CVE Vulnerability Database
Search and browse 383,847 CVE records with CVSS scores, EPSS exploit predictions, and CISA KEV status.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2026-16184 | CRITICAL | 9.8 | 0.3% | Jul 28, 2026 | IBM WebSphere Application Server 9.0, and 8.5 could allow a remote attacker to bypass authentication by sending a crafte... |
| CVE-2026-16107 | MEDIUM | 5.9 | 0.2% | Jul 28, 2026 | IBM TS4500 CLI tool Versions: 0.1.31 through 1.12.0.0 does not validate or improperly validates TLS certificate validat... |
| CVE-2026-11391 | MEDIUM | 6.3 | 0.2% | Jul 28, 2026 | Tanium addressed a SQL injection vulnerability in Patch. |
| CVE-2026-7769 | HIGH | 8.1 | 0.3% | Jul 28, 2026 | IBM Sterling B2B Integrator 6.2.0.0 through 6.2.0.5_2, 6.2.1.0 through 6.2.1.1_2, and 6.2.2.0 through 6.2.2.0_1 and IBM ... |
| CVE-2026-7362 | MEDIUM | 6.5 | 0.2% | Jul 28, 2026 | IBM Sterling B2B Integrator 6.2.1.0 through 6.2.1.1_2, and 6.2.2.0 through 6.2.2.0_1 and IBM Sterling File Gateway 6.2.1... |
| CVE-2026-66745 | HIGH | 7.5 | 0.3% | Jul 28, 2026 | Artica Proxy before 4.50.000000 Service Pack 7 (fixed in hotfix 20260724-02) contains a session fixation vulnerability t... |
| CVE-2026-5114 | MEDIUM | 4.9 | 0.3% | Jul 28, 2026 | The SpeedyCache plugin for WordPress is vulnerable to Arbitrary File Read via Path Traversal in all versions up to, and ... |
| CVE-2026-59932 | HIGH | 7.5 | 0.7% | Jul 28, 2026 | PhpSpreadsheet is a pure PHP library for reading and writing spreadsheet files. In versions 4.0.0 through 5.8.0, 3.3.0 t... |
| CVE-2026-50738 | MEDIUM | 5.3 | 0.3% | Jul 28, 2026 | A use-after-free condition exists in pglogical's worker signaling code, where a worker structure can be dereferenced aft... |
| CVE-2026-50737 | HIGH | 7.5 | 0.2% | Jul 28, 2026 | When applying replicated changes for a row that is missing one or more columns, pglogical evaluates the affected table's... |
| CVE-2026-50736 | HIGH | 7.5 | 0.2% | Jul 28, 2026 | The pglogical queue mechanism, used to convey out-of-band commands such as replicated DDL from a publisher to a subscrib... |
| CVE-2026-50735 | MEDIUM | 6.8 | 0.2% | Jul 28, 2026 | pglogical's apply worker does not sufficiently validate the length of certain fields in incoming replication protocol me... |
| CVE-2026-4932 | MEDIUM | 4.2 | — | Jul 28, 2026 | IBM PowerVM Hypervisor FW1110.00 through FW1110.20, and FW1060.00 through FW1060.71 could allow an attacker with physica... |
| CVE-2026-4912 | MEDIUM | 4.1 | — | Jul 28, 2026 | The Media Cleaner: Clean your WordPress! plugin for WordPress is vulnerable to Server-Side Request Forgery in all versio... |
| CVE-2026-49258 | HIGH | 8.8 | 0.3% | Jul 28, 2026 | Nebula Mesh is a self-hosted control plane for the Slack Nebula mesh VPN. In versions 0.3.5 and below, the web UI (/ui/*... |
| CVE-2026-48396 | HIGH | 8.6 | 0.2% | Jul 28, 2026 | Bridge is affected by an Incorrect Authorization vulnerability that could result in arbitrary code execution in the cont... |
| CVE-2026-48395 | HIGH | 8.6 | 0.2% | Jul 28, 2026 | Bridge is affected by an Untrusted Search Path vulnerability that could result in arbitrary code execution in the contex... |
| CVE-2026-48394 | HIGH | 7.8 | 0.1% | Jul 28, 2026 | Bridge is affected by an out-of-bounds write vulnerability that could result in arbitrary code execution in the context ... |
| CVE-2026-48393 | HIGH | 7.8 | 0.1% | Jul 28, 2026 | Bridge is affected by an out-of-bounds write vulnerability that could result in arbitrary code execution in the context ... |
| CVE-2026-48392 | HIGH | 7.8 | 0.1% | Jul 28, 2026 | Bridge is affected by an out-of-bounds write vulnerability that could result in arbitrary code execution in the context ... |
| CVE-2026-48391 | HIGH | 8.2 | 0.2% | Jul 28, 2026 | Bridge is affected by an Untrusted Search Path vulnerability that could result in arbitrary code execution in the contex... |
| CVE-2026-48390 | HIGH | 8.2 | 0.1% | Jul 28, 2026 | Bridge is affected by an Incorrect Authorization vulnerability that could result in privilege escalation. An attacker co... |
| CVE-2026-48374 | HIGH | 7.8 | 0.2% | Jul 28, 2026 | Bridge is affected by an Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') vulnerability th... |
| CVE-2026-48058 | MEDIUM | 4.6 | 0.2% | Jul 28, 2026 | nebula-mesh is a self-hosted control plane for Slack Nebula mesh virtual private network. Prior to version 0.3.2, intern... |
| CVE-2026-47768 | MEDIUM | 5.5 | 0.1% | Jul 28, 2026 | nebula-mesh is a self-hosted control plane for Slack Nebula mesh virtual private network. Prior to version 0.3.2, newly-... |
