Search
13,088 CVEs
CVEs (13,088, showing first 500)
Only the first 500 CVEs (by current sort) are shown when searching without a keyword. Add a search term above to narrow the results.
Showing 351–375 of 13,088 (capped at 500)
| CVE ID ↓ | Severity | Patch | CVSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2026-85685 | HIGH | 7.5 | 2026-09-04 | AgentScope through 2.0.7.post1 contains a path traversal vulnerability in LocalWorkspace.add_skill that copies arbitrary server directories into the agent workspace via an … | |
| CVE-2026-85684 | CRITICAL | 9.1 | 2026-09-04 | marker through 2.0.0 contains a path traversal vulnerability in the FastAPI /marker/upload handler that fails to sanitize the file.filename parameter. Unauthenticated attac… | |
| CVE-2026-85676 | MEDIUM | 4.3 | 2026-09-04 | Dub contains an open redirect vulnerability in the redir_url query parameter that is accepted on every short link without validation or domain allowlist enforcement. Attack… | |
| CVE-2026-85675 | HIGH | 7.5 | 2026-09-04 | OWL's DocumentProcessingToolkit contains a server-side request forgery vulnerability in the extract_document_content tool that fetches caller-supplied URLs with no scheme, … | |
| CVE-2026-85674 | HIGH | 7.8 | 2026-09-04 | aider (aider-chat) automatically loads a .aider.conf.yml configuration file from the root of the git repository it is launched in. A crafted repository can set test-cmd (ex… | |
| CVE-2026-85673 | HIGH | 7.5 | 2026-09-04 | LLaMA-Factory contains a server-side request forgery vulnerability in the OpenAI-compatible API multimodal media URL handler that allows unauthenticated attackers to bypass… | |
| CVE-2026-85672 | CRITICAL | 9.8 | 2026-09-04 | zerox 1.1.20 contains an OS command injection vulnerability in the file download mechanism where the temporary file extension derived from document URLs is interpolated uns… | |
| CVE-2026-85671 | HIGH | 7.5 | 2026-09-04 | QAnything 2.0.0 contains an authentication bypass vulnerability in the /api/local_doc_qa/get_file_base64 and /api/local_doc_qa/get_doc endpoints that allows unauthenticated… | |
| CVE-2026-85670 | MEDIUM | 6.5 | 2026-09-04 | tokenizers (Hugging Face) is affected by an out-of-bounds buffer access in BpeBuilder::build (tokenizers/src/models/bpe/model.rs). When loading a tokenizer.json via Tokeniz… | |
| CVE-2026-85669 | MEDIUM | 6.5 | 2026-09-04 | potpie through 2.0.0 fails to verify user ownership on the POST /conversations/{conversation_id}/code-changes/sync endpoint. Authenticated attackers can write arbitrary fil… | |
| CVE-2026-85668 | HIGH | 7.5 | 2026-09-04 | Xinference (affected commit 4a94832, v3.x) contains an unauthenticated arbitrary-path file read vulnerability in the POST /v1/models/llm/auto-register endpoint, which accep… | |
| CVE-2026-85667 | CRITICAL | 9.1 | 2026-09-04 | xiaobei through 5.5.2 fails to implement authentication or signature validation on webhook endpoints, allowing unauthenticated attackers to inject arbitrary messages into t… | |
| CVE-2026-85666 | HIGH | 7.5 | 2026-09-04 | OGX (formerly Llama Stack, affected at commit fbe8e0f) contains an unauthenticated server-side request forgery vulnerability in the OpenAI-compatible POST /v1/responses end… | |
| CVE-2026-85665 | MEDIUM | 6.5 | 2026-09-04 | Bruno versions through 4.1.0 fail to validate file paths in request body declarations, allowing attackers to read arbitrary local files by using parent-directory traversal … | |
| CVE-2026-85664 | HIGH | 7.5 | 2026-09-04 | Chroma 1.5.9 fails to validate maximum bounds on HNSW index parameters max_neighbors, ef_construction, and ef_search in collection-create requests. Unauthenticated attacker… | |
| CVE-2026-85663 | CRITICAL | 9.8 | 2026-09-04 | Aim 3.29.1 remote tracking server fails to authenticate requests and dispatches arbitrary methods through getattr without allowlist validation. Unauthenticated attackers ca… | |
| CVE-2026-85662 | MEDIUM | 5.3 | 2026-09-04 | Marqo 2.26.0 contains a server-side request forgery vulnerability in the add_documents endpoint that allows unauthenticated attackers to trigger requests to arbitrary URLs … | |
| CVE-2026-85661 | CRITICAL | 9.8 | 2026-09-04 | excel-mcp-server 0.1.8 fails to enforce path confinement in stdio mode when EXCEL_FILES_PATH is unset, allowing attackers to read and write arbitrary files. Attackers can s… | |
| CVE-2026-85660 | HIGH | 8.1 | 2026-09-04 | cli-mcp-server 0.2.5 contains a command allowlist bypass vulnerability in the _validate_command_with_operators function when ALLOW_SHELL_OPERATORS is enabled. Attackers can… | |
| CVE-2026-85656 | HIGH | Patched | 7.8 | 2026-09-04 | An OS command injection issue in the log4j-cve-2021-44228-hotpatch package in Amazon Linux before 1.3-9 might allow a local user to execute arbitrary commands with root pri… |
| CVE-2026-85654 | HIGH | Patched | 7.8 | 2026-09-04 | Improper neutralization of special elements used in a template engine in the CDK generator in Amazon awslabs.dynamodb-mcp-server before 2.1.6 might allow a context-dependen… |
| CVE-2026-85651 | HIGH | Patched | 8.5 | 2026-09-04 | Trigger.dev versions before 4.5.2 fail to validate environment membership during run replay operations, allowing authenticated attackers to inject task runs into arbitrary … |
| CVE-2026-85650 | MEDIUM | Patched | 5.4 | 2026-09-04 | Trigger.dev before 4.5.2 contains a server-side request forgery vulnerability in webhook alert channel delivery URLs that are fetched without validation or SSRF protection.… |
| CVE-2026-85649 | HIGH | 7.9 | 2026-09-04 | (Holloway) Chew, Kean Ho's Actualizer v1.2.0 and earlier contains a fail-open password validation vulnerability in the Alpha user and root user password loops of Shell/debi… | |
| CVE-2026-85643 | MEDIUM | 4.7 | 2026-09-04 | A flaw has been found in code-projects Online Shopping System 1.0. Impacted is the function mysqli_query of the file admin/adduser.php. Executing a manipulation of the argu… |