CVE Vulnerability Database

Search and browse 379,569 CVE records with CVSS scores, EPSS exploit predictions, and CISA KEV status.

CVE IDSeverityCVSSDescription
CVE-2026-18927MEDIUM6.3A vulnerability was determined in imranrisal-dev Student-Management-System 18ea7904c339e0c7b0234724a79c939ce6191def/a8d4...
CVE-2026-17630HIGH8.8IBM Langflow OSS 1.0.0 through 1.10.3 could allow a remote attacker to execute arbitrary code due to improper validation...
CVE-2026-17626HIGH8.8IBM Langflow OSS 1.0.0 through 1.10.3 Langflow could allow an authenticated attacker to read, modify, or expose sensitiv...
CVE-2026-17623HIGH8.8IBM Langflow OSS 1.0.0 through 1.10.3 could allow a remote authenticated attacker to execute arbitrary commands due to i...
CVE-2026-17617CRITICAL9.8IBM Application Gateway Operator 22.2 through 26.06 is vulnerable to Server-Side Request Forgery (SSRF) due to insuffici...
CVE-2026-14587MEDIUM5.5Neo4j's Bolt modern handshake decoder treats an overlong capability bit mask the same way it treats a truncated bit mask...
CVE-2026-9203HIGH8.5A server-side request forgery vulnerability in Progress MarkLogic Server before 11.3.6 and 12.0.3 allows an authenticate...
CVE-2026-9195CRITICAL9.3A cross-site scripting vulnerability in the Query Console of Progress MarkLogic Server before 11.3.6 and 12.0.3 allows a...
CVE-2026-9193CRITICAL9.9An improper privilege management vulnerability in the Hadoop integration of Progress MarkLogic Server before 11.3.6 and ...
CVE-2026-9192CRITICAL9.8An authentication bypass vulnerability in the ODBC App Server of Progress MarkLogic Server before 11.3.6 and 12.0.3 allo...
CVE-2026-9190CRITICAL9.1An HTTP request smuggling vulnerability in the HTTP App Server of Progress MarkLogic Server before 11.3.6 and 12.0.3 all...
CVE-2026-8709CRITICAL9.9An improper privilege management vulnerability in the REST API document patch operation of Progress MarkLogic Server bef...
CVE-2026-8400CRITICAL9.8IBM WebSphere Application Server 8.5, and 9.0 and IBM WebSphere Application Server - Liberty Continuous delivery has a f...
CVE-2026-7557CRITICAL9.1An improper verification of cryptographic signature vulnerability in the SAML authentication module of Progress MarkLogi...
CVE-2026-7329CRITICAL9.9An improper privilege management vulnerability in the SQL, SPARQL, and Optic REST query interfaces of Progress MarkLogic...
CVE-2026-7327HIGH8.1An improper privilege management vulnerability in the REST API document processing pipeline of Progress MarkLogic Server...
CVE-2026-7326HIGH7.5A cross-site request forgery vulnerability in the Admin UI of Progress MarkLogic Server before 11.3.6 and 12.0.3 allows ...
CVE-2026-70606MEDIUM5.9Electron is a framework for writing cross-platform desktop applications using JavaScript, HTML and CSS. Prior to 40.10.6...
CVE-2026-70605MEDIUM5.9Electron is a framework for writing cross-platform desktop applications using JavaScript, HTML and CSS. Prior to 39.8.8,...
CVE-2026-70604HIGH7.4Electron is a framework for writing cross-platform desktop applications using JavaScript, HTML and CSS. Prior to 39.8.10...
CVE-2026-70603MEDIUM6Electron is a framework for writing cross-platform desktop applications using JavaScript, HTML and CSS. Prior to 39.8.6,...
CVE-2026-70602MEDIUM6.6Electron is a framework for writing cross-platform desktop applications using JavaScript, HTML and CSS. Prior to 39.8.8,...
CVE-2026-70601HIGH7.5Electron is a framework for writing cross-platform desktop applications using JavaScript, HTML and CSS. Prior to 39.8.9,...
CVE-2026-70600LOW3.1Electron is a framework for writing cross-platform desktop applications using JavaScript, HTML and CSS. Prior to 39.8.8,...
CVE-2026-70599MEDIUM5.9Electron is a framework for writing cross-platform desktop applications using JavaScript, HTML and CSS. Prior to 39.8.7,...