Total CVEs

139,456

Critical Severity

3,644

High Severity

13,084

Last 7 Days

1,230
Quick preset (or use dates below)
Clear Filters
📅 Showing Year: 2026 (January 1 - December 31, 2026) View All Years →
Showing 7,581 - 7,600 of 12,781 CVEs
CVE-2026-27650 HIGH - 8.8

OS Command Injection vulnerability exists in BUFFALO Wi-Fi router products. If this vulnerability is exploited, an arbitrary OS command may be executed on the products.

Vendor: BUFFALO INC.
Product: BUFFALO Wi-Fi router products
Published: Mar 27, 2026
Source: NVD
CVE-2026-22744 HIGH - 7.5

In RedisFilterExpressionConverter of spring-ai-redis-store, when a user-controlled string is passed as a filter value for a TAG field, stringValue() inserts the value directly into the @field:{VALUE} RediSearch TAG block without escaping characters.This issue affects Spring AI: from 1.0.0 before 1.0...

Vendor: Spring
Product: Spring AI
Published: Mar 27, 2026
Source: NVD
CVE-2026-22743 HIGH - 7.5

Spring AI's spring-ai-neo4j-store contains a Cypher injection vulnerability in Neo4jVectorFilterExpressionConverter. When a user-controlled string is passed as a filter expression key in Neo4jVectorFilterExpressionConverter of spring-ai-neo4j-store, doKey() embeds the key into a backtick-delimi...

Vendor: Spring
Product: Spring AI
Published: Mar 27, 2026
Source: NVD
CVE-2026-22742 HIGH - 8.6

Spring AI's spring-ai-bedrock-converse contains a Server-Side Request Forgery (SSRF) vulnerability in BedrockProxyChatModel when processing multimodal messages that include user-supplied media URLs. Insufficient validation of those URLs allows an attacker to induce the server to issue HTTP requ...

Vendor: Spring
Product: Spring AI
Published: Mar 27, 2026
Source: NVD
CVE-2026-4910 HIGH - 7.3

A security vulnerability has been detected in Shenzhen Ruiming Technology Streamax Crocus up to 1.3.44. Affected is an unknown function of the file /RemoteFormat.do of the component Endpoint. Such manipulation of the argument State leads to sql injection. It is possible to launch the attack remotely...

Published: Mar 27, 2026
Source: NVD
CVE-2026-4908 HIGH - 7.3

A security flaw has been discovered in code-projects Simple Laundry System 1.0. This affects an unknown function of the file /modstaffinfo.php of the component Parameter Handler. The manipulation of the argument userid results in sql injection. The attack may be performed from remote. The exploit ha...

Vendor: code-projects
Product: simple_laundry_system
Published: Mar 27, 2026
Source: NVD
CVE-2026-4906 HIGH - 8.8

A vulnerability was determined in Tenda AC5 15.03.06.47. The affected element is the function decodePwd of the file /goform/WizardHandle of the component POST Request Handler. Executing a manipulation of the argument WANT/WANS can lead to stack-based buffer overflow. The attack can be executed remot...

Vendor: tenda
Product: ac5_firmware
Published: Mar 27, 2026
Source: NVD
CVE-2026-33935 HIGH - 7.5

MyTube is a self-hosted downloader and player for several video websites Prior to version 1.8.72, an unauthenticated attacker can lock out administrator and visitor accounts from password-based authentication by triggering failed login attempts. The application exposes three password verification en...

Vendor: franklioxygen
Product: MyTube
Published: Mar 27, 2026
Source: NVD
CVE-2026-33745 HIGH - 7.4

cpp-httplib is a C++11 single-file header-only cross platform HTTP/HTTPS library. Prior to 0.39.0, the cpp-httplib HTTP client forwards stored Basic Auth, Bearer Token, and Digest Auth credentials to arbitrary hosts when following cross-origin HTTP redirects (301/302/307/308). A malicious or comprom...

Vendor: yhirose
Product: cpp-httplib
Published: Mar 27, 2026
Source: NVD
CVE-2026-33735 HIGH - 8.8

MyTube is a self-hosted downloader and player for several video websites Prior to version 1.8.69, an authorization bypass in the `/api/settings/import-database` endpoint allows attackers with low-privilege credentials to upload and replace the application's SQLite database entirely, leading to ...

Vendor: franklioxygen
Product: MyTube
Published: Mar 27, 2026
Source: NVD
CVE-2026-33725 HIGH - 7.2

Metabase is an open source business intelligence and embedded analytics tool. In Metabase Enterprise prior to versions 1.54.22, 1.55.22, 1.56.22, 1.57.16, 1.58.10, and 1.59.4, authenticated admins on Metabase Enterprise Edition can achieve Remote Code Execution (RCE) and Arbitrary File Read via the ...

Vendor: metabase
Product: metabase
Published: Mar 27, 2026
Source: NVD
CVE-2026-4905 HIGH - 8.8

A vulnerability was found in Tenda AC5 15.03.06.47. Impacted is the function formWifiWpsOOB of the file /goform/WifiWpsOOB of the component POST Request Handler. Performing a manipulation of the argument index results in stack-based buffer overflow. Remote exploitation of the attack is possible. The...

Vendor: tenda
Product: ac5_firmware
Published: Mar 27, 2026
Source: NVD
CVE-2026-4904 HIGH - 8.8

A vulnerability has been found in Tenda AC5 15.03.06.47. This issue affects the function formSetCfm of the file /goform/setcfm of the component POST Request Handler. Such manipulation of the argument funcpara1 leads to stack-based buffer overflow. The attack may be launched remotely. The exploit has...

Vendor: tenda
Product: ac5_firmware
Published: Mar 27, 2026
Source: NVD
CVE-2026-33898 HIGH - 8.8

Incus is a system container and virtual machine manager. Prior to version 6.23.0, the web server spawned by `incus webui` incorrectly validates the authentication token such that an invalid value will be accepted. `incus webui` runs a local web server on a random localhost port. For authentication, ...

Vendor: lxc
Product: incus
Published: Mar 27, 2026
Source: NVD
CVE-2026-33697 HIGH - 7.5

Cocos AI is a confidential computing system for AI. The current implementation of attested TLS (aTLS) in CoCoS is vulnerable to a relay attack affecting all versions from v0.4.0 through v0.8.2. This vulnerability is present in both the AMD SEV-SNP and Intel TDX deployment targets supported by CoCoS....

Vendor: ultravioletrs
Product: cocos
Published: Mar 27, 2026
Source: NVD
CVE-2026-28788 HIGH - 7.1

Open WebUI is a self-hosted artificial intelligence platform designed to operate entirely offline. Prior to version 0.8.6, any authenticated user can overwrite any file's content by ID through the `POST /api/v1/retrieval/process/files/batch` endpoint. The endpoint performs no ownership check, s...

Vendor: open-webui
Product: open-webui
Published: Mar 27, 2026
Source: NVD
CVE-2026-27893 HIGH - 8.8

vLLM is an inference and serving engine for large language models (LLMs). Starting in version 0.10.1 and prior to version 0.18.0, two model implementation files hardcode `trust_remote_code=True` when loading sub-components, bypassing the user's explicit `--trust-remote-code=False` security opt-...

Vendor: vllm-project
Product: vllm
Published: Mar 27, 2026
Source: NVD
CVE-2026-4903 HIGH - 8.8

A flaw has been found in Tenda AC5 15.03.06.47. This vulnerability affects the function formQuickIndex of the file /goform/QuickIndex of the component POST Request Handler. This manipulation of the argument PPPOEPassword causes stack-based buffer overflow. The attack may be initiated remotely. The e...

Vendor: tenda
Product: ac5_firmware
Published: Mar 26, 2026
Source: NVD
CVE-2026-4902 HIGH - 8.8

A vulnerability was detected in Tenda AC5 15.03.06.47. This affects the function fromAddressNat of the file /goform/addressNat of the component POST Request Handler. The manipulation of the argument page results in stack-based buffer overflow. The attack can be launched remotely. The exploit is now ...

Vendor: tenda
Product: ac5_firmware
Published: Mar 26, 2026
Source: NVD
CVE-2026-34352 HIGH - 8.5

In TigerVNC before 1.16.2, Image.cxx in x0vncserver allows other users to observe or manipulate the screen contents, or cause an application crash, because of incorrect permissions.

Vendor: TigerVNC
Product: TigerVNC
Published: Mar 26, 2026
Source: NVD