Total CVEs

138,728

Critical Severity

3,597

High Severity

12,893

Last 7 Days

1,750
Quick preset (or use dates below)
Clear Filters
📅 Showing Year: 2026 (January 1 - December 31, 2026) View All Years →
Showing 2,881 - 2,900 of 3,470 CVEs
CVE-2026-25643 CRITICAL - 9.1

Frigate is a network video recorder (NVR) with realtime local object detection for IP cameras. Prior to 0.16.4, a critical Remote Command Execution (RCE) vulnerability has been identified in the Frigate integration with go2rtc. The application does not sanitize user input in the video stream configu...

Vendor: blakeblackshear
Product: frigate
Published: Feb 06, 2026
Source: NVD
CVE-2026-1709 CRITICAL - 9.4

A flaw was found in Keylime. The Keylime registrar, since version 7.12.0, does not enforce client-side Transport Layer Security (TLS) authentication. This authentication bypass vulnerability allows unauthenticated clients with network access to perform administrative operations, including listing ag...

Vendor: pip
Product: keylime
Published: Feb 06, 2026
Source: NVD
CVE-2026-25753 CRITICAL - 9.8

PlaciPy is a placement management system designed for educational institutions. In version 1.0.0, the application uses a hard-coded, static default password for all newly created student accounts. This results in mass account takeover, allowing any attacker to log in as any student once the password...

Vendor: Praskla-Technology
Product: assessment-placipy
Published: Feb 06, 2026
Source: NVD
CVE-2025-69212 CRITICAL - 8.8

OpenSTAManager is an open source management software for technical assistance and invoicing. In 2.9.8 and earlier, a critical OS Command Injection vulnerability exists in the P7M (signed XML) file decoding functionality. An authenticated attacker can upload a ZIP file containing a .p7m file with a m...

Vendor: devcode-it
Product: openstamanager
Published: Feb 06, 2026
Source: NVD
CVE-2026-25592 CRITICAL - 10.0

Semantic Kernel is an SDK used to build, orchestrate, and deploy AI agents and multi-agent systems. Prior to 1.70.0, an Arbitrary File Write vulnerability has been identified in Microsoft's Semantic Kernel .NET SDK, specifically within the SessionsPythonPlugin. The problem has been fixed in Mic...

Vendor: nuget
Product: Microsoft.SemanticKernel.Core
Published: Feb 06, 2026
Source: GitHub

Gogs is an open source self-hosted Git service. In version 0.13.3 and prior, due to the insufficient patch for CVE-2024-56731, it's still possible to update files in the .git directory and achieve remote command execution. This issue has been patched in versions 0.13.4 and 0.14.0+dev.

Vendor: gogs
Product: gogs
Published: Feb 06, 2026
Source: NVD
CVE-2026-2017 CRITICAL - 9.8

A vulnerability was detected in IP-COM W30AP up to 1.0.0.11(1340). Affected by this issue is the function R7WebsSecurityHandler of the file /goform/wx3auth of the component POST Request Handler. The manipulation of the argument data results in stack-based buffer overflow. The attack may be performed...

Published: Feb 06, 2026
Source: NVD
CVE-2026-21643 CRITICAL - 9.8

An improper neutralization of special elements used in an sql command ('sql injection') vulnerability in Fortinet FortiClientEMS 7.4.4 may allow an unauthenticated attacker to execute unauthorized code or commands via specifically crafted HTTP requests.

Vendor: Fortinet
Product: FortiClientEMS
Published: Feb 06, 2026
Source: NVD
CVE-2026-1499 CRITICAL - 9.8

The WP Duplicate plugin for WordPress is vulnerable to Missing Authorization leading to Arbitrary File Upload in all versions up to and including 1.1.8. This is due to a missing capability check on the `process_add_site()` AJAX action combined with path traversal in the file upload functionality. Th...

Published: Feb 06, 2026
Source: NVD
CVE-2026-24300 CRITICAL - 9.8

Azure Front Door Elevation of Privilege Vulnerability

Vendor: microsoft
Product: azure_front_door
Published: Feb 05, 2026
Source: NVD
CVE-2026-25641 CRITICAL - 10.0

SandboxJS is a JavaScript sandboxing library. Prior to 0.8.29, there is a sandbox escape vulnerability due to a mismatch between the key on which the validation is performed and the key used for accessing properties. Even though the key used in property accesses is annotated as string, this is never...

Vendor: npm
Product: @nyariv/sandboxjs
Published: Feb 05, 2026
Source: GitHub
CVE-2026-0106 CRITICAL - 9.3

In vpu_mmap of vpu_ioctl, there is a possible arbitrary address mmap due to a missing bounds check. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is not needed for exploitation.

Vendor: google
Product: android
Published: Feb 05, 2026
Source: NVD
CVE-2026-25587 CRITICAL - 10.0

SandboxJS is a JavaScript sandboxing library. Prior to 0.8.29, as Map is in SAFE_PROTOYPES, it's prototype can be obtained via Map.prototype. By overwriting Map.prototype.has the sandbox can be escaped. This vulnerability is fixed in 0.8.29.

Vendor: npm
Product: @nyariv/sandboxjs
Published: Feb 05, 2026
Source: GitHub
CVE-2026-25586 CRITICAL - 10.0

SandboxJS is a JavaScript sandboxing library. Prior to 0.8.29, a sandbox escape is possible by shadowing hasOwnProperty on a sandbox object, which disables prototype whitelist enforcement in the property-access path. This permits direct access to __proto__ and other blocked prototype properties, ena...

Vendor: npm
Product: @nyariv/sandboxjs
Published: Feb 05, 2026
Source: GitHub
CVE-2026-25544 CRITICAL - 9.8

Payload is a free and open source headless content management system. Prior to 3.73.0, when querying JSON or richText fields, user input was directly embedded into SQL without escaping, enabling blind SQL injection attacks. An unauthenticated attacker could extract sensitive data (emails, password r...

Vendor: npm
Product: @payloadcms/drizzle
Published: Feb 05, 2026
Source: GitHub
CVE-2026-25520 CRITICAL - 10.0

SandboxJS is a JavaScript sandboxing library. Prior to 0.8.29, The return values of functions aren't wrapped. Object.values/Object.entries can be used to get an Array containing the host's Function constructor, by using Array.prototype.at you can obtain the hosts Function constructor, whic...

Vendor: npm
Product: @nyariv/sandboxjs
Published: Feb 05, 2026
Source: GitHub

survey-pdf Upgraded jsPDF Version Due to Security Vulnerability

Vendor: npm
Product: survey-pdf
Published: Feb 05, 2026
Source: NVD
CVE-2025-70073 CRITICAL - 9.8

An issue in ChestnutCMS v.1.5.8 and before allows a remote attacker to execute arbitrary code via the template creation function

Vendor: 1000mz
Product: chestnutcms
Published: Feb 05, 2026
Source: NVD

Enclave is a secure JavaScript sandbox designed for safe AI agent code execution. Prior to 2.10.1, the existing layers of security in enclave-vm are insufficient: The AST sanitization can be bypassed with dynamic property accesses, the hardening of the error objects does not cover the peculiar behav...

Vendor: npm
Product: enclave-vm
Published: Feb 05, 2026
Source: GitHub
CVE-2025-68723 CRITICAL - 9.0

Axigen Mail Server before 10.5.57 contains multiple stored Cross-Site Scripting (XSS) vulnerabilities in the WebAdmin interface. Three instances exist: (1) the log file name parameter in the Local Services Log page, (2) certificate file content in the SSL Certificates View Usage feature, and (3) the...

Vendor: axigen
Product: axigen_mail_server
Published: Feb 05, 2026
Source: NVD