Search
15,635 CVEs · Low severity
CVEs (15,635, showing first 500)
Only the first 500 CVEs (by current sort) are shown when searching without a keyword. Add a search term above to narrow the results.
Showing 426–450 of 15,635 (capped at 500)
| CVE ID ↓ | Severity | Patch | CVSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2026-64951 | LOW | 3.5 | 2026-08-12 | A rogue Velociraptor client can upload a malformed sparse file such that if the GUI attempts to expand the file, a panic occurs which may crash the server process. The pro… | |
| CVE-2026-6493 | LOW | 3.5 | 2026-04-17 | A flaw has been found in lukevella rallly up to 4.7.4. This affects an unknown function of the file apps/web/src/app/[locale]/(auth)/reset-password/components/reset-passwor… | |
| CVE-2026-6486 | LOW | 3.5 | 2026-04-17 | A vulnerability was detected in classroombookings up to 2.17.0. This impacts the function read of the file crbs-core/application/views/layout.php of the component User Disp… | |
| CVE-2026-64846 | LOW | Patched | 2.8 | 2026-08-20 | Nix is a package manager for Linux and other Unix systems. Prior to 2.35.0, a malicious derivation executed with the recursive-nix experimental feature can exploit a time-o… |
| CVE-2026-64800 | LOW | Patched | 3.5 | 2026-07-23 | In JetBrains GoLand before 2026.2 sensitive configuration values written to log files by default |
| CVE-2026-64782 | LOW | Patched | 3.1 | 2026-08-17 | A memory corruption vulnerability was addressed with improved locking. This issue is fixed in Safari 26.6.1, iOS 18.7.10 and iPadOS 18.7.10, iOS 26.6.1 and iPadOS 26.6.1, m… |
| CVE-2026-64779 | LOW | Patched | 3.1 | 2026-08-17 | A memory corruption vulnerability was addressed with improved locking. This issue is fixed in Safari 26.6.1, iOS 18.7.10 and iPadOS 18.7.10, iOS 26.6.1 and iPadOS 26.6.1, m… |
| CVE-2026-64745 | LOW | Patched | 2.4 | 2026-07-27 | This issue was addressed with additional restrictions on the lock screen. This issue is fixed in macOS Sequoia 15.7.8, macOS Tahoe 26.6. A person with physical access to a … |
| CVE-2026-6469 | LOW | Patched | 3.8 | 2026-08-13 | Incorrect ownership assignment in PostgreSQL ALTER TABLE ALTER TYPE command reassigns ownership of dependent statistics objects to the current user. This wrongly allows th… |
| CVE-2026-64652 | LOW | Patched | 3.3 | 2026-08-06 | GitHub CLI (gh) is GitHub's official command line tool. Prior to version 2.97.0, gh auth status masked only the characters after the last underscore in certain fine-grained… |
| CVE-2026-64617 | LOW | Patched | 3.8 | 2026-07-21 | Data::PubSub::Shared versions before 0.07 for Perl create a world-readable mmap backing file and open it without O_EXCL or O_NOFOLLOW. The segment is created in pubsub.h w… |
| CVE-2026-64616 | LOW | Patched | 3.3 | 2026-07-21 | Data::NDArray::Shared versions before 0.02 for Perl create a world-readable mmap backing file and open it without O_EXCL or O_NOFOLLOW. The segment is created in ndarray.h… |
| CVE-2026-64615 | LOW | Patched | 3.3 | 2026-07-21 | Data::Graph::Shared versions before 0.04 for Perl create a world-readable mmap backing file and open it without O_EXCL or O_NOFOLLOW. The segment is created in graph.h wit… |
| CVE-2026-64614 | LOW | Patched | 3.8 | 2026-07-21 | Data::Deque::Shared versions before 0.06 for Perl create a world-readable mmap backing file and open it without O_EXCL or O_NOFOLLOW. The segment is created in deque.h wit… |
| CVE-2026-6416 | LOW | Patched | 2.7 | 2026-04-22 | Tanium addressed an uncontrolled resource consumption vulnerability in Interact. |
| CVE-2026-6408 | LOW | Patched | 2.7 | 2026-04-22 | Tanium addressed an information disclosure vulnerability in Tanium Server. |
| CVE-2026-6392 | LOW | Patched | 2.7 | 2026-04-22 | Tanium addressed an information disclosure vulnerability in Threat Response. |
| CVE-2026-63632 | LOW | Patched | 3.3 | 2026-08-18 | Open Neural Network Exchange (ONNX) is an open standard for machine learning interoperability. From 1.3.0 until 1.22.0, onnx.version_converter.convert_version() can perform… |
| CVE-2026-63545 | LOW | 2.4 | 2026-08-03 | Sharp and Toshiba Tec MFPs (multifunction printers) caches data internally when printing, and leave them uncleared. They may be accessed later by other users. | |
| CVE-2026-6352 | LOW | Patched | 2.7 | 2026-07-08 | GitLab has remediated an issue in GitLab EE affecting all versions from 18.2 before 18.11.7, 19.0 before 19.0.4, and 19.1 before 19.1.2 that under certain conditions could … |
| CVE-2026-6334 | LOW | Patched | 3.1 | 2026-05-18 | Mattermost versions 11.5.x <= 11.5.1, 10.11.x <= 10.11.13 fail to enforce client identity binding during the OAuth authorization code redemption flow which allows an authen… |
| CVE-2026-6333 | LOW | Patched | 3.5 | 2026-05-18 | Mattermost versions 11.5.x <= 11.5.1, 10.11.x <= 10.11.13 fail to validate the Host header when constructing response URLs for custom slash commands which allows an authent… |
| CVE-2026-63241 | LOW | 3.1 | 2026-07-29 | An insecure direct object reference vulnerability in Koollab LMS allowed an authenticated user to query the course completion progress of any other user without authorisati… | |
| CVE-2026-63236 | LOW | 3.7 | 2026-07-29 | An improper access control vulnerability in Koollab LMS allowed an unauthenticated attacker to read another user's name, internal identifier, scores, lesson status, lesson … | |
| CVE-2026-63235 | LOW | 3.7 | 2026-07-29 | An improper access control vulnerability in Koollab LMS allowed an unauthenticated attacker to forcibly terminate the session of any user given their email address via the … |