Total CVEs

138,940

Critical Severity

3,615

High Severity

12,982

Last 7 Days

1,022
Quick preset (or use dates below)
Clear Filters
📅 Showing Year: 2026 (January 1 - December 31, 2026) View All Years →
Showing 1 - 20 of 35,345 CVEs

Improper Validation of Specified Index, Position, or Offset in Input vulnerability in Google go-attestation. parseEfiSignatureList() does not advance the buffer past vendor bytes before reading entries. For hashSHA256SigGUID lists, this allows attacker-controlled vendor header bytes to be appended t...

Vendor: Google
Product: go-attestation
Published: Jun 24, 2026
Source: NVD
CVE-2026-54639 HIGH - 8.8

Style Dictionary, a build system for creating cross-platform styles, has a prototype pollution vulnerability starting in version 4.3.0 and prior to version 5.4.4. Impact users have: direct usage of `convertTokenData(tokens, { output: 'object' });`; indirect usage, via using Expand API; and...

Vendor: style-dictionary
Product: style-dictionary
Published: Jun 24, 2026
Source: NVD
CVE-2026-7574 HIGH - 8.7

Anthropic Claude Desktop Cowork VM image handling (confirmed across v1.1348.0 through v1.2278.0, including v1.1348.0, v1.1617.0, and v1.2278.0) validates only file presence and a version marker string before booting rootfs.img, but does not verify image content integrity at time-of-use. A local atta...

Published: Jun 24, 2026
Source: NVD

Missing cryptographic step in Caliptra Core Firmware (aes_256_gcm_update module) results in an incorrect GCM authentication tag. When the streaming AES-256-GCM API is used with empty AAD, the hardware GHASH accumulator state is not saved after the first update call, causing the final tag to exclude ...

Published: Jun 24, 2026
Source: NVD

Incorrect check of function return value in Caliptra Core Runtime Firmware (ActivateFirmwareCmd::activate_fw modules) allows bypass of Caliptra Core's verification of the MCU FW during a hitless update. This issue affects Core Runtime Firmware: from 2.0.0 through 2.0.1, 2.1.0.

Published: Jun 24, 2026
Source: NVD
CVE-2026-56785 HIGH - 8.2

FlatPress versions prior to commit 10be83c, contains a stored cross-site scripting vulnerability in comment and contact forms where name, URL, and email fields are rendered without proper output encoding in Smarty templates. Attackers can inject arbitrary HTML and JavaScript through these fields to ...

Vendor: FlatPress
Product: FlatPress
Published: Jun 23, 2026
Source: NVD
CVE-2026-54588 CRITICAL - 9.6

Poweradmin is a web-based DNS administration tool for PowerDNS server. Versions prior to 4.2.4 and 4.3.3 use the attacker-controlled `HTTP_HOST` request header as the authoritative source for building callback URLs in its OIDC, SAML, and logout authentication flows without any validation. An unauthe...

Vendor: poweradmin
Product: poweradmin
Published: Jun 23, 2026
Source: NVD
CVE-2026-12164 MEDIUM - 4.4

Fortra File Integrity Monitoring (FIM), formerly Tripwire Enterprise, versions prior to 9.4.0 may assign incorrect or elevated effective permissions to users created by the tetool import command while FIM is running, particularly when the import also creates or changes roles or role-permission relat...

Vendor: Fortra
Product: File Integrity Monitoring (FIM)
Published: Jun 23, 2026
Source: NVD
CVE-2026-12163 MEDIUM - 5.5

Fortra File Integrity Monitoring (FIM), formerly Tripwire Enterprise, versions prior to 9.4.0.1 contain a stored cross-site scripting (XSS) vulnerability in the Asset View UI component. An authenticated user with sufficient privileges to create or modify affected node or database configuration field...

Vendor: Fortra
Product: File Integrity Monitoring (FIM)
Published: Jun 23, 2026
Source: NVD

When using the "tarfile" module with a file opened in "streaming mode" (mode="r|") the tarfile module did not properly handle EOF, meaning an archive could be parsed in an infinite loop.

Vendor: Python Software Foundation
Product: CPython
Published: Jun 23, 2026
Source: NVD
CVE-2026-54329 HIGH - 8.5

Snipe-IT API Vulnerable to Cross-Tenant Accessory Injection

Vendor: composer
Product: snipe/snipe-it
Published: Jun 23, 2026
Source: GitHub

Snipe-IT's S3 signature image retrieval lacks authorization before temporary URL

Vendor: composer
Product: snipe/snipe-it
Published: Jun 23, 2026
Source: GitHub

Snipe-IT has Improper Authorization in File Deletion (IDOR)

Vendor: composer
Product: snipe/snipe-it
Published: Jun 23, 2026
Source: GitHub

Snipe-IT Vulnerable to Privilege Escalation via Missing admin Permission Check in User Creation

Vendor: composer
Product: snipe/snipe-it
Published: Jun 23, 2026
Source: GitHub
CVE-2026-55482 MEDIUM - 6.3

Snipe-IT has Multi-Tenancy Bypass via Bulk Asset Update

Vendor: composer
Product: snipe/snipe-it
Published: Jun 23, 2026
Source: GitHub
CVE-2026-50550 MEDIUM - 5.8

Snipe-IT has a 2FA reset privilege bypass

Vendor: composer
Product: snipe/snipe-it
Published: Jun 23, 2026
Source: GitHub
CVE-2026-49976 MEDIUM - 6.5

Snipe-IT Vulnerable to User Account Escalation via CSV Import

Vendor: composer
Product: snipe/snipe-it
Published: Jun 23, 2026
Source: GitHub
CVE-2026-49870 MEDIUM - 5.9

Snipe-IT's TOTP is Brute-Forceable Due to Missing Rate Limiting on `POST /two-factor`

Vendor: composer
Product: snipe/snipe-it
Published: Jun 23, 2026
Source: GitHub
CVE-2026-48500 MEDIUM - 6.5

Filament is a collection of full-stack components for accelerated Laravel development. From 3.0.0 until 3.3.52, 4.11.5, and 5.6.5, any schema can contain a file upload form field, so Filament applies Livewire's WithFileUploads trait to the Livewire component the schema is embedded in. However, ...

Vendor: composer
Product: filament/filament
Published: Jun 23, 2026
Source: GitHub
CVE-2026-48496 MEDIUM - 6.2

opentelemetry-ebpf-profiler: Unprivileged process can trigger a denial of service on the ebpf-profiler agent

Vendor: go
Product: go.opentelemetry.io/ebpf-profiler
Published: Jun 23, 2026
Source: GitHub