CVE Vulnerability Database
Search and browse 375,825 CVE records with CVSS scores, EPSS exploit predictions, and CISA KEV status.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2026-71468 | MEDIUM | 5.3 | 0.2% | Aug 11, 2026 | A flaw was found in acm-search-v2-api-rhel9. When the `getFederationConfig` function refreshes its cache, it improperly ... |
| CVE-2026-71467 | HIGH | 7.5 | — | Aug 11, 2026 | A flaw was found in search-v2-api. The authentication middleware in the affected component unconditionally skips authent... |
| CVE-2026-70339 | MEDIUM | 5.4 | — | Aug 11, 2026 | Access of resource using incompatible type ('type confusion') in Microsoft Edge (Chromium-based) allows an unauthorized ... |
| CVE-2026-66146 | MEDIUM | 6.1 | — | Aug 11, 2026 | Multiple Cross-Site Scripting (XSS) vulnerabilities were identified in GMS 9.5.1 (Build 9510.1044) and earlier versions ... |
| CVE-2026-66145 | CRITICAL | 9.1 | 0.4% | Aug 11, 2026 | An unauthenticated remote code execution vulnerability was identified in GMS 9.5.1 (Build 9510.1044) and earlier version... |
| CVE-2026-65655 | LOW | 2.3 | — | Aug 11, 2026 | When OAuth authentication is enabled and browser-facing TLS terminates at a reverse proxy that forwards the callback to ... |
| CVE-2026-48813 | HIGH | 8.7 | — | Aug 11, 2026 | Flawfinder is a a static analysis tool for finding vulnerabilities in C/C++ source code. Versions prior to 2.0.20 have a... |
| CVE-2026-48804 | HIGH | 7.5 | — | Aug 11, 2026 | python-socketio is a Python implementation of the Socket.IO realtime client and server. The python-socketio server store... |
| CVE-2026-45618 | CRITICAL | 10 | — | Aug 11, 2026 | LiquidJS is a Shopify/GitHub Pages compatible template engine. Prior to version 10.26.0, it is possible to execute arbit... |
| CVE-2026-19091 | HIGH | 8.1 | 0.8% | Aug 11, 2026 | The GeoDirectory – WP Business Directory Plugin and Classified Listings Directory plugin for WordPress is vulnerable to ... |
| CVE-2026-18844 | HIGH | 8.1 | — | Aug 11, 2026 | The firmware of the Pulsetto Vagus Nerve Stimulator accepts several undisclosed commands over its Bluetooth Low Energy (... |
| CVE-2026-16230 | CRITICAL | 9.8 | 0.5% | Aug 11, 2026 | The Formidable Digital Signatures plugin for WordPress is vulnerable to file deletion due to insufficient file path vali... |
| CVE-2026-13457 | HIGH | 7.5 | 0.6% | Aug 11, 2026 | The InstaWP Connect – 1-click WP Staging & Migration plugin for WordPress is vulnerable to Remote Code Execution in all ... |
| CVE-2024-14042 | MEDIUM | 6.3 | 0.5% | Aug 11, 2026 | A vulnerability was found in Open5GS up to 2.7.1. This affects the function hss_ogs_diam_s6a_air_cb/hss_ogs_diam_s6a_ulr... |
| CVE-2026-73228 | MEDIUM | 5.3 | — | Aug 11, 2026 | Django REST framework is a toolkit for building Web APIs. Prior to 3.17.2, Django REST Framework's request.data parsing ... |
| CVE-2026-73227 | HIGH | 8.1 | — | Aug 11, 2026 | electerm is an open-sourced terminal/ssh/sftp/telnet/serialport/RDP/VNC/Spice/ftp client. Prior to 3.15.120, electerm al... |
| CVE-2026-73226 | HIGH | 8.8 | — | Aug 11, 2026 | electerm is an open-sourced terminal/ssh/sftp/telnet/serialport/RDP/VNC/Spice/ftp client. Prior to 3.15.186, electerm al... |
| CVE-2026-73225 | HIGH | 8.1 | — | Aug 11, 2026 | electerm is an open-sourced terminal/ssh/sftp/telnet/serialport/RDP/VNC/Spice/ftp client. Prior to 3.15.120, electerm al... |
| CVE-2026-73224 | HIGH | 8.8 | — | Aug 11, 2026 | electerm is an open-sourced terminal/ssh/sftp/telnet/serialport/RDP/VNC/Spice/ftp client. Prior to 3.15.120, electerm al... |
| CVE-2026-73223 | HIGH | 8.1 | — | Aug 11, 2026 | electerm is an open-sourced terminal/ssh/sftp/telnet/serialport/RDP/VNC/Spice/ftp client. Prior to 3.15.120, electerm al... |
| CVE-2026-73222 | HIGH | 8.8 | — | Aug 11, 2026 | Claude Code Templates is a CLI tool for configuring and monitoring Claude Code. Prior to 1.29.4, the Claude Code Studio ... |
| CVE-2026-73221 | MEDIUM | 5.3 | — | Aug 11, 2026 | CVAT is an open source interactive video and image annotation tool for computer vision. From 2.17.0 until 2.72.0, a user... |
| CVE-2026-72742 | CRITICAL | 9.2 | 0.4% | Aug 11, 2026 | DSPy 3.3.0b1 contains a file exfiltration vulnerability in the Image and Audio output field adapters that allows attacke... |
| CVE-2026-69119 | HIGH | 8.3 | — | Aug 11, 2026 | Taubyte Tau v1.1.10 contains a missing authorization vulnerability in the services/auth HTTP service that allows any aut... |
| CVE-2026-69117 | MEDIUM | 6.5 | — | Aug 11, 2026 | NetBox 4.5.8 contains an ORM injection vulnerability that allows authenticated attackers, including those with read-only... |
