Total CVEs

138,585

Critical Severity

3,576

High Severity

12,840

Last 7 Days

2,053
Quick preset (or use dates below)
Clear Filters
Showing 1,941 - 1,960 of 3,576 CVEs
CVE-2026-30533 CRITICAL - 9.8

A SQL Injection vulnerability exists in SourceCodester Online Food Ordering System v1.0 in the admin/manage_product.php file via the "id" parameter.

Vendor: oretnom23
Product: online_food_ordering_system
Published: Mar 27, 2026
Source: NVD
CVE-2026-30532 CRITICAL - 9.8

A SQL Injection vulnerability exists in SourceCodester Online Food Ordering System v1.0 in the admin/view_product.php file via the "id" parameter.

Vendor: oretnom23
Product: online_food_ordering_system
Published: Mar 27, 2026
Source: NVD
CVE-2026-30530 CRITICAL - 9.8

A SQL Injection vulnerability exists in SourceCodester Online Food Ordering System v1.0 in the Actions.php file (specifically the save_customer action). The application fails to properly sanitize user input supplied to the "username" parameter. This allows an attacker to inject malicious S...

Vendor: oretnom23
Product: online_food_ordering_system
Published: Mar 27, 2026
Source: NVD
CVE-2026-30302 CRITICAL - 10.0

The command auto-approval module in CodeRider-Kilo contains an OS Command Injection vulnerability, rendering its whitelist security mechanism ineffective. The vulnerability stems from the incorrect use of an incompatible command parser (the Unix-based shell-quote library) to analyze commands on the ...

Vendor: coderider-kilo
Product: coderider
Published: Mar 27, 2026
Source: NVD
CVE-2026-30304 CRITICAL - 9.6

In its design for automatic terminal command execution, AI Code offers two options: Execute safe commands and execute all commands. The description for the former states that commands determined by the model to be safe will be automatically executed, whereas if the model judges a command to be poten...

Vendor: tianguaduizhang
Product: ai_code
Published: Mar 27, 2026
Source: NVD
CVE-2026-30303 CRITICAL - 9.8

The command auto-approval module in Axon Code contains an OS Command Injection vulnerability, rendering its whitelist security mechanism ineffective. The vulnerability stems from the incorrect use of an incompatible command parser (the Unix-based shell-quote library) to analyze commands on the Windo...

Vendor: matterai
Product: axon_code
Published: Mar 27, 2026
Source: NVD
CVE-2026-27876 CRITICAL - 9.1

A chained attack via SQL Expressions and a Grafana Enterprise plugin can lead to a remote arbitrary code execution impact (RCE). This is enabled by a feature in Grafana (OSS), so all users are always recommended to update to avoid future attack vectors going this path. Only instances with the sqlEx...

Vendor: Grafana
Product: Grafana Enterprise
Published: Mar 27, 2026
Source: NVD
CVE-2026-25101 CRITICAL - 9.8

Bludit allows user's session identifier to be set before authentication. The value of this session ID stays the same after authentication. This behavior enables an attacker to fix a session ID for a victim and later hijack the authenticated session. This issue was fixed in version 3.17.2.

Vendor: Bludit
Product: Bludit
Published: Mar 27, 2026
Source: NVD
CVE-2026-22738 CRITICAL - 9.8

In Spring AI, a SpEL injection vulnerability exists in SimpleVectorStore when a user-supplied value is used as a filter expression key. A malicious actor could exploit this to execute arbitrary code. Only applications that use SimpleVectorStore and pass user-supplied input as a filter expression key...

Vendor: Spring
Product: Spring AI
Published: Mar 27, 2026
Source: NVD
CVE-2026-33890 CRITICAL - 9.8

MyTube is a self-hosted downloader and player for several video websites Prior to version 1.8.71, an unauthenticated attacker can register an arbitrary passkey and subsequently authenticate with it to obtain a full admin session. The application exposes passkey registration endpoints without requiri...

Vendor: franklioxygen
Product: MyTube
Published: Mar 27, 2026
Source: NVD
CVE-2026-33945 CRITICAL - 9.9

Incus is a system container and virtual machine manager. Incus instances have an option to provide credentials to systemd in the guest. For containers, this is handled through a shared directory. Prior to version 6.23.0, an attacker can set a configuration key named something like `systemd.credentia...

Vendor: lxc
Product: incus
Published: Mar 27, 2026
Source: NVD
CVE-2026-33897 CRITICAL - 9.9

Incus is a system container and virtual machine manager. Prior to version 6.23.0, instance template files can be used to cause arbitrary read or writes as root on the host server. Incus allows for pongo2 templates within instances which can be used at various times in the instance lifecycle to templ...

Vendor: lxc
Product: incus
Published: Mar 26, 2026
Source: NVD
CVE-2026-33640 CRITICAL - 9.8

Outline is a service that allows for collaborative documentation. Outline implements an Email OTP login flow for users not associated with an Identity Provider. Starting in version 0.86.0 and prior to version 1.6.0, Outline does not invalidate OTP codes based on amount or frequency of invalid submis...

Vendor: outline
Product: outline
Published: Mar 26, 2026
Source: NVD
CVE-2026-33152 CRITICAL - 9.1

Tandoor Recipes is an application for managing recipes, planning meals, and building shopping lists. In versions prior to 2.6.0, Tandoor Recipes configures Django REST Framework with BasicAuthentication as one of the default authentication backends. The AllAuth rate limiting configuration (ACCOUNT_R...

Vendor: TandoorRecipes
Product: recipes
Published: Mar 26, 2026
Source: NVD
CVE-2026-30458 CRITICAL - 9.1

An issue in Daylight Studio FuelCMS v1.5.2 allows attackers to exfiltrate users' password reset tokens via a mail splitting attack.

Vendor: thedaylightstudio
Product: fuel_cms
Published: Mar 26, 2026
Source: NVD
CVE-2026-30457 CRITICAL - 9.8

An issue in the /parser/dwoo component of Daylight Studio FuelCMS v1.5.2 allows attackers to execute arbitrary code via crafted PHP code.

Vendor: thedaylightstudio
Product: dwoo
Published: Mar 26, 2026
Source: NVD

Convict has Prototype Pollution via startsWith() function

Vendor: npm
Product: convict
Published: Mar 26, 2026
Source: GitHub

Convict has prototype pollution via load(), loadFile(), and schema initialization

Vendor: npm
Product: convict
Published: Mar 26, 2026
Source: GitHub
CVE-2026-33758 CRITICAL - 6.1

OpenBao is an open source identity-based secrets management system. Prior to version 2.5.2, OpenBao installations that have an OIDC/JWT authentication method enabled and a role with `callback_mode=direct` configured are vulnerable to XSS via the `error_description` parameter on the page for a faile...

Vendor: go
Product: github.com/openbao/openbao
Published: Mar 26, 2026
Source: GitHub
CVE-2026-33757 CRITICAL - 9.6

OpenBao is an open source identity-based secrets management system. Prior to version 2.5.2, OpenBao does not prompt for user confirmation when logging in via JWT/OIDC and a role with `callback_mode` set to `direct`. This allows an attacker to start an authentication request and perform "remote ...

Vendor: go
Product: github.com/openbao/openbao
Published: Mar 26, 2026
Source: GitHub