CVE Vulnerability Database

Search and browse 396,745 CVE records with CVSS scores, EPSS exploit predictions, and CISA KEV status.

CVE IDSeverityCVSSDescription
CVE-2026-11793MEDIUM4.9A stack buffer overflow flaw was found in 389 Directory Server. The checkPrefix() function in pw.c copies an attacker-co...
CVE-2026-11792LOW3.3A heap buffer overflow flaw was found in 389 Directory Server. When audit logging is enabled, the create_masked_entry_st...
CVE-2026-11790MEDIUM4.9A flaw was found in 389 Directory Server. The PBKDF2-SHA256 password storage plugin does not enforce an upper bound on t...
CVE-2026-11789MEDIUM6.5A flaw was found in 389 Directory Server. The SMD5 password storage plugin performs unsigned integer underflow when comp...
CVE-2026-11788HIGH7.5A flaw was found in 389 Directory Server. The dereference control plugin does not check for allocation failure before us...
CVE-2026-11787MEDIUM6.3A flaw was found in 389 Directory Server. The ldap_utf8prev() function reads bytes before the start of a buffer without ...
CVE-2026-11786MEDIUM6.5A flaw was found in 389 Directory Server. The LDIF parser reads past the end of a heap buffer when processing attribute ...
CVE-2026-11785MEDIUM4.3A flaw was found in 389 Directory Server. A type confusion in the SSO token extended operation handler causes partial st...
CVE-2026-46324HIGH7.8In the Linux kernel, the following vulnerability has been resolved: netfilter: nf_tables: use list_del_rcu for netlink ...
CVE-2026-46323HIGH7.8In the Linux kernel, the following vulnerability has been resolved: net: gro: don't merge zcopy skbs skb_gro_receive()...
CVE-2026-46322HIGH7.1In the Linux kernel, the following vulnerability has been resolved: tun: free page on build_skb failure in tun_xdp_one(...
CVE-2026-46321HIGH7.1In the Linux kernel, the following vulnerability has been resolved: tun: free page on short-frame rejection in tun_xdp_...
CVE-2026-46320HIGH7.4In the Linux kernel, the following vulnerability has been resolved: tap: free page on error paths in tap_get_user_xdp()...
CVE-2026-46319HIGH7.8In the Linux kernel, the following vulnerability has been resolved: net/sched: act_ct: Only release RCU read lock after...
CVE-2026-46318MEDIUM5.5In the Linux kernel, the following vulnerability has been resolved: Revert "mm/hugetlbfs: update hugetlbfs to use mmap_...
CVE-2026-46317HIGH8.8In the Linux kernel, the following vulnerability has been resolved: KVM: arm64: Reassign nested_mmus array behind mmu_l...
CVE-2026-46316CRITICAL9.3In the Linux kernel, the following vulnerability has been resolved: KVM: arm64: vgic-its: Drop the translation cache re...
CVE-2026-2638HIGH7.3A vulnerability in the quarantine and restore workflow of the X-VPN macOS website versions 77.0 through 77.5 allow a loc...
CVE-2026-11764LOW3.6When creating an export of all reusable media, the secrets of connected gift cards were included in the export even if ...
CVE-2017-20251CRITICAL9.8WordPress Insert PHP plugin versions before 3.3.1 contain a PHP code injection vulnerability that allows unauthenticated...
CVE-2017-20250HIGH8.7Mac Photo Gallery 3.0 contains a path traversal vulnerability that allows unauthenticated attackers to download arbitrar...
CVE-2017-20249HIGH8.8Apptha Slider Gallery 1.0 contains an SQL injection vulnerability that allows unauthenticated attackers to execute arbit...
CVE-2017-20248HIGH8.7Apptha Slider Gallery 1.0 contains a path traversal vulnerability that allows unauthenticated attackers to download arbi...
CVE-2017-20247HIGH8.8WordPress Plugin PICA Photo Gallery 1.0 contains an SQL injection vulnerability that allows unauthenticated attackers to...
CVE-2017-20246HIGH8.8KittyCatfish 2.2 plugin for WordPress contains an SQL injection vulnerability that allows unauthenticated attackers to r...