CVE Vulnerability Database

Search and browse 396,627 CVE records with CVSS scores, EPSS exploit predictions, and CISA KEV status.

CVE IDSeverityCVSSDescription
CVE-2026-47945MEDIUM5.4Adobe Experience Manager versions 6.5.24, LTS SP1, 2026.04 and earlier are affected by a stored Cross-Site Scripting (XS...
CVE-2026-47944MEDIUM5.4Adobe Experience Manager versions 6.5.24, LTS SP1, 2026.04 and earlier are affected by a stored Cross-Site Scripting (XS...
CVE-2026-47943MEDIUM5.4Adobe Experience Manager versions 6.5.24, LTS SP1, 2026.04 and earlier are affected by a stored Cross-Site Scripting (XS...
CVE-2026-47942MEDIUM5.4Adobe Experience Manager versions 6.5.24, LTS SP1, 2026.04 and earlier are affected by a stored Cross-Site Scripting (XS...
CVE-2026-47941MEDIUM5.4Adobe Experience Manager versions 6.5.24, LTS SP1, 2026.04 and earlier are affected by a stored Cross-Site Scripting (XS...
CVE-2026-47939MEDIUM5.4Adobe Experience Manager versions 6.5.24, LTS SP1, 2026.04 and earlier are affected by a stored Cross-Site Scripting (XS...
CVE-2026-47936MEDIUM5.4Adobe Experience Manager versions 6.5.24, LTS SP1, 2026.04 and earlier are affected by a stored Cross-Site Scripting (XS...
CVE-2026-47935MEDIUM5.4Adobe Experience Manager versions 6.5.24, LTS SP1, 2026.04 and earlier are affected by a DOM-based Cross-Site Scripting ...
CVE-2026-47656HIGH7.9Protection mechanism failure in Windows Boot Manager allows an authorized attacker to bypass a security feature locally.
CVE-2026-47654HIGH7.5Use after free in Remote Desktop Client allows an unauthorized attacker to execute code over a network.
CVE-2026-47653HIGH8.8Use after free in Remote Desktop Client allows an unauthorized attacker to execute code over a network.
CVE-2026-47652HIGH8.2Heap-based buffer overflow in Windows Hyper-V allows an authorized attacker to execute code locally.
CVE-2026-47648HIGH7Untrusted search path in Windows Storage allows an authorized attacker to elevate privileges locally.
CVE-2026-47643CRITICAL9.8External control of file name or path in Azure Stack Edge allows an unauthorized attacker to execute code over a network...
CVE-2026-47641MEDIUM5.4Improper input validation in Microsoft Office SharePoint allows an authorized attacker to perform spoofing over a networ...
CVE-2026-47640MEDIUM5.4Improper neutralization of input during web page generation ('cross-site scripting') in Microsoft Office SharePoint allo...
CVE-2026-47639MEDIUM5.4Improper neutralization of input during web page generation ('cross-site scripting') in Microsoft Office SharePoint allo...
CVE-2026-47638MEDIUM5.4Improper neutralization of input during web page generation ('cross-site scripting') in Microsoft Office SharePoint allo...
CVE-2026-47637MEDIUM5.4Improper neutralization of input during web page generation ('cross-site scripting') in Microsoft Office SharePoint allo...
CVE-2026-47636MEDIUM5.4Improper neutralization of input during web page generation ('cross-site scripting') in Microsoft Office SharePoint allo...
CVE-2026-47635HIGH8.4Heap-based buffer overflow in Microsoft Office allows an unauthorized attacker to execute code locally.
CVE-2026-47634MEDIUM5.4Improper neutralization of special elements in output used by a downstream component ('injection') in Microsoft Office S...
CVE-2026-47631MEDIUM5.4Improper neutralization of input during web page generation ('cross-site scripting') in Microsoft Exchange Server allows...
CVE-2026-47298HIGH8Improper authorization in Microsoft Office SharePoint allows an authorized attacker to execute code over a network.
CVE-2026-47293HIGH7Use after free in Microsoft Office Click-To-Run allows an authorized attacker to elevate privileges locally.