Total CVEs

137,287

Critical Severity

3,310

High Severity

12,270

Last 7 Days

1,288
Quick preset (or use dates below)
Clear Filters
๐Ÿ“… Showing Year: 2026 (January 1 - December 31, 2026) View All Years โ†’
Showing 301 - 320 of 3,184 CVEs
CVE-2026-10886 CRITICAL - 9.6

Use after free in FileSystem in Google Chrome prior to 149.0.7827.53 allowed a remote attacker to potentially perform a sandbox escape via a crafted HTML page. (Chromium security severity: Critical)

Vendor: Google
Product: Chrome
Published: Jun 04, 2026
Source: NVD
CVE-2026-10881 CRITICAL - 9.6

Out of bounds read and write in ANGLE in Google Chrome prior to 149.0.7827.53 allowed a remote attacker to potentially perform a sandbox escape via a crafted HTML page. (Chromium security severity: Critical)

Vendor: Google
Product: Chrome
Published: Jun 04, 2026
Source: NVD
CVE-2024-27892 CRITICAL - 9.6

Affected platforms running Arista EOS with OpenConfig configured, a gNMI Set request can be run when it should have been rejected. This can result in unexpected configuration being applied to the switch.

Vendor: Arista Networks
Product: EOS
Published: Jun 04, 2026
Source: NVD
CVE-2024-27890 CRITICAL - 9.6

Affected platforms running Arista EOS with OpenConfig configured, a gNMI Set request can be run when it should have been rejected. This can result in unexpected configuration being applied to the switch.

Vendor: Arista Networks
Product: EOS
Published: Jun 04, 2026
Source: NVD

MCP-for-Stata: Command injection via log_file_name parameter in Stata command wrapper

Vendor: pip
Product: stata-mcp
Published: Jun 04, 2026
Source: GitHub
CVE-2025-71316 CRITICAL - 9.8

SQLite 'sqldiff.exe' does not securely handle the way the Microsoft Windows C runtime converts Unicode characters to ANSI codepages. An attacker could use the '-L' option to load an arbitrary DLL with a crafted command line argument string that results in command line file argum...

Vendor: SQLite
Product: sqldiff
Published: Jun 04, 2026
Source: NVD
CVE-2026-48040 CRITICAL - 9.1

The netty incubator codec.bhttp is a java language binary http parser. The library implements Oblivious HTTP (RFC 9458) using BoringSSL's HPKE C library via JNI. When deriving native memory addresses for cryptographic operations versions prior to 0.0.22.Final provide a fallback path for direct ...

Vendor: netty
Product: netty-incubator-codec-ohttp
Published: Jun 04, 2026
Source: NVD
CVE-2026-25550 CRITICAL - 9.8

Seagull Software BarTender 2010, 2016, and 2019 contain an unauthenticated remote code execution vulnerability in the .NET Remoting service exposed on TCP port 7375 via BtSystem.Service.exe. The service registers an unauthenticated singleton endpoint โ€” BarTenderSystem for BarTender 2016 <= R9, an...

Vendor: Seagull Software, LLC.
Product: BarTender 2010, BarTender 2016, BarTender 2019
Published: Jun 04, 2026
Source: NVD
CVE-2026-10880 CRITICAL - 9.8

OSNexus QuantaStor SDS Manager is vulnerable to SQL injection in the login endpoint. The username field is not properly sanitized before being incorporated into a SQL query, allowing an unauthenticated remote attacker to bypass authentication and log in as an administrator without supplying a valid ...

Vendor: Osnexus
Product: QuantaStor
Published: Jun 04, 2026
Source: NVD
CVE-2025-67447 CRITICAL - 9.8

The network diagnosis (ping) module in Neterbit NW-431F Router 20241014-IR03 and before is vulnerable to OS command injection. The application does not properly sanitize user input in the IP address field before passing it to the system's ping command. An attacker can inject arbitrary OS comman...

Published: Jun 04, 2026
Source: NVD
CVE-2026-50076 CRITICAL - 9.1

Deserialization of Untrusted Data in the Java replace-resolve path in Apache Fory fory-core Java SDK before 1.1.0 on Java/JVM platforms allows a remote attacker to bypass class registration, TypeChecker, and DisallowedList checks and invoke classpath-present readResolve/readExternal hooks via crafte...

Vendor: Apache Software Foundation
Product: Apache Fory
Published: Jun 04, 2026
Source: NVD
CVE-2025-67446 CRITICAL - 9.8

Improper Authentication (Authentication Bypass) exists in Neterbit NW-431F Router 20241014-IR03 and before. The router uses a weak/predictable cookie value for authentication. By modifying the cookie value (e.g., setting it to "admin"), an attacker can bypass the authentication schema and ...

Published: Jun 04, 2026
Source: NVD
CVE-2026-43986 CRITICAL - 9.9

Tautulli is a Python based monitoring and tracking tool for Plex Media Server. Versions prior to 2.17.1 expose a public `/image/<hash>` route that resolves attacker-controlled entries from `image_hash_lookup` and replays them through the same server-side image fetch logic used by authenticated...

Vendor: Tautulli
Product: Tautulli
Published: Jun 04, 2026
Source: NVD
CVE-2026-36182 CRITICAL - 9.8

GNCC GP5 v7.1.76 was discovered to utilize a weak hashing algorithm to protect the root password, possibly allowing attackers to obtain root credentials and privileges via a bruteforce attack.

Published: Jun 04, 2026
Source: NVD
CVE-2026-35906 CRITICAL - 9.6

An undocumented debug CGI endpoint in T3 Technology CPE models T625Pro v1.0.07, T6825G v1.0.03 allows unauthenticated attackers to execute arbitrary system commands as root via supplying a crafted HTTP query string.

Published: Jun 04, 2026
Source: NVD
CVE-2026-35905 CRITICAL - 9.8

T3 Technology CPE models T625Pro v1.0.07, T6825G v1.0.03, and T7281 v1.0.03 were discovered to contain a hardcoded password for root access under the "superadmin" account.

Published: Jun 04, 2026
Source: NVD
CVE-2026-35904 CRITICAL - 9.8

Incorrect access control in the web management interface of T3 Technology CPE models T625Pro v1.0.07, T6825G v1.0.03, and T7281 v1.0.03 allows unauthorized attackers to enable the Telnet service via sending a crafted request to a vulnerable CGI component.

Published: Jun 04, 2026
Source: NVD
CVE-2026-8037 CRITICAL - 9.6

OS Command Injection Remote Code Execution Vulnerability in API in Progress ADC Products allows an un-authenticated attacker to execute arbitrary commands on the LoadMaster appliance by exploiting unsanitized input in multiple command endpoints

Published: Jun 04, 2026
Source: NVD
CVE-2019-25741 CRITICAL - 9.8

Mobatek MobaXterm 12.1 contains a structured exception handling (SEH) based buffer overflow vulnerability in the username field of session files that allows remote attackers to execute arbitrary code. Attackers can craft a malicious MobaXterm sessions file with overflow data that triggers the vulner...

Vendor: Mobatek
Product: Mobatek MobaXterm
Published: Jun 04, 2026
Source: NVD
CVE-2019-25738 CRITICAL - 9.8

WordPress Hybrid Composer 1.4.6 contains an unauthenticated settings change vulnerability that allows unauthenticated attackers to modify WordPress options by exploiting the hc_ajax_save_option action. Attackers can send POST requests to the admin-ajax.php endpoint with the action parameter set to h...

Vendor: framework-y
Product: Hybrid Composer
Published: Jun 04, 2026
Source: NVD