CVE Vulnerability Database
Search and browse 397,697 CVE records with CVSS scores, EPSS exploit predictions, and CISA KEV status.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2026-46748 | HIGH | 7.8 | 0.2% | Jun 9, 2026 | A vulnerability has been identified in SINEC INS (All versions < V1.0 SP2 Update 6). The affected system includes a bina... |
| CVE-2026-46747 | MEDIUM | 5.3 | 0.2% | Jun 9, 2026 | A vulnerability has been identified in SINEC INS (All versions < V1.0 SP2 Update 6). The affected application does not p... |
| CVE-2026-46746 | HIGH | 8.8 | 0.5% | Jun 9, 2026 | A vulnerability has been identified in SINEC INS (All versions < V1.0 SP2 Update 6). The application does not properly s... |
| CVE-2026-41031 | CRITICAL | 9.3 | 0.2% | Jun 9, 2026 | A Stored Cross-Site Scripting vulnerability in Vinna Process Monitor Version 4.0 Service Pack 1 (Build 63255) allows an ... |
| CVE-2026-24349 | HIGH | 8.2 | 0.1% | Jun 9, 2026 | A vulnerability has been identified in SIMATIC WinCC Unified PC Runtime V16 (All versions), SIMATIC WinCC Unified PC Run... |
| CVE-2026-10731 | CRITICAL | 9.3 | 0.3% | Jun 9, 2026 | SQL injection in the ‘two_steps_auth_code’ parameter processed by the ‘twoStepsAuthVerification’ function within the ‘/u... |
| CVE-2025-40808 | MEDIUM | 6.9 | 0.2% | Jun 9, 2026 | A vulnerability has been identified in SIPROTEC 5 6MD84 (CP300) (All versions), SIPROTEC 5 6MD85 (CP200) (All versions),... |
| CVE-2025-10263 | CRITICAL | 9.1 | 0.6% | Jun 9, 2026 | Arm C1-Ultra, C1-Premium, Neoverse V3 & V3AE, Neoverse V2, Neoverse V1, Neoverse-N2, Neoverse-N1, Cortex-X925, Cortex-X4... |
| CVE-2026-8677 | MEDIUM | 6.4 | 0.2% | Jun 9, 2026 | The Prime Elementor Addons – Lightweight Elementor Widgets for Faster Pages plugin for WordPress is vulnerable to Stored... |
| CVE-2026-8599 | MEDIUM | 6.4 | 0.2% | Jun 9, 2026 | The MailerPress – Email Marketing, Newsletter, Email Automation & WooCommerce Emails plugin for WordPress is vulnerable ... |
| CVE-2026-8365 | HIGH | 8.8 | 0.8% | Jun 9, 2026 | The Blocksy theme for WordPress is vulnerable to PHP Object Injection leading to Remote Code Execution via the 'blocksy_... |
| CVE-2026-7542 | MEDIUM | 6.5 | 0.3% | Jun 9, 2026 | The Slider Revolution plugin for WordPress is vulnerable to Sensitive Information Disclosure in versions 7.0 to 7.0.10. ... |
| CVE-2026-6899 | MEDIUM | 5.6 | 0.1% | Jun 9, 2026 | Check for certificate revocation only considers the first matching CRL and ignores other valid CRLs of the same CA in th... |
| CVE-2026-49818 | MEDIUM | 6.5 | 0.7% | Jun 9, 2026 | The Apache Airflow Samba provider's `GCSToSambaOperator` joined GCS object names to the SMB destination path without a c... |
| CVE-2026-46315 | MEDIUM | 5.5 | 0.1% | Jun 9, 2026 | In the Linux kernel, the following vulnerability has been resolved: io_uring/waitid: clear waitid info before copying i... |
| CVE-2026-34905 | MEDIUM | 6.5 | 0.3% | Jun 9, 2026 | Exposure of Sensitive Information to an Unauthorized Actor vulnerability in Apache Answer. This issue affects Apache An... |
| CVE-2026-34033 | MEDIUM | 5.4 | 0.4% | Jun 9, 2026 | Improper Neutralization of Script-Related HTML Tags in a Web Page (Basic XSS) vulnerability in Apache Answer. This issu... |
| CVE-2026-34031 | MEDIUM | 6.5 | 0.4% | Jun 9, 2026 | Unrestricted Upload of File with Dangerous Type vulnerability in Apache Answer. This issue affects Apache Answer: throu... |
| CVE-2026-33582 | MEDIUM | 6.5 | 0.5% | Jun 9, 2026 | Unrestricted Upload of File with Dangerous Type vulnerability in Apache Answer. This issue affects Apache Answer: throu... |
| CVE-2026-28262 | MEDIUM | 6 | 0.1% | Jun 9, 2026 | Dell iDRAC Tools, versions prior to 11.4.1.0, contains an Improper Link Resolution Before File Access ('Link Following')... |
| CVE-2026-25699 | MEDIUM | 6.1 | 0.4% | Jun 9, 2026 | Exposure of Private Personal Information to an Unauthorized Actor vulnerability in Apache Answer. This issue affects Ap... |
| CVE-2026-25688 | MEDIUM | 6.1 | 0.4% | Jun 9, 2026 | Improper Neutralization of Alternate XSS Syntax vulnerability in Apache Answer. This issue affects Apache Answer: throu... |
| CVE-2026-11616 | HIGH | 8.8 | 0.3% | Jun 9, 2026 | The Events Calendar for GeoDirectory plugin for WordPress is vulnerable to Privilege Escalation in versions up to and in... |
| CVE-2009-10007 | CRITICAL | 9.1 | 0.4% | Jun 9, 2026 | Catalyst::Plugin::Authentication versions before 0.10_027 for Perl is susceptible to session fixation attacks. Catalyst... |
| CVE-2026-9698 | CRITICAL | 9.8 | 0.5% | Jun 9, 2026 | DBI versions before 1.648 for Perl saved errors in a limited-sized buffer. Error messages that were returned when Raise... |
