Total CVEs

139,456

Critical Severity

3,644

High Severity

13,084

Last 7 Days

1,260
Quick preset (or use dates below)
Clear Filters
📅 Showing Year: 2026 (January 1 - December 31, 2026) View All Years →
Showing 581 - 600 of 35,861 CVEs
CVE-2020-9695 HIGH - 7.8

Acrobat Reader versions 2020.009.20074, 2020.001.30002, 2017.011.30171, 2015.006.30523 and earlier are affected by an out-of-bounds write vulnerability that could result in arbitrary code execution in the context of the current user. Exploitation of this issue requires user interaction in that a vic...

Published: Jun 23, 2026
Source: NVD
CVE-2026-54557 MEDIUM - 5.5

mise HTTP backend uses raw version path for install symlink destination

Vendor: rust
Product: mise
Published: Jun 23, 2026
Source: GitHub

OctoPrint has possible file exfiltration via query parameters on upload endpoints

Vendor: pip
Product: OctoPrint
Published: Jun 23, 2026
Source: GitHub
CVE-2026-53925 HIGH - 7.8

Glances has arbitrary file write and command execution via `secure_popen` redirection and chaining operators in AMP command configuration

Vendor: pip
Product: glances
Published: Jun 23, 2026
Source: GitHub
CVE-2026-54350 CRITICAL - 10.0

Budibase has nonymous NoSQL operator injection via published-app query templates

Vendor: npm
Product: @budibase/server
Published: Jun 23, 2026
Source: GitHub
CVE-2026-55173 HIGH - 8.1

AVideo has an incomplete fix of CVE-2026-33482: sanitizeFFmpegCommand still allows a single '&' (background operator), giving OS command execution at the same execAsync sh -c sink

Vendor: composer
Product: wwbn/avideo
Published: Jun 23, 2026
Source: GitHub

Gogs is an open source self-hosted Git service. Prior to 0.14.3, the Jupyter Notebook (ipynb) sanitizer endpoint at POST /-/api/sanitize_ipynb allows arbitrary data: URIs without proper restrictions, potentially leading to Cross-Site Scripting (XSS). The endpoint uses bluemonday.UGCPolicy() with p.A...

Vendor: go
Product: gogs.io/gogs
Published: Jun 23, 2026
Source: GitHub
CVE-2026-45049 HIGH - 8.3

OpenAM Unauthenticated Session Hijacking via Information Exposure in CDCServlet

Vendor: maven
Product: org.openidentityplatform.openam:openam-federation
Published: Jun 23, 2026
Source: GitHub
CVE-2026-45048 HIGH - 8.5

OpenAM Authenticated Privilege Escalation via Raw Token Disclosure Session RPC

Vendor: maven
Product: org.openidentityplatform.openam:openam-core
Published: Jun 23, 2026
Source: GitHub

GNU SASL before 2.2.4 lacks sanitization of a short challenge in _gsasl_ntlm_client_step in the NTLM client, which could result in memory disclosure via a crafted server.

Vendor: GNU
Product: GNU SASL
Published: Jun 23, 2026
Source: NVD
CVE-2026-56117 MEDIUM - 4.7

dhcpcd through 10.3.2, fixed in commit 78ea09e, contains a heap use-after-free vulnerability in the control socket handling within src/control.c that allows local unprivileged attackers to trigger memory corruption when privilege separation is disabled. Attackers can connect to the control socket an...

Vendor: NetworkConfiguration
Product: dhcpcd
Published: Jun 23, 2026
Source: NVD
CVE-2026-56116 MEDIUM - 6.5

dhcpcd through 10.3.2, fixed in commit 708b4a5, contains a memory leak vulnerability in the IPv6 Router Advertisement route information handling that allows an unauthenticated same-link attacker to cause denial of service by sending crafted Router Advertisements. Attackers can repeatedly send Router...

Vendor: NetworkConfiguration
Product: dhcpcd
Published: Jun 23, 2026
Source: NVD
CVE-2026-56115 MEDIUM - 5.3

Bootimus through 0.1.70 contains a broken access control vulnerability that allows authenticated low-privileged users to perform administrative actions by exploiting missing role enforcement in the JWTMiddleware function in internal/auth/auth.go, which validates JWT tokens and account status but fai...

Vendor: NetworkConfiguration
Product: dhcpcd
Published: Jun 23, 2026
Source: NVD
CVE-2026-56114 MEDIUM - 5.3

dhcpcd through 10.3.2, fixed in commit 2f00c7b, contains a one-byte stack out-of-bounds write vulnerability in dhcp6_makemessage() in src/dhcp6.c that allows unauthenticated same-link attackers to write beyond a fixed local buffer by serializing an oversized RFC6603 OPTION_PD_EXCLUDE option body. At...

Vendor: NetworkConfiguration
Product: dhcpcd
Published: Jun 23, 2026
Source: NVD
CVE-2026-56113 MEDIUM - 5.3

dhcpcd through 10.3.2, fixed in commit 5733d3c, contains a heap use-after-free vulnerability that allows unauthenticated same-link attackers to crash the daemon by sending a crafted DHCPv6 RENEW reply with RFC6603 OPTION_PD_EXCLUDE and both preferred and valid lifetimes set to zero. Attackers acting...

Vendor: NetworkConfiguration
Product: dhcpcd
Published: Jun 23, 2026
Source: NVD

The XML‑RPC API addUser method has a validation bypass introduced in the fix for CVE‑2025‑55129. As a result, API users could create usernames that enabled impersonation or stored XSS attacks. Proper validation has been added where it was missing.

Vendor: Revive
Product: Adserver
Published: Jun 23, 2026
Source: NVD

A stored XSS can be exploited by leveraging the usernames as an attack vector. When an admin user viewed the audit log details for affected entries, any malicious JavaScript payload embedded in the username would be executed due to missing output sanitisation. Proper escaping has been added to the a...

Vendor: Revive
Product: Adserver
Published: Jun 23, 2026
Source: NVD
CVE-2026-44959 HIGH - 8.8

A missing validation of user input exists when saving delivery limitations in Revive Adserver 6.0.6 and earlier. A low‑privileged user could add an unexpected component parameter and inject malicious PHP code into the compiledlimitations field, which would then be executed during banner delivery. In...

Vendor: Revive
Product: Adserver
Published: Jun 23, 2026
Source: NVD
CVE-2026-44958 MEDIUM - 5.4

An access control bypass allows an advertiser‑level user to activate or deactivate a banner in Revive Adserver 6.0.6 and earlier, even when such permissions were not granted. The banner-edit.php script allowed the banner status to be overwritten solely based on banner edit permissions. The status fi...

Vendor: Revive
Product: Adserver
Published: Jun 23, 2026
Source: NVD
CVE-2026-44957 MEDIUM - 4.3

A missing access control check when invoking various modify methods in the XML‑RPC API of Revive Adserver 6.0.6 and earlier. The API allowed entities to be reassigned to different parent entities, leading to inconsistent ownership relationships. This issue was exploitable only in combination with CV...

Vendor: Revive
Product: Adserver
Published: Jun 23, 2026
Source: NVD