CVE Vulnerability Database
Search and browse 395,821 CVE records with CVSS scores, EPSS exploit predictions, and CISA KEV status.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2026-24719 | HIGH | 7.2 | 1.0% | Jun 10, 2026 | A command injection vulnerability has been reported to affect several QNAP operating system versions. If a remote attack... |
| CVE-2026-24717 | MEDIUM | 6.5 | 0.4% | Jun 10, 2026 | A path traversal vulnerability has been reported to affect several QNAP operating system versions. If a remote attacker ... |
| CVE-2026-24716 | HIGH | 7.2 | 0.3% | Jun 10, 2026 | A NULL pointer dereference vulnerability has been reported to affect several QNAP operating system versions. If a remote... |
| CVE-2026-22899 | MEDIUM | 6.5 | 0.3% | Jun 10, 2026 | A NULL pointer dereference vulnerability has been reported to affect File Station 6. If a remote attacker gains a user a... |
| CVE-2026-22893 | HIGH | 7.2 | 1.0% | Jun 10, 2026 | A command injection vulnerability has been reported to affect several QNAP operating system versions. If a remote attack... |
| CVE-2025-66281 | HIGH | 7.2 | 0.5% | Jun 10, 2026 | A NULL pointer dereference vulnerability has been reported to affect several QNAP operating system versions. The remote ... |
| CVE-2025-66280 | HIGH | 7.2 | 0.4% | Jun 10, 2026 | An integer overflow or wraparound vulnerability has been reported to affect several QNAP operating system versions. If a... |
| CVE-2025-66279 | HIGH | 7.2 | 1.0% | Jun 10, 2026 | A command injection vulnerability has been reported to affect several QNAP operating system versions. If a remote attack... |
| CVE-2025-66273 | HIGH | 7.2 | 1.0% | Jun 10, 2026 | A command injection vulnerability has been reported to affect several QNAP operating system versions. If a remote attack... |
| CVE-2025-62851 | MEDIUM | 4.4 | 0.3% | Jun 10, 2026 | A path traversal vulnerability has been reported to affect License Center. If a local attacker gains an administrator ac... |
| CVE-2025-62850 | HIGH | 7.2 | 0.3% | Jun 10, 2026 | A NULL pointer dereference vulnerability has been reported to affect several QNAP operating system versions. If a remote... |
| CVE-2025-66276 | CRITICAL | 9.8 | 0.3% | Jun 10, 2026 | QuTS hero is not affected. We have already fixed the vulnerability in the following version: QTS 5.2.7.3256 build 20250... |
| CVE-2025-59382 | LOW | 1.2 | 0.3% | Jun 10, 2026 | QTS, QuTS hero, QuTScloud are not affected. We have already fixed the vulnerability in the following version: |
| CVE-2025-58468 | HIGH | 8.8 | 0.2% | Jun 10, 2026 | A cross-site request forgery (CSRF) vulnerability has been reported to affect Notification Center. The remote attackers ... |
| CVE-2026-46532 | MEDIUM | 4.6 | 0.2% | Jun 10, 2026 | ESF-IDF is the Espressif Internet of Things (IOT) Development Framework. In versions 5.2.6, 5.3.5, 5.4.4, 5.5.3, and 6.0... |
| CVE-2026-45542 | HIGH | 7.1 | 0.3% | Jun 10, 2026 | ESF-IDF is the Espressif Internet of Things (IOT) Development Framework. In versions 5.2.6, 5.3.5, 5.4.4, 5.5.4, and 6.0... |
| CVE-2026-45541 | HIGH | 7.5 | 0.4% | Jun 10, 2026 | ESF-IDF is the Espressif Internet of Things (IOT) Development Framework. In versions 5.2.6, 5.3.5, 5.4.4, 5.5.4, and 6.0... |
| CVE-2026-45329 | MEDIUM | 6.5 | 0.1% | Jun 10, 2026 | ESF-IDF is the Espressif Internet of Things (IOT) Development Framework. In versions 5.5.4 and 6.0, several ESP-TEE secu... |
| CVE-2026-45328 | HIGH | 8.8 | 0.1% | Jun 10, 2026 | ESF-IDF is the Espressif Internet of Things (IOT) Development Framework. In versions 5.5.4 and 6.0, the esp_tee componen... |
| CVE-2026-45160 | MEDIUM | 6.5 | 0.2% | Jun 10, 2026 | ESF-IDF is the Espressif Internet of Things (IOT) Development Framework. In versions 5.2.7, 5.3.5, 5.4.4, 5.5.4, and 6.0... |
| CVE-2026-46546 | MEDIUM | 5.4 | 0.1% | Jun 10, 2026 | Frappe Learning Management System (LMS) is a learning system that helps users structure their content. Prior to version ... |
| CVE-2026-44634 | HIGH | 8.7 | 0.3% | Jun 10, 2026 | SimpleBLE is a cross-platform library and bindings for Bluetooth Low Energy (BLE). Prior to version 0.14.0, there are mu... |
| CVE-2026-53675 | MEDIUM | 5.3 | 0.2% | Jun 10, 2026 | BuddyPress 14.4.0 contains an insecure direct object reference vulnerability in the friends REST API that allows any aut... |
| CVE-2026-53674 | HIGH | 7.1 | 0.3% | Jun 10, 2026 | BuddyPress 14.4.0 contains a regular expression injection vulnerability in the activity mention resolver that, when user... |
| CVE-2026-53673 | HIGH | 8.6 | 0.4% | Jun 10, 2026 | BuddyPress 14.4.0 contains an insecure direct object reference vulnerability in the messages REST API that allows authen... |
