Total CVEs

138,363

Critical Severity

3,557

High Severity

12,776

Last 7 Days

1,909
Quick preset (or use dates below)
Clear Filters
📅 Showing Year: 2026 (January 1 - December 31, 2026) View All Years →
Showing 1,581 - 1,600 of 3,431 CVEs
CVE-2025-61260 CRITICAL - 9.8

A vulnerability was identified in OpenAI Codex CLI v0.23.0 and before that enables code execution through malicious MCP (Model Context Protocol) configuration files. The attack is triggered when a user runs the codex command inside a malicious or compromised repository. Codex automatically loads pro...

Published: Apr 14, 2026
Source: NVD
CVE-2026-31049 CRITICAL - 9.8

An issue in Hostbill v.2025-11-24 and 2025-12-01 allows a remote attacker to execute arbitrary code and escalate privileges via the CSV registration field

Published: Apr 14, 2026
Source: NVD
CVE-2026-31908 CRITICAL - 9.1

Header injection vulnerability in Apache APISIX. The attacker can take advantage of certain configuration in forward-auth plugin to inject malicious headers. This issue affects Apache APISIX: from 2.12.0 through 3.15.0. Users are recommended to upgrade to version 3.16.0, which fixes the issue.

Vendor: Apache Software Foundation
Product: Apache APISIX
Published: Apr 14, 2026
Source: NVD
CVE-2026-40315 CRITICAL - 9.8

PraisonAI is a multi-agent teams system. Prior to 4.5.133, there is an SQL identifier injection vulnerability in SQLiteConversationStore where the table_prefix configuration value is directly concatenated into SQL queries via f-strings without any validation or sanitization. Since SQL identifiers ca...

Vendor: MervinPraison
Product: PraisonAI
Published: Apr 14, 2026
Source: NVD
CVE-2026-40313 CRITICAL - 9.1

PraisonAI is a multi-agent teams system. In versions 4.5.139 and below, the GitHub Actions workflows are vulnerable to ArtiPACKED attack, a known credential leakage vector caused by using actions/checkout without setting persist-credentials: false. By default, actions/checkout writes the GITHUB_TOKE...

Vendor: MervinPraison
Product: PraisonAI
Published: Apr 14, 2026
Source: NVD
CVE-2026-40289 CRITICAL - 9.1

PraisonAI is a multi-agent teams system. In versions below 4.5.139 of PraisonAI and 1.5.140 of praisonaiagents, the browser bridge (praisonai browser start) is vulnerable to unauthenticated remote session hijacking due to missing authentication and a bypassable origin check on its /ws WebSocket endp...

Vendor: MervinPraison
Product: PraisonAI, praisonaiagents
Published: Apr 14, 2026
Source: NVD
CVE-2026-40288 CRITICAL - 9.8

PraisonAI is a multi-agent teams system. In versions below 4.5.139 of PraisonAI and 1.5.140 of praisonaiagents, the workflow engine is vulnerable to arbitrary command and code execution through untrusted YAML files. When praisonai workflow run <file.yaml> loads a YAML file with type: job, the ...

Vendor: MervinPraison
Product: PraisonAI, praisonaiagents
Published: Apr 14, 2026
Source: NVD
CVE-2026-6264 CRITICAL - 9.8

A critical vulnerability in the Talend JobServer and Talend Runtime allows unauthenticated remote code execution via the JMX monitoring port. The attack vector is the JMX monitoring port of the Talend JobServer. The vulnerability can be mitigated for the Talend JobServer by requiring TLS client auth...

Published: Apr 14, 2026
Source: NVD
CVE-2026-4365 CRITICAL - 9.1

The LearnPress plugin for WordPress is vulnerable to unauthorized data deletion due to a missing capability check on the `delete_question_answer()` function in all versions up to, and including, 4.3.2.8. The plugin exposes a `wp_rest` nonce in public frontend HTML (`lpData`) to unauthenticated visit...

Published: Apr 14, 2026
Source: NVD
CVE-2026-27681 CRITICAL - 9.9

Due to insufficient authorization checks in SAP Business Planning and Consolidation and SAP Business Warehouse, an authenticated user can execute crafted SQL statements to read, modify, and delete database data. This leads to a high impact on the confidentiality, integrity, and availability of the s...

Vendor: SAP_SE
Product: SAP Business Planning and Consolidation and SAP Business Warehouse
Published: Apr 14, 2026
Source: NVD
CVE-2026-22564 CRITICAL - 9.8

An Improper Access Control vulnerability could allow a malicious actor with access to the UniFi Play network to enable SSH to make unauthorized changes to the system.
 Affected Products: UniFi Play PowerAmp (Version 1.0.35 and earlier)
 UniFi Play Audio Port  (Version 1.0.24 and earlier)
 Mitiga...

Vendor: Ubiquiti Inc
Product: UniFi Play PowerAmp, UniFi Play Audio Port
Published: Apr 13, 2026
Source: NVD
CVE-2026-22563 CRITICAL - 9.8

A series of Improper Input Validation vulnerabilities could allow a Command Injection by a malicious actor with access to the UniFi Play network. Affected Products: UniFi Play PowerAmp (Version 1.0.35 and earlier)
 UniFi Play Audio Port  (Version 1.0.24 and earlier)
 Mitigation: Update UniFi Pla...

Vendor: Ubiquiti Inc
Product: UniFi Play PowerAmp, UniFi Play Audio Port
Published: Apr 13, 2026
Source: NVD
CVE-2026-22562 CRITICAL - 9.8

A malicious actor with access to the UniFi Play network could exploit a Path Traversal vulnerability found in the device firmware to write files on the system that could be used for a remote code execution (RCE). Affected Products: UniFi Play PowerAmp (Version 1.0.35 and earlier)
UniFi Play Audio ...

Vendor: Ubiquiti Inc
Product: UniFi Play PowerAmp, UniFi Play Audio Port
Published: Apr 13, 2026
Source: NVD
CVE-2026-31048 CRITICAL - 9.8

An issue in the <code>pickle</code> protocol of Pyro v3.x allows attackers to execute arbitrary code via supplying a crafted pickled string message.

Published: Apr 13, 2026
Source: NVD
CVE-2026-40044 CRITICAL - 9.8

Pachno 1.0.6 contains a deserialization vulnerability that allows unauthenticated attackers to execute arbitrary code by injecting malicious serialized objects into cache files. Attackers can write PHP object payloads to world-writable cache files with predictable names in the cache directory, which...

Vendor: pancho
Product: Pachno
Published: Apr 13, 2026
Source: NVD
CVE-2026-40042 CRITICAL - 9.8

Pachno 1.0.6 contains an XML external entity injection vulnerability that allows unauthenticated attackers to read arbitrary files by exploiting unsafe XML parsing in the TextParser helper. Attackers can inject malicious XML entities through wiki table syntax and inline tags in issue descriptions, c...

Vendor: pancho
Product: Pachno
Published: Apr 13, 2026
Source: NVD
CVE-2026-6195 CRITICAL - 9.8

A security vulnerability has been detected in Totolink A7100RU 7.4cu.2313_b20191024. Affected by this issue is the function setPasswordCfg of the file /cgi-bin/cstecgi.cgi of the component CGI Handler. Such manipulation of the argument admpass leads to os command injection. The attack can be execute...

Published: Apr 13, 2026
Source: NVD

Decidim is a participatory democracy framework. In versions below 0.30.5 and 0.31.0.rc1 through 0.31.0, a stored code execution vulnerability in the user name field allows a low-privileged attacker to execute arbitrary code in the context of any user who passively visits a comment page, resulting in...

Vendor: decidim
Product: decidim
Published: Apr 13, 2026
Source: NVD
CVE-2026-31283 CRITICAL - 9.8

In Totara LMS v19.1.5 and before, the forgot password API does not implement rate limiting for the target email address. which can be used for an Email Bombing attack.

Published: Apr 13, 2026
Source: NVD
CVE-2026-31282 CRITICAL - 9.8

Totara LMS v19.1.5 and before is vulnerable to Incorrect Access Control. The login page code can be manipulated to reveal the login form. An attacker can chain that with missing rate-limit on the login form to launch a brute force attack.

Published: Apr 13, 2026
Source: NVD