CVE Vulnerability Database

Search and browse 388,105 CVE records with CVSS scores, EPSS exploit predictions, and CISA KEV status.

CVE IDSeverityCVSSDescription
CVE-2026-16416CRITICAL9.3Integer overflow in Chromecast in Google Chrome prior to 150.0.7871.182 allowed a local attacker to potentially perform ...
CVE-2026-16415MEDIUM5.4Insufficient validation of untrusted input in Extensions in Google Chrome prior to 150.0.7871.182 allowed a remote attac...
CVE-2026-16414HIGH7.8Insufficient validation of untrusted input in Chromecast in Google Chrome prior to 150.0.7871.182 allowed a local attack...
CVE-2026-16413HIGH8.3Out of bounds write in ANGLE in Google Chrome prior to 150.0.7871.182 allowed a remote attacker who had compromised the ...
CVE-2026-8989MEDIUM6.8Autel Maxi Charger Single firmware through V1.03.51 permits unrestricted access to the NXP i.MX6 recovery mode through e...
CVE-2026-8988MEDIUM6.8Autel Maxi Charger Single firmware through V1.03.51 exposes an accessible UART interface that permits interruption of th...
CVE-2026-8987HIGH8.8Autel Maxi Charger Single firmware through V1.03.51 contains a heap-based buffer overflow in the set_ap_param command ha...
CVE-2026-8986CRITICAL9.8Autel Maxi Charger Single firmware through V1.03.51 is vulnerable to OS command injection when processing OCPP GetDiagno...
CVE-2026-8985CRITICAL9.8Autel Maxi Charger Single firmware through V1.03.51 is vulnerable to OS command injection in the /test endpoint exposed ...
CVE-2026-8984CRITICAL9.8Autel Maxi Charger Single firmware through V1.03.51 allows unauthenticated remote code execution via the service listeni...
CVE-2026-65319HIGH8.7Feedbin (commit 739884a) contains an unauthenticated information disclosure vulnerability that allows unauthenticated at...
CVE-2026-65318CRITICAL9.2Verba RAG application version 2.1.3 contains an unauthenticated server-side request forgery vulnerability that allows un...
CVE-2026-65317CRITICAL9.2Verba RAG application version 2.1.3 contains a server-side request forgery vulnerability combined with a same-origin mid...
CVE-2026-65316HIGH7.1XXL-Job version 2.4.2 contains an insecure direct object reference vulnerability that allows authenticated users to read...
CVE-2026-65315HIGH8.7Ollama (HEAD f0078ae) contains an uncontrolled memory allocation vulnerability in the GGUF metadata parser that allows r...
CVE-2026-65314MEDIUM5.3Electric Postgres Sync versions below 1.6.10 contains an information disclosure vulnerability that allows attackers to i...
CVE-2026-63141MEDIUM5.4Missing Authorization (CWE-862) in Kibana allows an authenticated user to access and modify Cloud Connect configuration ...
CVE-2026-62574HIGH7.8Vulnerability in the Oracle Java SE, Oracle GraalVM for JDK, Oracle GraalVM Enterprise Edition product of Oracle Java SE...
CVE-2026-62567HIGH7.7Vulnerability in the Oracle HRMS (UK) product of Oracle E-Business Suite (component: UK Payroll). Supported versions th...
CVE-2026-62565HIGH7.1Vulnerability in the Oracle HRMS (US) product of Oracle E-Business Suite (component: US Payroll Year End). Supported ve...
CVE-2026-62563MEDIUM5.4Vulnerability in the Oracle Work in Process product of Oracle E-Business Suite (component: Internal Operations). Suppor...
CVE-2026-62562MEDIUM6.5Vulnerability in the Oracle HRMS (US) product of Oracle E-Business Suite (component: Internal Operations). Supported ve...
CVE-2026-62561HIGH7.8Vulnerability in the Oracle HRMS (US) product of Oracle E-Business Suite (component: Internal Operations). Supported ve...
CVE-2026-62560HIGH7.7Vulnerability in the Oracle HRMS (Norway) product of Oracle E-Business Suite (component: Internal Operations). Supporte...
CVE-2026-62559MEDIUM6.8Vulnerability in the Oracle HRMS (US) product of Oracle E-Business Suite (component: Internal Operations). Supported ve...