Total CVEs

132,536

Critical Severity

2,857

High Severity

10,216

Last 7 Days

1,769
Quick preset (or use dates below)
Clear Filters
๐Ÿ“… Showing Year: 2026 (January 1 - December 31, 2026) View All Years โ†’
Showing 1 - 20 of 28,941 CVEs

In OpenStack Neutron before 28.0.1, the tagging controller enforces plural policy action names on single-tag write operations while the defined policy rules use singular names. The mismatched names evaluate as allowed under the default policy, permitting a project reader to create and update tags on...

Vendor: OpenStack
Product: Neutron
Published: May 28, 2026
Source: NVD
CVE-2026-48116 HIGH - 7.5

AnythingLLM is an application that turns pieces of content into context that any LLM can use as references during chatting. Prior to 1.13.0, the filesystem-search-files agent skill passes its LLM-controlled pattern parameter to ripgrep as a positional argument without a -- end-of-options separator. ...

Vendor: Mintplex-Labs
Product: anything-llm
Published: May 28, 2026
Source: NVD

AnythingLLM is an application that turns pieces of content into context that any LLM can use as references during chatting. Prior to 1.13.0, an approved mobile device token created in single-user mode can survive single-user -> multi-user migration even when the device record has userId = null. I...

Vendor: Mintplex-Labs
Product: anything-llm
Published: May 28, 2026
Source: NVD
CVE-2026-45410 MEDIUM - 5.3

TREK is a collaborative travel planner. Prior to 3.0.18, early return on missing user during login flow allowed an attacker to enumerate valid user accounts via response timing discrepancy. When an email address existed in the database, the backend performed a bcrypt password comparison before retur...

Vendor: mauriceboe
Product: TREK
Published: May 28, 2026
Source: NVD

AnythingLLM is an application that turns pieces of content into context that any LLM can use as references during chatting. Prior to 1.13.0, the AnythingLLM agent filesystem copy tool validates only the top-level source and destination paths. The recursive copy helper then descends into child entrie...

Vendor: Mintplex-Labs
Product: anything-llm
Published: May 28, 2026
Source: NVD
CVE-2026-45344 HIGH - 8.1

LinkAce is a self-hosted archive to collect website links. Prior to 2.5.6, the setup database configuration flow on uninitialized LinkAce instances accepts attacker-controlled database credential fields and writes them back into .env without escaping. A remote attacker who can reach the setup endpoi...

Vendor: Kovah
Product: LinkAce
Published: May 28, 2026
Source: NVD

LinkAce is a self-hosted archive to collect website links. Prior to 2.5.6, LinkAce contains a stored cross-site scripting vulnerability that allows a low-privilege user to execute arbitrary JavaScript in an administrator's browser session. This affects instances configured with SSO/OAuth authen...

Vendor: Kovah
Product: LinkAce
Published: May 28, 2026
Source: NVD

LinkAce is a self-hosted archive to collect website links. Prior to 2.5.6, LinkAce contains an Insecure Direct Object Reference vulnerability in the authorization policy layer that allows any authenticated user to modify resources owned by other users. The affected resource types are links, lists, t...

Vendor: Kovah
Product: LinkAce
Published: May 28, 2026
Source: NVD
CVE-2026-45023 MEDIUM - 5.4

AutoGPT is a workflow automation platform for creating, deploying, and managing continuous artificial intelligence agents. Prior to 0.6.59, POST /api/blocks/{block_id}/execute endpoint executes blocks without consuming any credits, regardless of the user's balance. The credit check that exists ...

Vendor: Significant-Gravitas
Product: AutoGPT
Published: May 28, 2026
Source: NVD
CVE-2026-39929 HIGH - 7.5

Lakeside SysTrack Agent versions prior to 11.2.1.28, 11.3.0.38, 11.4.0.24, 11.5.0.15 contain an out-of-bounds read vulnerability in the Command ID 30 UDP packet handler that allows remote attackers to crash the application by sending a specially crafted UDP packet. Attackers can send a malformed pac...

Vendor: Lakeside Software, LLC.
Product: SysTrack Agent
Published: May 28, 2026
Source: NVD
CVE-2026-10044 HIGH - 7.5

Usagi-org ai-goofish-monitor contains an unauthenticated arbitrary file read vulnerability in the GET /api/prompts/{filename} endpoint on Windows deployments that allows unauthenticated remote attackers to read arbitrary files by supplying absolute Windows paths or backslash-based traversal sequence...

Vendor: Usagi-org
Product: ai-goofish-monitor
Published: May 28, 2026
Source: NVD
CVE-2026-9646 MEDIUM - 6.1

A reflected cross-site scripting issue exists in URL handling.

Published: May 28, 2026
Source: NVD
CVE-2026-9645 CRITICAL - 9.9

Exposed methods allow authenticated users to create and execute arbitrary JavaScript code on the server. The scripts execute with full access, enabling complete system compromise as commands are executed as root.

Published: May 28, 2026
Source: NVD
CVE-2026-49095 MEDIUM - 6.5

Improper Input Validation (CWE-20) in the Kibana Fleet agent policy management feature can lead to privilege escalation. An authenticated user with Fleet management privileges can manipulate agent policy configuration by injecting values into a configuration override mechanism that is not adequately...

Vendor: Elastic
Product: Kibana
Published: May 28, 2026
Source: NVD
CVE-2026-49094 MEDIUM - 6.5

Uncontrolled Resource Consumption (CWE-400) in Kibana can lead to denial of service via Excessive Allocation (CAPEC-130). An authenticated user with viewer-level access can submit a request containing an oversized input value to an analytics collections management endpoint. Kibana will consume exces...

Vendor: Elastic
Product: Kibana
Published: May 28, 2026
Source: NVD
CVE-2026-49093 MEDIUM - 6.3

Server-Side Request Forgery (CWE-918) in Kibana can allow an authenticated user with connector management privileges to bypass the operator-configured connector allowlist, causing the Kibana server to issue outbound requests to destinations the egress controls were intended to block.

Vendor: Elastic
Product: Kibana
Published: May 28, 2026
Source: NVD
CVE-2026-46843 MEDIUM - 5.3

Vulnerability in Oracle REST Data Services (component: Core). Supported versions that are affected are 24.2.0-26.1.0. Easily exploitable vulnerability allows unauthenticated attacker with network access via HTTPS to compromise Oracle REST Data Services. Successful attacks of this vulnerability can...

Published: May 28, 2026
Source: NVD
CVE-2026-46842 MEDIUM - 5.3

Vulnerability in Oracle REST Data Services (component: Core). Supported versions that are affected are 24.2.0-26.1.0. Easily exploitable vulnerability allows unauthenticated attacker with network access via HTTPS to compromise Oracle REST Data Services. Successful attacks of this vulnerability can...

Published: May 28, 2026
Source: NVD
CVE-2026-46841 MEDIUM - 5.3

Vulnerability in Oracle REST Data Services (component: General). Supported versions that are affected are 24.2.0-26.1.0. Easily exploitable vulnerability allows unauthenticated attacker with network access via HTTPS to compromise Oracle REST Data Services. Successful attacks of this vulnerability ...

Published: May 28, 2026
Source: NVD
CVE-2026-46840 CRITICAL - 10.0

Vulnerability in Oracle REST Data Services (component: Backend-as-a-Service). Supported versions that are affected are 24.2.0-26.1.0. Easily exploitable vulnerability allows unauthenticated attacker with network access via HTTPS to compromise Oracle REST Data Services. While the vulnerability is i...

Published: May 28, 2026
Source: NVD