CVE Vulnerability Database
Search and browse 397,790 CVE records with CVSS scores, EPSS exploit predictions, and CISA KEV status.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2026-35905 | CRITICAL | 9.8 | 0.4% | Jun 4, 2026 | T3 Technology CPE models T625Pro v1.0.07, T6825G v1.0.03, and T7281 v1.0.03 were discovered to contain a hardcoded passw... |
| CVE-2026-35904 | CRITICAL | 9.8 | 0.5% | Jun 4, 2026 | Incorrect access control in the web management interface of T3 Technology CPE models T625Pro v1.0.07, T6825G v1.0.03, an... |
| CVE-2026-28318 | HIGH | 7.5 | 10.7% | Jun 4, 2026 | SolarWinds Serv-U is susceptible to specially crafted POST requests that crash the Serv-U service without authentication... |
| CVE-2026-10864 | MEDIUM | 4.3 | 0.2% | Jun 4, 2026 | A vulnerability in the MISP dashboard widgets allowed an authenticated user to manipulate the fields option and influenc... |
| CVE-2026-10863 | HIGH | 8.1 | 0.2% | Jun 4, 2026 | A security issue was fixed in the correlations over-correlation endpoint where the order query parameter was accepted fr... |
| CVE-2026-10860 | MEDIUM | 6.5 | 0.2% | Jun 4, 2026 | A logic error in the MISP CRUD component delete handler allowed validation failures to be bypassed when requests used th... |
| CVE-2026-10812 | LOW | 3.6 | 0.1% | Jun 4, 2026 | A vulnerability was detected in zilliztech GPTCache up to 0.1.44. Affected by this issue is the function BufferedReader.... |
| CVE-2026-10811 | MEDIUM | 6.3 | 0.2% | Jun 4, 2026 | A security vulnerability has been detected in itsourcecode Fees Management System 1.0. Affected by this vulnerability is... |
| CVE-2026-8762 | — | — | — | Jun 4, 2026 | Rejected reason: After analysis, the originally reported behaviour was determined not to constitute a security vulnerabi... |
| CVE-2026-8037 | CRITICAL | 9.8 | 99.3% | Jun 4, 2026 | OS Command Injection Remote Code Execution Vulnerability in API in Progress ADC Products allows an un-authenticated atta... |
| CVE-2026-45433 | HIGH | 8.7 | 0.3% | Jun 4, 2026 | This vulnerability exists in GX Earth 2022 ONT models due to the presence of hardcoded RSA private key within the device... |
| CVE-2026-43926 | MEDIUM | 6.3 | 0.2% | Jun 4, 2026 | FOSSBilling is a free, open-source billing and client management system. Prior to version 0.8.0, the password reset conf... |
| CVE-2026-40605 | MEDIUM | 5.7 | 0.3% | Jun 4, 2026 | Tautulli is a Python based monitoring and tracking tool for Plex Media Server. Prior to version 2.17.1, a path traversal... |
| CVE-2026-10861 | MEDIUM | 6.1 | 0.2% | Jun 4, 2026 | An open redirect vulnerability existed in MISP UsersController::routeafterlogin() because the value stored in the pre_lo... |
| CVE-2026-10856 | MEDIUM | 6.1 | 0.1% | Jun 4, 2026 | A URL validation flaw in the MISP dashboard button widget allowed a crafted relative-looking URL to be accepted as a loc... |
| CVE-2026-10855 | MEDIUM | 4.3 | 0.2% | Jun 4, 2026 | An authorization flaw existed in the MISP Event Template Importer overwrite workflow. When importing an event template i... |
| CVE-2026-10854 | MEDIUM | 4.3 | 0.2% | Jun 4, 2026 | A visibility control issue in the event template creation workflow allowed non-site-admin users to access private galaxi... |
| CVE-2026-10810 | MEDIUM | 4.3 | 0.3% | Jun 4, 2026 | A weakness has been identified in itsourcecode Fees Management System up to 1.0. Affected is an unknown function of the ... |
| CVE-2026-10809 | MEDIUM | 6.3 | 0.2% | Jun 4, 2026 | A security flaw has been discovered in itsourcecode Fees Management System 1.0. This impacts an unknown function of the ... |
| CVE-2026-10808 | MEDIUM | 6.3 | 0.2% | Jun 4, 2026 | A vulnerability was identified in itsourcecode Fees Management System 1.0. This affects an unknown function of the file ... |
| CVE-2026-10807 | MEDIUM | 6.3 | 0.2% | Jun 4, 2026 | A vulnerability was determined in mjperpinosa stumasy. The impacted element is an unknown function of the file applicati... |
| CVE-2026-10806 | MEDIUM | 6.3 | 0.2% | Jun 4, 2026 | A vulnerability was found in mjperpinosa stumasy. The affected element is an unknown function of the file application/PH... |
| CVE-2025-62338 | LOW | 3.3 | 0.1% | Jun 4, 2026 | HCL BigFix Cloud Lifecycle Management is affected by lack of input validation. This low-level flaw allows unauthorized ... |
| CVE-2025-59874 | HIGH | 8.1 | 0.3% | Jun 4, 2026 | HCL Hive Telco Observability is affected by a Required directives missing from the CSP issue is detected in keycloak co... |
| CVE-2025-46638 | HIGH | 7.5 | 0.3% | Jun 4, 2026 | Dell BSAFE SSL-J contains an allocation of resources without limits or throttling vulnerability. An unauthenticated remo... |
