Search

Published: All 7d 30d 90d 12m
Severity: All Critical High Medium Low

30,198 CVEs

EOL hidden · Show all products

CVEs (30,198, showing first 500)

Only the first 500 CVEs (by current sort) are shown when searching without a keyword. Add a search term above to narrow the results.

Showing 426–450 of 30,198 (capped at 500)

CVE ID Severity Patch CVSS Published Description
CVE-2026-86231 LOW 3.7 2026-09-06 A security flaw has been discovered in mwiede jsch up to 2.28.5. Affected is the function getRevokedKeys of the file src/main/java/com/jcraft/jsch/KnownHosts.java. Performi…
CVE-2026-86228 MEDIUM 4.3 2026-09-06 A security vulnerability has been detected in JeecgBoot up to 3.9.3. This vulnerability affects the function exportXls of the file jeecg-boot/jeecg-boot-module/jeecg-boot-m…
CVE-2026-86227 LOW 3.1 2026-09-06 A weakness has been identified in valkey-io valkey up to 9.0.5/9.1.1. This affects the function kvstoreGetHashtable of the file src/kvstore.c. This manipulation of the argu…
CVE-2026-86226 LOW 3.5 2026-09-06 A security flaw has been discovered in Projectwolds Online Attendance System 1.0. Affected by this issue is some unknown functionality of the file profile.php. The manipula…
CVE-2026-86225 HIGH 7.3 2026-09-06 A vulnerability was identified in SourceCodester Class and Exam Timetabling System 1.0. Affected by this vulnerability is the function mysqli_query of the file /admin/modal…
CVE-2026-86224 HIGH 7.3 2026-09-06 A vulnerability was determined in SourceCodester Class and Exam Timetabling System 1.0. Affected is the function mysqli_query of the file /admin/modal_add_product.php. Exec…
CVE-2026-86223 HIGH 7.3 2026-09-06 A vulnerability was found in SourceCodester Class and Exam Timetabling System 1.0. This impacts the function mysqli_query of the file /admin/modal_add_coursea.php. Performi…
CVE-2026-86222 HIGH 7.3 2026-09-06 A vulnerability has been found in SourceCodester Class and Exam Timetabling System 1.0. This affects the function mysqli_query of the file /admin/modal_add_course2.php. Suc…
CVE-2026-86221 HIGH 7.3 2026-09-06 A flaw has been found in SourceCodester Class and Exam Timetabling System 1.0. The impacted element is the function mysqli_query of the file /admin/modal_add_course1.php. T…
CVE-2026-86220 HIGH 7.3 2026-09-06 A vulnerability was detected in SourceCodester Class and Exam Timetabling System 1.0. The affected element is the function mysqli_query of the file /admin/modal_add_course.…
CVE-2026-86219 NONE Patched — 2026-09-06 Authen::SASL::Perl::DIGEST_MD5 versions before 2.2100 for Perl accept replayed authentication responses via unverified nonce in server_step. server_start generates a fresh…
CVE-2026-82209 NONE — 2026-09-06 When libpsl support is enabled, libcurl fails to enforce the Public Suffix List boundary check when processing a `Set-Cookie` header where the `Domain` attribute explicitly…
CVE-2026-82208 NONE — 2026-09-06 With the wolfSSL backend, when CA caching is enabled and an `CURLOPT_SSL_CTX_FUNCTION` callback replaces the trust store, libcurl can silently reinstall the cached store af…
CVE-2026-80255 NONE — 2026-09-06 A `Set-Cookie:` header using tab (horizontal tab, ASCII code 9) instead of space (ascii code 32) immediately before the `Secure` attribute causes curl to store the cookie w…
CVE-2026-80231 NONE — 2026-09-06 A flaw in libcurl makes it wrongly reuse an existing HTTPS connection setup for a given hostname even when using a different Native CA Store setting (`CURLSSLOPT_NATIVE_CA`…
CVE-2026-80230 NONE — 2026-09-06 When `CURLOPT_PINNEDPUBLICKEY` is configured alongside options that disable standard peer verification (`CURLOPT_SSL_VERIFYPEER = 0` and `CURLOPT_SSL_VERIFYHOST = 0`), libc…
CVE-2026-80229 NONE — 2026-09-06 When performing transfers via libcurl’s multi interface, pooled TLS connections can outlive their originating easy handles. In OpenSSL 3 provider configurations, libcurl at…
CVE-2026-19931 NONE — 2026-09-06 A flaw in libcurl makes it wrongly reuse an HTTP connection setup for a given hostname using Negotiate authentication, when the initial request is done using empty credenti…
CVE-2026-18924 NONE — 2026-09-06 A flaw in libcurl's handling of HTTP/2 Server Push streams, when the parent handle is set to share connections with other handles, can lead to use-after-free in the cleanup…
CVE-2026-13608 NONE — 2026-09-06 A flaw in the libcurl SASL negotiation for LDAP authentication allows an incomplete handshake sequence to be misinterpreted as a successful cryptographic verification. An a…
CVE-2026-82751 NONE Patched — 2026-09-06 Improper Validation of Specified Quantity in Input in ZenHive mpp allows an unauthenticated remote client to inflate the fee-payer's gas cost per sponsored payment by a lar…
CVE-2026-82750 NONE Patched — 2026-09-06 Improper Validation of Specified Quantity in Input in ZenHive mpp allows an unauthenticated remote client to inflate the fee-payer's gas cost per sponsored payment by a lar…
CVE-2026-83534 MEDIUM Patched 6.4 2026-09-06 PostgreSQL Anonymizer contains a vulnerability in the anon.anonymize_database_parallel() function that allows the owner of a table to run arbitrary code with superuser priv…
CVE-2026-19634 MEDIUM Patched 6.4 2026-09-06 PostgreSQL Anonymizer contains a SQL injection vulnerability in two import functions. A user can create a malicious JSON document containing specially crafted object names.…
CVE-2026-19633 HIGH Patched 8.8 2026-09-06 PostgreSQL Anonymizer contains a vulnerability that allows unprivileged masked users to execute arbitrary code by abusing operators, domain casts, or view subqueries that c…