CVE Vulnerability Database

Search and browse 397,870 CVE records with CVSS scores, EPSS exploit predictions, and CISA KEV status.

CVE IDSeverityCVSSDescription
CVE-2026-25900MEDIUM6.1Lack of output escaping leads to a XSS vector in the feed modules.
CVE-2026-24212CRITICAL9.8NVIDIA Isaac Launchable for Linux contains a vulnerability where sensitive information is transmitted in clear text. A s...
CVE-2026-24162HIGH7.8NVIDIA Transformers4Rec for Linux contains a vulnerability where an attacker could cause improper deserialization of unt...
CVE-2025-36221HIGH7.5IBM Cloud Pak for Data System - Cyclops 11.3.0.2 through Interim Fix 002 IBM Cloud Pak for Data System uses default pas...
CVE-2025-36220CRITICAL9.8IBM Cloud Pak for Data System - Cyclops 11.3.0.2 through Interim Fix 002 IBM Cloud Pak for Data System is vulnerable to...
CVE-2025-36148MEDIUM6.1IBM Financial Transaction Manager for SWIFT Services for Multiplatforms 3.2.4.0 through 3.2.4.15 IBM Financial Transacti...
CVE-2025-36145MEDIUM5.3IBM watsonx.data 2.2 through 2.3.1 IBM Lakehouse does not properly restrict inbound and outbound connections which could...
CVE-2025-36126HIGH7.6IBM Cognos Analytics 11.2.0, 12.0, and 12.1.0 and IBM Cognos Transformer 12.0, 11.2.4, and 12.1.0 is vulnerable to store...
CVE-2025-14290MEDIUM5.4IBM webMethods Integration (on prem) -Integration Server 10.15 through IS_10.15_Core_Fix2611.1 to IS_11.1_Core_Fix10 IBM...
CVE-2025-13755MEDIUM5.5IBM Db2 11.5.0 through 11.5.9, and 12.1.0 through 12.1.4 for Linux, UNIX and Windows (includes DB2 Connect Server) store...
CVE-2026-48692HIGH8.1FastNetMon Community Edition through 1.2.9 exposes a gRPC API server on port 50052 with no authentication mechanism. The...
CVE-2026-48688HIGH7.5FastNetMon Community Edition through 1.2.9 contains multiple out-of-bounds reads in the BGP MP_REACH_NLRI IPv6 attribute...
CVE-2026-48687CRITICAL9.8FastNetMon Community Edition through 1.2.9 contains an OS command injection vulnerability in the Juniper router integrat...
CVE-2026-48686CRITICAL9.8FastNetMon Community Edition through 1.2.9 contains a stack-based buffer overflow in the BGP NLRI (Network Layer Reachab...
CVE-2026-48685MEDIUM6.5FastNetMon Community Edition through 1.2.9 has out-of-bounds memory access because it incorrectly parses BGP path attrib...
CVE-2026-48684MEDIUM6.5FastNetMon Community Edition through 1.2.9 contains an out-of-bounds read in the NetFlow v9 options template parser. In ...
CVE-2026-48683MEDIUM6.5FastNetMon Community Edition through 1.2.9 contains an out-of-bounds read vulnerability in the NetFlow v9 data flowset p...
CVE-2026-46620MEDIUM6.5e107 is a content management system (CMS). Prior to 2.3.5, e107 CMS does not properly enforce CSRF token validation on c...
CVE-2026-43936MEDIUM4.3e107 is a content management system (CMS). Prior to 2.3.4, you can access the local environment by specifying the URL of...
CVE-2026-43935HIGH8.1e107 is a content management system (CMS). Prior to 2.3.4, a Host Header Injection vulnerability in the password reset p...
CVE-2026-43934MEDIUM6.5e107 is a content management system (CMS). Prior to 2.3.4, a Broken Access Control vulnerability exists in the applicati...
CVE-2026-40564MEDIUM6.5Files or Directories Accessible to External Parties, Server-Side Request Forgery (SSRF) vulnerability in Apache Flink Ku...
CVE-2026-38587MEDIUM4.3An Insecure Direct Object Reference (IDOR) vulnerability was discovered in ONLYOFFICE DocSpace before 3.2.1. The flaw ex...
CVE-2026-25112HIGH7.8A high-severity vulnerability in the deployment of Genetec RabbitMQ that allows a privilege escalation attack.
CVE-2026-9552HIGH7.3A security flaw has been discovered in Das Parking Management System 停车场管理系统 6.2.0. This vulnerability affects unknown c...