Total CVEs

137,287

Critical Severity

3,310

High Severity

12,270

Last 7 Days

1,286
Quick preset (or use dates below)
Clear Filters
📅 Showing Year: 2026 (January 1 - December 31, 2026) View All Years →
Showing 1,381 - 1,400 of 33,692 CVEs
CVE-2026-20253 CRITICAL - 9.8

In Splunk Enterprise 10.2 versions below 10.2.4 and 10 versions below 10.0.7, an unauthenticated user could create or truncate arbitrary files through a PostgreSQL sidecar service endpoint. The vulnerability exists because the PostgreSQL sidecar service endpoint lacks authentication controls, allowi...

Vendor: Splunk
Product: Splunk Enterprise, Splunk Cloud Platform
Published: Jun 10, 2026
Source: NVD
CVE-2026-20252 HIGH - 7.6

In Splunk Enterprise versions below 10.2.4, 10.0.7, 9.4.12, and 9.3.13, and Splunk Cloud Platform versions below 10.4.2604.3, 10.3.2512.12, 10.2.2510.14, 10.1.2507.22, and 9.3.2411.132, a low-privileged user that does not hold the "admin" or "power" Splunk roles could send server...

Vendor: Splunk
Product: Splunk Enterprise, Splunk Cloud Platform
Published: Jun 10, 2026
Source: NVD
CVE-2026-20251 HIGH - 8.8

In Splunk Enterprise versions below 10.2.4, 10.0.7, 9.4.12, and 9.3.13, Splunk Cloud Platform versions below 10.3.2512.12, 10.2.2510.14, 10.1.2507.22, and 9.3.2411.132, and Splunk Secure Gateway versions below 3.10.6, 3.9.20, and 3.8.67, a low-privileged user that does not hold the 'admin'...

Vendor: Splunk
Product: Splunk Enterprise, Splunk Cloud Platform, Splunk Secure Gateway
Published: Jun 10, 2026
Source: NVD
CVE-2026-11596 MEDIUM - 4.7

In ScreenConnect™ versions prior to 26.2, input validation within the Host Pass creation functionality could allow an authenticated user with Host Pass creation privileges the ability to specify a token expiration duration beyond the intended maximum when generating delegated access tokens.

Vendor: ConnectWise
Product: ScreenConnect
Published: Jun 10, 2026
Source: NVD
CVE-2026-11417 HIGH - 7.3

OS command injection in the NodejsFunction local bundling pipeline in aws-cdk-lib before 2.245.0 (2.246.0 on Windows) might allow an actor who controls the value of one or more bundling properties (externalModules, define, loader, inject, or esbuildArgs) to execute arbitrary commands on the host run...

Vendor: AWS
Product: AWS Cloud Development Kit library
Published: Jun 10, 2026
Source: NVD
CVE-2026-47701 HIGH - 7.7

OpenTelemetry Operator for Kubernetes's ServiceMonitor bearerTokenFile reads arbitrary local file and sends contents as bearer auth

Vendor: go
Product: github.com/open-telemetry/opentelemetry-operator
Published: Jun 10, 2026
Source: GitHub
CVE-2026-47253 HIGH - 7.3

Anyquery has Path Traversal through `clear_plugin_cache`, Allowing Arbitrary Directory Deletion

Vendor: go
Product: github.com/julien040/anyquery
Published: Jun 10, 2026
Source: GitHub
CVE-2026-47155 MEDIUM - 6.5

vLLM's Artifact Pin Decay allows pinned deployments to load unpinned code, weights, and processors

Vendor: pip
Product: vllm
Published: Jun 10, 2026
Source: GitHub
CVE-2025-53114 HIGH - 7.5

Acknowledgement extension out of memory

Vendor: maven
Product: org.cometd.java:cometd-java-server-common
Published: Jun 10, 2026
Source: GitHub
CVE-2026-53698 MEDIUM - 6.5

Silverpeas through 6.4.6 mishandles the "Personal space" feature that is selected when no componentId is set.

Vendor: Silverpeas
Product: Silverpeas
Published: Jun 10, 2026
Source: NVD

Improper Neutralization of Argument Delimiters in a Command ('Argument Injection') vulnerability in Nomachine allows Argument Injection.This issue affects Nomachine: before 9.5.7, before 8.23.2.

Vendor: NoMachine
Product: NoMachine
Published: Jun 10, 2026
Source: NVD

A stored cross-site scripting vulnerability existed in MISP BSimVis tag rendering code. Several client-side rendering paths interpolated tag names, collection names, entity identifiers, cluster names, and tag metadata directly into HTML, HTML attributes, inline JavaScript event handlers, and CSS sty...

Vendor: misp
Product: bsimvis
Published: Jun 10, 2026
Source: NVD
CVE-2026-49760 MEDIUM - 5.5

Stack-based Buffer Overflow vulnerability in Erlang OTP (erl_interface) allows Stack-based Buffer Overflow. This vulnerability is associated with program file lib/erl_interface/src/misc/ei_printterm.c and program routine ei_s_print_term. The C function ei_s_print_term uses an internal 2000-charact...

Vendor: Erlang
Product: OTP
Published: Jun 10, 2026
Source: NVD
CVE-2026-49759 HIGH - 8.2

Stack-based Buffer Overflow vulnerability in Erlang OTP erts (inet_drv) allows an unauthenticated remote attacker to crash the BEAM VM by sending a crafted SCTP ERROR chunk. The sctp_parse_error_chunk function in erts/emulator/drivers/common/inet_drv.c parses SCTP ERROR chunks and writes cause code...

Vendor: Erlang
Product: OTP
Published: Jun 10, 2026
Source: NVD
CVE-2026-48860 MEDIUM - 6.5

Reliance on IP Address for Authentication vulnerability in Erlang/OTP ssl (inet_tls_dist module) allows unauthenticated bypass of the distribution-over-TLS LAN allowlist. The inet_tls_dist:check_ip/1 function, which enforces a LAN allowlist for Erlang distribution over TLS, calls inet:sockname/1 in...

Vendor: Erlang
Product: OTP
Published: Jun 10, 2026
Source: NVD
CVE-2026-48859 MEDIUM - 5.3

Observable Timing Discrepancy vulnerability in Erlang/OTP ssh (ssh_auth, ssh_options modules) allows unauthenticated remote username enumeration via timing side-channel in password authentication. When the SSH daemon is configured with the user_passwords or password option, ssh_auth:check_password/...

Vendor: Erlang
Product: OTP
Published: Jun 10, 2026
Source: NVD
CVE-2026-48858 MEDIUM - 6.5

Server-Side Request Forgery (SSRF) vulnerability in Erlang/OTP ftp (ftp_internal module) allows FTP bounce attacks and SSRF via an unvalidated PASV response IP address. The ftp_internal:handle_ctrl_result/2 PASV handler (mode=passive, ipfamily=inet, ftp_extension=false) extracts the IP address from...

Vendor: Erlang
Product: OTP
Published: Jun 10, 2026
Source: NVD
CVE-2026-48856 MEDIUM - 6.5

Sensitive Data Exposure vulnerability in Erlang OTP inets (httpc_response module) allows Retrieve Embedded Sensitive Data. The httpc client forwards the Authorization and Proxy-Authorization request headers to redirect targets without checking whether the redirect crosses an origin boundary. httpc_...

Vendor: Erlang
Product: OTP
Published: Jun 10, 2026
Source: NVD
CVE-2026-48855 MEDIUM - 6.5

Exposure of Sensitive Information to an Unauthorized Actor vulnerability in Erlang OTP ssh (ssh_sftpd module) allows File Discovery. The SSH_FXP_READLINK handler in ssh_sftpd sends the raw result of file:read_link/2 to the client without calling chroot_filename/2 to strip the backend root prefix. A...

Vendor: Erlang
Product: OTP
Published: Jun 10, 2026
Source: NVD
CVE-2026-48096 MEDIUM - 5.0

OpenFGA is an authorization/permission engine built for developers. Prior to version 1.16.0, when iterator caching is enabled, two distinct check requests can produce the same cache key, leading to OpenFGA reusing an earlier cached result for a subsequent request. This issue has been patched in vers...

Vendor: openfga
Product: openfga
Published: Jun 10, 2026
Source: NVD