Total CVEs

138,502

Critical Severity

3,573

High Severity

12,821

Last 7 Days

2,016
Quick preset (or use dates below)
Clear Filters
๐Ÿ“… Showing Year: 2026 (January 1 - December 31, 2026) View All Years โ†’
Showing 3,521 - 3,540 of 34,907 CVEs

bz2.BZ2Decompressor objects could be reused after a decompression error. If an application caught the resulting OSError and retried with the same decompressor, crafted input could cause the decompressor to resume from an invalid internal state and perform out-of-bounds writes to a stack buffer. This...

Published: Jun 08, 2026
Source: NVD

nebula-mesh's web UI lacks CSRF tokens on /ui/* mutating endpoints

Vendor: go
Product: github.com/juev/nebula-mesh
Published: Jun 08, 2026
Source: GitHub
CVE-2026-47724 CRITICAL - 9.9

nebula-mesh: API endpoints lack ownership checks, enabling cross-operator privilege escalation

Vendor: go
Product: github.com/juev/nebula-mesh
Published: Jun 08, 2026
Source: GitHub

nebula-mesh: Web UI and API responses lack security headers (CSP, X-Frame-Options, HSTS, etc.)

Vendor: go
Product: github.com/juev/nebula-mesh
Published: Jun 08, 2026
Source: GitHub

nebula-mesh: Host advanced overrides allow YAML injection into agent config.yml

Vendor: go
Product: github.com/juev/nebula-mesh
Published: Jun 08, 2026
Source: GitHub
CVE-2026-47721 MEDIUM - 6.3

FUXA's scheduler API missing admin check enables operator-to-admin escalation via scheduled device actions

Vendor: npm
Product: fuxa-server
Published: Jun 08, 2026
Source: GitHub
CVE-2026-47720 MEDIUM - 5.3

FUXA has SQL Injection in its TDengine DAQ connector via backslash bypass of escapeTdString

Vendor: npm
Product: fuxa-server
Published: Jun 08, 2026
Source: GitHub
CVE-2026-47719 HIGH - 8.2

FUXA: Unauthenticated SSRF via Socket.IO DEVICE_WEBAPI_REQUEST and DEVICE_PROPERTY with response reading

Vendor: npm
Product: fuxa-server
Published: Jun 08, 2026
Source: GitHub

Dulwich is a pure-Python implementation of the Git file formats and protocols. Starting in version 0.24.0 and prior to version 1.2.5, dulwich.porcelain.format_patch(outdir=...) derives each patch filename from the commit's subject line. Prior to this fix, get_summary only replaced spaces with d...

Vendor: pip
Product: dulwich
Published: Jun 08, 2026
Source: GitHub
CVE-2026-47693 MEDIUM - 6.9

Poweradmin: CSV Injection in log export endpoints allows formula execution in spreadsheet applications

Vendor: composer
Product: poweradmin/poweradmin
Published: Jun 08, 2026
Source: GitHub
CVE-2026-47252 CRITICAL - 9.0

Anyquery: AppleScript/JXA Code Injection via Unescaped URL in macOS Chrome Plugin

Vendor: go
Product: github.com/julien040/anyquery/plugins/chrome
Published: Jun 08, 2026
Source: GitHub
CVE-2026-47691 HIGH - 8.7

Netty is a network application framework for development of protocol servers and clients. Prior to versions 4.1.135.Final and 4.2.15.Final, Netty's `DnsResolveContext` insufficiently validates the bailiwick of NS records, enabling DNS Cache Poisoning. An attacker controlling an authoritative na...

Vendor: maven
Product: io.netty:netty-resolver-dns
Published: Jun 08, 2026
Source: GitHub
CVE-2026-47244 MEDIUM - 5.3

Netty is a network application framework for development of protocol servers and clients. Prior to versions 4.1.135.Final and 4.2.15.Final, DefaultHttp2Connection.DefaultEndpoint initialises maxActiveStreams/maxStreams to Integer.MAX_VALUE, and Http2Settings never inserts SETTINGS_MAX_CONCURRENT_STR...

Vendor: maven
Product: io.netty:netty-codec-http2
Published: Jun 08, 2026
Source: GitHub
CVE-2026-46340 HIGH - 7.5

Netty is a network application framework for development of protocol servers and clients. In versions of netty-transport-sctp prior to 4.1.135.Final and 4.2.15.Final, for each non-complete SctpMessage fragment the handler does `fragments.put(streamId, Unpooled.wrappedBuffer(frag, byteBuf))`, wrappin...

Vendor: maven
Product: io.netty:netty-transport-sctp
Published: Jun 08, 2026
Source: GitHub
CVE-2026-45674 HIGH - 8.7

Netty is a network application framework for development of protocol servers and clients. Prior to versions 4.1.135.Final and 4.2.15.Final, Netty's DnsResolveContext fails to validate the origin (bailiwick) of CNAME records in DNS responses. Versions 4.1.135.Final and 4.2.15.Final patch the iss...

Vendor: maven
Product: io.netty:netty-resolver-dns
Published: Jun 08, 2026
Source: GitHub
CVE-2026-45673 MEDIUM - 6.8

Netty is a network application framework for development of protocol servers and clients. Prior to versions 4.1.135.Final and 4.2.15.Final, Netty's DNS resolver uses a predictable PRNG for generating DNS transaction IDs and defaults to a static UDP source port. This combination reduces the entr...

Vendor: maven
Product: io.netty:netty-resolver-dns
Published: Jun 08, 2026
Source: GitHub
CVE-2026-45536 MEDIUM - 4.0

Netty is a network application framework for development of protocol servers and clients. Prior to versions 4.1.135.Final and 4.2.15.Final, netty_unix_socket_recvFd sets msg_control to `char control[CMSG_SPACE(sizeof(int))]` (line 940) โ€” 24 bytes on 64-bit Linux. A peer-sent SCM_RIGHTS cmsg carrying...

Vendor: maven
Product: io.netty:netty-transport-native-epoll
Published: Jun 08, 2026
Source: GitHub
CVE-2026-45416 HIGH - 7.5

Netty is a network application framework for development of protocol servers and clients. Prior to versions 4.1.135.Final and 4.2.15.Final, SslClientHelloHandler.decode() reads the 24-bit TLS handshake length and, when the ClientHello does not fit in the first record, eagerly allocates `ctx.alloc()....

Vendor: maven
Product: io.netty:netty-handler
Published: Jun 08, 2026
Source: GitHub

PHPSpreadsheet has a patch bypass for CVE-2026-34084

Vendor: composer
Product: phpoffice/phpspreadsheet
Published: Jun 08, 2026
Source: GitHub
CVE-2026-44894 HIGH - 7.5

Netty is a network application framework for development of protocol servers and clients. NoQuicTokenHandler is the tokenHandler used when the application does not set one. Prior to version 4.2.15.Final, its writeToken() returns false (server will not send Retry โ€” acceptable), but validateToken() un...

Vendor: maven
Product: io.netty:netty-codec-classes-quic
Published: Jun 08, 2026
Source: GitHub