CVE Vulnerability Database
Search and browse 377,766 CVE records with CVSS scores, EPSS exploit predictions, and CISA KEV status.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2026-70485 | HIGH | 7.1 | 0.2% | Aug 4, 2026 | Open WebUI is an extensible, feature-rich, and user-friendly self-hosted AI platform. From 0.9.0 until 0.11.0, Open WebU... |
| CVE-2026-70484 | MEDIUM | 4.3 | 0.3% | Aug 4, 2026 | Open WebUI is an extensible, feature-rich, and user-friendly self-hosted AI platform. From 0.7.0 until 0.11.0, the legac... |
| CVE-2026-70483 | LOW | 3.1 | 0.2% | Aug 4, 2026 | Open WebUI is an extensible, feature-rich, and user-friendly self-hosted AI platform. From 0.9.6 until 0.11.0, DELETE /a... |
| CVE-2026-70482 | HIGH | 8.1 | 0.3% | Aug 4, 2026 | Open WebUI is an extensible, feature-rich, and user-friendly self-hosted AI platform. From 0.8.0 until 0.11.0, when ENAB... |
| CVE-2026-70481 | MEDIUM | 5.4 | 0.3% | Aug 4, 2026 | Open WebUI is an extensible, feature-rich, and user-friendly self-hosted AI platform. From 0.5.0 until 0.11.0, the stand... |
| CVE-2026-70480 | MEDIUM | 4.1 | 0.2% | Aug 4, 2026 | Open WebUI is an extensible, feature-rich, and user-friendly self-hosted AI platform. From 0.6.34 until 0.11.0, Open Web... |
| CVE-2026-70479 | HIGH | 7.7 | 0.3% | Aug 4, 2026 | Open WebUI is an extensible, feature-rich, and user-friendly self-hosted AI platform. From 0.9.6 until 0.11.0, with WEB_... |
| CVE-2026-70478 | CRITICAL | 9.2 | 0.4% | Aug 4, 2026 | Flowise is a drag & drop user interface to build a customized large language model flow. Prior to 3.1.3, the POST /api/v... |
| CVE-2026-70477 | CRITICAL | 9.5 | 0.4% | Aug 4, 2026 | Flowise is a drag & drop user interface to build a customized large language model flow. Prior to 3.1.3, a prompt inject... |
| CVE-2026-70476 | HIGH | 8.3 | 0.3% | Aug 4, 2026 | Flowise is a drag & drop user interface to build a customized large language model flow. Prior to 3.1.3, several organiz... |
| CVE-2026-70475 | HIGH | 7.1 | — | Aug 4, 2026 | Flowise is a drag & drop user interface to build a customized large language model flow. Prior to 3.1.3, the PUT /api/v1... |
| CVE-2026-48154 | MEDIUM | 5.9 | 0.2% | Aug 4, 2026 | GoRest is a Golang starter kit built with the Gin framework for prototyping and developing RESTful APIs. In versions pri... |
| CVE-2026-47682 | HIGH | 7.1 | 0.3% | Aug 4, 2026 | CVAT is an open source interactive video and image annotation tool for computer vision. In versions 1.6.0 through 2.64.0... |
| CVE-2026-18810 | HIGH | 7.3 | 0.4% | Aug 4, 2026 | A security vulnerability has been detected in H3C NX15 V100R017. Impacted is an unknown function of the file /api/wizard... |
| CVE-2026-18657 | HIGH | 8.5 | 0.2% | Aug 4, 2026 | An uncontrolled search path element in Kiro CLI before version 2.10.0 on Windows might allow a remote unauthenticated ac... |
| CVE-2026-18656 | HIGH | 8.5 | 0.2% | Aug 4, 2026 | An uncontrolled search path element in Kiro IDE before version 1.0.228 on Windows might allow a remote unauthenticated a... |
| CVE-2026-16793 | HIGH | 8.8 | 0.4% | Aug 4, 2026 | An improper neutralization of special elements used in an operating system command vulnerability was reported in Lenovo ... |
| CVE-2026-16792 | HIGH | 7 | 0.1% | Aug 4, 2026 | An improper certificate validation vulnerability was reported in multiple Lenovo XClarity Orchestrator (LXCO) 2.2.0 micr... |
| CVE-2026-16791 | LOW | 3.9 | 0.1% | Aug 4, 2026 | A temporary file creation vulnerability in the Linux version of Lenovo XClarity Essentials OneCLI 5.5.0 and below could ... |
| CVE-2026-70474 | HIGH | 7.6 | 0.3% | Aug 4, 2026 | Flowise is a drag-and-drop user interface for building customized large language model (LLM) flows. Prior to 3.1.3, Flow... |
| CVE-2026-70473 | HIGH | 8.3 | — | Aug 4, 2026 | Flowise is a drag-and-drop user interface for building customized large language model (LLM) flows. Prior to 3.1.3, Flow... |
| CVE-2026-70472 | HIGH | 7.1 | 0.2% | Aug 4, 2026 | Flowise is a drag & drop user interface to build a customized large language model flow. Prior to 3.1.3, Flowise openai-... |
| CVE-2026-70471 | HIGH | 7.1 | — | Aug 4, 2026 | Flowise is a drag-and-drop user interface for building customized large language model (LLM) flows. Prior to 3.1.3, Flow... |
| CVE-2026-69704 | HIGH | 7 | 0.3% | Aug 4, 2026 | Atals-Livre contains a SQL injection vulnerability that allows attackers to manipulate database queries by passing unsan... |
| CVE-2026-69703 | CRITICAL | 9.8 | — | Aug 4, 2026 | Atlas-Livre contains an improper access control vulnerability in the admin controllers under Espace_admin/controleur/ th... |
