CVE Vulnerability Database

Search and browse 397,857 CVE records with CVSS scores, EPSS exploit predictions, and CISA KEV status.

CVE IDSeverityCVSSDescription
CVE-2026-45134HIGH7.1LangSmith Client SDKs provide SDK's for interacting with the LangSmith platform. Prior to LangSmith SDK Python 0.8.0 and...
CVE-2026-45108HIGH8.4Himmelblau is an interoperability suite for Microsoft Azure Entra ID and Intune. From 2.0.0 to before 3.1.5 and 2.3.11, ...
CVE-2026-45104HIGH7.5MapServer is a system for developing web-based GIS applications. From 6.4.0 to before 8.6.3, msSLDParseUserStyle always ...
CVE-2026-45102CRITICAL9.9OneUptime is an open-source monitoring and observability platform. Prior to 10.0.98, OneUptime uses the Node.js' vm modu...
CVE-2026-44888CRITICAL9.8Pi.Alert is a WIFI / LAN intruder detector with web service monitoring. Prior to 2026-05-07, Pi.Alert's SaveConfigFile()...
CVE-2026-44887CRITICAL9.8Pi.Alert is a WIFI / LAN intruder detector with web service monitoring. Prior to 2026-05-07, Pi.Alert's web-based config...
CVE-2026-44886HIGH8.7Pi.Alert is a WIFI / LAN intruder detector with web service monitoring. From 2024-06-29 to before 2026-05-07, the web ap...
CVE-2026-44724HIGH7.8systeminformation is a System and OS information library for node.js. From 4.17.0 to 5.31.5, on Linux, systeminformation...
CVE-2026-44681MEDIUM6.1Authlib is a Python library which builds OAuth and OpenID Connect servers. Prior to 1.6.12 and 1.7.1, an unauthenticated...
CVE-2026-44590CRITICAL9.3Sherlock hunts down social media accounts by username across social networks. Prior to 0.16.1, the GitHub Actions workfl...
CVE-2026-42877MEDIUM5.4FacturaScripts is an open source accounting and invoicing software. In 2025.92 and earlier, a stored Cross-Site Scriptin...
CVE-2026-42197HIGH8.7RELATE is a web-based courseware package. Versions prior to commit 555f0efb1c5bd7531c07cd73724d7e566a81f620 have a store...
CVE-2026-33552LOW3.7Northern.tech Mender Enterprise Server before 4.1.1 has Incorrect Access Control.
CVE-2026-8716MEDIUM4.3GitLab has remediated an issue in GitLab CE/EE affecting all versions from 12.7 before 18.10.7, 18.11 before 18.11.4, an...
CVE-2026-6713MEDIUM5.3GitLab has remediated an issue in GitLab CE/EE affecting all versions from 18.2 before 18.10.7, 18.11 before 18.11.4, an...
CVE-2026-5296MEDIUM4.3GitLab has remediated an issue in GitLab EE affecting all versions from 18.7 before 18.10.7, 18.11 before 18.11.4, and 1...
CVE-2026-4868HIGH8.2GitLab has remediated an issue in GitLab EE affecting all versions from 18.8 before 18.10.7, 18.11 before 18.11.4, and 1...
CVE-2026-45046MEDIUM5.5Gryph provides a security layer for AI coding agents. Prior to 0.7.0, Gryph implements logging levels that determine wha...
CVE-2026-44635HIGH7.5Kysely is a type-safe TypeScript SQL query builder. From 0.26.0 to 0.28.16, DefaultQueryCompiler.visitJSONPathLeg does n...
CVE-2026-42879MEDIUM6.3FacturaScripts is an open source accounting and invoicing software. In 2025.81 and earlier, an authenticated unrestricte...
CVE-2026-42878MEDIUM5.3FacturaScripts is an open source accounting and invoicing software. Prior to v2026, an unauthenticated information discl...
CVE-2026-2601MEDIUM4.3GitLab has remediated an issue in GitLab EE affecting all versions from 11.5 before 18.10.7, 18.11 before 18.11.4, and 1...
CVE-2026-1402MEDIUM6.5GitLab has remediated an issue in GitLab CE/EE affecting all versions from 17.1 before 18.10.7, 18.11 before 18.11.4, an...
CVE-2026-5509HIGH7.2An authenticated command injection vulnerability exists in the Archer BE450 v1 and BE7200 v1 router that allows an admin...
CVE-2026-4392MEDIUM6.9A vulnerability was detected in TeamSpeak 3 Server up to 3.13.7. This issue affects some unknown processing of the compo...