CVE Vulnerability Database

Search and browse 397,697 CVE records with CVSS scores, EPSS exploit predictions, and CISA KEV status.

CVE IDSeverityCVSSDescription
CVE-2026-49755HIGH7.5Improper Handling of Highly Compressed Data (Data Amplification) vulnerability in wojtekmach Req allows attacker-control...
CVE-2026-48913HIGH7.3Use After Free vulnerability in Apache HTTP Server module mod_http2 when file handles are already exhausted. This issue...
CVE-2026-48488LOW2.7phpMyFAQ is an open source FAQ web application. Prior to version 4.1.4, attachment passwords are hashed using SHA-1, a c...
CVE-2026-46657HIGH7.1Bludit is a content management system. Versions prior to 3.22.0 have a vulnerability in the user management logic that a...
CVE-2026-46656HIGH8.8Bludit is a content management system. Versions prior to 3.22.0 have a Broken Access Control flaw where active sessions ...
CVE-2026-46480HIGH8.8Flowise is a drag & drop user interface to build a customized large language model flow. Prior to version 3.1.2, evaluat...
CVE-2026-46479HIGH8.8Flowise is a drag & drop user interface to build a customized large language model flow. Prior to version 3.1.2, evaluat...
CVE-2026-46478HIGH8.8Flowise is a drag & drop user interface to build a customized large language model flow. Prior to version 3.1.2, Dataset...
CVE-2026-46477HIGH8.8Flowise is a drag & drop user interface to build a customized large language model flow. Prior to version 3.1.2, dataset...
CVE-2026-46476HIGH8.8Flowise is a drag & drop user interface to build a customized large language model flow. Prior to version 3.1.2, CustomT...
CVE-2026-46475HIGH8.8Flowise is a drag & drop user interface to build a customized large language model flow. Prior to version 3.1.2, assista...
CVE-2026-46444HIGH8.8Flowise is a drag & drop user interface to build a customized large language model flow. Prior to version 3.1.2, all CRU...
CVE-2026-46443MEDIUM6.5Flowise is a drag & drop user interface to build a customized large language model flow. Prior to version 3.1.2, when cr...
CVE-2026-46442CRITICAL9.9Flowise is a drag & drop user interface to build a customized large language model flow. Prior to version 3.1.2, POST /a...
CVE-2026-46441CRITICAL9.6Flowise is a drag & drop user interface to build a customized large language model flow. Prior to version 3.1.2, a mass ...
CVE-2026-46440CRITICAL9.1Flowise is a drag & drop user interface to build a customized large language model flow. Prior to version 3.1.2, the che...
CVE-2026-46275HIGH7.8In the Linux kernel, the following vulnerability has been resolved: Bluetooth: hci_uart: fix UAFs and race conditions i...
CVE-2026-46274HIGH7.8In the Linux kernel, the following vulnerability has been resolved: io-wq: check that the predecessor is hashed in io_w...
CVE-2026-44631CRITICAL9.8Buffer Underwrite vulnerability in Apache HTTP Server on crafted regular expressions in the configuration. This issue a...
CVE-2026-44186HIGH7.3Loop with Unreachable Exit Condition ('Infinite Loop') vulnerability in the mod_proxy_ftp module in Apache HTTP Server w...
CVE-2026-44185HIGH7.3Buffer Over-read vulnerability in Apache HTTP Server via outbound OCSP requests to an attacker controlled OCSP server T...
CVE-2026-44119MEDIUM5.5Improper Privilege Management vulnerability in Apache HTTP Server 2.4.67 and earlier allows local .htaccess authors to r...
CVE-2026-43951MEDIUM6.5Out-of-bounds Read vulnerability in Apache HTTP Server with mod_headers and mod_mime and multiple response languages. T...
CVE-2026-42863HIGH8.1Flowise is a drag & drop user interface to build a customized large language model flow. Prior to version 3.1.2, a mass ...
CVE-2026-42862MEDIUM5Flowise is a drag & drop user interface to build a customized large language model flow. Prior to version 3.1.2, a mass ...