CVE Vulnerability Database
Search and browse 378,063 CVE records with CVSS scores, EPSS exploit predictions, and CISA KEV status.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2026-18685 | CRITICAL | 9.8 | 2.0% | Aug 4, 2026 | A security vulnerability has been detected in GL.iNet GL-MT3000 up to 4.4.5. Impacted is the function set_upgrade of the... |
| CVE-2026-11836 | LOW | 1.8 | 0.1% | Aug 4, 2026 | Insufficient verification of data authenticity in Caliptra Core ROM and Core Firmware (validate_debug_unlock_token()) in... |
| CVE-2026-11835 | MEDIUM | 5.6 | 0.1% | Aug 4, 2026 | Time-of-check time-of-use (TOCTOU) vulnerability combined with missing input validation in Caliptra Core ROM (UpdateRese... |
| CVE-2026-67978 | HIGH | 7.5 | 0.1% | Aug 3, 2026 | An issue in the SBN UDP interface of NASA cFS v7.0.1 allows attackers to cause a Denial of Service (DoS) via transmittin... |
| CVE-2026-67673 | MEDIUM | 4.6 | 0.1% | Aug 3, 2026 | A stack-based buffer overflow vulnerability exists in the cmd_edl function of OreSat Firmware v1.0. The vulnerability is... |
| CVE-2026-48399 | HIGH | 7.5 | 0.5% | Aug 3, 2026 | Adobe Campaign Classic (ACC) is affected by a Violation of Secure Design Principles vulnerability that could result in a... |
| CVE-2026-48333 | CRITICAL | 9.8 | 0.5% | Aug 3, 2026 | Adobe Campaign Classic (ACC) is affected by an Incorrect Authorization vulnerability that could result in privilege esca... |
| CVE-2026-48331 | CRITICAL | 10 | 0.5% | Aug 3, 2026 | Adobe Campaign Classic (ACC) is affected by a Server-Side Request Forgery (SSRF) vulnerability that could result in priv... |
| CVE-2026-48330 | CRITICAL | 10 | 0.7% | Aug 3, 2026 | Adobe Campaign Classic (ACC) is affected by an Improper Neutralization of Special Elements used in an SQL Command ('SQL ... |
| CVE-2026-48326 | CRITICAL | 9.9 | 0.5% | Aug 3, 2026 | Adobe Campaign Classic (ACC) is affected by an Improper Neutralization of Special Elements used in an SQL Command ('SQL ... |
| CVE-2026-48323 | CRITICAL | 10 | 0.6% | Aug 3, 2026 | Adobe Campaign Classic (ACC) is affected by an Improper Neutralization of Special Elements Used in a Template Engine vul... |
| CVE-2026-48317 | CRITICAL | 9.6 | 0.5% | Aug 3, 2026 | Adobe Campaign Classic (ACC) is affected by an Improper Neutralization of Directives in Dynamically Evaluated Code ('Eva... |
| CVE-2026-18684 | CRITICAL | 9.8 | 2.0% | Aug 3, 2026 | A weakness has been identified in GL.iNet GL-MT3000 up to 4.4.5. This issue affects the function remove_profile of the f... |
| CVE-2026-18667 | CRITICAL | 9.6 | 0.4% | Aug 3, 2026 | A vulnerability in Tenable Sensor Proxy allows a remote attacker to execute code with elevated privileges by inducing an... |
| CVE-2026-69249 | HIGH | 8.7 | 0.2% | Aug 3, 2026 | python-cryptography is a package designed to expose cryptographic primitives and recipes to Python developers. Prior to ... |
| CVE-2026-69248 | MEDIUM | 6.9 | — | Aug 3, 2026 | cryptography is a package designed to expose cryptographic primitives and recipes to Python developers. Prior to 49.0.0,... |
| CVE-2026-69247 | HIGH | 8.2 | 0.2% | Aug 3, 2026 | cryptography is a package designed to expose cryptographic primitives and recipes to Python developers. From 44.0.0 unti... |
| CVE-2026-67977 | HIGH | 7.5 | 0.1% | Aug 3, 2026 | An integer overflow in the Svc::FileDownlink::SendPartial component of fprime framework v4.2.2 allows attackers to cause... |
| CVE-2026-67975 | HIGH | 7.5 | 0.1% | Aug 3, 2026 | Incorrect access control in NASA cFS v7.0.1 allows attackers to arbitrarily remove low-index subscriptions and add new s... |
| CVE-2026-67974 | HIGH | 7.5 | 0.2% | Aug 3, 2026 | A parser boundary flaw in the Software Bus Network (SBN) application's peer subscription message handling in NASA cFS v7... |
| CVE-2026-67973 | HIGH | 7.5 | 0.1% | Aug 3, 2026 | An issue in the CFDP receive path of NASA cFS v7.0.1 allows attackers to cause a Denial of Service (DoS) via replaying f... |
| CVE-2026-67970 | HIGH | 7.5 | 0.1% | Aug 3, 2026 | Incorrect access control in the DS_SetDestPathCmd() component of NASA cFS v7.0.1 allows attackers to access sensitive co... |
| CVE-2026-67969 | HIGH | 7.5 | 0.1% | Aug 3, 2026 | An issue in the HS_MonitorApplications() component of NASA cFS v7.0.1 allows attackers to force the processor to reset v... |
| CVE-2026-67617 | MEDIUM | 4.8 | 0.2% | Aug 3, 2026 | Microweber CMS through 2.0.20 contains a stored cross-site scripting vulnerability in the content tagging system that al... |
| CVE-2026-67616 | MEDIUM | 5.3 | 0.3% | Aug 3, 2026 | Camaleon CMS through 2.9.2, fixed in commit 88ab703, contains a missing authorization vulnerability on the drafts endpoi... |
