CVE Vulnerability Database

Search and browse 397,697 CVE records with CVSS scores, EPSS exploit predictions, and CISA KEV status.

CVE IDSeverityCVSSDescription
CVE-2026-46283MEDIUM5.5In the Linux kernel, the following vulnerability has been resolved: tpm: Use kfree_sensitive() to free auth session in ...
CVE-2026-46282MEDIUM5.5In the Linux kernel, the following vulnerability has been resolved: iio: frequency: admv1013: fix NULL pointer derefere...
CVE-2026-46281HIGH7.8In the Linux kernel, the following vulnerability has been resolved: vmalloc: fix buffer overflow in vrealloc_node_align...
CVE-2026-46280HIGH7.8In the Linux kernel, the following vulnerability has been resolved: lib: test_hmm: evict device pages on file close to ...
CVE-2026-46279HIGH7.8In the Linux kernel, the following vulnerability has been resolved: mm/alloc_tag: clear codetag for pages allocated bef...
CVE-2026-46278MEDIUM5.5In the Linux kernel, the following vulnerability has been resolved: drm/imagination: Fix segfault when updating ftrace ...
CVE-2026-46277HIGH7.8In the Linux kernel, the following vulnerability has been resolved: mm/zone_device: do not touch device folio after cal...
CVE-2026-46276MEDIUM5.5In the Linux kernel, the following vulnerability has been resolved: drm/amdgpu: fix zero-size GDS range init on RDNA4 ...
CVE-2026-45581MEDIUM5.5fabric-chaincode-java is a Java based implementation of Hyperledger Fabric chaincode shim APIs. From version 2.3.1 to be...
CVE-2026-43966MEDIUM5.3Improper Neutralization of CRLF Sequences in HTTP Headers ('HTTP Request/Response Splitting') vulnerability in ninenines...
CVE-2026-41448CRITICAL9.4AdGuard Home, when started with the --glinet flag, contains an authentication bypass vulnerability that allows unauthent...
CVE-2026-39910HIGH8.8STACKIT IaaS API contains a missing authorization check vulnerability that allows authenticated, low-privileged attacker...
CVE-2026-39908HIGH7.1OpenBullet2 through version 0.3.2 on Windows contains a credential disclosure vulnerability that allows remote attackers...
CVE-2026-25856HIGH8.8OpenBullet2 through version 0.3.2 contains an authenticated remote code execution vulnerability that allows authenticate...
CVE-2026-25855HIGH8.8OpenBullet2 through version 0.3.2 contains a remote code execution vulnerability that allows authenticated users to exec...
CVE-2026-25559HIGH8.8OpenBullet2 through version 0.3.2 contains a path traversal vulnerability in the wordlist endpoint that allows authentic...
CVE-2026-25555CRITICAL9.8OpenBullet2 through version 0.3.2 contains an authentication bypass vulnerability in the API key authentication middlewa...
CVE-2026-11611MEDIUM6.5A flaw was found in 389 Directory Server. The Content Synchronization persistent search plugin allows unbounded memory g...
CVE-2026-11534LOW3.5A vulnerability was detected in imvks786 student_management_system up to 9599b560ad3c3b83e75d328b76bedcd489ef1f46. Affec...
CVE-2026-11533MEDIUM5.4A security vulnerability has been detected in imvks786 student_management_system up to 9599b560ad3c3b83e75d328b76bedcd48...
CVE-2026-11532MEDIUM6.3A weakness has been identified in imvks786 student_management_system up to 9599b560ad3c3b83e75d328b76bedcd489ef1f46. Aff...
CVE-2026-11531HIGH7.3A security flaw has been discovered in imvks786 student_management_system up to 9599b560ad3c3b83e75d328b76bedcd489ef1f46...
CVE-2026-11530HIGH7.3A vulnerability was identified in imvks786 student_management_system up to 9599b560ad3c3b83e75d328b76bedcd489ef1f46. Thi...
CVE-2026-49975HIGH7.5Memory Allocation with Excessive Size Value vulnerability in Apache HTTP Server's mod_http leads to denial of service vi...
CVE-2026-49756LOW3.7Improper Neutralization of CRLF Sequences ('CRLF Injection') vulnerability in wojtekmach Req allows multipart parameter ...