CVE Vulnerability Database
Search and browse 378,409 CVE records with CVSS scores, EPSS exploit predictions, and CISA KEV status.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2026-18108 | CRITICAL | 9.8 | 0.2% | Aug 3, 2026 | Net::SAML2 versions before 0.86 for Perl allow authentication bypass because _verify_encrypted_assertion accepts an Encr... |
| CVE-2026-18092 | HIGH | 8.1 | 0.2% | Aug 3, 2026 | Net::SAML2 versions before 0.86 for Perl allow SAML authentication bypass via XML signature wrapping because new_from_xm... |
| CVE-2026-18089 | HIGH | 7.5 | 0.2% | Aug 3, 2026 | Net::SAML2 versions before 0.86 for Perl allow SAML authentication bypass by verifying responses against the response-em... |
| CVE-2026-56609 | MEDIUM | 6.5 | 0.1% | Aug 3, 2026 | HCL iControl is affected by Weak SSL/TLS Version Supported vulnerability. It was observed that the application was using... |
| CVE-2026-56608 | MEDIUM | 5.3 | 0.2% | Aug 3, 2026 | HCL iControl is affected by Missing Access Control vulnerability. The application failed to enforce proper granular acce... |
| CVE-2026-2346 | CRITICAL | 9.8 | — | Aug 3, 2026 | Authorization bypass through User-Controlled key vulnerability in Menulux Software Inc. Mobile App allows Software Integ... |
| CVE-2026-18599 | HIGH | 8 | 1.4% | Aug 3, 2026 | A flaw has been found in GL.iNet GL-MT3000 up to 4.4.5. The impacted element is the function logread.set_config of the f... |
| CVE-2026-18598 | HIGH | 8.8 | 1.7% | Aug 3, 2026 | A vulnerability was detected in GL.iNet GL-MT3000 up to 4.4.5. The affected element is the function logread.get_system_l... |
| CVE-2026-18574 | CRITICAL | 9.3 | 1.0% | Aug 3, 2026 | An authentication bypass vulnerability in Check Point Security Management Server and Multi-Domain Security Management Se... |
| CVE-2026-69082 | HIGH | 8.8 | — | Aug 3, 2026 | CTI-Transmute contained a cross-site request forgery vulnerability in the administrative user deletion functionality. Th... |
| CVE-2026-69079 | HIGH | 8.7 | — | Aug 3, 2026 | CTI-Transmute contains an uncontrolled resource-consumption vulnerability in the unauthenticated /activity_timeline endp... |
| CVE-2026-69078 | HIGH | 8.8 | — | Aug 3, 2026 | CTI-Transmute is affected by a server-side request forgery vulnerability in the evaluation report PDF-generation functio... |
| CVE-2026-68742 | MEDIUM | 5.5 | 0.1% | Aug 3, 2026 | A flaw was found in SSSD. The sss_nss_protocol_parse_addr() function in the NSS responder does not validate the addrlen ... |
| CVE-2026-33591 | CRITICAL | 10 | — | Aug 3, 2026 | A vulnerability in Wapt Server before version 2.6.1.17813 allows a remote unauthenticated attacker to bypass security r... |
| CVE-2026-0392 | HIGH | 7.3 | 0.1% | Aug 3, 2026 | eParakstītājs 3.0 for Windows before version 1.10.0 retrieves and executes its automatic updates over a channel that is ... |
| CVE-2026-69075 | MEDIUM | 6.9 | — | Aug 3, 2026 | FlowIntel is affected by a stored cross-site scripting vulnerability through multiple user-controlled or administrator-c... |
| CVE-2026-63563 | MEDIUM | 6.9 | 0.4% | Aug 3, 2026 | Sharp and Toshiba Tec MFPs (multifunction printers) for a certain market have been shipped with the user authentication ... |
| CVE-2026-63545 | LOW | 2.4 | 0.2% | Aug 3, 2026 | Sharp and Toshiba Tec MFPs (multifunction printers) caches data internally when printing, and leave them uncleared. They... |
| CVE-2026-62416 | MEDIUM | 6.9 | 0.4% | Aug 3, 2026 | Network Scanner Tool and Network Scanner Tool Lite provided by Sharp Corporation, with the initial configuration, requir... |
| CVE-2026-60011 | MEDIUM | 6.9 | 0.2% | Aug 3, 2026 | Sharp and Toshiba Tec MFPs (multifunction printers) fail to properly authorize requests to directly access certain image... |
| CVE-2026-8794 | MEDIUM | 6.9 | 0.7% | Aug 3, 2026 | PaperCut NG/MF contains an observable timing discrepancy in its authentication component. An unauthenticated remote atta... |
| CVE-2026-8793 | MEDIUM | 6.9 | 0.7% | Aug 3, 2026 | PaperCut NG/MF does not properly restrict excessive authentication attempts within its login component. An unauthenticat... |
| CVE-2026-28147 | MEDIUM | 5.4 | 0.2% | Aug 3, 2026 | Missing Authorization vulnerability in Unlimited Elements Unlimited Elements For Elementor (Free Widgets, Addons, Templa... |
| CVE-2026-21555 | HIGH | 7.5 | — | Aug 3, 2026 | In modem, there is a possible improper input validation. This could lead to remote denial of service with no additional ... |
| CVE-2026-21554 | HIGH | 7.5 | — | Aug 3, 2026 | In modem, there is a possible improper input validation. This could lead to remote denial of service with no additional ... |
