CVE Vulnerability Database
Search and browse 383,811 CVE records with CVSS scores, EPSS exploit predictions, and CISA KEV status.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2026-16339 | — | — | — | Jul 29, 2026 | Rejected reason: This CVE ID has been rejected or withdrawn by its CVE Numbering Authority. |
| CVE-2026-67595 | CRITICAL | 9.2 | 0.4% | Jul 29, 2026 | VaahCMS versions 2.0.0 through 2.3.4 contain a malicious obfuscated JavaScript payload embedded in the Blade template re... |
| CVE-2026-18060 | — | — | — | Jul 29, 2026 | Rejected reason: ** REJECT ** DO NOT USE THIS CANDIDATE NUMBER. Reason: This candidate was issued in error. Notes: All r... |
| CVE-2026-15157 | MEDIUM | 5.4 | 0.2% | Jul 29, 2026 | undici does not validate the type property of a duck-typed blob-like request body before using it as the Content-Type he... |
| CVE-2026-14643 | HIGH | 7.5 | 0.2% | Jul 29, 2026 | undici's cache interceptor mishandles optional whitespace placed around the equals sign of a qualified no-cache or priva... |
| CVE-2025-69949 | HIGH | 7.3 | — | Jul 29, 2026 | kishan0725 Hospital Management System 4.0 is vulnerable to SQL Injection in check_availability.php via the parameters em... |
| CVE-2025-69945 | HIGH | 7.3 | — | Jul 29, 2026 | kishan0725 Hospital Management System 4.0 is vulnerable to SQL Injection in /doctor/edit-patient.php?editid=1. |
| CVE-2025-69944 | HIGH | 7.3 | 0.1% | Jul 29, 2026 | kishan0725 Hospital Management System 4.0 is vulnerable to SQL Injection in the view-medhistory.php endpoint via the vie... |
| CVE-2025-69943 | CRITICAL | 9.8 | 0.1% | Jul 29, 2026 | kishan0725 Hospital Management System 4.0 is vulnerale to SQL Injection in get_doctor.php via the parameters doctor and ... |
| CVE-2025-69942 | CRITICAL | 9.8 | 0.1% | Jul 29, 2026 | kishan0725 Hospital Management System 4.0 is vulnerable to SQL Injection in /hms/doctor/view-patient.php?viewid=1. |
| CVE-2025-67408 | HIGH | 7.3 | — | Jul 29, 2026 | Sourcecodester CASAP Automated Enrollment System 1.0 is vulnerable to SQL Injection in /save_user.php via the parameter ... |
| CVE-2025-67407 | HIGH | 7.3 | — | Jul 29, 2026 | Sourcecodester CASAP Automated Enrollment System 1.0 is vulnerable to SQL Injection in update_student.php via parameters... |
| CVE-2025-67406 | HIGH | 7.3 | — | Jul 29, 2026 | https://www.sourcecodester.com Advocate office management system 1.0 is affected by: SQL Injection. The impact is: execu... |
| CVE-2025-67405 | HIGH | 7.3 | — | Jul 29, 2026 | Sourcecodester CASAP Automated Enrollment System 1.0 is vulnerable to SQL Injection in update_password.php via the param... |
| CVE-2025-67404 | CRITICAL | 9.8 | 0.1% | Jul 29, 2026 | Sourcecodester CASAP Automated Enrollment System 1.0 is vulnerable to SQL Injection in save_stud.php via the parameters ... |
| CVE-2025-67403 | CRITICAL | 9.8 | 0.1% | Jul 29, 2026 | Sourcecodester CASAP Automated Enrollment System 1.0 is vulnerable to SQL Injection in update_class.php via the paramete... |
| CVE-2026-67439 | MEDIUM | 4.3 | 0.3% | Jul 29, 2026 | OliveTin gives safe and simple access to predefined shell commands from a web interface. Prior to 3000.17.0, the service... |
| CVE-2026-67438 | MEDIUM | 6.6 | 1.0% | Jul 29, 2026 | OliveTin gives access to predefined shell commands from a web interface. From 3000.2.0 until 3000.17.0, the service/inte... |
| CVE-2026-67437 | HIGH | 7.5 | 0.4% | Jul 29, 2026 | OliveTin gives access to predefined shell commands from a web interface. From 3000.0.0 until 3000.17.0, the service/inte... |
| CVE-2026-65975 | MEDIUM | 6.5 | 0.2% | Jul 29, 2026 | Pydantic AI is a Python agent framework for building applications and workflows with Generative AI. In versions 1.88.0 u... |
| CVE-2026-54249 | MEDIUM | 6.8 | 0.2% | Jul 29, 2026 | Pydantic AI is a Python agent framework for building Generative AI applications. In versions 1.65.0 through 1.105.0, and... |
| CVE-2026-50782 | HIGH | 7.5 | 0.2% | Jul 29, 2026 | Jinher OA C6 contains an XML External Entity (XXE) injection vulnerability in the /c6/JHSoft.Web.HrmAttendance/sp_manage... |
| CVE-2026-46678 | MEDIUM | 5.9 | 0.4% | Jul 29, 2026 | Pydantic AI is a Python agent framework for building Generative AI applications. In versions 1.56.0 through 1.98.0, when... |
| CVE-2026-16728 | MEDIUM | 6.5 | 0.2% | Jul 29, 2026 | undici's retry interceptor can deliver a response whose body length does not match the Content-Length header exposed to ... |
| CVE-2026-13309 | MEDIUM | 6.8 | 0.2% | Jul 29, 2026 | Autel MaxiCharger AC Elite Home NFC Stack-based Buffer Overflow Arbitrary Code Execution Vulnerability. This vulnerabili... |
