Total CVEs

140,410

Critical Severity

3,747

High Severity

13,544

Last 7 Days

1,649
Quick preset (or use dates below)
Clear Filters
Showing 7,161 - 7,180 of 13,935 CVEs
CVE-2026-24147 MEDIUM - 4.8

NVIDIA Triton Inference Server contains a vulnerability in triton server where an attacker may cause an information disclosure by uploading a model configuration. A successful exploit of this vulnerability may lead to information disclosure or denial of service.

Vendor: NVIDIA
Product: Triton Inference Server
Published: Apr 07, 2026
Source: NVD
CVE-2026-22680 MEDIUM - 5.3

OpenViking versions prior to 0.3.3 contain a missing authorization vulnerability in the task polling endpoints that allows unauthorized attackers to enumerate or retrieve background task metadata created by other users. Attackers can access the /api/v1/tasks and /api/v1/tasks/{task_id} routes withou...

Vendor: Volcengine
Product: OpenViking
Published: Apr 07, 2026
Source: NVD
CVE-2026-39316 MEDIUM - 4.0

OpenPrinting CUPS is an open source printing system for Linux and other Unix-like operating systems. In versions 2.4.16 and prior, a use-after-free vulnerability exists in the CUPS scheduler (cupsd) when temporary printers are automatically deleted. cupsdDeleteTemporaryPrinters() in scheduler/printe...

Vendor: OpenPrinting
Product: cups
Published: Apr 07, 2026
Source: NVD
CVE-2026-39314 MEDIUM - 4.0

OpenPrinting CUPS is an open source printing system for Linux and other Unix-like operating systems. In versions 2.4.16 and prior, an integer underflow vulnerability in _ppdCreateFromIPP() (cups/ppd-cache.c) allows any unprivileged local user to crash the cupsd root process by supplying a negative j...

Vendor: OpenPrinting
Product: cups
Published: Apr 07, 2026
Source: NVD
CVE-2026-35613 MEDIUM - 5.1

coursevault-preview is a utility for previewing course material files from a configured directory. coursevault-preview versions prior to 0.1.1 contain a path traversal vulnerability in the resolveSafe utility. The boundary check used String.prototype.startsWith(baseDir) on a normalized path, which d...

Vendor: moritzmyrz
Product: coursevault-preview
Published: Apr 07, 2026
Source: NVD

File Browser is a file managing interface for uploading, deleting, previewing, renaming, and editing files within a specified directory. Prior to 2.63.1, the resourceGetHandler in http/resource.go returns full text file content without checking the Perm.Download permission flag. All three other cont...

Vendor: filebrowser
Product: filebrowser
Published: Apr 07, 2026
Source: NVD
CVE-2026-35605 MEDIUM - 7.5

File Browser is a file managing interface for uploading, deleting, previewing, renaming, and editing files within a specified directory. Prior to 2.63.1, the Matches() function in rules/rules.go uses strings.HasPrefix() without a trailing directory separator when matching paths against access rules....

Vendor: filebrowser
Product: filebrowser
Published: Apr 07, 2026
Source: NVD
CVE-2026-35592 MEDIUM - 5.3

pyLoad is a free and open-source download manager written in Python. Prior to 0.5.0b3.dev97, the _safe_extractall() function in src/pyload/plugins/extractors/UnTar.py uses os.path.commonprefix() for its path traversal check, which performs character-level string comparison rather than path-level com...

Vendor: pyload
Product: pyload
Published: Apr 07, 2026
Source: NVD
CVE-2026-35586 MEDIUM - 6.8

pyLoad is a free and open-source download manager written in Python. Prior to 0.5.0b3.dev97, the ADMIN_ONLY_CORE_OPTIONS authorization set in set_config_value() uses incorrect option names ssl_cert and ssl_key, while the actual configuration option names are ssl_certfile and ssl_keyfile. This name m...

Vendor: pyload
Product: pyload
Published: Apr 07, 2026
Source: NVD
CVE-2026-35583 MEDIUM - 5.3

Emissary is a P2P based data-driven workflow engine. Prior to 8.39.0, the configuration API endpoint (/api/configuration/{name}) validated configuration names using a blacklist approach that checked for \, /, .., and trailing .. This could potentially be bypassed using URL-encoded variants, double-e...

Vendor: NationalSecurityAgency
Product: emissary
Published: Apr 07, 2026
Source: NVD
CVE-2026-27315 MEDIUM - 5.5

Sensitive Information Leak in cqlsh in Apache Cassandra 4.0 allows access to sensitive information, like passwords, from previously executed cqlsh command via  ~/.cassandra/cqlsh_history local file access. Users are recommended to upgrade to version 4.0.20, which fixes this issue. -- Description: ...

Vendor: Apache Software Foundation
Product: Apache Cassandra
Published: Apr 07, 2026
Source: NVD
CVE-2025-70844 MEDIUM - 6.1

yaffa v2.0.0 is vulnerable to Cross Site Scripting (XSS). An attacker can inject malicious JavaScript into the "Add Account Group" function on the account-group page, allowing execution of arbitrary script in the context of users who view the affected page.

Vendor: kantorge
Product: yaffa
Published: Apr 07, 2026
Source: NVD
CVE-2025-14944 MEDIUM - 5.3

The Backup Migration plugin for WordPress is vulnerable to Missing Authorization in all versions up to, and including, 2.0.0. This is due to a missing capability check on the 'initializeOfflineAjax' function and lack of proper nonce verification. The endpoint only validates against hardcod...

Vendor: inisev
Product: BackupBliss – Backup & Migration with Free Cloud Storage
Published: Apr 07, 2026
Source: NVD
CVE-2026-5745 MEDIUM - 5.5

A flaw was found in libarchive. A NULL pointer dereference vulnerability exists in the ACL parsing logic, specifically within the archive_acl_from_text_nl() function. When processing a malformed ACL string (such as a bare "d" or "default" tag without subsequent fields), the funct...

Published: Apr 07, 2026
Source: NVD
CVE-2026-4931 MEDIUM - 6.8

Smart contract Marginal v1 performs unsafe downcast, allowing attackers to settle a large debt position for a negligible asset cost.

Published: Apr 07, 2026
Source: NVD
CVE-2026-35571 MEDIUM - 4.8

Emissary is a P2P based data-driven workflow engine. Prior to 8.39.0, Mustache navigation templates interpolated configuration-controlled link values directly into href attributes without URL scheme validation. An administrator who could modify the navItems configuration could inject javascript: URI...

Vendor: NationalSecurityAgency
Product: emissary
Published: Apr 07, 2026
Source: NVD
CVE-2026-35516 MEDIUM - 5.0

LinkAce is a self-hosted archive to collect website links. Prior to 2.5.4, LinkRepository::update and CheckLinksCommand::checkLink do not check for private IPs. An authenticated user can read responses from internal services (AWS IMDSv1, cloud metadata, internal APIs) by creating a link with a publi...

Vendor: Kovah
Product: LinkAce
Published: Apr 07, 2026
Source: NVD
CVE-2026-35491 MEDIUM - 6.1

FTLDNS (pihole-FTL) provides an interactive API and also generates statistics for Pi-hole's Web interface. From 6.0 to before 6.6, Pi-hole FTL supports a CLI password feature (webserver.api.cli_pw) that creates “CLI” API sessions intended to be read-only for configuration changes. While /api/co...

Vendor: pi-hole
Product: FTL
Published: Apr 07, 2026
Source: NVD
CVE-2026-35487 MEDIUM - 5.3

text-generation-webui is an open-source web interface for running Large Language Models. Prior to 4.3, an unauthenticated path traversal vulnerability in load_prompt() allows reading any .txt file on the server filesystem. The file content is returned verbatim in the API response. This vulnerability...

Vendor: oobabooga
Product: text-generation-webui
Published: Apr 07, 2026
Source: NVD
CVE-2025-24819 MEDIUM - 5.7

Nokia MantaRay NM is vulnerable to a Relative Path Traversal vulnerability due to improper validation of input parameter on the file system in Software Manager application.

Vendor: Nokia
Product: MantaRay NM
Published: Apr 07, 2026
Source: NVD