Total CVEs

139,442

Critical Severity

3,643

High Severity

13,079

Last 7 Days

1,400
Quick preset (or use dates below)
Clear Filters
Showing 3,621 - 3,640 of 13,622 CVEs
CVE-2026-8202 MEDIUM - 4.3

Using a densely populated chars mask and a large input string in the MongoDB aggregation operators $trim, $ltrim, and $rtrim, an authenticated user with aggregation permissions can pin CPU utilization at 100% for an extended period of time. This issue impacts MongoDB Server v7.0 versions prior to 7...

Vendor: mongodb
Product: mongodb
Published: May 13, 2026
Source: NVD
CVE-2026-8199 MEDIUM - 6.5

An authenticated user can cause excess memory usage via bitwise match expression AST processing of $bitsAllSet, $bitsAnySet, $bitsAllClear, and $bitsAnyClear. This contributes to memory pressure and may lead to availability loss by OOM. This issue impacts MongoDB Server v7.0 versions prior to 7.0.3...

Vendor: mongodb
Product: mongodb
Published: May 13, 2026
Source: NVD

OpenLearnX is an open-source, decentralized learning and assessment platform. Prior to 2.0.4, a critical authentication vulnerability was identified in OpenLearnX that could allow unauthorized access to user accounts under specific conditions. This vulnerability is fixed in 2.0.4.

Vendor: npm
Product: openlearnx
Published: May 13, 2026
Source: GitHub
CVE-2026-44681 MEDIUM - 6.1

Authlib is a Python library which builds OAuth and OpenID Connect servers. Prior to 1.6.12 and 1.7.1, an unauthenticated open redirect in Authlib's OpenIDImplicitGrant and OpenIDHybridGrant authorization endpoint lets a remote attacker cause the authorization server to issue an HTTP 302 to an a...

Vendor: pip
Product: authlib
Published: May 13, 2026
Source: GitHub
CVE-2026-44347 MEDIUM - 5.8

Warpgate is an open source SSH, HTTPS and MySQL bastion host for Linux. Prior to 0.23.3, the SSO flow does not validate the state parameter, which makes it possible for an attacker to trick a user into logging into the attacker's account, possibly convincing them to perform sensitive actions on...

Vendor: warp-tech
Product: warpgate
Published: May 12, 2026
Source: NVD
CVE-2026-44341 MEDIUM - 5.3

GoJobs is a REST API for a Job Board platform. The application exposes a job retrieval endpoint that allows unauthenticated users to access job details by directly manipulating object identifiers. The endpoint lacks proper authentication and authorization checks, resulting in unauthorized access to ...

Vendor: karnop
Product: gojobs
Published: May 12, 2026
Source: NVD
CVE-2025-15463 MEDIUM - 6.5

The The Advanced Custom Fields: Extended plugin for WordPress is vulnerable to arbitrary shortcode execution in all versions up to, and including, 0.9.2.3. This is due to the software allowing users to execute an action that does not properly validate a value before running do_shortcode. This makes ...

Vendor: hwk-fr
Product: Advanced Custom Fields: Extended
Published: May 12, 2026
Source: NVD

SillyTavern is a locally installed user interface that allows users to interact with text generation large language models, image generation engines, and text-to-speech voice models. Prior to 1.18.0, corsProxyMiddleware forwards req.params.url directly into fetch(url, ...). It only blocks circular r...

Vendor: npm
Product: sillytavern
Published: May 12, 2026
Source: GitHub

SillyTavern is a locally installed user interface that allows users to interact with text generation large language models, image generation engines, and text-to-speech voice models. Prior to 1.18.0, when fetch(url) throws, the code sends: res.status(500).send('Error occurred while trying to pr...

Vendor: npm
Product: sillytavern
Published: May 12, 2026
Source: GitHub
CVE-2026-44259 MEDIUM - 4.6

efw4.X is an Enterprise Framework for Web. Prior to 4.08.010, the previewServlet serves files with their detected MIME type based on file extension, without any content sanitization or security headers. Files with .html, .htm, or .svg extensions are served as text/html or image/svg+xml respectively,...

Vendor: efwGrp
Product: efw4.X
Published: May 12, 2026
Source: NVD
CVE-2026-41195 MEDIUM - 5.0

mosparo is the modern solution to protect your online forms from spam. Prior to 1.4.13, the automatic rule package source URL feature allows a project member with the editor role to store an attacker-controlled URL that the server later fetches. Because the server follows http/https redirects and do...

Vendor: mosparo
Product: mosparo
Published: May 12, 2026
Source: NVD
CVE-2026-35555 MEDIUM - 6.3

PowerSYSTEM Center feature for device project groups allows an authenticated user with limited permissions to perform an unauthorized deletion of project groups.

Vendor: Subnet Solutions
Product: PowerSYSTEM Center 2024, PowerSYSTEM Center 2026
Published: May 12, 2026
Source: NVD
CVE-2026-33570 MEDIUM - 5.7

PowerSYSTEM Center REST API endpoint for devices allows a low privilege authenticated user to access information normally limited by operational permissions.

Vendor: Subnet Solutions
Product: PowerSYSTEM Center 2020
Published: May 12, 2026
Source: NVD
CVE-2026-35504 MEDIUM - 5.5

PowerSYSTEM Center email notification service is affected by a CRLF injection vulnerability when using SMTPS communication.

Vendor: Subnet Solutions
Product: PowerSYSTEM Center 2020, PowerSYSTEM Center 2024, PowerSYSTEM Center 2026
Published: May 12, 2026
Source: NVD
CVE-2026-8052 MEDIUM - 6.0

HashiCorp Nomadโ€™s exec2 task driver prior to 0.1.2 is vulnerable to arbitrary file read and write on the client host as the Nomad process user through a symlink attack. This vulnerability (CVE-2026-8052) is fixed in version 0.1.2 of the exec2 task driver.

Published: May 12, 2026
Source: NVD
CVE-2026-6959 MEDIUM - 6.0

HashiCorp Nomad and Nomad Enterprise prior to 2.0.1 are vulnerable to arbitrary file read and write on the client host as the Nomad process user through a symlink attack. This vulnerability (CVE-2026-6959) is fixed in Nomad 2.0.1, 1.11.5 and 1.10.11.

Published: May 12, 2026
Source: NVD
CVE-2026-44874 MEDIUM - 4.9

A vulnerability exists in the web-based management interface of an AOS-10 Gateway that could allow an authenticated remote attacker to access sensitive files on the underlying operating system. Successful exploitation of this vulnerability could result in the disclosure of confidential system inform...

Vendor: Hewlett Packard Enterprise (HPE)
Product: HPE Aruba Networking Wireless Operating System (AOS)
Published: May 12, 2026
Source: NVD
CVE-2026-44873 MEDIUM - 5.4

A session management vulnerability in AOS-8 allows previously authenticated users to retain network access after their accounts are administratively disabled. Existing sessions are not invalidated when credentials are revoked, enabling continued access until session expiration. An attacker with comp...

Vendor: Hewlett Packard Enterprise (HPE)
Product: HPE Aruba Networking Wireless Operating System (AOS)
Published: May 12, 2026
Source: NVD
CVE-2026-44215 MEDIUM - 4.4

NanaZip is an open source file archive. From 5.0.1252.0 to before 6.0.1698.0, a one-byte heap out-of-bounds null write exists in the UFS/UFS2 filesystem image parser in NanaZip. The vulnerability is triggered when opening a crafted UFS filesystem image. The attacker controls the byte offset of the w...

Vendor: M2Team
Product: NanaZip
Published: May 12, 2026
Source: NVD
CVE-2026-42446 MEDIUM - 4.4

NanaZip is an open source file archive. From 5.0.1252.0 to before 6.0.1698.0, a stack-based out-of-bounds read exists in the ZealFS filesystem image parser in NanaZip. The vulnerability is triggered when opening a crafted ZealFS v1 filesystem image. An attacker-controlled BitmapSize field in the fil...

Vendor: M2Team
Product: NanaZip
Published: May 12, 2026
Source: NVD