CVE Vulnerability Database
Search and browse 389,943 CVE records with CVSS scores, EPSS exploit predictions, and CISA KEV status.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2026-45325 | HIGH | 8.2 | 0.3% | Jul 16, 2026 | Gestor de Oferta is a web application for managing mobility service offerings. Prior to 20260509.0340.15, @tmlmobilidade... |
| CVE-2026-44632 | CRITICAL | 9.1 | 0.9% | Jul 16, 2026 | Yamcs is a mission control framework. Prior to 5.12.7, a server-side code injection vulnerability existed in the Yamcs a... |
| CVE-2026-44596 | CRITICAL | 9.8 | 1.4% | Jul 16, 2026 | Yamcs is a mission control framework. Prior to 5.12.7, the authentication endpoint POST /auth/token in yamcs-core, handl... |
| CVE-2026-44595 | MEDIUM | 4.3 | 1.0% | Jul 16, 2026 | Yamcs is a mission control framework. Prior to 5.12.7, the IAM API endpoints listUsers, getUser, listGroups, and getGrou... |
| CVE-2026-3031 | CRITICAL | 9.8 | 0.2% | Jul 16, 2026 | Image::EPEG versions through 0.15 for Perl embeds an unsupported version of the Epeg library. Image::EPEG includes Epeg... |
| CVE-2026-14371 | HIGH | 8.8 | — | Jul 16, 2026 | The Lenovo XClarity Integrator for Windows Admin Center plugin version 5.1.1 and below running on the WAC Gateway is vul... |
| CVE-2026-13401 | HIGH | 7.5 | — | Jul 16, 2026 | XML::Bare versions through 0.53 for Perl will hang in an infinite loop when parsing malformed attributes. The parserc_p... |
| CVE-2026-13397 | HIGH | 7.5 | 0.2% | Jul 16, 2026 | HTML::Bare versions through 0.04 for Perl will hang in an infinite loop when parsing malformed attributes. The parserc_... |
| CVE-2026-13104 | HIGH | 7.3 | — | Jul 16, 2026 | A potential vulnerability was reported in Lenovo App Store, distributed exclusively in the Chinese market, that could al... |
| CVE-2026-13103 | HIGH | 7.3 | — | Jul 16, 2026 | A potential path traversal vulnerability was reported in Lenovo App Store, distributed exclusively in the Chinese market... |
| CVE-2026-10590 | MEDIUM | 6.7 | — | Jul 16, 2026 | A potential missing authentication vulnerability could allow a local privileged attacker to use WMI commands to arbitrar... |
| CVE-2026-10589 | MEDIUM | 6.8 | — | Jul 16, 2026 | A potential out of bounds write vulnerability could allow a local privileged attacker to execute code in System Manageme... |
| CVE-2026-10588 | MEDIUM | 6.7 | — | Jul 16, 2026 | A potential vulnerability could allow a local privileged attacker to disclose the address of protected System Management... |
| CVE-2026-10587 | MEDIUM | 6.8 | — | Jul 16, 2026 | A potential out-of-bounds write vulnerability could allow a local privileged attacker to modify power management setting... |
| CVE-2025-45870 | MEDIUM | 6.5 | 0.3% | Jul 16, 2026 | LogicalDOC Enterprise up to and for v9.1.1 is vulnerable to Local File Inclusion (LFI) in the OnlyOfficeEditor servlet c... |
| CVE-2026-63082 | MEDIUM | 5.4 | — | Jul 16, 2026 | Perfect Support Ticketing & Document Management System through 1.7 contains a broken access control vulnerability that a... |
| CVE-2026-63081 | MEDIUM | 5.4 | 0.1% | Jul 16, 2026 | Perfect Support Ticketing & Document Management System through 1.7 contains a stored cross-site scripting vulnerability ... |
| CVE-2026-59867 | HIGH | 7.1 | 1.9% | Jul 16, 2026 | Kiota is an OpenAPI based HTTP Client code generator. Prior to 1.29.1 and 1.32.5, Kiota resolved OpenAPI $ref values by ... |
| CVE-2026-59866 | CRITICAL | 9.3 | 1.4% | Jul 16, 2026 | Kiota is an OpenAPI based HTTP Client code generator. Prior to 1.29.1 and 1.32.5, Kiota emitted x-ms-kiota-info clientCl... |
| CVE-2026-59865 | CRITICAL | 9.3 | 3.2% | Jul 16, 2026 | Kiota is an OpenAPI based HTTP Client code generator. Prior to 1.29.1 and 1.32.5, `kiota info` read x-ms-kiota-info.lang... |
| CVE-2026-59864 | CRITICAL | 9.3 | 1.3% | Jul 16, 2026 | Kiota is an OpenAPI based HTTP Client code generator. Prior to 1.29.1 and 1.32.5, `kiota plugin add` and `kiota plugin g... |
| CVE-2026-57206 | HIGH | 8.6 | — | Jul 16, 2026 | SimpleChat is a secure AI conversation application with personal and group workspaces for document-grounded interactions... |
| CVE-2026-57205 | MEDIUM | 4.3 | — | Jul 16, 2026 | SimpleChat is a secure AI conversation application with personal and group workspaces for document-grounded interactions... |
| CVE-2026-55440 | MEDIUM | 6.5 | — | Jul 16, 2026 | Microsoft UFO open-source framework for intelligent automation across devices and platforms. Prior to 3.0.7, the COMMAND... |
| CVE-2026-54733 | CRITICAL | 9.3 | — | Jul 16, 2026 | The Microsoft 365 and Microsoft Entra ID Plugins for Moodle provide Office 365 and Azure Active Directory integration fo... |
