CVE Vulnerability Database
Search and browse 375,912 CVE records with CVSS scores, EPSS exploit predictions, and CISA KEV status.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2025-61970 | LOW | 1 | 0.1% | Aug 11, 2026 | Weak permissions in the Vitis™ Unified installation path on local Windows machines could allow a low-privileged user to ... |
| CVE-2025-48506 | MEDIUM | 4.6 | 0.1% | Aug 11, 2026 | Uncontrolled search paths in Vitis™ Unified installation path on local Windows machines could allow DLL injection into t... |
| CVE-2025-48505 | LOW | 1 | 0.1% | Aug 11, 2026 | Weak permissions in the Vitis™ Unified installation path on local Windows machines could allow a low-privileged user to ... |
| CVE-2025-35987 | MEDIUM | 4.3 | 0.1% | Aug 11, 2026 | Omission of security-relevant information for some Intel(R) Software Guard Extensions Data Center Attestation Primitives... |
| CVE-2025-35973 | MEDIUM | 4.5 | 0.1% | Aug 11, 2026 | Improper handling of values for some Intel(R) Processors within Ring 0: Kernel, Hypervisor and Bare Metal OS may allow a... |
| CVE-2025-31938 | MEDIUM | 4.3 | 0.1% | Aug 11, 2026 | Insufficient granularity of access control in some subsystem for some Intel(R) Xeon(R) 6 Scalable processors with Intel(... |
| CVE-2025-31936 | HIGH | 7 | 0.1% | Aug 11, 2026 | Improper handling of overlap between protected memory ranges for some Intel(R) Xeon(R) 6 processors when using Intel(R) ... |
| CVE-2025-31356 | MEDIUM | 5.6 | 0.1% | Aug 11, 2026 | Insufficient verification of data authenticity for some Intel(R) Trust Domain Extensions (Intel(R) TDX) within Ring 0: H... |
| CVE-2025-0041 | MEDIUM | 4.6 | 0.1% | Aug 11, 2026 | Uncontrolled search paths in the Vitis™ Embedded Single File Download (SFD) for local Windows installation could allow a... |
| CVE-2026-9214 | MEDIUM | 4.3 | — | Aug 11, 2026 | Insufficient input validation vulnerability in the NETGEAR R7000 models allows authenticated administrators connected t... |
| CVE-2026-73080 | CRITICAL | 9.3 | — | Aug 11, 2026 | SeaweedFS is a distributed storage system. Prior to 4.24, VolumeServer.FetchAndWriteNeedle in weed/server/volume_grpc_re... |
| CVE-2026-73079 | HIGH | 8.5 | — | Aug 11, 2026 | Sub2API is an AI API gateway platform designed to distribute and manage API quotas from AI product subscriptions. From 0... |
| CVE-2026-73078 | HIGH | 8.6 | — | Aug 11, 2026 | Vim is an open source, command line text editor. Prior to 9.2.0840, runtime/plugin/netrwPlugin.vim loads netrw and runti... |
| CVE-2026-73077 | HIGH | 8.4 | — | Aug 11, 2026 | Vim is an open source, command line text editor. Prior to 9.2.0839, the runtime/ftplugin/sh.vim, runtime/ftplugin/zsh.vi... |
| CVE-2026-73076 | HIGH | 8.4 | — | Aug 11, 2026 | Vim is an open source, command line text editor. Prior to 9.2.0847, runtime/autoload/vimball.vim allows a crafted vimbal... |
| CVE-2026-73075 | MEDIUM | 4.6 | — | Aug 11, 2026 | Vim is an open source, command line text editor. From 9.2.0469 until 9.2.0843, popup_mark_opacity_zindex() in src/popupw... |
| CVE-2026-73074 | HIGH | 7.1 | 0.1% | Aug 11, 2026 | Vim is an open source, command line text editor. Prior to 9.2.0841, prop_add_one() in src/textprop.c uses the proplen va... |
| CVE-2026-73072 | HIGH | 8.5 | — | Aug 11, 2026 | Vim is an open source, command line text editor. Prior to 9.2.0846, set_sofo() in src/spellfile.c reuses sl_sal_first[] ... |
| CVE-2026-73071 | LOW | 3.3 | — | Aug 11, 2026 | Vim is an open source, command line text editor. From 9.2.0511 until 9.2.0844, json_decode_item() in src/json.c can reta... |
| CVE-2026-73070 | MEDIUM | 6.8 | — | Aug 11, 2026 | Vim is an open source, command line text editor. Prior to 9.2.0842, the socket server backend in src/socketserver.c acce... |
| CVE-2026-73069 | CRITICAL | 9.1 | — | Aug 11, 2026 | Twenty is an open-source CRM (customer relationship management) platform. Prior to 2.15.0, Twenty allowed a workspace ad... |
| CVE-2026-73068 | MEDIUM | 5.9 | — | Aug 11, 2026 | ToolJet is the open-source foundation am AI-native platform for building and deploying internal tools, workflows and AI ... |
| CVE-2026-6727 | MEDIUM | 5.9 | 0.2% | Aug 11, 2026 | A timing side-channel vulnerability exists in the RSA OAEP decryption implementation. A privileged local attacker with a... |
| CVE-2026-6726 | HIGH | 7.9 | 0.2% | Aug 11, 2026 | An information leakage vulnerability was reported in the TCG TPM 2.0 reference code that could allow a local attacker wi... |
| CVE-2026-67180 | HIGH | 8.4 | — | Aug 11, 2026 | Google Turbinia allows arbitrary command execution via worker tasks. An attacker with privileges to submit a processing ... |
