CVE Vulnerability Database

Search and browse 397,857 CVE records with CVSS scores, EPSS exploit predictions, and CISA KEV status.

CVE IDSeverityCVSSDescription
CVE-2026-4391MEDIUM6.9A security vulnerability has been detected in TeamSpeak 3 Server up to 3.13.7. This vulnerability affects unknown code o...
CVE-2026-4390MEDIUM5.4A weakness has been identified in TeamSpeak 3 Server up to 3.13.7. This affects the function process_resend_queue of the...
CVE-2026-48153HIGH8.5Budibase is an open-source low-code platform. Prior to 3.39.0, fetchToken in the OAuth2 SDK makes a POST to a builder-su...
CVE-2026-48152HIGH8.1Budibase is an open-source low-code platform. Prior to 3.39.0, the single-datasource GET and PUT routes are guarded by g...
CVE-2026-48151HIGH7.5Budibase is an open-source low-code platform. Prior to 3.39.0, the webhook schema-building endpoint is registered under ...
CVE-2026-48150CRITICAL9Budibase is an open-source low-code platform. Prior to 3.39.0, /api/public/v1/roles/assign is guarded by the builderOrAd...
CVE-2026-48149HIGH8.1Budibase is an open-source low-code platform. Prior to 3.39.0, the Budibase Text component renders markdown by assigning...
CVE-2026-48148MEDIUM5.3Budibase is an open-source low-code platform. Prior to 3.35.3, the VectorDB configuration endpoint in Budibase accepts ...
CVE-2026-48147MEDIUM6.5Budibase is an open-source low-code platform. Prior to 3.35.4, the buildMatcherRegex() / matches() functions in packages...
CVE-2026-48146HIGH7.7Budibase is an open-source low-code platform. Prior to 3.39.0, the OAuth2 token fetch function in packages/server/src/sd...
CVE-2026-48128MEDIUM5.1Budibase is an open-source low-code platform. Prior to 3.39.0, the executeQuery automation step in Budibase accepts a qu...
CVE-2026-46427HIGH7.7Budibase is an open-source low-code platform. Prior to 3.38.3, removeSecrets at packages/server/src/sdk/workspace/dataso...
CVE-2026-46426HIGH7.6Budibase is an open-source low-code platform. Prior to 3.38.2, the file upload endpoint POST /api/attachments/process do...
CVE-2026-46425CRITICAL9.9Budibase is an open-source low-code platform. Prior to 3.38.2, packages/worker/src/api/routes/global/scim.ts attaches on...
CVE-2026-46424MEDIUM4.2Budibase is an open-source low-code platform. Prior to 3.38.2, the public API role unassignment endpoint (POST /api/publ...
CVE-2026-45719MEDIUM6.5Budibase is an open-source low-code platform. Prior to 3.38.1, the V1 Views API (POST /api/views) accepts a calculation ...
CVE-2026-45718MEDIUM5.4Budibase is an open-source low-code platform. Prior to 3.38.1, the row action trigger endpoint (POST /api/tables/:source...
CVE-2026-45717HIGH8.8Budibase is an open-source low-code platform. Prior to 3.38.1, Budibase exposes a REST API for datasource management. Th...
CVE-2026-45716HIGH8.8Budibase is an open-source low-code platform. Prior to 3.38.1, the POST /api/global/users/onboard endpoint is protected ...
CVE-2026-45715HIGH7.7Budibase is an open-source low-code platform. Prior to 3.38.1, the REST datasource integration (packages/server/src/inte...
CVE-2026-45548HIGH7.7Budibase is an open-source low-code platform. Prior to 3.34.8, the processUrlFile function in packages/server/src/automa...
CVE-2026-45090HIGH7.5Dalfox is a powerful open-source XSS scanner and utility focused on automation. Prior to 2.13.0, ParameterAnalysis in pk...
CVE-2026-45089HIGH8.2Dalfox is a powerful open-source XSS scanner and utility focused on automation. Prior to 2.13.0, when dalfox is run in R...
CVE-2026-45088HIGH7.5Dalfox is a powerful open-source XSS scanner and utility focused on automation. Prior to 2.13.0, when dalfox is run in R...
CVE-2026-45087CRITICAL10Dalfox is a powerful open-source XSS scanner and utility focused on automation. Prior to 2.13.0, when dalfox is started ...