Total CVEs

138,728

Critical Severity

3,597

High Severity

12,893

Last 7 Days

1,720
Quick preset (or use dates below)
Clear Filters
๐Ÿ“… Showing Year: 2026 (January 1 - December 31, 2026) View All Years โ†’
Showing 3,041 - 3,060 of 3,470 CVEs
CVE-2026-24872 CRITICAL - 9.8

improper pointer arithmetic vulnerability in ProjectSkyfire SkyFire_548.This issue affects SkyFire_548: before 5.4.8-stable5.

Vendor: ProjectSkyfire
Product: SkyFire_548
Published: Jan 27, 2026
Source: NVD
CVE-2026-24832 CRITICAL - 9.8

Out-of-bounds Write vulnerability in ixray-team ixray-1.6-stcop.This issue affects ixray-1.6-stcop: before 1.3.

Vendor: ixray-team
Product: ixray-1.6-stcop
Published: Jan 27, 2026
Source: NVD
CVE-2025-69565 CRITICAL - 9.8

code-projects Mobile Shop Management System 1.0 is vulnerable to File Upload in /ExAddProduct.php.

Vendor: fabian
Product: mobile_shop_management_system
Published: Jan 27, 2026
Source: NVD
CVE-2025-68670 CRITICAL - 9.1

xrdp is an open source RDP server. xrdp before v0.10.5 contains an unauthenticated stack-based buffer overflow vulnerability. The issue stems from improper bounds checking when processing user domain information during the connection sequence. If exploited, the vulnerability could allow remote attac...

Vendor: neutrinolabs
Product: xrdp
Published: Jan 27, 2026
Source: NVD
CVE-2025-15467 CRITICAL - 9.8

Issue summary: Parsing CMS AuthEnvelopedData message with maliciously crafted AEAD parameters can trigger a stack buffer overflow. Impact summary: A stack buffer overflow may lead to a crash, causing Denial of Service, or potentially remote code execution. When parsing CMS AuthEnvelopedData struct...

Vendor: OpenSSL
Product: OpenSSL
Published: Jan 27, 2026
Source: NVD
CVE-2021-47901 CRITICAL - 9.8

Dirsearch 0.4.1 contains a CSV injection vulnerability when using the --csv-report flag that allows attackers to inject formulas through redirected endpoints. Attackers can craft malicious server redirects with comma-separated paths containing Excel formulas to manipulate the generated CSV report.

Vendor: maurosoria
Product: dirsearch
Published: Jan 27, 2026
Source: NVD
CVE-2021-47900 CRITICAL - 9.8

Gila CMS versions prior to 2.0.0 contain a remote code execution vulnerability that allows unauthenticated attackers to execute arbitrary system commands through manipulated HTTP headers. Attackers can inject PHP code in the User-Agent header with shell_exec() to run system commands by sending craft...

Vendor: Gila CMS
Product: Gila CMS
Published: Jan 27, 2026
Source: NVD
CVE-2020-36948 CRITICAL - 9.8

VestaCP 0.9.8-26 contains a session token vulnerability in the LoginAs module that allows remote attackers to manipulate authentication tokens. Attackers can exploit insufficient token validation to access user accounts and perform unauthorized login requests without proper administrative permission...

Vendor: VestaCP
Product: VestaCP
Published: Jan 27, 2026
Source: NVD
CVE-2020-36941 CRITICAL - 9.8

Knockpy 4.1.1 contains a CSV injection vulnerability that allows attackers to inject malicious formulas into CSV reports through unfiltered server headers. Attackers can manipulate server response headers to include spreadsheet formulas that will execute when the CSV is opened in spreadsheet applica...

Vendor: guelfoweb
Product: knock
Published: Jan 27, 2026
Source: NVD
CVE-2020-36940 CRITICAL - 9.8

Easy CD & DVD Cover Creator 4.13 contains a buffer overflow vulnerability in the serial number input field that allows attackers to crash the application. Attackers can generate a 6000-byte payload and paste it into the serial number field to trigger an application crash.

Vendor: Tucows
Product: Easy CD & DVD Cover Creator
Published: Jan 27, 2026
Source: NVD
CVE-2026-1470 CRITICAL - 9.9

n8n contains a critical Remote Code Execution (RCE) vulnerability in its workflow Expression evaluation system. Expressions supplied by authenticated users during workflow configuration may be evaluated in an execution context that is not sufficiently isolated from the underlying runtime. An authen...

Vendor: npm
Product: n8n
Published: Jan 27, 2026
Source: NVD
CVE-2026-24830 CRITICAL - 9.8

Integer Overflow or Wraparound vulnerability in Ralim IronOS.This issue affects IronOS: before v2.23-rc2.

Vendor: Ralim
Product: IronOS
Published: Jan 27, 2026
Source: NVD
CVE-2026-22709 CRITICAL - 9.8

vm2 is an open source vm/sandbox for Node.js. In vm2 prior to version 3.10.2, `Promise.prototype.then` `Promise.prototype.catch` callback sanitization can be bypassed. This allows attackers to escape the sandbox and run arbitrary code. In lib/setup-sandbox.js, the callback function of `localPromise....

Vendor: npm
Product: vm2
Published: Jan 26, 2026
Source: GitHub

dcap-qvl implements the quote verification logic for DCAP (Data Center Attestation Primitives). A vulnerability present in versions prior to 0.3.9 involves a critical gap in the cryptographic verification process within the dcap-qvl. The library fetches QE Identity collateral (including qe_identity,...

Vendor: rust
Product: dcap-qvl
Published: Jan 26, 2026
Source: GitHub
CVE-2026-24436 CRITICAL - 9.8

Shenzhen Tenda W30E V2 firmware versions up to and including V16.01.0.19(5037) do not enforce rate limiting or account lockout mechanisms on authentication endpoints. This allows attackers to perform unrestricted brute-force attempts against administrative credentials.

Vendor: Shenzhen Tenda Technology Co., Ltd.
Product: W30E V2
Published: Jan 26, 2026
Source: NVD
CVE-2026-24429 CRITICAL - 9.8

Shenzhen Tenda W30E V2 firmware versions up to and including V16.01.0.19(5037) ship with a predefined default password for a built-in authentication account that is not required to be changed during initial configuration. An attacker can leverage these default credentials to gain authenticated acces...

Vendor: Shenzhen Tenda Technology Co., Ltd.
Product: W30E V2
Published: Jan 26, 2026
Source: NVD
CVE-2025-70982 CRITICAL - 9.9

Incorrect access control in the importUser function of SpringBlade v4.5.0 allows attackers with low-level privileges to arbitrarily import sensitive user data.

Published: Jan 26, 2026
Source: NVD
CVE-2016-15057 CRITICAL - 9.9

** UNSUPPORTED WHEN ASSIGNED ** Improper Neutralization of Special Elements used in a Command ('Command Injection') vulnerability in Apache Continuum. This issue affects Apache Continuum: all versions. Attackers with access to the installations REST API can use this to invoke arbitrary c...

Vendor: Apache Software Foundation
Product: Apache Continuum
Published: Jan 26, 2026
Source: NVD
CVE-2025-13374 CRITICAL - 9.8

The Kalrav AI Agent plugin for WordPress is vulnerable to arbitrary file uploads due to missing file type validation in the kalrav_upload_file AJAX action in all versions up to, and including, 2.3.3. This makes it possible for unauthenticated attackers to upload arbitrary files on the affected site&...

Vendor: irisideatechsolutions
Product: Kalrav AI Agent
Published: Jan 24, 2026
Source: NVD
CVE-2025-13952 CRITICAL - 9.8

A web page that contains unusual GPU shader code is loaded from the Internet into the GPU compiler process triggers a write use-after-free crash in the GPU shader compiler library. On certain platforms, when the compiler process has system privileges this could enable further exploits on the device....

Vendor: Imagination Technologies
Product: Graphics DDK
Published: Jan 24, 2026
Source: NVD