Total CVEs

138,585

Critical Severity

3,576

High Severity

12,840

Last 7 Days

2,056
Quick preset (or use dates below)
Clear Filters
๐Ÿ“… Showing Year: 2026 (January 1 - December 31, 2026) View All Years โ†’
Showing 41 - 60 of 34,990 CVEs
CVE-2026-56394 MEDIUM - 6.5

Craft CMS from 4.0.0-RC1 contains an authenticated path traversal vulnerability in the assets/icon endpoint where the extension parameter is not validated before file existence checks. Attackers can bypass extension validation by passing traversal sequences that resolve to existing SVG files, allowi...

Vendor: craftcms
Product: cms
Published: Jun 21, 2026
Source: NVD
CVE-2026-56393 MEDIUM - 4.8

Craft CMS 4.x (>= 4.0.0-RC1, < 4.17.0-beta.1) and 5.x (>= 5.0.0-RC1, < 5.9.0-beta.1) contain multiple stored cross-site scripting vulnerabilities where settings names and field option labels are rendered without sanitization (e.g., via the checkbox.twig template, which used {{ label|raw ...

Vendor: craftcms
Product: cms
Published: Jun 21, 2026
Source: NVD
CVE-2026-56385 MEDIUM - 4.3

Craft CMS versions >= 5.0.0-RC1, <= 5.9.13 and >= 4.0.0-RC1, <= 4.17.7 contain an authorization bypass in the assets/preview-file endpoint. The action does not enforce per-asset view authorization before returning preview content, allowing an authenticated low-privileged user to supply a...

Vendor: craftcms
Product: cms
Published: Jun 21, 2026
Source: NVD
CVE-2026-56384 MEDIUM - 4.3

Craft CMS contains a missing authorization vulnerability in the assets/preview-thumb endpoint. A Control Panel user without permission to view a target private asset can call the endpoint with an attacker-controlled assetId and receive preview HTML containing a signed fallback transform preview link...

Vendor: craftcms
Product: cms
Published: Jun 21, 2026
Source: NVD
CVE-2026-56383 MEDIUM - 4.8

Craft CMS contains a stored cross-site scripting (XSS) vulnerability in the editableTable.twig component when using the 'Row Heading' column type. The application fails to sanitize input within row heading default values, allowing an attacker with an administrator account (with allowAdminC...

Vendor: craftcms
Product: cms
Published: Jun 21, 2026
Source: NVD
CVE-2026-56382 HIGH - 7.2

Craft CMS (composer package craftcms/cms) versions >= 5.5.0 and <= 5.9.13 contain a remote code execution vulnerability in the FieldsController::actionRenderCardPreview() method, which passes the fieldLayoutConfig POST parameter directly to Fields::createLayout() without calling Component::cle...

Vendor: craftcms
Product: cms
Published: Jun 21, 2026
Source: NVD
CVE-2026-56381 MEDIUM - 4.8

Craft CMS from version 5.0.0-RC1 contains a stored cross-site scripting vulnerability in the User Permissions page where user group names are rendered without proper HTML escaping. Attackers with admin access can inject arbitrary JavaScript via the user group name field that executes when other user...

Vendor: craftcms
Product: cms
Published: Jun 21, 2026
Source: NVD

ImageMagick before 7.1.2-15 (and 6.x before 6.9.13-40) contains a heap out-of-bounds read in the PCD coder's DecodeImage loop. A crafted PCD file can trigger a one-byte heap out-of-bounds read during image decoding, resulting in denial of service and potential disclosure of an adjacent heap byt...

Vendor: ImageMagick
Product: ImageMagick
Published: Jun 21, 2026
Source: NVD

ImageMagick before 7.1.2-15 and 6.9.x before 6.9.13-40 contains an integer overflow in the PSB (PSD v2) RLE decoding path (ReadPSDChannelRLE in coders/psd.c) that causes a heap out-of-bounds read on 32-bit builds. Processing a crafted PSB file can lead to information disclosure or a crash.

Vendor: ImageMagick
Product: ImageMagick
Published: Jun 21, 2026
Source: NVD
CVE-2026-56316 MEDIUM - 5.3

Cap-go before 12.128.2 contains an information disclosure vulnerability in the OPTIONS /build/upload/:jobId/* endpoint that allows unauthenticated attackers to enumerate valid builder job IDs through observable response discrepancies. Attackers can probe the endpoint without authentication to distin...

Vendor: Cap-go
Product: capgo
Published: Jun 21, 2026
Source: NVD
CVE-2026-56299 MEDIUM - 5.3

Capgo before 12.128.2 contains an authentication bypass vulnerability in the /build/upload/:jobId/* endpoint that allows unauthenticated attackers to trigger consistent 500 errors. Remote attackers can send OPTIONS requests to bypass authentication middleware and invoke tusProxy logic with invalid c...

Vendor: Capgo
Product: Capgo
Published: Jun 21, 2026
Source: NVD
CVE-2026-56265 CRITICAL - 9.8

Crawl4AI before 0.8.7 contains an authentication bypass vulnerability due to a hardcoded default JWT signing key in the Docker API server. Attackers who know the default key can forge valid authentication tokens for any user, bypassing authentication and gaining full access to protected functionalit...

Vendor: Crawl4AI
Product: Crawl4AI
Published: Jun 21, 2026
Source: NVD
CVE-2026-56253 HIGH - 7.5

Capgo before 12.128.2 contains an improper access control vulnerability in the public.get_org_members RPC function that allows unauthenticated attackers to enumerate organization members. Attackers can invoke the endpoint using only the public sb_publishable_* key and an organization UUID to retriev...

Vendor: Capgo
Product: Capgo
Published: Jun 21, 2026
Source: NVD
CVE-2026-56251 MEDIUM - 6.5

Capgo before 12.128.2 contains a broken row level security policy in the org_users table that allows authenticated users to elevate privileges from admin to super_admin. Attackers can exploit the insufficient RLS enforcement to gain unauthorized super_admin access and compromise system security.

Vendor: Capgo
Product: Capgo
Published: Jun 21, 2026
Source: NVD
CVE-2026-56242 HIGH - 7.5

Capgo before 12.128.2 contains an unauthenticated security definer RPC function get_identity_apikey_only that returns the owning user_id for supplied API keys, creating an API key validity oracle and user identity disclosure primitive. Attackers can call this endpoint with valid or invalid API keys ...

Vendor: Capgo
Product: Capgo
Published: Jun 21, 2026
Source: NVD
CVE-2026-56239 HIGH - 7.6

Capgo before 12.128.2 contains a potential privilege escalation vulnerability in the public.apply_usage_overage SECURITY DEFINER function, which performs sensitive billing operations without enforcing internal authorization checks (no validation of auth.uid(), org membership, or check_min_rights). B...

Vendor: Capgo
Product: Capgo
Published: Jun 21, 2026
Source: NVD
CVE-2026-56236 MEDIUM - 6.1

Capgo CLI before 12.128.2 contains arbitrary file overwrite vulnerabilities in login and build credentials operations that follow symlinks without validation. Attackers can create malicious symlinks in repositories to overwrite arbitrary files or expose credentials with world-readable permissions wh...

Vendor: capgo
Product: cli
Published: Jun 21, 2026
Source: NVD
CVE-2026-56229 MEDIUM - 6.5

Capgo before 12.128.2 contains an authorization bypass vulnerability in the /build/status and /build/logs endpoints that allows attackers to access build jobs belonging to different applications by supplying a mismatched app_id and job_id combination. Limited API keys restricted to a single app can ...

Vendor: Capgo
Product: Capgo
Published: Jun 21, 2026
Source: NVD
CVE-2025-71378 HIGH - 8.1

picklescan before 0.0.30 fails to detect cProfile.runctx function calls in pickle file reduce methods, allowing attackers to execute arbitrary code. Malicious pickle files bypass picklescan detection and execute remote code when loaded via pickle.load().

Vendor: picklescan
Product: picklescan
Published: Jun 21, 2026
Source: NVD
CVE-2025-71357 HIGH - 8.1

picklescan before 0.0.30 fails to detect malicious pickle files using idlelib.pyshell.ModifiedInterpreter.runcommand in reduce methods. Attackers can embed undetected code in pickle files that executes remote commands when loaded by victims.

Vendor: picklescan
Product: picklescan
Published: Jun 21, 2026
Source: NVD