CVE Vulnerability Database

Search and browse 398,007 CVE records with CVSS scores, EPSS exploit predictions, and CISA KEV status.

CVE IDSeverityCVSSDescription
CVE-2026-45185CRITICAL9.8Exim before 4.99.3, in certain GnuTLS configurations, has a remotely reachable use-after-free in the BDAT body parsing p...
CVE-2026-44874MEDIUM4.9A vulnerability exists in the web-based management interface of an AOS-10 Gateway that could allow an authenticated remo...
CVE-2026-44873MEDIUM5.4A session management vulnerability in AOS-8 allows previously authenticated users to retain network access after their a...
CVE-2026-44872HIGH7.2A command injection vulnerability exists in the web-based management interface of AOS-8 and AOS-10 Operating Systems. Su...
CVE-2026-44870HIGH8.8Command injection vulnerabilities exist in the command line interface (CLI) service accessed by the PAPI protocol of AOS...
CVE-2026-44869HIGH8.8Command injection vulnerabilities exist in the web-based management interface of AOS-8 and AOS-10 Operating Systems. Suc...
CVE-2026-44868HIGH8.8Command injection vulnerabilities exist in the web-based management interface of AOS-8 and AOS-10 Operating Systems. Suc...
CVE-2026-44867HIGH8.8Command injection vulnerabilities exist in the web-based management interface of AOS-8 and AOS-10 Operating Systems. Suc...
CVE-2026-44866HIGH8.8Command injection vulnerabilities exist in the web-based management interface of AOS-8 and AOS-10 Operating Systems. Suc...
CVE-2026-44865HIGH7.2Command injection vulnerabilities exist in the web-based management interface of AOS-8 and AOS-10 Operating Systems. Suc...
CVE-2026-44864HIGH7.2SQL injection vulnerabilities exist in several underlying service components accessible through the AOS-8 and AOS-10 com...
CVE-2026-44863HIGH7.2SQL injection vulnerabilities exist in several underlying service components accessible through the AOS-8 and AOS-10 com...
CVE-2026-44862HIGH7.2SQL injection vulnerabilities exist in several underlying service components accessible through the AOS-8 and AOS-10 com...
CVE-2026-44861HIGH7.2SQL injection vulnerabilities exist in several underlying service components accessible through the AOS-8 and AOS-10 com...
CVE-2026-44860HIGH7.2SQL injection vulnerabilities exist in several underlying service components accessible through the AOS-8 and AOS-10 com...
CVE-2026-44859HIGH7.2Stack-based buffer overflow vulnerabilities exist in several underlying management service components accessed through t...
CVE-2026-44858HIGH7.2Stack-based buffer overflow vulnerabilities exist in several underlying management service components accessed through t...
CVE-2026-44857HIGH7.2Stack-based buffer overflow vulnerabilities exist in several underlying management service components accessed through t...
CVE-2026-44856HIGH7.2Stack-based buffer overflow vulnerabilities exist in several underlying management service components accessed through t...
CVE-2026-44855HIGH7.2Stack-based buffer overflow vulnerabilities exist in several underlying management service components accessed through t...
CVE-2026-44854HIGH7.2Command injection vulnerabilities exist in the web-based management interface of AOS-8 and AOS-10 Operating Systems. Suc...
CVE-2026-44853HIGH7.2Command injection vulnerabilities exist in the web-based management interface of AOS-8 and AOS-10 Operating Systems. Suc...
CVE-2026-44852HIGH7.2An authenticated remote code execution vulnerability exists in the AOS-8 and AOS-10 web-based management interface. A vu...
CVE-2026-44225CRITICAL9.3Pulpy is a lightweight, cross-platform desktop application packager for web apps. Prior to 0.1.1, Pulpy injects a pulpy....
CVE-2026-44223MEDIUM6.5vLLM is an inference and serving engine for large language models (LLMs). From 0.18.0 to before 0.20.0, the extract_hidd...