Total CVEs

138,940

Critical Severity

3,615

High Severity

12,982

Last 7 Days

1,456
Quick preset (or use dates below)
Clear Filters
๐Ÿ“… Showing Year: 2026 (January 1 - December 31, 2026) View All Years โ†’
Showing 6,061 - 6,080 of 12,679 CVEs
CVE-2026-27297 HIGH - 7.8

Adobe Framemaker versions 2022.8 and earlier are affected by an Integer Underflow (Wrap or Wraparound) vulnerability that could result in arbitrary code execution in the context of the current user. Exploitation of this issue requires user interaction in that a victim must open a malicious file.

Vendor: Adobe
Product: Adobe Framemaker
Published: Apr 14, 2026
Source: NVD
CVE-2026-27296 HIGH - 7.8

Adobe Framemaker versions 2022.8 and earlier are affected by an Integer Underflow (Wrap or Wraparound) vulnerability that could result in arbitrary code execution in the context of the current user. Exploitation of this issue requires user interaction in that a victim must open a malicious file.

Vendor: Adobe
Product: Adobe Framemaker
Published: Apr 14, 2026
Source: NVD
CVE-2026-27295 HIGH - 7.8

Adobe Framemaker versions 2022.8 and earlier are affected by an out-of-bounds write vulnerability that could result in arbitrary code execution in the context of the current user. Exploitation of this issue requires user interaction in that a victim must open a malicious file.

Vendor: Adobe
Product: Adobe Framemaker
Published: Apr 14, 2026
Source: NVD
CVE-2026-27294 HIGH - 7.8

Adobe Framemaker versions 2022.8 and earlier are affected by an out-of-bounds read vulnerability when parsing a crafted file, which could result in a read past the end of an allocated memory structure. An attacker could leverage this vulnerability to execute code in the context of the current user. ...

Vendor: Adobe
Product: Adobe Framemaker
Published: Apr 14, 2026
Source: NVD
CVE-2026-27293 HIGH - 7.8

Adobe Framemaker versions 2022.8 and earlier are affected by a Heap-based Buffer Overflow vulnerability that could result in arbitrary code execution in the context of the current user. Exploitation of this issue requires user interaction in that a victim must open a malicious file.

Vendor: Adobe
Product: Adobe Framemaker
Published: Apr 14, 2026
Source: NVD
CVE-2026-27292 HIGH - 7.8

Adobe Framemaker versions 2022.8 and earlier are affected by a Use After Free vulnerability that could result in arbitrary code execution in the context of the current user. Exploitation of this issue requires user interaction in that a victim must open a malicious file.

Vendor: Adobe
Product: Adobe Framemaker
Published: Apr 14, 2026
Source: NVD
CVE-2026-27290 HIGH - 8.6

Adobe Framemaker versions 2022.8 and earlier are affected by an Untrusted Search Path vulnerability that might allow attackers to execute arbitrary code in the context of the current user. If the application uses a search path to locate critical resources such as programs, then an attacker could mod...

Vendor: Adobe
Product: Adobe Framemaker
Published: Apr 14, 2026
Source: NVD
CVE-2026-40890 HIGH - 7.5

The package `github.com/gomarkdown/markdown` is a Go library for parsing Markdown text and rendering as HTML. Processing a malformed input containing a < character that is not followed by a > character anywhere in the remaining text with a SmartypantsRenderer will lead to Out of Bounds read or...

Vendor: go
Product: github.com/gomarkdown/markdown
Published: Apr 14, 2026
Source: GitHub
CVE-2026-40090 HIGH - 7.1

Zarf is an Airgap Native Packager Manager for Kubernetes. Versions 0.23.0 through 0.74.1 contain an arbitrary file write vulnerability in the zarf package inspect sbom and zarf package inspect documentation subcommands. These subcommands output file paths are constructed by joining a user-controlled...

Vendor: go
Product: github.com/zarf-dev/zarf
Published: Apr 14, 2026
Source: GitHub
CVE-2026-39971 HIGH - 7.2

Serendipity is a PHP-powered weblog engine. In versions 2.6-beta2 and below, the email sending functionality in include/functions.inc.php inserts $_SERVER['HTTP_HOST'] directly into the Message-ID SMTP header without validation, and the existing sanitization function serendipity_isResponse...

Vendor: composer
Product: s9y/serendipity
Published: Apr 14, 2026
Source: GitHub
CVE-2026-39884 HIGH - 8.3

mcp-server-kubernetes is a Model Context Protocol server for Kubernetes cluster management. Versions 3.4.0 and prior contain an argument injection vulnerability in the port_forward tool in src/tools/port_forward.ts, where a kubectl command is constructed via string concatenation with user-controlled...

Vendor: npm
Product: mcp-server-kubernetes
Published: Apr 14, 2026
Source: GitHub
CVE-2026-40885 HIGH - 8.8

goshs is a SimpleHTTPServer written in Go. From 2.0.0-beta.4 to 2.0.0-beta.5, goshs leaks file-based ACL credentials through its public collaborator feed when the server is deployed without global basic auth. Requests to .goshs-protected folders are logged before authorization is enforced, and the c...

Vendor: go
Product: github.com/patrickhener/goshs/v2
Published: Apr 14, 2026
Source: GitHub
CVE-2026-40876 HIGH - 8.8

goshs is a SimpleHTTPServer written in Go. Prior to 2.0.0-beta.6, goshs contains an SFTP root escape caused by prefix-based path validation. An authenticated SFTP user can read from and write to filesystem paths outside the configured SFTP root, which breaks the intended jail boundary and can expose...

Vendor: go
Product: github.com/patrickhener/goshs
Published: Apr 14, 2026
Source: GitHub
CVE-2026-40870 HIGH - 7.5

Decidim is a participatory democracy framework. Starting in version 0.0.1 and prior to versions 0.30.5 and 0.31.1, the root level `commentable` field in the API allows access to all commentable resources within the platform, without any permission checks. All Decidim instances are impacted that have...

Vendor: rubygems
Product: decidim-comments
Published: Apr 14, 2026
Source: GitHub
CVE-2026-40869 HIGH - 7.5

Decidim is a participatory democracy framework. Starting in version 0.19.0 and prior to versions 0.30.5 and 0.31.1, a vulnerability allows any registered and authenticated user to accept or reject any amendments. The impact is on any users who have created proposals where the amendments feature is e...

Vendor: rubygems
Product: decidim-core
Published: Apr 14, 2026
Source: GitHub
CVE-2026-40291 HIGH - 8.8

Chamilo LMS is an open-source learning management system. In versions prior to 2.0.0-RC.3, an insecure direct object modification vulnerability in the PUT /api/users/{id} endpoint allows any authenticated user with ROLE_STUDENT to escalate their privileges to ROLE_ADMIN by modifying the roles field ...

Vendor: chamilo
Product: chamilo-lms
Published: Apr 14, 2026
Source: NVD
CVE-2026-35196 HIGH - 8.8

Chamilo LMS is an open-source learning management system. In versions prior to 2.0.0-RC.3, an OS Command Injection vulnerability exists in the main/inc/ajax/gradebook.ajax.php endpoint within the export_all_certificates action, where the course code retrieved from the session variable $_SESSION[...

Vendor: chamilo
Product: chamilo-lms
Published: Apr 14, 2026
Source: NVD
CVE-2026-34631 HIGH - 7.8

InCopy versions 20.5.2, 21.2 and earlier are affected by an out-of-bounds write vulnerability that could result in arbitrary code execution in the context of the current user. Exploitation of this issue requires user interaction in that a victim must open a malicious file.

Vendor: Adobe
Product: InCopy
Published: Apr 14, 2026
Source: NVD
CVE-2026-34619 HIGH - 7.7

ColdFusion versions 2023.18, 2025.6 and earlier are affected by an Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') vulnerability that could result in a Security feature bypass. An attacker could leverage this vulnerability to access unauthorized files or dire...

Vendor: Adobe
Product: ColdFusion
Published: Apr 14, 2026
Source: NVD
CVE-2026-34602 HIGH - 7.1

Chamilo LMS is an open-source learning management system. In versions prior to 2.0.0-RC.3, the /api/course_rel_users endpoint is vulnerable to Insecure Direct Object Reference (IDOR), allowing an authenticated attacker to modify the user parameter in the request body to enroll any arbitrary user int...

Vendor: chamilo
Product: chamilo-lms
Published: Apr 14, 2026
Source: NVD