CVE Vulnerability Database
Search and browse 380,781 CVE records with CVSS scores, EPSS exploit predictions, and CISA KEV status.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2026-15830 | MEDIUM | 5.3 | 0.5% | Aug 4, 2026 | An issue was discovered in Django 5.2 before 5.2.17 and 6.0 before 6.0.8. GeoDjango's `django.contrib.gis.geos.GEOSGeome... |
| CVE-2026-15337 | MEDIUM | 5.3 | 0.5% | Aug 4, 2026 | An issue was discovered in Django 5.2 before 5.2.17 and 6.0 before 6.0.8. `django.utils.translation.check_for_language()... |
| CVE-2026-15314 | HIGH | 7.5 | 0.2% | Aug 4, 2026 | Tapo P110 v1 smart Wi-Fi Plug contains an improper boundary validation vulnerability in the handling of authenticated HT... |
| CVE-2026-15307 | HIGH | 8.8 | 0.5% | Aug 4, 2026 | An issue was discovered in Django 5.2 before 5.2.17 and 6.0 before 6.0.8. GeoDjango spatial lookups optimistically parse... |
| CVE-2025-29296 | CRITICAL | 9.8 | — | Aug 4, 2026 | H3C Magic BE18000 V200R007, H3C NX400 V100R015, H3C Magic NX30 Pro V100R0011, H3C Magic R3010 V100R009, H3C Magic NX15 V... |
| CVE-2026-69254 | CRITICAL | 9.4 | — | Aug 4, 2026 | Flowise is a drag & drop user interface to build a customized large language model flow. Prior to 3.1.3, executeJavaScri... |
| CVE-2026-69253 | CRITICAL | 9 | 0.3% | Aug 4, 2026 | Flowise is a drag-and-drop user interface for building customized large language model (LLM) flows. Prior to version 3.1... |
| CVE-2026-69252 | HIGH | 7.2 | — | Aug 4, 2026 | Flowise is a drag & drop user interface to build a customized large language model flow. Prior to 3.1.3, the /api/v1/fil... |
| CVE-2026-69110 | CRITICAL | 9.3 | — | Aug 4, 2026 | OpenCode Studio before 2.4.4 contains a missing authentication vulnerability that allows unauthenticated remote attacker... |
| CVE-2026-69100 | HIGH | 8.8 | — | Aug 4, 2026 | LAMP Rapid Development Platform through 5.6.2, fixed in commit 84b0c27, contains a remote code execution vulnerability i... |
| CVE-2026-69098 | CRITICAL | 9.8 | 0.5% | Aug 4, 2026 | kotaemon through 0.12.0 contains an insecure deserialization vulnerability in the check_connection endpoint that allows ... |
| CVE-2026-25292 | HIGH | 7.6 | 0.2% | Aug 4, 2026 | Memory Corruption when processing untrusted user input in the fastboot command handler for audio framework configuration... |
| CVE-2026-25289 | CRITICAL | 9.6 | 0.2% | Aug 4, 2026 | Memory Corruption when processing Device Capability Extended attributes in certain NAN Service Discovery Frames with inv... |
| CVE-2026-25288 | HIGH | 7.4 | 0.2% | Aug 4, 2026 | Transient DOS when processing a short target wake time channel usage response frame with insufficient packet size. |
| CVE-2026-24084 | HIGH | 7.5 | 0.2% | Aug 4, 2026 | Weak configuration when UE does not verify the consistency of its additional security capabilities with the replayed cap... |
| CVE-2026-24083 | HIGH | 7.8 | 0.1% | Aug 4, 2026 | Memory Corruption while processing IOCTL device driver requests with invalid arguments. |
| CVE-2026-24080 | HIGH | 7.8 | 0.1% | Aug 4, 2026 | Memory Corruption when handling malformed request parameters in the fingerprint TA. |
| CVE-2026-24079 | HIGH | 8.1 | 0.2% | Aug 4, 2026 | Cryptographic Issue while processing registration requests with malformed or missing authentication parameters. |
| CVE-2026-24078 | MEDIUM | 6.5 | 0.2% | Aug 4, 2026 | Information Disclosure when IPSec negotiation fails or is not established properly during NG-eCall SIP signaling. |
| CVE-2026-24077 | MEDIUM | 6.5 | 0.2% | Aug 4, 2026 | Information Disclosure when processing wireless network channel switch information with improperly formatted length fiel... |
| CVE-2026-24076 | MEDIUM | 6.7 | 0.1% | Aug 4, 2026 | Memory Corruption when processing registry values with incorrect types using a direct query method. |
| CVE-2026-21366 | HIGH | 7.8 | 0.1% | Aug 4, 2026 | Memory corruption while processing a packet with a size close to the maximum allowed value. |
| CVE-2026-18801 | CRITICAL | 9.3 | — | Aug 4, 2026 | OpenMeter contains a stored, or second-order, SQL injection vulnerability in the handling of customer usage-attribution ... |
| CVE-2026-18773 | MEDIUM | 6.3 | 0.2% | Aug 4, 2026 | A vulnerability was detected in NousResearch hermes-agent up to 2026.6.5. Affected by this issue is the function _check_... |
| CVE-2026-10032 | MEDIUM | 6.1 | 0.2% | Aug 4, 2026 | The openUrl function in @a2ui/web_core passes an agent-controlled URL directly to window.open() without validating the U... |
