Total CVEs

138,196

Critical Severity

3,545

High Severity

12,691

Last 7 Days

1,953
Quick preset (or use dates below)
Clear Filters
๐Ÿ“… Showing Year: 2026 (January 1 - December 31, 2026) View All Years โ†’
Showing 4,901 - 4,920 of 34,601 CVEs
CVE-2026-37230 HIGH - 7.5

FlexRIC v2.0.0 crashes when the near-RT RIC receives a RIC_INDICATION message with a ran_func_id that does not exist in its registry. The lookup returns NULL, triggering assert() in Debug builds (SIGABRT) or NULL pointer dereference in Release builds (SIGSEGV). A remote unauthenticated attacker can ...

Vendor: mosaic5g
Product: flexric
Published: Jun 01, 2026
Source: NVD
CVE-2026-37229 HIGH - 7.5

FlexRIC v2.0.0 contains a reachable assertion in e2ap_create_pdu() triggered when ASN.1 PER decoding fails. A remote unauthenticated attacker can send any non-PER byte sequence (e.g., a single 0x00 byte) over SCTP to the near-RT RIC (port 36421) or iApp (port 36422) to crash the process via SIGABRT....

Vendor: mosaic5g
Product: flexric
Published: Jun 01, 2026
Source: NVD
CVE-2026-37228 HIGH - 7.5

FlexRIC v2.0.0 contains a reachable assertion in e2ap_recv_sctp_msg() (src/lib/ep/e2ap_ep.c). The function allocates a fixed 32KB receive buffer and enforces assert(rc < len) on the sctp_recvmsg() return value. A remote unauthenticated attacker can send a single SCTP message with payload >= 32...

Vendor: mosaic5g
Product: flexric
Published: Jun 01, 2026
Source: NVD
CVE-2026-37226 HIGH - 7.5

FlexRIC v2.0.0 crashes when the iApp receives an E42_RIC_SUBSCRIPTION_REQUEST referencing a non-existent E2 Node. The lookup function returns NULL, which is enforced by assert() in Debug builds (SIGABRT) and dereferenced in Release builds (SIGSEGV). A remote unauthenticated attacker can crash the iA...

Vendor: mosaic5g
Product: flexric
Published: Jun 01, 2026
Source: NVD
CVE-2026-23638 MEDIUM - 6.5

Kiteworks is a private data network (PDN). Prior to version 9.3.0, an Insecure Direct Object Reference (IDOR) vulnerability in Kiteworks Secure Data Forms allows an authenticated attacker to tamper with the internal approval flow configurations of forms belonging to other users due to insufficient a...

Vendor: kiteworks
Product: Secure Data Forms
Published: Jun 01, 2026
Source: NVD
CVE-2026-10283 MEDIUM - 6.3

A vulnerability was detected in Bottelet DaybydayCRM up to 2.2.1. Affected is an unknown function of the component Setting Handler. Performing a manipulation results in missing authentication. Remote exploitation of the attack is possible. It is recommended to apply a patch to fix this issue.

Vendor: Bottelet
Product: DaybydayCRM
Published: Jun 01, 2026
Source: NVD
CVE-2026-10282 MEDIUM - 4.3

A security vulnerability has been detected in Bottelet DaybydayCRM up to 2.2.1. This impacts the function view of the file app/Http/Controllers/DocumentsController.php. Such manipulation leads to improper authorization. The attack may be launched remotely. It is best practice to apply a patch to res...

Vendor: Bottelet
Product: DaybydayCRM
Published: Jun 01, 2026
Source: NVD
CVE-2026-10281 HIGH - 7.3

A weakness has been identified in Enderfga claw-orchestrator up to 3.5.5. This affects the function EmbeddedServer of the file src/embedded-server.ts of the component API Endpoint. This manipulation causes missing authentication. The attack may be initiated remotely. The exploit has been made availa...

Vendor: Enderfga
Product: claw-orchestrator
Published: Jun 01, 2026
Source: NVD
CVE-2026-10280 HIGH - 7.3

A security flaw has been discovered in horizon921 mcpilot 0.1.0. The impacted element is an unknown function of the file client/src/app/api/mcp/call/route.ts of the component MCP API Call Endpoint. The manipulation of the argument serverBaseUrl results in server-side request forgery. The attack can ...

Vendor: horizon921
Product: mcpilot
Published: Jun 01, 2026
Source: NVD
CVE-2026-10279 MEDIUM - 6.3

A vulnerability was identified in hiraishikentaro wezterm-mcp 0.1.0. The affected element is an unknown function of the file src/wezterm_executor.ts of the component switch_pane/write_to_specific_pane. The manipulation of the argument request.params.arguments.pane_id leads to os command injection. T...

Vendor: hiraishikentaro
Product: wezterm-mcp
Published: Jun 01, 2026
Source: NVD
CVE-2026-10278 MEDIUM - 6.3

A vulnerability was determined in ishayoyo excel-mcp up to 1.0.2. Impacted is an unknown function of the file src/index.ts of the component read_file/write_file. Executing a manipulation of the argument filePath/outputPath can lead to path traversal. It is possible to launch the attack remotely. The...

Vendor: ishayoyo
Product: excel-mcp
Published: Jun 01, 2026
Source: NVD
CVE-2026-10277 MEDIUM - 6.3

A vulnerability was found in j3k0 mcp-google-workspace up to 831790e7d5c2663325733d9f5579cc339a267c4c. This issue affects the function saveToDisk of the file src/tools/gmail.ts of the component MCP Gmail Tool. Performing a manipulation results in improper access controls. It is possible to initiate ...

Vendor: j3k0
Product: mcp-google-workspace
Published: Jun 01, 2026
Source: NVD
CVE-2026-10276 MEDIUM - 6.3

A vulnerability has been found in hekmon8 Jenkins-server-mcp 0.1.0. This vulnerability affects the function jobPath of the file src/index.ts of the component get_build_status/get_build_log/trigger_build. Such manipulation leads to server-side request forgery. The attack may be performed from remote....

Vendor: hekmon8
Product: Jenkins-server-mcp
Published: Jun 01, 2026
Source: NVD
CVE-2026-0072 HIGH - 7.8

In addInputMethodListener of com.android.server.inputmethod.InputMethodManagerService, there is a missing permission check. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is not needed for exploitation.

Vendor: google
Product: android_xr
Published: Jun 01, 2026
Source: NVD

launch-editor allows users to open files with line numbers in editor from Node.js. Prior to version 2.9.0, due to the insufficient sanitization of the `file` argument in the `launchEditor`, an attacker can execute arbitrary commands on Windows by supplying a filename that contains special characters...

Vendor: vitejs
Product: launch-editor, vite
Published: Jun 01, 2026
Source: NVD
CVE-2026-8643 MEDIUM - 5.5

pip would treat console_scripts and gui_scripts as paths instead of file names without sanitizing the resolved absolute path to the installation directory, leading to entry points being installed outside the installation directory.

Vendor: pypa
Product: pip
Published: Jun 01, 2026
Source: NVD
CVE-2026-8501 HIGH - 7.8

Improper access control in the PCTCore64.sys Windows kernel driver from PC Tools Internet Security allows user-mode processes to access the PCTCoreDriver WDM device interface and invoke privileged IOCTL handlers. A local attacker with the ability to access or load the affected driver can exploit thi...

Published: Jun 01, 2026
Source: NVD
CVE-2026-46243 HIGH - 7.8

In the Linux kernel, the following vulnerability has been resolved: smb: client: reject userspace cifs.spnego descriptions cifs.spnego key descriptions contain authority-bearing fields such as pid, uid, creduid, and upcall_target that cifs.upcall treats as kernel-originating inputs. However, users...

Vendor: Linux
Product: Linux
Published: Jun 01, 2026
Source: NVD
CVE-2026-45267 MEDIUM - 6.5

Nextcloud is an open source content collaboration platform. Prior to version 5.2.6, a missing permissions check allowed users to request reading form submissions of other users. This issue has been patched in version 5.2.6.

Vendor: nextcloud
Product: security-advisories
Published: Jun 01, 2026
Source: NVD

Nextcloud is an open source content collaboration platform. Prior to versions 21.1.10, 22.0.11, and 23.0.3, a low-privileged user can force other user's microphones to be muted in calls when no High-performance Backend is installed. This issue has been patched in versions 21.1.10, 22.0.11, and ...

Vendor: nextcloud
Product: security-advisories
Published: Jun 01, 2026
Source: NVD