CVE Vulnerability Database
Search and browse 383,853 CVE records with CVSS scores, EPSS exploit predictions, and CISA KEV status.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2026-51259 | — | — | 0.4% | Jul 28, 2026 | Rejected reason: DO NOT USE THIS CVE RECORD. ConsultIDs: none. Reason: This record was withdrawn by its CNA. Further inv... |
| CVE-2026-51254 | — | — | 0.1% | Jul 28, 2026 | Rejected reason: DO NOT USE THIS CVE RECORD. ConsultIDs: none. Reason: This record was withdrawn by its CNA. Further inv... |
| CVE-2026-51252 | — | — | 0.3% | Jul 28, 2026 | Rejected reason: DO NOT USE THIS CVE RECORD. ConsultIDs: none. Reason: This record was withdrawn by its CNA. Further inv... |
| CVE-2026-51251 | — | — | 0.3% | Jul 28, 2026 | Rejected reason: DO NOT USE THIS CVE RECORD. ConsultIDs: none. Reason: This record was withdrawn by its CNA. Further inv... |
| CVE-2026-67173 | MEDIUM | 5.1 | 0.3% | Jul 28, 2026 | Pivotick did not validate the URL scheme of node imagePath values derived from graph data before assigning them to SVG i... |
| CVE-2026-66922 | MEDIUM | 5.1 | 0.3% | Jul 28, 2026 | Pivotick used plain JavaScript objects as lookup tables indexed by caller-controlled graph node identifiers in its tree-... |
| CVE-2026-66921 | MEDIUM | 6.3 | 0.3% | Jul 28, 2026 | Pivotick’s Markdown node-reference renderer failed to HTML-escape the attacker-controlled nodeName value before interpol... |
| CVE-2026-61487 | MEDIUM | 6.5 | 0.4% | Jul 28, 2026 | Improper Authorization vulnerability in Apache ActiveMQ Broker, Apache ActiveMQ All, Apache ActiveMQ. An authenticated... |
| CVE-2026-59878 | HIGH | 7.5 | 0.5% | Jul 28, 2026 | Improper Input Validation vulnerability in Apache ActiveMQ AMQP, Apache ActiveMQ, Apache ActiveMQ All. A remote unauthe... |
| CVE-2026-7187 | HIGH | 8.8 | 0.2% | Jul 28, 2026 | Missing authentication for critical function vulnerability in Universal Software Inc. UKBS allows Accessing Functionalit... |
| CVE-2026-66920 | HIGH | 8.2 | 0.3% | Jul 28, 2026 | Pivotick contains an uncontrolled-recursion vulnerability when processing caller-supplied graph and node data. The affec... |
| CVE-2026-66919 | MEDIUM | 6.9 | 0.3% | Jul 28, 2026 | Pivotick contains a cross-site scripting vulnerability in the inspect and edit node modals. Node labels and descriptions... |
| CVE-2026-66918 | HIGH | 8.2 | 0.3% | Jul 28, 2026 | Pivotick fails to sanitize attacker-controlled SVG markup supplied through the per-node style.svgIcon property before in... |
| CVE-2026-66913 | MEDIUM | 6.9 | 0.3% | Jul 28, 2026 | Lookyloo did not enforce limits on the decompressed size of uploaded capture archives and compressed HAR files. An atta... |
| CVE-2026-65882 | MEDIUM | 6.1 | — | Jul 28, 2026 | Joomla Extension - joomdle.com - Reflected XSS vulnerability in Joomdle < 3.1.1 - The goto url parameter of the moodle w... |
| CVE-2026-65881 | HIGH | 7.5 | — | Jul 28, 2026 | Joomla Extension - joomdle.com - Insecure default configuration allows read/write user account access in Joomdle < 3.1.1... |
| CVE-2026-62436 | MEDIUM | 6.5 | — | Jul 28, 2026 | [This CNA information record relates to multiple CVEs; the text explains which aspects/vulnerabilities correspond to whi... |
| CVE-2026-62435 | MEDIUM | 6.5 | — | Jul 28, 2026 | [This CNA information record relates to multiple CVEs; the text explains which aspects/vulnerabilities correspond to whi... |
| CVE-2026-62434 | MEDIUM | 5.3 | — | Jul 28, 2026 | A guest started with Populated on Demand enabled (PoD) can attempt to reclaim pages which aren't regular guest RAM. Thi... |
| CVE-2026-62433 | HIGH | 7.3 | — | Jul 28, 2026 | Parts of the DM_OP handling code assumes the caller has provided the required number of buffers for the given operation ... |
| CVE-2026-62432 | HIGH | 7.3 | — | Jul 28, 2026 | The EVTCHNOP_expand_array hypercall checks for whether FIFO event channels are enabled, but without holding the correct ... |
| CVE-2026-62431 | HIGH | 7.5 | — | Jul 28, 2026 | The logic to handle periodic Viridian STIMERs performs a division with an unchecked user-controlled divisor value, that ... |
| CVE-2026-62430 | HIGH | 7.5 | — | Jul 28, 2026 | Accesses to the CMOS memory contents are done using an indirect IO port pair. Therefore Xen needs to cache the guest ch... |
| CVE-2026-62429 | MEDIUM | 6.5 | — | Jul 28, 2026 | Accessing the vNUMA configuration data of a guest is still possible when domain destruction has already started. The cl... |
| CVE-2026-62428 | HIGH | 7.8 | — | Jul 28, 2026 | When grant-copy operations are processed, the respective grant may or may not already be in use by another operation (a ... |
