CVE Vulnerability Database
Search and browse 381,613 CVE records with CVSS scores, EPSS exploit predictions, and CISA KEV status.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2026-64558 | HIGH | 7.8 | 0.1% | Jul 29, 2026 | In the Linux kernel, the following vulnerability has been resolved: s390/pkey: Check length in pkey_pckmo handler imple... |
| CVE-2026-54727 | HIGH | 8.2 | 0.1% | Jul 29, 2026 | proot-distro is a utility for managing proot containers. Prior to version 5.1.6, proot-distro restore accepted hardlink ... |
| CVE-2026-54693 | HIGH | 8.2 | 0.3% | Jul 29, 2026 | ZITADEL is an open source identity management platform. From 2.43.0 through 2.71.19, from 3.0.0 until 3.4.11, and from 4... |
| CVE-2026-54680 | CRITICAL | 9.9 | — | Jul 29, 2026 | Logging operator automates the deployment and configuration of Kubernetes logging pipelines. Prior to 6.6.0, the Fluentd... |
| CVE-2026-54574 | HIGH | 8.2 | 0.1% | Jul 29, 2026 | proot-distro is a utility for managing proot containers. Prior to version 5.1.5, proot-distro install extracted plain ta... |
| CVE-2026-52791 | LOW | 2 | — | Jul 29, 2026 | fuse-overlayfs is an implementation of overlayfs in FUSE for rootless containers. Prior to 1.17, the release-1.x C branc... |
| CVE-2026-51992 | — | — | 0.5% | Jul 29, 2026 | Rejected reason: This CVE ID has been rejected or withdrawn by its CVE Numbering Authority. ClickHouse's PostgreSQL inte... |
| CVE-2026-20316 | MEDIUM | 5.3 | 0.8% | Jul 29, 2026 | A vulnerability in the web interface of Cisco Secure Firewall Management Center (FMC) Software could allow an unauthenti... |
| CVE-2026-18257 | MEDIUM | 5.6 | — | Jul 29, 2026 | Improper validity period check for root issuer certificate in CycloneCrypto cryptographic wrapper of S2OPC allows a cert... |
| CVE-2026-18255 | HIGH | 7.2 | — | Jul 29, 2026 | A flaw was found in Quay. A user configured in GLOBAL_READONLY_SUPER_USERS is able to view robot account tokens for repo... |
| CVE-2026-16729 | MEDIUM | 6.5 | 0.2% | Jul 29, 2026 | undici's setCookie function does not fully sanitize cookie attributes. In undici before 6.28.0, from 7.0.0 up to before ... |
| CVE-2026-15144 | MEDIUM | 5.3 | 0.3% | Jul 29, 2026 | @fastify/rate-limit before 11.2.0 keys rate-limit buckets by the verbatim client IP string returned from request.ip. Bec... |
| CVE-2026-13697 | CRITICAL | 9.1 | 0.3% | Jul 29, 2026 | undici's cache interceptor mishandles malformed Cache-Control private directives. In undici 7.0.0 up to before 7.29.0 an... |
| CVE-2025-60931 | HIGH | 7.5 | — | Jul 29, 2026 | An Insecure Direct Object Reference (IDOR) in the Employee Compensation View function of Infor Global HR v11.24.10.01.33... |
| CVE-2026-67193 | MEDIUM | 6.9 | 0.3% | Jul 29, 2026 | Xlight FTP Server before 3.9.5 contains an information disclosure vulnerability that allows unauthenticated attackers to... |
| CVE-2026-67192 | CRITICAL | 9.2 | 0.6% | Jul 29, 2026 | Xlight FTP Server before 3.9.5 contains a pre-authentication stack buffer overflow vulnerability that allows unauthentic... |
| CVE-2026-67191 | CRITICAL | 9.8 | 0.6% | Jul 29, 2026 | Xlight FTP Server before 3.9.5 contains a pre-authentication heap buffer overflow vulnerability that allows remote unaut... |
| CVE-2026-67188 | — | — | — | Jul 29, 2026 | Rejected reason: This CVE ID has been rejected or withdrawn by its CVE Numbering Authority. |
| CVE-2026-66051 | — | — | — | Jul 29, 2026 | Rejected reason: This CVE ID has been rejected or withdrawn by its CVE Numbering Authority. |
| CVE-2026-60113 | CRITICAL | 9.8 | 0.4% | Jul 29, 2026 | AMMOS Instrument Toolkit (AIT) Deep Space Network (DSN) Interface before 2.2.2 contains a missing authentication vulnera... |
| CVE-2026-60112 | CRITICAL | 9.8 | 0.4% | Jul 29, 2026 | AMMOS Instrument Toolkit (AIT) GUI before 2.5.1 contains a missing authentication vulnerability that allows any unauthen... |
| CVE-2026-54735 | CRITICAL | 10 | 0.4% | Jul 29, 2026 | Prebid Server is an open-source solution for running real-time advertising auctions in the cloud. Prior to version 4.4.0... |
| CVE-2026-54082 | MEDIUM | 6.5 | 0.2% | Jul 29, 2026 | veraPDF validation model is an implementation of the veraPDF validation model. From 1.25.73 until 1.30.2 and 1.31.71, ve... |
| CVE-2026-54081 | MEDIUM | 6.9 | 0.3% | Jul 29, 2026 | veraPDF PDF parser is a PDF parser for veraPDF. Prior to 1.30.2 and 1.31.23, veraPDF-parser contains a denial-of-service... |
| CVE-2026-54080 | MEDIUM | 6.9 | 0.3% | Jul 29, 2026 | veraPDF PDF parser is a PDF parser for veraPDF. Prior to 1.30.2 and 1.31.23, veraPDF-parser contains a denial-of-service... |
