CVE Vulnerability Database
Search and browse 389,869 CVE records with CVSS scores, EPSS exploit predictions, and CISA KEV status.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2026-13439 | CRITICAL | 9.8 | 0.4% | Jul 21, 2026 | The Easy Form Builder by WhiteStudio plugin for WordPress is vulnerable to Unauthenticated Privilege Escalation to Admin... |
| CVE-2023-37507 | HIGH | 7.5 | 0.3% | Jul 21, 2026 | HCL DevOps Plan is susceptible to an information disclosure that can allow an attacker to focus their attacks based upon... |
| CVE-2026-15156 | MEDIUM | 6.4 | 0.2% | Jul 21, 2026 | The Essential Addons for Elementor – Popular Elementor Templates & Widgets plugin for WordPress is vulnerable to Stored ... |
| CVE-2023-37508 | MEDIUM | 6.1 | 0.2% | Jul 21, 2026 | HCL DevOps Plan is potentially susceptible to Cross-Site Scripting (XSS) which could allow an attacker to exploit this v... |
| CVE-2026-59776 | HIGH | 7 | 0.1% | Jul 21, 2026 | Missing Cryptographic Step (CWE-325) vulnerability exists in certain FeliCa IC chips shipped in or before 2017. If the v... |
| CVE-2026-16336 | MEDIUM | 5.3 | 0.3% | Jul 21, 2026 | A vulnerability was found in trinodb trino 481. Affected is an unknown function of the file core/trino-main/src/main/jav... |
| CVE-2026-6952 | HIGH | 7.2 | 0.9% | Jul 21, 2026 | A post-authentication command injection vulnerability in the "LogServer" field of the syslog component in Zyxel AX7501-B... |
| CVE-2026-63729 | MEDIUM | 6.8 | 0.1% | Jul 21, 2026 | The SyncTeX parser (synctex_parser.c) shipped with TeX Live and embedded by downstream consumers such as GNOME Evince co... |
| CVE-2026-16334 | MEDIUM | 6.3 | 0.2% | Jul 21, 2026 | A vulnerability was identified in itsourcecode Hospital Management System 1.0. This vulnerability affects unknown code o... |
| CVE-2026-16332 | HIGH | 7.3 | 0.5% | Jul 21, 2026 | A vulnerability was detected in D-Link DNS-320 1.0.2. This impacts an unknown function of the file /mydlink/multi_upload... |
| CVE-2026-16331 | HIGH | 7.3 | 0.7% | Jul 21, 2026 | A security vulnerability has been detected in D-Link DNS-320 1.0.2. This affects an unknown function of the file /web/fu... |
| CVE-2026-16330 | HIGH | 7.3 | 0.7% | Jul 21, 2026 | A weakness has been identified in D-Link DNS-320 1.0.2. The impacted element is an unknown function of the file /web/jqu... |
| CVE-2026-16329 | HIGH | 7.3 | 0.5% | Jul 21, 2026 | A vulnerability was identified in D-Link DNS-320 1.0.2. Impacted is an unknown function of the file /photo_center/php/up... |
| CVE-2026-63728 | HIGH | 8.1 | 0.1% | Jul 21, 2026 | Gitleaks prior to 8.30.1 contains a template injection vulnerability that allows attackers who can supply or influence r... |
| CVE-2026-55833 | HIGH | 7.5 | 0.6% | Jul 21, 2026 | Netty is a network application framework for development of protocol servers and clients. Prior to 4.1.136.Final and 4.2... |
| CVE-2026-55831 | HIGH | 7.5 | 0.7% | Jul 21, 2026 | Netty is a network application framework for development of protocol servers and clients. Prior to 4.1.136.Final and 4.2... |
| CVE-2026-16327 | HIGH | 7.3 | 0.7% | Jul 21, 2026 | A vulnerability was determined in D-Link DNS-320 1.0.2. This issue affects some unknown processing of the file /web/web_... |
| CVE-2026-15905 | HIGH | 7.8 | 0.1% | Jul 20, 2026 | Use after free in Aura in Google Chrome prior to 150.0.7871.128 allowed a local attacker to potentially exploit heap cor... |
| CVE-2026-15904 | HIGH | 8.8 | 0.3% | Jul 20, 2026 | Use after free in Ozone in Google Chrome on Linux prior to 150.0.7871.128 allowed a remote attacker who convinced a user... |
| CVE-2026-15903 | HIGH | 8.8 | 0.3% | Jul 20, 2026 | Out of bounds read and write in V8 in Google Chrome prior to 150.0.7871.128 allowed a remote attacker to execute arbitra... |
| CVE-2026-15902 | HIGH | 8.8 | 0.3% | Jul 20, 2026 | Use after free in Cast in Google Chrome prior to 150.0.7871.128 allowed a remote attacker to execute arbitrary code insi... |
| CVE-2026-15901 | CRITICAL | 9.6 | 0.3% | Jul 20, 2026 | Use after free in Network in Google Chrome prior to 150.0.7871.128 allowed a remote attacker to potentially exploit heap... |
| CVE-2026-15900 | CRITICAL | 9.6 | 0.3% | Jul 20, 2026 | Use after free in GPU in Google Chrome on Android prior to 150.0.7871.128 allowed a remote attacker to potentially perfo... |
| CVE-2026-15899 | CRITICAL | 9.6 | 0.3% | Jul 20, 2026 | Use after free in CameraCapture in Google Chrome on Mac prior to 150.0.7871.128 allowed a remote attacker to potentially... |
| CVE-2026-64626 | MEDIUM | 6.4 | 0.2% | Jul 20, 2026 | AVideo versions from commit 0dbadbca through latest master contain a server-side request forgery vulnerability in the en... |
