Total CVEs

139,456

Critical Severity

3,644

High Severity

13,084

Last 7 Days

1,230
Quick preset (or use dates below)
Clear Filters
๐Ÿ“… Showing Year: 2026 (January 1 - December 31, 2026) View All Years โ†’
Showing 7,541 - 7,560 of 12,781 CVEs
CVE-2026-33941 HIGH - 8.3

Handlebars provides the power necessary to let users build semantic templates. In versions 4.0.0 through 4.7.8, the Handlebars CLI precompiler (`bin/handlebars` / `lib/precompiler.js`) concatenates user-controlled strings โ€” template file names and several CLI options โ€” directly into the JavaScript i...

Vendor: npm
Product: handlebars
Published: Mar 27, 2026
Source: GitHub
CVE-2026-33940 HIGH - 8.1

Handlebars provides the power necessary to let users build semantic templates. In versions 4.0.0 through 4.7.8, a crafted object placed in the template context can bypass all conditional guards in `resolvePartial()` and cause `invokePartial()` to return `undefined`. The Handlebars runtime then treat...

Vendor: npm
Product: handlebars
Published: Mar 27, 2026
Source: GitHub
CVE-2026-33939 HIGH - 7.5

Handlebars provides the power necessary to let users build semantic templates. In versions 4.0.0 through 4.7.8, when a Handlebars template contains decorator syntax referencing an unregistered decorator (e.g. `{{*n}}`), the compiled template calls `lookupProperty(decorators, "n")`, which r...

Vendor: npm
Product: handlebars
Published: Mar 27, 2026
Source: GitHub
CVE-2026-33938 HIGH - 8.1

Handlebars provides the power necessary to let users build semantic templates. In versions 4.0.0 through 4.7.8, the `@partial-block` special variable is stored in the template data context and is reachable and mutable from within a template via helpers that accept arbitrary objects. When a helper ov...

Vendor: npm
Product: handlebars
Published: Mar 27, 2026
Source: GitHub
CVE-2026-4965 HIGH - 7.3

A vulnerability was detected in letta-ai letta 0.16.4. This issue affects the function resolve_type of the file letta/functions/ast_parsers.py of the component Incomplete Fix CVE-2025-6101. Performing a manipulation results in improper neutralization of directives in dynamically evaluated code. The ...

Published: Mar 27, 2026
Source: NVD
CVE-2026-33979 HIGH - 8.2

Express XSS Sanitizer is Express 4.x and 5.x middleware which sanitizes user input data (in req.body, req.query, req.headers and req.params) to prevent Cross Site Scripting (XSS) attack. A vulnerability has been identified in versions prior to 2.0.2 where restrictive sanitization configurations are ...

Vendor: npm
Product: express-xss-sanitizer
Published: Mar 27, 2026
Source: GitHub
CVE-2026-34040 HIGH - 8.8

Moby is an open source container framework. Prior to version 29.3.1, a security vulnerability has been detected that allows attackers to bypass authorization plugins (AuthZ). This issue has been patched in version 29.3.1.

Vendor: go
Product: github.com/moby/moby
Published: Mar 27, 2026
Source: GitHub
CVE-2026-4962 HIGH - 7.0

A security flaw has been discovered in UltraVNC up to 1.6.4.0. Affected by this issue is some unknown functionality in the library version.dll of the component Service. The manipulation results in uncontrolled search path. The attack needs to be approached locally. This attack is characterized by hi...

Published: Mar 27, 2026
Source: NVD
CVE-2026-4961 HIGH - 8.8

A vulnerability was identified in Tenda AC6 15.03.05.16. Affected by this vulnerability is the function formQuickIndex of the file /goform/QuickIndex of the component POST Request Handler. The manipulation of the argument PPPOEPassword leads to stack-based buffer overflow. The attack is possible to ...

Vendor: tenda
Product: ac6_firmware
Published: Mar 27, 2026
Source: NVD
CVE-2026-4960 HIGH - 8.8

A vulnerability was determined in Tenda AC6 15.03.05.16. Affected is the function fromWizardHandle of the file /goform/WizardHandle of the component POST Request Handler. Executing a manipulation of the argument WANT/WANS can lead to stack-based buffer overflow. The attack can be executed remotely. ...

Vendor: tenda
Product: ac6_firmware
Published: Mar 27, 2026
Source: NVD
CVE-2026-30576 HIGH - 7.5

A Business Logic vulnerability exists in SourceCodester Pharmacy Product Management System 1.0 in the add-stock.php file. The application fails to validate the "txtprice" and "txttotalcost" parameters during stock entry, allowing negative financial values to be submitted. This le...

Vendor: senior-walter
Product: web-based_pharmacy_product_management_system
Published: Mar 27, 2026
Source: NVD
CVE-2026-30575 HIGH - 7.5

A Business Logic vulnerability exists in SourceCodester Pharmacy Product Management System 1.0 in the add-stock.php file. The application fails to validate the "txtqty" parameter during stock entry, allowing negative values to be processed. This causes the system to decrease the inventory ...

Vendor: senior-walter
Product: web-based_pharmacy_product_management_system
Published: Mar 27, 2026
Source: NVD
CVE-2026-30574 HIGH - 7.5

A Business Logic vulnerability exists in SourceCodester Pharmacy Product Management System 1.0 in the add-sales.php file. The application fails to verify if the requested sales quantity (txtqty) exceeds the available stock level. An attacker can manipulate the request to purchase a quantity that is ...

Vendor: senior-walter
Product: web-based_pharmacy_product_management_system
Published: Mar 27, 2026
Source: NVD
CVE-2026-28369 HIGH - 8.7

A flaw was found in Undertow. When Undertow receives an HTTP request where the first header line starts with one or more spaces, it incorrectly processes the request by stripping these leading spaces. This behavior, which violates HTTP standards, can be exploited by a remote attacker to perform requ...

Vendor: redhat
Product: build_of_apache_camel_-_hawtio
Published: Mar 27, 2026
Source: NVD
CVE-2026-28368 HIGH - 8.7

A flaw was found in Undertow. This vulnerability allows a remote attacker to construct specially crafted requests where header names are parsed differently by Undertow compared to upstream proxies. This discrepancy in header interpretation can be exploited to launch request smuggling attacks, potent...

Vendor: redhat
Product: build_of_apache_camel_-_hawtio
Published: Mar 27, 2026
Source: NVD
CVE-2026-28367 HIGH - 8.7

A flaw was found in Undertow. A remote attacker can exploit this vulnerability by sending `\r\r\r` as a header block terminator. This can be used for request smuggling with certain proxy servers, such as older versions of Apache Traffic Server and Google Cloud Classic Application Load Balancer, pote...

Published: Mar 27, 2026
Source: NVD
CVE-2025-15381 HIGH - 8.1

In the latest version of mlflow/mlflow, when the `basic-auth` app is enabled, tracing and assessment endpoints are not protected by permission validators. This allows any authenticated user, including those with `NO_PERMISSIONS` on the experiment, to read trace information and create assessments for...

Vendor: mlflow
Product: mlflow/mlflow
Published: Mar 27, 2026
Source: NVD
CVE-2026-4959 HIGH - 7.3

A vulnerability was found in OpenBMB XAgent 1.0.0. This impacts the function check_user of the file XAgentServer/application/websockets/share.py of the component ShareServer WebSocket Endpoint. Performing a manipulation of the argument interaction_id results in missing authentication. Remote exploit...

Published: Mar 27, 2026
Source: NVD
CVE-2026-30534 HIGH - 8.3

A SQL Injection vulnerability exists in SourceCodester Online Food Ordering System v1.0 in admin/manage_category.php via the "id" parameter.

Vendor: oretnom23
Product: online_food_ordering_system
Published: Mar 27, 2026
Source: NVD
CVE-2026-30531 HIGH - 8.8

A SQL Injection vulnerability exists in SourceCodester Online Food Ordering System v1.0 in the Actions.php file (specifically the save_category action). The application fails to properly sanitize user input supplied to the "name" parameter. This allows an authenticated attacker to inject m...

Vendor: oretnom23
Product: online_food_ordering_system
Published: Mar 27, 2026
Source: NVD