CVE Vulnerability Database

Search and browse 397,873 CVE records with CVSS scores, EPSS exploit predictions, and CISA KEV status.

CVE IDSeverityCVSSDescription
CVE-2026-9495HIGH7.3Versions of the package @koa/router from 14.0.0 and before 15.0.0 are vulnerable to Access Control Bypass due to the mid...
CVE-2026-3314MEDIUM4.6Missing password field masking vulnerability in Hitachi Ops Center Analyzer (Hitachi Ops Center Analyzer detail view, Hi...
CVE-2026-9531MEDIUM6.3A weakness has been identified in Totolink CA750-PoE 6.2c.510. Impacted is the function setUpgradeUboot of the file /cgi...
CVE-2026-9530LOW3.3A weakness has been identified in GNU LibreDWG up to 0.14. The impacted element is the function read_2004_compressed_sec...
CVE-2026-9529LOW3.3A security flaw has been discovered in GNU LibreDWG up to 0.14. The affected element is the function match_BLOCK_HEADER ...
CVE-2026-9528HIGH7.3A vulnerability was identified in itsourcecode Electronic Judging System 1.0. Impacted is an unknown function of the fil...
CVE-2026-9527MEDIUM4.3A vulnerability was determined in itsourcecode Electronic Judging System 1.0. This issue affects some unknown processing...
CVE-2026-9526HIGH7.3A vulnerability was found in itsourcecode Electronic Judging System 1.0. This vulnerability affects unknown code of the ...
CVE-2026-9525HIGH7.3A vulnerability has been found in itsourcecode Electronic Judging System 1.0. This affects an unknown part of the file /...
CVE-2026-9524MEDIUM6.3A flaw has been found in xianrendzw EasyReport up to 2.0.17.0522_Beta. Affected by this issue is the function execute of...
CVE-2026-9523HIGH7.3A vulnerability was detected in Acrel Electrical EEMS Enterprise Power Operation and Maintenance Cloud Platform 3000WEBV...
CVE-2026-9538HIGH7.5Archive::Tar versions before 3.10 for Perl allow memory exhaustion via attacker controlled entry size field in tar heade...
CVE-2026-9521HIGH7.3A security vulnerability has been detected in fraillt bitsery up to 5.2.4. Affected is the function loadFromSharedState ...
CVE-2026-9520MEDIUM4.3A weakness has been identified in blitz-js blitz up to 3.0.2 on GitHub. This impacts an unknown function of the file pac...
CVE-2026-9519MEDIUM4.3A security flaw has been discovered in stonith404 pingvin-share up to 1.13.0. This affects the function getServerSidePro...
CVE-2026-9518MEDIUM4.3A vulnerability was identified in hemant6488 CodeIgniter-StudentManagementSystem. The impacted element is the function a...
CVE-2026-4795MEDIUM6.5A missing authorization vulnerability in Zyxel GS1200-5v3 firmware versions through 1.00(ACPS.2)C0, GS1200-8v3 firmware ...
CVE-2026-42497HIGH7.5Archive::Tar versions before 3.08 for Perl extract hardlinks to attacker controlled paths outside the extraction directo...
CVE-2026-42496CRITICAL9.1Archive::Tar versions before 3.08 for Perl extract symlinks with attacker controlled targets outside the extraction dire...
CVE-2025-71310LOW1.8The GDPR cookies module for Backdrop CMS (before 1.x-1.3.5) doesn't sufficiently protect visitors from Cross Site Scri...
CVE-2026-9517HIGH7.3A vulnerability was determined in hemant6488 CodeIgniter-StudentManagementSystem. The affected element is an unknown fun...
CVE-2026-9515MEDIUM6.3A vulnerability was detected in Totolink CA750-PoE 6.2c.510. The affected element is the function setUnloadUserData of t...
CVE-2026-8376CRITICAL9.8Perl versions before 5.40.5-RC1, from 5.41.0 before 5.42.3-RC1, from 5.43.0 before 5.43.11 have a heap buffer overflow w...
CVE-2026-9514MEDIUM6.3A security vulnerability has been detected in Totolink CA750-PoE 6.2c.510. Impacted is the function setNetworkDiag of th...
CVE-2026-9513MEDIUM6.3A weakness has been identified in Totolink CA750-PoE 6.2c.510. This issue affects the function NTPSyncWithHost of the fi...