Total CVEs

138,196

Critical Severity

3,545

High Severity

12,691

Last 7 Days

1,953
Quick preset (or use dates below)
Clear Filters
Showing 1,021 - 1,040 of 3,545 CVEs
CVE-2026-8043 CRITICAL - 9.6

External control of a file name in Ivanti Xtraction before version 2026.2 allows a remote authenticated attacker to read sensitive files and write arbitrary HTML files to a web directory, leading to information disclosure and possible client-side attacks.

Vendor: ivanti
Product: xtraction
Published: May 12, 2026
Source: NVD
CVE-2026-45087 CRITICAL - 10.0

Dalfox is a powerful open-source XSS scanner and utility focused on automation. Prior to 2.13.0, when dalfox is started in REST API server mode (dalfox server), the server binds to 0.0.0.0:6664 by default and requires no API key unless the operator explicitly passes --api-key. Because model.Options ...

Vendor: go
Product: github.com/hahwul/dalfox/v2
Published: May 12, 2026
Source: GitHub
CVE-2026-45091 CRITICAL - 9.1

sealed-env is a cross-stack, zero-trust secret management library for Node.js and Java/Spring Boot. In sealed-env enterprise mode, versions 0.1.0-alpha.1 through 0.1.0-alpha.3 embedded the operator's literal TOTP secret in the JWS payload of every minted unseal token. JWS payload is base64-enco...

Vendor: davidalmeidac
Product: sealed-env
Published: May 12, 2026
Source: NVD
CVE-2026-41551 CRITICAL - 9.1

A vulnerability has been identified in ROS# (All versions < V2.2.2). Affected versions contain a path traversal vulnerability because user input is not properly sanitized. This could allow a remote attacker to access arbitrary files on the device.

Vendor: Siemens
Product: ROS#
Published: May 12, 2026
Source: NVD
CVE-2026-25787 CRITICAL - 9.1

Affected devices do not properly validate and sanitize Technology Object (TO) name rendered on the "Motion Control Diagnostics" page of the web interface. This could allow an authenticated attacker who is authorized to download a TIA project into the product, to inject malicious scripts in...

Published: May 12, 2026
Source: NVD
CVE-2026-25786 CRITICAL - 9.1

Affected devices do not properly validate and sanitize PLC/station name rendered on the "communication" parameters page of the web interface. This could allow an authenticated attacker who is authorized to download a TIA project into the product, to inject malicious scripts into the page....

Published: May 12, 2026
Source: NVD
CVE-2026-22924 CRITICAL - 9.1

A vulnerability has been identified in SIMATIC CN 4100 (All versions < V5.0). The affected application does not properly restrict unauthenticated connections and is susceptible to resource exhaustion conditions. This could allow an attacker to disrupt normal operations or perform unauthorized ac...

Vendor: Siemens
Product: SIMATIC CN 4100
Published: May 12, 2026
Source: NVD
CVE-2025-6577 CRITICAL - 9.8

Improper neutralization of special elements used in an SQL command ('SQL injection') vulnerability in Akilli Commerce Software Technologies Ltd. Co. E-Commerce Website allows SQL Injection. This issue affects E-Commerce Website: before 4.5.001.

Published: May 12, 2026
Source: NVD
CVE-2025-40949 CRITICAL - 9.1

A vulnerability has been identified in RUGGEDCOM ROX MX5000 (All versions < V2.17.1), RUGGEDCOM ROX MX5000RE (All versions < V2.17.1), RUGGEDCOM ROX RX1400 (All versions < V2.17.1), RUGGEDCOM ROX RX1500 (All versions < V2.17.1), RUGGEDCOM ROX RX1501 (All versions < V2.17.1), RUGGEDCOM...

Vendor: Siemens
Product: RUGGEDCOM ROX MX5000, RUGGEDCOM ROX MX5000RE, RUGGEDCOM ROX RX1400, RUGGEDCOM ROX RX1500, RUGGEDCOM ROX RX1501, RUGGEDCOM ROX RX1510, RUGGEDCOM ROX RX1511, RUGGEDCOM ROX RX1512, RUGGEDCOM ROX RX1524, RUGGEDCOM ROX RX1536, RUGGEDCOM ROX RX5000
Published: May 12, 2026
Source: NVD
CVE-2026-34263 CRITICAL - 9.6

Due to improper Spring Security configuration, SAP Commerce cloud allows an unauthenticated user to perform malicious configuration upload and code injection, resulting in arbitrary server-side code execution, leading to high impact on Confidentiality, Integrity, and Availability of the application.

Vendor: SAP_SE
Product: SAP Commerce cloud configuration
Published: May 12, 2026
Source: NVD
CVE-2026-34260 CRITICAL - 9.6

SAP S/4HANA (SAP Enterprise Search for ABAP) contains a SQL injection vulnerability that allows an authenticated attacker to inject malicious SQL statements through user-controlled input. The application directly concatenates this malicious user input into SQL queries, which are then passed to the u...

Vendor: SAP_SE
Product: SAP S/4HANA (SAP Enterprise Search for ABAP)
Published: May 12, 2026
Source: NVD
CVE-2026-45393 CRITICAL - 9.8

Reserved. Details will be published at disclosure.

Vendor: Cribl
Product: Cribl Edge
Published: May 12, 2026
Source: NVD
CVE-2026-45392 CRITICAL - 9.8

Reserved. Details will be published at disclosure.

Vendor: Cribl
Product: Cribl Stream
Published: May 12, 2026
Source: NVD
CVE-2026-45391 CRITICAL - 9.8

Reserved. Details will be published at disclosure.

Vendor: Cribl
Product: Cribl Edge
Published: May 12, 2026
Source: NVD
CVE-2026-45321 CRITICAL - 9.6

On 2026-05-11, between approximately 19:20 and 19:26 UTC, 84 malicious versions across 42 @tanstack/* packages were published to the npm registry. The publishes were authenticated via the legitimate GitHub Actions OIDC trusted-publisher binding for TanStack/router, but the publish workflow itself wa...

Vendor: npm
Product: @tanstack/arktype-adapter
Published: May 12, 2026
Source: NVD
CVE-2026-43900 CRITICAL - 9.3

DeepChat is an open-source artificial intelligence agent platform that unifies models, tools, and agents. Prior to v1.0.4-beta.1, a Cross-Site Scripting (XSS) vulnerability exists due to a discrepancy between the backend validation layer and the frontend browser rendering engine. The SVGSanitizer (s...

Vendor: ThinkInAIXYZ
Product: deepchat
Published: May 11, 2026
Source: NVD
CVE-2026-43899 CRITICAL - 9.6

DeepChat is an open-source artificial intelligence agent platform that unifies models, tools, and agents. Prior to v1.0.4-beta.1, An incomplete mitigation for CVE-2025-55733 leaves DeepChat vulnerable to an arbitrary protocol execution bypass (RCE). While the patch correctly restricted api.openExter...

Vendor: ThinkInAIXYZ
Product: deepchat
Published: May 11, 2026
Source: NVD
CVE-2026-42869 CRITICAL - 10.0

SOCFortress CoPilot focuses on providing a single pane of glass for all your security operations needs. Prior to 0.1.57, SOCFortress CoPilot ships a hardcoded JWT signing secret as a fallback value in backend/app/auth/utils.py:28 and ships it verbatim in .env.example. Any deployment where JWT_SECRET...

Vendor: socfortress
Product: CoPilot
Published: May 11, 2026
Source: NVD
CVE-2026-43898 CRITICAL - 10.0

SandboxJS is a JavaScript sandboxing library. Prior to 0.9.6, sandbox-defined functions expose Function.caller, allowing sandboxed code to recover the internal LispType.Call runtime callback. That callback can then be invoked with attacker-controlled fake context and obj values to extract blocked ho...

Vendor: npm
Product: @nyariv/sandboxjs
Published: May 11, 2026
Source: GitHub
CVE-2026-7210 CRITICAL - 9.8

`xml.parsers.expat` and `xml.etree.ElementTree` use insufficient entropy for Expat hash-flooding protection, which allows a crafted XML document to trigger hash flooding.\r\n\r\nFully mitigating this vulnerability requires both updating libexpat to 2.8.0 or later and applying this patch.

Vendor: libexpat_project
Product: libexpat
Published: May 11, 2026
Source: NVD