpWeasyPrint is a PHP library allowing PDF generation from a URL or an HTML page. Prior to version 2.6.0, `pontedilana/...
CVE-2026-49271MEDIUM6.5libheif is a HEIF and AVIF file format decoder and encoder. Prior to version 1.22.1, the uncompressed HEIF decoder valid...
CVE-2019-25762HIGH7.5Joomla! Component JoomProject 1.1.3.2 contains an information disclosure vulnerability that allows unauthenticated attac...
CVE-2019-25761HIGH7.1Joomla! Component JoomCRM 1.1.1 contains an SQL injection vulnerability that allows authenticated attackers to execute a...
CVE-2019-25760MEDIUM5.5Joomla! Component Easy Shop 1.2.3 contains a local file inclusion vulnerability that allows unauthenticated attackers to...
CVE-2019-25759HIGH7.1Joomla! Component vBizz 1.0.7 contains an SQL injection vulnerability that allows authenticated attackers to execute arb...
CVE-2019-25758HIGH8.8Joomla! Component vBizz 1.0.7 contains an unrestricted file upload vulnerability that allows authenticated attackers to ...
CVE-2019-25757HIGH7.1Joomla vWishlist 1.0.1 contains an SQL injection vulnerability that allows authenticated attackers to execute arbitrary ...
CVE-2019-25756HIGH8.2Joomla! Component vAccount 2.0.2 contains an SQL injection vulnerability that allows unauthenticated attackers to execut...
CVE-2019-25755HIGH8.2Joomla Component vReview 1.9.11 contains an SQL injection vulnerability that allows unauthenticated attackers to execute...
CVE-2019-25754HIGH8.2Joomla Component vRestaurant 1.9.4 contains an SQL injection vulnerability that allows unauthenticated attackers to exec...
CVE-2019-25753HIGH8.2Joomla! Component VMap 1.9.6 contains an SQL injection vulnerability that allows unauthenticated attackers to execute ar...
CVE-2019-25752HIGH8.2Joomla! Component J-BusinessDirectory 4.9.7 contains an SQL injection vulnerability that allows unauthenticated attacker...
CVE-2019-25751HIGH8.2Joomla Component J-ClassifiedsManager 3.0.5 contains an SQL injection vulnerability that allows unauthenticated attacker...
CVE-2019-25750HIGH8.2Joomla Component J-MultipleHotelReservation 6.0.7 contains an SQL injection vulnerability that allows unauthenticated at...
CVE-2019-25749HIGH7.1Joomla J-CruisePortal 6.0.4 contains an SQL injection vulnerability that allows authenticated attackers to execute arbit...
CVE-2026-56211HIGH7.1A remote code execution vulnerability was found in libaom, the reference AV1 codec implementation. Insufficient bounds v...
CVE-2026-56210HIGH7.1A heap-buffer-overflow read vulnerability was found in libaom, the reference AV1 codec implementation. A missing bounds ...
CVE-2026-56209HIGH7.1An arbitrary address write vulnerability was found in libaom, the reference AV1 codec implementation. A missing bounds c...
CVE-2026-56208HIGH7.6A heap buffer overflow vulnerability was found in libaom, the reference AV1 codec implementation. A flaw in the AV1 enco...
CVE-2026-51846CRITICAL9.8In Tenda AC7 v15.03.06.44, the wanSpeed parameter of the route /goform/AdvSetMacMtuWan has a stack buffer overflow vulne...
CVE-2026-51845CRITICAL9.8Tenda AC7 v15.03.06.44 contains a stack buffer overflow vulnerability in the /goform/AdvSetMacMtuWan interface via the m...
CVE-2026-51844CRITICAL9.8Tenda AC7 v15.03.06.44 contains a stack buffer overflow vulnerability in the /goform/AdvSetMacMtuWan interface via the c...