CVE Vulnerability Database
Search and browse 397,864 CVE records with CVSS scores, EPSS exploit predictions, and CISA KEV status.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2026-35090 | CRITICAL | 9.3 | 0.6% | May 27, 2026 | In Slican telephone exchanges it is possible to manage the control panel remotely. An unauthenticated attacker can conne... |
| CVE-2026-35089 | HIGH | 8.7 | 0.6% | May 27, 2026 | In Slican telephone exchanges secure key is generated in a predictable manner using properties of the telephone exchange... |
| CVE-2026-35087 | CRITICAL | 9.3 | 0.7% | May 27, 2026 | Slican telephone exchanges allow administrative protocol authentication bypass. An attacker can bypass the need to enter... |
| CVE-2026-2607 | MEDIUM | 5.1 | 0.1% | May 27, 2026 | IBM MQ Operator SC2: v3.2.0 through 3.2.23CD: v3.3.0, v3.4.0, v3.4.1, v3.5.0, v3.5.1 - v3.5.3, v3.6.0 - v3.6.4, v3.7.0 ... |
| CVE-2026-2340 | MEDIUM | 6.5 | 0.9% | May 27, 2026 | A flaw was found in Samba’s vfs_worm module. The module is intended to provide write-once, read-many (WORM) protections ... |
| CVE-2026-23679 | MEDIUM | 5.5 | 0.2% | May 27, 2026 | libusb before version 1.0.30 contains a NULL pointer dereference vulnerability that allows attackers to crash applicatio... |
| CVE-2026-1933 | MEDIUM | 6.5 | 0.9% | May 27, 2026 | A flaw was found in Samba’s handling of NTFS-style reparse points on shares configured with read only = yes. Due to miss... |
| CVE-2026-1718 | HIGH | 7.5 | 0.4% | May 27, 2026 | IBM Db2 11.5.0 through 11.5.9, and 12.1.0 through 12.1.4 is vulnerable to a denial of service with a specially crafted q... |
| CVE-2025-71312 | MEDIUM | 5.5 | 0.1% | May 27, 2026 | In the Linux kernel, the following vulnerability has been resolved: fs/ntfs3: fix ntfs_mount_options leak in ntfs_fill_... |
| CVE-2025-71311 | MEDIUM | 5.5 | 0.2% | May 27, 2026 | In the Linux kernel, the following vulnerability has been resolved: fs/ntfs3: Initialize new folios before use KMSAN r... |
| CVE-2025-71309 | MEDIUM | 5.5 | 0.1% | May 27, 2026 | In the Linux kernel, the following vulnerability has been resolved: fs/ntfs3: fix deadlock in ni_read_folio_cmpr Syzbo... |
| CVE-2025-71308 | MEDIUM | 5.5 | 0.1% | May 27, 2026 | In the Linux kernel, the following vulnerability has been resolved: accel/amdxdna: Fix potential NULL pointer dereferen... |
| CVE-2025-71307 | MEDIUM | 5.5 | 0.1% | May 27, 2026 | In the Linux kernel, the following vulnerability has been resolved: drm/panthor: Fix NULL pointer dereference on pantho... |
| CVE-2025-71306 | HIGH | 7.1 | 0.1% | May 27, 2026 | In the Linux kernel, the following vulnerability has been resolved: ima: Fix stack-out-of-bounds in is_bprm_creds_for_e... |
| CVE-2025-71305 | MEDIUM | 5.5 | 0.2% | May 27, 2026 | In the Linux kernel, the following vulnerability has been resolved: drm/display/dp_mst: Add protection against 0 vcpi ... |
| CVE-2025-71304 | MEDIUM | 5.5 | 0.2% | May 27, 2026 | In the Linux kernel, the following vulnerability has been resolved: smack: /smack/doi: accept previously used values W... |
| CVE-2025-71303 | MEDIUM | 4.7 | 0.1% | May 27, 2026 | In the Linux kernel, the following vulnerability has been resolved: accel/amdxdna: Fix race condition when checking rpm... |
| CVE-2025-3633 | HIGH | 8.2 | 0.3% | May 27, 2026 | IBM Cognos Analytics 11.2.0, 11.2.4, 12.0, and 12.1.0 and IBM Cognos Transformer 11.2.4, 12.0, and 12.1.0 are vulnerable... |
| CVE-2024-56462 | HIGH | 8.8 | 0.5% | May 27, 2026 | IBM QRadar 7.5.0 through 7.5.0 UP15 Interim Fix 002 could allow a privileged user to upload a malicious backup archive t... |
| CVE-2024-40684 | CRITICAL | 9.8 | 0.4% | May 27, 2026 | IBM Operations Analytics - Log Analysis 1.3.5.0, 1.3.5.1, 1.3.5.2, 1.3.5.3, 1.3.6.0, 1.3.6.1, 1.3.7.0, 1.3.7.1, 1.3.7.2,... |
| CVE-2024-28765 | MEDIUM | 5.3 | 0.4% | May 27, 2026 | IBM SDI 7.2.0.0 through 7.2.0.14 and IBM Security Directory Integrator 10.0.0.0 through 10.0.0.2 could allow a remote at... |
| CVE-2026-9689 | MEDIUM | 4.2 | 0.3% | May 27, 2026 | A flaw was found in Keycloak, an open-source identity and access management solution. When a client application is confi... |
| CVE-2026-48906 | HIGH | 8.1 | 0.3% | May 27, 2026 | The vulnerability in the Tassos Framework Plugin allows users to delete arbitrary files on the affected sites. |
| CVE-2026-45846 | MEDIUM | 5.5 | 0.1% | May 27, 2026 | In the Linux kernel, the following vulnerability has been resolved: bareudp: fix NULL pointer dereference in bareudp_fi... |
| CVE-2026-45845 | MEDIUM | 5.5 | 0.1% | May 27, 2026 | In the Linux kernel, the following vulnerability has been resolved: net/sched: taprio: fix NULL pointer dereference in ... |
