Search

Published: All 7d 30d 90d 12m
Severity: All Critical High Medium Low

140,606 CVEs · High severity

CVEs (140,606, showing first 500)

Only the first 500 CVEs (by current sort) are shown when searching without a keyword. Add a search term above to narrow the results.

Showing 51–75 of 140,606 (capped at 500)

CVE ID Severity Patch CVSS Published Description
CVE-2026-80130 HIGH 7.1 2026-09-07 Dell SCG 5.0 Appliance versions prior to 5.36.00.16 and Dell SCG 5.0 Application versions prior to 5.36.00.00, contains a Relative Path Traversal vulnerability. A low privi…
CVE-2026-76560 HIGH 7.5 2026-09-07 A flaw was found in 389 Directory Server. The SELFDN ACI bind-rule evaluator incorrectly matches an anonymous LDAP client's empty bind DN against an empty stored attribute …
CVE-2026-14444 HIGH 7.5 2026-09-07 The WP Fusion (Pro) plugin for WordPress is vulnerable to Privilege Escalation in all versions up to, and including, 3.47.13. This is due to insufficient authorization chec…
CVE-2026-86435 HIGH Patched 7.5 2026-09-07 commonmark versions from 1.5.0 before 2.8.4 contain a denial of service vulnerability in the Footnote extension that fails to deduplicate footnote definitions. Attackers ca…
CVE-2026-86434 HIGH Patched 7.5 2026-09-07 league/commonmark versions >= 2.0.0 and < 2.8.4 (patched in 2.9.0) contain a denial of service vulnerability in UniqueSlugNormalizer::normalize(), which restarts its numeri&hellip;
CVE-2026-86433 HIGH Patched 7.5 2026-09-07 commonmark versions from 1.5.0 before 2.8.4 contain a denial of service vulnerability in the Attributes extension where AttributesListener::findTargetAndDirection() perform&hellip;
CVE-2026-86431 HIGH Patched 7.2 2026-09-07 league/commonmark (thephpleague/commonmark) versions >= 2.7.0 and < 2.9.1 contain a cross-site scripting vulnerability in the AttributesExtension. Prefixing an attribute na&hellip;
CVE-2026-86430 HIGH Patched 7.5 2026-09-07 league/commonmark versions before 2.9.1 contain multiple denial of service vulnerabilities in fenced code block detection, reference link label lookup, and emphasis delimit&hellip;
CVE-2026-86429 HIGH Patched 7.5 2026-09-07 The league/commonmark (thephpleague/commonmark) library in versions >= 1.5.0 and < 2.9.1 contains quadratic parsing complexity in its SmartPunctExtension and AttributesExte&hellip;
CVE-2026-86428 HIGH Patched 7.5 2026-09-07 commonmark versions from 1.5.0 before 2.10.0 contain a denial of service vulnerability in the AttributesExtension when processing distinctly-named attributes. Attackers can&hellip;
CVE-2026-86427 HIGH Patched 8.8 2026-09-07 LibreNMS before 26.8.0 contains an argument injection vulnerability in the graph_title parameter that allows authenticated attackers to inject arbitrary rrdtool arguments b&hellip;
CVE-2026-86306 HIGH 7.3 2026-09-07 A weakness has been identified in light0011 cms c774dce31c6df0055568a8d5c53d964d99be199d/f72cf46f601efb2a0618c3814cc2f61380b38930. This affects an unknown part of the file &hellip;
CVE-2026-86305 HIGH 7.3 2026-09-07 A security flaw has been discovered in light0011 cms c774dce31c6df0055568a8d5c53d964d99be199d/f72cf46f601efb2a0618c3814cc2f61380b38930. Affected by this issue is the functi&hellip;
CVE-2026-86303 HIGH 7.3 2026-09-07 A vulnerability was determined in 92181 markdown up to 058cab0cb7fb245a0ccc6b8446963ff8d573558f. Affected by this issue is the function lds of the file md.c. Executing a ma&hellip;
CVE-2026-80135 HIGH 7.5 2026-09-07 Dell SCG 5.0 Appliance versions prior to 5.36.00.16 and Dell SCG 5.0 Application versions prior to 5.36.00.00, contains an Improper Check or Handling of Exceptional Conditi&hellip;
CVE-2026-80134 HIGH 7.7 2026-09-07 Dell SCG 5.0 Appliance versions prior to 5.36.00.16 and Dell SCG 5.0 Application versions prior to 5.36.00.00, contains an Use of Hard-coded Credentials vulnerability. An u&hellip;
CVE-2026-80133 HIGH 7.4 2026-09-07 Dell SCG 5.0 Appliance versions prior to 5.36.00.16 and Dell SCG 5.0 Application versions prior to 5.36.00.00, contains a Relative Path Traversal vulnerability. An unauthen&hellip;
CVE-2026-80132 HIGH 8.1 2026-09-07 ell SCG 5.0 Appliance versions prior to 5.36.00.16 and Dell SCG 5.0 Application versions prior to 5.36.00.00, contains a Missing Authentication for Critical Function vulner&hellip;
CVE-2026-79678 HIGH 8.1 2026-09-07 A flaw was found in FreeIPA's idp-add command, where insufficiently validated --organization/--base-url input reaches a constrained eval() call before the corresponding LDA&hellip;
CVE-2026-6431 HIGH 7.2 2026-09-07 The User Profile Builder – Beautiful User Registration Forms, User Profiles & User Role Editor plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the 'Bi&hellip;
CVE-2026-61409 HIGH 7.3 2026-09-07 Dell Secure Connect Gateway (SCG) 5.0 Application, versions prior to 5.36.00.00, contains an Improper Neutralization of Special Elements used in an OS Command ('OS Command &hellip;
CVE-2022-51017 HIGH Patched 7.5 2026-09-07 PocketMine-MP versions before 3.26.5 and 4.0.5 fail to validate the length of skin data fields submitted by players, allowing uncapped values to exceed the 32767 byte TAG_S&hellip;
CVE-2026-86404 HIGH 8.8 2026-09-07 EAP's Artemis deserialization configuration permits deserialization by default. ObjectMessage.getObject() uses ObjectInputStreamWithClassLoader, which implements allow-list&hellip;
CVE-2026-86300 HIGH 7.3 2026-09-07 A flaw has been found in Tenda AC9 15.03.05.14. This impacts the function R7WebsSecurityHandler of the component Web Management. This manipulation causes improper authentic&hellip;
CVE-2026-86298 HIGH 7.3 2026-09-07 A security flaw has been discovered in SourceCodester Class and Exam Timetabling System 1.0. Impacted is an unknown function of the file /delete_subject.php. Performing a m&hellip;