Total CVEs

140,151

Critical Severity

3,698

High Severity

13,312

Last 7 Days

1,696
Quick preset (or use dates below)
Clear Filters
Showing 4,601 - 4,620 of 13,312 CVEs
CVE-2026-44570 HIGH - 8.3

Open WebUI is a self-hosted artificial intelligence platform designed to operate entirely offline. Prior to 0.6.19, authorization controls surrounding the memories API were inconsistent, resulting in the ability of a standard user to delete, restore, and view the contents of other users' memori...

Vendor: pip
Product: open-webui
Published: May 11, 2026
Source: GitHub
CVE-2026-4802 HIGH - 8.0

A flaw was found in Cockpit. This vulnerability allows a remote attacker to achieve arbitrary command execution on the host by exploiting unsanitized user-controlled parameters within crafted links in the system logs user interface (UI). An attacker can inject shell metacharacters and command substi...

Published: May 11, 2026
Source: NVD
CVE-2026-44985 HIGH - 9.6

Dozzle is a realtime log viewer for docker containers. Prior to 10.5.2, he WebSocket upgrader for the /exec and /attach endpoints uses CheckOrigin: func(r *http.Request) bool { return true }, accepting upgrade requests from any origin. Combined with the JWT cookie using SameSite: Lax, this enables C...

Vendor: go
Product: github.com/amir20/dozzle
Published: May 11, 2026
Source: GitHub
CVE-2026-44569 HIGH - 7.1

Open WebUI is a self-hosted artificial intelligence platform designed to operate entirely offline. Prior to 0.6.19, there's an IDOR in the channels message management system that allows authenticated users to modify or delete any message within channels they have read access to. The vulnerabili...

Vendor: pip
Product: open-webui
Published: May 11, 2026
Source: GitHub
CVE-2026-44565 HIGH - 8.1

Open WebUI is a self-hosted artificial intelligence platform designed to operate entirely offline. Prior to 0.6.10, when uploading an audio file, the name of the file is derived from the original HTTP upload request and is not validated or sanitized. This allows for users to upload files with names ...

Vendor: pip
Product: open-webui
Published: May 11, 2026
Source: GitHub
CVE-2026-42595 HIGH - 8.6

Gotenberg is a Docker-powered stateless API for PDF files. Prior to 8.32.0, Gotenberg's Chromium URL-to-PDF endpoint (/forms/chromium/convert/url) has no default protection against HTTP/HTTPS-based SSRF. The default deny-list regex only blocks file:// URIs. An unauthenticated attacker can point...

Vendor: go
Product: github.com/gotenberg/gotenberg/v8
Published: May 11, 2026
Source: GitHub
CVE-2025-10470 HIGH - 8.6

The Magic Link authentication flow accepts multiple invalid authentication requests without adequate rate limiting or resource control, leading to uncontrolled memory usage growth. This vulnerability can result in a denial-of-service condition, causing service unavailability for deployments that ut...

Vendor: WSO2
Product: WSO2 Identity Server, WSO2 Carbon MagicLink Authenticator Module
Published: May 11, 2026
Source: NVD
CVE-2026-41951 HIGH - 7.2

Path traversal vulnerability exists in GROWI v7.5.0 and earlier, which may allow an attacker to execute arbitrary EJS templates on the server when an email server is running in GROWI.

Vendor: GROWI, Inc.
Product: GROWI
Published: May 11, 2026
Source: NVD
CVE-2026-32658 HIGH - 8.0

Dell Automation Platform versions prior to 2.0.0.0, contains a missing authorization vulnerability. A low privileged attacker with remote access could potentially exploit this vulnerability, leading to Elevation of privileges.

Vendor: Dell
Product: Automation Platform
Published: May 11, 2026
Source: NVD
CVE-2025-10908 HIGH - 7.3

Due to a lack of user account state validation during authentication, locked user accounts can be successfully authenticated using Magic Link or Pass Key methods. This bypasses the intended security control that should prevent access to accounts that have been locked. This vulnerability may allow u...

Vendor: WSO2
Product: WSO2 Identity Server, WSO2 Carbon MagicLink Authenticator Module
Published: May 11, 2026
Source: NVD
CVE-2026-43500 HIGH - 7.8

In the Linux kernel, the following vulnerability has been resolved: rxrpc: Also unshare DATA/RESPONSE packets when paged frags are present The DATA-packet handler in rxrpc_input_call_event() and the RESPONSE handler in rxrpc_verify_response() copy the skb to a linear one before calling into the se...

Vendor: Linux
Product: Linux
Published: May 11, 2026
Source: NVD
CVE-2026-6433 HIGH - 7.3

The Custom css-js-php WordPress plugin through 2.0.7 does not properly sanitize user input before using it in a SQL query, and the result is passed to eval(), allowing unauthenticated users to execute arbitrary PHP code on the server.

Published: May 11, 2026
Source: NVD
CVE-2026-8260 HIGH - 8.8

A vulnerability was found in D-Link DCS-935L up to 1.10.01. The impacted element is the function SetDeviceSettings of the file /web/cgi-bin/hnap/hnap_service of the component HNAP Service. The manipulation of the argument AdminPassword results in buffer overflow. The attack can be executed remotely....

Vendor: dlink
Product: dcs-935l_firmware
Published: May 11, 2026
Source: NVD
CVE-2026-8177 HIGH - 7.5

XML::LibXML versions through 2.0210 for Perl read out-of-bounds heap memory when parsing XML node names containing truncated UTF-8 byte sequences. A node name ending in the middle of a multi byte UTF-8 sequence causes the parser to read past the end of the input string into adjacent heap memory. A...

Published: May 10, 2026
Source: NVD
CVE-2026-45180 HIGH - 7.5

Catalyst::Plugin::Statsd versions through 0.10.0 for Perl may leak session ids. If the communication channel to the statsd daemon is not secured (for example, by sending UDP packets to a host on another network), then users' session ids may be leaked. This may allow an attacker to use session...

Vendor: RRWO
Product: Catalyst::Plugin::Statsd
Published: May 10, 2026
Source: NVD
CVE-2022-50944 HIGH - 8.8

Aero CMS 0.0.1 contains a PHP code injection vulnerability that allows authenticated attackers to execute arbitrary PHP code by uploading malicious files through the image parameter. Attackers can upload PHP files with embedded code to the admin posts.php endpoint with source=add_post parameter, and...

Vendor: MegaTKC
Product: Aero CMS
Published: May 10, 2026
Source: NVD
CVE-2021-47949 HIGH - 8.8

CyberPanel 2.1 contains a command execution vulnerability that allows authenticated attackers to read arbitrary files and execute remote code by exploiting symlink attacks through the filemanager controller endpoint. Attackers can manipulate the completeStartingPath parameter in POST requests to /fi...

Vendor: Cyberpanel
Product: CyberPanel
Published: May 10, 2026
Source: NVD
CVE-2021-47945 HIGH - 7.8

Argus Surveillance DVR 4.0 contains an unquoted service path vulnerability in the DVRWatchdog service that allows local attackers to escalate privileges by exploiting the service binary path. Attackers can place a malicious executable in the Program Files directory to be executed with LocalSystem pr...

Vendor: argus
Product: Argus Surveillance DVR
Published: May 10, 2026
Source: NVD
CVE-2021-47944 HIGH - 7.5

memono Notepad 4.2 contains a denial of service vulnerability that allows attackers to crash the application by pasting excessively long character buffers into note fields. Attackers can generate a payload containing 350000 repeated characters and paste it twice into a new note to trigger an applica...

Vendor: memono
Product: Notepad
Published: May 10, 2026
Source: NVD
CVE-2021-47943 HIGH - 8.8

TextPattern CMS 4.8.7 contains a remote code execution vulnerability that allows authenticated attackers to execute arbitrary commands by uploading malicious PHP files through the file upload functionality. Attackers can upload a PHP shell via the Files section in the content area and execute comman...

Vendor: Textpattern
Product: TextPattern CMS
Published: May 10, 2026
Source: NVD