CVE Vulnerability Database

Search and browse 397,744 CVE records with CVSS scores, EPSS exploit predictions, and CISA KEV status.

CVE IDSeverityCVSSDescription
CVE-2026-10879CRITICAL9.8DBI versions before 1.648 for Perl have a heap overflow when preparsing SQL statements with more than 9 binders. The pr...
CVE-2025-59174HIGH7.1Ericsson Packet Core Controller (PCC) versions prior to 1.39 contain a vulnerability where an attacker sending a large v...
CVE-2020-25900MEDIUM5.3HelloTalk through 3.4.1 stores full-precision GPS coordinates even when the user had intended to share only a country or...
CVE-2026-50235MEDIUM6.1Lyrion Music Server 9.2.0 contains a reflected cross-site scripting vulnerability in advanced search parameters that fai...
CVE-2026-50234HIGH8.7Lyrion Music Server 9.2.0 contains a path traversal vulnerability that allows unauthenticated attackers to read arbitrar...
CVE-2026-50233MEDIUM6.9Lyrion Music Server 9.2.0 contains an arbitrary directory listing vulnerability in its readdirectory query, exposed thro...
CVE-2026-50232HIGH7.2Lyrion Music Server 9.2.0 contains a stored cross-site scripting vulnerability that allows attackers to inject malicious...
CVE-2026-50231HIGH7.2Lyrion Music Server 9.2.0 contains an unauthenticated stored cross-site scripting vulnerability in the log viewer that a...
CVE-2026-50230MEDIUM6.1Lyrion Music Server 9.2.0 contains an unauthenticated reflected cross-site scripting vulnerability in the server.log end...
CVE-2026-38500——Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: This candidate was withdrawn by its CNA. Fu...
CVE-2026-11369HIGH7.1The Comment API (GET /api/Comment and POST /api/Comment) in the affected application fails to perform authorization chec...
CVE-2026-11330LOW3.6A weakness has been identified in thedotmack claude-mem up to 11.0.1. The affected element is the function computeObserv...
CVE-2026-11329LOW3.6A vulnerability has been found in onnx onnx-mlir up to 0.5.0.0. Affected by this issue is the function generate_hash_key...
CVE-2026-50264HIGH7.8An out-of-bounds write flaw was found in the X.Org X server and Xwayland in DRIGetBuffers/DRIGetBuffersWithFormat. A cli...
CVE-2026-50263MEDIUM5.5A use-after-free flaw was found in the X.Org X server and Xwayland in CreateSaverWindow(). A client can trigger a use-af...
CVE-2026-50262MEDIUM5.5An out-of-bounds read flaw was found in the X.Org X server and Xwayland in __glXDisp_ChangeDrawableAttributes(). A wrong...
CVE-2026-50261HIGH7.8A use-after-free flaw was found in the X.Org X server and Xwayland in SyncChangeCounter(). A client that sets up multipl...
CVE-2026-50260HIGH7.8A use-after-free flaw was found in the X.Org X server and Xwayland in FreeCounter(). A client that sets up multiple Sync...
CVE-2026-50259HIGH7.8A stack-based buffer overflow flaw was found in the X.Org X server and Xwayland. _XkbSetMapChecks() declares a fixed-siz...
CVE-2026-50258HIGH7.8A stack-based buffer overflow flaw was found in the X.Org X server and Xwayland. The X server has multiple stack buffers...
CVE-2026-50257HIGH7.8A use-after-free flaw was found in the X.Org X server and Xwayland in miSyncDestroyFence(). A client that sets up multip...
CVE-2026-50256HIGH7.8A stack-based buffer overflow flaw was found in the X.Org X server and Xwayland. A mismatch between the X server and the...
CVE-2026-25659MEDIUM6.5Ericsson Packet Core Gateway (PCG) versions prior to 1.30 contain an Improper Handling of Missing Values (CWE-230) vulne...
CVE-2026-25658MEDIUM6.5Ericsson Packet Core Gateway (PCG) versions prior to 1.30 contain an Improper Handling of Missing Values (CWE-230) vulne...
CVE-2026-25657MEDIUM6.5Ericsson Packet Core Gateway (PCG) versions prior to 1.30 contain an Improper Handling of Syntactically Invalid Structur...