Total CVEs

150,976

Critical Severity

5,036

High Severity

17,677

Last 7 Days

2,087
Quick preset (or use dates below)
Clear Filters
šŸ“… Showing Year: 2026 (January 1 - December 31, 2026) View All Years →
Showing 2,721 - 2,740 of 47,381 CVEs
CVE-2026-44621 MEDIUM - 5.9

With NLnet Labs Unbound up to and including version 1.25.1, applications using libunbound and configured with 'unwanted-reply-threshold', could eventually be abruptly terminated if the threshold is reached and libunbound needs to call 'libworker_alloc_cleanup' since the function ...

Vendor: NLnet Labs
Product: Unbound
Published: Jul 22, 2026
Source: NVD

In NLnet Labs Unbound 1.16.2 up to and including 1.25.1, a similar vulnerability as with CVE-2026-40622 in the 'ghost domain names' family of attacks was found in Unbound that could extend the ghost domain window by up to one cached TTL configured value for A/AAAA glue records. Similar to ...

Vendor: NLnet Labs
Product: Unbound
Published: Jul 22, 2026
Source: NVD

In NLnet Labs Unbound 1.22.0 up to and including 1.25.1, client terminated DNS-over-QUIC (DoQ) queries are not accounted properly by Unbound resulting in low-cost inflation of the waiting number of replies for already in-flight resolution queries. This results in degradation of resolution service fo...

Vendor: NLnet Labs
Product: Unbound
Published: Jul 22, 2026
Source: NVD
CVE-2026-40691 HIGH - 7.5

In Unbound 1.9.0 up to and including 1.25.1, when a DNSCrypt query is received over TCP, the routine that encrypts the reply in place fails to bound the reply length against the destination buffer size. The size clamp that protects the UDP path is not applied on the TCP path, so a reply larger than ...

Vendor: NLnet Labs
Product: Unbound
Published: Jul 22, 2026
Source: NVD
CVE-2026-32665 HIGH - 7.5

In NLnet Labs Unbound 1.22.0 up to and including 1.25.1, when downstream DNS-over-QUIC (DoQ) is enabled, the first two bidirectional streams on a new QUIC connection (stream_id 0 and 4) bypass the per-stream 'quic-size' gate entirely, and large input buffers are allocated later, after only...

Vendor: NLnet Labs
Product: Unbound
Published: Jul 22, 2026
Source: NVD
CVE-2026-16560 MEDIUM - 5.3

A heap-buffer-overflow flaw was found in Directory Server (389-ds-base). When a DN contains a legacy-quoted value, the server won't close the heap allocation allowing another call to refer to the same memory pointer causing a denial of service or an arbitrary memory write operation.

Vendor: Red Hat
Product: Red Hat Directory Server 11, Red Hat Directory Server 12, Red Hat Directory Server 13, Red Hat Enterprise Linux 10, Red Hat Enterprise Linux 6, Red Hat Enterprise Linux 7, Red Hat Enterprise Linux 8, Red Hat Enterprise Linux 9
Published: Jul 22, 2026
Source: NVD
CVE-2026-16232 CRITICAL - 9.1

An authentication bypass vulnerability in the Check Point SmartConsole login process allows an unauthenticated remote attacker to obtain an application login token and use it to authenticate with full administrative privileges. Successful exploitation allows the attacker to modify security policies ...

Vendor: checkpoint
Product: Quantum Security Management, Multi-Domain Security Management
Published: Jul 22, 2026
Source: NVD
CVE-2026-14932 MEDIUM - 6.5

In ProgressĀ® TelerikĀ® UI for AJAX prior to v2026.2.708, the obsolete RadChart component's ChartImage.axd handler is vulnerable to unauthenticated file read and deletion of image-extension files within the application directory.

Vendor: Progress Software
Product: Telerik UI for ASP.NET AJAX
Published: Jul 22, 2026
Source: NVD
CVE-2026-14865 MEDIUM - 5.3

In ProgressĀ® TelerikĀ® UI for AJAX prior to v2026.2.708, the internal LayoutBuilder control processes client-state XML without disabling DTD processing, allowing unauthenticated denial of service via recursive XML entity expansion.

Vendor: Progress Software
Product: Telerik UI for ASP.NET AJAX
Published: Jul 22, 2026
Source: NVD
CVE-2026-14586 MEDIUM - 5.9

In NLnet Labs Unbound 1.22.0 up to and including 1.25.1, in DNS-over-QUIC environments, with high concurrency and under pressure, an assertion in libngtcp2 about monotonic timestamps could trigger and result in server termination and thus denial of service. When interfacing with libngtcp2, for DNS-o...

Vendor: NLnet Labs
Product: Unbound
Published: Jul 22, 2026
Source: NVD
CVE-2026-13192 MEDIUM - 6.5

In ProgressĀ® TelerikĀ® UI for AJAX prior to v2026.2.708, insufficient validation of content submitted to the RadEditor PDF export feature may allow an authenticated attacker to trigger server-side requests to arbitrary hosts, resulting in outbound network connections and potential exposure of Windows...

Vendor: Progress Software
Product: Telerik UI for ASP.NET AJAX
Published: Jul 22, 2026
Source: NVD
CVE-2026-13190 HIGH - 8.1

In ProgressĀ® TelerikĀ® UI for AJAX prior to v2026.2.708, a deserialization vulnerability in the persistence utilities allows unsafe type instantiation from attacker-influenced persisted state, which can lead to remote code execution.

Vendor: Progress Software
Product: Telerik UI for ASP.NET AJAX
Published: Jul 22, 2026
Source: NVD
CVE-2026-13189 HIGH - 7.5

In ProgressĀ® TelerikĀ® UI for AJAX prior to v2026.2.708, insufficient validation of the language parameter in the spell check handler may allow an attacker to influence server-side file path resolution and trigger unintended server-side requests.

Vendor: Progress Software
Product: Telerik UI for ASP.NET AJAX
Published: Jul 22, 2026
Source: NVD
CVE-2026-13188 MEDIUM - 5.9

In ProgressĀ® TelerikĀ® UI for AJAX prior to v2026.2.708, DialogHandler request parameters may be tampered with, potentially altering dialog server-side behavior and enabling chained exploitation.

Vendor: Progress Software
Product: Telerik UI for ASP.NET AJAX
Published: Jul 22, 2026
Source: NVD
CVE-2026-13187 HIGH - 8.1

In ProgressĀ® TelerikĀ® UI for AJAX prior to v2026.2.708, DialogHandler provider type input may be tampered with, potentially altering dialog processing and enabling chained exploitation.

Vendor: Progress Software
Product: Telerik UI for ASP.NET AJAX
Published: Jul 22, 2026
Source: NVD
CVE-2026-13186 HIGH - 8.1

In ProgressĀ® TelerikĀ® UI for AJAX prior to v2026.2.708, a path traversal vulnerability in the file-based persistence storage provider can be exploited when the storage key is derived from user-controlled input, enabling attacker-controlled deserialization and remote code execution.

Vendor: Progress Software
Product: Telerik UI for ASP.NET AJAX
Published: Jul 22, 2026
Source: NVD
CVE-2026-13185 HIGH - 8.1

In ProgressĀ® TelerikĀ® UI for AJAX prior to v2026.2.708, applications using cookie-based storage in RadPersistenceManager or RadDockLayout deserialize attacker-controlled cookie content, allowing unauthenticated remote code execution.

Vendor: Progress Software
Product: Telerik UI for ASP.NET AJAX
Published: Jul 22, 2026
Source: NVD
CVE-2026-13184 HIGH - 7.5

In ProgressĀ® TelerikĀ® UI for AJAX prior to v2026.2.708, when Telerik.Upload.ConfigurationHashKey is absent and machineKey is not explicitly configured, upload metadata integrity protection may fall back to a predictable default key, enabling attackers to forge protected upload metadata and unlock fu...

Vendor: Progress Software
Product: Telerik UI for ASP.NET AJAX
Published: Jul 22, 2026
Source: NVD
CVE-2026-13183 HIGH - 7.5

In ProgressĀ® TelerikĀ® UI for AJAX prior to v2026.2.708, RadAsyncUpload upload metadata processing may leak cryptographic validity through measurable timing differences, enabling remote attackers to recover protected metadata values.

Vendor: Progress Software
Product: Telerik UI for ASP.NET AJAX
Published: Jul 22, 2026
Source: NVD
CVE-2026-13182 HIGH - 7.5

In ProgressĀ® TelerikĀ® UI for AJAX prior to v2026.2.708, RadAsyncUpload client-state processing can distinguish decrypt failures from invalid-JSON parse failures, creating an oracle that reveals protected metadata values to remote attackers.

Vendor: Progress Software
Product: Telerik UI for ASP.NET AJAX
Published: Jul 22, 2026
Source: NVD