Search
15,635 CVEs · Low severity
CVEs (15,635, showing first 500)
Only the first 500 CVEs (by current sort) are shown when searching without a keyword. Add a search term above to narrow the results.
Showing 301–325 of 15,635 (capped at 500)
| CVE ID | Severity | Patch | CVSS | Published ↓ | Description |
|---|---|---|---|---|---|
| CVE-2026-62529 | LOW | 3.5 | 2026-08-18 | Vulnerability in the Oracle Hyperion Calculation Manager product of Oracle Hyperion (component: Security). The supported version that is affected is 11.2.25.0.000. Easily… | |
| CVE-2026-62526 | LOW | 3.3 | 2026-08-18 | Vulnerability in the Oracle Hyperion Infrastructure Technology product of Oracle Hyperion (component: Common Security). The supported version that is affected is 11.2.25.… | |
| CVE-2026-62511 | LOW | 3.0 | 2026-08-18 | Vulnerability in the Oracle Hyperion Infrastructure Technology product of Oracle Hyperion (component: Installation and Configuration). The supported version that is affec… | |
| CVE-2026-62461 | LOW | 3.1 | 2026-08-18 | Vulnerability in the Oracle Hyperion Calculation Manager product of Oracle Hyperion (component: Security). The supported version that is affected is 11.2.25.0.000. Diffic… | |
| CVE-2026-60853 | LOW | 3.7 | 2026-08-18 | Vulnerability in the Helidon product of Oracle Fusion Middleware (component: Imperative Web Server). Supported versions that are affected are 3.0.0-3.2.19. Difficult to ex… | |
| CVE-2026-60589 | LOW | 3.7 | 2026-08-18 | Vulnerability in the Oracle Java SE, Oracle GraalVM for JDK, Oracle GraalVM Enterprise Edition product of Oracle Java SE (component: Security). Supported versions that are… | |
| CVE-2026-68927 | LOW | Patched | 3.0 | 2026-08-18 | MobSF is a mobile application security testing tool used. Prior to 4.5.1, get_browsable_activities in mobsf/StaticAnalyzer/views/android/manifest_analysis.py validates only… |
| CVE-2026-75904 | LOW | 3.3 | 2026-08-18 | libmodplug through 0.8.9.1 contains an out-of-bounds read in pat_smplooped in src/load_pat.cpp. The function validates only the upper bound of its sample index against MAXS… | |
| CVE-2026-62684 | LOW | Patched | 2.7 | 2026-08-18 | File Browser is a file managing interface for uploading, deleting, previewing, renaming, and editing files within a specified directory. Prior to 2.63.17, the Link storage … |
| CVE-2026-45128 | LOW | Patched | 3.5 | 2026-08-18 | MyBB is free and open source forum software. Prior to 1.8.40, the ACP Users View Manager module does not validate requests correctly, allowing same-site attackers to change… |
| CVE-2026-45127 | LOW | Patched | 3.5 | 2026-08-18 | MyBB is free and open source forum software. Prior to 1.8.40, the ACP Mass Mail module does not validate certain requests correctly, allowing same-site attackers to create … |
| CVE-2026-45126 | LOW | Patched | 3.5 | 2026-08-18 | MyBB is free and open source forum software. Prior to 1.8.40, the Admin CP Security Questions module does not validate the anti-CSRF token correctly, allowing same-site att… |
| CVE-2026-63632 | LOW | Patched | 3.3 | 2026-08-18 | Open Neural Network Exchange (ONNX) is an open standard for machine learning interoperability. From 1.3.0 until 1.22.0, onnx.version_converter.convert_version() can perform… |
| CVE-2026-1199 | LOW | Patched | 3.7 | 2026-08-18 | Zabbix API and Frontend login lockout mechanism has a flaw where several unsuccessful login requests are not properly counted towards the block counter if sent simultaneous… |
| CVE-2026-75774 | LOW | 3.7 | 2026-08-18 | A vulnerability was determined in karakeep-app karakeep up to 0.32.0. The impacted element is an unknown function of the file apps/web/server/auth.ts of the component OAuth… | |
| CVE-2026-75773 | LOW | 3.7 | 2026-08-18 | A vulnerability was found in karakeep-app karakeep up to 0.32.0. The affected element is the function authorize of the file apps/web/server/auth.ts of the component Login E… | |
| CVE-2026-9693 | LOW | Patched | 3.5 | 2026-08-17 | Mattermost versions 10.11.x <= 10.11.20, 11.7.x <= 11.7.5 Mattermost fails to remove thread membership records when a user is removed from or leaves a team, which allows a … |
| CVE-2026-75587 | LOW | Patched | 3.6 | 2026-08-17 | Mattermost Desktop App versions <=6.2 6.2.2.0 fail to redact the pre-auth secret when generating a diagnostics report, which allows a local attacker with access to a user's… |
| CVE-2026-64782 | LOW | Patched | 3.1 | 2026-08-17 | A memory corruption vulnerability was addressed with improved locking. This issue is fixed in Safari 26.6.1, iOS 18.7.10 and iPadOS 18.7.10, iOS 26.6.1 and iPadOS 26.6.1, m… |
| CVE-2026-64779 | LOW | Patched | 3.1 | 2026-08-17 | A memory corruption vulnerability was addressed with improved locking. This issue is fixed in Safari 26.6.1, iOS 18.7.10 and iPadOS 18.7.10, iOS 26.6.1 and iPadOS 26.6.1, m… |
| CVE-2026-75483 | LOW | 3.3 | 2026-08-17 | powerlevel10k fails to neutralize control characters in the package.json version field when rendering the package prompt segment. Attackers can inject raw escape bytes in t… | |
| CVE-2026-75052 | LOW | Patched | 3.6 | 2026-08-17 | In JetBrains IntelliJ IDEA before 2026.2.1 command execution via crafted Markdown preview content was possible in trusted projects |
| CVE-2026-56089 | LOW | Patched | 3.3 | 2026-08-17 | Dell ObjectScale, versions prior to 4.3.0.1, contain(s) a Path Traversal vulnerability. A low privileged attacker with local access could potentially exploit this vulnerabi… |
| CVE-2026-70412 | LOW | 3.5 | 2026-08-17 | Dell iDRAC9, versions prior to 7.20.30.50, and Dell iDRAC10, version prior to 1.20.60.50, contain a Remanent Data Readable after Memory Erase vulnerability. A low privilege… | |
| CVE-2026-74887 | LOW | Patched | 3.7 | 2026-08-17 | openssl_encrypt before 1.4.0 imports Python's non-cryptographic 'random' module (Mersenne Twister PRNG) at line 15 of openssl_encrypt/modules/pqc.py. No direct calls to ran… |