CVE Vulnerability Database

Search and browse 389,869 CVE records with CVSS scores, EPSS exploit predictions, and CISA KEV status.

CVE IDSeverityCVSSDescription
CVE-2026-47407CRITICAL9.4PraisonAI Platform is the platform layer for the PraisonAI multi-agent teams system. Prior to version 0.1.4, the Platfor...
CVE-2026-47406HIGH8.1PraisonAI Platform is the platform layer for the PraisonAI multi-agent teams system. Versions prior to 0.1.4 have an Ins...
CVE-2026-47405HIGH8.8PraisonAI Platform is the platform layer for the PraisonAI multi-agent teams system. Versions prior to 0.1.4 have a brok...
CVE-2026-47399HIGH8.8PraisonAI Platform is the platform layer for the PraisonAI multi-agent teams system. Prior to version 0.1.4, the workspa...
CVE-2026-47398HIGH8.1PraisonAI is a multi-agent teams system. The v4.6.32 chokepoint refactor (which patched CVE-2026-44334 / GHSA-xcmw-grxf-...
CVE-2026-47397HIGH7.1PraisonAI is a multi-agent teams system. Prior to version 4.6.40, hidden metadata in a webpage causes PraisonAI agents t...
CVE-2026-44907HIGH7.5A denial of service vulnerability could be triggered by sending specially crafted HTTP requests to server function endpo...
CVE-2026-24232MEDIUM4.3NVIDIA Tranformers4Rec contains a vulnerability where an attacker could cause improper deserialization of untrusted data...
CVE-2026-16454MEDIUM4.3In Eclipse hawkBit versions 1.0.3 and prior, a privilege escalation vulnerability (CWE-284 / CWE-862) has been identifie...
CVE-2026-16451MEDIUM6.3A security flaw has been discovered in zsadmin2025 ZS-Admin up to b52e14536d59fda11e56e2536a1c32e82a38cead. This impacts...
CVE-2026-15829HIGH8.6A SQL injection (CWE-89) and security boundary bypass (CWE-863) vulnerability exists in the prebuilt BigQuery forecastin...
CVE-2026-15793HIGH7.5BuildKit custom frontends or clients using the raw low-level API can set git.checkoutbundle=true when checking out Git s...
CVE-2026-15792HIGH7.5A malicious BuildKit client or frontend could craft a request that could lead to BuildKit daemon crashing with a panic.
CVE-2026-15791HIGH7.5A crafted message in the BuildKit low-level build API can be used to remove the contents of the /tmp directory. The acti...
CVE-2026-15789HIGH7.5A custom client can produce such an upload request to the BuildKit daemon that files can escape from the BuildKit-contro...
CVE-2026-15724HIGH8.7In Progress ShareFile Storage Zones Controller versions prior to 5.12.5 and 6.0.2, an authenticated administrative user ...
CVE-2026-15432HIGH8.2When verifying a mac with a ChunkedMacVerification object, Tink compares the resulting tag with non constant time compar...
CVE-2026-15342MEDIUM6.5Plane contains a multi‑tenant authorization flaw in its asset‑management API that allows authenticated users from one wo...
CVE-2025-68640MEDIUM5.3The Apple Find My backend service through 2025-12-17 allows an attacker in possession of a valid PET (Private Endpoint T...
CVE-2026-64825CRITICAL9.3Home Assistant Core before 2026.6.0 contains a path traversal vulnerability that allows unauthenticated attackers to wri...
CVE-2026-64824CRITICAL9.3Home Assistant Core before 2026.7.0 contains a path traversal vulnerability in the backup-restore function that allows a...
CVE-2026-64823MEDIUM4.7Home Assistant Core before 2026.5.4 contains a cross-site scripting vulnerability in the Shelly integration's async_get_...
CVE-2026-56586MEDIUM4.2HCL IEM was affected with X-Content-Type-Options Header Missing. It may enable attackers to perform SSL stripping or man...
CVE-2026-56585MEDIUM4.3HCL IEM was affected with the Anti Clickjacking XFrame Options Header Missing. It may allow attackers to embed the appli...
CVE-2026-47396CRITICAL9.8PraisonAI is a multi-agent teams system. Prior to version 4.6.40, PraisonAI's call server exposes a network-facing agent...