Total CVEs

148,419

Critical Severity

4,697

High Severity

16,809

Last 7 Days

2,922
Quick preset (or use dates below)
Clear Filters
Showing 6,841 - 6,860 of 148,419 CVEs
CVE-2026-54259 MEDIUM - 4.3

Wagtail is an open source content management system built on Django. In versions prior to 7.0.8, 7.3.3 and 7.4.2, the Documents and Images chooser's chosen endpoint incorrectly listed items for which the user has not been granted choose permission. A user with access to the Wagtail admin could ...

Vendor: torchbox
Product: wagtail
Published: Jul 01, 2026
Source: NVD
CVE-2026-52190 HIGH - 7.5

Buffer Overflow vulnerability in UTT nv518G nv518GV3v3.2.7-210919-161313 allows a remote attacker to cause a denial of service via the gohead/sub_448384 component

Published: Jul 01, 2026
Source: NVD
CVE-2026-52186 CRITICAL - 9.8

SQL Injection vulnerability in UTT nv518G nv518GV3v3.2.7-210919-161313 allows a remote attacker to execute arbitrary code via the gohead/sub_463bbc component

Published: Jul 01, 2026
Source: NVD
CVE-2026-38891 HIGH - 7.5

An improper input validation in the gazebo_ros_diff_drive.cpp component of gazebo_plugins v3.9.0 allows attackers to cause a Denial of Service (DoS) via supplying a crafted geometry_msgs::Twist message.

Published: Jul 01, 2026
Source: NVD
CVE-2026-36912 HIGH - 7.5

A NULL pointer dereference in the AP4_AtomSampleTable::GetSample() function of Aleksoid1978 MPC-BE before commit 4341cb3 allows attackers to cause a Denial of Service (DoS) via a crafted MP4 file.

Published: Jul 01, 2026
Source: NVD
CVE-2026-36911 MEDIUM - 5.5

A division-by-zero vulnerability in the CStreamSwitcherOutputPin::DecideBufferSize function of Aleksoid1978 MPC-BE before commit 4341cb3 allows attackers to cause a Denial of Service (DoS) via a crafted MP4 file.

Published: Jul 01, 2026
Source: NVD
CVE-2026-36910 MEDIUM - 5.5

An access violation in the BaseSplitterFile::Read function of Aleksoid1978 MPC-BE before commit 4341cb3 allows attackers to cause a Denial of Service (DoS) via a crafted MP4 file.

Published: Jul 01, 2026
Source: NVD
CVE-2026-36909 MEDIUM - 6.2

A NULL pointer dereference in the AP4_TkhdAtom::GetTrackId() function of Aleksoid1978 MPC-BE before commit 4341cb3 allows attackers to cause a Denial of Service (DoS) via a crafted MP4 file.

Published: Jul 01, 2026
Source: NVD
CVE-2026-50143 HIGH - 8.1

Apify Model Context Protocol (MCP) server: Actor MCP path authority injection leaks Apify token

Vendor: npm
Product: @apify/actors-mcp-server
Published: Jul 01, 2026
Source: GitHub
CVE-2026-50139 MEDIUM - 5.9

goshs: Share-link ?token=โ€ฆ redemption races past download limit

Vendor: go
Product: goshs.de/goshs/v2
Published: Jul 01, 2026
Source: GitHub
CVE-2026-50138 HIGH - 8.1

goshs: WebDAV listener ignores --read-only, --upload-only, and --no-delete mode flags

Vendor: go
Product: goshs.de/goshs/v2
Published: Jul 01, 2026
Source: GitHub

SCRAM (Salted Challenge Response Authentication Mechanism) is part of the family of Simple Authentication and Security Layer (SASL, RFC 4422) authentication mechanisms. Prior to 3.3, a flaw in com.ongres.scram:scram-client and com.ongres.scram:scram-common allows an attacker capable of a TLS man-in-...

Vendor: maven
Product: com.ongres.scram:scram-client
Published: Jul 01, 2026
Source: GitHub
CVE-2026-50163 HIGH - 7.1

oras-go is a Go library for managing OCI artifacts. Prior to 2.6.2, ensureLinkPath in content/file/utils.go:262-275 validates a hardlink target relative to the extract base but returns the unresolved target, causing os.Link("victim.secret", "<extract_base>/payload.tar.gz/evil_cw...

Vendor: go
Product: oras.land/oras-go/v2
Published: Jul 01, 2026
Source: GitHub

oras-go is a Go library for managing OCI artifacts. Prior to 2.6.1, resolveWritePath() in content/file/file.go uses a lexical filepath.Rel check for workingDir and does not account for symlink traversal, so when AllowPathTraversalOnWrite=false an attacker-controlled blob title through ocispec.Annota...

Vendor: go
Product: oras.land/oras-go/v2
Published: Jul 01, 2026
Source: GitHub
CVE-2026-50151 HIGH - 7.5

oras-go is a Go library for managing OCI artifacts. Prior to 2.6.1, registry/remote/repository.go in blobStore.completePushAfterInitialPost follows a registry-controlled Location header during monolithic blob upload and reuses the Authorization header from the initial POST request for the subsequent...

Vendor: go
Product: oras.land/oras-go/v2
Published: Jul 01, 2026
Source: GitHub
CVE-2026-58263 HIGH - 7.2

Jodit Editor is a WYSIWYG editor with written in pure TypeScript file and image editing capabilities. In versions prior to 4.12.28, the built-in clean-html sanitizer can be bypassed by a MathML/<style> carrier that hides a dangerous element from the sanitizer's element walk, so a no-inter...

Vendor: xdan
Product: jodit
Published: Jul 01, 2026
Source: NVD
CVE-2026-55153 HIGH - 7.1

mchange-commons-java is a Java library of shared utility classes used by mchange projects like the c3p0 connection pool. Prior to version 0.6.0, its JNDI ObjectFactory implementation (com.mchange.v2.naming.JavaBeanObjectFactory) will construct objects of arbitrary classes and initialize "JavaBe...

Vendor: swaldman
Product: mchange-commons-java
Published: Jul 01, 2026
Source: NVD
CVE-2026-54786 MEDIUM - 5.0

Wasmtime is a runtime for WebAssembly. All versions prior to 24.0.10; versions 25.0.0 through those before 36.0.11; versions 37.0.0 through those before 44.0.3; and versions 45.0.0 and 45.0.1 contain a native implementation of WASIp1 which suffers from a leak in the fd_renumber function where the f...

Vendor: bytecodealliance
Product: wasmtime
Published: Jul 01, 2026
Source: NVD

Jodit Editor is a WYSIWYG editor with written in pure TypeScript file and image editing capabilities. In versions prior to 4.12.18, Jodit.configure(options) โ€” and the internal ConfigMerge / ConfigProto helpers โ€” merged user-supplied options into the editor configuration without filtering prototype-m...

Vendor: xdan
Product: jodit
Published: Jul 01, 2026
Source: NVD
CVE-2026-54720 MEDIUM - 5.4

Silverstripe Framework is a PHP framework which powers the Silverstripe CMS. In versions prior to 6.2.2, the "Insert media from web" functionality in the CMS is vulnerable to XSS from a specially crafted embed. This issue was fixed in version 6.2.2/

Vendor: silverstripe
Product: silverstripe-framework
Published: Jul 01, 2026
Source: NVD