CVE Vulnerability Database
Search and browse 397,864 CVE records with CVSS scores, EPSS exploit predictions, and CISA KEV status.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2026-48968 | MEDIUM | 6.5 | 0.2% | May 27, 2026 | Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Averta Master Slid... |
| CVE-2026-48877 | MEDIUM | 6.5 | 0.3% | May 27, 2026 | Insertion of Sensitive Information Into Sent Data vulnerability in Tom GenerateBlocks allows Retrieve Embedded Sensitive... |
| CVE-2026-40852 | HIGH | 7.2 | 0.4% | May 27, 2026 | A highly authenticated attacker can alter the config generator injecting a payload into future created configurations. T... |
| CVE-2026-40851 | HIGH | 8.4 | 0.1% | May 27, 2026 | A local attacker can perform a confusion attack on the cfgparser via a specially crafted file on an USB stick leading to... |
| CVE-2026-40850 | HIGH | 8.7 | 0.4% | May 27, 2026 | An unauthenticated remote attacker can exploit an unauthenticated SQL Injection vulnerability in the getAccountData func... |
| CVE-2026-40849 | HIGH | 7.1 | 0.3% | May 27, 2026 | An low privileged remote attacker can exploit an unauthenticated SQL Injection vulnerability in the user_alarmprofile vi... |
| CVE-2026-40848 | HIGH | 7.1 | 0.3% | May 27, 2026 | An low privileged remote attacker can exploit an unauthenticated SQL Injection vulnerability in the tag view due to impr... |
| CVE-2026-40847 | HIGH | 7.1 | 0.3% | May 27, 2026 | An low privileged remote attacker can exploit an unauthenticated SQL Injection vulnerability in the system_tag view due ... |
| CVE-2026-40846 | HIGH | 7.1 | 0.3% | May 27, 2026 | An low privileged remote attacker can exploit an unauthenticated SQL Injection vulnerability in the system view due to i... |
| CVE-2026-40845 | HIGH | 7.1 | 0.3% | May 27, 2026 | An low privileged remote attacker can exploit an unauthenticated SQL Injection vulnerability in the devices_configuratio... |
| CVE-2026-40844 | HIGH | 7.1 | 0.3% | May 27, 2026 | An low privileged remote attacker can exploit an unauthenticated SQL Injection vulnerability in the dashboard view due t... |
| CVE-2026-40843 | HIGH | 7.1 | 0.3% | May 27, 2026 | An low privileged remote attacker can exploit an unauthenticated SQL Injection vulnerability in the alarming view due to... |
| CVE-2026-40842 | HIGH | 7.1 | 0.3% | May 27, 2026 | An low privileged remote attacker can exploit an unauthenticated SQL Injection vulnerability in the getWidgetTags functi... |
| CVE-2026-40841 | HIGH | 7.1 | 0.3% | May 27, 2026 | An low privileged remote attacker can exploit an unauthenticated SQL Injection vulnerability in the getProjectTags funct... |
| CVE-2026-40840 | HIGH | 7.1 | 0.3% | May 27, 2026 | An low privileged remote attacker can exploit an unauthenticated SQL Injection vulnerability in the VerifyCreateLicences... |
| CVE-2026-40839 | HIGH | 7.1 | 0.3% | May 27, 2026 | An low privileged remote attacker can exploit an unauthenticated SQL Injection vulnerability in the getComponentScalings... |
| CVE-2026-40838 | HIGH | 7.1 | 0.3% | May 27, 2026 | An low privileged remote attacker can exploit an unauthenticated SQL Injection vulnerability in the getDeviceScalings fu... |
| CVE-2026-40837 | HIGH | 7.1 | 0.3% | May 27, 2026 | An low privileged remote attacker can exploit an unauthenticated SQL Injection vulnerability in the getProjectScalings f... |
| CVE-2026-40836 | HIGH | 7.1 | 0.2% | May 27, 2026 | An low privileged remote attacker can exploit an unauthenticated SQL Injection vulnerability in the inmessage model due ... |
| CVE-2026-40835 | HIGH | 7.1 | 0.3% | May 27, 2026 | An low privileged remote attacker can exploit an unauthenticated SQL Injection vulnerability in the saveObjectFromData f... |
| CVE-2026-40834 | HIGH | 7.1 | 0.2% | May 27, 2026 | An low privileged remote attacker can exploit an unauthenticated SQL Injection vulnerability in the dash_layout.php file... |
| CVE-2026-40833 | HIGH | 7.1 | 0.2% | May 27, 2026 | An low privileged remote attacker can exploit an unauthenticated SQL Injection vulnerability in the dash.php files saveD... |
| CVE-2026-40832 | HIGH | 7.1 | 0.3% | May 27, 2026 | An low privileged remote attacker can exploit an unauthenticated SQL Injection vulnerability in the getDevicegroups func... |
| CVE-2026-40831 | HIGH | 7.1 | 0.3% | May 27, 2026 | An low privileged remote attacker can exploit an unauthenticated SQL Injection vulnerability in the Easy View due to imp... |
| CVE-2026-40830 | HIGH | 7 | 0.3% | May 27, 2026 | A high privileged remote attacker can exploit an unauthenticated SQL Injection vulnerability in the admin.mbnetj.php fil... |
