CVE Vulnerability Database
Search and browse 394,851 CVE records with CVSS scores, EPSS exploit predictions, and CISA KEV status.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2025-55643 | MEDIUM | 5.5 | 0.2% | Jun 15, 2026 | A NULL pointer dereference in the TrackWriter handling component (filters/mux_isom.c) of GPAC MP4Box v2.4 allows attacke... |
| CVE-2025-55642 | MEDIUM | 6.5 | 0.4% | Jun 15, 2026 | GPAC MP4Box v2.4 was discovered to contain a floating point exception in the avidmx_process function (isomedia/isom_writ... |
| CVE-2025-55641 | MEDIUM | 5.5 | 0.2% | Jun 15, 2026 | A NULL pointer dereference in the gf_isom_copy_sample_info function (isomedia/isom_write.c) of GPAC MP4Box v2.4 allows a... |
| CVE-2026-8358 | MEDIUM | 5.4 | 0.2% | Jun 15, 2026 | LibreOffice Calc can import tracked changes from a spreadsheet document. A heap buffer overflow existed when a document ... |
| CVE-2026-8357 | HIGH | 7.8 | 0.2% | Jun 15, 2026 | LibreOffice Calc compiles cell formulas when opening a spreadsheet. A heap buffer overflow existed when compiling a very... |
| CVE-2026-8356 | MEDIUM | 5.4 | 0.1% | Jun 15, 2026 | LibreOffice can import presentations in the legacy binary PPT format. A stack buffer overflow existed when importing a c... |
| CVE-2026-6047 | MEDIUM | 5.4 | 0.1% | Jun 15, 2026 | LibreOffice can import documents in the OOXML format (DOCX). A heap buffer overflow existed when replaying deferred pars... |
| CVE-2026-6045 | MEDIUM | 5.4 | 0.1% | Jun 15, 2026 | LibreOffice can import EMF+ graphics, which may be embedded in documents. A heap buffer overflow existed when importing ... |
| CVE-2026-6040 | HIGH | 7.3 | 0.1% | Jun 15, 2026 | A heap use-after-free existed when importing the blank-width characters of an ODF number format. A position value read f... |
| CVE-2026-6039 | MEDIUM | 5.4 | 0.2% | Jun 15, 2026 | LibreOffice can import drawings in the DXF format used by CAD software. A heap buffer overflow existed when importing a ... |
| CVE-2026-49294 | MEDIUM | 6.1 | 0.1% | Jun 15, 2026 | Valhalla is an open source routing engine and accompanying libraries for use with OpenStreetMap data. Versions 3.6.3 and... |
| CVE-2026-47777 | HIGH | 7.5 | 0.2% | Jun 15, 2026 | Mastodon is a free, open-source social network server based on ActivityPub. In versions there is a missing condition in ... |
| CVE-2026-20262 | MEDIUM | 6.5 | 28.2% | Jun 15, 2026 | A vulnerability in the web UI of Cisco Catalyst SD-WAN Manager, formerly SD-WAN vManage, could allow an authenticated, r... |
| CVE-2026-9863 | HIGH | 8.8 | 0.6% | Jun 15, 2026 | Fortra BoKS Manager contains an OS command injection vulnerability in the client upgrade and patch tooling for legacy ta... |
| CVE-2026-9862 | CRITICAL | 9.8 | 1.0% | Jun 15, 2026 | Fortra's Core Privileged Access Manager (BoKS) contains an OS command injection vulnerability in the boks_autoregisterd... |
| CVE-2026-9595 | MEDIUM | 4.3 | 0.2% | Jun 15, 2026 | Impact: When a user-configured proxy on webpack-dev-server has a broad context (e.g. /) and ws: true, it also intercepts... |
| CVE-2026-8683 | MEDIUM | 6.5 | 0.2% | Jun 15, 2026 | Mattermost Desktop App versions <=6.1 5.5.13.0 fail to account for attempting to open extremely long URLs in the Matterm... |
| CVE-2026-5038 | HIGH | 7.5 | 0.3% | Jun 15, 2026 | Impact: multer versions 2.0.0-alpha.1 through 2.1.1 and 3.0.0-alpha.1 are vulnerable to a Denial of Service when using d... |
| CVE-2026-10634 | MEDIUM | 5.3 | 0.3% | Jun 15, 2026 | Zephyr's native TCP stack iterates the global connection list in net_tcp_foreach() (subsys/net/ip/tcp.c) using the SYS_S... |
| CVE-2025-15659 | MEDIUM | 6.5 | 0.1% | Jun 15, 2026 | Contributor Cross Site Scripting (XSS) in Elizaibots <= 1.0.2 versions. |
| CVE-2025-15658 | MEDIUM | 5.9 | 0.1% | Jun 15, 2026 | Administrator Cross Site Scripting (XSS) in WP Emmet <= 0.3.4 versions. |
| CVE-2026-6517 | HIGH | 7.7 | 0.2% | Jun 15, 2026 | Mattermost Desktop App versions <=6.1 5.5.13.0 fail to restrict the allow list of domains to which NTLM credentials were... |
| CVE-2026-5242 | HIGH | 8.8 | 0.3% | Jun 15, 2026 | Improper neutralization of formula elements in a CSV file vulnerability in MIA Technology Inc. Pizzy Library allows Code... |
| CVE-2026-5233 | HIGH | 7.1 | 0.2% | Jun 15, 2026 | Improper Control of Interaction Frequency vulnerability in MIA Technology Inc. Pizzy Library allows Flooding. This issu... |
| CVE-2026-5230 | HIGH | 7.1 | 0.2% | Jun 15, 2026 | Improper Access Control, Missing Authorization vulnerability in MIA Technology Inc. Pizzy Library allows Exploiting Inco... |
