CVE Vulnerability Database
Search and browse 397,857 CVE records with CVSS scores, EPSS exploit predictions, and CISA KEV status.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2026-9617 | HIGH | 8.8 | 0.3% | May 27, 2026 | PostgreSQL Anonymizer contains a vulnerability that allows a user to gain superuser privileges by creating a table and p... |
| CVE-2026-9035 | MEDIUM | 6.5 | 0.3% | May 27, 2026 | IBM Aspera High-Speed Transfer Endpoint 3.7.4 through 4.4.7 Fix Pack 1 and IBM Aspera High-Speed Transfer Server 3.7.4 t... |
| CVE-2026-8405 | MEDIUM | 6.5 | 0.2% | May 27, 2026 | IBM Guardium Data Protection 12.2.1, and 12.2.2 's add-on feature of Guardium Data Protection named "Long Term Retention... |
| CVE-2026-8180 | HIGH | 7.5 | 0.3% | May 27, 2026 | IBM Aspera High-Speed Transfer Endpoint 3.7.4 through 4.4.7 Fix Pack 1 and IBM Aspera High-Speed Transfer Server 3.7.4 t... |
| CVE-2026-8179 | HIGH | 8.8 | 0.4% | May 27, 2026 | IBM Aspera High-Speed Transfer Endpoint 3.7.4 through 4.4.7 Fix Pack 1 and IBM Aspera High-Speed Transfer Server 3.7.4 t... |
| CVE-2026-8175 | CRITICAL | 9.8 | 0.6% | May 27, 2026 | IBM Aspera High-Speed Transfer Endpoint 3.7.4 through 4.4.7 Fix Pack 1 and IBM Aspera High-Speed Transfer Server 3.7.4 t... |
| CVE-2026-7876 | CRITICAL | 9.1 | 0.3% | May 27, 2026 | IBM Aspera HSTS for CP4I 1.5.1 through 1.5.19 is affected by an authentication bypass vulnerability. A transfer client m... |
| CVE-2026-7528 | HIGH | 7.5 | 0.2% | May 27, 2026 | IBM Langflow OSS 1.0.0 through 1.9.0 could allow a denial of service due to uncontrolled resource consumption. |
| CVE-2026-7524 | CRITICAL | 9.8 | 0.6% | May 27, 2026 | IBM Langflow OSS 1.0.0 through 1.9.1 could allow remote code execution due to improper validation of symbolic links duri... |
| CVE-2026-7365 | HIGH | 7.8 | 0.1% | May 27, 2026 | IBM Operations Analytics - Log Analysis and IBM SmartCloud Analytics - Log Analysis uses default passwords default pass... |
| CVE-2026-7254 | MEDIUM | 5.3 | 0.2% | May 27, 2026 | IBM OPENBMC FW1110.00 through FW1110.11 is vulnerable to denial of service attacks by unauthenticated network users. |
| CVE-2026-6938 | HIGH | 7.5 | 0.2% | May 27, 2026 | IBM Db2 12.1.0 through 12.1.4 is vulnerable to authorization bypass when uploading to a remote object storage path with ... |
| CVE-2026-6936 | MEDIUM | 6.5 | 0.2% | May 27, 2026 | IBM i 7.6, 7.5, 7.4, and 7.3 s vulnerable to a denial-of-service attack due to uncontrolled recursion in the Integrated ... |
| CVE-2026-6053 | MEDIUM | 5.5 | 0.1% | May 27, 2026 | IBM Db2 11.5.0 through 11.5.9, and 12.1.0 through 12.1.4 is vulnerable to a denial of service when a specially crafted q... |
| CVE-2026-6052 | HIGH | 7.5 | 0.2% | May 27, 2026 | IBM Db2 11.5.0 through 11.5.9, and 12.1.0 through 12.1.4 is vulnerable to running out of memory when executing certain q... |
| CVE-2026-6051 | HIGH | 7.5 | 0.2% | May 27, 2026 | IBM Db2 11.5.0 through 11.5.9, and 12.1.0 through 12.1.4 is vulnerable to a denial of service when executing a specially... |
| CVE-2026-5516 | MEDIUM | 5.9 | 0.2% | May 27, 2026 | IBM WebSphere Application Server - Liberty 22.0.0.11 through 26.0.0.5 IBM WebSphere Application Server Liberty could all... |
| CVE-2026-5515 | MEDIUM | 5.5 | 0.1% | May 27, 2026 | IBM App Connect Enterprise 13.0.1.0 through 13.0.7.0 stores potentially sensitive information in log files that could be... |
| CVE-2026-5065 | HIGH | 8.8 | 0.2% | May 27, 2026 | IBM Controller 11.0.1, 11.1.0, 11.1.1, and 11.1.2 contains hard-coded credentials, such as a password or cryptographic k... |
| CVE-2026-4410 | HIGH | 7.5 | 0.5% | May 27, 2026 | IBM WebSphere Application Server - Liberty 19.0.0.7 through 26.0.0.5 and IBM WebSphere Application Server 9.0, and 8.5 a... |
| CVE-2026-48972 | HIGH | 7.5 | 0.3% | May 27, 2026 | Improper Control of Filename for Include/Require Statement in PHP Program ('PHP Remote File Inclusion') vulnerability in... |
| CVE-2026-48971 | MEDIUM | 4.3 | 0.2% | May 27, 2026 | Missing Authorization vulnerability in WebToffee Product Import Export for WooCommerce allows Exploiting Incorrectly Con... |
| CVE-2026-47104 | MEDIUM | 5.5 | 0.1% | May 27, 2026 | libusb before version 1.0.30 contains a one-byte out-of-bounds read vulnerability in parse_iad_array() in descriptor.c t... |
| CVE-2026-46103 | MEDIUM | 5.5 | 0.1% | May 27, 2026 | In the Linux kernel, the following vulnerability has been resolved: can: ucan: fix devres lifetime USB drivers bind to... |
| CVE-2026-46102 | HIGH | 7.5 | 0.5% | May 27, 2026 | In the Linux kernel, the following vulnerability has been resolved: net: strparser: fix skb_head leak in strp_abort_str... |
