Total CVEs

138,591

Critical Severity

3,578

High Severity

12,841

Last 7 Days

1,647
Quick preset (or use dates below)
Clear Filters
📅 Showing Year: 2026 (January 1 - December 31, 2026) View All Years →
Showing 2,521 - 2,540 of 34,996 CVEs

A HTTP request smuggling and desynchronization vulnerability affects Kong Gateway Enterprise 3.4, 3.10, 3.11, 3.12, 3.13, and 3.14 series. The vulnerability is caused by a parsing flaw in Kong’s HTTP request processing pipeline when handling untrusted HTTP/1.1 traffic.

Published: Jun 11, 2026
Source: NVD

Boruta is a standalone authorization server that aims to implement OAuth 2.0 and Openid Connect up to decentralized identity specifications. Prior to version 0.9.1, boruta session cookies and the identity “remember me” cookie were set without the Secure attribute. In deployments where users could re...

Vendor: malach-it
Product: boruta-server
Published: Jun 11, 2026
Source: NVD
CVE-2026-38581 CRITICAL - 9.8

SQL Injection vulnerability in damasac thaipalliative_lte through version 3.0 allows remote attackers to execute arbitrary SQL commands via the idFormMain parameter to /substudy/ezform.php (line 14) and the id parameter (line 49). The parameters are concatenated directly into SQL queries without san...

Published: Jun 11, 2026
Source: NVD
CVE-2026-11816 HIGH - 8.1

Keras versions prior to 3.14.0 are vulnerable to a path traversal issue in the archive extraction utilities located in `keras/src/utils/file_utils.py`. The functions `filter_safe_tarinfos()` and `filter_safe_zipinfos()` validate archive member paths against the process current working directory (CWD...

Vendor: keras-team
Product: keras-team/keras
Published: Jun 11, 2026
Source: NVD
CVE-2026-10847 HIGH - 7.8

A local privilege escalation vulnerability exists in Check Point Identity Agent Full for Windows OS. An authenticated local user may be able to execute arbitrary code with SYSTEM privileges due to improper handling of executable resolution during the log collection process. Successful exploitation c...

Vendor: checkpoint
Product: Identity Agent
Published: Jun 11, 2026
Source: NVD
CVE-2026-48045 MEDIUM - 6.5

python-zeroconf: Unbounded TC-deferred queue allows LAN-local memory exhaustion via spoofed-source flood

Vendor: pip
Product: zeroconf
Published: Jun 11, 2026
Source: GitHub
CVE-2026-48043 MEDIUM - 5.3

Netty is a network application framework for development of protocol servers and clients. In netty-codec-http2 prior to versions 4.1.135.Final and 4.2.15.Final, the `DelegatingDecompressorFrameListener` class orchestrates HTTP/2 decompression by embedding a per-stream `EmbeddedChannel` that runs the...

Vendor: maven
Product: io.netty:netty-codec-http2
Published: Jun 11, 2026
Source: GitHub
CVE-2026-48039 CRITICAL - 9.1

Meta Ads MCP: Unauthenticated HTTP MCP Tool Execution Leaks Operator Meta Access Token

Vendor: pip
Product: meta-ads-mcp
Published: Jun 11, 2026
Source: GitHub
CVE-2026-48068 HIGH - 7.5

@grpc/grpc-js: A malformed request can cause a server crash

Vendor: npm
Product: @grpc/grpc-js
Published: Jun 11, 2026
Source: GitHub
CVE-2026-48069 HIGH - 7.5

@grpc/grpc-js: An incoming malformed compressed message can cause a client or server crash

Vendor: npm
Product: @grpc/grpc-js
Published: Jun 11, 2026
Source: GitHub
CVE-2026-48038 MEDIUM - 5.3

joi has an uncaught RangeError on deeply nested input through recursive `link()` schemas

Vendor: npm
Product: joi
Published: Jun 11, 2026
Source: GitHub
CVE-2026-48054 HIGH - 8.8

OpenZeppelin Contracts Wizard has Code Injection in Generated Hardhat and Foundry Tests via Unsanitized opts.name / opts.uri

Vendor: npm
Product: @openzeppelin/wizard
Published: Jun 11, 2026
Source: GitHub
CVE-2026-48022 MEDIUM - 6.5

@hapi/wreck: Sensitive credential headers leak across cross-port and cross-scheme redirects

Vendor: npm
Product: @hapi/wreck
Published: Jun 11, 2026
Source: GitHub

Traefik has a StripPrefix Route-Level Auth Bypass via Path Normalization

Vendor: go
Product: github.com/traefik/traefik/v2
Published: Jun 11, 2026
Source: GitHub

Element Call reports full URLs of visited pages to analytics server

Vendor: npm
Product: @element-hq/element-call-embedded
Published: Jun 11, 2026
Source: GitHub
CVE-2026-48006 HIGH - 7.5

Netty is a network application framework for development of protocol servers and clients. Prior to versions 4.1.135.Final and 4.2.15.Final, the RedisArrayAggregator handler permanently leaks pooled direct-memory buffers when a Redis pipeline connection closes before a RESP array aggregate completes....

Vendor: maven
Product: io.netty:netty-codec-redis
Published: Jun 11, 2026
Source: GitHub

PDM: Project-Controlled `.pdm-plugins` Content Executes Before CLI Parsing

Vendor: pip
Product: pdm
Published: Jun 11, 2026
Source: GitHub

free5GC UDR has improper `ueId` validation in EE subscription handlers that allows arbitrary identifier persistence

Vendor: go
Product: github.com/free5gc/udr
Published: Jun 11, 2026
Source: GitHub
CVE-2026-7852 CRITICAL - 9.8

Unrestricted upload of file with dangerous type vulnerability in Limatek System Inc. LimRAD NAC allows Remote Code Inclusion. This issue affects LimRAD NAC: before 5.5.7.3.9.

Published: Jun 11, 2026
Source: NVD
CVE-2026-49214 MEDIUM - 5.3

guzzlehttp/psr7 is a PSR-7 HTTP message library implementation in PHP. Versions prior to 2.10.2 did not reject ASCII control characters, whitespace, or DEL in first-party URI host components. A vulnerable flow is: First, an application accepts a user-controlled URL. Second, the URL is used to constr...

Vendor: guzzle
Product: psr7
Published: Jun 11, 2026
Source: NVD