CVE Vulnerability Database

Search and browse 397,817 CVE records with CVSS scores, EPSS exploit predictions, and CISA KEV status.

CVE IDSeverityCVSSDescription
CVE-2019-25721HIGH7.1Dräger Infinity M300 patient worn monitors with software version VG2.3.1 and earlier contain a network-based denial of s...
CVE-2026-49943MEDIUM6.3CZ.NIC BIRD Internet Routing Daemon through 2.19.0 contains a stack-based buffer overflow in the BGP AS_PATH mask matchi...
CVE-2026-42074CRITICAL9.8OpenClaude is an open-source coding-agent command line interface for cloud and local model providers. Prior to version 0...
CVE-2026-42073MEDIUM6.5OpenClaude is an open-source coding-agent command line interface for cloud and local model providers. Prior to version 0...
CVE-2026-40715HIGH7.8Dell ThinOS 10, versions prior to ThinOS10 2602_10.0765, contain an Improper Access Control vulnerability. A low privile...
CVE-2026-40713MEDIUM6.1Dell ThinOS 10, versions prior to ThinOS10 2602_10.0765, contain an Improper Access control vulnerability. An unauthenti...
CVE-2026-40571MEDIUM5.3NamelessMC is website software for Minecraft servers. In version 2.2.4, `core/classes/Misc/ProfilePostReactionContext.ph...
CVE-2026-40314MEDIUM6.9NamelessMC is website software for Minecraft servers. In version 2.2.4,`core/classes/Misc/ProfilePostReactionContext.php...
CVE-2026-35447MEDIUM5.3NamelessMC is website software for Minecraft servers. In version 2.2.4, the profile page (modules/Core/pages/profile.php...
CVE-2026-35443MEDIUM5.3NamelessMC is website software for Minecraft servers. In version 2.2.4, `modules/Forum/classes/ForumPostReactionContext....
CVE-2026-33244MEDIUM5.4React Router is a router for React. In versions 7.5.1 through 7.13.1, when using Framework Mode with pre-rendering enabl...
CVE-2026-24237HIGH7.8NVIDIA NVTabular contains a vulnerability where an attacker could cause improper deserialization of untrusted data. A su...
CVE-2026-24221HIGH7.8NVIDIA NVTabular contains a vulnerability where an attacker could cause improper deserialization of untrusted data. A su...
CVE-2026-1871MEDIUM6.5TP-Link Tapo C200 v5 contains a stack-based buffer overflow flaw in RTSP authentication handling due to improper validat...
CVE-2026-10606HIGH7.3A vulnerability was determined in DedeCMS 5.7.88. The affected element is the function TrimMsg of the file /plus/feedbac...
CVE-2026-0611CRITICAL9.8Spacelabs Healthcare Sentinel versions 10.5.x and higher and 11.x.x before 11.6.0 contain an unauthenticated remote code...
CVE-2024-42206LOW3.1HCL iReflection Third party vulnerable and outdated components issue was detected in the web application
CVE-2026-9590MEDIUM5.3Improper access control in the permission validation component in Devolutions Server 2026.1.19 and earlier allows an aut...
CVE-2026-9522MEDIUM5.4Improper access control in the PAM account discovery feature in Devolutions Server 2026.1.19 and earlier allows an authe...
CVE-2026-7299MEDIUM5.4Appsmith’s SQL query editor’s autocomplete functionality fails to sanitize database object names before rendering them i...
CVE-2026-49754HIGH8.2Allocation of Resources Without Limits or Throttling vulnerability in elixir-mint Mint allows attacker-controlled HTTP/2...
CVE-2026-49753MEDIUM6.3Inconsistent Interpretation of HTTP Requests ('HTTP Request/Response Smuggling') vulnerability in elixir-mint Mint allow...
CVE-2026-48862HIGH8.2Allocation of Resources Without Limits or Throttling vulnerability in elixir-mint Mint allows attacker-controlled HTTP/2...
CVE-2026-48861LOW2.1Improper Neutralization of CRLF Sequences ('CRLF Injection') vulnerability in elixir-mint Mint allows HTTP Request Split...
CVE-2026-47117CRITICAL9.8OpenMed before 1.5.2 contains a remote code execution vulnerability in the PII privacy-filter model loading path. The pr...