CVE Vulnerability Database
Search and browse 377,707 CVE records with CVSS scores, EPSS exploit predictions, and CISA KEV status.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2026-70432 | HIGH | 8.8 | — | Aug 5, 2026 | A cross-site request forgery (CSRF) vulnerability in Jenkins Multijob Plugin 669.v9d96a_d9c71b_0 and earlier allows atta... |
| CVE-2026-70431 | HIGH | 8.8 | — | Aug 5, 2026 | Jenkins Multijob Plugin 669.v9d96a_d9c71b_0 and earlier provides Groovy scripting features that do not integrate with Sc... |
| CVE-2026-70430 | LOW | 2.7 | 0.2% | Aug 5, 2026 | Jenkins 2.575 and earlier, LTS 2.568.1 and earlier does not restrict the types of objects that can be instantiated as pa... |
| CVE-2026-70429 | HIGH | 8.1 | 0.2% | Aug 5, 2026 | Jenkins 2.575 and earlier, LTS 2.568.1 and earlier handles case-insensitivity in user names and group names inconsistent... |
| CVE-2026-70428 | MEDIUM | 4.3 | — | Aug 5, 2026 | Jenkins 2.575 and earlier, LTS 2.568.1 and earlier improperly identifies file paths attempting path traversal in file pa... |
| CVE-2026-70427 | MEDIUM | 4.3 | — | Aug 5, 2026 | Jenkins 2.575 and earlier, LTS 2.568.1 and earlier does not safely handle symbolic links with effectively empty names du... |
| CVE-2026-70426 | CRITICAL | 9 | — | Aug 5, 2026 | In Remoting 3384.v60d89463d9e0 and earlier, except 3355.3357.v931d3c992987, included in Jenkins 2.575 and earlier, LTS 2... |
| CVE-2026-44605 | MEDIUM | 5.5 | — | Aug 5, 2026 | A flaw was found in the RPM Package Manager (RPM). A local user could be affected by a heap buffer overflow vulnerabilit... |
| CVE-2026-17625 | HIGH | 8.8 | 0.8% | Aug 5, 2026 | IBM Langflow OSS 1.0.0 through 1.10.3, 1.0.0 through 1.10.3, 1.0.0 through 1.10.3, 1.0.0 through 1.10.3, 1.0.0 through 1... |
| CVE-2026-10716 | HIGH | 7.5 | — | Aug 5, 2026 | Directus contains an authenticated SQL injection vulnerability in the collection creation flow when the instance uses Po... |
| CVE-2026-10128 | MEDIUM | 6.5 | 0.2% | Aug 5, 2026 | IBM Langflow OSS 1.0.0 through 1.10.3 allows authenticated users can exploit a built-in Langflow component to read arbit... |
| CVE-2026-9077 | HIGH | 8.5 | 0.3% | Aug 5, 2026 | IBM Langflow OSS 1.0.0 through 1.10.3 Langflow allows remote authenticated attackers to bypass localhost-only restrictio... |
| CVE-2026-8446 | HIGH | 7.5 | 0.3% | Aug 5, 2026 | IBM Langflow OSS 1.0.0 through 1.10.3 contain an authentication bypass vulnerability in the Model Context Protocol (MCP)... |
| CVE-2026-7646 | MEDIUM | 6.5 | 0.3% | Aug 5, 2026 | IBM Langflow OSS 1.0.0 through 1.10.3 allows users to read arbitrary files from the server filesystem, including other u... |
| CVE-2026-70607 | MEDIUM | 5.3 | — | Aug 5, 2026 | Electron is a framework for writing cross-platform desktop applications using JavaScript, HTML and CSS. Prior to 39.8.8,... |
| CVE-2026-20313 | HIGH | 7.7 | 0.2% | Aug 5, 2026 | As part of Cisco's ongoing commitment to proactive security and product quality, the Cisco Catalyst SD-WAN engineering t... |
| CVE-2026-20312 | HIGH | 8.8 | 0.2% | Aug 5, 2026 | As part of Cisco's ongoing commitment to proactive security and product quality, the Cisco Catalyst SD-WAN engineering t... |
| CVE-2026-20311 | MEDIUM | 6.3 | 0.2% | Aug 5, 2026 | A vulnerability in the web-based management interface of Cisco IOS XE Software could allow an authenticated, remote atta... |
| CVE-2026-20310 | CRITICAL | 9.1 | 0.4% | Aug 5, 2026 | As part of Cisco's ongoing commitment to proactive security and product quality, the Cisco Catalyst SD-WAN engineering t... |
| CVE-2026-20308 | MEDIUM | 4.3 | 0.3% | Aug 5, 2026 | A vulnerability in the web-based management interface of Cisco IOS XE Software could allow an authenticated, remote atta... |
| CVE-2026-20304 | CRITICAL | 9.9 | 0.3% | Aug 5, 2026 | As part of Cisco's ongoing commitment to proactive security and product quality, the Cisco Catalyst SD-WAN engineering t... |
| CVE-2026-20303 | CRITICAL | 9.9 | 0.3% | Aug 5, 2026 | As part of Cisco's ongoing commitment to proactive security and product quality, the Cisco Catalyst SD-WAN engineering t... |
| CVE-2026-20301 | HIGH | 8.6 | 0.3% | Aug 5, 2026 | A vulnerability in the Extensible Messaging Client Protocol (XMCP), also referred to as the External Client protocol, of... |
| CVE-2026-20294 | MEDIUM | 6.5 | 0.1% | Aug 5, 2026 | A vulnerability in the web-based management interface of Cisco Catalyst SD-WAN Manager could allow an authenticated, rem... |
| CVE-2026-20289 | MEDIUM | 5.7 | 0.2% | Aug 5, 2026 | A vulnerability in the logging subsystem of Cisco RoomOS could allow an authenticated, local attacker with low privilege... |
