CVE Vulnerability Database
Search and browse 385,853 CVE records with CVSS scores, EPSS exploit predictions, and CISA KEV status.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2026-65876 | CRITICAL | 9.2 | 0.2% | Jul 27, 2026 | Joomla Extension - joomshaper.com - Unauthenticated SQL injection in SP Page Builder < 6.8.0 - Improper validation of c... |
| CVE-2026-65766 | CRITICAL | 9.2 | — | Jul 27, 2026 | Joomla Extension - joomshaper.com - Unauthenticated SQL injection in SP Page Builder < 6.7.1 - Improper validation of o... |
| CVE-2026-61511 | CRITICAL | 9.8 | 1.3% | Jul 27, 2026 | vBulletin 5.x through 5.7.5 and 6.x through 6.2.1 contains an eval injection vulnerability in the vB5_Template_Runtime::... |
| CVE-2026-17514 | MEDIUM | 5.3 | — | Jul 27, 2026 | A vulnerability was determined in ZJONSSON node-unzipper up to 0.12.3. Affected by this vulnerability is the function Ex... |
| CVE-2026-17513 | LOW | 3.3 | — | Jul 27, 2026 | A vulnerability was found in ggml-org whisper.cpp 95ea8f9b. Affected is the function ggml_ftype_to_ggml_type of the file... |
| CVE-2026-15003 | MEDIUM | 5.6 | 0.1% | Jul 27, 2026 | A flaw was found in the GNU Binutils (Binary Utilities) linker. This vulnerability, a heap-buffer-overflow read (CWE-125... |
| CVE-2026-59690 | HIGH | 8 | 0.2% | Jul 27, 2026 | A Missing Authorization vulnerability in Progress Software LoadMaster, ECS Connection Manager, Object Scale Connection M... |
| CVE-2026-59689 | HIGH | 8 | 0.2% | Jul 27, 2026 | An Incorrect Authorization vulnerability in Progress Software LoadMaster, ECS Connection Manager, Object Scale Connectio... |
| CVE-2026-59688 | HIGH | 8.4 | 0.7% | Jul 27, 2026 | An OS Command Injection vulnerability in Progress Software LoadMaster, ECS Connection Manager, Object Scale Connection M... |
| CVE-2026-59687 | HIGH | 8.4 | 0.7% | Jul 27, 2026 | An OS Command Injection vulnerability in Progress Software LoadMaster, ECS Connection Manager, Object Scale Connection M... |
| CVE-2026-59686 | HIGH | 8.4 | 0.7% | Jul 27, 2026 | An OS Command Injection vulnerability in Progress Software LoadMaster, ECS Connection Manager, Object Scale Connection M... |
| CVE-2026-56538 | LOW | 3.5 | 0.2% | Jul 27, 2026 | An endpoint in HCL Connections is vulnerable to information disclosure. In certain scenarios this might lead to disclosi... |
| CVE-2026-56537 | LOW | 3.5 | 0.2% | Jul 27, 2026 | HCL Connections is vulnerable to information disclosure which could allow a user to obtain sensitive information they ar... |
| CVE-2026-17512 | LOW | 3.3 | — | Jul 27, 2026 | A vulnerability has been found in ggml-org whisper.cpp 1.8.4-58. This impacts the function log_mel_spectrogram of the fi... |
| CVE-2026-12991 | HIGH | 8.7 | — | Jul 27, 2026 | The lack of cryptographic mechanisms to ensure the integrity and authenticity of communications in Ghost Robotics' Visio... |
| CVE-2026-12990 | HIGH | 7.7 | — | Jul 27, 2026 | An access control vulnerability in the mobile app (APK v5.5.0) for Ghost Robotics' Vision 60 robot allows multiple simul... |
| CVE-2026-12989 | HIGH | 8.7 | — | Jul 27, 2026 | A lack of authentication in the mobile app (APK v5.5.0) for Ghost Robotics' Vision 60 robot allows an unauthenticated at... |
| CVE-2026-66053 | MEDIUM | 5.9 | — | Jul 27, 2026 | Improper Validation of Certificate with Host Mismatch vulnerability in Apache Thrift Python bindings. This issue affect... |
| CVE-2026-58662 | CRITICAL | 9.1 | — | Jul 27, 2026 | Improper Validation of Specified Quantity in Input, Out-of-bounds Read vulnerability in Apache Thrift C++ bindings. Thi... |
| CVE-2026-58389 | HIGH | 7.5 | — | Jul 27, 2026 | Allocation of Resources Without Limits or Throttling vulnerability in Apache Thrift Rust bindings. This issue affects A... |
| CVE-2026-58023 | CRITICAL | 9.1 | — | Jul 27, 2026 | Out-of-bounds Read vulnerability in Apache Thrift c_glib bindings. This issue affects Apache Thrift: before 0.24.0. Us... |
| CVE-2026-57917 | MEDIUM | 4.8 | 0.1% | Jul 27, 2026 | proCertum SmartSign parses external XML entities from arbitrary crafted signature files, enabling SSRF and potentially a... |
| CVE-2026-57916 | MEDIUM | 4.6 | 0.1% | Jul 27, 2026 | proCertum SmartSign opens Certificate Practice Statement (CPS) URI without schema validation. An attacker can prepare ar... |
| CVE-2026-55971 | CRITICAL | 9.8 | — | Jul 27, 2026 | Heap-based Buffer Overflow vulnerability in Apache Thrift C++ bindings. This issue affects Apache Thrift: before 0.24.0... |
| CVE-2026-55970 | MEDIUM | 6.5 | — | Jul 27, 2026 | Buffer Over-read vulnerability in Apache Thrift C++ bindings. This issue affects Apache Thrift: before 0.24.0. Users a... |
