CVE Vulnerability Database

Search and browse 397,840 CVE records with CVSS scores, EPSS exploit predictions, and CISA KEV status.

CVE IDSeverityCVSSDescription
CVE-2018-25408HIGH8.7The Open ISES Project 3.30A contains a path traversal vulnerability in the ajax/download.php endpoint that allows unauth...
CVE-2018-25407HIGH8.8eNdonesia Portal 8.7 contains multiple SQL injection vulnerabilities that allow unauthenticated attackers to execute arb...
CVE-2018-25406HIGH8.8eNdonesia Portal 8.7 contains multiple SQL injection vulnerabilities that allow unauthenticated attackers to execute arb...
CVE-2018-25405HIGH8.8eNdonesia Portal 8.7 contains multiple SQL injection vulnerabilities that allow unauthenticated attackers to execute arb...
CVE-2026-10120HIGH8.8A vulnerability was detected in TRENDnet TEW-432BRP 3.10B20. The affected element is the function formSetFirewallRule of...
CVE-2026-10119HIGH8.8A security vulnerability has been detected in TRENDnet TEW-432BRP 3.10B20. Impacted is the function formSetMACFilter of ...
CVE-2026-46242HIGH7.8In the Linux kernel, the following vulnerability has been resolved: eventpoll: fix ep_remove struct eventpoll / struct ...
CVE-2026-10117MEDIUM4.3A weakness has been identified in Open5GS up to 2.7.7. This issue affects the function ogs_pool_id_calloc in the library...
CVE-2026-10116MEDIUM4.3A security flaw has been discovered in Open5GS up to 2.7.7. This vulnerability affects the function ogs_sbi_xact_add in ...
CVE-2026-10115MEDIUM4.3A vulnerability was identified in Open5GS up to 2.7.7. This affects an unknown part in the library lib/sbi/nnrf-handler....
CVE-2026-10114MEDIUM4.3A vulnerability was determined in Open5GS up to 2.7.7. Affected by this issue is the function handle_scp_info in the lib...
CVE-2026-9757HIGH7.5The GEO my WP plugin for WordPress is vulnerable to SQL Injection via the 'swlatlng' and 'nelatlng' parameters in all ve...
CVE-2026-7465HIGH8.8The Spectra Gutenberg Blocks – Website Builder for the Block Editor plugin for WordPress is vulnerable to Remote Code Ex...
CVE-2026-7459HIGH7.5The Simple History – Track, Log, and Audit WordPress Changes plugin for WordPress is vulnerable to authenticated (Subscr...
CVE-2026-10113MEDIUM4.3A vulnerability was found in Open5GS up to 2.7.7. Affected by this vulnerability is an unknown functionality in the libr...
CVE-2026-5071HIGH7.8The SocketCAN implementation validates the length of a user-provided buffer containing a socketcan_frame object using on...
CVE-2026-10112LOW2.4A vulnerability has been found in sambitraj STUDENT-MANAGEMENT-SYSTEM 1.0. Affected is an unknown function of the compon...
CVE-2026-10111HIGH7.3A flaw has been found in sambitraj STUDENT-MANAGEMENT-SYSTEM 1.0. This impacts an unknown function of the component Logi...
CVE-2026-10110HIGH7.3A vulnerability was detected in code-projects Student Details Management System 1.0. This affects an unknown function of...
CVE-2026-48840MEDIUM5.3Exim 4.88 before 4.99.4, in some proxy configurations, mishandles certain short payloads, leading to disclosure of unini...
CVE-2026-9831MEDIUM6.3A race condition in the shared Extreme Platform ONE IAM Gateway API-key authentication path could, under specific high-c...
CVE-2026-4387LOW2StrongDM Desktop Application before 23.74.0 (Desktop Client before 53.77.0) on Microsoft Windows stores authentication s...
CVE-2026-48811MEDIUM4.3FreeScout is a free help desk and shared inbox built with PHP's Laravel framework. Prior to 1.8.221, FreeScout allows a ...
CVE-2026-48810MEDIUM4.3FreeScout is a free help desk and shared inbox built with PHP's Laravel framework. Prior to 1.8.221, while investigating...
CVE-2026-48557HIGH8.8Spatie Laravel Media Library before version 11.23.0 contains a file upload restriction bypass in FileAdder::defaultSanit...