CVE Vulnerability Database
Search and browse 389,869 CVE records with CVSS scores, EPSS exploit predictions, and CISA KEV status.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2026-58624 | MEDIUM | 5.4 | 0.2% | Jul 20, 2026 | Improper input validation in sshd-git in Apache MINA SSHD. Apache MINA SSHD is a Java library for client-side and server... |
| CVE-2026-56624 | HIGH | 7.3 | 0.2% | Jul 20, 2026 | Improper certificate validation in Apache MINA SSHD (server-side). Apache MINA SSHD is a Java library for client-side an... |
| CVE-2026-56623 | HIGH | 7.1 | 0.3% | Jul 20, 2026 | Path traversal on Windows in Apache MINA SSHD component sshd-git. Apache MINA SSHD is a Java library for client-side and... |
| CVE-2026-56452 | HIGH | 7.5 | 0.4% | Jul 20, 2026 | Path traversal in the sshd-scp component of Apache MINA SSHD. Apache MINA SSHD is a Java library for client-side and ser... |
| CVE-2026-55219 | MEDIUM | 5.3 | 0.2% | Jul 20, 2026 | Paymenter is a free and open-source webshop solution for management of hosting services. In versions prior to 1.5.5, the... |
| CVE-2026-53596 | MEDIUM | 5.3 | 0.2% | Jul 20, 2026 | FreeScout is a free help desk and shared inbox built with PHP's Laravel framework. Prior to version 1.8.224, the FreeSco... |
| CVE-2026-53595 | CRITICAL | 9.4 | 0.3% | Jul 20, 2026 | FreeScout is a free help desk and shared inbox built with PHP's Laravel framework. Prior to version 1.8.224, the public ... |
| CVE-2026-53594 | MEDIUM | 4.9 | 0.4% | Jul 20, 2026 | FreeScout is a free help desk and shared inbox built with PHP's Laravel framework. FreeScout's `Manage -> Logs -> App Lo... |
| CVE-2026-47198 | HIGH | 8.5 | 0.4% | Jul 20, 2026 | Paymenter is a free and open-source webshop solution for management of hosting services. In versions prior to 1.5.1, the... |
| CVE-2026-47130 | HIGH | 7.1 | 0.2% | Jul 20, 2026 | NextCRM is open-source customer relationship management (CRM) software. Versions prior to 0.12.0 have a Broken Object Le... |
| CVE-2026-47129 | HIGH | 8.1 | 0.2% | Jul 20, 2026 | NextCRM is open-source customer relationship management (CRM) software. Versions prior to 0.12.0 have a Broken Access Co... |
| CVE-2026-44585 | MEDIUM | 5.4 | 0.3% | Jul 20, 2026 | Paymenter is a free and open-source webshop solution for management of hosting services. In versions prior to 1.5.0, the... |
| CVE-2026-44584 | MEDIUM | 4.3 | 0.2% | Jul 20, 2026 | Paymenter is a free and open-source webshop solution for management of hosting services. In versions prior to 1.5.0, the... |
| CVE-2026-44583 | MEDIUM | 5.3 | 0.4% | Jul 20, 2026 | Paymenter is a free and open-source webshop solution for management of hosting services. In versions prior to 1.5.0, the... |
| CVE-2026-44509 | — | — | 0.1% | Jul 20, 2026 | Rejected reason: ** REJECT ** DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: CVE-2026-43619. Reason: This candidate is a ... |
| CVE-2026-44508 | — | — | 0.3% | Jul 20, 2026 | Rejected reason: ** REJECT ** DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: CVE-2026-43618. Reason: This candidate is a ... |
| CVE-2026-44507 | — | — | 0.1% | Jul 20, 2026 | Rejected reason: ** REJECT ** DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: CVE-2026-43617. Reason: This candidate is a ... |
| CVE-2026-13381 | HIGH | 8.1 | 0.2% | Jul 20, 2026 | VSee Clinic 7.1.26 and API 1.3.0 contain an Insecure Direct Object Reference (IDOR) vulnerability in the /v1.3.0/api/fil... |
| CVE-2026-13380 | HIGH | 7.5 | 0.3% | Jul 20, 2026 | VSee Clinic 7.1.26 and VSee Clinic API 1.3.0 exposes cleartext SFTP credentials in the HTTP responses of three unauthent... |
| CVE-2024-51313 | CRITICAL | 9.8 | 0.2% | Jul 20, 2026 | The Tenda TX9 V22.03.02.20 firmware has a stack overflow vulnerability in the sub_42EA38 function of the file /goform/Se... |
| CVE-2024-51311 | CRITICAL | 9.8 | 0.2% | Jul 20, 2026 | The Tenda TX9 V22.03.02.05 firmware has a stack overflow vulnerability in the sub_4418CC function of the file /goform/Se... |
| CVE-2026-63767 | CRITICAL | 9.8 | 0.7% | Jul 20, 2026 | ktransformers through 0.6.3, fixed in commit def0f93, contains an unauthenticated pickle deserialization vulnerability t... |
| CVE-2026-63766 | CRITICAL | 9.8 | 1.4% | Jul 20, 2026 | GPT-SoVITS through 20250606v2pro contains an OS command injection vulnerability in webui.py where ASR, slice, denoise, a... |
| CVE-2026-53593 | HIGH | 8.8 | 0.3% | Jul 20, 2026 | FreeScout is a free help desk and shared inbox built with PHP's Laravel framework. Prior to version 1.8.224, the denylis... |
| CVE-2026-53592 | MEDIUM | 4.6 | 0.1% | Jul 20, 2026 | FreeScout is a free help desk and shared inbox built with PHP's Laravel framework. A Prototype Pollution condition in th... |
