CVE Vulnerability Database

Search and browse 386,644 CVE records with CVSS scores, EPSS exploit predictions, and CISA KEV status.

CVE IDSeverityCVSSDescription
CVE-2026-46948MEDIUM4.6Vulnerability in the Oracle Utilities Network Management System product of Oracle Utilities Applications (component: Sec...
CVE-2026-46943HIGH7.4Vulnerability in the Oracle Retail EFTLink product of Oracle Retail Applications (component: Core/Plugin). Supported ve...
CVE-2026-46941HIGH7.5Vulnerability in the Oracle Cost Management product of Oracle E-Business Suite (component: Cost Maintenance). Supported...
CVE-2026-46936MEDIUM4.4Vulnerability in the MySQL Server, MySQL Cluster product of Oracle MySQL (component: Server: DDL). Supported versions t...
CVE-2026-46924CRITICAL9.8Vulnerability in Oracle Application Testing Suite. The supported version that is affected is 13.3.0.1. Easily exploita...
CVE-2026-46923HIGH8Vulnerability in the Oracle Public Sector Financials (International) product of Oracle E-Business Suite (component: Auth...
CVE-2026-46917MEDIUM5.3Vulnerability in the Oracle Java SE, Oracle GraalVM for JDK, Oracle GraalVM Enterprise Edition product of Oracle Java SE...
CVE-2026-46876CRITICAL9.8Vulnerability in Oracle Application Testing Suite. The supported version that is affected is 13.3.0.1. Easily exploita...
CVE-2026-43947HIGH8.9FUXA is a web-based Process Visualization (SCADA/HMI/Dashboard) software. Version 1.3.0 has an unauthenticated Remote Co...
CVE-2026-43946HIGH7.7FUXA is a web-based Process Visualization (SCADA/HMI/Dashboard) software. Version 1.3.0 has an authorization bypass in t...
CVE-2026-43945HIGH8.9FUXA is a web-based Process Visualization (SCADA/HMI/Dashboard) software. Versions 1.2.11 until 1.3.1 allow an unauthent...
CVE-2026-35290CRITICAL9.8Vulnerability in Oracle Application Testing Suite. The supported version that is affected is 13.3.0.1. Easily exploita...
CVE-2026-35287HIGH7.5Vulnerability in Oracle Application Testing Suite. The supported version that is affected is 13.3.0.1. Easily exploita...
CVE-2026-34316MEDIUM6.1Vulnerability in the Oracle Commerce Service Center product of Oracle Commerce (component: Commerce Service Center). T...
CVE-2026-21954MEDIUM4.3Vulnerability in the Oracle Retail Xstore Point of Service product of Oracle Retail Applications (component: Xstore Mobi...
CVE-2026-21953LOW3.3Vulnerability in the Oracle Retail Xstore Point of Service product of Oracle Retail Applications (component: Xstore Mobi...
CVE-2026-16484HIGH7.3A flaw has been found in SourceCodester Class and Exam Timetabling System 1.0. Affected by this vulnerability is an unkn...
CVE-2026-10680HIGH7.6The Classic (BR/EDR) L2CAP signaling handlers l2cap_br_conf_req() and l2cap_br_conf_rsp() in subsys/bluetooth/host/class...
CVE-2026-10679MEDIUM5.5The DesignWare SPI driver (drivers/spi/spi_dw.c) computed the SPI BAUDR clock divider as info->clock_frequency / config-...
CVE-2026-10678HIGH8.1The MCTP-over-I2C+GPIO target binding in Zephyr (subsys/pmci/mctp/mctp_i2c_gpio_target.c) processes pseudo-register writ...
CVE-2026-10677MEDIUM6.5The CONFIG_USERSPACE syscall verifier z_vrfy_k_poll() in kernel/poll.c allocates a kernel-side copy of the user-supplied...
CVE-2026-10675MEDIUM6.5In Zephyr's Bluetooth Mesh PB-ADV provisioning bearer (subsys/bluetooth/mesh/pb_adv.c), prov_msg_recv() rescheduled the ...
CVE-2026-10674MEDIUM5.5The NXP LPUART serial driver (drivers/serial/uart_mcux_lpuart.c), when CONFIG_UART_USE_RUNTIME_CONFIGURE is enabled, cal...
CVE-2026-8983CRITICAL9.8Autel Maxi Charger Single firmware through V1.03.51 contains a hard-coded authentication token that bypasses authorizati...
CVE-2026-8982HIGH8.1Two undocumented privileged accounts exist in Autel Maxi Charger Single firmware through V1.03.51. The accounts use vend...