CVE Vulnerability Database

Search and browse 394,738 CVE records with CVSS scores, EPSS exploit predictions, and CISA KEV status.

CVE IDSeverityCVSSDescription
CVE-2026-38716CRITICAL9.8InHand Networks IR912 V1.0.0.r20042 and IR915 V1.0.0.r20042 (including earlier versions) were discovered to contain a co...
CVE-2026-38715CRITICAL9.8InHand Networks IR912 V1.0.0.r20042 and IR915 V1.0.0.r20042 (including earlier versions) were discovered to contain a co...
CVE-2026-38714CRITICAL9.8InHand Networks IR912 V1.0.0.r20042 and IR915 V1.0.0.r20042 (including earlier versions) were discovered to contain a co...
CVE-2026-11982MEDIUM5.1Grav 2.0.0-rc.9 with Admin2 2.0.0-rc.14 contains a stored cross-site scripting (XSS) vulnerability in the Admin2 Pages A...
CVE-2026-10687Rejected reason: This CVE Record has been rejected by the Zephyr Project CNA. Subsequent analysis, confirmed with the fi...
CVE-2025-53114HIGH7.5CometD is a scalable comet implementation for web messaging. In versions 5.0.0 through 5.0.22, 6.0.0 through 6.0.18, 7.0...
CVE-2025-32437HIGH8.7AutoGPT is a workflow automation platform for creating, deploying, and managing continuous artificial intelligence agent...
CVE-2025-32436HIGH7.1AutoGPT is a workflow automation platform for creating, deploying, and managing continuous artificial intelligence agent...
CVE-2025-32424HIGH8.7AutoGPT is a workflow automation platform for creating, deploying, and managing continuous artificial intelligence agent...
CVE-2025-32422HIGH8.7AutoGPT is a workflow automation platform for creating, deploying, and managing continuous artificial intelligence agent...
CVE-2025-32392HIGH8.7AutoGPT is a workflow automation platform for creating, deploying, and managing continuous artificial intelligence agent...
CVE-2026-46580HIGH8.8In Eclipse Theia versions prior to 1.71.0, files matching the pattern .prompts/*.prompttemplate in a workspace were auto...
CVE-2026-44691HIGH8.8In Eclipse Theia versions prior to 1.69.0, custom task definitions in workspace files (e.g. .theia/tasks.json, .vscode/t...
CVE-2026-44688HIGH8.8In Eclipse Theia versions prior to 1.71.0, the AI chat agent processed workspace file and directory names as part of its...
CVE-2026-22551MEDIUM6.5In Eclipse Theia versions prior to 1.71.0, the AI chat rendered Markdown image tags from AI responses, triggering HTTP r...
CVE-2026-11791MEDIUM5A flaw was found in 389 Directory Server. During schema reload, the attr_syntax_swap_ht() function unconditionally frees...
CVE-2025-58175HIGH8.2GeoServer is an open source server that allows users to share and edit geospatial data. Prior to versions 2.26.4 and 2.2...
CVE-2025-52465HIGH7.2GeoServer is an open source server that allows users to share and edit geospatial data. Prior to versions 2.26.4 and 2.2...
CVE-2025-27511HIGH7.2GeoServer is an open source server that allows users to share and edit geospatial data. Prior to version 2.27.0 of the G...
CVE-2026-9158CRITICAL9.8In Eclipse 4diac FORTE versions 3.0.0 to 3.1.0, a specially crafted DELETE connection command to the management interfac...
CVE-2026-8461HIGH8.8An out-of-bounds write vulnerability in FFmpeg's libavcodec library, specifically in the MagicYUV decoder, allows denial...
CVE-2026-8024CRITICAL9.8A remote, unauthenticated attacker may exploit a deserialization of untrusted data vulnerability in ibaPDA or ibaDatCoor...
CVE-2026-56012HIGH8.5Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in David Lingren Medi...
CVE-2026-56009MEDIUM5.9Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Bricksable for Bri...
CVE-2026-56007MEDIUM5.9Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in OceanWP Ocean Prod...