Total CVEs

138,170

Critical Severity

3,538

High Severity

12,685

Last 7 Days

1,967
Quick preset (or use dates below)
Clear Filters
πŸ“… Showing Year: 2026 (January 1 - December 31, 2026) View All Years β†’
Showing 981 - 1,000 of 3,412 CVEs
CVE-2026-41089 CRITICAL - 9.8

Stack-based buffer overflow in Windows Netlogon allows an unauthorized attacker to execute code over a network.

Vendor: microsoft
Product: windows_server_2012
Published: May 12, 2026
Source: NVD
CVE-2026-40402 CRITICAL - 9.3

Use after free in Windows Hyper-V allows an unauthorized attacker to elevate privileges locally.

Vendor: microsoft
Product: windows_11_23h2
Published: May 12, 2026
Source: NVD
CVE-2026-40379 CRITICAL - 9.3

Exposure of sensitive information to an unauthorized actor in Azure Entra ID allows an unauthorized attacker to perform spoofing over a network.

Published: May 12, 2026
Source: NVD
CVE-2026-33117 CRITICAL - 9.1

Improper authentication in Azure SDK allows an unauthorized attacker to bypass a security feature over a network.

Vendor: microsoft
Product: azure_sdk_for_java
Published: May 12, 2026
Source: NVD
CVE-2026-31242 CRITICAL - 9.1

The mem0 v1.0.0 server lacks authentication and authorization controls for its memory reset functionality accessible via the DELETE /memories endpoint. An unauthenticated attacker can send a DELETE request that triggers a reset operation, leading to the execution of a DROP TABLE SQL statement. This ...

Vendor: mem0
Product: mem0
Published: May 12, 2026
Source: NVD
CVE-2026-31239 CRITICAL - 9.8

The mamba language model framework thru 2.2.6 is vulnerable to insecure deserialization (CWE-502) when loading pre-trained models from HuggingFace Hub. The MambaLMHeadModel.from_pretrained() method uses torch.load() to load the pytorch_model.bin weight file without enabling the security-restrictive ...

Published: May 12, 2026
Source: NVD
CVE-2026-31238 CRITICAL - 9.8

The Ludwig framework thru 0.10.4 is vulnerable to insecure deserialization (CWE-502) in its model serving component. When starting a model server with the ludwig serve command, the framework loads model weight files using torch.load() without enabling the security-restrictive weights_only=True param...

Published: May 12, 2026
Source: NVD
CVE-2026-31237 CRITICAL - 9.8

The Ludwig framework thru 0.10.4 is vulnerable to insecure deserialization (CWE-502) through its predict() method. When a user provides a dataset file path to the predict() method, the framework automatically determines the file format. If the file is a pickle (.pkl) file, it is loaded using pandas....

Published: May 12, 2026
Source: NVD
CVE-2026-31236 CRITICAL - 9.8

The llm CLI tool thru 0.27.1 contains a critical code injection vulnerability via its --functions command-line argument. This argument is intended to allow users to provide custom Python function definitions. However, the tool directly executes the provided code using the unsafe exec() function with...

Published: May 12, 2026
Source: NVD
CVE-2026-31235 CRITICAL - 9.8

The imgaug library thru 0.4.0 contains an insecure deserialization vulnerability in its BackgroundAugmenter class within the multicore.py module. The class uses Python's pickle module to deserialize data received via a multiprocessing queue in the _augment_images_worker() method without any saf...

Published: May 12, 2026
Source: NVD
CVE-2026-31234 CRITICAL - 9.8

Horovod thru 0.28.1 contains an insecure deserialization vulnerability (CWE-502) in its KVStore HTTP server component. The KVStore server, used for distributed task coordination, lacks authentication and authorization controls, allowing any remote attacker to write arbitrary data via HTTP PUT reques...

Published: May 12, 2026
Source: NVD
CVE-2026-31233 CRITICAL - 9.8

Guardrails AI thru 0.6.7 contains a code injection vulnerability (CWE-94) in its Hub package installation mechanism. When installing validator packages via guardrails hub install, the system retrieves a manifest from the Guardrails Hub and dynamically executes a script specified in the post_install ...

Published: May 12, 2026
Source: NVD
CVE-2026-31231 CRITICAL - 9.8

Cognee thru v0.4.0 contains a critical remote code execution vulnerability in its notebook cell execution API endpoint. The endpoint is designed to execute arbitrary Python code provided by the user, but it does so using the unsafe exec() function without any sandboxing, validation, or security cont...

Published: May 12, 2026
Source: NVD
CVE-2026-31230 CRITICAL - 9.8

The Adversarial Robustness Toolbox (ART) thru 1.20.1 contains a command-line argument injection vulnerability in its Kubeflow component (robustness_evaluation_fgsm_pytorch.py). The script uses the unsafe eval() function to parse string values provided via the --clip_values and --input_shape command-...

Published: May 12, 2026
Source: NVD
CVE-2026-31229 CRITICAL - 9.8

The Adversarial Robustness Toolbox (ART) thru 1.20.1 contains an insecure deserialization vulnerability (CWE-502) in its Kubeflow component's model loading functionality. When loading model weights from a file (e.g., model.pt) during robustness evaluation, the code uses torch.load() without the...

Published: May 12, 2026
Source: NVD
CVE-2026-29204 CRITICAL - 10.0

Insufficient ownership checks in `clientarea.php` allow an authenticated client area user to submit requests using another user’s `addonId` without any ownership validation leading to unauthorized access to the victim's resources and their cPanel account.

Vendor: WebPros
Product: WHMCS
Published: May 12, 2026
Source: NVD
CVE-2026-26083 CRITICAL - 9.8

A missing authorization vulnerability in Fortinet FortiSandbox 5.0.0 through 5.0.1, FortiSandbox 4.4.0 through 4.4.8, FortiSandbox Cloud 5.0.2 through 5.0.5, FortiSandbox PaaS 23.4 all versions, FortiSandbox PaaS 23.3 all versions, FortiSandbox PaaS 23.1 all versions, FortiSandbox PaaS 22.2 all vers...

Vendor: Fortinet
Product: FortiSandbox Cloud, FortiSandbox, FortiSandbox PaaS
Published: May 12, 2026
Source: NVD
CVE-2026-43992 CRITICAL - 9.8

JunoClaw is an agentic AI platform built on Juno Network. Prior to 0.x.y-security-1, every MCP write tool (send_tokens, execute_contract, instantiate_contract, upload_wasm, ibc_transfer, etc.) accepted 'mnemonic: string' as an explicit tool-call parameter. The BIP-39 seed was consequently ...

Vendor: Dragonmonk111
Product: junoclaw
Published: May 12, 2026
Source: NVD
CVE-2025-65719 CRITICAL - 9.8

An issue in Open Source Kubectl MCP Server v1.1.1 allows attackers to execute arbitrary code on a victim system via user interaction with a crafted HTML page.

Published: May 12, 2026
Source: NVD
CVE-2026-42074 CRITICAL - 9.8

OpenClaude is an open-source coding-agent command line interface for cloud and local model providers. Prior to version 0.5.1, the dangerouslyDisableSandbox parameter is exposed as part of the BashTool input schema, meaning the LLM (an untrusted principal per the project's own threat model) can ...

Vendor: npm
Product: openclaude
Published: May 12, 2026
Source: GitHub