Total CVEs

130,823

Critical Severity

2,726

High Severity

9,741

Last 7 Days

854
Quick preset (or use dates below)
Clear Filters
📅 Showing Year: 2026 (January 1 - December 31, 2026) View All Years →
Showing 661 - 680 of 27,228 CVEs
CVE-2026-8948 CRITICAL - 9.1

Same-origin policy bypass in the DOM: Networking component. This vulnerability was fixed in Firefox 151 and Thunderbird 151.

Vendor: mozilla
Product: firefox
Published: May 19, 2026
Source: NVD
CVE-2026-8947 HIGH - 7.3

Use-after-free in the DOM: Bindings (WebIDL) component. This vulnerability was fixed in Firefox 151, Firefox ESR 115.36, Firefox ESR 140.11, Thunderbird 151, and Thunderbird 140.11.

Vendor: mozilla
Product: firefox
Published: May 19, 2026
Source: NVD
CVE-2026-8946 HIGH - 7.5

Incorrect boundary conditions in the Audio/Video: Web Codecs component. This vulnerability was fixed in Firefox 151, Firefox ESR 115.36, Firefox ESR 140.11, Thunderbird 151, and Thunderbird 140.11.

Vendor: mozilla
Product: firefox
Published: May 19, 2026
Source: NVD
CVE-2026-8945 HIGH - 7.5

Sandbox escape in Firefox and Firefox Focus for Android. This vulnerability was fixed in Firefox 151.

Vendor: mozilla
Product: firefox
Published: May 19, 2026
Source: NVD

Rejected reason: Voluntarily withdrawn

Published: May 19, 2026
Source: NVD
CVE-2026-47323 CRITICAL - 9.8

Camel-CXF and Camel-Knative Message Header Injection via Missing Inbound Filtering The CXF and Knative HeaderFilterStrategy implementations (CxfRsHeaderFilterStrategy in camel-cxf-rest, CxfHeaderFilterStrategy in camel-cxf-transport, and KnativeHttpHeaderFilterStrategy in camel-knative-http) only f...

Vendor: Apache Software Foundation
Product: Apache Camel
Published: May 19, 2026
Source: NVD
CVE-2026-43633 CRITICAL - 10.0

HestiaCP versions 1.9.0 through 1.9.4 contain a deserialization vulnerability in the web terminal component caused by a session format mismatch between PHP and Node.js that allows unauthenticated remote attackers to achieve root-level code execution. Attackers can inject crafted data into HTTP heade...

Vendor: hestiacp
Product: hestiacp
Published: May 19, 2026
Source: NVD

Improper Handling of Syntactically Invalid Structure in Sparx Pro Cloud Server allows Denial of Service (DoS) attack to be executed by sending an specially crafted SQL query. This causes the Pro Cloud Server service to terminate unexpectedly.  The vendor was notified early about this vulnerability,...

Vendor: Sparx Systems
Product: Pro Cloud Server
Published: May 19, 2026
Source: NVD

Sparx Pro Cloud Server is vulnerable to a Race Condition in the /data_api/dl_internal_artifact.php endpoint. The application downloads the properties of the object pointed by guid parameter and saves loaded content in current location (__DIR__) under the specified name. An attacker with repository a...

Vendor: Sparx Systems
Product: Pro Cloud Server
Published: May 19, 2026
Source: NVD

Sparx Enterprise Architect software has a security feature that limits user's actions to those specified in the role. An authenticated attacker can modify the Enterprise Architect client behavior (e.g. using a debugger) and log in as any other user or administrator - then it is possible to do ...

Vendor: Sparx Systems
Product: Enterprise Architect
Published: May 19, 2026
Source: NVD

Sparx Pro Cloud Server requires authentication based on requested URL. An attacker can omit the "model" query parameter and send the model name only in the binary blob in POST request allowing SQL query execution without authentication. The vendor was notified early about this vulnerabili...

Vendor: Sparx Systems
Product: Pro Cloud Server
Published: May 19, 2026
Source: NVD

Sparx Pro Cloud Server is vulnerable to Broken Access Control within communication with the database. Due to lack of permission checks, any low privileged user can run arbitrary SQL queries within database user context. The vendor was notified early about this vulnerability, but didn't respond...

Vendor: Sparx Systems
Product: Pro Cloud Server
Published: May 19, 2026
Source: NVD
CVE-2026-23558 HIGH - 7.8

The adjustments made for XSA-379 as well as those subsequently becoming XSA-387 still left a race window, when a HVM or PVH guest does a grant table version change from v2 to v1 in parallel with mapping the status page(s) via XENMEM_add_to_physmap. Some of the status pages may then be freed while m...

Vendor: Xen
Product: Xen
Published: May 19, 2026
Source: NVD
CVE-2026-23557 MEDIUM - 6.5

Any guest can cause xenstored to crash by issuing a XS_RESET_WATCHES command within a transaction due to an assert() triggering. In case xenstored was built with NDEBUG #defined nothing bad will happen, as assert() is doing nothing in this case. Note that the default is not to define NDEBUG for xen...

Vendor: Xen
Product: Xen
Published: May 19, 2026
Source: NVD
CVE-2025-40904 MEDIUM - 6.5

A Stored HTML Injection vulnerability was discovered in the Smart Polling functionality due to improper validation of an input parameter. An authenticated user with limited privileges can push malicious remote strategies containing HTML tags through the sync. When a victim views the affected remote ...

Vendor: Nozomi Networks
Product: Guardian, CMC
Published: May 19, 2026
Source: NVD
CVE-2025-40903 MEDIUM - 5.9

A Stored HTML Injection vulnerability was discovered in the Schedule Restore Archive functionality due to improper validation of an input parameter. An authenticated user with administrative privileges can define a malicious restore schedule containing HTML tags. When a victim views the affected sch...

Vendor: Nozomi Networks
Product: Guardian, CMC
Published: May 19, 2026
Source: NVD
CVE-2025-40902 MEDIUM - 5.9

A Stored HTML Injection vulnerability was discovered in the Users functionality due to improper validation of an input parameter. An authenticated user with administrative privileges can create a malicious user whose username contains HTML tags. When a victim attempts to delete a group containing th...

Vendor: Nozomi Networks
Product: Guardian, CMC
Published: May 19, 2026
Source: NVD
CVE-2025-40901 MEDIUM - 5.9

A Stored HTML Injection vulnerability was discovered in the Credentials Manager functionality due to improper validation of an input parameter. An authenticated user with administrative privileges can define a malicious identity containing HTML tags. When a victim attempts to delete the affected ide...

Vendor: Nozomi Networks
Product: Guardian, CMC
Published: May 19, 2026
Source: NVD
CVE-2025-40900 MEDIUM - 4.6

An Angular template injection vulnerability was discovered in the Reports functionality due to improper validation of an input parameter. An authenticated user with report privileges can define a malicious report containing an Angular template payload, or a victim can be socially engineered to impor...

Vendor: Nozomi Networks
Product: Guardian, CMC
Published: May 19, 2026
Source: NVD

An Uncontrolled Search Path Element vulnerability in the OpenSSL TLS backend of Qt Network (qtbase) in Qt Qt Framework (Unix) allows a local attacker to load a rogue CA certificate as a trusted system authority via a crafted certificate file placed in the application's working directory.

Vendor: The Qt Company
Product: Qt
Published: May 19, 2026
Source: NVD