Total CVEs

138,940

Critical Severity

3,615

High Severity

12,982

Last 7 Days

1,068
Quick preset (or use dates below)
Clear Filters
๐Ÿ“… Showing Year: 2026 (January 1 - December 31, 2026) View All Years โ†’
Showing 181 - 200 of 35,345 CVEs
CVE-2026-10658 HIGH - 7.1

A missing length validation in the Zephyr Bluetooth Host ISO receive path can be triggered by malformed HCI ISO data. In bt_iso_recv() (subsys/bluetooth/host/iso.c), when processing PB=START/SINGLE fragments, the code pulls a TS SDU header (8 bytes, ts=1) or a non-TS SDU header (4 bytes, ts=0) witho...

Vendor: zephyrproject-rtos
Product: Zephyr
Published: Jun 23, 2026
Source: NVD
CVE-2026-10651 HIGH - 7.1

A malformed Bluetooth Classic SDP attribute can trigger a reachable assertion in Zephyr's SDP parser. In subsys/bluetooth/host/classic/sdp.c, bt_sdp_parse_attribute() accepts an input buffer once it contains the 1-byte attribute type and 2-byte attribute id, but then unconditionally pulls an ad...

Vendor: zephyrproject-rtos
Product: Zephyr
Published: Jun 23, 2026
Source: NVD
CVE-2026-10645 MEDIUM - 4.9

Zephyr's ext2 directory-entry parser does not fully validate on-disk directory entry structure before copying the entry name and advancing traversal state. In ext2_fetch_direntry() (subsys/fs/ext2/ext2_diskops.c), the code only checks de_name_len <= EXT2_MAX_FILE_NAME and then copies the nam...

Vendor: zephyrproject-rtos
Product: Zephyr
Published: Jun 23, 2026
Source: NVD
CVE-2026-52801 HIGH - 8.1

Gogs has the ability to import local repositories via Mirror Settings

Vendor: go
Product: gogs.io/gogs
Published: Jun 23, 2026
Source: GitHub
CVE-2026-52800 HIGH - 8.8

Gogs Vulnerable to CSRF Leading to Organization Owner Takeover

Vendor: go
Product: gogs.io/gogs
Published: Jun 23, 2026
Source: GitHub
CVE-2026-52799 HIGH - 7.5

Gogs Missing Authorization in Attachment Download

Vendor: go
Product: gogs.io/gogs
Published: Jun 22, 2026
Source: GitHub
CVE-2026-52798 HIGH - 8.9

Gogs has Stored XSS in `.ipynb` Preview

Vendor: go
Product: gogs.io/gogs
Published: Jun 22, 2026
Source: GitHub

Gogs has DoS in rendering issue index pattern

Vendor: go
Product: gogs.io/gogs
Published: Jun 22, 2026
Source: GitHub
CVE-2026-50179 MEDIUM - 4.2

@actual-app/web has CSV Formula Injection in Transaction Export via Imported Payee/Notes Fields

Vendor: npm
Product: @actual-app/web
Published: Jun 22, 2026
Source: GitHub
CVE-2026-54353 HIGH - 8.5

@budibase/backend-core has potential SSRF DNS rebinding bypass in outbound fetch validation

Vendor: npm
Product: @budibase/backend-core
Published: Jun 22, 2026
Source: GitHub
CVE-2026-54352 CRITICAL - 9.6

Budibase has arbitrary file read by workspace-builder via PWA-zip symlink upload

Vendor: npm
Product: @budibase/server
Published: Jun 22, 2026
Source: GitHub
CVE-2026-54351 HIGH - 8.2

Budibase: Mass Assignment in Webhook Trigger Allows Cross-Workspace Automation Execution via appId Override

Vendor: npm
Product: @budibase/server
Published: Jun 22, 2026
Source: GitHub
CVE-2026-49229 HIGH - 8.3

@actual-app/sync-server: Disabled OpenID users keep access through existing session tokens

Vendor: npm
Product: @actual-app/sync-server
Published: Jun 22, 2026
Source: GitHub

Budibase: POST /api/attachments/:datasourceId/url is unauthenticated and lets anonymous callers mint S3 PUT pre-signed URLs using stored datasource IAM credentials

Vendor: npm
Product: @budibase/server
Published: Jun 22, 2026
Source: GitHub
CVE-2026-54232 HIGH - 8.8

vLLM is an inference and serving engine for large language models (LLMs). Prior to 0.22.1, the vLLM Dockerfile is vulnerable to a dependency confusion attack through the flashinfer-jit-cache package. The package is installed from a custom index (flashinfer.ai/whl/) using --extra-index-url, but the p...

Vendor: vllm-project
Product: vllm
Published: Jun 22, 2026
Source: NVD
CVE-2026-50136 HIGH - 7.4

Budibase: Unauthenticated S3 signed upload URL generation allows arbitrary writes with stored datasource credentials

Vendor: npm
Product: @budibase/server
Published: Jun 22, 2026
Source: GitHub
CVE-2026-50132 HIGH - 7.3

Budibase has an Account Impersonation Issue โ€” Chat Identity Link Hijacking via Missing Consent & CSRF

Vendor: npm
Product: @budibase/server
Published: Jun 22, 2026
Source: GitHub
CVE-2026-48487 MEDIUM - 6.5

zeroconf: Unvalidated rdlength in record payload readers allows LAN-local cache corruption via crafted mDNS packet

Vendor: pip
Product: zeroconf
Published: Jun 22, 2026
Source: GitHub
CVE-2026-48170 CRITICAL - 9.1

scimPatch vulnerable to prototype pollution via unfiltered keys in patch

Vendor: npm
Product: scim-patch
Published: Jun 22, 2026
Source: GitHub

Gogs has SSRF in webhook deliveries

Vendor: go
Product: gogs.io/gogs
Published: Jun 22, 2026
Source: GitHub