CVE Vulnerability Database
Search and browse 397,836 CVE records with CVSS scores, EPSS exploit predictions, and CISA KEV status.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2026-48866 | CRITICAL | 9.6 | 0.5% | Jun 1, 2026 | Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') vulnerability in Rocketgenius Inc. Gravit... |
| CVE-2026-48865 | HIGH | 7.1 | 0.2% | Jun 1, 2026 | Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in ThimPress LearnPre... |
| CVE-2026-48839 | HIGH | 7.1 | 0.2% | Jun 1, 2026 | Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in VeronaLabs WP Stat... |
| CVE-2026-48559 | MEDIUM | 5.4 | 0.2% | Jun 1, 2026 | Lightweight Music Server (LMS) though 3.76.0 contains a stored cross-site scripting vulnerability that allows attackers ... |
| CVE-2026-42683 | HIGH | 7.1 | 0.1% | Jun 1, 2026 | Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in e4jvikwp VikBookin... |
| CVE-2026-42682 | CRITICAL | 9.1 | 0.3% | Jun 1, 2026 | Missing Authorization vulnerability in Tomdever wpForo Forum allows Exploiting Incorrectly Configured Access Control Sec... |
| CVE-2026-42681 | HIGH | 7.1 | 0.1% | Jun 1, 2026 | Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in E2Pdf.Com e2pdf al... |
| CVE-2026-42680 | CRITICAL | 9.8 | 0.3% | Jun 1, 2026 | Incorrect Privilege Assignment vulnerability in Wasiliy Strecker / ContestGallery developer Contest Gallery Pro allows P... |
| CVE-2026-42251 | HIGH | 8.7 | 0.4% | Jun 1, 2026 | Use of hard-coded credentials in KS-SOMED allowed an unauthorized attacker access to FTP server that hosted the applicat... |
| CVE-2026-37221 | HIGH | 7.5 | 0.3% | Jun 1, 2026 | FlexRIC v2.0.0 crashes when receiving a RIC_SUBSCRIPTION_RESPONSE with an unknown ric_id that has no corresponding pendi... |
| CVE-2026-37220 | HIGH | 7.5 | 0.3% | Jun 1, 2026 | FlexRIC v2.0.0 crashes when an SCTP association is closed before an E2_SETUP_REQUEST is sent. The near-RT RIC assumes a ... |
| CVE-2026-10533 | MEDIUM | 5 | 0.2% | Jun 1, 2026 | A flaw was found in OpenShift Container Platform. Completed pods with restartPolicy: Never do not count toward ResourceQ... |
| CVE-2026-10267 | LOW | 3.3 | 0.1% | Jun 1, 2026 | A security flaw has been discovered in janet-lang janet up to 1.41.0. This affects the function doframe of the file src/... |
| CVE-2026-10265 | MEDIUM | 6.3 | 0.2% | Jun 1, 2026 | A vulnerability was identified in itsourcecode Content Management System 1.0. Affected by this issue is some unknown fun... |
| CVE-2026-10264 | LOW | 3.5 | 0.3% | Jun 1, 2026 | A vulnerability was determined in lharries whatsapp-mcp 0.0.1. Affected by this vulnerability is the function SendMessag... |
| CVE-2026-10263 | HIGH | 7.3 | 0.3% | Jun 1, 2026 | A vulnerability was found in SourceCodester Computer Repair Shop Management System up to 1.0. Affected is an unknown fun... |
| CVE-2026-10262 | HIGH | 7.3 | 0.3% | Jun 1, 2026 | A vulnerability has been found in code-projects Real State Services 1.0. This impacts an unknown function of the file /l... |
| CVE-2026-10261 | HIGH | 7.3 | 0.3% | Jun 1, 2026 | A flaw has been found in CodeAstro Online Job Portal 1.0. This affects an unknown function of the file /users/applicatio... |
| CVE-2026-10260 | HIGH | 7.3 | 0.3% | Jun 1, 2026 | A vulnerability was detected in CodeAstro Online Job Portal 1.0. The impacted element is an unknown function of the file... |
| CVE-2026-10259 | HIGH | 8.8 | 0.5% | Jun 1, 2026 | A security vulnerability has been detected in H3C Magic B0 up to 100R002. The affected element is the function SetMobile... |
| CVE-2026-0826 | CRITICAL | 9.2 | 32.2% | Jun 1, 2026 | In certain scenarios when the admin has enabled Interactive Connectivity Establishment (ICE), a buffer overflow could en... |
| CVE-2025-60495 | MEDIUM | 5.5 | 0.1% | Jun 1, 2026 | A segmentation violation in the gf_media_get_color_info function (/media_tools/isom_tools.c) of GPAC Project/MP4Box befo... |
| CVE-2025-60486 | MEDIUM | 5.5 | 0.1% | Jun 1, 2026 | A heap use-after-free in the dasher_process function (/filters/dasher.c) of GPAC Project/MP4Box before 26.02.0 allows at... |
| CVE-2025-60485 | MEDIUM | 5.5 | 0.1% | Jun 1, 2026 | A segmentation violation in the gf_isom_apple_set_tag_ex function (/isomedia/isom_write.c) of GPAC Project/MP4Box before... |
| CVE-2025-60483 | MEDIUM | 5.5 | 0.1% | Jun 1, 2026 | A NULL pointer dereference in the gf_ac4_pres_b_4_back_channels_present function (/media_tools/av_parsers.c) of GPAC Pro... |
