Total CVEs

138,196

Critical Severity

3,545

High Severity

12,691

Last 7 Days

1,956
Quick preset (or use dates below)
Clear Filters
Showing 981 - 1,000 of 3,545 CVEs
CVE-2026-44196 CRITICAL - 9.1

Pingvin Share X is a secure and easy self-hosted file sharing platform. From 1.14.1 to 1.16.2, a critical authentication bypass vulnerability allows an attacker who has obtained a valid username and password to skip the second-factor authentication (TOTP) requirement entirely. Although, an attacker ...

Vendor: smp46
Product: pingvin-share-x
Published: May 12, 2026
Source: NVD
CVE-2026-44183 CRITICAL - 9.8

Cleanuparr is a tool for automating the cleanup of unwanted or blocked files in Sonarr, Radarr, and supported download clients like qBittorrent. Prior to 2.9.10, TrustedNetworkAuthenticationHandler.ResolveClientIp parses the leftmost entry of the X-Forwarded-For header as the client IP. That entry ...

Vendor: Cleanuparr
Product: Cleanuparr
Published: May 12, 2026
Source: NVD
CVE-2026-42898 CRITICAL - 9.9

Improper control of generation of code ('code injection') in Microsoft Dynamics 365 (on-premises) allows an authorized attacker to execute code over a network.

Vendor: microsoft
Product: dynamics_365
Published: May 12, 2026
Source: NVD
CVE-2026-42833 CRITICAL - 9.1

Execution with unnecessary privileges in Microsoft Dynamics 365 (on-premises) allows an authorized attacker to execute code over a network.

Vendor: microsoft
Product: dynamics_365
Published: May 12, 2026
Source: NVD
CVE-2026-42823 CRITICAL - 9.9

Improper access control in Azure Logic Apps allows an authorized attacker to elevate privileges over a network.

Vendor: microsoft
Product: azure_logic_apps
Published: May 12, 2026
Source: NVD
CVE-2026-41103 CRITICAL - 9.1

Incorrect implementation of authentication algorithm in Microsoft SSO Plugin for Jira & Confluence allows an unauthorized attacker to elevate privileges over a network.

Vendor: microsoft
Product: confluence_saml_sso
Published: May 12, 2026
Source: NVD
CVE-2026-41096 CRITICAL - 9.8

Heap-based buffer overflow in Microsoft Windows DNS allows an unauthorized attacker to execute code over a network.

Vendor: microsoft
Product: windows_11_23h2
Published: May 12, 2026
Source: NVD
CVE-2026-41089 CRITICAL - 9.8

Stack-based buffer overflow in Windows Netlogon allows an unauthorized attacker to execute code over a network.

Vendor: microsoft
Product: windows_server_2012
Published: May 12, 2026
Source: NVD
CVE-2026-40402 CRITICAL - 9.3

Use after free in Windows Hyper-V allows an unauthorized attacker to elevate privileges locally.

Vendor: microsoft
Product: windows_11_23h2
Published: May 12, 2026
Source: NVD
CVE-2026-40379 CRITICAL - 9.3

Exposure of sensitive information to an unauthorized actor in Azure Entra ID allows an unauthorized attacker to perform spoofing over a network.

Published: May 12, 2026
Source: NVD
CVE-2026-33117 CRITICAL - 9.1

Improper authentication in Azure SDK allows an unauthorized attacker to bypass a security feature over a network.

Vendor: microsoft
Product: azure_sdk_for_java
Published: May 12, 2026
Source: NVD
CVE-2026-31242 CRITICAL - 9.1

The mem0 v1.0.0 server lacks authentication and authorization controls for its memory reset functionality accessible via the DELETE /memories endpoint. An unauthenticated attacker can send a DELETE request that triggers a reset operation, leading to the execution of a DROP TABLE SQL statement. This ...

Vendor: mem0
Product: mem0
Published: May 12, 2026
Source: NVD
CVE-2026-31239 CRITICAL - 9.8

The mamba language model framework thru 2.2.6 is vulnerable to insecure deserialization (CWE-502) when loading pre-trained models from HuggingFace Hub. The MambaLMHeadModel.from_pretrained() method uses torch.load() to load the pytorch_model.bin weight file without enabling the security-restrictive ...

Published: May 12, 2026
Source: NVD
CVE-2026-31238 CRITICAL - 9.8

The Ludwig framework thru 0.10.4 is vulnerable to insecure deserialization (CWE-502) in its model serving component. When starting a model server with the ludwig serve command, the framework loads model weight files using torch.load() without enabling the security-restrictive weights_only=True param...

Published: May 12, 2026
Source: NVD
CVE-2026-31237 CRITICAL - 9.8

The Ludwig framework thru 0.10.4 is vulnerable to insecure deserialization (CWE-502) through its predict() method. When a user provides a dataset file path to the predict() method, the framework automatically determines the file format. If the file is a pickle (.pkl) file, it is loaded using pandas....

Published: May 12, 2026
Source: NVD
CVE-2026-31236 CRITICAL - 9.8

The llm CLI tool thru 0.27.1 contains a critical code injection vulnerability via its --functions command-line argument. This argument is intended to allow users to provide custom Python function definitions. However, the tool directly executes the provided code using the unsafe exec() function with...

Published: May 12, 2026
Source: NVD
CVE-2026-31235 CRITICAL - 9.8

The imgaug library thru 0.4.0 contains an insecure deserialization vulnerability in its BackgroundAugmenter class within the multicore.py module. The class uses Python's pickle module to deserialize data received via a multiprocessing queue in the _augment_images_worker() method without any saf...

Published: May 12, 2026
Source: NVD
CVE-2026-31234 CRITICAL - 9.8

Horovod thru 0.28.1 contains an insecure deserialization vulnerability (CWE-502) in its KVStore HTTP server component. The KVStore server, used for distributed task coordination, lacks authentication and authorization controls, allowing any remote attacker to write arbitrary data via HTTP PUT reques...

Published: May 12, 2026
Source: NVD
CVE-2026-31233 CRITICAL - 9.8

Guardrails AI thru 0.6.7 contains a code injection vulnerability (CWE-94) in its Hub package installation mechanism. When installing validator packages via guardrails hub install, the system retrieves a manifest from the Guardrails Hub and dynamically executes a script specified in the post_install ...

Published: May 12, 2026
Source: NVD
CVE-2026-31231 CRITICAL - 9.8

Cognee thru v0.4.0 contains a critical remote code execution vulnerability in its notebook cell execution API endpoint. The endpoint is designed to execute arbitrary Python code provided by the user, but it does so using the unsafe exec() function without any sandboxing, validation, or security cont...

Published: May 12, 2026
Source: NVD