21637 Total CVEs
12808 AI Analyzed
306 CISA KEV
4748 Critical
All Vendors
Showing 4901-4950 of 21637 CVEs Page 99 of 433
CVE-2026-46456
Analyzed
9.8
Apache Camel

Improper input validation in the Apache Camel AWS2-SQS component allows attackers to inject arbitrary control headers, potentially hijacking downstrea...

2026-07-07
CVE-2026-46455
Analyzed
9.8
Apache Apache Camel

The Apache Camel Keycloak component fails to properly validate token expiration and 'not-before' claims, allowing the acceptance of expired or invalid...

2026-07-07
CVE-2026-46454
Analyzed
9.8
Apache Apache Camel

The Apache Camel Cometd component is vulnerable to improper input validation, allowing unauthenticated remote attackers to inject control headers and...

2026-07-07
CVE-2026-4645
7.5
GitHub Multiple Products

A flaw was found in the `github

2026-03-24
CVE-2026-46444
Analyzed
8.8
Intel Flowise

Flowise is a drag & drop user interface to build a customized large language model flow

2026-06-11
CVE-2026-46439
Analyzed
7.8
Unknown compliance-trestle

compliance-trestle is a tooling platform for managing compliance as code

2026-08-16
CVE-2026-46425
Analyzed
9.9
Budibase Budibase

Budibase contains an authorization bypass vulnerability in the SCIM API, allowing authenticated users to perform unauthorized CRUD operations on all u...

2026-05-28
CVE-2026-46423
Analyzed
9.3
RocketChat Rocket.Chat

Rocket.Chat's SAML implementation fails to validate signatures when no IdP certificate is configured, allowing unauthenticated attackers to bypass aut...

2026-06-25
CVE-2026-46417
Analyzed
8.8
Google Angular

Angular is a development platform for building mobile and desktop web applications using TypeScript/JavaScript and other languages

2026-06-23
CVE-2026-46415
Analyzed
8.2
JasonLovesDoggo caddy-defender

The Caddy Defender plugin is a middleware for Caddy that allows users to block or manipulate requests based on the client's IP address

2026-07-21
CVE-2026-46414
Analyzed
8.8
Microsoft UFO open

Microsoft UFO open-source framework for intelligent automation across devices and platforms

2026-05-28
CVE-2026-46412
Analyzed
10
GitHub beproduct-org-nestjs-auth

The @beproduct/nestjs-auth package was compromised via a malicious npm publish, leading to the distribution of versions containing code designed to ex...

2026-07-21
CVE-2026-46410
Analyzed
8.7
Unknown filebrowser

FileBrowser Quantum is a free, self-hosted, web-based file manager

2026-07-21
CVE-2026-46408
Analyzed
7.6
Unknown Multiple Products

Vvveb is a powerful and easy to use CMS with page builder to build websites, blogs or ecommerce stores

2026-05-17
CVE-2026-46407
Analyzed
8.1
Unknown Multiple Products

Vvveb is a powerful and easy to use CMS with page builder to build websites, blogs or ecommerce stores

2026-05-16
CVE-2026-4640
7.5
Samsung Multiple Products

Vitals ESP developed by Galaxy Software Services has a Missing Authentication vulnerability, allowing unauthenticated remote attackers to execute cert...

2026-03-24
CVE-2026-4639
8.8
Samsung Multiple Products

Vitals ESP developed by Galaxy Software Services has a Incorrect Authorization vulnerability, allowing authenticated remote attackers to perform certa...

2026-03-24
CVE-2026-46389
Analyzed
10
Kubernetes UDS Identity Config

A logic error in the Kubernetes UDS Identity Config component allows attackers to bypass client secret authentication and obtain unauthorized OAuth2 t...

2026-06-06
CVE-2026-46386
Analyzed
9.9
Docker OpenProject

A default, insecure secret key configuration in the official OpenProject Docker image allows authenticated users to achieve remote code execution via...

2026-06-27
CVE-2026-46382
Analyzed
8.7
HP mrbs-code

The Meeting Room Booking System (MRBS) is a PHP-based application for booking meeting rooms

2026-08-13
CVE-2026-46368
Analyzed
8.8
OpenWrt luci-app-https-dns-proxy

luci-app-https-dns-proxy through 2025

2026-05-27
CVE-2026-46367
Analyzed
7.6
HP Multiple Products

phpMyFAQ before 4

2026-05-16
CVE-2026-46366
Analyzed
7.5
HP Multiple Products

phpMyFAQ before 4

2026-05-17
CVE-2026-46364
Analyzed
9.8
HP phpMyFAQ

phpMyFAQ contains an unauthenticated SQL injection vulnerability in its captcha handling methods, allowing attackers to extract sensitive database inf...

2026-05-16
CVE-2026-4636
Analyzed
8.1
Infor Multiple Products

A flaw was found in Keycloak

2026-04-03
CVE-2026-46359
Analyzed
7.5
HP Multiple Products

phpMyFAQ before 4

2026-05-17
CVE-2026-46354
Analyzed
9.1
Microsoft Coder

Coder contains an improper cryptographic signature verification flaw in `azureidentity.Validate()`, allowing attackers to forge session tokens via man...

2026-07-08
CVE-2026-46353
Analyzed
8.1
Unknown bigbluebutton

BigBlueButton is an open-source virtual classroom

2026-07-17
CVE-2026-46351
Analyzed
8.1
Unknown bigbluebutton

BigBlueButton is an open-source virtual classroom

2026-07-17
CVE-2026-46348
Analyzed
8.7
Mastodon Mastodon

Mastodon is a free, open-source social network server based on ActivityPub

2026-06-25
CVE-2026-46345
Analyzed
8.4
Unknown compliance-trestle

compliance-trestle is a tooling platform for managing compliance as code

2026-08-18
CVE-2026-46340
Analyzed
7.5
Netty Project Netty

Netty is a network application framework for development of protocol servers and clients

2026-06-15
CVE-2026-4634
Analyzed
7.5
Unknown Multiple Products

A flaw was found in Keycloak

2026-04-03
CVE-2026-46339
Analyzed
10
Unknown 9router

9Router contains an authentication bypass vulnerability allowing unauthenticated remote command execution via unprotected API endpoints.

2026-07-16
CVE-2026-46334
Analyzed
8.7
OpenSIPS opensips

OpenSIPS is a Session Initiation Protocol (SIP) server implementation

2026-08-05
CVE-2026-46332
Analyzed
8
Linux Kernel

In the Linux kernel, the following vulnerability has been resolved: greybus: gb-beagleplay: bound bootloader receive buffering cc1352_bootloader_rx(...

2026-06-14
CVE-2026-46330
Analyzed
7.8
Linux Kernel

In the Linux kernel, the following vulnerability has been resolved: Revert "net/smc: Introduce TCP ULP support" This reverts commit d7cd421da9da2cc7...

2026-06-15
CVE-2026-46328
Analyzed
7.3
Linux Kernel

In the Linux kernel, the following vulnerability has been resolved: apparmor: fix rlimit for posix cpu timers Posix cpu timers requires an additiona...

2026-06-15
CVE-2026-46327
Analyzed
7.8
Linux Kernel

In the Linux kernel, the following vulnerability has been resolved: dm: fix unlocked test for dm_suspended_md The function dm_blk_report_zones tests...

2026-06-15
CVE-2026-46326
Analyzed
8.4
Linux Kernel

In the Linux kernel, the following vulnerability has been resolved: iio: pressure: mprls0025pa: fix spi_transfer struct initialisation Make sure tha...

2026-06-14
CVE-2026-46324
Analyzed
7.8
Linux Kernel

In the Linux kernel, the following vulnerability has been resolved: netfilter: nf_tables: use list_del_rcu for netlink hooks nft_netdev_unregister_h...

2026-06-15
CVE-2026-46323
Analyzed
7.8
Linux Kernel

In the Linux kernel, the following vulnerability has been resolved: net: gro: don't merge zcopy skbs skb_gro_receive() can currently copy frags betw...

2026-06-15
CVE-2026-46322
Analyzed
7.1
Linux Kernel

In the Linux kernel, the following vulnerability has been resolved: tun: free page on build_skb failure in tun_xdp_one() When build_skb() fails in t...

2026-06-15
CVE-2026-46321
Analyzed
7.1
Linux Kernel

In the Linux kernel, the following vulnerability has been resolved: tun: free page on short-frame rejection in tun_xdp_one() tun_xdp_one() returns -...

2026-06-15
CVE-2026-46320
Analyzed
7.4
Linux Kernel

In the Linux kernel, the following vulnerability has been resolved: tap: free page on error paths in tap_get_user_xdp() tap_get_user_xdp() rejects a...

2026-06-15
CVE-2026-46319
Analyzed
7.8
Linux Kernel

In the Linux kernel, the following vulnerability has been resolved: net/sched: act_ct: Only release RCU read lock after ct_ft When looking up a flow...

2026-06-15
CVE-2026-46317
Analyzed
8.8
Linux kernel

In the Linux kernel, the following vulnerability has been resolved: KVM: arm64: Reassign nested_mmus array behind mmu_lock kvm->arch

2026-06-14
CVE-2026-46311
Analyzed
7.8
AMD Kernel

In the Linux kernel, the following vulnerability has been resolved: drm/amdgpu/userq: fix access to stale wptr mapping Use drm_exec to take both loc...

2026-06-15
CVE-2026-4631
Analyzed
9.8
Cockpit Cockpit

Cockpit's remote login feature is vulnerable to command injection via unsanitized input, allowing unauthenticated attackers to achieve remote code exe...

2026-04-08
CVE-2026-46307
Analyzed
8.3
Linux Kernel

In the Linux kernel, the following vulnerability has been resolved: wifi: ath5k: do not access array OOB Vincent reports: > The ath5k driver seems t...

2026-06-14