21637 Total CVEs
12808 AI Analyzed
306 CISA KEV
4748 Critical
All Vendors
Showing 1451-1500 of 21637 CVEs Page 30 of 433
CVE-2026-68124
Analyzed
9.6
Linux Kernel

A buffer overflow vulnerability in the Linux kernel MCTP serial driver allows local attackers to trigger arbitrary memory corruption via crafted zero-...

2026-08-20
CVE-2026-68121
Analyzed
7.8
Linux Kernel

In the Linux kernel, the following vulnerability has been resolved: pppoe: reload header pointer after dev_hard_header() pppoe_sendmsg() saves a poi...

2026-08-20
CVE-2026-68120
Analyzed
7.5
Linux Kernel

In the Linux kernel, the following vulnerability has been resolved: rtase: Workaround for TX hang caused by hardware packet parsing The hardware per...

2026-08-20
CVE-2026-68118
Analyzed
8.2
Linux Kernel

In the Linux kernel, the following vulnerability has been resolved: tcp: challenge ACK for non-exact RST in SYN-RECEIVED The SYN-RECEIVED request-so...

2026-08-20
CVE-2026-68116
Analyzed
7.9
Linux Kernel

In the Linux kernel, the following vulnerability has been resolved: vxlan: mdb: Fix source list corruption on a failed replace When replacing the so...

2026-08-20
CVE-2026-68104
Analyzed
7.8
AMD Kernel

In the Linux kernel, the following vulnerability has been resolved: drm/amdgpu: invoke pm_genpd_remove() before freeing genpd Call pm_genpd_remove()...

2026-08-20
CVE-2026-68100
Analyzed
8.1
Linux Kernel

In the Linux kernel, the following vulnerability has been resolved: ksmbd: validate num_subauth when copying ACE in set_ntacl_dacl set_ntacl_dacl()...

2026-08-19
CVE-2026-68098
Analyzed
8.8
Linux Kernel

In the Linux kernel, the following vulnerability has been resolved: ksmbd: bound DACL dedup walk to copied ACEs set_ntacl_dacl() can stop copying AC...

2026-08-19
CVE-2026-68097
Analyzed
8.8
Linux Kernel

In the Linux kernel, the following vulnerability has been resolved: ksmbd: validate ACE size against SID sub-authorities set_ntacl_dacl() validates...

2026-08-19
CVE-2026-68079
Analyzed
9.8
Apache Apache CXF

Apache CXF contains a flaw in the removeCodeGrant functionality, allowing an authorization code to be redeemed multiple times in violation of RFC spec...

2026-08-06
CVE-2026-68067
Analyzed
9.8
Quanovate Tech Inc. Mira Firmware and Mira App

The Mira cloud API login endpoint contains a critical authentication bypass vulnerability, allowing unauthenticated attackers to hijack user accounts...

2026-08-12
CVE-2026-68005
Analyzed
7.5
GitHub mini_httpd

An issue in ACME mini_httpd 1

2026-08-18
CVE-2026-67975
Analyzed
7.5
GitHub cFS (Core Flight System)

Incorrect access control in NASA cFS v7.0.1 allows attackers to arbitrarily remove low-index subscriptions and add new streams via sending TO_LAB add/...

2026-08-12
CVE-2026-6795
Analyzed
9.6
Infor Multiple Products

URL redirection to untrusted site ('open redirect') vulnerability in DivvyDrive Information Technologies Inc. DivvyDrive allows Parameter Injection....

2026-05-08
CVE-2026-67873
Analyzed
9.8
Unknown lib60870-C

A heap-based buffer overflow in lib60870-C 2.4.0 allows unauthenticated attackers to potentially achieve arbitrary code execution.

2026-08-06
CVE-2026-6786
Analyzed
8.1
Mozilla Firefox ESR

Memory safety bugs present in Firefox ESR 140

2026-04-27
CVE-2026-6785
Analyzed
8.1
Mozilla Firefox ESR

Memory safety bugs present in Firefox ESR 115

2026-04-27
CVE-2026-6784
7.5
Unknown Multiple Products

Memory safety bugs present in Firefox 149 and Thunderbird 149

2026-04-22
CVE-2026-67822
Analyzed
9.8
Tenda W6-S

A stack-based buffer overflow in the Tenda W6-S web interface allows remote, unauthenticated attackers to trigger a crash or execute arbitrary code vi...

2026-08-01
CVE-2026-6782
7.5
Infor Multiple Products

Information disclosure in the IP Protection component

2026-04-22
CVE-2026-6781
7.5
Unknown Multiple Products

Denial-of-service in the Audio/Video: Playback component

2026-04-22
CVE-2026-6780
7.5
Unknown Multiple Products

Denial-of-service in the Audio/Video: Playback component

2026-04-22
CVE-2026-6776
7.8
Unknown Multiple Products

Incorrect boundary conditions in the WebRTC: Networking component

2026-04-22
CVE-2026-6773
7.5
Unknown Multiple Products

Denial-of-service due to integer overflow in the Graphics: WebGPU component

2026-04-22
CVE-2026-6772
7.5
Unknown Multiple Products

Incorrect boundary conditions in the Libraries component in NSS

2026-04-22
CVE-2026-6771
Analyzed
9.8
Mitigation Multiple Products

Mitigation bypass in the DOM: Security component. This vulnerability was fixed in Firefox 150, Firefox ESR 140.10, Thunderbird 150, and Thunderbird 14...

2026-04-22
CVE-2026-6769
8.8
Privilege Multiple Products

Privilege escalation in the Debugger component

2026-04-22
CVE-2026-6768
Analyzed
9.8
Mitigation Multiple Products

Mitigation bypass in the Networking: Cookies component. This vulnerability was fixed in Firefox 150 and Thunderbird 150.

2026-04-22
CVE-2026-6766
7.5
Unknown Multiple Products

Incorrect boundary conditions in the Libraries component in NSS

2026-04-22
CVE-2026-67623
Analyzed
8.8
Mistral AI mistral-vibe

Mistral Vibe before 2

2026-08-06
CVE-2026-67622
Analyzed
9.9
FlowiseAI Flowise

Flowise through 3.1.4 contains an insecure direct object reference vulnerability in its OpenAI Assistants integration that allows authenticated attack...

2026-08-07
CVE-2026-67620
Analyzed
7.7
GitHub Flowise

Flowise through 3

2026-08-09
CVE-2026-67614
Analyzed
9.8
Unknown cyberpanel

CyberPanel versions prior to 3.0.0 contain a hard-coded JWT secret in the WebTerminal service, allowing unauthenticated attackers to forge tokens and...

2026-08-14
CVE-2026-67611
Analyzed
8.1
OpenEMR OpenEMR

OpenEMR through 8

2026-08-04
CVE-2026-67610
Analyzed
8.1
OpenEMR OpenEMR

OpenEMR through 8

2026-08-04
CVE-2026-6761
8.8
Privilege Multiple Products

Privilege escalation in the Networking component

2026-04-22
CVE-2026-67609
Analyzed
7.8
Telenia Software TVox

Telenia Software TVox 26

2026-08-04
CVE-2026-67595
Analyzed
8.1
WebReinvent VaahCMS

VaahCMS versions 2

2026-07-30
CVE-2026-67594
Analyzed
9.8
Unknown Spikster

Spikster contains a missing authentication vulnerability in its API routing, allowing unauthenticated remote attackers to access approximately 50 sens...

2026-07-31
CVE-2026-6759
7.5
Unknown Multiple Products

Use-after-free in the Widget: Cocoa component

2026-04-22
CVE-2026-67587
Analyzed
8.8
Apache Apache Airflow

Apache Airflow's Task SDK rebuilt a `Callback` object from serialized data by re-running its constructor, which imports the module named by the stored...

2026-08-14
CVE-2026-67585
Analyzed
8.7
DivvyPayHQ absinthe_federation

Allocation of Resources Without Limits or Throttling vulnerability in DivvyPayHQ absinthe_federation allows an unauthenticated remote attacker to abor...

2026-08-08
CVE-2026-67581
Analyzed
8.7
ZenHive mpp

Authentication Bypass by Capture-replay in ZenHive mpp allows an unauthenticated remote client to obtain paid resources by resubmitting one settled on...

2026-08-21
CVE-2026-6758
7.5
Unknown Multiple Products

Use-after-free in the JavaScript: WebAssembly component

2026-04-22
CVE-2026-6756
7.5
Google Multiple Products

Mitigation bypass in Firefox for Android

2026-04-23
CVE-2026-6754
7.5
JavaScript Multiple Products

Use-after-free in the JavaScript Engine component

2026-04-22
CVE-2026-67527
Analyzed
7.6
OpenProject OpenProject

OpenProject is open-source, web-based project management software

2026-08-01
CVE-2026-6750
8.8
Privilege Multiple Products

Privilege escalation in the Graphics: WebRender component

2026-04-22
CVE-2026-6749
7.5
Infor Multiple Products

Information disclosure due to uninitialized memory in the Graphics: Canvas2D component

2026-04-22
CVE-2026-6748
Analyzed
9.8
Uninitialized Multiple Products

Uninitialized memory in the Audio/Video: Web Codecs component. This vulnerability was fixed in Firefox 150, Firefox ESR 140.10, Thunderbird 150, and T...

2026-04-22