CVE Vulnerability Database

Search and browse 389,918 CVE records with CVSS scores, EPSS exploit predictions, and CISA KEV status.

CVE IDSeverityCVSSDescription
CVE-2026-16198MEDIUM5.6A vulnerability was detected in Sipeed PicoClaw up to 0.2.9. The impacted element is an unknown function of the file web...
CVE-2026-16197MEDIUM6.3A security vulnerability has been detected in Sipeed PicoClaw up to 0.2.9. The affected element is the function handleMe...
CVE-2026-16196MEDIUM6.3A weakness has been identified in Sipeed PicoClaw up to 0.2.9. Impacted is the function isPrivateOrRestrictedIP of the f...
CVE-2026-16195MEDIUM6.3A security flaw has been discovered in Sipeed PicoClaw up to 0.2.9. This issue affects the function dispatchIncoming of ...
CVE-2026-10130HIGH8.8QueryWeaver contains an authentication bypass vulnerability that allows unauthenticated attackers to obtain valid sessio...
CVE-2026-16194MEDIUM6.3A vulnerability was determined in zhayujie CowAgent up to 2.1.1. This affects the function WebFetch.execute of the file ...
CVE-2026-16156LOW3.5A security flaw has been discovered in SourceCodester Class and Exam Timetabling System 1.0. This affects an unknown par...
CVE-2026-57857MEDIUM5.1The Flow Payment plugin for WordPress (flow.cl) version 3.0.8 is vulnerable to reflected cross-site scripting on the Woo...
CVE-2026-16155LOW3.5A vulnerability was identified in SourceCodester Class and Exam Timetabling System 1.0. Affected by this issue is some u...
CVE-2026-16154HIGH7.3A vulnerability was determined in SourceCodester Class and Exam Timetabling System 1.0/1.php. Affected by this vulnerabi...
CVE-2026-16152HIGH7.3A vulnerability was found in SourceCodester Class and Exam Timetabling System 1.0. Affected is an unknown function of th...
CVE-2026-12228MEDIUM5.4A stored cross-site scripting (XSS) vulnerability exists in the `POST /api/prompts/share` endpoint of parisneo/lollms (l...
CVE-2026-57848MEDIUM6.8Stoat for Android exports the chat.stoat.activities.ShareTargetActivity component (reachable to any process on the devic...
CVE-2026-53994MEDIUM6.5ProFTPD mod_sftp contains a heap-based buffer overflow reachable by an authenticated SFTP user. The fxp_packet_read() fu...
CVE-2026-16151MEDIUM6.3A vulnerability has been found in CartoDB carto-api-client 0.5.29. This impacts the function addFilter of the file src/f...
CVE-2026-16150MEDIUM6.3A vulnerability was found in RobinHerbots Inputmask up to 5.0.9. Affected by this issue is the function extendDefaults/e...
CVE-2026-16133MEDIUM5A flaw has been found in LiuMengxuan04 MiniCode 0.1.0. Affected by this vulnerability is the function child_process.spaw...
CVE-2026-16131MEDIUM6.3A weakness has been identified in itsourcecode Hospital Management System 1.0. This affects an unknown function of the f...
CVE-2026-16130MEDIUM4.4A vulnerability was identified in nearai ironclaw up to 0.29.1. The affected element is the function validate_path of th...
CVE-2026-16129MEDIUM5.3A vulnerability has been found in princezuda SafestClaw up to 4.2.4. This vulnerability affects the function ShellAction...
CVE-2026-16128HIGH7.3A security flaw has been discovered in zevorn rt-claw up to 0.2.0. This impacts the function receiver_thread of the file...
CVE-2026-16127HIGH7.3A vulnerability was identified in zevorn rt-claw up to 0.2.0. This affects the function claw_net_get/claw_net_post of th...
CVE-2026-16126HIGH7.3A vulnerability was determined in zevorn rt-claw up to 0.2.0. The impacted element is the function handle_rpc_request of...
CVE-2026-16125HIGH7.3A vulnerability was found in zevorn rt-claw up to 0.2.0. The affected element is the function claw_net_get/claw_net_post...
CVE-2026-16124MEDIUM6.3A security vulnerability has been detected in nextlevelbuilder GoClaw up to 3.15.0-beta.32. This affects the function Ch...