CVE Vulnerability Database
Search and browse 381,206 CVE records with CVSS scores, EPSS exploit predictions, and CISA KEV status.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2026-68503 | CRITICAL | 9.8 | 0.4% | Jul 30, 2026 | LazyOwn RedTeam/APT Framework is an AI-powered C2 and red-team operations framework. Prior to 0.2.154, LazyOwn ships def... |
| CVE-2026-68502 | CRITICAL | 9.8 | 0.5% | Jul 30, 2026 | LazyOwn RedTeam/APT Framework is an AI-powered C2 and red-team operations framework. Prior to 0.2.154, LazyOwn's lazyc2.... |
| CVE-2026-68501 | MEDIUM | 6.5 | 0.3% | Jul 30, 2026 | Sylius Mollie Plugin provides Mollie payment integration for Sylius applications. Prior to 2.2.8, 3.2.4, and 3.3.1, Syli... |
| CVE-2026-68500 | HIGH | 7.5 | 0.4% | Jul 30, 2026 | Sylius Mollie Plugin provides Mollie payment integration for Sylius applications. Prior to 2.2.8, 3.2.4, and 3.3.1, Syli... |
| CVE-2026-68499 | MEDIUM | 6.2 | 0.1% | Jul 30, 2026 | re2 provides Node.js bindings for Google's RE2 regular expression engine. Prior to 1.25.2, re2's String.prototype.match ... |
| CVE-2026-66803 | CRITICAL | 10 | 0.5% | Jul 30, 2026 | Improper access control in Azure Cosmos DB allows an unauthorized attacker to execute code over a network. |
| CVE-2026-66418 | CRITICAL | 9.3 | 0.3% | Jul 30, 2026 | OpenClaw Dashboard v3.0.0 contains a stored cross-site scripting vulnerability that allows unauthenticated remote attack... |
| CVE-2026-61526 | MEDIUM | 6.1 | 0.2% | Jul 30, 2026 | AdonisJS HTTP Server is a package for handling HTTP requests in the AdonisJS framework. In versions 8.0.0-next.0 through... |
| CVE-2026-55777 | MEDIUM | 5.3 | — | Jul 30, 2026 | GoAccess is a real-time web log analyzer and interactive viewer that runs in a terminal in *nix systems or through the b... |
| CVE-2026-55768 | HIGH | 8.7 | 0.3% | Jul 30, 2026 | GoAccess is a real-time web log analyzer and interactive viewer that runs in a terminal in *nix systems or through the b... |
| CVE-2026-54715 | HIGH | 7.1 | 0.3% | Jul 30, 2026 | GoAccess is a real-time web log analyzer and interactive viewer that runs in a terminal in *nix systems or through the b... |
| CVE-2026-52539 | CRITICAL | 9.1 | — | Jul 30, 2026 | Outstatic CMS <= 2.1.9 contains a hardcoded JWT signing secret. When the OST_TOKEN_SECRET environment variable is not se... |
| CVE-2026-35847 | CRITICAL | 9.8 | 0.1% | Jul 30, 2026 | An issue in dnsmgr v.2.15 and before allows a local attacker to execute arbitrary code via the ping function of the Chec... |
| CVE-2025-69947 | CRITICAL | 9.8 | 0.1% | Jul 30, 2026 | SourceCodester Tailor Management System 1.0 is vulnerable to SQL Injection in customeredit.php?id=1. |
| CVE-2025-69941 | CRITICAL | 9.8 | 0.1% | Jul 30, 2026 | SourceCodester Tailor Management System 1.0 is vulnerable to SQL Injection in addmeasurement.php?id=1. |
| CVE-2025-69938 | CRITICAL | 9.8 | 0.1% | Jul 30, 2026 | CodeAstro Membership Management System 1.0 is vulnerable to SQL Injection in renew.php via the parameter membershipType. |
| CVE-2025-69937 | CRITICAL | 9.8 | 0.1% | Jul 30, 2026 | CodeAstro Membership Management System 1.0 is vulnerable to SQL Injection in the edit_type.php endpoint via the Paramete... |
| CVE-2025-69936 | CRITICAL | 9.8 | 0.1% | Jul 30, 2026 | CodeAstro Membership Management System 1.0 is vulnerable to SQL Injection in /edit_member.php?id=1. |
| CVE-2025-69935 | CRITICAL | 9.8 | 0.1% | Jul 30, 2026 | CodeAstro Membership Management System 1.0 is vulnerale to SQL Injection in the report.php and revenue_report.php via th... |
| CVE-2025-69934 | CRITICAL | 9.8 | 0.1% | Jul 30, 2026 | CodeAstro Membership Management System 1.0 is vulnerable to SQL Injection in /delete_members.php?id=1. |
| CVE-2025-69933 | CRITICAL | 9.8 | 0.1% | Jul 30, 2026 | CodeAstro Membership Management System 1.0 is vulnerable to SQL Injection in /memberProfile.php?id=1. |
| CVE-2025-69931 | CRITICAL | 9.8 | 0.1% | Jul 30, 2026 | CodeAstro Membership Management System 1.0 is vulnerable to SQL Injection in /delete_membership.php?id=1. |
| CVE-2025-69930 | CRITICAL | 9.8 | 0.1% | Jul 30, 2026 | CodeAstro Membership Management System 1.0 is vulnerable to SQL Injection in /print_membership_card.php?id=1. |
| CVE-2025-65342 | MEDIUM | 6.1 | 0.1% | Jul 30, 2026 | code-projects Blood System 1.0 is vulnerable to Cross Site Scripting (XSS) in /don.php via the city field. |
| CVE-2025-65341 | MEDIUM | 6.1 | 0.1% | Jul 30, 2026 | Ecommerce Fruits Bazar 1.0 is vulnerable to Cross Site Scripting (XSS) in admin/edit_product.php. |
