Total CVEs

139,456

Critical Severity

3,644

High Severity

13,084

Last 7 Days

1,257
Quick preset (or use dates below)
Clear Filters
📅 Showing Year: 2026 (January 1 - December 31, 2026) View All Years →
Showing 521 - 540 of 35,861 CVEs

Incorrect check of function return value in Caliptra Core Runtime Firmware (ActivateFirmwareCmd::activate_fw modules) allows bypass of Caliptra Core's verification of the MCU FW during a hitless update. This issue affects Core Runtime Firmware: from 2.0.0 through 2.0.1, 2.1.0.

Published: Jun 24, 2026
Source: NVD
CVE-2026-56785 HIGH - 8.2

FlatPress versions prior to commit 10be83c, contains a stored cross-site scripting vulnerability in comment and contact forms where name, URL, and email fields are rendered without proper output encoding in Smarty templates. Attackers can inject arbitrary HTML and JavaScript through these fields to ...

Vendor: FlatPress
Product: FlatPress
Published: Jun 23, 2026
Source: NVD
CVE-2026-54588 CRITICAL - 9.6

Poweradmin is a web-based DNS administration tool for PowerDNS server. Versions prior to 4.2.4 and 4.3.3 use the attacker-controlled `HTTP_HOST` request header as the authoritative source for building callback URLs in its OIDC, SAML, and logout authentication flows without any validation. An unauthe...

Vendor: poweradmin
Product: poweradmin
Published: Jun 23, 2026
Source: NVD
CVE-2026-12164 MEDIUM - 4.4

Fortra File Integrity Monitoring (FIM), formerly Tripwire Enterprise, versions prior to 9.4.0 may assign incorrect or elevated effective permissions to users created by the tetool import command while FIM is running, particularly when the import also creates or changes roles or role-permission relat...

Vendor: Fortra
Product: File Integrity Monitoring (FIM)
Published: Jun 23, 2026
Source: NVD
CVE-2026-12163 MEDIUM - 5.5

Fortra File Integrity Monitoring (FIM), formerly Tripwire Enterprise, versions prior to 9.4.0.1 contain a stored cross-site scripting (XSS) vulnerability in the Asset View UI component. An authenticated user with sufficient privileges to create or modify affected node or database configuration field...

Vendor: Fortra
Product: File Integrity Monitoring (FIM)
Published: Jun 23, 2026
Source: NVD

When using the "tarfile" module with a file opened in "streaming mode" (mode="r|") the tarfile module did not properly handle EOF, meaning an archive could be parsed in an infinite loop.

Vendor: Python Software Foundation
Product: CPython
Published: Jun 23, 2026
Source: NVD
CVE-2026-54329 HIGH - 8.5

Snipe-IT API Vulnerable to Cross-Tenant Accessory Injection

Vendor: composer
Product: snipe/snipe-it
Published: Jun 23, 2026
Source: GitHub

Snipe-IT's S3 signature image retrieval lacks authorization before temporary URL

Vendor: composer
Product: snipe/snipe-it
Published: Jun 23, 2026
Source: GitHub

Snipe-IT has Improper Authorization in File Deletion (IDOR)

Vendor: composer
Product: snipe/snipe-it
Published: Jun 23, 2026
Source: GitHub

Snipe-IT Vulnerable to Privilege Escalation via Missing admin Permission Check in User Creation

Vendor: composer
Product: snipe/snipe-it
Published: Jun 23, 2026
Source: GitHub
CVE-2026-55482 MEDIUM - 6.3

Snipe-IT has Multi-Tenancy Bypass via Bulk Asset Update

Vendor: composer
Product: snipe/snipe-it
Published: Jun 23, 2026
Source: GitHub
CVE-2026-50550 MEDIUM - 5.8

Snipe-IT has a 2FA reset privilege bypass

Vendor: composer
Product: snipe/snipe-it
Published: Jun 23, 2026
Source: GitHub
CVE-2026-49976 MEDIUM - 6.5

Snipe-IT Vulnerable to User Account Escalation via CSV Import

Vendor: composer
Product: snipe/snipe-it
Published: Jun 23, 2026
Source: GitHub
CVE-2026-49870 MEDIUM - 5.9

Snipe-IT's TOTP is Brute-Forceable Due to Missing Rate Limiting on `POST /two-factor`

Vendor: composer
Product: snipe/snipe-it
Published: Jun 23, 2026
Source: GitHub
CVE-2026-48500 MEDIUM - 6.5

Filament is a collection of full-stack components for accelerated Laravel development. From 3.0.0 until 3.3.52, 4.11.5, and 5.6.5, any schema can contain a file upload form field, so Filament applies Livewire's WithFileUploads trait to the Livewire component the schema is embedded in. However, ...

Vendor: composer
Product: filament/filament
Published: Jun 23, 2026
Source: GitHub
CVE-2026-48496 MEDIUM - 6.2

opentelemetry-ebpf-profiler: Unprivileged process can trigger a denial of service on the ebpf-profiler agent

Vendor: go
Product: go.opentelemetry.io/ebpf-profiler
Published: Jun 23, 2026
Source: GitHub
CVE-2026-48493 MEDIUM - 5.5

Snipe-IT is an IT asset/license management system. In versions prior to 8.6.0, a user with only users.edit can send a PATCH to /api/v1/users/{their_own_id} and grant themselves any permission except admin and superuser — for example `assets.view`, `assets.create`, `reports.view`, import, etc. The is...

Vendor: composer
Product: snipe/snipe-it
Published: Jun 23, 2026
Source: GitHub

Snipe-IT's selectlist visibility is too permissive

Vendor: composer
Product: snipe/snipe-it
Published: Jun 23, 2026
Source: GitHub
CVE-2026-54517 MEDIUM - 5.3

jackson-databind contains the general-purpose data-binding functionality and tree-model for Jackson Data Processor. From 2.21.0 until 2.21.4 and 3.1.4, in BeanDeserializer._deserializeUsingPropertyBased, the active-view (@JsonView) filter was applied only to creator properties; the regular property-...

Vendor: maven
Product: com.fasterxml.jackson.core:jackson-databind
Published: Jun 23, 2026
Source: GitHub
CVE-2026-54516 MEDIUM - 5.3

jackson-databind contains the general-purpose data-binding functionality and tree-model for Jackson Data Processor. From 2.21.0 until 2.21.4 and 3.1.4, POJOPropertiesCollector._renameProperties() allows a property with @JsonProperty("renamed") on the getter and @JsonIgnore on the setter to...

Vendor: maven
Product: com.fasterxml.jackson.core:jackson-databind
Published: Jun 23, 2026
Source: GitHub