Total CVEs

149,374

Critical Severity

4,790

High Severity

17,147

Last 7 Days

2,816
Quick preset (or use dates below)
Clear Filters
📅 Showing Year: 2026 (January 1 - December 31, 2026) View All Years →
Showing 10,441 - 10,460 of 45,779 CVEs
CVE-2026-54588 CRITICAL - 9.6

Poweradmin is a web-based DNS administration tool for PowerDNS server. Versions prior to 4.2.4 and 4.3.3 use the attacker-controlled `HTTP_HOST` request header as the authoritative source for building callback URLs in its OIDC, SAML, and logout authentication flows without any validation. An unauthe...

Vendor: poweradmin
Product: poweradmin
Published: Jun 23, 2026
Source: NVD
CVE-2026-12164 MEDIUM - 4.4

Fortra File Integrity Monitoring (FIM), formerly Tripwire Enterprise, versions prior to 9.4.0 may assign incorrect or elevated effective permissions to users created by the tetool import command while FIM is running, particularly when the import also creates or changes roles or role-permission relat...

Vendor: Fortra
Product: File Integrity Monitoring (FIM)
Published: Jun 23, 2026
Source: NVD
CVE-2026-12163 MEDIUM - 5.5

Fortra File Integrity Monitoring (FIM), formerly Tripwire Enterprise, versions prior to 9.4.0.1 contain a stored cross-site scripting (XSS) vulnerability in the Asset View UI component. An authenticated user with sufficient privileges to create or modify affected node or database configuration field...

Vendor: Fortra
Product: File Integrity Monitoring (FIM)
Published: Jun 23, 2026
Source: NVD

When using the "tarfile" module with a file opened in "streaming mode" (mode="r|") the tarfile module did not properly handle EOF, meaning an archive could be parsed in an infinite loop.

Vendor: Python Software Foundation
Product: CPython
Published: Jun 23, 2026
Source: NVD
CVE-2026-54329 HIGH - 8.5

Snipe-IT is an IT asset/license management system. Prior to 8.6.2, the Accessories API create path mass-assigns request parameters to the Accessory model while company_id is mass assignable, allowing a low-privileged authenticated user in one company to create accessory records under another company...

Vendor: composer
Product: snipe/snipe-it
Published: Jun 23, 2026
Source: GitHub

Snipe-IT is an IT asset/license management system. Prior to version 8.6.1, Snipe-IT S3 signature image retrieval lacks authorization before temporary URL. On S3-backed deployments, authenticated users who know a signature filename can obtain a 5-minute signed S3 URL because the S3 branch returns bef...

Vendor: composer
Product: snipe/snipe-it
Published: Jun 23, 2026
Source: GitHub

Snipe-IT has Improper Authorization in File Deletion (IDOR)

Vendor: composer
Product: snipe/snipe-it
Published: Jun 23, 2026
Source: GitHub

Snipe-IT Vulnerable to Privilege Escalation via Missing admin Permission Check in User Creation

Vendor: composer
Product: snipe/snipe-it
Published: Jun 23, 2026
Source: GitHub
CVE-2026-55482 MEDIUM - 6.3

Snipe-IT has Multi-Tenancy Bypass via Bulk Asset Update

Vendor: composer
Product: snipe/snipe-it
Published: Jun 23, 2026
Source: GitHub
CVE-2026-50550 MEDIUM - 5.8

Snipe-IT has a 2FA reset privilege bypass

Vendor: composer
Product: snipe/snipe-it
Published: Jun 23, 2026
Source: GitHub
CVE-2026-49976 MEDIUM - 6.5

Snipe-IT Vulnerable to User Account Escalation via CSV Import

Vendor: composer
Product: snipe/snipe-it
Published: Jun 23, 2026
Source: GitHub
CVE-2026-49870 MEDIUM - 5.9

Snipe-IT's TOTP is Brute-Forceable Due to Missing Rate Limiting on `POST /two-factor`

Vendor: composer
Product: snipe/snipe-it
Published: Jun 23, 2026
Source: GitHub
CVE-2026-48500 MEDIUM - 6.5

Filament is a collection of full-stack components for accelerated Laravel development. From 3.0.0 until 3.3.52, 4.11.5, and 5.6.5, any schema can contain a file upload form field, so Filament applies Livewire's WithFileUploads trait to the Livewire component the schema is embedded in. However, ...

Vendor: composer
Product: filament/filament
Published: Jun 23, 2026
Source: GitHub
CVE-2026-48496 MEDIUM - 6.2

opentelemetry-ebpf-profiler: Unprivileged process can trigger a denial of service on the ebpf-profiler agent

Vendor: go
Product: go.opentelemetry.io/ebpf-profiler
Published: Jun 23, 2026
Source: GitHub
CVE-2026-48493 MEDIUM - 5.5

Snipe-IT is an IT asset/license management system. In versions prior to 8.6.0, a user with only users.edit can send a PATCH to /api/v1/users/{their_own_id} and grant themselves any permission except admin and superuser — for example `assets.view`, `assets.create`, `reports.view`, import, etc. The is...

Vendor: composer
Product: snipe/snipe-it
Published: Jun 23, 2026
Source: GitHub
CVE-2026-48492 MEDIUM - 6.5

Snipe-IT is an IT asset/license management system. Prior to version 8.6.1, the GET /api/v1/{object}/selectlist API endpoint is missing an authorization check. Any user who can log into Snipe-IT - regardless of permissions - can retrieve a paginated list of all user accounts using only their web sess...

Vendor: composer
Product: snipe/snipe-it
Published: Jun 23, 2026
Source: GitHub
CVE-2026-54517 MEDIUM - 5.3

jackson-databind contains the general-purpose data-binding functionality and tree-model for Jackson Data Processor. From 2.21.0 until 2.21.4 and 3.1.4, in BeanDeserializer._deserializeUsingPropertyBased, the active-view (@JsonView) filter was applied only to creator properties; the regular property-...

Vendor: maven
Product: com.fasterxml.jackson.core:jackson-databind
Published: Jun 23, 2026
Source: GitHub
CVE-2026-54516 MEDIUM - 5.3

jackson-databind contains the general-purpose data-binding functionality and tree-model for Jackson Data Processor. From 2.21.0 until 2.21.4 and 3.1.4, POJOPropertiesCollector._renameProperties() allows a property with @JsonProperty("renamed") on the getter and @JsonIgnore on the setter to...

Vendor: maven
Product: com.fasterxml.jackson.core:jackson-databind
Published: Jun 23, 2026
Source: GitHub
CVE-2026-54515 MEDIUM - 5.3

jackson-databind contains the general-purpose data-binding functionality and tree-model for Jackson Data Processor. From 2.8.0 until 2.18.9, 2.21.5, and 3.1.4, in BeanDeserializerBase.createContextual(), per-property @JsonIgnoreProperties exclusions are applied by _handleByNameInclusion(), producing...

Vendor: maven
Product: com.fasterxml.jackson.core:jackson-databind
Published: Jun 23, 2026
Source: GitHub
CVE-2026-54514 MEDIUM - 5.3

jackson-databind contains the general-purpose data-binding functionality and tree-model for Jackson Data Processor. From 2.0.0 until 2.18.8, 2.21.4, and 3.1.4, JDKFromStringDeserializer constructed InetSocketAddress with new InetSocketAddress(host, port), which performs eager DNS name resolution for...

Vendor: maven
Product: com.fasterxml.jackson.core:jackson-databind
Published: Jun 23, 2026
Source: GitHub