CVE Vulnerability Database
Search and browse 380,705 CVE records with CVSS scores, EPSS exploit predictions, and CISA KEV status.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2026-71192 | MEDIUM | 6 | — | Aug 5, 2026 | In OpenStack Swift through 2.38.0, the S3API middleware does not sanitize Swift-native control headers (X-Copy-From, X-C... |
| CVE-2026-71191 | MEDIUM | 6 | 0.3% | Aug 5, 2026 | In OpenStack Swift through 2.38.0, S3API middleware does not enforce that semantic x-amz-* headers are covered by the Si... |
| CVE-2026-71190 | HIGH | 8.7 | 0.5% | Aug 5, 2026 | In OpenStack Swift through 2.38.0, the proxy server Accept header parser contains a regular expression vulnerable to cat... |
| CVE-2026-68074 | HIGH | 7.5 | 0.2% | Aug 5, 2026 | A pre-authentication attacker could leverage unbounded symbol value caching to cause resource exhaustion leading to deni... |
| CVE-2026-68060 | HIGH | 7.5 | 0.4% | Aug 5, 2026 | A pre-authentication attacker could leverage type size/count handling to cause excessive allocation leading to potential... |
| CVE-2026-67589 | HIGH | 7.5 | 0.4% | Aug 5, 2026 | A pre-authentication attacker could leverage type size/count handling to cause excessive allocation leading to potential... |
| CVE-2026-67588 | HIGH | 7.5 | 0.4% | Aug 5, 2026 | A pre-authentication attacker could leverage unbounded symbol value caching to cause resource exhaustion leading to deni... |
| CVE-2026-67551 | HIGH | 7.5 | 0.4% | Aug 5, 2026 | pre-authentication attacker could leverage type size/count handling to cause excessive allocation leading to potential d... |
| CVE-2026-67465 | HIGH | 7.5 | 0.2% | Aug 5, 2026 | A pre-authentication attacker could leverage unbounded symbol value caching to cause resource exhaustion leading to deni... |
| CVE-2026-66839 | HIGH | 8.4 | 0.1% | Aug 5, 2026 | NetKids iMark, provided by Integrated Systems Technologies, Inc., contains an Unquoted Search Path or Element vulnerabil... |
| CVE-2026-66344 | MEDIUM | 6.7 | — | Aug 5, 2026 | NetKids iMark, provided by Integrated Systems Technologies, Inc., contains an Uncontrolled Search Path Element vulnerabi... |
| CVE-2026-66273 | HIGH | 7.5 | 0.2% | Aug 5, 2026 | A pre-authentication attacker could leverage type size/count handling to cause excessive allocation leading to potential... |
| CVE-2026-66257 | HIGH | 7.5 | 0.2% | Aug 5, 2026 | A pre-authentication attacker could leverage unbounded symbol value caching to cause resource exhaustion leading to deni... |
| CVE-2026-5062 | MEDIUM | 4.9 | 0.3% | Aug 5, 2026 | The PrettyLinks – Affiliate Links, Link Branding, Link Tracking, Marketing and Stripe Payments Plugin plugin for WordPre... |
| CVE-2026-55707 | HIGH | 7.1 | 0.5% | Aug 5, 2026 | In OpenStack Neutron before 28.0.2, the subnetpool onboarding API does not verify ownership of the target subnets. An au... |
| CVE-2026-18903 | MEDIUM | 4.3 | 0.4% | Aug 5, 2026 | A vulnerability was determined in yeqifu warehouse up to aaf29962ba407d22d991781de28796ee7b4670e4. This issue affects so... |
| CVE-2026-18902 | HIGH | 7.3 | 2.4% | Aug 5, 2026 | A vulnerability was detected in H3C NX15 V100R017. Affected by this vulnerability is the function esps.wan.repeater.set/... |
| CVE-2026-18322 | HIGH | 8.8 | 0.3% | Aug 5, 2026 | The Smart Popup by Supsystic plugin for WordPress is vulnerable to Privilege Escalation in all versions up to, and inclu... |
| CVE-2026-16143 | HIGH | 7.2 | 0.2% | Aug 5, 2026 | The VikRentItems – Flexible Rental Management System plugin for WordPress is vulnerable to Stored Cross-Site Scripting v... |
| CVE-2026-15941 | MEDIUM | 6.5 | 0.2% | Aug 5, 2026 | The plugin provides an Admin Search page that allows users with the `edit_posts` capability to run Relevanssi searches f... |
| CVE-2026-15918 | HIGH | 7.5 | 0.4% | Aug 5, 2026 | VikAppointments Service Booking Calendar wordpress plugin is vulnerable to unauthenticated SQL injection due to one of t... |
| CVE-2026-11421 | MEDIUM | 6.5 | 0.3% | Aug 5, 2026 | The ERP: Complete HR, Accounting & CRM Suite with WooCommerce CRM Support plugin for WordPress is vulnerable to SQL Inje... |
| CVE-2026-18901 | HIGH | 7.3 | 0.5% | Aug 5, 2026 | A security vulnerability has been detected in H3C NX15 V100R017. Affected is the function service.add of the file /api/e... |
| CVE-2026-18900 | HIGH | 7.3 | 2.4% | Aug 5, 2026 | A weakness has been identified in H3C NX15 V100R017. This impacts the function file.exec of the file /api/esps of the co... |
| CVE-2026-18898 | HIGH | 8.8 | 0.5% | Aug 5, 2026 | A security flaw has been discovered in UTT HiPER 1200GW up to v2.5.3-170306. This affects the function strcpy of the fil... |
