Total CVEs

139,456

Critical Severity

3,644

High Severity

13,084

Last 7 Days

1,230
Quick preset (or use dates below)
Clear Filters
📅 Showing Year: 2026 (January 1 - December 31, 2026) View All Years →
Showing 7,601 - 7,620 of 12,781 CVEs
CVE-2026-33542 HIGH - 4.8

Incus is a system container and virtual machine manager. Prior to version 6.23.0, a lack of validation of the image fingerprint when downloading from simplestreams image servers opens the door to image cache poisoning and under very narrow circumstances exposes other tenants to running attacker cont...

Vendor: lxc
Product: incus
Published: Mar 26, 2026
Source: NVD
CVE-2026-33943 HIGH - 8.8

Happy DOM is a JavaScript implementation of a web browser without its graphical user interface. In versions 15.10.0 through 20.8.7, a code injection vulnerability in `ECMAScriptModuleCompiler` allows an attacker to achieve Remote Code Execution (RCE) by injecting arbitrary JavaScript expressions ins...

Vendor: npm
Product: happy-dom
Published: Mar 26, 2026
Source: GitHub
CVE-2026-3650 HIGH - 7.5

A memory leak exists in the Grassroots DICOM library (GDCM). The bug occurs when parsing malformed DICOM files with non-standard VR types in file meta information. The vulnerability leads to vast memory allocations and resource depletion, triggering a denial-of-service condition. A maliciously craft...

Published: Mar 26, 2026
Source: NVD
CVE-2026-33664 HIGH - 7.3

Kestra is an open-source, event-driven orchestration platform Versions up to and including 1.3.3 render user-supplied flow YAML metadata fields — description, inputs[].displayName, inputs[].description — through the Markdown.vue component instantiated with html: true. The resulting HTML is injected ...

Vendor: kestra-io
Product: kestra
Published: Mar 26, 2026
Source: NVD
CVE-2026-28377 HIGH - 7.5

A vulnerability in Grafana Tempo exposes the S3 SSE-C encryption key in plaintext through the /status/config endpoint, potentially allowing unauthorized users to obtain the key used to encrypt trace data stored in S3. Thanks to william_goodfellow for reporting this vulnerability.

Vendor: Grafana
Product: Tempo
Published: Mar 26, 2026
Source: NVD
CVE-2025-12805 HIGH - 8.1

A flaw was found in Red Hat OpenShift AI (RHOAI) llama-stack-operator. This vulnerability allows unauthorized access to Llama Stack services deployed in other namespaces via direct network requests, because no NetworkPolicy restricts access to the llama-stack service endpoint. As a result, a user in...

Vendor: Red Hat
Product: Red Hat OpenShift AI 2.25, Red Hat OpenShift AI (RHOAI)
Published: Mar 26, 2026
Source: NVD
CVE-2026-33906 HIGH - 7.2

Ella Core is a 5G core designed for private networks. Prior to version 1.7.0, the NetworkManager role was granted backup and restore permission. The restore endpoint accepted any valid SQLite file without verifying its contents. A NetworkManager could replace the production database with a tampered ...

Vendor: go
Product: github.com/ellanetworks/core
Published: Mar 26, 2026
Source: GitHub
CVE-2026-33896 HIGH - 7.4

Forge (also called `node-forge`) is a native implementation of Transport Layer Security in JavaScript. Prior to version 1.4.0, `pki.verifyCertificateChain()` does not enforce RFC 5280 basicConstraints requirements when an intermediate certificate lacks both the `basicConstraints` and `keyUsage` exte...

Vendor: npm
Product: node-forge
Published: Mar 26, 2026
Source: GitHub
CVE-2026-33895 HIGH - 7.5

Forge (also called `node-forge`) is a native implementation of Transport Layer Security in JavaScript. Prior to version 1.4.0, Ed25519 signature verification accepts forged non-canonical signatures where the scalar S is not reduced modulo the group order (`S >= L`). A valid signature and its `S +...

Vendor: npm
Product: node-forge
Published: Mar 26, 2026
Source: GitHub
CVE-2026-33894 HIGH - 7.5

Forge (also called `node-forge`) is a native implementation of Transport Layer Security in JavaScript. Prior to version 1.4.0, RSASSA PKCS#1 v1.5 signature verification accepts forged signatures for low public exponent keys (e=3). Attackers can forge signatures by stuffing “garbage” bytes within the...

Vendor: npm
Product: node-forge
Published: Mar 26, 2026
Source: GitHub
CVE-2026-33891 HIGH - 7.5

Forge (also called `node-forge`) is a native implementation of Transport Layer Security in JavaScript. Prior to version 1.4.0, a Denial of Service (DoS) vulnerability exists in the node-forge library due to an infinite loop in the BigInteger.modInverse() function (inherited from the bundled jsbn lib...

Vendor: npm
Product: node-forge
Published: Mar 26, 2026
Source: GitHub
CVE-2026-4933 HIGH - 7.5

Incorrect Authorization vulnerability in Drupal Unpublished Node Permissions allows Forceful Browsing.This issue affects Unpublished Node Permissions: from 0.0.0 before 1.7.0.

Vendor: jeroenb
Product: unpublished_node_permissions
Published: Mar 26, 2026
Source: NVD
CVE-2026-3622 HIGH - 7.5

The vulnerability exists in the UPnP component of TL-WR841N v14, where improper input validation leads to an out-of-bounds read, potentially causing a crash of the UPnP service. Successful exploitation can cause the UPnP service to crash, resulting in a Denial-of-Service condition.  This vulnerab...

Vendor: tp-link
Product: tl-wr841n_firmware
Published: Mar 26, 2026
Source: NVD
CVE-2026-3573 HIGH - 7.5

Incorrect Authorization vulnerability in Drupal AI (Artificial Intelligence) allows Resource Injection.This issue affects AI (Artificial Intelligence): from 0.0.0 before 1.1.11, from 1.2.0 before 1.2.12.

Vendor: artificial_intelligence_project
Product: artificial_intelligence
Published: Mar 26, 2026
Source: NVD
CVE-2026-33645 HIGH - 7.1

Fireshare facilitates self-hosted media and link sharing. In version 1.5.1, an authenticated path traversal vulnerability in Fireshare’s chunked upload endpoint allows an attacker to write arbitrary files outside the intended upload directory. The `checkSum` multipart field is used directly in files...

Vendor: ShaneIsrael
Product: fireshare
Published: Mar 26, 2026
Source: NVD
CVE-2026-33631 HIGH - 8.7

ClearanceKit intercepts file-system access events on macOS and enforces per-process access policies. In versions on the 4.1 branch and earlier, the opfilter Endpoint Security system extension enforced file access policy exclusively by intercepting ES_EVENT_TYPE_AUTH_OPEN events. Seven additional fil...

Vendor: craigjbass
Product: clearancekit
Published: Mar 26, 2026
Source: NVD
CVE-2026-33530 HIGH - 7.7

InvenTree is an Open Source Inventory Management System. Prior to version 1.2.6, certain API endpoints associated with bulk data operations can be hijacked to exfiltrate sensitive information from the database. The bulk operation API endpoints (e.g. `/api/part/`, `/api/stock/`, `/api/order/so/alloca...

Vendor: inventree
Product: InvenTree
Published: Mar 26, 2026
Source: NVD
CVE-2026-32287 HIGH - 7.5

Boolean XPath expressions that evaluate to true can cause an infinite loop in logicalQuery.Select, leading to 100% CPU usage. This can be triggered by top-level selectors such as "1=1" or "true()".

Vendor: github.com/antchfx/xpath
Product: github.com/antchfx/xpath
Published: Mar 26, 2026
Source: NVD
CVE-2026-32286 HIGH - 7.5

The DataRow.Decode function fails to properly validate field lengths. A malicious or compromised PostgreSQL server can send a DataRow message with a negative field length, causing a slice bounds out of range panic.

Vendor: github.com/jackc/pgproto3/v2
Product: github.com/jackc/pgproto3/v2
Published: Mar 26, 2026
Source: NVD
CVE-2026-32285 HIGH - 7.5

The Delete function fails to properly validate offsets when processing malformed JSON input. This can lead to a negative slice index and a runtime panic, allowing a denial of service attack.

Vendor: github.com/buger/jsonparser
Product: github.com/buger/jsonparser
Published: Mar 26, 2026
Source: NVD