Total CVEs

125,743

Critical Severity

2,263

High Severity

7,843

Last 7 Days

1,200
Quick preset (or use dates below)
Clear Filters
πŸ“… Showing Year: 2026 (January 1 - December 31, 2026) View All Years β†’
Showing 1,161 - 1,180 of 22,148 CVEs
CVE-2026-41138 HIGH - 8.3

Flowise is a drag & drop user interface to build a customized large language model flow. Prior to 3.1.0, there is a remote code execution vulnerability in AirtableAgent.ts caused by lack of input verification when using Pandas. The user’s input is directly applied to the question parameter withi...

Vendor: FlowiseAI
Product: Flowise
Published: Apr 23, 2026
Source: NVD
CVE-2026-41137 HIGH - 8.8

Flowise is a drag & drop user interface to build a customized large language model flow. Prior to 3.1.0, The CSVAgent allows providing a custom Pandas CSV read code. Due to lack of sanitization, an attacker can provide a command injection payload that will get interpolated and executed by the se...

Vendor: FlowiseAI
Product: Flowise, flowise-components
Published: Apr 23, 2026
Source: NVD
CVE-2026-25874 CRITICAL - 9.8

LeRobot through 0.5.1 contains an unsafe deserialization vulnerability in the async inference pipeline where pickle.loads() is used to deserialize data received over unauthenticated gRPC channels without TLS in the policy server and robot client components. An unauthenticated network-reachable attac...

Vendor: Hugging Face
Product: LeRobot
Published: Apr 23, 2026
Source: NVD

A path traversal condition in Intrado 911 Emergency Gateway could allow an attacker with existing network access the ability to access the EGW management interface without authentication. Successful exploitation of this vulnerability could allow a user to read, modify, or delete files.

Published: Apr 23, 2026
Source: NVD
CVE-2026-41259 HIGH - 7.5

Mastodon is a free, open-source social network server based on ActivityPub. Prior to v4.5.9, v4.4.16, and v4.3.22, Mastodon allows restricting new user sign-up based on e-mail domain names, and performs basic validation on e-mail addresses, but fails to restrict characters that are interpreted diffe...

Vendor: mastodon
Product: mastodon
Published: Apr 23, 2026
Source: NVD
CVE-2026-41247 CRITICAL - 9.8

elFinder is an open-source file manager for web, written in JavaScript using jQuery UI. Prior to 2.1.67, elFinder contains a command injection vulnerability in the resize command. The bg (background color) parameter is accepted from user input and passed through image resize/rotate processing. In co...

Vendor: Studio-42
Product: elFinder
Published: Apr 23, 2026
Source: NVD
CVE-2026-41246 HIGH - 8.1

Contour is a Kubernetes ingress controller using Envoy proxy. From v1.19.0 to before v1.33.4, v1.32.5, and v1.31.6, Contour's Cookie Rewriting feature is vulnerable to Lua code injection. An attacker with RBAC permissions to create or modify HTTPProxy resources can craft a malicious value in sp...

Vendor: projectcontour
Product: contour
Published: Apr 23, 2026
Source: NVD
CVE-2026-41241 HIGH - 8.7

pretalx is a conference planning tool. Prior to 2026.1.0, The organiser search in the pretalx backend rendered submission titles, speaker display names, and user names/emails into the result dropdown using innerHTML string interpolation. Any user who controls one of those fields (which includes any ...

Vendor: pretalx
Product: pretalx
Published: Apr 23, 2026
Source: NVD
CVE-2026-41213 MEDIUM - 5.9

@node-oauth/oauth2-server is a module for implementing an OAuth2 server in Node.js. The token exchange path accepts RFC7636-invalid code_verifier values (including one-character strings) for S256 PKCE flows. Because short/weak verifiers are accepted and failed verifier attempts do not consume the au...

Vendor: node-oauth
Product: node-oauth2-server
Published: Apr 23, 2026
Source: NVD
CVE-2026-41205 HIGH - 7.5

Mako is a template library written in Python. Prior to 1.3.11, TemplateLookup.get_template() is vulnerable to path traversal when a URI starts with // (e.g., //../../../secret.txt). The root cause is an inconsistency between two slash-stripping implementations. Any file readable by the process can b...

Vendor: sqlalchemy
Product: mako
Published: Apr 23, 2026
Source: NVD

This vulnerability allows an attacker to create a junction, enabling the deletion of arbitrary files with SYSTEM privileges. As a result, this condition potentially facilitates arbitrary code execution, whereby an attacker may exploit the vulnerability to execute malicious code with elevated SYSTEM ...

Vendor: Tenable, Inc.
Product: Tenable Nessus, Tenable Nessus Agent
Published: Apr 23, 2026
Source: NVD
CVE-2026-31173 MEDIUM - 6.5

An issue was discovered in ToToLink A3300R firmware v17.0.0cu.557_B20221024 allowing attackers to execute arbitrary commands via the interval parameter to /cgi-bin/cstecgi.cgi.

Vendor: totolink
Product: a3300r_firmware
Published: Apr 23, 2026
Source: NVD
CVE-2026-31169 MEDIUM - 6.5

An issue was discovered in ToToLink A3300R firmware v17.0.0cu.557_B20221024 allowing attackers to execute arbitrary commands via the week parameter to /cgi-bin/cstecgi.cgi.

Vendor: totolink
Product: a3300r_firmware
Published: Apr 23, 2026
Source: NVD
CVE-2026-31168 MEDIUM - 6.5

An issue was discovered in ToToLink A3300R firmware v17.0.0cu.557_B20221024 allowing attackers to execute arbitrary commands via the recHour parameter to /cgi-bin/cstecgi.cgi.

Vendor: totolink
Product: a3300r_firmware
Published: Apr 23, 2026
Source: NVD
CVE-2026-31167 MEDIUM - 6.5

An issue was discovered in ToToLink A3300R firmware v17.0.0cu.557_B20221024 allowing attackers to execute arbitrary commands via the mode parameter to /cgi-bin/cstecgi.cgi.

Vendor: totolink
Product: a3300r_firmware
Published: Apr 23, 2026
Source: NVD
CVE-2026-31166 MEDIUM - 6.5

An issue was discovered in ToToLink A3300R firmware v17.0.0cu.557_B20221024 allowing attackers to execute arbitrary commands via the hour parameter to /cgi-bin/cstecgi.cgi.

Vendor: totolink
Product: a3300r_firmware
Published: Apr 23, 2026
Source: NVD
CVE-2026-31163 MEDIUM - 6.5

An issue was discovered in ToToLink A3300R firmware v17.0.0cu.557_B20221024 allowing attackers to execute arbitrary commands via the dhcpMtu parameter to /cgi-bin/cstecgi.cgi.

Vendor: totolink
Product: a3300r_firmware
Published: Apr 23, 2026
Source: NVD
CVE-2026-31162 MEDIUM - 6.5

An issue was discovered in ToToLink A3300R firmware v17.0.0cu.557_B20221024 allowing attackers to execute arbitrary commands via the ttlWay parameter to /cgi-bin/cstecgi.cgi.

Vendor: totolink
Product: a3300r_firmware
Published: Apr 23, 2026
Source: NVD
CVE-2026-6921 MEDIUM - 5.3

Race in GPU in Google Chrome on Windows prior to 147.0.7727.117 allowed a remote attacker to potentially perform a sandbox escape via a crafted video file. (Chromium security severity: Medium)

Vendor: google
Product: chrome
Published: Apr 23, 2026
Source: NVD
CVE-2026-6920 HIGH - 7.5

Out of bounds read in GPU in Google Chrome on Android prior to 147.0.7727.117 allowed a remote attacker who had compromised the renderer process to potentially perform a sandbox escape via a crafted HTML page. (Chromium security severity: High)

Vendor: google
Product: chrome
Published: Apr 23, 2026
Source: NVD