Total CVEs

138,196

Critical Severity

3,545

High Severity

12,691

Last 7 Days

1,972
Quick preset (or use dates below)
Clear Filters
📅 Showing Year: 2026 (January 1 - December 31, 2026) View All Years →
Showing 1,221 - 1,240 of 3,419 CVEs
CVE-2026-42374 CRITICAL - 9.8

D-Link DIR-600L Hardware Revision B1 (End-of-Life) contains a hardcoded telnet backdoor. The device starts a telnet daemon at boot via /bin/telnetd.sh with the username "Alphanetworks" and the static password "wrgn61_dlwbr_dir600L" read from /etc/alpha_config/image_sign. The cust...

Vendor: D-Link
Product: DIR-600L Firmware
Published: May 04, 2026
Source: NVD
CVE-2026-42373 CRITICAL - 9.8

D-Link DIR-605L Hardware Revision B2 (End-of-Life, EOL) contains a hardcoded telnet backdoor. The device starts a telnet daemon at boot via /bin/telnetd.sh with the username "Alphanetworks" and the static password "wrgn76_dlwbr_dir605L" read from /etc/alpha_config/image_sign. The...

Vendor: D-Link
Product: DIR-605L Firmware
Published: May 04, 2026
Source: NVD
CVE-2026-42090 CRITICAL - 9.6

Notesnook is a note-taking app focused on user privacy & ease of use. Prior to Notesnook Web/Desktop version 3.3.15 and prior to Notesnook iOS/Android version 3.3.20, a stored XSS vulnerability in the note export flow can be escalated to remote code execution in the desktop app. The root cause i...

Vendor: streetwriters
Product: notesnook
Published: May 04, 2026
Source: NVD
CVE-2026-42076 CRITICAL - 9.8

Evolver is a GEP-powered self-evolving engine for AI agents. Prior to version 1.69.3, a command injection vulnerability in the _extractLLM() function allows attackers to execute arbitrary shell commands on the server. The function constructs a curl command using string concatenation and passes it to...

Vendor: EvoMap
Product: evolver
Published: May 04, 2026
Source: NVD
CVE-2026-42027 CRITICAL - 9.8

Arbitrary Class Instantiation via Model Manifest in Apache OpenNLP ExtensionLoader Versions Affected: before 2.5.9, before 3.0.0-M3 Description:  The ExtensionLoader.instantiateExtension(Class, String) method loads a class by its fully-qualified name via Class.forName() and invokes its no...

Vendor: Apache Software Foundation
Product: Apache OpenNLP
Published: May 04, 2026
Source: NVD
CVE-2026-40682 CRITICAL - 9.1

XML External Entity (XXE) via Unsanitized Dictionary Parsing in Apache OpenNLP DictionaryEntryPersistor Versions Affected: before 2.5.9, before 3.0.0-M3 Description: The DictionaryEntryPersistor class initializes a static SAXParserFactory at class-load time without enabling FEATURE_SECURE_PROCES...

Vendor: Apache Software Foundation
Product: Apache OpenNLP
Published: May 04, 2026
Source: NVD
CVE-2026-26956 CRITICAL - 9.8

vm2 is an open source vm/sandbox for Node.js. In version 3.10.4, vm2 is vulnerable to full sandbox escape with arbitrary code execution. Attacker code inside VM.run() obtains host process object and runs host commands with zero host cooperation. This issue has been patched in version 3.10.5.

Vendor: patriksimek
Product: vm2
Published: May 04, 2026
Source: NVD
CVE-2026-26332 CRITICAL - 9.8

vm2 is an open source vm/sandbox for Node.js. Prior to version 3.11.0, SuppressedError allows attackers to escape the sandbox and run arbitrary code. This issue has been patched in version 3.11.0.

Vendor: patriksimek
Product: vm2
Published: May 04, 2026
Source: NVD
CVE-2026-25293 CRITICAL - 9.6

Buffer overflow due to incorrect authorization in PLC FW

Vendor: Qualcomm, Inc.
Product: Snapdragon
Published: May 04, 2026
Source: NVD
CVE-2026-24781 CRITICAL - 9.8

vm2 is an open source vm/sandbox for Node.js. Prior to version 3.11.0, VM2 suffers from a sandbox breakout vulnerability through the inspect function. This allows attackers to write code which can escape from the VM2 sandbox and execute arbitrary commands on the host system. This issue has been patc...

Vendor: patriksimek
Product: vm2
Published: May 04, 2026
Source: NVD
CVE-2026-24120 CRITICAL - 9.8

vm2 is an open source vm/sandbox for Node.js. Prior to version 3.10.5, the fix for CVE-2023-37466 is insufficient and can be circumvented allowing attackers to write code which can escape from the VM2 sandbox and execute arbitrary commands on the host system. This issue has been patched in version 3...

Vendor: patriksimek
Product: vm2
Published: May 04, 2026
Source: NVD
CVE-2026-24118 CRITICAL - 9.8

vm2 is an open source vm/sandbox for Node.js. Prior to version 3.11.0, VM2 suffers from a sandbox breakout vulnerability. This allows attackers to write code which can escape from the VM2 sandbox and execute arbitrary commands on the host system. This issue has been patched in version 3.11.0.

Vendor: patriksimek
Product: vm2
Published: May 04, 2026
Source: NVD
CVE-2025-70067 CRITICAL - 9.8

Buffer Overflow vulnerability exists in Assimp versions up to 6.0.2 in the FBX Importer. The vulnerability occurs in aiMaterial::AddBinaryProperty, where a property key string from a crafted FBX file is copied into a fixed-size heap buffer using strcpy() without runtime length validation

Published: May 04, 2026
Source: NVD
CVE-2026-7482 CRITICAL - 9.1

Ollama before 0.17.1 contains a heap out-of-bounds read vulnerability in the GGUF model loader. The /api/create endpoint accepts an attacker-supplied GGUF file in which the declared tensor offset and size exceed the file's actual length; during quantization in fs/ggml/gguf.go and server/quantiz...

Vendor: ollama
Product: ollama
Published: May 04, 2026
Source: NVD
CVE-2026-7747 CRITICAL - 9.8

A security flaw has been discovered in Totolink N300RH 3.2.4-B20220812. Affected by this vulnerability is the function loginauth of the file /cgi-bin/cstecgi.cgi of the component Parameter Handler. Performing a manipulation of the argument Password results in buffer overflow. The attack can be initi...

Published: May 04, 2026
Source: NVD
CVE-2025-14320 CRITICAL - 9.8

Improper neutralization of input during web page generation ('cross-site scripting') vulnerability in Tegsoft Management and Information Services Trade Limited Company Online Support Application allows Reflected XSS. This issue affects Online Support Application: from V3 through 31122025.

Vendor: Tegsoft Management and Information Services Trade Limited Company
Product: Online Support Application
Published: May 04, 2026
Source: NVD
CVE-2026-7719 CRITICAL - 9.8

A security flaw has been discovered in Totolink WA300 5.2cu.7112_B20190227. The affected element is the function loginauth of the file /cgi-bin/cstecgi.cgi of the component POST Request Handler. The manipulation of the argument http_host results in buffer overflow. The attack may be launched remotel...

Published: May 04, 2026
Source: NVD
CVE-2026-7372 CRITICAL - 9.0

A stack overflow vulnerability exists in the WebCam Server Login functionality of GeoVision GV-VMS V20 20.0.2. A specially crafted HTTP request can lead to an arbitrary code execution. An attacker can make an unauthenticated HTTP request to trigger this vulnerability. #### Stack-overflow via uncons...

Vendor: geovision
Product: gv-vms_firmware
Published: May 04, 2026
Source: NVD
CVE-2026-7161 CRITICAL - 9.3

An insufficient encryption vulnerability exists in the Device Authentication functionality of GeoVision GV-IP Device Utility 9.0.5. Listening to broadcast packets can lead to credentials leak. An attacker can listen to broadcast messages to trigger this vulnerability. When interacting with various...

Vendor: geovision
Product: gv-ip_device_utility
Published: May 04, 2026
Source: NVD
CVE-2026-42370 CRITICAL - 9.0

A stack overflow vulnerability exists in the WebCam Server Login functionality of GeoVision GV-VMS V20 20.0.2. A specially crafted HTTP request can lead to an arbitrary code execution. An attacker can make an unauthenticated HTTP request to trigger this vulnerability.

Vendor: GeoVision Inc.
Product: GV-VMS V20.0.2
Published: May 04, 2026
Source: NVD