CVE Vulnerability Database
Search and browse 379,569 CVE records with CVSS scores, EPSS exploit predictions, and CISA KEV status.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2026-18927 | MEDIUM | 6.3 | 0.2% | Aug 5, 2026 | A vulnerability was determined in imranrisal-dev Student-Management-System 18ea7904c339e0c7b0234724a79c939ce6191def/a8d4... |
| CVE-2026-17630 | HIGH | 8.8 | 0.4% | Aug 5, 2026 | IBM Langflow OSS 1.0.0 through 1.10.3 could allow a remote attacker to execute arbitrary code due to improper validation... |
| CVE-2026-17626 | HIGH | 8.8 | 0.3% | Aug 5, 2026 | IBM Langflow OSS 1.0.0 through 1.10.3 Langflow could allow an authenticated attacker to read, modify, or expose sensitiv... |
| CVE-2026-17623 | HIGH | 8.8 | 0.9% | Aug 5, 2026 | IBM Langflow OSS 1.0.0 through 1.10.3 could allow a remote authenticated attacker to execute arbitrary commands due to i... |
| CVE-2026-17617 | CRITICAL | 9.8 | 0.3% | Aug 5, 2026 | IBM Application Gateway Operator 22.2 through 26.06 is vulnerable to Server-Side Request Forgery (SSRF) due to insuffici... |
| CVE-2026-14587 | MEDIUM | 5.5 | 0.4% | Aug 5, 2026 | Neo4j's Bolt modern handshake decoder treats an overlong capability bit mask the same way it treats a truncated bit mask... |
| CVE-2026-9203 | HIGH | 8.5 | 0.2% | Aug 5, 2026 | A server-side request forgery vulnerability in Progress MarkLogic Server before 11.3.6 and 12.0.3 allows an authenticate... |
| CVE-2026-9195 | CRITICAL | 9.3 | — | Aug 5, 2026 | A cross-site scripting vulnerability in the Query Console of Progress MarkLogic Server before 11.3.6 and 12.0.3 allows a... |
| CVE-2026-9193 | CRITICAL | 9.9 | 0.3% | Aug 5, 2026 | An improper privilege management vulnerability in the Hadoop integration of Progress MarkLogic Server before 11.3.6 and ... |
| CVE-2026-9192 | CRITICAL | 9.8 | 0.5% | Aug 5, 2026 | An authentication bypass vulnerability in the ODBC App Server of Progress MarkLogic Server before 11.3.6 and 12.0.3 allo... |
| CVE-2026-9190 | CRITICAL | 9.1 | 0.4% | Aug 5, 2026 | An HTTP request smuggling vulnerability in the HTTP App Server of Progress MarkLogic Server before 11.3.6 and 12.0.3 all... |
| CVE-2026-8709 | CRITICAL | 9.9 | 0.3% | Aug 5, 2026 | An improper privilege management vulnerability in the REST API document patch operation of Progress MarkLogic Server bef... |
| CVE-2026-8400 | CRITICAL | 9.8 | 0.4% | Aug 5, 2026 | IBM WebSphere Application Server 8.5, and 9.0 and IBM WebSphere Application Server - Liberty Continuous delivery has a f... |
| CVE-2026-7557 | CRITICAL | 9.1 | 0.3% | Aug 5, 2026 | An improper verification of cryptographic signature vulnerability in the SAML authentication module of Progress MarkLogi... |
| CVE-2026-7329 | CRITICAL | 9.9 | 0.3% | Aug 5, 2026 | An improper privilege management vulnerability in the SQL, SPARQL, and Optic REST query interfaces of Progress MarkLogic... |
| CVE-2026-7327 | HIGH | 8.1 | 0.2% | Aug 5, 2026 | An improper privilege management vulnerability in the REST API document processing pipeline of Progress MarkLogic Server... |
| CVE-2026-7326 | HIGH | 7.5 | 0.1% | Aug 5, 2026 | A cross-site request forgery vulnerability in the Admin UI of Progress MarkLogic Server before 11.3.6 and 12.0.3 allows ... |
| CVE-2026-70606 | MEDIUM | 5.9 | — | Aug 5, 2026 | Electron is a framework for writing cross-platform desktop applications using JavaScript, HTML and CSS. Prior to 40.10.6... |
| CVE-2026-70605 | MEDIUM | 5.9 | 0.2% | Aug 5, 2026 | Electron is a framework for writing cross-platform desktop applications using JavaScript, HTML and CSS. Prior to 39.8.8,... |
| CVE-2026-70604 | HIGH | 7.4 | — | Aug 5, 2026 | Electron is a framework for writing cross-platform desktop applications using JavaScript, HTML and CSS. Prior to 39.8.10... |
| CVE-2026-70603 | MEDIUM | 6 | — | Aug 5, 2026 | Electron is a framework for writing cross-platform desktop applications using JavaScript, HTML and CSS. Prior to 39.8.6,... |
| CVE-2026-70602 | MEDIUM | 6.6 | — | Aug 5, 2026 | Electron is a framework for writing cross-platform desktop applications using JavaScript, HTML and CSS. Prior to 39.8.8,... |
| CVE-2026-70601 | HIGH | 7.5 | — | Aug 5, 2026 | Electron is a framework for writing cross-platform desktop applications using JavaScript, HTML and CSS. Prior to 39.8.9,... |
| CVE-2026-70600 | LOW | 3.1 | 0.1% | Aug 5, 2026 | Electron is a framework for writing cross-platform desktop applications using JavaScript, HTML and CSS. Prior to 39.8.8,... |
| CVE-2026-70599 | MEDIUM | 5.9 | — | Aug 5, 2026 | Electron is a framework for writing cross-platform desktop applications using JavaScript, HTML and CSS. Prior to 39.8.7,... |
