Search
34,865 CVEs · Critical severity
CVEs (34,865, showing first 500)
Only the first 500 CVEs (by current sort) are shown when searching without a keyword. Add a search term above to narrow the results.
Showing 351–375 of 34,865 (capped at 500)
| CVE ID ↓ | Severity | Patch | CVSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2026-79787 | CRITICAL | 9.8 | 2026-08-25 | Alluxio's S3 REST proxy fails to verify AWS Signature Version 4 signatures in its default configuration, allowing unauthenticated attackers to spoof user identity. Attacker… | |
| CVE-2026-79748 | CRITICAL | Patched | 9.9 | 2026-08-31 | MCPHub is a unified hub for centrally managing and dynamically orchestrating multiple MCP servers/APIs into separate endpoints with flexible routing strategies. Prior to ve… |
| CVE-2026-79698 | CRITICAL | 9.9 | 2026-09-07 | A vulnerability was identified in Advantech WISE-6610-NB, WISE-6610-EB, WISE-6610-TB, WISE-6610-JB, WISE-6610-CB, WISE-6610-EL-NB, WISE-6610-EL-EB, WISE-6610-EL-TB, WISE-66… | |
| CVE-2026-79697 | CRITICAL | 9.9 | 2026-09-07 | A vulnerability was determined in Advantech WISE-6610-NB, WISE-6610-EB, WISE-6610-TB, WISE-6610-JB, WISE-6610-CB, WISE-6610-EL-NB, WISE-6610-EL-EB, WISE-6610-EL-TB, WISE-66… | |
| CVE-2026-79687 | CRITICAL | 9.0 | 2026-09-01 | Dell PowerStore SDNAS contains a Missing Authentication for Critical Function vulnerability. An unauthenticated attacker with remote access could potentially exploit this v… | |
| CVE-2026-79675 | CRITICAL | Patched | 9.8 | 2026-08-25 | NLTK before 3.10.3 fails to validate JVM options passed through the per-call options parameter in the java() function, allowing attackers to inject dangerous JVM flags. Att… |
| CVE-2026-79657 | CRITICAL | Patched | 9.8 | 2026-08-25 | NLTK versions before 3.10.3 contain a remote code execution vulnerability in allowlisted pickle loaders that trust entire module namespaces instead of specific safe callabl… |
| CVE-2026-79408 | CRITICAL | 9.8 | 2026-08-31 | An OS command injection vulnerability in MetaGPT 0.8.1 allows an attacker to execute arbitrary commands via the path argument of RepoParser.rebuild_class_views() in metagpt… | |
| CVE-2026-79391 | CRITICAL | 9.8 | 2026-09-04 | No authentication exists in the MQTT service of Trueview 6.0.23.4. The MQTT broker accepts client connections on TCP port 1883 without requiring authentication, allowing a … | |
| CVE-2026-79290 | CRITICAL | Patched | 9.6 | 2026-08-25 | Use after free in Aura in Google Chrome prior to 152.0.7977.65 allowed a remote attacker to execute arbitrary code outside the sandbox via a crafted HTML page. (Chromium se… |
| CVE-2026-79282 | CRITICAL | Patched | 9.6 | 2026-08-25 | Use after free in ANGLE in Google Chrome on on Android prior to 152.0.7977.65 allowed a remote attacker to execute arbitrary code outside the sandbox via a crafted HTML pag… |
| CVE-2026-79275 | CRITICAL | Patched | 9.6 | 2026-08-25 | Use after free in ANGLE in Google Chrome prior to 152.0.7977.65 allowed a remote attacker to execute arbitrary code outside the sandbox via a crafted HTML page. (Chromium s… |
| CVE-2026-79257 | CRITICAL | Patched | 9.6 | 2026-08-25 | Use after free in Views in Google Chrome prior to 152.0.7977.65 allowed a remote attacker to execute arbitrary code outside the sandbox via a crafted HTML page. (Chromium s… |
| CVE-2026-79235 | CRITICAL | Patched | 9.6 | 2026-08-25 | Use after free in WebGL in Google Chrome prior to 152.0.7977.65 allowed a remote attacker to execute arbitrary code outside the sandbox via a crafted HTML page. (Chromium s… |
| CVE-2026-79232 | CRITICAL | Patched | 9.6 | 2026-08-25 | Use after free in Aura in Google Chrome prior to 152.0.7977.65 allowed a remote attacker to potentially execute arbitrary code outside the sandbox via a crafted HTML page. … |
| CVE-2026-79200 | CRITICAL | Patched | 9.6 | 2026-08-25 | Use after free in Aura in Google Chrome prior to 152.0.7977.65 allowed a remote attacker to execute arbitrary code outside the sandbox via a crafted HTML page. (Chromium se… |
| CVE-2026-79189 | CRITICAL | Patched | 9.6 | 2026-08-25 | Out of bounds write in ANGLE in Google Chrome prior to 152.0.7977.65 allowed a remote attacker to potentially execute arbitrary code outside the sandbox via a crafted HTML … |
| CVE-2026-79188 | CRITICAL | Patched | 9.6 | 2026-08-25 | Out of bounds write in ANGLE in Google Chrome prior to 152.0.7977.65 allowed a remote attacker to potentially execute arbitrary code outside the sandbox via a crafted HTML … |
| CVE-2026-79152 | CRITICAL | Patched | 9.8 | 2026-08-25 | Incorrect authorization in CustomTabs in Google Chrome on on Android prior to 152.0.7977.65 allowed a local attacker to bypass web origin policy via a co-installed app. (Ch… |
| CVE-2026-79150 | CRITICAL | Patched | 9.6 | 2026-08-25 | Use after free in Views in Google Chrome on on Mac prior to 152.0.7977.65 allowed a remote attacker to execute arbitrary code outside the sandbox via a crafted HTML page. (… |
| CVE-2026-79149 | CRITICAL | Patched | 9.6 | 2026-08-25 | Use after free in ANGLE in Google Chrome prior to 152.0.7977.65 allowed a remote attacker to execute arbitrary code outside the sandbox via a crafted HTML page. (Chromium s… |
| CVE-2026-79148 | CRITICAL | Patched | 9.1 | 2026-08-25 | Off-by-one error in DevTools in Google Chrome prior to 152.0.7977.65 allowed a remote attacker leveraging social engineering to potentially read memory inside the sandbox v… |
| CVE-2026-79140 | CRITICAL | Patched | 9.6 | 2026-08-25 | Use after free in Views in Google Chrome on on Mac prior to 152.0.7977.65 allowed a remote attacker to execute arbitrary code outside the sandbox via a crafted HTML page. (… |
| CVE-2026-79138 | CRITICAL | Patched | 9.6 | 2026-08-25 | Out of bounds write in ANGLE in Google Chrome on on Windows prior to 152.0.7977.65 allowed a remote attacker to potentially execute arbitrary code outside the sandbox via a… |
| CVE-2026-79131 | CRITICAL | Patched | 9.6 | 2026-08-25 | Out of bounds write in ANGLE in Google Chrome prior to 152.0.7977.65 allowed a remote attacker to execute arbitrary code outside the sandbox via a crafted HTML page. (Chrom… |