CVE Vulnerability Database
Search and browse 394,712 CVE records with CVSS scores, EPSS exploit predictions, and CISA KEV status.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2026-51843 | CRITICAL | 9.8 | 0.4% | Jun 19, 2026 | Tenda AC7 v15.03.06.44 contains a stack buffer overflow vulnerability in the /goform/AdvSetMacMtuWan interface via the w... |
| CVE-2026-49260 | HIGH | 8.2 | 0.2% | Jun 19, 2026 | PhpWeasyPrint is a PHP library allowing PDF generation from a URL or an HTML page. Prior to version 2.5.1, `pontedilana/... |
| CVE-2026-3196 | MEDIUM | 5.5 | 0.1% | Jun 19, 2026 | An integer overflow vulnerability was found in the virtio-snd device via PCM_INFO requests from the guest. A malicious g... |
| CVE-2026-3195 | HIGH | 7.4 | 0.2% | Jun 19, 2026 | A flaw was found in QEMU. When reading input audio in the virtio-snd device input callback, the `virtio_snd_pcm_in_cb` f... |
| CVE-2019-25748 | HIGH | 8.2 | 0.4% | Jun 19, 2026 | Joomla JHotelReservation 6.0.7 contains an SQL injection vulnerability that allows unauthenticated attackers to execute ... |
| CVE-2017-20282 | HIGH | 8.2 | 0.4% | Jun 19, 2026 | Joomla! Component jCart for OpenCart 2.0 contains an SQL injection vulnerability that allows unauthenticated attackers t... |
| CVE-2017-20281 | HIGH | 8.2 | 0.4% | Jun 19, 2026 | Joomla! Component Extra Search 2.2.8 contains an SQL injection vulnerability that allows unauthenticated attackers to ma... |
| CVE-2017-20280 | HIGH | 8.2 | 0.4% | Jun 19, 2026 | Joomla Component Myportfolio 3.0.2 contains an SQL injection vulnerability that allows unauthenticated attackers to mani... |
| CVE-2017-20279 | HIGH | 8.2 | 0.4% | Jun 19, 2026 | Joomla Payage 2.05 contains an SQL injection vulnerability that allows unauthenticated attackers to manipulate database ... |
| CVE-2017-20278 | HIGH | 8.2 | 0.4% | Jun 19, 2026 | Joomla Component JoomRecipe 1.0.3 contains an SQL injection vulnerability that allows unauthenticated attackers to manip... |
| CVE-2017-20277 | HIGH | 8.2 | 0.4% | Jun 19, 2026 | Joomla JoomRecipe 1.0.4 component contains a blind SQL injection vulnerability in the search_author parameter on the sea... |
| CVE-2017-20276 | HIGH | 8.2 | 0.4% | Jun 19, 2026 | Joomla! Component SIMGenealogy 2.1.5 contains an SQL injection vulnerability that allows unauthenticated attackers to ma... |
| CVE-2017-20275 | HIGH | 8.2 | 0.4% | Jun 19, 2026 | Joomla! Component PHP-Bridge 1.2.3 contains an SQL injection vulnerability that allows unauthenticated attackers to exec... |
| CVE-2017-20274 | HIGH | 8.2 | 0.4% | Jun 19, 2026 | Joomla LMS King Professional 3.2.4.0 contains an SQL injection vulnerability that allows unauthenticated attackers to ma... |
| CVE-2017-20273 | HIGH | 8.2 | 0.4% | Jun 19, 2026 | Joomla Event Registration Pro Calendar 4.1.3 contains an SQL injection vulnerability that allows unauthenticated attacke... |
| CVE-2017-20272 | HIGH | 8.2 | 0.4% | Jun 19, 2026 | Joomla Ultimate Property Listing 1.0.2 contains an SQL injection vulnerability that allows unauthenticated attackers to ... |
| CVE-2017-20271 | HIGH | 8.2 | 0.4% | Jun 19, 2026 | Joomla StreetGuessr Game 1.1.8 contains an SQL injection vulnerability that allows unauthenticated attackers to execute ... |
| CVE-2017-20270 | HIGH | 8.2 | 0.4% | Jun 19, 2026 | Joomla! Component Twitch Tv 1.1 contains an SQL injection vulnerability that allows unauthenticated attackers to execute... |
| CVE-2017-20269 | HIGH | 8.2 | 0.4% | Jun 19, 2026 | Joomla! Component KissGallery 1.0.0 contains an SQL injection vulnerability that allows unauthenticated attackers to inj... |
| CVE-2017-20268 | HIGH | 8.2 | 0.4% | Jun 19, 2026 | Joomla! Component Zap Calendar Lite 4.3.4 contains an SQL injection vulnerability that allows unauthenticated attackers ... |
| CVE-2026-12622 | MEDIUM | 5.4 | 0.2% | Jun 19, 2026 | The GridTime 3000 GNSS Time Server has an open redirect vulnerability in the password change form submission. This issu... |
| CVE-2026-12621 | MEDIUM | 5.4 | 0.2% | Jun 19, 2026 | Improper neutralization of input during web page generation XSS vulnerability in the GridTime 3000 (password reset form... |
| CVE-2026-12620 | MEDIUM | 6.5 | 0.2% | Jun 19, 2026 | The GridTime 3000 GNSS Time Server leaks the access token in the URL parameters of some endpoints. This issue affects G... |
| CVE-2026-12619 | MEDIUM | 5.4 | 0.2% | Jun 19, 2026 | Improper Neutralization of Input During Web Page Generation (XSS or 'Cross-site Scripting') vulnerability in Microchip G... |
| CVE-2017-20267 | HIGH | 8.2 | 0.4% | Jun 19, 2026 | Joomla! Component Calendar Planner 1.0.1 contains an SQL injection vulnerability that allows unauthenticated attackers t... |
