CVE Vulnerability Database

Search and browse 397,790 CVE records with CVSS scores, EPSS exploit predictions, and CISA KEV status.

CVE IDSeverityCVSSDescription
CVE-2026-35905CRITICAL9.8T3 Technology CPE models T625Pro v1.0.07, T6825G v1.0.03, and T7281 v1.0.03 were discovered to contain a hardcoded passw...
CVE-2026-35904CRITICAL9.8Incorrect access control in the web management interface of T3 Technology CPE models T625Pro v1.0.07, T6825G v1.0.03, an...
CVE-2026-28318HIGH7.5SolarWinds Serv-U is susceptible to specially crafted POST requests that crash the Serv-U service without authentication...
CVE-2026-10864MEDIUM4.3A vulnerability in the MISP dashboard widgets allowed an authenticated user to manipulate the fields option and influenc...
CVE-2026-10863HIGH8.1A security issue was fixed in the correlations over-correlation endpoint where the order query parameter was accepted fr...
CVE-2026-10860MEDIUM6.5A logic error in the MISP CRUD component delete handler allowed validation failures to be bypassed when requests used th...
CVE-2026-10812LOW3.6A vulnerability was detected in zilliztech GPTCache up to 0.1.44. Affected by this issue is the function BufferedReader....
CVE-2026-10811MEDIUM6.3A security vulnerability has been detected in itsourcecode Fees Management System 1.0. Affected by this vulnerability is...
CVE-2026-8762——Rejected reason: After analysis, the originally reported behaviour was determined not to constitute a security vulnerabi...
CVE-2026-8037CRITICAL9.8OS Command Injection Remote Code Execution Vulnerability in API in Progress ADC Products allows an un-authenticated atta...
CVE-2026-45433HIGH8.7This vulnerability exists in GX Earth 2022 ONT models due to the presence of hardcoded RSA private key within the device...
CVE-2026-43926MEDIUM6.3FOSSBilling is a free, open-source billing and client management system. Prior to version 0.8.0, the password reset conf...
CVE-2026-40605MEDIUM5.7Tautulli is a Python based monitoring and tracking tool for Plex Media Server. Prior to version 2.17.1, a path traversal...
CVE-2026-10861MEDIUM6.1An open redirect vulnerability existed in MISP UsersController::routeafterlogin() because the value stored in the pre_lo...
CVE-2026-10856MEDIUM6.1A URL validation flaw in the MISP dashboard button widget allowed a crafted relative-looking URL to be accepted as a loc...
CVE-2026-10855MEDIUM4.3An authorization flaw existed in the MISP Event Template Importer overwrite workflow. When importing an event template i...
CVE-2026-10854MEDIUM4.3A visibility control issue in the event template creation workflow allowed non-site-admin users to access private galaxi...
CVE-2026-10810MEDIUM4.3A weakness has been identified in itsourcecode Fees Management System up to 1.0. Affected is an unknown function of the ...
CVE-2026-10809MEDIUM6.3A security flaw has been discovered in itsourcecode Fees Management System 1.0. This impacts an unknown function of the ...
CVE-2026-10808MEDIUM6.3A vulnerability was identified in itsourcecode Fees Management System 1.0. This affects an unknown function of the file ...
CVE-2026-10807MEDIUM6.3A vulnerability was determined in mjperpinosa stumasy. The impacted element is an unknown function of the file applicati...
CVE-2026-10806MEDIUM6.3A vulnerability was found in mjperpinosa stumasy. The affected element is an unknown function of the file application/PH...
CVE-2025-62338LOW3.3HCL BigFix Cloud Lifecycle Management is affected by lack of input validation.  This low-level flaw allows unauthorized ...
CVE-2025-59874HIGH8.1HCL Hive Telco Observability is affected by  a Required directives missing from the CSP issue is detected in keycloak co...
CVE-2025-46638HIGH7.5Dell BSAFE SSL-J contains an allocation of resources without limits or throttling vulnerability. An unauthenticated remo...