Total CVEs

138,936

Critical Severity

3,615

High Severity

12,981

Last 7 Days

1,695
Quick preset (or use dates below)
Clear Filters
Showing 2,461 - 2,480 of 12,981 CVEs
CVE-2026-47139 HIGH - 8.6

vm2 is an open source vm/sandbox for Node.js. Prior to version 3.11.4, NodeVM supports excluding public network builtins from the wildcard builtin option. With this configuration direct access to http, https, http2, net, dgram, tls, dns, and dns/promises is blocked. However, Node.js also exposes und...

Vendor: npm
Product: vm2
Published: May 29, 2026
Source: GitHub
CVE-2026-47209 HIGH - 8.6

vm2 is an open source vm/sandbox for Node.js. Prior to version 3.11.4, the BaseHandler.set trap in bridge.js (line 1231) ignores the receiver parameter and unconditionally writes to the host target object. Per the Proxy set trap specification, when receiver !== proxy (e.g., when a child object inher...

Vendor: npm
Product: vm2
Published: May 29, 2026
Source: GitHub
CVE-2026-47135 HIGH - 8.7

vm2 is an open source vm/sandbox for Node.js. Prior to version 3.11.4, Symbol.for override in setup-sandbox.js only intercepts 2 of 9 dangerous Node.js cross-realm symbols. Combined with the bridge's set/defineProperty/deleteProperty traps having no isDangerousCrossRealmSymbol key check, sandbo...

Vendor: npm
Product: vm2
Published: May 29, 2026
Source: GitHub
CVE-2026-45742 HIGH - 7.5

Gotenberg has a Race Condition via Multipart `downloadFrom` Handling

Vendor: go
Product: github.com/gotenberg/gotenberg/v8
Published: May 29, 2026
Source: GitHub
CVE-2026-45741 HIGH - 7.5

Gotenberg has an SSRF deny-list bypass in IsPublicIP via IPv6 6to4 / NAT64 / site-local prefixes

Vendor: go
Product: github.com/gotenberg/gotenberg/v8
Published: May 29, 2026
Source: GitHub
CVE-2026-44829 HIGH - 8.8

Gotenberg has path traversal in zip entry name via Windows-style separators in upload filename

Vendor: go
Product: github.com/gotenberg/gotenberg/v8
Published: May 29, 2026
Source: GitHub
CVE-2026-48501 HIGH - 7.4

GitHub CLI (gh) is GitHubโ€™s official command line tool. Prior to 2.93.0, GitHub CLI incorrectly includes authorization header in API requests to TUF repository mirrors via gh attestation, gh release verify, and gh release verify-asset commands. The CLI uses a shared HTTP client with an authenticatio...

Vendor: cli
Product: cli
Published: May 29, 2026
Source: NVD
CVE-2026-45662 HIGH - 8.8

Dokploy is a free, self-hostable Platform as a Service (PaaS). In 0.29.0 and earlier, the deleteRegistry function in Dokploy (packages/server/src/services/registry.ts) executes docker logout ${response.registryUrl} without shell escaping. In the same file, the docker login command correctly uses shE...

Vendor: Dokploy
Product: dokploy
Published: May 29, 2026
Source: NVD
CVE-2026-39276 HIGH - 7.2

The template upload feature in Emlog Pro v2.6.9 has a path traversal vulnerability, allowing authenticated administrators to execute arbitrary PHP code. By uploading a malicious ZIP archive containing directory traversal sequences in filenames, an attacker can overwrite default template files or dir...

Published: May 29, 2026
Source: NVD
CVE-2026-35674 HIGH - 8.8

OpenClaw before 2026.5.18 contains a scope bypass vulnerability in the Gateway chat.send route that allows scoped clients to execute privileged commands. Attackers with operator.write scope can deliver commands through inherited external routes to bypass operator.approvals and operator.admin scope r...

Vendor: OpenClaw
Product: OpenClaw
Published: May 29, 2026
Source: NVD
CVE-2026-35630 HIGH - 8.0

OpenClaw before 2026.5.18 contains an authorization bypass vulnerability in QQBot native approval buttons that fails to enforce configured approver identity. Non-approver users can click approval buttons to resolve pending exec or plugin approval requests without proper authorization.

Vendor: OpenClaw
Product: OpenClaw
Published: May 29, 2026
Source: NVD
CVE-2026-32905 HIGH - 8.3

OpenClaw before 2026.5.4 contains an authorization bypass vulnerability in the bundled device-pair plugin that allows non-owner authorized chat senders to issue device-pairing bootstrap codes without proper scope validation. Attackers with chat command access can create setup codes to enroll devices...

Vendor: OpenClaw
Product: OpenClaw
Published: May 29, 2026
Source: NVD
CVE-2026-10069 HIGH - 7.5

A vulnerability has been found in Shibby Tomato 1.28. The impacted element is an unknown function of the file usr/sbin/miniupnpd. Such manipulation leads to resource consumption. The attack may be launched remotely. This project is superseded by FreshTomato. This vulnerability only affects products ...

Vendor: Shibby
Product: Tomato
Published: May 29, 2026
Source: NVD
CVE-2026-10068 HIGH - 7.3

A flaw has been found in Shibby Tomato 1.28. The affected element is the function send of the file usr/sbin/miniupnpd of the component SUBSCRIBE Call Handler. This manipulation causes server-side request forgery. The attack may be initiated remotely. This project is superseded by FreshTomato. This v...

Vendor: Shibby
Product: Tomato
Published: May 29, 2026
Source: NVD
CVE-2026-10067 HIGH - 8.8

A vulnerability was detected in Shibby Tomato 1.28. Impacted is the function sub_90F0 of the file multimon.cgi. The manipulation results in stack-based buffer overflow. The attack can be launched remotely. This project is superseded by FreshTomato. This vulnerability only affects products that are n...

Vendor: Shibby
Product: Tomato
Published: May 29, 2026
Source: NVD
CVE-2026-10066 HIGH - 8.8

A security vulnerability has been detected in Shibby Tomato up to 1.28. This issue affects the function sub_9068 of the file tomatoups.cgi of the component UPS Service. The manipulation leads to stack-based buffer overflow. The attack can be initiated remotely. This project is superseded by FreshTom...

Vendor: Shibby
Product: Tomato
Published: May 29, 2026
Source: NVD
CVE-2026-10065 HIGH - 8.8

A weakness has been identified in Shibby Tomato 1.28. This vulnerability affects the function get_ups_field of the file tomatodata.cgi. Executing a manipulation of the argument Date can lead to stack-based buffer overflow. It is possible to launch the attack remotely. This project is superseded by F...

Vendor: Shibby
Product: Tomato
Published: May 29, 2026
Source: NVD
CVE-2018-25404 HIGH - 8.2

The Open ISES Project 3.30A contains an SQL injection vulnerability that allows unauthenticated attackers to execute arbitrary SQL queries by injecting malicious code through the ticket_id parameter. Attackers can send GET requests to add_facnote.php with crafted SQL payloads to extract sensitive da...

Vendor: Open ISES
Product: Open ISES Project
Published: May 29, 2026
Source: NVD
CVE-2018-25403 HIGH - 8.2

The Open ISES Project 3.30A contains an SQL injection vulnerability that allows unauthenticated attackers to execute arbitrary SQL queries by injecting malicious code through the p1 parameter. Attackers can send GET requests to city_graph.php with crafted SQL payloads to extract sensitive database i...

Vendor: Open ISES
Product: Open ISES Project
Published: May 29, 2026
Source: NVD
CVE-2018-25402 HIGH - 8.2

The Open ISES Project 3.30A contains an SQL injection vulnerability that allows unauthenticated attackers to execute arbitrary SQL queries by injecting malicious code through the p1 parameter. Attackers can send GET requests to inc_types_graph.php with crafted SQL payloads to extract sensitive datab...

Vendor: Open ISES
Product: Open ISES Project
Published: May 29, 2026
Source: NVD