CVE Vulnerability Database
Search and browse 398,007 CVE records with CVSS scores, EPSS exploit predictions, and CISA KEV status.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2026-8431 | HIGH | 7.2 | 0.7% | May 12, 2026 | An administrative user with access to configure webhooks can execute arbitrary commands by configuring and then triggeri... |
| CVE-2026-8430 | CRITICAL | 9.2 | 0.4% | May 12, 2026 | SPIP versions prior to 4.4.14 contain a remote code execution vulnerability in the public space that is limited to certa... |
| CVE-2026-8429 | HIGH | 8.8 | 0.5% | May 12, 2026 | SPIP versions prior to 4.4.14 contain a remote code execution vulnerability in the private space that allows attackers t... |
| CVE-2026-34684 | HIGH | 7.8 | 0.1% | May 12, 2026 | Substance3D - Designer versions 15.1.0 and earlier are affected by an out-of-bounds write vulnerability that could resul... |
| CVE-2026-34683 | HIGH | 7.8 | 0.1% | May 12, 2026 | Substance3D - Designer versions 15.1.0 and earlier are affected by an out-of-bounds write vulnerability that could resul... |
| CVE-2026-34682 | HIGH | 7.8 | 0.1% | May 12, 2026 | Substance3D - Designer versions 15.1.0 and earlier are affected by an out-of-bounds write vulnerability that could resul... |
| CVE-2026-34681 | HIGH | 7.8 | 0.1% | May 12, 2026 | Substance3D - Designer versions 15.1.0 and earlier are affected by an out-of-bounds write vulnerability that could resul... |
| CVE-2026-34664 | MEDIUM | 6.3 | 0.2% | May 12, 2026 | Substance3D - Designer versions 15.1.0 and earlier are affected by an Improper Limitation of a Pathname to a Restricted ... |
| CVE-2026-34660 | CRITICAL | 9.3 | 0.4% | May 12, 2026 | Adobe Connect versions 2025.9.15, 2025.8.157 and earlier are affected by an Incorrect Authorization vulnerability that c... |
| CVE-2026-34659 | CRITICAL | 9.6 | 0.6% | May 12, 2026 | Adobe Connect versions 2025.9.15, 2025.8.157 and earlier are affected by a Deserialization of Untrusted Data vulnerabili... |
| CVE-2026-23823 | HIGH | 7.2 | 1.0% | May 12, 2026 | A vulnerability in the command line interface of Access Points running AOS-10 could allow an authenticated remote attack... |
| CVE-2026-23822 | MEDIUM | 5.3 | 0.3% | May 12, 2026 | A vulnerability in the XML handling component of AOS-8 DHCP services could allow an unauthenticated remote attacker to t... |
| CVE-2026-23821 | HIGH | 7.2 | 0.6% | May 12, 2026 | A vulnerability in the configuration processing logic of Access Points running AOS-10 could allow an authenticated remot... |
| CVE-2026-23820 | HIGH | 7.2 | 0.6% | May 12, 2026 | A vulnerability in the command line interface of Access Points running AOS-10 and AOS-8 Instant could allow an authentic... |
| CVE-2026-23819 | HIGH | 8.8 | 0.3% | May 12, 2026 | A vulnerability in the web-based management interface of Access Points running AOS-10 and AOS-8 Instant could allow an u... |
| CVE-2026-5146 | MEDIUM | 4.3 | 0.2% | May 12, 2026 | Improper access control in the notification management endpoints in Devolutions Server allows an unauthenticated attacke... |
| CVE-2026-44343 | CRITICAL | 9.8 | 0.4% | May 12, 2026 | WGDashboard is a dashboard for WireGuard VPN. Prior to 4.3.2, there are critical vulnerabilities affecting WGDashboard t... |
| CVE-2026-44279 | MEDIUM | 5.5 | 0.1% | May 12, 2026 | An improper export of android application components vulnerability in Fortinet FortiTokenAndroid 6.2 all versions, Forti... |
| CVE-2026-44278 | MEDIUM | 5.5 | 0.1% | May 12, 2026 | A use of hard-coded cryptographic key vulnerability in Fortinet FortiClientWindows 7.4.0 through 7.4.2, FortiClientWindo... |
| CVE-2026-44277 | CRITICAL | 9.8 | 0.6% | May 12, 2026 | A improper access control vulnerability in Fortinet FortiAuthenticator 8.0.2, FortiAuthenticator 8.0.0, FortiAuthenticat... |
| CVE-2026-44204 | MEDIUM | 6.5 | 0.2% | May 12, 2026 | Shelf is a platform for tracking physical assets. From 1.12 to before 1.20.1, a SQL injection vulnerability in the sortB... |
| CVE-2026-44196 | CRITICAL | 9.1 | 0.3% | May 12, 2026 | Pingvin Share X is a secure and easy self-hosted file sharing platform. From 1.14.1 to 1.16.2, a critical authentication... |
| CVE-2026-44184 | HIGH | 8 | 0.1% | May 12, 2026 | Cleanuparr is a tool for automating the cleanup of unwanted or blocked files in Sonarr, Radarr, and supported download c... |
| CVE-2026-44183 | CRITICAL | 9.8 | 0.2% | May 12, 2026 | Cleanuparr is a tool for automating the cleanup of unwanted or blocked files in Sonarr, Radarr, and supported download c... |
| CVE-2026-44167 | HIGH | 7.5 | 0.2% | May 12, 2026 | phpseclib is a PHP secure communications library. Prior to 1.0.29, 2.0.54, and 3.0.52, anyone loading untrusted ASN1 fil... |
