CVE Vulnerability Database
Search and browse 377,708 CVE records with CVSS scores, EPSS exploit predictions, and CISA KEV status.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2026-8709 | CRITICAL | 9.9 | 0.3% | Aug 5, 2026 | An improper privilege management vulnerability in the REST API document patch operation of Progress MarkLogic Server bef... |
| CVE-2026-8400 | CRITICAL | 9.8 | 0.4% | Aug 5, 2026 | IBM WebSphere Application Server 8.5, and 9.0 and IBM WebSphere Application Server - Liberty Continuous delivery has a f... |
| CVE-2026-7557 | CRITICAL | 9.1 | 0.3% | Aug 5, 2026 | An improper verification of cryptographic signature vulnerability in the SAML authentication module of Progress MarkLogi... |
| CVE-2026-7329 | CRITICAL | 9.9 | 0.3% | Aug 5, 2026 | An improper privilege management vulnerability in the SQL, SPARQL, and Optic REST query interfaces of Progress MarkLogic... |
| CVE-2026-7327 | HIGH | 8.1 | 0.2% | Aug 5, 2026 | An improper privilege management vulnerability in the REST API document processing pipeline of Progress MarkLogic Server... |
| CVE-2026-7326 | HIGH | 7.5 | 0.1% | Aug 5, 2026 | A cross-site request forgery vulnerability in the Admin UI of Progress MarkLogic Server before 11.3.6 and 12.0.3 allows ... |
| CVE-2026-70606 | MEDIUM | 5.9 | — | Aug 5, 2026 | Electron is a framework for writing cross-platform desktop applications using JavaScript, HTML and CSS. Prior to 40.10.6... |
| CVE-2026-70605 | MEDIUM | 5.9 | 0.2% | Aug 5, 2026 | Electron is a framework for writing cross-platform desktop applications using JavaScript, HTML and CSS. Prior to 39.8.8,... |
| CVE-2026-70604 | HIGH | 7.4 | — | Aug 5, 2026 | Electron is a framework for writing cross-platform desktop applications using JavaScript, HTML and CSS. Prior to 39.8.10... |
| CVE-2026-70603 | MEDIUM | 6 | — | Aug 5, 2026 | Electron is a framework for writing cross-platform desktop applications using JavaScript, HTML and CSS. Prior to 39.8.6,... |
| CVE-2026-70602 | MEDIUM | 6.6 | — | Aug 5, 2026 | Electron is a framework for writing cross-platform desktop applications using JavaScript, HTML and CSS. Prior to 39.8.8,... |
| CVE-2026-70601 | HIGH | 7.5 | — | Aug 5, 2026 | Electron is a framework for writing cross-platform desktop applications using JavaScript, HTML and CSS. Prior to 39.8.9,... |
| CVE-2026-70600 | LOW | 3.1 | 0.1% | Aug 5, 2026 | Electron is a framework for writing cross-platform desktop applications using JavaScript, HTML and CSS. Prior to 39.8.8,... |
| CVE-2026-70599 | MEDIUM | 5.9 | — | Aug 5, 2026 | Electron is a framework for writing cross-platform desktop applications using JavaScript, HTML and CSS. Prior to 39.8.7,... |
| CVE-2026-70598 | LOW | 3.9 | — | Aug 5, 2026 | Electron is a framework for writing cross-platform desktop applications using JavaScript, HTML and CSS. Prior to 39.8.10... |
| CVE-2026-70597 | MEDIUM | 6.3 | — | Aug 5, 2026 | Electron is a framework for writing cross-platform desktop applications using JavaScript, HTML and CSS. Prior to 39.8.8,... |
| CVE-2026-70596 | MEDIUM | 4.3 | — | Aug 5, 2026 | Ghost is a Node.js content management system. From 4.9.0 until 6.54.1, an input validation issue allowed any staff user ... |
| CVE-2026-70595 | MEDIUM | 4 | 0.2% | Aug 5, 2026 | Ghost is a Node.js content management system. From 6.26.0 until 6.54.1, a validation issue allowed some functionality, s... |
| CVE-2026-60053 | CRITICAL | 9.1 | 0.2% | Aug 5, 2026 | Insufficient Session Expiration vulnerability in Apache Answer. This issue affects Apache Answer: through 2.0.1. Admin... |
| CVE-2026-60023 | HIGH | 7.5 | 0.2% | Aug 5, 2026 | Exposure of Sensitive Information to an Unauthorized Actor vulnerability in Apache Answer. This issue affects Apache An... |
| CVE-2026-53992 | MEDIUM | 6.1 | — | Aug 5, 2026 | ProjectSend r2029 contains a reflected cross-site scripting vulnerability in thumbnails-regenerate.php that allows remot... |
| CVE-2026-50749 | MEDIUM | 6.5 | 0.2% | Aug 5, 2026 | Improper Authorization vulnerability in Apache Answer. This issue affects Apache Answer: through 2.0.1. Any authentica... |
| CVE-2026-49331 | MEDIUM | 6.5 | 0.1% | Aug 5, 2026 | A flaw was found in openshift/oauth-proxy. On paths configured to bypass authentication (skip-auth-regex), the proxy for... |
| CVE-2026-48912 | MEDIUM | 6.5 | 0.2% | Aug 5, 2026 | Improper Input Validation vulnerability in Apache Answer. This issue affects Apache Answer: through 2.0.1. A missing ... |
| CVE-2026-48911 | HIGH | 7.5 | 0.2% | Aug 5, 2026 | Insufficient Verification of Data Authenticity vulnerability in Apache Answer. This issue affects Apache Answer: throug... |
