Total CVEs

138,728

Critical Severity

3,597

High Severity

12,893

Last 7 Days

1,746
Quick preset (or use dates below)
Clear Filters
Showing 2,061 - 2,080 of 13,436 CVEs
CVE-2026-44518 MEDIUM - 5.3

liboqs is a C-language cryptographic library that provides implementations of post-quantum cryptography algorithms. Prior to 0.16.0, an out-of-bounds read has been identified in the XMSS and XMSS^MT stateful signature verification code. When the verification function is called with a signature buffe...

Vendor: open-quantum-safe
Product: liboqs
Published: May 29, 2026
Source: NVD
CVE-2026-42951 MEDIUM - 5.4

An authenticated user can download a backup of the Danelec MacGregor Voyage Data Recorder device which includes account data and password hashes.

Vendor: Danelec
Product: MacGregor Voyage Data Recorder (VDR) G4e
Published: May 29, 2026
Source: NVD
CVE-2026-40425 MEDIUM - 5.7

The administrator account for the Danelec MacGregor Voyage Data Recorder web interface can directly edit sensitive files related to authentication, potentially changing the root password.

Vendor: Danelec
Product: MacGregor Voyage Data Recorder (VDR) G4e
Published: May 29, 2026
Source: NVD
CVE-2026-46690 MEDIUM - 5.8

unbounded_spsc is an "unbounded" extension of bounded_spsc_queue. In versions 0.2.0 and prior, sender::send pointer-as-value transmute causes OOB read and fake-Arc drop under TX/RX race. At time of publication, there are no publicly available patches.

Vendor: rust
Product: unbounded-spsc
Published: May 29, 2026
Source: GitHub
CVE-2026-47190 MEDIUM - 4.4

IPAM is the IP address Manager for Cluster API Provider Metal3. Prior to versions 1.11.7, 1.12.4, and 1.13.0, the IPAM controller's ClusterRole granted full CRUD permissions (create, delete, get, list, patch, update, watch) on core/v1 Secrets. The controller never accesses Secrets during normal...

Vendor: go
Product: github.com/metal3-io/ip-address-manager
Published: May 29, 2026
Source: GitHub

vm2 is an open source vm/sandbox for Node.js. Prior to version 3.11.4, NodeVM exposes some process-wide observability builtins when they are allowed through require.builtin. The diagnostics_channel, async_hooks, and perf_hooks builtins are not blocked by the dangerous builtin denylist. These modules...

Vendor: npm
Product: vm2
Published: May 29, 2026
Source: GitHub
CVE-2026-10070 MEDIUM - 4.7

A vulnerability was found in macrozheng mall up to 1.0.3. This affects an unknown function of the file /admin/update/ of the component Super Admin Password Handler. Performing a manipulation results in improper authorization. Remote exploitation of the attack is possible. The vendor deleted the GitH...

Vendor: macrozheng
Product: mall
Published: May 29, 2026
Source: NVD
CVE-2026-47200 MEDIUM - 5.3

Nuxt is an open-source web development framework for Vue.js. In Nuxt versions 3.11.0 to before 3.21.6 and 4.0.0-alpha.1 to before 4.4.6 and @nuxt/nitro-server versions 3.20.0 to before 3.21.6 and 4.0.0-alpha.1 to before 4.4.6, when experimental.componentIslands is enabled (default in Nuxt 4), any .s...

Vendor: npm
Product: nuxt
Published: May 29, 2026
Source: GitHub
CVE-2026-39229 MEDIUM - 6.5

Bolt CMS through 3.7.0 allows SQL Injection in the 'order' parameter of the content listing pages. An authenticated attacker with low-level privileges can exploit this through the OrderDirective component. This allows for the extraction of sensitive information

Published: May 29, 2026
Source: NVD
CVE-2026-36324 MEDIUM - 6.1

SourceCodester Doctor Appointment System 1.0 is vulnerable to Cross Site Scripting (XSS) due to improper handling of user supplied input in the user registration functionality in register.php.

Published: May 29, 2026
Source: NVD
CVE-2026-35673 MEDIUM - 6.5

OpenClaw before 2026.4.29 contains an SSRF policy bypass vulnerability in browser debug and export routes that allows reuse of already-open blocked tabs. Attackers with access to these routes can bypass private-network SSRF policies by reusing blocked tabs to export or inspect content that should re...

Vendor: OpenClaw
Product: OpenClaw
Published: May 29, 2026
Source: NVD
CVE-2026-34507 MEDIUM - 5.4

OpenClaw before 2026.4.29 contains a policy bypass vulnerability in QQBot admin commands that allows authenticated senders to skip DM-only and allowFrom policy checks. Attackers can route admin commands from unauthorized senders or contexts to execute restricted behavior that policy should have bloc...

Vendor: OpenClaw
Product: OpenClaw
Published: May 29, 2026
Source: NVD
CVE-2026-32906 MEDIUM - 4.3

OpenClaw before 2026.5.12 contains a privilege escalation vulnerability in Slack plugin approvals that allows exec-authorized users to resolve plugin approvals through the exec approver gate. Attackers with limited exec approval permissions can bypass intended approval splits to approve plugin actio...

Vendor: OpenClaw
Product: OpenClaw
Published: May 29, 2026
Source: NVD
CVE-2026-10101 MEDIUM - 6.3

ACM/MCE assisted-service writes raw referenced pull-secret contents into `InfraEnv.status.conditions[].message` when pull-secret validation fails. A namespace principal with the stock `view` ClusterRole cannot directly read Secrets, but can read `InfraEnv` objects and recover the referenced Secret&#...

Vendor: Red Hat
Product: Multicluster Engine for Kubernetes
Published: May 29, 2026
Source: NVD
CVE-2026-10099 MEDIUM - 4.0

XX-Net V5.16.6 contains a WebSocket frame parsing vulnerability in the WebSocket_receive_worker routine of simple_http_server.py that allows attackers to cause corrupted application data by sending unmasked WebSocket frames. The server unconditionally reads 4 bytes as a masking key regardless of whe...

Vendor: XX-net
Product: XX-Net
Published: May 29, 2026
Source: NVD
CVE-2026-10064 MEDIUM - 6.3

A security flaw has been discovered in TRENDnet TEW-432BRP 3.10B20. This affects the function formSetPortTr of the file /goform/formSetPortTr. Performing a manipulation of the argument special_name results in stack-based buffer overflow. It is possible to initiate the attack remotely. The exploit ha...

Vendor: TRENDnet
Product: TEW-432BRP
Published: May 29, 2026
Source: NVD
CVE-2018-25397 MEDIUM - 5.3

PHP-SHOP 1.0 contains a cross-site request forgery vulnerability that allows unauthenticated attackers to add administrative users by crafting malicious HTML forms. Attackers can trick authenticated administrators into visiting a page containing a hidden form that automatically submits POST requests...

Vendor: joeyrush
Product: PHP-SHOP master
Published: May 29, 2026
Source: NVD
CVE-2018-25393 MEDIUM - 6.5

Navigate CMS 2.8.5 contains a path traversal vulnerability that allows authenticated users to download arbitrary files by injecting directory traversal sequences in the id parameter. Attackers can send GET requests to navigate_download.php with path traversal payloads ../../../cfg/globals.php to acc...

Vendor: Navigatecms
Product: Navigate CMS
Published: May 29, 2026
Source: NVD
CVE-2018-25387 MEDIUM - 5.3

HaPe PKH 1.1 contains a cross-site request forgery vulnerability that allows attackers to change administrator passwords by submitting forged requests to the user update endpoint. Attackers can craft malicious forms targeting the aksi_user.php script with parameters like id_user, password, and level...

Vendor: Sitejo
Product: HaPe PKH
Published: May 29, 2026
Source: NVD
CVE-2018-25384 MEDIUM - 5.4

Wikidforum 2.20 contains a cross-site scripting vulnerability that allows authenticated attackers to inject malicious scripts by submitting crafted HTML in the reply_text parameter. Attackers can post comments containing JavaScript code through the rpc.php endpoint that executes in other users'...

Vendor: wikidforum
Product: Wikidforum
Published: May 29, 2026
Source: NVD