Total CVEs

138,940

Critical Severity

3,615

High Severity

12,982

Last 7 Days

1,046
Quick preset (or use dates below)
Clear Filters
๐Ÿ“… Showing Year: 2026 (January 1 - December 31, 2026) View All Years โ†’
Showing 7,581 - 7,600 of 35,345 CVEs
CVE-2026-24195 HIGH - 7.1

NVIDIA Display Driver for Linux contains a vulnerability in UVM, where a user could cause improper input validation. A successful exploit of this vulnerability might lead to denial of service.

Vendor: NVIDIA
Product: Guest driver
Published: May 26, 2026
Source: NVD
CVE-2026-24194 HIGH - 7.8

NVIDIA Display Driver for Linux contains a vulnerability in a kernel mode layer handler, where a user could cause improper permission handling. A successful exploit of this vulnerability might lead to denial of service, escalation of privileges, information disclosure, data tampering, and code execu...

Vendor: NVIDIA
Product: GeForce, RTX, Quadro, NVS, Tesla, Guest driver
Published: May 26, 2026
Source: NVD
CVE-2026-24193 HIGH - 7.8

NVIDIA Display Driver for Windows and Linux contains a vulnerability where an attacker could cause an out-of-bounds write. A successful exploit of this vulnerability might lead to denial of service, escalation of privileges, information disclosure, data tampering, and code execution.

Vendor: NVIDIA
Product: GeForce, RTX, Quadro, NVS, Tesla
Published: May 26, 2026
Source: NVD
CVE-2026-24192 HIGH - 7.8

NVIDIA Display Driver for Linux contains a vulnerability where an attacker could cause an incorrect conversion between numeric types, leading to a heap buffer overflow. A successful exploit of this vulnerability might lead to denial of service, escalation of privileges, information disclosure, data ...

Vendor: NVIDIA
Product: GeForce, RTX, Quadro, NVS, Tesla, Virtual GPU Manager
Published: May 26, 2026
Source: NVD
CVE-2026-24191 HIGH - 7.8

NVIDIA Display Driver for Windows contains a vulnerability where an attacker could cause a time-of-check time-of-use issue. A successful exploit of this vulnerability might lead to denial of service, escalation of privileges, information disclosure, data tampering, and code execution.

Vendor: NVIDIA
Product: GeForce, RTX, Quadro, NVS, Tesla, Guest driver, Virtual GPU Manager
Published: May 26, 2026
Source: NVD
CVE-2026-24190 HIGH - 7.8

NVIDIA Display Driver for Windows and Linux contains a vulnerability in the kernel mode layer, where a user could cause improper access to GPU resources. A successful exploit of this vulnerability might lead to denial of service, escalation of privileges, information disclosure, data tampering, and ...

Vendor: NVIDIA
Product: GeForce, RTX, Quadro, NVS, Tesla
Published: May 26, 2026
Source: NVD
CVE-2026-24187 HIGH - 8.8

NVIDIA Display Driver for Linux contains a vulnerability where an attacker could cause a use-after-free. A successful exploit of this vulnerability might lead to denial of service, escalation of privileges, information disclosure, data tampering, and code execution.

Vendor: NVIDIA
Product: GeForce, RTX, Quadro, NVS, Tesla, Guest driver, Virtual GPU Manager
Published: May 26, 2026
Source: NVD
CVE-2026-24182 MEDIUM - 6.5

NVIDIA Display Driver for Windows and Linux contains a vulnerability where an attacker could leak held driver locks. A successful exploit of this vulnerability might lead to denial of service.

Vendor: NVIDIA
Product: GeForce, RTX, Quadro, NVS, Tesla, Guest driver, Virtual GPU Manager, NVIDIA RTX, Quadro, NVS
Published: May 26, 2026
Source: NVD
CVE-2025-33221 MEDIUM - 4.4

NVIDIA Display Driver for Windows and Linux contains a vulnerability in the kernel driver, where a user could cause an incorrect permission assignment for a critical resource. A successful exploit of this vulnerability might lead to data tampering and denial of service.

Vendor: NVIDIA
Product: GeForce, RTX, Quadro, NVS, Tesla, Guest driver
Published: May 26, 2026
Source: NVD
CVE-2026-9565 MEDIUM - 6.3

A vulnerability was determined in haojing8312 WorkClaw up to 0.6.4. This affects the function is_dangerous of the file apps/runtime/src-tauri/src/agent/tools/bash.rs of the component Blacklist Handler. Executing a manipulation can lead to os command injection. The attack can be executed remotely. Th...

Published: May 26, 2026
Source: NVD
CVE-2026-9564 LOW - 2.4

A vulnerability was found in SourceCodester/oretnom23 Hospitals Patient Records Management System 1.0. The impacted element is an unknown function of the file /admin/?page=patients/view_patient. Performing a manipulation of the argument Remarks results in cross site scripting. Remote exploitation of...

Published: May 26, 2026
Source: NVD
CVE-2026-9562 HIGH - 7.3

A vulnerability has been found in sambitraj STUDENT-MANAGEMENT-SYSTEM up to 56ba287f2e9031523ccb4244cb6e3fe530e4e5d5. The affected element is an unknown function of the component Dashboard. Such manipulation leads to improper access controls. The attack may be launched remotely. The exploit has been...

Published: May 26, 2026
Source: NVD
CVE-2026-8852 MEDIUM - 6.2

IBM HTTP Server 8.5, and 9.0 is vulnerable to denial of service via the optional module mod_fastcgi module.

Vendor: ibm
Product: http_server
Published: May 26, 2026
Source: NVD
CVE-2026-8850 HIGH - 7.5

IBM HTTP Server 8.5, and 9.0 is vulnerable to denial of service via the optional module mod_ibm_upload.

Vendor: ibm
Product: http_server
Published: May 26, 2026
Source: NVD
CVE-2026-48905 MEDIUM - 6.1

Lack of input filtering leads to an XSS vector in the HTML filter code.

Vendor: Joomla! Project
Product: Joomla! Framework Filter package
Published: May 26, 2026
Source: NVD
CVE-2026-48904 CRITICAL - 9.8

An improper access check allows privelege escalation through the com_users group editing webservice endpoint.

Vendor: Joomla! Project
Product: Joomla! CMS
Published: May 26, 2026
Source: NVD
CVE-2026-48903 MEDIUM - 6.1

Inadequate content filtering within the checkAttribute methods leads to XSS vulnerabilities in various components.

Vendor: Joomla! Project
Product: Joomla! Framework Filter package
Published: May 26, 2026
Source: NVD
CVE-2026-48902 CRITICAL - 9.8

The password and username reset features created plain http links for https connections if the "Force SSL" flag wasn't explicitly set.

Vendor: Joomla! Project
Product: Joomla! CMS
Published: May 26, 2026
Source: NVD
CVE-2026-48901 HIGH - 7.5

The InputFilter::getInstance() method omitted a security sensitive parameter from the instance cache key.

Vendor: Joomla! Project
Product: Joomla! CMS
Published: May 26, 2026
Source: NVD
CVE-2026-48900 MEDIUM - 4.3

An improper access check allowed low privileged users to edit the task types of existing scheduler tasks.

Vendor: Joomla! Project
Product: Joomla! CMS
Published: May 26, 2026
Source: NVD