Total CVEs

140,323

Critical Severity

3,747

High Severity

13,514

Last 7 Days

1,764
Quick preset (or use dates below)
Clear Filters
Showing 6,101 - 6,120 of 13,893 CVEs
CVE-2025-66954 MEDIUM - 6.5

A vulnerability exists in the Buffalo Link Station version 1.85-0.01 that allows unauthenticated or guest-level users to enumerate valid usernames and their associated privilege roles. The issue is triggered by modifying a parameter within requests sent to the /nasapi endpoint.

Published: Apr 20, 2026
Source: NVD
CVE-2026-6652 MEDIUM - 4.7

A weakness has been identified in Pagekit CMS up to 1.0.18. This issue affects the function evaluate of the file app/modules/view/src/PhpEngine.php of the component StringStorage Template Handler. This manipulation causes improper neutralization of directives in dynamically evaluated code. Remote ex...

Published: Apr 20, 2026
Source: NVD
CVE-2026-6650 MEDIUM - 4.7

A vulnerability was identified in Z-BlogPHP 1.7.5. This affects the function App::UnPack of the file /zb_users/plugin/AppCentre/app_upload.php of the component ZBA File Handler. The manipulation leads to unrestricted upload. The attack may be initiated remotely. The exploit is publicly available and...

Published: Apr 20, 2026
Source: NVD
CVE-2026-41245 MEDIUM - 5.9

Junrar is an open source java RAR archive library. Prior to version 7.5.10, a path traversal vulnerability in `LocalFolderExtractor` allows an attacker to write arbitrary files with attacker-controlled content into sibling directories when a crafted RAR archive is extracted. Version 7.5.10 fixes the...

Vendor: junrar
Product: junrar
Published: Apr 20, 2026
Source: NVD
CVE-2026-40896 MEDIUM - 6.5

OpenProject is open-source, web-based project management software. Prior to version 17.3.0, a user with `manage_agendas` permission in any project can inject agenda items into meetings belonging to any other project on the instance β€” even projects they have no access to. No knowledge of the target p...

Vendor: opf
Product: openproject
Published: Apr 20, 2026
Source: NVD
CVE-2026-34429 MEDIUM - 5.4

Vvveb prior toΒ 1.0.8.1 contains a stored cross-site scripting vulnerability that allows authenticated users with media upload and rename permissions to execute arbitrary JavaScript by bypassing MIME type validation and renaming uploaded files to executable extensions. Attackers can prepend a GIF89a ...

Vendor: givanz
Product: Vvveb
Published: Apr 20, 2026
Source: NVD
CVE-2026-25883 MEDIUM - 5.8

Vexa is an open-source, self-hostable meeting bot API and meeting transcription API. Prior to 0.10.0-260419-1910, the Vexa webhook feature allows authenticated users to configure an arbitrary URL that receives HTTP POST requests when meetings complete. The application performs no validation on the w...

Vendor: Vexa-ai
Product: vexa
Published: Apr 20, 2026
Source: NVD
CVE-2026-24468 MEDIUM - 5.3

OpenAEV is an open source platform allowing organizations to plan, schedule and conduct cyber adversary simulation campaign and tests. Starting in version 1.11.0 and prior to version 2.0.13, the /api/reset endpoint behaves differently depending on whether the supplied username exists in the system. ...

Vendor: OpenAEV-Platform
Product: openaev
Published: Apr 20, 2026
Source: NVD
CVE-2026-6649 MEDIUM - 6.3

A vulnerability was determined in Qibo CMS 1.0. Affected by this issue is some unknown functionality of the file /index/image/headers. Executing a manipulation of the argument starts can lead to server-side request forgery. The attack can be launched remotely. The exploit has been publicly disclosed...

Published: Apr 20, 2026
Source: NVD
CVE-2026-33558 MEDIUM - 5.3

Information exposure vulnerability has been identified in Apache Kafka. The NetworkClient component will output entire requests and responses information in the DEBUG log level in the logs. By default, the log level is set to INFO level. If the DEBUG level is enabled, the sensitive information will...

Vendor: Apache Software Foundation
Product: Apache Kafka, Apache Kafka Clients
Published: Apr 20, 2026
Source: NVD
CVE-2025-66335 MEDIUM - 5.3

Apache Doris MCP Server versions earlier than 0.6.1 are affected by an improper neutralization flaw in query context handling that may allow execution of unintended SQL statements and bypass of intended query validation and access restrictions through the MCP query execution interface. Version 0.6.1...

Vendor: Apache Software Foundation
Product: Apache Doris MCP Server
Published: Apr 20, 2026
Source: NVD
CVE-2026-6636 MEDIUM - 4.3

A vulnerability was detected in p2r3 convert up to 6998584ace3e11db66dff0b423612a5cf91de75b. Affected is the function Bun.serve of the file buildCache.js of the component API. Performing a manipulation of the argument pathname results in path traversal. It is possible to initiate the attack remotely...

Published: Apr 20, 2026
Source: NVD
CVE-2026-6634 MEDIUM - 6.3

A weakness has been identified in usememos memos up to 0.22.1. This affects the function memos_access_token of the file src/App.tsx of the component UpdateInstanceSetting. This manipulation of the argument additionalStyle/additionalScript causes improper authorization. The attack is possible to be c...

Published: Apr 20, 2026
Source: NVD
CVE-2026-6654 MEDIUM - 5.1

Double-Free / Use-After-Free (UAF) in the `IntoIter::drop` and `ThinVec::clear` functions in the thin_vec crate. A panic in `ptr::drop_in_place` skips setting the length to zero.

Published: Apr 20, 2026
Source: NVD
CVE-2026-6628 MEDIUM - 6.3

A flaw has been found in phili67 Ecclesia CRM up to 8.0.0. This affects the function ValidateInput of the file /v2/query/view/ of the component Query Viewer Component. This manipulation of the argument custom causes sql injection. The attack can be initiated remotely. The exploit has been published ...

Published: Apr 20, 2026
Source: NVD
CVE-2026-6626 MEDIUM - 6.3

A vulnerability was detected in Cockpit-HQ Cockpit up to 2.13.5. Affected by this issue is some unknown functionality of the component Asset Handler/Aggregate Handler. The manipulation results in improper neutralization of special elements in data query logic. It is possible to launch the attack rem...

Published: Apr 20, 2026
Source: NVD
CVE-2026-6620 MEDIUM - 6.3

A vulnerability was found in SonicCloudOrg sonic-server up to 2.0.0. The affected element is the function Upload of the file FileTool.java of the component File Upload Endpoint. The manipulation of the argument Type results in path traversal. The attack may be launched remotely. The exploit has been...

Published: Apr 20, 2026
Source: NVD
CVE-2026-6618 MEDIUM - 6.3

A flaw has been found in langgenius dify up to 1.13.3. This issue affects the function parse_openai_plugin_json_to_tool_bundle of the file api/core/tools/utils/parser.py of the component ApiBasedToolSchemaParser. Executing a manipulation of the argument url can lead to server-side request forgery. T...

Published: Apr 20, 2026
Source: NVD
CVE-2026-6617 MEDIUM - 6.3

A vulnerability was detected in langgenius dify up to 0.6.9. This vulnerability affects the function get_api_tool_provider_remote_schema of the file api/services/tools/api_tools_manage_service.py of the component ApiToolManageService. Performing a manipulation of the argument url results in server-s...

Published: Apr 20, 2026
Source: NVD
CVE-2026-6616 MEDIUM - 6.3

A security vulnerability has been detected in TransformerOptimus SuperAGI up to 0.0.14. This affects the function extract_with_bs4/extract_with_3k/extract_with_lxml of the file superagi/helper/webpage_extractor.py of the component WebScraperTool. Such manipulation leads to server-side request forger...

Published: Apr 20, 2026
Source: NVD