CVE Vulnerability Database

Search and browse 397,870 CVE records with CVSS scores, EPSS exploit predictions, and CISA KEV status.

CVE IDSeverityCVSSDescription
CVE-2026-9628HIGH8.8A weakness has been identified in UTT HiPER 1200GW up to 2.5.3-170306. Affected is an unknown function of the file /gofo...
CVE-2026-9627HIGH8.8A security flaw has been discovered in UTT HiPER 1200GW up to 2.5.3-170306. This impacts the function strcpy of the file...
CVE-2026-9609MEDIUM4.7A vulnerability was identified in QianFox FoxCMS up to 1.2.6. This affects the function Edit of the file Admin.php. The ...
CVE-2026-9608LOW2.4A vulnerability was determined in QianFox FoxCMS up to 1.2.6. The impacted element is an unknown function of the file /T...
CVE-2026-9207HIGH8.8Tanium addressed an unauthorized code execution vulnerability in Connect.
CVE-2026-9156HIGH7.5Tanium addressed a denial of service vulnerability in Tanium Server.
CVE-2026-7493MEDIUM5.3The Appointment Booking Calendar — Simply Schedule Appointments Booking Plugin plugin for WordPress is vulnerable to den...
CVE-2026-6565MEDIUM6.4The Style Kits – Advanced Theme Styles for Elementor, Elementor Kits & Elementor Patterns plugin for WordPress is vulner...
CVE-2026-49017MEDIUM6.5In OpenStack Swift before 2.36.2 and 2.37.2, s3api middleware enters an infinite loop when processing a truncated aws-ch...
CVE-2026-49014HIGH7.8In GDAL 3.1.0 through 3.13.0, scanForGeometryContainers in the netCDF driver allows code execution via a stack-based buf...
CVE-2026-9607MEDIUM6.3A vulnerability was found in itsourcecode Courier Management System 1.0. The affected element is an unknown function of ...
CVE-2026-9606HIGH7.3A vulnerability has been found in itsourcecode Courier Management System 1.0. Impacted is an unknown function of the fil...
CVE-2026-9605HIGH7.3A flaw has been found in GNU libredwg up to 0.13.4.8160. This issue affects the function bit_read_RC of the file bits.c ...
CVE-2026-9312HIGH8.2A server-side request forgery (SSRF) vulnerability was identified in GitHub Enterprise Server that allowed an unauthenti...
CVE-2026-8606MEDIUM5.9A Server-Side Request Forgery (SSRF) vulnerability was identified in GitHub Enterprise Server that allowed an attacker t...
CVE-2026-9604MEDIUM4.3A vulnerability was detected in JeecgBoot up to 3.9.1. This vulnerability affects unknown code of the component AiragMod...
CVE-2026-8680——Rejected reason: This CVE ID has been rejected or withdrawn by its CVE Numbering Authority.
CVE-2026-8647MEDIUM4.8Crypt::ScryptKDF versions through 0.010 for Perl uses insecure random number source when no CSPRNG module is available. ...
CVE-2026-46740MEDIUM5.3Mojolicious::Plugin::Statsd versions through 0.04 for Perl allowed metric injections. The metric names and set values w...
CVE-2026-9603MEDIUM6.5A security vulnerability has been detected in SourceCodester eDoc Doctor Appointment System 1.0. This affects an unknown...
CVE-2026-9584HIGH7.3A security vulnerability has been detected in code-projects Project Management System 1.0. Affected is an unknown functi...
CVE-2026-5260HIGH8.2A flaw was found in libgnutls. A remote attacker, by sending an extremely short premaster secret during an RSA key excha...
CVE-2026-48710MEDIUM6.5Starlette is a lightweight ASGI framework/toolkit. Prior to version 1.0.1, the HTTP `Host` request header was not valida...
CVE-2026-45574HIGH8.1epa4all-client is the Java Client for epa4all / ePA 3.0 in the Telematik Infrastruktur. Prior to 1.2.2, an attacker on t...
CVE-2026-45298HIGH8.6Dozzle is a realtime log viewer for docker containers. Prior to 10.5.2, in a default dozzle deploy (the documented quick...