Search

Published: All 7d 30d 90d 12m
Severity: All Critical High Medium Low

2,372 CVEs

CVEs (2,372, showing first 500)

Only the first 500 CVEs (by current sort) are shown when searching without a keyword. Add a search term above to narrow the results.

Showing 376–400 of 2,372 (capped at 500)

CVE ID Severity Patch CVSS Published Description
CVE-2026-63435 MEDIUM Patched 5.3 2026-09-01 Mail is an internet library for Ruby designed to handle email generation, parsing, and sending. Prior to 2.9.1, Mail::Utilities.q_value_decode and Mail::Utilities.b_value_d…
CVE-2026-71981 HIGH Patched 8.8 2026-09-01 Cypht before 2.12.2 contains a PHP object injection vulnerability that allows authenticated attackers to execute arbitrary operating system commands by supplying a crafted …
CVE-2026-73524 MEDIUM Patched 6.1 2026-09-01 Cypht before 2.12.2 contains a cross-site scripting vulnerability in the contacts module that allows remote attackers to execute arbitrary script content by embedding malic…
CVE-2026-73749 CRITICAL Patched 9.8 2026-09-01 Multiple vulnerabilities exist in a daemon of AOS-CX that may allow for improper processing of malformed input. An unauthenticated remote attacker could exploit these vulne…
CVE-2026-73750 HIGH 8.8 2026-09-01 Vulnerabilities exist in the authentication module that may improperly process malformed or truncated input. An authenticated remote attacker could exploit these vulnerabil…
CVE-2026-73751 HIGH 8.8 2026-09-01 An authenticated user with low-privileged access could submit crafted input through the web-based management interface to execute arbitrary commands on the underlying opera…
CVE-2026-73752 HIGH Patched 8.8 2026-09-01 An unauthenticated arbitrary file write vulnerability exists in an API endpoint of AOS-CX. Successful exploitation of this vulnerability allows an attacker to write arbitra…
CVE-2026-73753 HIGH 8.8 2026-09-01 Exploitation through affected command-line operations could allow an authenticated low-privileged user to execute arbitrary commands as a privileged user on the underlying …
CVE-2026-73754 MEDIUM Patched 5.3 2026-09-01 Denial-of-service vulnerabilities exist in the command line interface of AOS-CX. Successful exploitation could allow an authenticated user to disrupt the normal operation o…
CVE-2026-73755 MEDIUM Patched 5.7 2026-09-01 A privilege escalation vulnerability exists in the API endpoint of AOS-CX. Successful exploitation could allow an authenticated low-privilege operator user, after a require…
CVE-2026-73756 MEDIUM Patched 5.9 2026-09-01 A vulnerability in an API endpoint of AOS-CX could allow a remote unauthenticated attacker to obtain sensitive information via a man-in-the-middle attack. Successful exploi…
CVE-2026-73757 MEDIUM Patched 6.4 2026-09-01 A vulnerability in the web-based management interface of AOS-CX could allow an authenticated remote attacker to conduct a server-side request forgery (SSRF) attack. A succe…
CVE-2026-73758 MEDIUM Patched 6.5 2026-09-01 A privilege escalation vulnerability exists in the API endpoint of AOS-CX. Successful exploitation could allow an authenticated low privilege operator user to change the st…
CVE-2026-73759 MEDIUM Patched 6.5 2026-09-01 Vulnerabilities in AOS-CX could allow an unauthenticated remote malicious actor to trigger a denial-of-service condition by sending specially crafted packets. Successful ex…
CVE-2026-73760 MEDIUM Patched 6.5 2026-09-01 An authenticated Path Traversal vulnerability exists in AOS-CX. Successful exploitation of this vulnerability allows an attacker to read arbitrary files from the web-based …
CVE-2026-73761 MEDIUM Patched 6.5 2026-09-01 An out-of-bounds read vulnerability exists in the underlying operating system of AOS-CX that could lead to unauthenticated information disclosure by sending a specially cra…
CVE-2026-73762 MEDIUM Patched 6.6 2026-09-01 A vulnerability has been identified in the API endpoint of AOS-CX that could allow a remote actor to circumvent existing access controls. In some cases this could enable un…
CVE-2026-73763 HIGH 7.1 2026-09-01 A vulnerability exists in a management component that could allow an unauthenticated adjacent attacker to execute arbitrary commands. Successful exploitation could result i…
CVE-2026-73764 HIGH Patched 7.1 2026-09-01 Vulnerabilities have been identified in the operating system of AOS-CX switches that could potentially allow an unauthenticated remote actor to circumvent existing authenti…
CVE-2026-73765 HIGH Patched 7.2 2026-09-01 Authenticated path traversal vulnerabilities exist in API endpoints of AOS-CX. Successful exploitation of these vulnerabilities allows an attacker to write arbitrary files …
CVE-2026-73766 HIGH Patched 7.2 2026-09-01 Command injection vulnerabilities in the API endpoint of AOS-CX could allow an authenticated remote attacker with administrative privileges to inject arbitrary commands. Su…
CVE-2026-73767 HIGH Patched 7.2 2026-09-01 Authenticated command injection vulnerabilities exist in the command line interface of AOS-CX. Successful exploitation of these vulnerabilities results in the ability to ex…
CVE-2026-73768 HIGH Patched 7.3 2026-09-01 A vulnerability exists in the command line interface of AOS-CX that may allow for improper processing of malformed input. Successful exploitation could result in the execut…
CVE-2026-73770 HIGH Patched 7.3 2026-09-01 An authenticated arbitrary file write vulnerability exists in AOS-CX. Successful exploitation could allow an authenticated malicious actor, under specific conditions outsid…
CVE-2026-73771 HIGH Patched 7.5 2026-09-01 An authentication vulnerability exists in the AOS-CX management interface and API that may allow improper authentication processing. An unauthenticated remote attacker coul…