Total CVEs

150,703

Critical Severity

4,956

High Severity

17,517

Last 7 Days

2,022
Quick preset (or use dates below)
Clear Filters
📅 Showing Year: 2026 (January 1 - December 31, 2026) View All Years →
Showing 1,821 - 1,840 of 47,108 CVEs
CVE-2026-66004 MEDIUM - 5.3

BlenderMCP before commit 30a3308 contains a path traversal vulnerability in the download_polyhaven_asset method that allows attackers to write arbitrary files by injecting traversal sequences in API response include keys. Attackers performing MITM attacks or prompt injection can supply malicious pat...

Vendor: ahujasid
Product: blender-mcp
Published: Jul 24, 2026
Source: NVD
CVE-2026-58630 CRITICAL - 10.0

Improper access control in Azure App Service allows an unauthorized attacker to elevate privileges over a network.

Published: Jul 24, 2026
Source: NVD
CVE-2026-58586 CRITICAL - 9.8

Image::WebP versions through 0.2 for Perl bundle a vulnerable version of libwebp. Image::WebP does not link to the system libwebp. Instead, it uses a bundled copy of libwebp 0.3.0 (released 2013-03-20). That version has multiple known vulnerabilities, including CVE-2023-4863. Any caller that decod...

Vendor: ZAPAD
Product: Image::WebP
Published: Jul 24, 2026
Source: NVD
CVE-2026-57106 CRITICAL - 10.0

Server-side request forgery (ssrf) in Data Quality allows an unauthorized attacker to elevate privileges over a network.

Vendor: microsoft
Product: purview_data_governance
Published: Jul 24, 2026
Source: NVD
CVE-2026-56163 CRITICAL - 10.0

Missing authentication for critical function in Microsoft Azure Kubernetes Service allows an unauthorized attacker to elevate privileges over a network.

Vendor: microsoft
Product: azure_kubernetes_service
Published: Jul 24, 2026
Source: NVD

Out-of-bounds Read (CWE-125) in BACnet packet parsing (`bacdt_datetime_to_tod`) in Loytec LIP-ME201C, L-INX, L-GATE, L-ROC, L-IOB, L-DALI, L-VIS and L-PAD through 8.4.18 on LINX-A64 allows an unauthenticated remote attacker to crash `linx_a64.exe` and ultimately reboot the device via a malformed BAC...

Vendor: Loytec
Product: LIP-ME20xC, L-INX, L-GATE, L-ROC, L-IOB, L-DALI, L-VIS, L-PAD
Published: Jul 24, 2026
Source: NVD

Unchecked input for loop condition (CWE-606) in the SNMP agent in Loytec LIP-ME201C, L-INX, L-GATE, L-ROC, L-IOB, L-DALI, L-VIS and L-PAD through 8.4.16 on LINX-A64 allows an unauthenticated remote attacker to cause persistent denial of service (CPU exhaustion) via a crafted SNMP GETNEXT request wit...

Vendor: Loytec
Product: LIP-ME20xC, L-INX, L-GATE, L-ROC, L-IOB, L-DALI, L-VIS, L-PAD
Published: Jul 24, 2026
Source: NVD

Reflected Cross-Site Scripting (CWE-79) in LWEB802 in Loytec LWEB-802 before 5.0.8 on all platforms allows an unauthenticated remote attacker to execute arbitrary JavaScript in a victim's browser and perform actions with the victim's privileges via a crafted link containing a malicious `pr...

Vendor: Loytec
Product: LWEB-802
Published: Jul 24, 2026
Source: NVD

Exposure of Sensitive Information (CWE-200) in LWEB802 browser `localStorage` in Loytec LWEB-802 before 5.0.8 on all platforms allows an unauthenticated remote attacker to leak stored management credentials via a crafted link.

Vendor: Loytec
Product: LWEB-802
Published: Jul 24, 2026
Source: NVD

Stack-based Buffer Overflow (CWE-121) in `/usr/bin/ltsudo` `cmd_ipaddr_conflict` in Loytec LIP-ME201C, L-INX, L-GATE, L-ROC, L-IOB, L-DALI, L-VIS and L-PAD through 8.4.16 on LINX-A64 allows a `superadmin`-group attacker to trigger a SUID-root process abort or potentially elevate privileges via an o...

Vendor: Loytec
Product: LIP-ME20xC, L-INX, L-GATE, L-ROC, L-IOB, L-DALI, L-VIS, L-PAD
Published: Jul 24, 2026
Source: NVD
CVE-2026-49326 MEDIUM - 6.5

Missing Authorization vulnerability in Apache HBase thrift and rest delegation service. A scan operation in thrift/rest service has 3 steps, open, fetch(possible multiple times), close. The open step will return an id which will be passed back to server for identifying the scanner instances stored ...

Vendor: Apache Software Foundation
Product: Apache HBase
Published: Jul 24, 2026
Source: NVD
CVE-2026-17059 MEDIUM - 6.5

A flaw was found in the role-users endpoint of the keycloak-services library, which is the core component of the Keycloak identity and access management solution. The issue occurs because the system fails to check if an administrator has permission to view individual users when listing members of a ...

Vendor: Red Hat
Product: Red Hat Build of Keycloak, Red Hat Data Grid 8, Red Hat JBoss Enterprise Application Platform Expansion Pack, Red Hat Single Sign-On 7
Published: Jul 24, 2026
Source: NVD
CVE-2026-16802 MEDIUM - 6.5

Cleartext storage of sensitive information in the variables feature in Devolutions PowerShell Universal 2026.2.2 and earlier allows a local actor with file system access to read secret values via secret variables stored in cleartext on disk when no vault is selected.

Vendor: Devolutions
Product: PowerShell Universal
Published: Jul 24, 2026
Source: NVD
CVE-2026-16801 HIGH - 8.8

Improper control of generation of code ('Code Injection') in the variables feature in Devolutions PowerShell Universal 2026.2.2 and earlier allows an authenticated user with variable write permission to execute arbitrary PowerShell code via a crafted variable value that is not properly esc...

Vendor: Devolutions
Product: PowerShell Universal
Published: Jul 24, 2026
Source: NVD
CVE-2026-16800 HIGH - 8.8

Improper control of generation of code ('Code Injection') in the schedule feature in Devolutions PowerShell Universal 2026.2.2 and earlier allows an authenticated user with schedule creation permission to execute arbitrary PowerShell code via crafted schedule parameter names concatenated i...

Vendor: Devolutions
Product: PowerShell Universal
Published: Jul 24, 2026
Source: NVD
CVE-2026-16799 MEDIUM - 5.0

Improper access control in the automation tests and workflows features in Devolutions PowerShell Universal 2026.2.2 and earlier allows an authenticated user with only the Reader role to execute automation tests and modify workflow properties via missing server-side authorization checks.

Vendor: Devolutions
Product: PowerShell Universal
Published: Jul 24, 2026
Source: NVD
CVE-2026-16798 MEDIUM - 6.5

Insertion of sensitive information into sent data in the automation jobs API in Devolutions PowerShell Universal 2026.2.2 and earlier allows an authenticated user with scoped job or script read permission to obtain another user's stored OAuth refresh token via job read responses that fail to st...

Vendor: Devolutions
Product: PowerShell Universal
Published: Jul 24, 2026
Source: NVD

Improper Authentication (CWE-287) in the PAM configuration in Loytec LIP-ME201C, L-INX, L-GATE, L-ROC, L-IOB, L-DALI, L-VIS and L-PAD through 8.4.16 on LINX-A64 allows a local attacker to authenticate as a uid=0 account without a password and obtain a root shell via an `/etc/passwd` entry with an em...

Vendor: Loytec
Product: LIP-ME20xC, L-INX, L-GATE, L-ROC, L-IOB, L-DALI, L-VIS, L-PAD
Published: Jul 24, 2026
Source: NVD

Improper Link Resolution (CWE-59) in `/usr/bin/larm_starter` in Loytec L-INX, L-GATE, L-ROC, L-IOB, L-DALI, L-VIS and L-PAD through 8.4.16 on LINX-A64 allows an authenticated `larmapp` attacker to make `/etc/passwd` writable by the `larmapp` group (leading to root privilege escalation) via a symlink...

Vendor: Loytec
Product: LIP-ME20xC, L-INX, L-GATE, L-ROC, L-IOB, L-DALI, L-VIS, L-PAD
Published: Jul 24, 2026
Source: NVD

Improper Privilege Management (CWE-269) in `/usr/bin/ltsudo` in Loytec LIP-ME201C, L-INX, L-GATE, L-ROC, L-IOB, L-DALI, L-VIS and L-PAD through 8.4.16 on LINX-A64 allows a `superadmin`-group attacker to reset the password of any LARM user (including the `larmapp` service account) via the `set-passwd...

Vendor: Loytec
Product: LIP-ME20xC, L-INX, L-GATE, L-ROC, L-IOB, L-DALI, L-VIS, L-PAD
Published: Jul 24, 2026
Source: NVD