Search

Published: All 7d 30d 90d 12m
Severity: All Critical High Medium Low

972 CVEs · Low severity

CVEs (972, showing first 500)

Only the first 500 CVEs (by current sort) are shown when searching without a keyword. Add a search term above to narrow the results.

Showing 1–25 of 972 (capped at 500)

CVE ID Severity Patch CVSS Published Description
CVE-2026-71083 LOW 1.8 2026-08-18 Vulnerability in the Oracle Agile PLM MCAD Connector product of Oracle Supply Chain (component: CAX Client). The supported version that is affected is 3.6. Difficult to e…
CVE-2026-40000 LOW 1.8 2026-07-27 The Activity zte.com.cn.filer/zte.com.cn.filer.FilePreViewActivity within ZTE File Manager is designed to preview compressed files. Third-party applications can launch this…
CVE-2026-61464 LOW Patched 1.8 2026-07-15 ImageMagick before 7.1.2-26 and 6.9.13-51 contains a heap-based buffer over-write vulnerability that occurs when running an X11 import with a crafted window title, which ca…
CVE-2026-12065 LOW 1.8 2026-06-12 A vulnerability was identified in Groww Stock, Mutual Fund, Gold App up to 20260805 on Android. This affects an unknown part of the component WebView URL Handler. The manip…
CVE-2026-71146 LOW 1.9 2026-08-18 Vulnerability in the Oracle Hyperion Financial Management product of Oracle Hyperion (component: Security). The supported version that is affected is 11.2.25.0.000. Diffi…
CVE-2026-71081 LOW 1.9 2026-08-18 Vulnerability in the Oracle Agile PLM MCAD Connector product of Oracle Supply Chain (component: CAX Client). The supported version that is affected is 3.6. Difficult to e…
CVE-2026-61303 LOW Patched 1.9 2026-07-21 Vulnerability in the Oracle EDI Gateway product of Oracle E-Business Suite (component: Internal Operations). Supported versions that are affected are 12.2.3-12.2.15. Diffi…
CVE-2026-61047 LOW Patched 1.9 2026-07-21 Vulnerability in the Oracle Production Scheduling product of Oracle E-Business Suite (component: Internal Operations). Supported versions that are affected are 12.2.3-12.2…
CVE-2026-61028 LOW Patched 1.9 2026-07-21 Vulnerability in the Oracle Inventory Management product of Oracle E-Business Suite (component: Internal Operations). Supported versions that are affected are 12.2.3-12.2.…
CVE-2026-60913 LOW Patched 1.9 2026-07-21 Vulnerability in the Oracle Property Manager product of Oracle E-Business Suite (component: Internal Operations). Supported versions that are affected are 12.2.3-12.2.15. …
CVE-2026-60891 LOW Patched 1.9 2026-07-21 Vulnerability in the Oracle Work in Process product of Oracle E-Business Suite (component: Internal Operations). Supported versions that are affected are 12.2.3-12.2.15. D…
CVE-2026-47016 LOW Patched 1.9 2026-07-21 Vulnerability in the Siebel CRM Integration product of Oracle Siebel CRM (component: Event Publish and Subscribe). Supported versions that are affected are 17.0-26.4. Diff…
CVE-2026-56364 LOW Patched 1.9 2026-06-30 ImageMagick before 7.1.2-13 contains a memory leak vulnerability in LoadOpenCLDeviceBenchmark() function when parsing malformed OpenCL device profile XML files with unclose…
CVE-2026-50268 LOW 1.9 2026-06-17 Steeltoe is an open source project that provides a collection of libraries that helps users build cloud-native applications. In Steeltoe.Configuration.Encryption 4.0.0 thro…
CVE-2026-59291 LOW Patched 2.0 2026-08-27 Potential arbitrary file read and SSRF vulnerability in Spring Cloud Function. Spring Cloud Function 5.0.0 - 5.0.3 Spring Cloud Function 4.3.0 - 4.3.4 Spring Cloud Function…
CVE-2026-80201 LOW Patched 2.0 2026-08-26 Kimai before 2.53.0 fails to block sensitive User methods in the Twig invoice template sandbox, allowing admins to call getApiToken() and getPlainApiToken() methods. Attack…
CVE-2026-67442 LOW Patched 2.0 2026-08-18 FUXA is a web-based Process Visualization (SCADA/HMI/Dashboard) software. Prior to 1.3.3, DELETE /api/roles removes role definitions through server/runtime/users/usrstorage…
CVE-2026-48791 LOW Patched 2.0 2026-08-13 sigstore-java is a sigstore java client for interacting with sigstore infrastructure. Version 2.0.0 erroneously removed verification of the integrated (Rekor entry) time) a…
CVE-2026-60804 LOW Patched 2.0 2026-07-21 Vulnerability in the Oracle E-Business Intelligence product of Oracle E-Business Suite (component: Definition). Supported versions that are affected are 12.2.3-12.2.15. Di…
CVE-2026-46549 LOW Patched 2.0 2026-06-23 NocoDB is software for building databases as spreadsheets. Prior to 2026.04.1, the OAuth token strategy attached oauth_scope and oauth_granted_resources to the request user…
CVE-2026-18591 LOW 2.1 2026-08-03 A vulnerability was identified in Meesho Online Shopping App up to 20260607 on Android. Affected by this vulnerability is an unknown functionality of the component com.mees…
CVE-2026-66401 LOW Patched 2.1 2026-08-01 FreeRDP before 3.29.0 contains an out-of-bounds heap read vulnerability in the UVC H.264 extension-unit parser that fails to validate descriptor length before accessing the…
CVE-2026-58234 LOW 2.2 2026-09-08 SAP Process Integration (SOAP Adapter) allows a privileged user to send specially crafted requests containing deeply nested entity definitions, which under certain conditio…
CVE-2026-84225 LOW Patched 2.2 2026-09-05 The Kirki WordPress plugin before 6.3.0 does not check that a user is allowed to act on a collaboration comment before changing its state, allowing users whom an administr…
CVE-2026-73748 LOW Patched 2.2 2026-09-01 A vulnerability in the affected interface of HPE Networking Fabric Composer allows an attacker with administrative privileges to access sensitive information in a cleartext…