Total CVEs

140,426

Critical Severity

3,747

High Severity

13,550

Last 7 Days

1,488
Quick preset (or use dates below)
Clear Filters
Showing 7,701 - 7,720 of 13,550 CVEs
CVE-2026-32929 HIGH - 7.8

V-SFT versions 6.2.10.0 and prior contain an out-of-bounds read in VS6ComFile!get_macro_mem_COM. Opening a crafted V7 file may lead to information disclosure from the affected product.

Vendor: FUJI ELECTRIC CO., LTD. / Hakko Electronics Co., Ltd.
Product: V-SFT
Published: Apr 01, 2026
Source: NVD
CVE-2026-32928 HIGH - 7.8

V-SFT versions 6.2.10.0 and prior contain a stack-based buffer overflow in VS6ComFile!CSaveData::_conv_AnimationItem. Opening a crafted V7 file may lead to arbitrary code execution on the affected product.

Vendor: FUJI ELECTRIC CO., LTD. / Hakko Electronics Co., Ltd.
Product: V-SFT
Published: Apr 01, 2026
Source: NVD
CVE-2026-32927 HIGH - 7.8

V-SFT versions 6.2.10.0 and prior contain an out-of-bounds read vulnerability in VS6MemInIF!set_temp_type_default. Opening a crafted V7 file may lead to information disclosure from the affected product.

Vendor: FUJI ELECTRIC CO., LTD. / Hakko Electronics Co., Ltd.
Product: V-SFT
Published: Apr 01, 2026
Source: NVD
CVE-2026-32926 HIGH - 7.8

V-SFT versions 6.2.10.0 and prior contain an out-of-bounds read vulnerability in VS6ComFile!load_link_inf. Opening a crafted V7 file may lead to information disclosure from the affected product.

Vendor: FUJI ELECTRIC CO., LTD. / Hakko Electronics Co., Ltd.
Product: V-SFT
Published: Apr 01, 2026
Source: NVD
CVE-2026-32925 HIGH - 7.8

V-SFT versions 6.2.10.0 and prior contain a stack-based buffer overflow in VS6ComFile!CV7BaseMap::WriteV7DataToRom. Opening a crafted V7 file may lead to arbitrary code execution on the affected product.

Vendor: FUJI ELECTRIC CO., LTD. / Hakko Electronics Co., Ltd.
Product: V-SFT
Published: Apr 01, 2026
Source: NVD
CVE-2026-34752 HIGH - 7.5

Haraka is a Node.js mail server. Prior to version 3.1.4, sending an email with __proto__: as a header name crashes the Haraka worker process. This issue has been patched in version 3.1.4.

Vendor: npm
Product: Haraka
Published: Apr 01, 2026
Source: GitHub
CVE-2026-34728 HIGH - 8.7

phpMyFAQ is an open source FAQ web application. Prior to version 4.1.1, the MediaBrowserController::index() method handles file deletion for the media browser. When the fileRemove action is triggered, the user-supplied name parameter is concatenated with the base upload directory path without any pa...

Vendor: composer
Product: phpmyfaq/phpmyfaq
Published: Apr 01, 2026
Source: GitHub
CVE-2026-34725 HIGH - 8.3

DbGate is cross-platform database manager. From version 7.0.0 to before version 7.1.5, a stored XSS vulnerability exists in DbGate because attacker-controlled SVG icon strings are rendered as raw HTML without sanitization. In the web UI this allows script execution in another user's browser; in...

Vendor: npm
Product: dbgate-web
Published: Apr 01, 2026
Source: GitHub

Poetry is a dependency manager for Python. From version 1.4.0 to before version 2.3.3, a crafted wheel can contain ../ paths that Poetry writes to disk without containment checks, allowing arbitrary file write with the privileges of the Poetry process. It is reachable from untrusted package artifact...

Vendor: pip
Product: poetry
Published: Apr 01, 2026
Source: GitHub
CVE-2026-34572 HIGH - 8.8

CI4MS is a CodeIgniter 4-based CMS skeleton that delivers a production-ready, modular architecture with RBAC authorization and theme support. Prior to version 0.31.0.0, the application fails to immediately revoke active user sessions when an account is deactivated. Due to a logic flaw in the backend...

Vendor: ci4-cms-erp
Product: ci4ms
Published: Apr 01, 2026
Source: NVD
CVE-2026-34570 HIGH - 8.8

CI4MS is a CodeIgniter 4-based CMS skeleton that delivers a production-ready, modular architecture with RBAC authorization and theme support. Prior to version 0.31.0.0, the application fails to immediately revoke active user sessions when an account is deleted. Due to a logic flaw in the backend des...

Vendor: ci4-cms-erp
Product: ci4ms
Published: Apr 01, 2026
Source: NVD
CVE-2026-34524 HIGH - 8.3

SillyTavern is a locally installed user interface that allows users to interact with text generation large language models, image generation engines, and text-to-speech voice models. Prior to version 1.17.0, a path traversal vulnerability in chat endpoints allows an authenticated attacker to read an...

Vendor: npm
Product: sillytavern
Published: Apr 01, 2026
Source: GitHub
CVE-2026-34522 HIGH - 8.1

SillyTavern is a locally installed user interface that allows users to interact with text generation large language models, image generation engines, and text-to-speech voice models. Prior to version 1.17.0, a path traversal vulnerability in /api/chats/import allows an authenticated attacker to writ...

Vendor: npm
Product: sillytavern
Published: Apr 01, 2026
Source: GitHub
CVE-2026-4101 HIGH - 8.1

IBM Verify Identity Access Container 11.0 through 11.0.2 and IBM Security Verify Access Container 10.0 through 10.0.9.1 and IBM Verify Identity Access 11.0 through 11.0.2 and IBM Security Verify Access 10.0 through 10.0.9.1 under certain load conditions could allow an attacker to bypass authenticati...

Vendor: ibm
Product: security_verify_access
Published: Apr 01, 2026
Source: NVD
CVE-2026-34545 HIGH - 7.3

OpenEXR provides the specification and reference implementation of the EXR file format, an image storage format for the motion picture industry. From version 3.4.0 to before version 3.4.7, an attacker providing a crafted .exr file with HTJ2K compression and a channel width of 32768 can write control...

Vendor: AcademySoftwareFoundation
Product: openexr
Published: Apr 01, 2026
Source: NVD
CVE-2026-34544 HIGH - 7.3

OpenEXR provides the specification and reference implementation of the EXR file format, an image storage format for the motion picture industry. From version 3.4.0 to before version 3.4.8, a crafted B44 or B44A EXR file can cause an out-of-bounds write in any application that decodes it via exr_deco...

Vendor: AcademySoftwareFoundation
Product: openexr
Published: Apr 01, 2026
Source: NVD
CVE-2026-34543 HIGH - 7.5

OpenEXR provides the specification and reference implementation of the EXR file format, an image storage format for the motion picture industry. From version 3.4.0 to before version 3.4.8, sensitive information from heap memory may be leaked through the decoded pixel data (information disclosure). T...

Vendor: AcademySoftwareFoundation
Product: openexr
Published: Apr 01, 2026
Source: NVD
CVE-2026-1345 HIGH - 7.3

IBM Verify Identity Access Container 11.0 through 11.0.2 and IBM Security Verify Access Container 10.0 through 10.0.9.1 and IBM Verify Identity Access 11.0 through 11.0.2 and IBM Security Verify Access 10.0 through 10.0.9.1 could allow an unauthenticated user to execute arbitrary commands as lower u...

Vendor: ibm
Product: security_verify_access
Published: Apr 01, 2026
Source: NVD
CVE-2026-34742 HIGH - 8.1

The Go MCP SDK used Go's standard encoding/json. Prior to version 1.4.0, the Model Context Protocol (MCP) Go SDK does not enable DNS rebinding protection by default for HTTP-based servers. When an HTTP-based MCP server is run on localhost without authentication with StreamableHTTPHandler or SSE...

Vendor: go
Product: github.com/modelcontextprotocol/go-sdk
Published: Apr 01, 2026
Source: GitHub
CVE-2026-34581 HIGH - 8.1

goshs is a SimpleHTTPServer written in Go. From version 1.1.0 to before version 2.0.0-beta.2, when using the Share Token it is possible to bypass the limited selected file download with all the gosh functionalities, including code exec. This issue has been patched in version 2.0.0-beta.2.

Vendor: go
Product: github.com/patrickhener/goshs
Published: Apr 01, 2026
Source: GitHub