CVE Vulnerability Database
Search and browse 377,706 CVE records with CVSS scores, EPSS exploit predictions, and CISA KEV status.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2026-18909 | MEDIUM | 5.6 | 0.1% | Aug 6, 2026 | A stack-based buffer overflow vulnerability exists in ELAN Microelectronics Corp. ELAN Smart-Pad on Windows (ETD.sys and... |
| CVE-2026-18325 | HIGH | 7.2 | 0.3% | Aug 6, 2026 | The Forminator Forms – Contact Form, Payment Form & Custom Form Builder plugin for WordPress is vulnerable to Stored Cro... |
| CVE-2026-16636 | HIGH | 7.2 | 0.3% | Aug 6, 2026 | The FluentSMTP – WP SMTP Plugin with Amazon SES, SendGrid, MailGun, Postmark, Google and Any SMTP Provider plugin for Wo... |
| CVE-2026-15991 | HIGH | 8.8 | 0.6% | Aug 6, 2026 | The File Manager plugin for WordPress is vulnerable to arbitrary file deletion due to insufficient file path validation ... |
| CVE-2026-18991 | HIGH | 7.3 | 0.5% | Aug 6, 2026 | A security vulnerability has been detected in nanocoai NanoClaw up to 2.0.64. This affects an unknown part of the file c... |
| CVE-2026-18990 | HIGH | 7.3 | 0.4% | Aug 6, 2026 | A vulnerability was detected in letta-ai LettaBot 0.2.0. Impacted is an unknown function of the file src/api/server.ts o... |
| CVE-2026-18980 | MEDIUM | 6.3 | 1.3% | Aug 6, 2026 | A vulnerability was identified in nearai ironclaw up to 0.29.1. Affected is the function classify_command_risk of the fi... |
| CVE-2026-18976 | MEDIUM | 6.3 | 0.2% | Aug 6, 2026 | A vulnerability was determined in NousResearch hermes-agent up to 0.16.0. This impacts the function get_tool_definitions... |
| CVE-2026-18974 | MEDIUM | 5.5 | 0.3% | Aug 6, 2026 | A vulnerability was found in heshengtao super-agent-party up to 0.4.1. This affects the function get_file_content of the... |
| CVE-2026-18973 | HIGH | 7.3 | 0.3% | Aug 6, 2026 | A vulnerability has been found in heshengtao super-agent-party up to 0.4.1. The impacted element is the function sanitiz... |
| CVE-2026-67873 | CRITICAL | 9.8 | — | Aug 6, 2026 | A heap-based buffer overflow exists in lib60870-C 2.4.0 in the server-side FileSegment ASDU encoding path. The issue occ... |
| CVE-2026-67872 | HIGH | 7.5 | — | Aug 6, 2026 | An issue in Systerel S2OPC 1.7.3 allows a remote attacker to cause a denial of service via the event monitored-item queu... |
| CVE-2026-67871 | HIGH | 7.5 | — | Aug 6, 2026 | Buffer Overflow vulnerability in Systerel S2OPC 1.7.3 allows a remote attacker to cause a denial of service via the AddN... |
| CVE-2026-67870 | CRITICAL | 9.8 | 0.3% | Aug 6, 2026 | In open62541 v1.5.5, the server-side AddReferences implementation contains an incomplete validation flaw for non-local E... |
| CVE-2026-67869 | HIGH | 7.5 | — | Aug 6, 2026 | Buffer Overflow vulnerability in open62541 v1.5.5 allows a remote attacker to cause a denial of service via the Service_... |
| CVE-2026-67531 | CRITICAL | 9.3 | 0.4% | Aug 6, 2026 | FrontMCP is a TypeScript-first framework for the Model Context Protocol (MCP). Prior to 1.5.7, the sandboxed codecall:ex... |
| CVE-2026-52466 | CRITICAL | 9.8 | — | Aug 6, 2026 | Open Library Foundation VuFind v11.0.3 and v4.1 is vulnerable to toInorrect Access Control. The application fails to sto... |
| CVE-2026-19028 | MEDIUM | 6.8 | 0.1% | Aug 6, 2026 | H5Z__filter_fletcher32 in H5Zfletcher32.c in HDF5 through 2.3.0 computes the data length to checksum by subtracting the ... |
| CVE-2026-19027 | MEDIUM | 6.9 | 0.1% | Aug 6, 2026 | The H5Z__nbit_decompress_one_byte, H5Z__nbit_decompress_one_nooptype, and H5Z__nbit_decompress_one_atomic functions in H... |
| CVE-2026-18970 | HIGH | 7.3 | 0.3% | Aug 6, 2026 | A flaw has been found in Rongzhitong Visual Integrated Command and Dispatch Platform up to 20260617. The affected elemen... |
| CVE-2026-18969 | HIGH | 7.3 | 0.3% | Aug 6, 2026 | A vulnerability was detected in Rongzhitong Visual Integrated Command and Dispatch Platform up to 20260617. Impacted is ... |
| CVE-2026-18968 | MEDIUM | 4.3 | 0.3% | Aug 6, 2026 | A security vulnerability has been detected in ttttonyhe OBlog up to 3ca6a45a2fcc81f6086751d8af124658720e8f8f. This issue... |
| CVE-2023-54389 | — | — | — | Aug 6, 2026 | Rejected reason: Erroneously reserved under wrong year by automation defect; never assigned. |
| CVE-2023-54388 | — | — | — | Aug 6, 2026 | Rejected reason: Erroneously reserved under wrong year by automation defect; never assigned. |
| CVE-2023-54387 | — | — | — | Aug 6, 2026 | Rejected reason: Erroneously reserved under wrong year by automation defect; never assigned. |
