CVE Vulnerability Database

Search and browse 389,869 CVE records with CVSS scores, EPSS exploit predictions, and CISA KEV status.

CVE IDSeverityCVSSDescription
CVE-2026-58624MEDIUM5.4Improper input validation in sshd-git in Apache MINA SSHD. Apache MINA SSHD is a Java library for client-side and server...
CVE-2026-56624HIGH7.3Improper certificate validation in Apache MINA SSHD (server-side). Apache MINA SSHD is a Java library for client-side an...
CVE-2026-56623HIGH7.1Path traversal on Windows in Apache MINA SSHD component sshd-git. Apache MINA SSHD is a Java library for client-side and...
CVE-2026-56452HIGH7.5Path traversal in the sshd-scp component of Apache MINA SSHD. Apache MINA SSHD is a Java library for client-side and ser...
CVE-2026-55219MEDIUM5.3Paymenter is a free and open-source webshop solution for management of hosting services. In versions prior to 1.5.5, the...
CVE-2026-53596MEDIUM5.3FreeScout is a free help desk and shared inbox built with PHP's Laravel framework. Prior to version 1.8.224, the FreeSco...
CVE-2026-53595CRITICAL9.4FreeScout is a free help desk and shared inbox built with PHP's Laravel framework. Prior to version 1.8.224, the public ...
CVE-2026-53594MEDIUM4.9FreeScout is a free help desk and shared inbox built with PHP's Laravel framework. FreeScout's `Manage -> Logs -> App Lo...
CVE-2026-47198HIGH8.5Paymenter is a free and open-source webshop solution for management of hosting services. In versions prior to 1.5.1, the...
CVE-2026-47130HIGH7.1NextCRM is open-source customer relationship management (CRM) software. Versions prior to 0.12.0 have a Broken Object Le...
CVE-2026-47129HIGH8.1NextCRM is open-source customer relationship management (CRM) software. Versions prior to 0.12.0 have a Broken Access Co...
CVE-2026-44585MEDIUM5.4Paymenter is a free and open-source webshop solution for management of hosting services. In versions prior to 1.5.0, the...
CVE-2026-44584MEDIUM4.3Paymenter is a free and open-source webshop solution for management of hosting services. In versions prior to 1.5.0, the...
CVE-2026-44583MEDIUM5.3Paymenter is a free and open-source webshop solution for management of hosting services. In versions prior to 1.5.0, the...
CVE-2026-44509Rejected reason: ** REJECT ** DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: CVE-2026-43619. Reason: This candidate is a ...
CVE-2026-44508Rejected reason: ** REJECT ** DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: CVE-2026-43618. Reason: This candidate is a ...
CVE-2026-44507Rejected reason: ** REJECT ** DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: CVE-2026-43617. Reason: This candidate is a ...
CVE-2026-13381HIGH8.1VSee Clinic 7.1.26 and API 1.3.0 contain an Insecure Direct Object Reference (IDOR) vulnerability in the /v1.3.0/api/fil...
CVE-2026-13380HIGH7.5VSee Clinic 7.1.26 and VSee Clinic API 1.3.0 exposes cleartext SFTP credentials in the HTTP responses of three unauthent...
CVE-2024-51313CRITICAL9.8The Tenda TX9 V22.03.02.20 firmware has a stack overflow vulnerability in the sub_42EA38 function of the file /goform/Se...
CVE-2024-51311CRITICAL9.8The Tenda TX9 V22.03.02.05 firmware has a stack overflow vulnerability in the sub_4418CC function of the file /goform/Se...
CVE-2026-63767CRITICAL9.8ktransformers through 0.6.3, fixed in commit def0f93, contains an unauthenticated pickle deserialization vulnerability t...
CVE-2026-63766CRITICAL9.8GPT-SoVITS through 20250606v2pro contains an OS command injection vulnerability in webui.py where ASR, slice, denoise, a...
CVE-2026-53593HIGH8.8FreeScout is a free help desk and shared inbox built with PHP's Laravel framework. Prior to version 1.8.224, the denylis...
CVE-2026-53592MEDIUM4.6FreeScout is a free help desk and shared inbox built with PHP's Laravel framework. A Prototype Pollution condition in th...