CVE Vulnerability Database

Search and browse 375,982 CVE records with CVSS scores, EPSS exploit predictions, and CISA KEV status.

CVE IDSeverityCVSSDescription
CVE-2026-72732MEDIUM4.3Discourse is an open-source discussion platform. Prior to 2026.1.6, 2026.5.2, 2026.6.1, and 2026.7.0, the discourse_temp...
CVE-2026-70622HIGH7.1tar-rs versions 0.4.11 through 0.4.46 contain a symlink escape vulnerability in the Builder::append_dir_all() function t...
CVE-2026-48159CRITICAL9.3use-reducer-async is a React useReducer with async actions. Between 2026-05-18 16:29:52 and 2026-05-19 15:26:07, the def...
CVE-2026-16626CRITICAL9.3Improper restriction of XML external entity reference vulnerability (unauthenticated) in Jaspersoft JasperReports Server...
CVE-2026-10754HIGH8.6Pega Platform versions 8.5.0 through 25.1.2 are affected by an improper validation of cryptographic signatures that may ...
CVE-2026-72731HIGH7.1Discourse is an open-source discussion platform. From 2026.1.0-latest until 2026.1.7, 2026.6.2, 2026.7.1, and 2026.8.0-l...
CVE-2026-72730HIGH8.7Discourse is an open-source discussion platform. Prior to 2026.1.6, 2026.5.2, 2026.6.1, and 2026.7.0, the Rich Text Edit...
CVE-2026-72729LOW2Discourse is an open-source discussion platform. Prior to 2026.1.6, 2026.5.2, 2026.6.1, and 2026.7.0, the discourse-loca...
CVE-2026-72728MEDIUM6.3Discourse is an open-source discussion platform. Prior to 2026.1.7, an authenticated user could submit specially formed ...
CVE-2026-72727MEDIUM4.8Discourse is an open-source discussion platform. Prior to 026.1.6, 2026.5.2, 2026.6.1, and 2026.7.0, a low-privileged us...
CVE-2026-71577MEDIUM6.3A flaw was found in multicluster-global-hub. During a ManagedClusterMigration, the system incorrectly grants all managed...
CVE-2026-71576HIGH8.5A flaw was found in multicluster-global-hub. The manager component improperly validates the source identity of incoming ...
CVE-2026-63623MEDIUM5.5A flaw was found in libvirt. During storage volume clone or convert operations, newly created volume images were tempora...
CVE-2026-56619MEDIUM5.4HCL BigFix Mobile is vulnerable to Reflected Cross-Site Scripting (Reflected XSS) due to insufficient validation and out...
CVE-2026-40512Rejected reason: This CVE ID has been rejected or withdrawn by its CVE Numbering Authority.
CVE-2026-35028Rejected reason: This CVE ID has been rejected or withdrawn by its CVE Numbering Authority.
CVE-2026-35027Rejected reason: This CVE ID has been rejected or withdrawn by its CVE Numbering Authority.
CVE-2026-35026Rejected reason: This CVE ID has been rejected or withdrawn by its CVE Numbering Authority.
CVE-2026-35006Rejected reason: This CVE ID has been rejected or withdrawn by its CVE Numbering Authority.
CVE-2026-35005Rejected reason: This CVE ID has been rejected or withdrawn by its CVE Numbering Authority.
CVE-2026-34423Rejected reason: This CVE ID has been rejected or withdrawn by its CVE Numbering Authority.
CVE-2026-29517Rejected reason: This CVE ID has been rejected or withdrawn by its CVE Numbering Authority.
CVE-2026-29033Rejected reason: This CVE ID has been rejected or withdrawn by its CVE Numbering Authority.
CVE-2026-29032Rejected reason: This CVE ID has been rejected or withdrawn by its CVE Numbering Authority.
CVE-2026-29031Rejected reason: This CVE ID has been rejected or withdrawn by its CVE Numbering Authority.