Total CVEs

138,502

Critical Severity

3,573

High Severity

12,821

Last 7 Days

1,997
Quick preset (or use dates below)
Clear Filters
๐Ÿ“… Showing Year: 2026 (January 1 - December 31, 2026) View All Years โ†’
Showing 21 - 40 of 3,447 CVEs
CVE-2026-56142 CRITICAL - 9.9

In JetBrains Hub before 2026.1.13757, 2025.3.148033, 2025.2.148048, 2025.1.148120, 2024.3.148430, 2024.2.148429 privilege escalation by attaching authentication details to accounts was possible

Vendor: JetBrains
Product: Hub
Published: Jun 19, 2026
Source: NVD
CVE-2026-56141 CRITICAL - 9.8

In JetBrains Hub before 2026.1.13757, 2025.3.148033, 2025.2.148048, 2025.1.148120, 2024.3.148430, 2024.2.148429 account takeover via predictable restore codes was possible

Vendor: JetBrains
Product: Hub
Published: Jun 19, 2026
Source: NVD
CVE-2026-50242 CRITICAL - 10.0

In JetBrains Hub before 2026.1.13757, 2025.3.148033, 2025.2.148048, 2025.1.148120, 2024.3.148430, 2024.2.148429 authentication bypass via direct database access leading to administrative access was possible

Vendor: JetBrains
Product: Hub
Published: Jun 19, 2026
Source: NVD
CVE-2026-8713 CRITICAL - 9.1

The Avada (Fusion) Builder plugin for WordPress is vulnerable to arbitrary file deletion due to insufficient file path validation in the maybe_delete_files function in all versions up to, and including, 3.15.3. This makes it possible for unauthenticated attackers to delete arbitrary files on the ser...

Published: Jun 19, 2026
Source: NVD
CVE-2026-7515 CRITICAL - 9.8

The BetterDocs Pro plugin for WordPress is vulnerable to Local File Inclusion in versions up to, and including, 3.8.0 via the `doc_style` parameter. This makes it possible for unauthenticated attackers to include and execute arbitrary .php files on the server, allowing the execution of any PHP code ...

Published: Jun 19, 2026
Source: NVD
CVE-2026-54414 CRITICAL - 9.8

FileRise before 3.16.0 is vulnerable to path traversal in the shared-folder upload endpoint (/api/folder/uploadToSharedFolder.php), leading to arbitrary file write and administrator account takeover. The upload filename is validated by FolderController with basename() and REGEX_FILE_NAME, which perm...

Vendor: error311
Product: FileRise
Published: Jun 19, 2026
Source: NVD
CVE-2026-40624 CRITICAL - 9.8

Improper input validation in AVer PTC500S, PTC115, PTC500+, and PTC115+ cameras may allow a remote, unauthenticated attacker to achieve arbitrary code execution via a specially crafted web request.

Vendor: AVer
Product: PTC500S, PTC115, PTC500+, PTC115+
Published: Jun 19, 2026
Source: NVD
CVE-2026-12048 CRITICAL - 9.3

Stored cross-site scripting in pgAdmin 4's error-rendering and plan-node-rendering paths. Text returned by a PostgreSQL server (ErrorResponse messages, including object names quoted back inside relation-does-not-exist errors and inside EXPLAIN Recheck Cond / Exact Heap Blocks fields) was passed...

Vendor: pgadmin.org
Product: pgAdmin 4
Published: Jun 19, 2026
Source: NVD
CVE-2026-12046 CRITICAL - 9.0

Two state-mutating endpoints in pgAdmin 4's SQL Editor blueprint -- DELETE /sqleditor/close/<trans_id> and POST /sqleditor/initialize/sqleditor/update_connection/<sgid>/<sid>/<did> -- were the only routes in the module missing the @pga_login_required decorator. Both reac...

Vendor: pgadmin.org
Product: pgAdmin 4
Published: Jun 19, 2026
Source: NVD
CVE-2026-12045 CRITICAL - 9.0

Read-only transaction bypass in the pgAdmin 4 AI Assistant allows an attacker who can influence database content that the assistant reads to execute arbitrary SQL with the privileges of the pgAdmin user's database role. The AI Assistant's execute_sql_query tool runs LLM-generated SQL insi...

Vendor: pgadmin.org
Product: pgAdmin 4
Published: Jun 19, 2026
Source: NVD
CVE-2026-54130 CRITICAL - 9.8

Missing authentication for critical function in M365 Copilot allows an unauthorized attacker to disclose information over a network.

Published: Jun 18, 2026
Source: NVD
CVE-2026-47647 CRITICAL - 9.9

Improper access control in Microsoft Dynamics 365 allows an authorized attacker to elevate privileges over a network.

Published: Jun 18, 2026
Source: NVD
CVE-2026-49454 CRITICAL - 9.1

Relyra is a strict-by-default SAML 2.0 Service Provider library for Elixir and Phoenix. Versions 1.0.0 and 1.1.0 accept forged SAML signatures because SignatureValue was not cryptographically verified before the library returned a successful authentication result. The XMLDSig trust boundary was inco...

Vendor: szTheory
Product: relyra
Published: Jun 18, 2026
Source: NVD
CVE-2026-49257 CRITICAL - 10.0

mcp-pinot is a Python-based Model Context Protocol (MCP) server for interacting with Apache Pinot. In versions 3.0.1 and below, mcp-pinot defaults to running an HTTP MCP server bound to 0.0.0.0:8080 with no authentication enabled. All MCP tools, including SQL query execution, schema creation, and ta...

Vendor: startreedata
Product: mcp-pinot
Published: Jun 18, 2026
Source: NVD
CVE-2026-49252 CRITICAL - 9.9

deepstream is a server that allows clients and backend services to sync data, send messages and make rpcs at scale. Versions prior to 10.0.5 are vulnerable to Prototype Pollution. Exploitation can lead to potential privilege escalation from any authenticated user with write permission to any record...

Vendor: deepstreamIO
Product: deepstream.io
Published: Jun 18, 2026
Source: NVD
CVE-2026-47846 CRITICAL - 9.8

Bitnami Cassandra container images are affected by a retained default superuser vulnerability. When a custom administrator account is configured via the CASSANDRA_USER environment variable, the container initialization script creates the new superuser account but fails to drop the built-in cassandra...

Vendor: Bitnami
Product: bitnami/cassandra
Published: Jun 18, 2026
Source: NVD
CVE-2026-54390 CRITICAL - 9.8

JTL Shop versions 5.2.0 through 5.7.1 contains a server-side template injection vulnerability that allows unauthenticated attackers to inject malicious template syntax due to unsanitized user-supplied input passed to the Smarty template engine. Attackers can exploit this flaw to read sensitive serve...

Vendor: JTL Software
Product: JTL Shop
Published: Jun 18, 2026
Source: NVD
CVE-2026-54103 CRITICAL - 9.8

The U.S. Government Accountability Office (GAO) Electronic Protest Docketing System (EPDS) and Civilian Board of Contract Appeals (CBCA) Electronic Docketing System (EDS) does not authenticate password change requests to the '/update-profile/N' API endpoint. A remote, unauthenticated attac...

Vendor: Government Accountability Office, Civilian Board of Contract Appeals
Product: Electronic Protest Docketing System (EPDS), Electronic Docketing System (EDS)
Published: Jun 18, 2026
Source: NVD
CVE-2026-38717 CRITICAL - 9.8

InHand Networks IR912 V1.0.0.r20042 and IR915 V1.0.0.r20042 (including earlier versions) were discovered to contain a command injection vulnerability in the file upload function. The vulnerability allows remote attackers to execute arbitrary commands as root via a crafted input.

Published: Jun 18, 2026
Source: NVD
CVE-2026-38716 CRITICAL - 9.8

InHand Networks IR912 V1.0.0.r20042 and IR915 V1.0.0.r20042 (including earlier versions) were discovered to contain a command injection vulnerability in the Python application export function. This vulnerability allows remote attackers to execute arbitrary commands as root via a crafted input.

Published: Jun 18, 2026
Source: NVD