CVE Vulnerability Database
Search and browse 397,933 CVE records with CVSS scores, EPSS exploit predictions, and CISA KEV status.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2025-70950 | HIGH | 7.3 | 0.5% | May 19, 2026 | An issue in gohttp commit 34ea51 allows attackers to execute a directory traversal via supplying a crafted request. |
| CVE-2025-51427 | HIGH | 7.3 | 0.5% | May 19, 2026 | An issue was discovered in ModelScope 1.25.0 allowing attackers to execute arbitrary code via crafted module listed in t... |
| CVE-2026-8975 | HIGH | 8.8 | 0.4% | May 19, 2026 | Memory safety bugs present in Firefox ESR 115.35, Firefox ESR 140.10 and Firefox 150. Some of these bugs showed evidence... |
| CVE-2026-8974 | HIGH | 8.8 | 0.3% | May 19, 2026 | Memory safety bugs present in Firefox ESR 140.10 and Firefox 150. Some of these bugs showed evidence of memory corruptio... |
| CVE-2026-8973 | HIGH | 8.8 | 0.3% | May 19, 2026 | Memory safety bugs present in Firefox 150. Some of these bugs showed evidence of memory corruption and we presume that w... |
| CVE-2026-8972 | HIGH | 8.8 | 0.3% | May 19, 2026 | Privilege escalation in the WebRTC: Audio/Video component. This vulnerability was fixed in Firefox 151 and Thunderbird 1... |
| CVE-2026-8971 | MEDIUM | 6.5 | 0.2% | May 19, 2026 | Same-origin policy bypass in the Networking: JAR component. This vulnerability was fixed in Firefox 151 and Thunderbird ... |
| CVE-2026-8970 | HIGH | 8.8 | 0.3% | May 19, 2026 | Privilege escalation in the Security component. This vulnerability was fixed in Firefox 151, Firefox ESR 140.11, Thunder... |
| CVE-2026-8969 | HIGH | 8.1 | 0.3% | May 19, 2026 | Mitigation bypass in the DOM: Security component. This vulnerability was fixed in Firefox 151 and Thunderbird 151. |
| CVE-2026-8968 | HIGH | 7.5 | 0.4% | May 19, 2026 | Denial-of-service due to invalid pointer in the Audio/Video: Web Codecs component. This vulnerability was fixed in Firef... |
| CVE-2026-8967 | HIGH | 7.5 | 0.3% | May 19, 2026 | Information disclosure in the Graphics: WebGPU component. This vulnerability was fixed in Firefox 151 and Thunderbird 15... |
| CVE-2026-8966 | HIGH | 7.5 | 0.3% | May 19, 2026 | Information disclosure in the IP Protection component. This vulnerability was fixed in Firefox 151 and Thunderbird 151. |
| CVE-2026-8965 | HIGH | 7.5 | 0.3% | May 19, 2026 | Information disclosure in the DOM: Security component. This vulnerability was fixed in Firefox 151 and Thunderbird 151. |
| CVE-2026-8964 | HIGH | 7.5 | 0.3% | May 19, 2026 | Spoofing issue in the Popup Blocker component. This vulnerability was fixed in Firefox 151 and Thunderbird 151. |
| CVE-2026-8963 | HIGH | 7.5 | 0.3% | May 19, 2026 | Spoofing issue in the Web Speech component. This vulnerability was fixed in Firefox 151 and Thunderbird 151. |
| CVE-2026-8962 | HIGH | 8.1 | 0.4% | May 19, 2026 | Mitigation bypass in the DOM: Security component. This vulnerability was fixed in Firefox 151, Firefox ESR 140.11, Thund... |
| CVE-2026-8961 | MEDIUM | 6.5 | 0.3% | May 19, 2026 | Spoofing issue in the Form Autofill component. This vulnerability was fixed in Firefox 151, Firefox ESR 140.11, Thunderb... |
| CVE-2026-8960 | HIGH | 7.5 | 0.4% | May 19, 2026 | Spoofing issue in WebExtensions. This vulnerability was fixed in Firefox 151 and Thunderbird 151. |
| CVE-2026-8959 | CRITICAL | 9.6 | 0.4% | May 19, 2026 | Sandbox escape due to incorrect boundary conditions in the Widget: Win32 component. This vulnerability was fixed in Fire... |
| CVE-2026-8958 | HIGH | 8.6 | 0.3% | May 19, 2026 | Information disclosure, sandbox escape in the Security: Process Sandboxing component. This vulnerability was fixed in Fi... |
| CVE-2026-8957 | HIGH | 8.8 | 0.4% | May 19, 2026 | Privilege escalation in the Enterprise Policies component. This vulnerability was fixed in Firefox 151, Firefox ESR 140.... |
| CVE-2026-8956 | CRITICAL | 9.8 | 0.6% | May 19, 2026 | Integer overflow in the Networking: JAR component. This vulnerability was fixed in Firefox 151, Firefox ESR 140.11, Thun... |
| CVE-2026-8955 | HIGH | 8.8 | 0.4% | May 19, 2026 | Privilege escalation in the DOM: Workers component. This vulnerability was fixed in Firefox 151, Firefox ESR 140.11, Thu... |
| CVE-2026-8954 | HIGH | 7.5 | 0.4% | May 19, 2026 | Incorrect boundary conditions, integer overflow in the Audio/Video component. This vulnerability was fixed in Firefox 15... |
| CVE-2026-8953 | CRITICAL | 9.6 | 0.5% | May 19, 2026 | Sandbox escape due to use-after-free in the Disability Access APIs component. This vulnerability was fixed in Firefox 15... |
