Search
13,075 CVEs
EOL hidden · Show all products
CVEs (13,075, showing first 500)
Only the first 500 CVEs (by current sort) are shown when searching without a keyword. Add a search term above to narrow the results.
Showing 426–450 of 13,075 (capped at 500)
| CVE ID | Severity | Patch | CVSS | Published ↓ | Description |
|---|---|---|---|---|---|
| CVE-2026-86231 | LOW | 3.7 | 2026-09-06 | A security flaw has been discovered in mwiede jsch up to 2.28.5. Affected is the function getRevokedKeys of the file src/main/java/com/jcraft/jsch/KnownHosts.java. Performi… | |
| CVE-2026-86228 | MEDIUM | 4.3 | 2026-09-06 | A security vulnerability has been detected in JeecgBoot up to 3.9.3. This vulnerability affects the function exportXls of the file jeecg-boot/jeecg-boot-module/jeecg-boot-m… | |
| CVE-2026-86227 | LOW | 3.1 | 2026-09-06 | A weakness has been identified in valkey-io valkey up to 9.0.5/9.1.1. This affects the function kvstoreGetHashtable of the file src/kvstore.c. This manipulation of the argu… | |
| CVE-2026-86226 | LOW | 3.5 | 2026-09-06 | A security flaw has been discovered in Projectwolds Online Attendance System 1.0. Affected by this issue is some unknown functionality of the file profile.php. The manipula… | |
| CVE-2026-86225 | HIGH | 7.3 | 2026-09-06 | A vulnerability was identified in SourceCodester Class and Exam Timetabling System 1.0. Affected by this vulnerability is the function mysqli_query of the file /admin/modal… | |
| CVE-2026-86224 | HIGH | 7.3 | 2026-09-06 | A vulnerability was determined in SourceCodester Class and Exam Timetabling System 1.0. Affected is the function mysqli_query of the file /admin/modal_add_product.php. Exec… | |
| CVE-2026-86223 | HIGH | 7.3 | 2026-09-06 | A vulnerability was found in SourceCodester Class and Exam Timetabling System 1.0. This impacts the function mysqli_query of the file /admin/modal_add_coursea.php. Performi… | |
| CVE-2026-86222 | HIGH | 7.3 | 2026-09-06 | A vulnerability has been found in SourceCodester Class and Exam Timetabling System 1.0. This affects the function mysqli_query of the file /admin/modal_add_course2.php. Suc… | |
| CVE-2026-86221 | HIGH | 7.3 | 2026-09-06 | A flaw has been found in SourceCodester Class and Exam Timetabling System 1.0. The impacted element is the function mysqli_query of the file /admin/modal_add_course1.php. T… | |
| CVE-2026-86220 | HIGH | 7.3 | 2026-09-06 | A vulnerability was detected in SourceCodester Class and Exam Timetabling System 1.0. The affected element is the function mysqli_query of the file /admin/modal_add_course.… | |
| CVE-2026-86219 | NONE | Patched | — | 2026-09-06 | Authen::SASL::Perl::DIGEST_MD5 versions before 2.2100 for Perl accept replayed authentication responses via unverified nonce in server_step. server_start generates a fresh… |
| CVE-2026-82209 | NONE | — | 2026-09-06 | When libpsl support is enabled, libcurl fails to enforce the Public Suffix List boundary check when processing a `Set-Cookie` header where the `Domain` attribute explicitly… | |
| CVE-2026-82208 | NONE | — | 2026-09-06 | With the wolfSSL backend, when CA caching is enabled and an `CURLOPT_SSL_CTX_FUNCTION` callback replaces the trust store, libcurl can silently reinstall the cached store af… | |
| CVE-2026-80255 | NONE | — | 2026-09-06 | A `Set-Cookie:` header using tab (horizontal tab, ASCII code 9) instead of space (ascii code 32) immediately before the `Secure` attribute causes curl to store the cookie w… | |
| CVE-2026-80231 | NONE | — | 2026-09-06 | A flaw in libcurl makes it wrongly reuse an existing HTTPS connection setup for a given hostname even when using a different Native CA Store setting (`CURLSSLOPT_NATIVE_CA`… | |
| CVE-2026-80230 | NONE | — | 2026-09-06 | When `CURLOPT_PINNEDPUBLICKEY` is configured alongside options that disable standard peer verification (`CURLOPT_SSL_VERIFYPEER = 0` and `CURLOPT_SSL_VERIFYHOST = 0`), libc… | |
| CVE-2026-80229 | NONE | — | 2026-09-06 | When performing transfers via libcurl’s multi interface, pooled TLS connections can outlive their originating easy handles. In OpenSSL 3 provider configurations, libcurl at… | |
| CVE-2026-19931 | NONE | — | 2026-09-06 | A flaw in libcurl makes it wrongly reuse an HTTP connection setup for a given hostname using Negotiate authentication, when the initial request is done using empty credenti… | |
| CVE-2026-18924 | NONE | — | 2026-09-06 | A flaw in libcurl's handling of HTTP/2 Server Push streams, when the parent handle is set to share connections with other handles, can lead to use-after-free in the cleanup… | |
| CVE-2026-13608 | NONE | — | 2026-09-06 | A flaw in the libcurl SASL negotiation for LDAP authentication allows an incomplete handshake sequence to be misinterpreted as a successful cryptographic verification. An a… | |
| CVE-2026-82751 | NONE | Patched | — | 2026-09-06 | Improper Validation of Specified Quantity in Input in ZenHive mpp allows an unauthenticated remote client to inflate the fee-payer's gas cost per sponsored payment by a lar… |
| CVE-2026-82750 | NONE | Patched | — | 2026-09-06 | Improper Validation of Specified Quantity in Input in ZenHive mpp allows an unauthenticated remote client to inflate the fee-payer's gas cost per sponsored payment by a lar… |
| CVE-2026-83534 | MEDIUM | Patched | 6.4 | 2026-09-06 | PostgreSQL Anonymizer contains a vulnerability in the anon.anonymize_database_parallel() function that allows the owner of a table to run arbitrary code with superuser priv… |
| CVE-2026-19634 | MEDIUM | Patched | 6.4 | 2026-09-06 | PostgreSQL Anonymizer contains a SQL injection vulnerability in two import functions. A user can create a malicious JSON document containing specially crafted object names.… |
| CVE-2026-19633 | HIGH | Patched | 8.8 | 2026-09-06 | PostgreSQL Anonymizer contains a vulnerability that allows unprivileged masked users to execute arbitrary code by abusing operators, domain casts, or view subqueries that c… |