Search

Published: All 7d 30d 90d 12m
Severity: All Critical High Medium Low

34,865 CVEs · Critical severity

CVEs (34,865, showing first 500)

Only the first 500 CVEs (by current sort) are shown when searching without a keyword. Add a search term above to narrow the results.

Showing 351–375 of 34,865 (capped at 500)

CVE ID Severity Patch CVSS Published Description
CVE-2026-79787 CRITICAL 9.8 2026-08-25 Alluxio's S3 REST proxy fails to verify AWS Signature Version 4 signatures in its default configuration, allowing unauthenticated attackers to spoof user identity. Attacker…
CVE-2026-79748 CRITICAL Patched 9.9 2026-08-31 MCPHub is a unified hub for centrally managing and dynamically orchestrating multiple MCP servers/APIs into separate endpoints with flexible routing strategies. Prior to ve…
CVE-2026-79698 CRITICAL 9.9 2026-09-07 A vulnerability was identified in Advantech WISE-6610-NB, WISE-6610-EB, WISE-6610-TB, WISE-6610-JB, WISE-6610-CB, WISE-6610-EL-NB, WISE-6610-EL-EB, WISE-6610-EL-TB, WISE-66…
CVE-2026-79697 CRITICAL 9.9 2026-09-07 A vulnerability was determined in Advantech WISE-6610-NB, WISE-6610-EB, WISE-6610-TB, WISE-6610-JB, WISE-6610-CB, WISE-6610-EL-NB, WISE-6610-EL-EB, WISE-6610-EL-TB, WISE-66…
CVE-2026-79687 CRITICAL 9.0 2026-09-01 Dell PowerStore SDNAS contains a Missing Authentication for Critical Function vulnerability. An unauthenticated attacker with remote access could potentially exploit this v…
CVE-2026-79675 CRITICAL Patched 9.8 2026-08-25 NLTK before 3.10.3 fails to validate JVM options passed through the per-call options parameter in the java() function, allowing attackers to inject dangerous JVM flags. Att…
CVE-2026-79657 CRITICAL Patched 9.8 2026-08-25 NLTK versions before 3.10.3 contain a remote code execution vulnerability in allowlisted pickle loaders that trust entire module namespaces instead of specific safe callabl…
CVE-2026-79408 CRITICAL 9.8 2026-08-31 An OS command injection vulnerability in MetaGPT 0.8.1 allows an attacker to execute arbitrary commands via the path argument of RepoParser.rebuild_class_views() in metagpt…
CVE-2026-79391 CRITICAL 9.8 2026-09-04 No authentication exists in the MQTT service of Trueview 6.0.23.4. The MQTT broker accepts client connections on TCP port 1883 without requiring authentication, allowing a …
CVE-2026-79290 CRITICAL Patched 9.6 2026-08-25 Use after free in Aura in Google Chrome prior to 152.0.7977.65 allowed a remote attacker to execute arbitrary code outside the sandbox via a crafted HTML page. (Chromium se…
CVE-2026-79282 CRITICAL Patched 9.6 2026-08-25 Use after free in ANGLE in Google Chrome on on Android prior to 152.0.7977.65 allowed a remote attacker to execute arbitrary code outside the sandbox via a crafted HTML pag…
CVE-2026-79275 CRITICAL Patched 9.6 2026-08-25 Use after free in ANGLE in Google Chrome prior to 152.0.7977.65 allowed a remote attacker to execute arbitrary code outside the sandbox via a crafted HTML page. (Chromium s…
CVE-2026-79257 CRITICAL Patched 9.6 2026-08-25 Use after free in Views in Google Chrome prior to 152.0.7977.65 allowed a remote attacker to execute arbitrary code outside the sandbox via a crafted HTML page. (Chromium s…
CVE-2026-79235 CRITICAL Patched 9.6 2026-08-25 Use after free in WebGL in Google Chrome prior to 152.0.7977.65 allowed a remote attacker to execute arbitrary code outside the sandbox via a crafted HTML page. (Chromium s…
CVE-2026-79232 CRITICAL Patched 9.6 2026-08-25 Use after free in Aura in Google Chrome prior to 152.0.7977.65 allowed a remote attacker to potentially execute arbitrary code outside the sandbox via a crafted HTML page. …
CVE-2026-79200 CRITICAL Patched 9.6 2026-08-25 Use after free in Aura in Google Chrome prior to 152.0.7977.65 allowed a remote attacker to execute arbitrary code outside the sandbox via a crafted HTML page. (Chromium se…
CVE-2026-79189 CRITICAL Patched 9.6 2026-08-25 Out of bounds write in ANGLE in Google Chrome prior to 152.0.7977.65 allowed a remote attacker to potentially execute arbitrary code outside the sandbox via a crafted HTML …
CVE-2026-79188 CRITICAL Patched 9.6 2026-08-25 Out of bounds write in ANGLE in Google Chrome prior to 152.0.7977.65 allowed a remote attacker to potentially execute arbitrary code outside the sandbox via a crafted HTML …
CVE-2026-79152 CRITICAL Patched 9.8 2026-08-25 Incorrect authorization in CustomTabs in Google Chrome on on Android prior to 152.0.7977.65 allowed a local attacker to bypass web origin policy via a co-installed app. (Ch…
CVE-2026-79150 CRITICAL Patched 9.6 2026-08-25 Use after free in Views in Google Chrome on on Mac prior to 152.0.7977.65 allowed a remote attacker to execute arbitrary code outside the sandbox via a crafted HTML page. (…
CVE-2026-79149 CRITICAL Patched 9.6 2026-08-25 Use after free in ANGLE in Google Chrome prior to 152.0.7977.65 allowed a remote attacker to execute arbitrary code outside the sandbox via a crafted HTML page. (Chromium s…
CVE-2026-79148 CRITICAL Patched 9.1 2026-08-25 Off-by-one error in DevTools in Google Chrome prior to 152.0.7977.65 allowed a remote attacker leveraging social engineering to potentially read memory inside the sandbox v…
CVE-2026-79140 CRITICAL Patched 9.6 2026-08-25 Use after free in Views in Google Chrome on on Mac prior to 152.0.7977.65 allowed a remote attacker to execute arbitrary code outside the sandbox via a crafted HTML page. (…
CVE-2026-79138 CRITICAL Patched 9.6 2026-08-25 Out of bounds write in ANGLE in Google Chrome on on Windows prior to 152.0.7977.65 allowed a remote attacker to potentially execute arbitrary code outside the sandbox via a…
CVE-2026-79131 CRITICAL Patched 9.6 2026-08-25 Out of bounds write in ANGLE in Google Chrome prior to 152.0.7977.65 allowed a remote attacker to execute arbitrary code outside the sandbox via a crafted HTML page. (Chrom…