Total CVEs

140,410

Critical Severity

3,747

High Severity

13,544

Last 7 Days

1,638
Quick preset (or use dates below)
Clear Filters
Showing 7,401 - 7,420 of 13,935 CVEs
CVE-2026-34979 MEDIUM - 5.3

OpenPrinting CUPS is an open source printing system for Linux and other Unix-like operating systems. In versions 2.4.16 and prior, there is a heap-based buffer overflow in the CUPS scheduler when building filter option strings from job attribute. At time of publication, there are no publicly availab...

Vendor: OpenPrinting
Product: cups
Published: Apr 03, 2026
Source: NVD
CVE-2026-34978 MEDIUM - 6.5

OpenPrinting CUPS is an open source printing system for Linux and other Unix-like operating systems. In versions 2.4.16 and prior, the RSS notifier allows .. path traversal in notify-recipient-uri (e.g., rss:///../job.cache), letting a remote IPP client write RSS XML bytes outside CacheDir/rss (anyw...

Vendor: OpenPrinting
Product: cups
Published: Apr 03, 2026
Source: NVD

JupyterHub is software that allows one to create a multi-user server for Jupyter notebooks. Prior to version 5.4.4, an open redirect vulnerability in JupyterHub allows attackers to construct links which, when clicked, take users to the JupyterHub login page, after which they are sent to an arbitrary...

Vendor: jupyterhub
Product: jupyterhub
Published: Apr 03, 2026
Source: NVD
CVE-2026-27456 MEDIUM - 4.7

util-linux is a random collection of Linux utilities. Prior to version 2.41.4, a TOCTOU (Time-of-Check-Time-of-Use) vulnerability has been identified in the SUID binary /usr/bin/mount from util-linux. The mount binary, when setting up loop devices, validates the source file path with user privileges...

Vendor: util-linux
Product: util-linux
Published: Apr 03, 2026
Source: NVD
CVE-2026-27447 MEDIUM - 4.8

OpenPrinting CUPS is an open source printing system for Linux and other Unix-like operating systems. In versions 2.4.16 and prior, CUPS daemon (cupsd) contains an authorization bypass vulnerability due to case-insensitive username comparison during authorization checks. The vulnerability allows an u...

Vendor: OpenPrinting
Product: cups
Published: Apr 03, 2026
Source: NVD
CVE-2026-34755 MEDIUM - 6.5

vLLM is an inference and serving engine for large language models (LLMs). From 0.7.0 to before 0.19.0, the VideoMediaIO.load_base64() method at vllm/multimodal/media/video.py splits video/jpeg data URLs by comma to extract individual JPEG frames, but does not enforce a frame count limit. The num_fra...

Vendor: pip
Product: vllm
Published: Apr 03, 2026
Source: GitHub
CVE-2026-34753 MEDIUM - 5.4

vLLM is an inference and serving engine for large language models (LLMs). From 0.16.0 to before 0.19.0, a server-side request forgery (SSRF) vulnerability in download_bytes_from_url allows any actor who can control batch input JSON to make the vLLM batch runner issue arbitrary HTTP/HTTPS requests fr...

Vendor: pip
Product: vllm
Published: Apr 03, 2026
Source: GitHub
CVE-2026-34217 MEDIUM - 7.2

SandboxJS is a JavaScript sandboxing library. Prior to 0.8.36, a scope modification vulnerability exists in @nyariv/sandboxjs. The vulnerability allows untrusted sandboxed code to leak internal interpreter objects through the new operator, exposing sandbox scope objects in the scope hierarchy to unt...

Vendor: npm
Product: @nyariv/sandboxjs
Published: Apr 03, 2026
Source: GitHub
CVE-2026-34211 MEDIUM - 7.5

SandboxJS is a JavaScript sandboxing library. Prior to 0.8.36, the @nyariv/sandboxjs parser contains unbounded recursion in the restOfExp function and the lispify/lispifyExpr call chain. An attacker can crash any Node.js process that parses untrusted input by supplying deeply nested expressions (e.g...

Vendor: npm
Product: @nyariv/sandboxjs
Published: Apr 03, 2026
Source: GitHub
CVE-2026-34052 MEDIUM - 5.9

LTI JupyterHub Authenticator is a JupyterHub authenticator for LTI. Prior to version 1.6.3, the LTI 1.1 validator stores OAuth nonces in a class-level dictionary that grows without bounds. Nonces are added before signature validation, so an attacker with knowledge of a valid consumer key can send re...

Vendor: pip
Product: jupyterhub-ltiauthenticator
Published: Apr 03, 2026
Source: GitHub
CVE-2026-35559 MEDIUM - 6.5

Out-of-bounds write in the query processing components in Amazon Athena ODBC driver before 2.1.0.0 might allow a threat actor to crash the driver by using specially crafted data that is processed by the driver during query operations. To remediate this issue, users should upgrade to version 2.1.0.0...

Vendor: Amazon
Product: Amazon Athena ODBC driver
Published: Apr 03, 2026
Source: NVD
CVE-2026-34511 MEDIUM - 5.3

OpenClaw before 2026.4.2 reuses the PKCE verifier as the OAuth state parameter in the Gemini OAuth flow, exposing it through the redirect URL. Attackers who capture the redirect URL can obtain both the authorization code and PKCE verifier, defeating PKCE protection and enabling token redemption.

Vendor: OpenClaw
Product: OpenClaw
Published: Apr 03, 2026
Source: NVD
CVE-2026-32662 MEDIUM - 5.3

Development and test API endpoints are present that mirror production functionality.

Vendor: Gardyn
Product: Cloud API
Published: Apr 03, 2026
Source: NVD
CVE-2026-28767 MEDIUM - 5.3

A specific administrative endpoint notifications is accessible without proper authentication.

Vendor: Gardyn
Product: Cloud API
Published: Apr 03, 2026
Source: NVD
CVE-2026-26058 MEDIUM - 6.1

Zulip is an open-source team collaboration tool. From version 1.4.0 to before version 11.6, ./manage.py import reads arbitrary files from the server filesystem via path traversal in uploads/records.json. A crafted export tarball causes the server to copy any file the zulip user can read into the upl...

Vendor: zulip
Product: zulip
Published: Apr 03, 2026
Source: NVD
CVE-2026-25742 MEDIUM - 5.3

Zulip is an open-source team collaboration tool. Prior to version 11.6, Zulip is an open-source team collaboration tool. From version 1.4.0 to before version 11.6, even after spectator access (enable_spectator_access / WEB_PUBLIC_STREAMS_ENABLED) is disabled, attachments originating from web-public ...

Vendor: zulip
Product: zulip
Published: Apr 03, 2026
Source: NVD
CVE-2026-22662 MEDIUM - 4.3

prompts.chat prior to commit 1464475 contains a blind server-side request forgery vulnerability in the Wiro media generator that allows authenticated users to perform server-side fetches of user-controlled inputImageUrl parameters. Attackers can exploit this vulnerability by sending POST requests to...

Vendor: f
Product: prompts.chat
Published: Apr 03, 2026
Source: NVD
CVE-2026-5484 MEDIUM - 5.3

A weakness has been identified in BookStackApp BookStack up to 26.03. Affected is the function chapterToMarkdown of the file app/Exports/ExportFormatter.php of the component Chapter Export Handler. Executing a manipulation of the argument pages can lead to improper access controls. It is possible to...

Published: Apr 03, 2026
Source: NVD
CVE-2026-2625 MEDIUM - 4.0

A flaw was found in rust-rpm-sequoia. An attacker can exploit this vulnerability by providing a specially crafted Red Hat Package Manager (RPM) file. During the RPM signature verification process, this crafted file can trigger an error in the OpenPGP signature parsing code, leading to an uncondition...

Published: Apr 03, 2026
Source: NVD
CVE-2026-5476 MEDIUM - 4.6

A vulnerability was identified in NASA cFS up to 7.0.0 on 32-bit. Affected is the function CFE_TBL_ValidateCodecLoadSize of the file cfe/modules/tbl/fsw/src/cfe_tbl_passthru_codec.c. The manipulation leads to integer overflow. The complexity of an attack is rather high. The exploitability is told to...

Published: Apr 03, 2026
Source: NVD