Total CVEs

138,210

Critical Severity

3,547

High Severity

12,695

Last 7 Days

1,853
Quick preset (or use dates below)
Clear Filters
Showing 101 - 120 of 13,261 CVEs
CVE-2026-48823 MEDIUM - 4.8

Shaarli is a personal bookmarking service. Versions 0.16.1 and prior contain a stored Cross-Site Scripting (XSS) vulnerability in the tag filtering functionality of Shaarli. An authenticated user can inject arbitrary JavaScript into the tags field when creating a bookmark (Shaare). The malicious pay...

Vendor: shaarli
Product: Shaarli
Published: Jun 17, 2026
Source: NVD
CVE-2026-48822 MEDIUM - 5.8

Shaarli is a personal bookmarking service. Versions 0.16.1 and prior contain a stored Cross-Site Scripting (XSS) vulnerability in the Markdown-to-HTML conversion process used in the Bookmark Description field. An authenticated user can inject a malicious javascript: URI inside a Markdown link. The v...

Vendor: shaarli
Product: Shaarli
Published: Jun 17, 2026
Source: NVD
CVE-2026-32682 MEDIUM - 6.5

When NGINX Gateway Fabric is configured using GRPCRoutes, an authenticated, remote attacker with permission to create or modify GRPCRoute resources can cause the NGINX Gateway Fabric control plane to terminate by sending undisclosed GRPCRoute configurations containing backendRef filters. Note: So...

Vendor: F5
Product: NGINX Gateway Fabric
Published: Jun 17, 2026
Source: NVD
CVE-2026-55198 MEDIUM - 6.5

Hermes WebUI before 0.51.443 contains an authorization bypass vulnerability in the session export endpoint that allows authenticated users to access sessions from other profiles. The _handle_session_export handler in api/routes.py fails to verify active-profile ownership before serializing session d...

Vendor: nesquena
Product: hermes-webui
Published: Jun 17, 2026
Source: NVD
CVE-2026-55197 MEDIUM - 6.5

Hermes WebUI before 0.51.443 contains a broken access control vulnerability in the /api/session endpoint that allows authenticated users to disclose cross-profile session transcripts. Attackers can bypass profile boundary checks by directly querying session IDs belonging to other profiles via GET /a...

Vendor: nesquena
Product: hermes-webui
Published: Jun 17, 2026
Source: NVD
CVE-2026-53870 MEDIUM - 5.5

Hermes Agent before 0.16.0 creates response_store.db and webhook_subscriptions.json with world-readable permissions (mode 0o644), exposing conversation history and HMAC secrets to local users. Attackers with local filesystem access can read these files directly to obtain sensitive data including con...

Vendor: NousResearch
Product: hermes-agent
Published: Jun 17, 2026
Source: NVD

CakePHP Authentication: Open redirect weakness via backslash bypass

Vendor: composer
Product: cakephp/authentication
Published: Jun 17, 2026
Source: GitHub
CVE-2026-55517 MEDIUM - 4.3

Deno: Denial of service via non-ASCII bytes in WebSocket response headers

Vendor: rust
Product: deno
Published: Jun 17, 2026
Source: GitHub
CVE-2026-9679 MEDIUM - 5.9

Impact: undici's cookie parser in parseSetCookie percent-decodes cookie values via qsUnescape, turning encoded sequences like %0D%0A, %00, %3B, and %3D into their literal byte equivalents. RFC 6265 ยง5.4 does not specify any decoding and browsers do not decode either. Applications that parse a ...

Vendor: npm
Product: undici
Published: Jun 17, 2026
Source: NVD
CVE-2026-9678 MEDIUM - 5.9

Impact: Undici's cache interceptor incorrectly classifies some responses as cacheable when the upstream Cache-Control header uses whitespace-padded qualified private or no-cache field names such as private=" authorization" or no-cache="\tauthorization". The parser preserves ...

Vendor: npm
Product: undici
Published: Jun 17, 2026
Source: NVD
CVE-2026-20265 MEDIUM - 4.3

In Splunk AI Toolkit versions below 5.7.4, a low-privileged user that does not hold the "admin" or "power" Splunk roles could cause the Splunk AI Toolkit to make outbound requests over HTTP to a server that an attacker controls, which could allow for data exfiltration. The vul...

Vendor: Splunk
Product: Splunk AI Toolkit
Published: Jun 17, 2026
Source: NVD
CVE-2026-20178 MEDIUM - 4.3

A vulnerability in the browser-based version of Cisco Webex App could have allowed an unauthenticated, remote attacker to redirect users to a malicious webpage. Cisco has addressed this vulnerability in the Cisco Webex App, and no customer action is needed. This vulnerability existed due to impro...

Vendor: Cisco
Product: Cisco Webex App
Published: Jun 17, 2026
Source: NVD
CVE-2026-55636 MEDIUM - 5.7

Capsule: Incomplete fix of CVE-2026-30963: singular/plural typo leaves namespaces/finalize unprotected

Vendor: go
Product: github.com/projectcapsule/capsule
Published: Jun 17, 2026
Source: GitHub

Gitea: Open Redirect via redirect_to

Vendor: go
Product: github.com/go-gitea/gitea
Published: Jun 17, 2026
Source: GitHub
CVE-2026-54324 MEDIUM - 6.5

Daytona: Cross-tenant data leak in notification WebSocket gateway via unverified organizationId join

Vendor: go
Product: github.com/daytonaio/daytona
Published: Jun 17, 2026
Source: GitHub

Claude Code: Out-of-Band Data Exfiltration via Pre-Approved HuggingFace Domain in WebFetch

Vendor: npm
Product: @anthropic-ai/claude-code
Published: Jun 17, 2026
Source: GitHub
CVE-2026-54022 MEDIUM - 5.3

Open WebUI: Any authenticated user can read other users' private notes via Socket.IO

Vendor: pip
Product: open-webui
Published: Jun 17, 2026
Source: GitHub
CVE-2026-54021 MEDIUM - 6.3

Open WebUI: Authenticated users can target arbitrary configured Ollama backends via unguarded url_idx path parameter

Vendor: pip
Product: open-webui
Published: Jun 17, 2026
Source: GitHub
CVE-2026-54019 MEDIUM - 6.5

Open WebUI: RAG ACL Bypass in Milvus Multitenancy Mode

Vendor: pip
Product: open-webui
Published: Jun 17, 2026
Source: GitHub
CVE-2026-35069 MEDIUM - 5.7

Dell PowerFlex Manager, version(s) [Versions], contain(s) an Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability. A low privileged attacker with adjacent network access could potentially exploit this vulnerability, leading to Script injection.

Vendor: Dell
Product: PowerFlex
Published: Jun 17, 2026
Source: NVD