CVE Vulnerability Database
Search and browse 389,943 CVE records with CVSS scores, EPSS exploit predictions, and CISA KEV status.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2026-45368 | HIGH | 8.4 | 0.3% | Jul 16, 2026 | Kirby is an open-source content management system. In versions prior to 4.9.1 and 5.4.1, the underlying URL methods for ... |
| CVE-2026-45334 | MEDIUM | 5.3 | 0.4% | Jul 16, 2026 | Kirby is an open-source content management system. In versions prior to 4.9.1 and 5.4.1, the content-locking feature ret... |
| CVE-2026-44180 | CRITICAL | 9.8 | 0.5% | Jul 16, 2026 | Jupyter Enterprise Gateway launches remote Jupyter Notebook kernels across distributed clusters like Apache Spark, Kuber... |
| CVE-2026-44177 | HIGH | 8.8 | 0.5% | Jul 16, 2026 | Kirby is an open-source content management system. In versions 5.3.0 and above but prior to 5.4.1, Kirby did not correct... |
| CVE-2026-44176 | MEDIUM | 6 | 0.2% | Jul 16, 2026 | Kirby is an open-source content management system. Versions prior to 4.9.1 and 5.4.1 do not check the `pages.access` per... |
| CVE-2026-44175 | HIGH | 8.5 | 0.3% | Jul 16, 2026 | Kirby is an open-source content management system. In versions prior to 4.9.1 and 5.4.1, Kirby did not securely sanitize... |
| CVE-2026-44174 | HIGH | 8.7 | 0.3% | Jul 16, 2026 | Kirby is an open-source content management system. Prior to 4.9.1 and 5.4.1, Kirby did not validate the model attributes... |
| CVE-2026-14782 | MEDIUM | 4.9 | 0.2% | Jul 16, 2026 | The Booking for Appointments and Events Calendar – Amelia plugin for WordPress is vulnerable to SQL Injection via the Cu... |
| CVE-2026-13713 | MEDIUM | 6.2 | 0.2% | Jul 16, 2026 | YAML::Syck versions before 1.47 for Perl allow a use-after-free and double-free via an anchor node freed while still on ... |
| CVE-2026-61378 | MEDIUM | 6.8 | 0.1% | Jul 16, 2026 | A divide-by-zero vulnerability in the Productivity Suite allows a local attacker to cause a division by zero leading to... |
| CVE-2026-60073 | MEDIUM | 5.9 | 0.2% | Jul 16, 2026 | An out-of-bounds read in the Productivity Suite allows a physical attacker to control the length of data sent to a USB ... |
| CVE-2026-57896 | MEDIUM | 6.9 | 0.1% | Jul 16, 2026 | An out-of-bounds read vulnerability in the Productivity Suite allows a local attacker to trigger kernel memory corrupti... |
| CVE-2026-55173 | HIGH | 8.1 | 3.4% | Jul 16, 2026 | WWBN AVideo is an open source video platform. Versions 29.0 and below remain vulnerable to OS command injection because ... |
| CVE-2026-53410 | HIGH | 7 | 0.1% | Jul 16, 2026 | A time-of-check to time-of-use (TOCTOU) race condition in the installation and uninstallation process of certain Zoom Cl... |
| CVE-2026-53409 | HIGH | 7.8 | 0.2% | Jul 16, 2026 | Improper Privilege Management in Zoom Rooms for Windows before version 7.1.0 may allow an authenticated user to conduct ... |
| CVE-2026-44023 | HIGH | 8.6 | 0.3% | Jul 16, 2026 | Docling Core defines core data types and transformations for the document processing application Docling. In versions 1.... |
| CVE-2026-44019 | HIGH | 8.1 | 0.2% | Jul 16, 2026 | Docling Core defines core data types and transformations for the document processing application Docling. In versions 2.... |
| CVE-2026-38158 | CRITICAL | 9.8 | 0.2% | Jul 16, 2026 | A SQL injection vulnerability in the /ureport/datasource/previewData component of ureport v2.2.9 allows attackers to acc... |
| CVE-2026-36425 | MEDIUM | 6.5 | 0.3% | Jul 16, 2026 | An issue in OPSWAT AppRemover Driver (ardrv.sys) v2017.10.02.1551 and earlier in IOCTL handler 0x2420031. Any local user... |
| CVE-2026-33731 | MEDIUM | 6.5 | 0.2% | Jul 16, 2026 | WWBN AVideo is an open source video platform. In versions prior to 29.0, the Authorize.Net webhook handler at plugin/Aut... |
| CVE-2026-33692 | HIGH | 7.5 | 0.5% | Jul 16, 2026 | WWBN AVideo is an open source video platform. Versions prior to 29.0 expose .env files to unauthenticated users through ... |
| CVE-2026-11889 | HIGH | 7.1 | 0.2% | Jul 16, 2026 | SALTO ProAccess Space software using the tenancy feature / logical partition is vulnerable to a privilege escalation at... |
| CVE-2024-34268 | HIGH | 7.1 | 0.2% | Jul 16, 2026 | EQ-3 Eqiva CC-RT-BLE Bluetooth Smart Radiator Thermostat Firmware up to the latest version 1.46 was discovered to allow ... |
| CVE-2024-32389 | LOW | 3.5 | 0.2% | Jul 16, 2026 | Buffer Overflow vulnerability in Kerlink Kerlink Wirnet iStation 868 KerOS v.4.3.3_20200803132042 allows a remote attack... |
| CVE-2024-32387 | MEDIUM | 5.7 | 0.2% | Jul 16, 2026 | An issue in Kerlink Kerlink Wirnet iStation 868 KerOS v.4.3.3_20200803132042 allows a remote attacker to obtain sensitiv... |
