Search

Published: All 7d 30d 90d 12m
Severity: All Critical High Medium Low

30,217 CVEs

CVEs (30,217, showing first 500)

Only the first 500 CVEs (by current sort) are shown when searching without a keyword. Add a search term above to narrow the results.

Showing 276–300 of 30,217 (capped at 500)

CVE ID Severity Patch CVSS Published Description
CVE-2026-18527 CRITICAL 9.9 2026-08-28 IBM Administration Runtime Expert for i 1R1M0 IBM Application Runtime Expert (ARE) for i could allow a remote attacker to gain elevated privileges, caused by ARE GUI compon…
CVE-2026-55565 CRITICAL Patched 9.9 2026-08-28 Yamcs is a mission control framework. Prior to 5.12.8 and 5.13.2, Yamcs LikeExpression.fillCode_getValueReturn in yamcs-core/src/main/java/org/yamcs/yarch/streamsql/LikeExp…
CVE-2026-55634 CRITICAL Patched 9.9 2026-08-28 Pimcore is an Open Source Data & Experience Management Platform. Prior to 11.5.19, 12.3.10, and 2026.1.6, the class-definition import endpoint /pimcore-studio/api/class/def…
CVE-2026-77553 CRITICAL 9.9 2026-08-26 A malicious actor with access to the network and low privileges could exploit an Improper Access Control vulnerability found in UniFi Access Application to escalate privile…
CVE-2026-77546 CRITICAL 9.9 2026-08-26 A malicious actor with access to the network and low privileges could exploit an Improper Input Validation vulnerability found in UniFi Access Application to execute a Comm…
CVE-2026-77547 CRITICAL 9.9 2026-08-26 A malicious actor with access to the network and low privileges could exploit an Improper Input Validation vulnerability found in UniFi Access Application to execute a Comm…
CVE-2026-77548 CRITICAL 9.9 2026-08-26 A malicious actor with access to the network and low privileges could exploit an Improper Input Validation vulnerability found in UniFi Protect Application to execute a Com…
CVE-2026-77543 CRITICAL 9.9 2026-08-26 A malicious actor with access to the network and low privileges could exploit an Improper Input Validation vulnerability found in UniFi Access Application to execute a Comm…
CVE-2026-77534 CRITICAL 9.9 2026-08-26 A malicious actor with access to the network and low privileges could exploit an Improper Access Control vulnerability found in certain devices running UniFi OS to escalate…
CVE-2026-77536 CRITICAL 9.9 2026-08-26 A malicious actor with access to the network and low privileges could exploit an Improper Access Control vulnerability found in certain devices running UniFi OS to escalate…
CVE-2026-77533 CRITICAL 9.9 2026-08-26 A malicious actor with access to the network and low privileges could exploit an Improper Input Validation vulnerability found in UniFi Protect Application to execute a Com…
CVE-2026-65093 CRITICAL Patched 9.9 2026-08-25 NVIDIA OpenShell for Linux contains a vulnerability where an attacker could cause a sandbox escape. A successful exploit of this vulnerability might lead to code execution,…
CVE-2026-65083 CRITICAL Patched 9.9 2026-08-25 NVIDIA OpenShell for Linux contains a vulnerability in its sandbox provisioning API, where an attacker could cause an incomplete list of disallowed inputs. A successful exp…
CVE-2026-32559 CRITICAL 9.9 2026-08-24 Subscriber Arbitrary File Upload in UltimateAI <= 3.1.0 versions.
CVE-2026-66897 CRITICAL 9.9 2026-08-24 A path traversal vulnerability in LXD's instance template processing allows an attacker with container edit permissions, or any user launching a crafted image, to overwrite&hellip;
CVE-2026-78169 CRITICAL 9.9 2026-08-24 A vulnerability was detected in UTT HiPER 1250GW up to 3.2.7-210907-180535. This impacts the function strcpy of the file /goform/aspRemoteApConfTempSend of the component HT&hellip;
CVE-2026-78155 CRITICAL 9.9 2026-08-23 privilege escalation in StackGres operator allows a low-privilege tenant who owns a database to gain administrator privileges
CVE-2026-78050 CRITICAL 9.9 2026-08-23 A vulnerability was found in Comfast CF-N1-S 2.6.0.1. The affected element is the function sub_41AD7C of the file /cgi-bin/mbox-config?method=SET&section=ntp_timezone of th&hellip;
CVE-2026-62283 CRITICAL Patched 9.9 2026-08-21 Nezha Monitoring is a self-hostable, lightweight, servers and websites monitoring and O&M tool. Nezha versions 1.14.13 through 1.14.14 and 2.0.0 through 2.0.9 do not bind s&hellip;
CVE-2026-77810 CRITICAL Patched 9.9 2026-08-21 In the Neptune connector, a user with access to Neptune through Athena Federated Query could gain access to properties in the Lambda supplying the compute for the connector&hellip;
CVE-2026-62867 CRITICAL 9.9 2026-08-21 Incus is a system container and virtual machine manager. Prior to version 7.3.0, improper validation of user-provided `block.create_options` in storage volume configuration&hellip;
CVE-2026-62940 CRITICAL 9.9 2026-08-21 Incus is a system container and virtual machine manager. Prior to version 7.3.0, when migrating an instance to another cluster member, user-supplied configuration overrides&hellip;
CVE-2026-62941 CRITICAL 9.9 2026-08-21 Incus is a system container and virtual machine manager. Prior to version 7.3.0, when copying an instance across projects, the project restriction check (`AllowInstanceCrea&hellip;
CVE-2026-63125 CRITICAL 9.9 2026-08-21 Incus is a system container and virtual machine manager. Prior to version 7.3.0, an unprivileged, project-confined Incus user (a non-admin TLS/RBAC identity with `can_creat&hellip;
CVE-2026-63343 CRITICAL Patched 9.9 2026-08-21 Incus is a system container and virtual machine manager. Prior to version 7.3.0, a malicious image containing a `metadata.yaml` symlink pointing to an arbitrary host path a&hellip;