Total CVEs

150,998

Critical Severity

5,040

High Severity

17,683

Last 7 Days

2,039
Quick preset (or use dates below)
Clear Filters
Showing 2,741 - 2,760 of 150,998 CVEs
CVE-2026-44690 HIGH - 7.5

In NLnet Labs Unbound 1.7.0 up to and including 1.25.1, insufficient validation of the RRSIG.Labels field combined with premature cache writes during RFC 8198 aggressive NSEC processing leads to cache poisoning that permits a malicious actor controlling a single delegated zone to poison arbitrary si...

Vendor: NLnet Labs
Product: Unbound
Published: Jul 22, 2026
Source: NVD

In NLnet Labs Unbound 1.13.2 up to and including 1.25.1, stub or forward zones where the name is below an intermediate labed below a DNSSEC signed zone could be shadowed by the intermediate label's secure NXDOMAIN answer from the parent. This is caused by an off-by-one error in 'harden-bel...

Vendor: NLnet Labs
Product: Unbound
Published: Jul 22, 2026
Source: NVD
CVE-2026-44621 MEDIUM - 5.9

With NLnet Labs Unbound up to and including version 1.25.1, applications using libunbound and configured with 'unwanted-reply-threshold', could eventually be abruptly terminated if the threshold is reached and libunbound needs to call 'libworker_alloc_cleanup' since the function ...

Vendor: NLnet Labs
Product: Unbound
Published: Jul 22, 2026
Source: NVD

In NLnet Labs Unbound 1.16.2 up to and including 1.25.1, a similar vulnerability as with CVE-2026-40622 in the 'ghost domain names' family of attacks was found in Unbound that could extend the ghost domain window by up to one cached TTL configured value for A/AAAA glue records. Similar to ...

Vendor: NLnet Labs
Product: Unbound
Published: Jul 22, 2026
Source: NVD

In NLnet Labs Unbound 1.22.0 up to and including 1.25.1, client terminated DNS-over-QUIC (DoQ) queries are not accounted properly by Unbound resulting in low-cost inflation of the waiting number of replies for already in-flight resolution queries. This results in degradation of resolution service fo...

Vendor: NLnet Labs
Product: Unbound
Published: Jul 22, 2026
Source: NVD
CVE-2026-40691 HIGH - 7.5

In Unbound 1.9.0 up to and including 1.25.1, when a DNSCrypt query is received over TCP, the routine that encrypts the reply in place fails to bound the reply length against the destination buffer size. The size clamp that protects the UDP path is not applied on the TCP path, so a reply larger than ...

Vendor: NLnet Labs
Product: Unbound
Published: Jul 22, 2026
Source: NVD
CVE-2026-32665 HIGH - 7.5

In NLnet Labs Unbound 1.22.0 up to and including 1.25.1, when downstream DNS-over-QUIC (DoQ) is enabled, the first two bidirectional streams on a new QUIC connection (stream_id 0 and 4) bypass the per-stream 'quic-size' gate entirely, and large input buffers are allocated later, after only...

Vendor: NLnet Labs
Product: Unbound
Published: Jul 22, 2026
Source: NVD
CVE-2026-16560 MEDIUM - 5.3

A heap-buffer-overflow flaw was found in Directory Server (389-ds-base). When a DN contains a legacy-quoted value, the server won't close the heap allocation allowing another call to refer to the same memory pointer causing a denial of service or an arbitrary memory write operation.

Vendor: Red Hat
Product: Red Hat Directory Server 11, Red Hat Directory Server 12, Red Hat Directory Server 13, Red Hat Enterprise Linux 10, Red Hat Enterprise Linux 6, Red Hat Enterprise Linux 7, Red Hat Enterprise Linux 8, Red Hat Enterprise Linux 9
Published: Jul 22, 2026
Source: NVD
CVE-2026-16232 CRITICAL - 9.1

An authentication bypass vulnerability in the Check Point SmartConsole login process allows an unauthenticated remote attacker to obtain an application login token and use it to authenticate with full administrative privileges. Successful exploitation allows the attacker to modify security policies ...

Vendor: checkpoint
Product: Quantum Security Management, Multi-Domain Security Management
Published: Jul 22, 2026
Source: NVD
CVE-2026-14932 MEDIUM - 6.5

In ProgressĀ® TelerikĀ® UI for AJAX prior to v2026.2.708, the obsolete RadChart component's ChartImage.axd handler is vulnerable to unauthenticated file read and deletion of image-extension files within the application directory.

Vendor: Progress Software
Product: Telerik UI for ASP.NET AJAX
Published: Jul 22, 2026
Source: NVD
CVE-2026-14865 MEDIUM - 5.3

In ProgressĀ® TelerikĀ® UI for AJAX prior to v2026.2.708, the internal LayoutBuilder control processes client-state XML without disabling DTD processing, allowing unauthenticated denial of service via recursive XML entity expansion.

Vendor: Progress Software
Product: Telerik UI for ASP.NET AJAX
Published: Jul 22, 2026
Source: NVD
CVE-2026-14586 MEDIUM - 5.9

In NLnet Labs Unbound 1.22.0 up to and including 1.25.1, in DNS-over-QUIC environments, with high concurrency and under pressure, an assertion in libngtcp2 about monotonic timestamps could trigger and result in server termination and thus denial of service. When interfacing with libngtcp2, for DNS-o...

Vendor: NLnet Labs
Product: Unbound
Published: Jul 22, 2026
Source: NVD
CVE-2026-13192 MEDIUM - 6.5

In ProgressĀ® TelerikĀ® UI for AJAX prior to v2026.2.708, insufficient validation of content submitted to the RadEditor PDF export feature may allow an authenticated attacker to trigger server-side requests to arbitrary hosts, resulting in outbound network connections and potential exposure of Windows...

Vendor: Progress Software
Product: Telerik UI for ASP.NET AJAX
Published: Jul 22, 2026
Source: NVD
CVE-2026-13190 HIGH - 8.1

In ProgressĀ® TelerikĀ® UI for AJAX prior to v2026.2.708, a deserialization vulnerability in the persistence utilities allows unsafe type instantiation from attacker-influenced persisted state, which can lead to remote code execution.

Vendor: Progress Software
Product: Telerik UI for ASP.NET AJAX
Published: Jul 22, 2026
Source: NVD
CVE-2026-13189 HIGH - 7.5

In ProgressĀ® TelerikĀ® UI for AJAX prior to v2026.2.708, insufficient validation of the language parameter in the spell check handler may allow an attacker to influence server-side file path resolution and trigger unintended server-side requests.

Vendor: Progress Software
Product: Telerik UI for ASP.NET AJAX
Published: Jul 22, 2026
Source: NVD
CVE-2026-13188 MEDIUM - 5.9

In ProgressĀ® TelerikĀ® UI for AJAX prior to v2026.2.708, DialogHandler request parameters may be tampered with, potentially altering dialog server-side behavior and enabling chained exploitation.

Vendor: Progress Software
Product: Telerik UI for ASP.NET AJAX
Published: Jul 22, 2026
Source: NVD
CVE-2026-13187 HIGH - 8.1

In ProgressĀ® TelerikĀ® UI for AJAX prior to v2026.2.708, DialogHandler provider type input may be tampered with, potentially altering dialog processing and enabling chained exploitation.

Vendor: Progress Software
Product: Telerik UI for ASP.NET AJAX
Published: Jul 22, 2026
Source: NVD
CVE-2026-13186 HIGH - 8.1

In ProgressĀ® TelerikĀ® UI for AJAX prior to v2026.2.708, a path traversal vulnerability in the file-based persistence storage provider can be exploited when the storage key is derived from user-controlled input, enabling attacker-controlled deserialization and remote code execution.

Vendor: Progress Software
Product: Telerik UI for ASP.NET AJAX
Published: Jul 22, 2026
Source: NVD
CVE-2026-13185 HIGH - 8.1

In ProgressĀ® TelerikĀ® UI for AJAX prior to v2026.2.708, applications using cookie-based storage in RadPersistenceManager or RadDockLayout deserialize attacker-controlled cookie content, allowing unauthenticated remote code execution.

Vendor: Progress Software
Product: Telerik UI for ASP.NET AJAX
Published: Jul 22, 2026
Source: NVD
CVE-2026-13184 HIGH - 7.5

In ProgressĀ® TelerikĀ® UI for AJAX prior to v2026.2.708, when Telerik.Upload.ConfigurationHashKey is absent and machineKey is not explicitly configured, upload metadata integrity protection may fall back to a predictable default key, enabling attackers to forge protected upload metadata and unlock fu...

Vendor: Progress Software
Product: Telerik UI for ASP.NET AJAX
Published: Jul 22, 2026
Source: NVD