CVE Vulnerability Database
Search and browse 396,279 CVE records with CVSS scores, EPSS exploit predictions, and CISA KEV status.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2026-0414 | MEDIUM | 4.5 | 0.2% | Jun 9, 2026 | Insufficient input validation vulnerability in the listed NETGEAR models allows authenticated administrators connected t... |
| CVE-2026-0413 | MEDIUM | 4.5 | 0.3% | Jun 9, 2026 | A buffer overflow vulnerability due to insufficient input validation in the listed NETGEAR models allows authenticated a... |
| CVE-2026-0412 | MEDIUM | 4.5 | 0.2% | Jun 9, 2026 | Insufficient input validation vulnerability in NETGEAR JR6150 (AC750 WiFi Router 802.11ac Dual Band Gigabit released in ... |
| CVE-2026-0411 | HIGH | 8 | 0.3% | Jun 9, 2026 | An information disclosure vulnerability in the NETGEAR Orbi satellites (RBR/RBE/RBS Series) could allow a user connected... |
| CVE-2026-0410 | MEDIUM | 4.5 | 0.2% | Jun 9, 2026 | Authenticated administrators connected to the local network can gain elevated access to the router and make unauthorize... |
| CVE-2026-0409 | MEDIUM | 6.4 | 0.3% | Jun 9, 2026 | A NETGEAR security issue that could allow an attacker with ability to intercept and tamper with traffic between the rout... |
| CVE-2026-8045 | MEDIUM | 6.5 | 0.2% | Jun 9, 2026 | CWE-611 Improper Restriction of XML External Entity Reference vulnerability exists that could cause information disclosu... |
| CVE-2026-8025 | CRITICAL | 9.8 | 0.3% | Jun 9, 2026 | Improper neutralization of special elements used in an SQL command ('SQL injection') vulnerability in MOSK Information T... |
| CVE-2026-49948 | HIGH | 8.6 | 0.3% | Jun 9, 2026 | Mem0 versions through 0.2.8, fixed in commit ae7f406, contain a missing authorization vulnerability in the self-hosted s... |
| CVE-2026-49938 | MEDIUM | 6.5 | 0.2% | Jun 9, 2026 | A improper access control vulnerability in Fortinet FortiPortal 7.4.0 through 7.4.7, FortiPortal 7.2.0 through 7.2.8, Fo... |
| CVE-2026-25089 | CRITICAL | 9.8 | 36.1% | Jun 9, 2026 | A improper neutralization of special elements used in an os command ('os command injection') vulnerability in Fortinet F... |
| CVE-2026-24065 | HIGH | 8.1 | 0.3% | Jun 9, 2026 | Waves Central for macOS versions 13.0.9 through 16.5.5 contain a local privilege escalation vulnerability in the privile... |
| CVE-2026-24064 | HIGH | 7.8 | 0.2% | Jun 9, 2026 | Waves Central for macOS versions 13.0.9 through 16.5.5 contain a local privilege escalation vulnerability. A trusted XPC... |
| CVE-2026-10727 | HIGH | 7.2 | 1.6% | Jun 9, 2026 | An OS command injection vulnerability in Ivanti EPMM before 12.9.0.1, 12.8.0.3 and 12.7.0.2 versions allows a remote aut... |
| CVE-2026-10523 | CRITICAL | 9.8 | 47.2% | Jun 9, 2026 | An Authentication Bypass vulnerability (CWE-288) in Ivanti Sentry before the R10.5.2, R10.6.2 and R10.7.1 versions allow... |
| CVE-2026-10520 | CRITICAL | 10 | 99.0% | Jun 9, 2026 | An OS Command Injection vulnerability in Ivanti Sentry before the R10.5.2, R10.6.2 and R10.7.1 versions allows a remote ... |
| CVE-2025-67862 | MEDIUM | 6.7 | 0.1% | Jun 9, 2026 | An Internal Asset Exposed to Unsafe Debug Access Level or State vulnerability [CWE-1244] vulnerability in Fortinet Forti... |
| CVE-2026-9279 | HIGH | 8.7 | 0.3% | Jun 9, 2026 | Logseq exposes an IPC handler that allows the renderer process to execute shell commands. While an allowlist restricts t... |
| CVE-2026-7486 | CRITICAL | 9.8 | 0.3% | Jun 9, 2026 | Improper neutralization of special elements used in an SQL command ('SQL injection') vulnerability in Netcad Software In... |
| CVE-2026-52907 | HIGH | 7.8 | 0.1% | Jun 9, 2026 | In the Linux kernel, the following vulnerability has been resolved: media: rockchip: rkcif: fix off by one bugs Change... |
| CVE-2026-52906 | HIGH | 7.7 | 0.1% | Jun 9, 2026 | In the Linux kernel, the following vulnerability has been resolved: 9p: fix access mode flags being ORed instead of rep... |
| CVE-2026-52905 | MEDIUM | 5.5 | 0.1% | Jun 9, 2026 | In the Linux kernel, the following vulnerability has been resolved: mm/damon/core: disallow non-power of two min_region... |
| CVE-2026-52904 | MEDIUM | 5.5 | 0.1% | Jun 9, 2026 | In the Linux kernel, the following vulnerability has been resolved: drm/nouveau: fix nvkm_device leak on aperture remov... |
| CVE-2026-49762 | MEDIUM | 5.1 | 0.2% | Jun 9, 2026 | Uncontrolled Resource Consumption vulnerability in the Elixir standard library's Version module allows an attacker who c... |
| CVE-2026-47901 | MEDIUM | 4.6 | 0.1% | Jun 9, 2026 | Logseq is vulnerable to a sandbox escape flaw where plugins running in sandboxed iframes can inject arbitrary HTML attri... |
