CVE Vulnerability Database
Search and browse 375,982 CVE records with CVSS scores, EPSS exploit predictions, and CISA KEV status.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2026-72732 | MEDIUM | 4.3 | — | Aug 10, 2026 | Discourse is an open-source discussion platform. Prior to 2026.1.6, 2026.5.2, 2026.6.1, and 2026.7.0, the discourse_temp... |
| CVE-2026-70622 | HIGH | 7.1 | — | Aug 10, 2026 | tar-rs versions 0.4.11 through 0.4.46 contain a symlink escape vulnerability in the Builder::append_dir_all() function t... |
| CVE-2026-48159 | CRITICAL | 9.3 | — | Aug 10, 2026 | use-reducer-async is a React useReducer with async actions. Between 2026-05-18 16:29:52 and 2026-05-19 15:26:07, the def... |
| CVE-2026-16626 | CRITICAL | 9.3 | 0.3% | Aug 10, 2026 | Improper restriction of XML external entity reference vulnerability (unauthenticated) in Jaspersoft JasperReports Server... |
| CVE-2026-10754 | HIGH | 8.6 | 0.6% | Aug 10, 2026 | Pega Platform versions 8.5.0 through 25.1.2 are affected by an improper validation of cryptographic signatures that may ... |
| CVE-2026-72731 | HIGH | 7.1 | — | Aug 10, 2026 | Discourse is an open-source discussion platform. From 2026.1.0-latest until 2026.1.7, 2026.6.2, 2026.7.1, and 2026.8.0-l... |
| CVE-2026-72730 | HIGH | 8.7 | — | Aug 10, 2026 | Discourse is an open-source discussion platform. Prior to 2026.1.6, 2026.5.2, 2026.6.1, and 2026.7.0, the Rich Text Edit... |
| CVE-2026-72729 | LOW | 2 | — | Aug 10, 2026 | Discourse is an open-source discussion platform. Prior to 2026.1.6, 2026.5.2, 2026.6.1, and 2026.7.0, the discourse-loca... |
| CVE-2026-72728 | MEDIUM | 6.3 | — | Aug 10, 2026 | Discourse is an open-source discussion platform. Prior to 2026.1.7, an authenticated user could submit specially formed ... |
| CVE-2026-72727 | MEDIUM | 4.8 | — | Aug 10, 2026 | Discourse is an open-source discussion platform. Prior to 026.1.6, 2026.5.2, 2026.6.1, and 2026.7.0, a low-privileged us... |
| CVE-2026-71577 | MEDIUM | 6.3 | — | Aug 10, 2026 | A flaw was found in multicluster-global-hub. During a ManagedClusterMigration, the system incorrectly grants all managed... |
| CVE-2026-71576 | HIGH | 8.5 | 0.1% | Aug 10, 2026 | A flaw was found in multicluster-global-hub. The manager component improperly validates the source identity of incoming ... |
| CVE-2026-63623 | MEDIUM | 5.5 | — | Aug 10, 2026 | A flaw was found in libvirt. During storage volume clone or convert operations, newly created volume images were tempora... |
| CVE-2026-56619 | MEDIUM | 5.4 | — | Aug 10, 2026 | HCL BigFix Mobile is vulnerable to Reflected Cross-Site Scripting (Reflected XSS) due to insufficient validation and out... |
| CVE-2026-40512 | — | — | — | Aug 10, 2026 | Rejected reason: This CVE ID has been rejected or withdrawn by its CVE Numbering Authority. |
| CVE-2026-35028 | — | — | — | Aug 10, 2026 | Rejected reason: This CVE ID has been rejected or withdrawn by its CVE Numbering Authority. |
| CVE-2026-35027 | — | — | — | Aug 10, 2026 | Rejected reason: This CVE ID has been rejected or withdrawn by its CVE Numbering Authority. |
| CVE-2026-35026 | — | — | — | Aug 10, 2026 | Rejected reason: This CVE ID has been rejected or withdrawn by its CVE Numbering Authority. |
| CVE-2026-35006 | — | — | — | Aug 10, 2026 | Rejected reason: This CVE ID has been rejected or withdrawn by its CVE Numbering Authority. |
| CVE-2026-35005 | — | — | — | Aug 10, 2026 | Rejected reason: This CVE ID has been rejected or withdrawn by its CVE Numbering Authority. |
| CVE-2026-34423 | — | — | — | Aug 10, 2026 | Rejected reason: This CVE ID has been rejected or withdrawn by its CVE Numbering Authority. |
| CVE-2026-29517 | — | — | — | Aug 10, 2026 | Rejected reason: This CVE ID has been rejected or withdrawn by its CVE Numbering Authority. |
| CVE-2026-29033 | — | — | — | Aug 10, 2026 | Rejected reason: This CVE ID has been rejected or withdrawn by its CVE Numbering Authority. |
| CVE-2026-29032 | — | — | — | Aug 10, 2026 | Rejected reason: This CVE ID has been rejected or withdrawn by its CVE Numbering Authority. |
| CVE-2026-29031 | — | — | — | Aug 10, 2026 | Rejected reason: This CVE ID has been rejected or withdrawn by its CVE Numbering Authority. |
