CVE Vulnerability Database
Search and browse 397,909 CVE records with CVSS scores, EPSS exploit predictions, and CISA KEV status.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2026-45207 | HIGH | 7.8 | 0.2% | May 21, 2026 | An origin validation vulnerability in the Apex One/SEP agent could allow a local attacker to escalate privileges on affe... |
| CVE-2026-45206 | HIGH | 7.8 | 0.2% | May 21, 2026 | An origin validation vulnerability in the Apex One/SEP agent could allow a local attacker to escalate privileges on affe... |
| CVE-2026-34930 | HIGH | 7.8 | 0.2% | May 21, 2026 | An origin validation vulnerability in the Apex One/SEP agent could allow a local attacker to escalate privileges on affe... |
| CVE-2026-34929 | HIGH | 7.8 | 0.2% | May 21, 2026 | An origin validation vulnerability in the Apex One/SEP agent could allow a local attacker to escalate privileges on affe... |
| CVE-2026-34928 | HIGH | 7.8 | 0.2% | May 21, 2026 | An origin validation vulnerability in the Apex One/SEP agent could allow a local attacker to escalate privileges on affe... |
| CVE-2026-34927 | HIGH | 7.8 | 0.2% | May 21, 2026 | An origin validation vulnerability in the Apex One/SEP agent could allow a local attacker to escalate privileges on affe... |
| CVE-2026-34926 | MEDIUM | 6.7 | 12.7% | May 21, 2026 | A directory traversal vulnerability in the Apex One (on-premise) server could allow a pre-authenticated local attacker t... |
| CVE-2026-2740 | HIGH | 8.4 | 1.7% | May 21, 2026 | Zohocorp ManageEngine ADSelfService Plus version before 6525, DataSecurity Plus before 6264 and RecoveryManager Plus bef... |
| CVE-2025-71217 | HIGH | 7.8 | 0.3% | May 21, 2026 | An origin validation error vulnerability in the Trend Micro Apex One (mac) agent self-protection mechanism could allow a... |
| CVE-2025-71216 | HIGH | 7.8 | 0.3% | May 21, 2026 | A time-of-check time-of-use vulnerability in the Trend Micro Apex One (mac) agent cache mechanism could allow a local at... |
| CVE-2025-71215 | HIGH | 7 | 0.3% | May 21, 2026 | A time-of-check time-of-use vulnerability in the Trend Micro Apex One (mac) agent iCore service signature verification c... |
| CVE-2025-71214 | HIGH | 7.8 | 0.4% | May 21, 2026 | An origin validation error vulnerability in the Trend Micro Apex One (mac) agent iCore service could allow a local attac... |
| CVE-2025-71213 | HIGH | 7.8 | 0.3% | May 21, 2026 | An origin validation error vulnerability in Trend Micro Apex One could allow a local attacker to escalate privileges on ... |
| CVE-2025-71212 | HIGH | 7.8 | 0.5% | May 21, 2026 | A link following vulnerability in the Trend Micro Apex One scan engine could allow a local attacker to escalate privileg... |
| CVE-2025-71211 | CRITICAL | 9.8 | 3.8% | May 21, 2026 | A vulnerability in the Trend Micro Apex One management console could allow a remote attacker to upload malicious code an... |
| CVE-2025-71210 | CRITICAL | 9.8 | 3.8% | May 21, 2026 | A vulnerability in the Trend Micro Apex One management console could allow a remote attacker to upload malicious code an... |
| CVE-2025-13479 | HIGH | 7.5 | 0.3% | May 21, 2026 | Authorization bypass through User-Controlled key vulnerability in PosCube Hardware Software and Consulting Ltd. QR Menu ... |
| CVE-2025-13477 | HIGH | 7.1 | 0.2% | May 21, 2026 | Exposure of private personal information to an unauthorized actor, Insufficiently Protected Credentials vulnerability in... |
| CVE-2026-6841 | MEDIUM | 6.1 | 0.2% | May 21, 2026 | Request Tracker is vulnerable to a reflected cross-site scripting (XSS) vulnerability via the "Page" parameter in GET re... |
| CVE-2026-5118 | CRITICAL | 9.8 | 0.5% | May 21, 2026 | The Divi Form Builder plugin for WordPress is vulnerable to privilege escalation in versions up to, and including, 5.1.2... |
| CVE-2026-45760 | HIGH | 8.1 | 0.3% | May 21, 2026 | (Externally Controlled Reference to a Resource in Another Sphere), (Authorization Bypass Through User-Controlled Key) vu... |
| CVE-2026-43502 | HIGH | 7.8 | 0.1% | May 21, 2026 | In the Linux kernel, the following vulnerability has been resolved: net/rds: handle zerocopy send cleanup before the me... |
| CVE-2026-43501 | CRITICAL | 9.8 | 0.6% | May 21, 2026 | In the Linux kernel, the following vulnerability has been resolved: ipv6: rpl: reserve mac_len headroom when recompress... |
| CVE-2026-43499 | HIGH | 7.8 | 0.8% | May 21, 2026 | In the Linux kernel, the following vulnerability has been resolved: rtmutex: Use waiter::task instead of current in rem... |
| CVE-2026-43498 | HIGH | 7.8 | 0.1% | May 21, 2026 | In the Linux kernel, the following vulnerability has been resolved: accel/ivpu: Disallow re-exporting imported GEM obje... |
