CVE Vulnerability Database

Search and browse 397,819 CVE records with CVSS scores, EPSS exploit predictions, and CISA KEV status.

CVE IDSeverityCVSSDescription
CVE-2026-10295LOW3.3A vulnerability was found in SourceCodester Customer Review App 1.0. Affected by this vulnerability is the function add_...
CVE-2025-59614MEDIUM6.7Memory Corruption when sending random number generator command with insufficient output buffer size.
CVE-2025-59613MEDIUM6.7Memory Corruption when output buffer size is smaller than input buffer size during data copying operation.
CVE-2025-59612MEDIUM6.7Memory corruption in windows drivers while sending incorrect trusted application request
CVE-2025-59611MEDIUM6.7Memory corruption in diagnostic services due to absence of input validation
CVE-2025-59610MEDIUM6.4Memory Corruption when processing IOCTL requests with mismatched API versions due to concurrent modification of user-spa...
CVE-2025-59609MEDIUM5.5Information Disclosure when processing advertisement frames with malformed MBSSID elements of insufficient length.
CVE-2025-59606HIGH7.8Memory Corruption when writing to invalid memory locations occurs due to heap memory exhaustion during secure data initi...
CVE-2025-59605HIGH7.8Memory Corruption when processing device identifier strings that exceed the expected maximum length.
CVE-2025-59604HIGH7.8Memory Corruption when running a memory copy operation due to invalid writes caused by a null pointer.
CVE-2025-59601MEDIUM6.5Information Disclosure when resetting device to factory default settings through powerline interface allows unauthorized...
CVE-2019-25718HIGH7.8Dräger Infinity Explorer C700 contains a privilege escalation vulnerability that allows attackers to break out of kiosk ...
CVE-2026-49491HIGH8.8Pixa Bank 2.0 contains an SQL injection vulnerability that allows unauthenticated attackers to extract sensitive data by...
CVE-2026-40965CRITICAL10Cloud Foundry UAA versions v76.12.0 through v78.12.0 are vulnerable to a private key exposure. The server contains a vul...
CVE-2026-40964HIGH7.5Authentication Bypass in cf-auth-proxy in Cloud Foundry Foundation all installations allows an unauthenticated remote at...
CVE-2026-28586LOW3.3In multiple functions of AppOpsService.java, there is a possible missing permission check due to a permissions bypass. T...
CVE-2026-28581MEDIUM4In fixInitiatingUserIfNecessary of CallIntentProcessor.java, there is a possible way to make an emergency call due to a ...
CVE-2026-28580HIGH7.8In multiple functions, there is a possible desync in persistence due to an incorrect bounds check. This could lead to lo...
CVE-2026-28578MEDIUM5.5In multiple functions of DevicePolicyManagerService.java, there is a possible desync from persistence due to improper in...
CVE-2026-28577HIGH7.8In addWindow of WindowManagerService.java, there is a possible tapjacking issue due to a tapjacking/overlay attack. This...
CVE-2026-10294MEDIUM4.3A vulnerability has been found in PackageKit up to 1.3.5. Affected is the function g_file_test of the file src/pk-transa...
CVE-2026-10293HIGH8.8A flaw has been found in UTT HiPER 1200GW up to 2.5.3-170306. This impacts the function strcpy of the file /goform/formF...
CVE-2026-10292HIGH8.8A vulnerability was detected in UTT HiPER 1200GW up to 2.5.3-170306. This affects the function strcpy of the file /gofor...
CVE-2026-10291MEDIUM5.3A security vulnerability has been detected in Enderfga claw-orchestrator up to 3.7.0. The impacted element is the functi...
CVE-2026-10290HIGH7.3A weakness has been identified in code-projects Hotel and Tourism Reservation System 1.0. The affected element is an unk...