CVE Vulnerability Database

Search and browse 380,172 CVE records with CVSS scores, EPSS exploit predictions, and CISA KEV status.

CVE IDSeverityCVSSDescription
CVE-2026-10128MEDIUM6.5IBM Langflow OSS 1.0.0 through 1.10.3 allows authenticated users can exploit a built-in Langflow component to read arbit...
CVE-2026-9077HIGH8.5IBM Langflow OSS 1.0.0 through 1.10.3 Langflow allows remote authenticated attackers to bypass localhost-only restrictio...
CVE-2026-8446HIGH7.5IBM Langflow OSS 1.0.0 through 1.10.3 contain an authentication bypass vulnerability in the Model Context Protocol (MCP)...
CVE-2026-7646MEDIUM6.5IBM Langflow OSS 1.0.0 through 1.10.3 allows users to read arbitrary files from the server filesystem, including other u...
CVE-2026-70607MEDIUM5.3Electron is a framework for writing cross-platform desktop applications using JavaScript, HTML and CSS. Prior to 39.8.8,...
CVE-2026-20313HIGH7.7As part of Cisco's ongoing commitment to proactive security and product quality, the Cisco Catalyst SD-WAN engineering t...
CVE-2026-20312HIGH8.8As part of Cisco's ongoing commitment to proactive security and product quality, the Cisco Catalyst SD-WAN engineering t...
CVE-2026-20311MEDIUM6.3A vulnerability in the web-based management interface of Cisco IOS XE Software could allow an authenticated, remote atta...
CVE-2026-20310CRITICAL9.1As part of Cisco's ongoing commitment to proactive security and product quality, the Cisco Catalyst SD-WAN engineering t...
CVE-2026-20308MEDIUM4.3A vulnerability in the web-based management interface of Cisco IOS XE Software could allow an authenticated, remote atta...
CVE-2026-20304CRITICAL9.9As part of Cisco's ongoing commitment to proactive security and product quality, the Cisco Catalyst SD-WAN engineering t...
CVE-2026-20303CRITICAL9.9As part of Cisco's ongoing commitment to proactive security and product quality, the Cisco Catalyst SD-WAN engineering t...
CVE-2026-20301HIGH8.6A vulnerability in the Extensible Messaging Client Protocol (XMCP), also referred to as the External Client protocol, of...
CVE-2026-20294MEDIUM6.5A vulnerability in the web-based management interface of Cisco Catalyst SD-WAN Manager could allow an authenticated, rem...
CVE-2026-20289MEDIUM6.5A vulnerability in the logging subsystem of Cisco RoomOS could allow an authenticated, local attacker with low privilege...
CVE-2026-20288MEDIUM6.5A vulnerability in the web-based management interface of Cisco IMC could allow an authenticated, remote attacker with&nb...
CVE-2026-20273HIGH8.6As part of Cisco's ongoing commitment to proactive security and product quality, the Cisco IOS XE Software engineering t...
CVE-2026-20272CRITICAL9.8As part of Cisco's ongoing commitment to proactive security and product quality, the Cisco IOS XE Software engineering t...
CVE-2026-20271HIGH8.6As part of Cisco's ongoing commitment to proactive security and product quality, the Cisco IOS XE Software engineering t...
CVE-2026-20270HIGH8.6As part of Cisco's ongoing commitment to proactive security and product quality, the Cisco IOS XE Software engineering t...
CVE-2026-20269HIGH8.6As part of Cisco's ongoing commitment to proactive security and product quality, the Cisco IOS XE Software engineering t...
CVE-2026-20268HIGH8.6As part of Cisco's ongoing commitment to proactive security and product quality, the Cisco IOS XE Software engineering t...
CVE-2026-20267CRITICAL9As part of Cisco's ongoing commitment to proactive security and product quality, the Cisco IOS XE Software engineering t...
CVE-2026-20263HIGH8.6A vulnerability in the Blocks Extensible Exchange Protocol (BEEP) feature of Cisco IOS XE Software could allow an unauth...
CVE-2026-20200HIGH8.8A vulnerability in the web-based management interface of Cisco IMC could allow an authenticated, remote attacker with lo...