CVE Vulnerability Database

Search and browse 397,697 CVE records with CVSS scores, EPSS exploit predictions, and CISA KEV status.

CVE IDSeverityCVSSDescription
CVE-2026-11583MEDIUM6.3A vulnerability has been found in CodeAstro Student Attendance Management System 1.0. This affects an unknown function o...
CVE-2026-11582HIGH7.3A flaw has been found in CodeAstro Student Attendance Management System 1.0. The impacted element is an unknown function...
CVE-2026-52778CRITICAL9.8YesWiki is a wiki system written in PHP. Prior to version 4.6.6, an unsafe execution vulnerability exists in the Bazar f...
CVE-2026-46490HIGH8.8samlify is a Node.js library for SAML single sign-on. Prior to version 2.13.0, samlify’s template substitution only esca...
CVE-2026-46486MEDIUM5.3MVT (Mobile Verification Toolkit) helps with conducting forensics of mobile devices in order to find signs of a potentia...
CVE-2026-11559MEDIUM6.3A vulnerability was detected in CodeAstro Payroll System 1.0. This affects an unknown function of the file /view_account...
CVE-2026-11558MEDIUM6.3A security vulnerability has been detected in CodeAstro Payroll System 1.0. The impacted element is an unknown function ...
CVE-2026-11557HIGH8.8A weakness has been identified in Tenda F451 1.0.0.7/1.0.0.9. The affected element is the function fromNatlimit of the f...
CVE-2026-11393CRITICAL9Improper neutralization of triple-quote characters during Python code generation in AgentCore CLI before v0.14.2 might a...
CVE-2026-10787MEDIUM4.3Missing authorization in the deleted user groups API in Devolutions Server allows an authenticated low-privileged user t...
CVE-2026-10786MEDIUM6.5Improper access control in the ticketing integration settings in Devolutions Server allows an authenticated low-privileg...
CVE-2026-10544MEDIUM6.5Improper neutralization of special elements in the built-in PAM provider password rotation templates in Devolutions Serv...
CVE-2026-8913HIGH8.5A command Injection vulnerability exists in the WireGuard client configuration of Archer MR600 v5 due to improper neutra...
CVE-2026-11556HIGH8.8A security flaw has been discovered in Tenda F451 1.0.0.7/1.0.0.9. Impacted is the function formWriteFacMac of the file ...
CVE-2026-11555HIGH7.5A vulnerability was identified in D-Link DGS-1100-08PD 1.00.006. This issue affects some unknown processing of the file ...
CVE-2026-11554MEDIUM4.3A vulnerability was determined in TOTOLINK CP450 4.1.0cu.747. This vulnerability affects unknown code of the file /etc/v...
CVE-2026-11553HIGH8.8A vulnerability was found in Tenda HG7HG9 and HG10 300001138_en_xpon. This affects the function formPPPEdit of the file ...
CVE-2026-11552MEDIUM5.5A vulnerability has been found in SourceCodester Onlne Examination & Learning Management System and Syllabus-aligned Lea...
CVE-2026-48507HIGH7.1Snipe-IT is an IT asset/license management system. A vulnerability in versions prior to 8.6.0 allows a non-admin user ho...
CVE-2026-46481HIGH8.3OpenMetadata is a unified metadata platform. Prior to version 1.12.4, a non-admin SSO user can trigger a TEST_CONNECTION...
CVE-2026-46314MEDIUM5.5In the Linux kernel, the following vulnerability has been resolved: drm/v3d: Reject empty multisync extension to preven...
CVE-2026-46313MEDIUM5.5In the Linux kernel, the following vulnerability has been resolved: media: intel/ipu6: fix error pointer dereference I...
CVE-2026-46312MEDIUM5.5In the Linux kernel, the following vulnerability has been resolved: media: videobuf2: Set vma_flags in vb2_dma_sg_mmap ...
CVE-2026-46311HIGH7.8In the Linux kernel, the following vulnerability has been resolved: drm/amdgpu/userq: fix access to stale wptr mapping ...
CVE-2026-46310MEDIUM5.5In the Linux kernel, the following vulnerability has been resolved: media: renesas: vsp1: Fix NULL pointer deref on mod...