Total CVEs

138,196

Critical Severity

3,545

High Severity

12,691

Last 7 Days

1,948
Quick preset (or use dates below)
Clear Filters
Showing 1,101 - 1,120 of 3,545 CVEs
CVE-2025-67887 CRITICAL - 9.8

1C-Bitrix through 25.100.500 allows Remote Code Execution because an actor with SOURCE/WRITE permissions for the Translate Module can upload and execute code by sending a PHP file and a .htaccess file. NOTE: this is disputed by the Supplier because this is intended behavior for the high-privileged u...

Published: May 08, 2026
Source: NVD
CVE-2023-46453 CRITICAL - 9.8

Certain GL.iNet devices with 4.x firmware allow authentication bypass (resulting in administrative control of the device) via a username that is both a valid SQL statement and a valid regular expression. For example, this affects version 4.3.7 on GL-MT3000 GL-AR300M GL-B1300 GL-AX1800 GL-AR750S GL-M...

Published: May 08, 2026
Source: NVD
CVE-2024-51092 CRITICAL - 9.1

LibreNMS before 24.10.0 allows a remote attacker to execute arbitrary code via OS command injection involving AboutController.php's index(), SettingsController.php's update(), and PollDevice.php's initRrdDirectory().

Vendor: librenms
Product: librenms
Published: May 08, 2026
Source: NVD
CVE-2026-43944 CRITICAL - 9.6

electerm is an open-sourced terminal/ssh/sftp/telnet/serialport/RDP/VNC/Spice/ftp client. From versions 3.0.6 to before 3.8.15, electerm is vulnerable to arbitrary local code execution via deep links, CLI --opts, or crafted shortcuts. Exploit requires clicking a crafted electerm://... link or openin...

Vendor: electerm
Product: electerm
Published: May 08, 2026
Source: NVD
CVE-2026-43941 CRITICAL - 9.6

electerm is an open-sourced terminal/ssh/sftp/telnet/serialport/RDP/VNC/Spice/ftp client. In versions 3.8.15 and prior, Electerm's terminal hyperlink handler passes any URL clicked in the terminal directly to shell.openExternal without any protocol validation. An attacker who controls terminal ...

Vendor: electerm
Product: electerm
Published: May 08, 2026
Source: NVD
CVE-2026-42208 CRITICAL - 9.8

LiteLLM is a proxy server (AI Gateway) to call LLM APIs in OpenAI (or native) format. From version 1.81.16 to before version 1.83.7, a database query used during proxy API key checks mixed the caller-supplied key value into the query text instead of passing it as a separate parameter. An unauthentic...

Vendor: BerriAI
Product: litellm
Published: May 08, 2026
Source: NVD
CVE-2026-41500 CRITICAL - 9.8

electerm is an open-sourced terminal/ssh/sftp/telnet/serialport/RDP/VNC/Spice/ftp client. Prior to version 3.3.8, a command injection vulnerability exists in github.com/elcterm/electerm/npm/install.js:150. The runMac() function appends attacker-controlled remote releaseInfo.name directly into an exe...

Vendor: electerm
Product: electerm
Published: May 08, 2026
Source: NVD
CVE-2026-8034 CRITICAL - 9.8

A server-side request forgery (SSRF) vulnerability was identified in the GitHub Enterprise Server notebook viewer that allowed an attacker to access internal services by exploiting URL parser confusion between the validation layer and the HTTP request library. The hostname validation used a differen...

Vendor: github
Product: enterprise_server
Published: May 07, 2026
Source: NVD
CVE-2026-42826 CRITICAL - 10.0

Exposure of sensitive information to an unauthorized actor in Azure DevOps allows an unauthorized attacker to disclose information over a network.

Vendor: microsoft
Product: azure_devops
Published: May 07, 2026
Source: NVD
CVE-2026-35428 CRITICAL - 9.6

Improper neutralization of special elements used in a command ('command injection') in Azure Cloud Shell allows an unauthorized attacker to perform spoofing over a network.

Vendor: microsoft
Product: azure_cloud_shell
Published: May 07, 2026
Source: NVD
CVE-2026-33844 CRITICAL - 9.0

Improper input validation in Azure Managed Instance for Apache Cassandra allows an authorized attacker to execute code over a network.

Vendor: microsoft
Product: azure_managed_instance_for_apache_cassandra
Published: May 07, 2026
Source: NVD
CVE-2026-33823 CRITICAL - 9.6

Improper authorization in Microsoft Teams allows an authorized attacker to disclose information over a network.

Vendor: microsoft
Product: teams
Published: May 07, 2026
Source: NVD
CVE-2026-33109 CRITICAL - 9.9

Improper access control in Azure Managed Instance for Apache Cassandra allows an authorized attacker to execute code over a network.

Vendor: microsoft
Product: azure_managed_instance_for_apache_cassandra
Published: May 07, 2026
Source: NVD
CVE-2026-44523 CRITICAL - 10.0

Note Mark is an open-source note-taking application. Prior to 0.19.4, no minimum length or entropy is enforced on the JWT_SECRET configuration value. The application accepts any base64-decodable secret regardless of size, including secrets as short as 1 byte. This vulnerability is fixed in 0.19.4.

Vendor: go
Product: github.com/enchant97/note-mark/backend
Published: May 07, 2026
Source: GitHub
CVE-2026-44497 CRITICAL - 9.1

ZEBRA is a Zcash node written entirely in Rust. Prior to zebrad version 4.4.0 and prior to zebra-script version 6.0.0, the fix for CVE-2026-41583 introduced a separate issue due to insufficient error handling of the case where the sighash type is invalid, during sighash computation. Instead of retur...

Vendor: rust
Product: zebra-script
Published: May 07, 2026
Source: GitHub
CVE-2026-44498 CRITICAL - 7.5

ZEBRA is a Zcash node written entirely in Rust. Prior to version 4.4.0, Zebra's block validator undercounts transparent signature operations against the 20000-sigop block limit (MAX_BLOCK_SIGOPS), allowing it to accept blocks that zcashd rejects with bad-blk-sigops. A miner who produces such a ...

Vendor: rust
Product: zebrad
Published: May 07, 2026
Source: GitHub
CVE-2026-42284 CRITICAL - 9.8

GitPython is a python library used to interact with Git repositories. Prior to version 3.1.47, _clone() validates multi_options as the original list, then executes shlex.split(" ".join(multi_options)). A string like "--branch main --config core.hooksPath=/x" passes validation (st...

Vendor: gitpython_project
Product: gitpython
Published: May 07, 2026
Source: NVD
CVE-2026-41902 CRITICAL - 9.1

FreeScout is a free help desk and shared inbox built with PHP's Laravel framework. Prior to version 1.8.217, the /user-setup/{hash} endpoint accepts a 60-character random invite_hash to set a new user's password. The endpoint performs no expiration check โ€” the hash remains valid indefinite...

Vendor: freescout-help-desk
Product: freescout
Published: May 07, 2026
Source: NVD
CVE-2026-37709 CRITICAL - 9.8

Insecure Permissions vulnerability in grokability snipe-it v.8.4.0 and before and fixed after 2026-03-10 commit 676a9958 allows a remote attacker to execute arbitrary code via the app/Http/Controllers/Api/UploadedFilesController.php component

Vendor: composer
Product: snipe/snipe-it
Published: May 07, 2026
Source: NVD
CVE-2026-7415 CRITICAL - 9.8

The MQTT broker embedded in Yarbo firmware v2.3.9 is configured to allow anonymous connections with no topic-level read or write ACLs. Any host on the same network can subscribe to sensitive telemetry topics or publish control messages directly to the robot without authentication or authorization of...

Vendor: yarbo
Product: lawn_mower_firmware
Published: May 07, 2026
Source: NVD