CVE Vulnerability Database

Search and browse 398,082 CVE records with CVSS scores, EPSS exploit predictions, and CISA KEV status.

CVE IDSeverityCVSSDescription
CVE-2026-45182LOW2.2GrapheneOS before 2026050400 allows attackers to discover the real IP address of a VPN user as a consequence of a regist...
CVE-2026-45181MEDIUM6.5Hex-Rays IDA Pro 9.2 and 9.3 before 9.3sp2 does not block Clang dependency-file generation (via argument injection), whi...
CVE-2026-8210MEDIUM5.3A security vulnerability has been detected in aandrew-me tgpt up to 2.11.1 on Linux/macOS. Affected by this vulnerabilit...
CVE-2026-8196LOW3.7A flaw has been found in JeecgBoot 3.9.1. The impacted element is an unknown function of the file jeecg-module-system/je...
CVE-2026-8195MEDIUM4.3A vulnerability was detected in JeecgBoot up to 3.9.1. The affected element is an unknown function of the file jeecg-mod...
CVE-2026-8194MEDIUM4.3A security vulnerability has been detected in osTicket up to 1.18.3. Impacted is an unknown function of the file include...
CVE-2026-42606HIGH8.8AzuraCast is a self-hosted, all-in-one web radio management suite. Prior to version 0.23.6, the ApplyXForwarded middlewa...
CVE-2026-42605HIGH8.8AzuraCast is a self-hosted, all-in-one web radio management suite. Prior to version 0.23.6, the currentDirectory request...
CVE-2026-42601CRITICAL9.8ArchiveBox is an open source self-hosted web archiving system. In versions 0.8.6rc0 and prior, the /add/ endpoint (AddVi...
CVE-2026-42576MEDIUM6.5apko allows users to build and publish OCI container images built from apk packages. Prior to version 1.2.7, DiscoverKey...
CVE-2026-42575HIGH7.5apko allows users to build and publish OCI container images built from apk packages. Prior to version 1.2.7, apko verifi...
CVE-2026-42574HIGH7.5apko allows users to build and publish OCI container images built from apk packages. From version 0.14.8 to before versi...
CVE-2026-42571CRITICAL9Pelican is a platform for creating data federations. From versions 7.21.0 to before 7.21.5, 7.22.0 to before 7.22.3, 7.2...
CVE-2026-42569CRITICAL9.4phpVMS is a PHP application to run and simulate an airline. Prior to version 7.0.6, a critical vulnerability in phpVMS a...
CVE-2026-42562HIGH8.3Plainpad is a self hosted note taking app. Prior to version 1.1.1, Plainpad allows a low-privilege authenticated user to...
CVE-2026-42333MEDIUM6.3Quarkus OpenAPI Generator is Quarkus' extensions for generation of Rest Clients and server stubs generation. Prior to ve...
CVE-2026-42258MEDIUM5.3Net::IMAP implements Internet Message Access Protocol (IMAP) client functionality in Ruby. Prior to versions 0.4.24, 0.5...
CVE-2026-42257CRITICAL9.8Net::IMAP implements Internet Message Access Protocol (IMAP) client functionality in Ruby. Prior to versions 0.4.24, 0.5...
CVE-2026-42256MEDIUM6.5Net::IMAP implements Internet Message Access Protocol (IMAP) client functionality in Ruby. From versions 0.4.0 to before...
CVE-2026-42246HIGH7.4Net::IMAP implements Internet Message Access Protocol (IMAP) client functionality in Ruby. Prior to versions 0.3.10, 0.4...
CVE-2026-42245HIGH7.5Net::IMAP implements Internet Message Access Protocol (IMAP) client functionality in Ruby. Prior to versions 0.4.24, 0.5...
CVE-2026-41893HIGH7.5Signal K Server is a server application that runs on a central hub in a boat. Prior to version 2.25.0, the HTTP login en...
CVE-2026-8193MEDIUM6.3A weakness has been identified in Akaunting 3.1.21. This issue affects some unknown processing of the file config/dompdf...
CVE-2026-8192HIGH8.8A security flaw has been discovered in Wavlink NU516U1 M16U1_V240425. This vulnerability affects the function wzdap of t...
CVE-2026-8191HIGH8.8A vulnerability was identified in Wavlink NU516U1 M16U1_V240425. This affects the function wifi_region of the file /cgi-...