Vulnerability index

Browse CVEs

10,000+ matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Filtering by weakness Improper Input ValidationCWE-20 × clear
Chrome MEDIUM 5.3
CVE-2026-14414

Insufficient validation of untrusted input in Skia in Google Chrome prior to 150.0.7871.46 allowed a remote attacker who had compromised the renderer…

Fix: 150.0.7871.46+
Fix from $1,600 2026-07-01
Chrome HIGH 8.3
CVE-2026-14401

Insufficient validation of untrusted input in ANGLE in Google Chrome on Android prior to 150.0.7871.46 allowed a remote attacker who had compromised …

Fix: 150.0.7871.46+
Fix from $1,950 2026-07-01
Chrome CRITICAL 9.6
CVE-2026-14382

Insufficient validation of untrusted input in ANGLE in Google Chrome prior to 150.0.7871.46 allowed a remote attacker to potentially perform a sandbo…

Fix: 150.0.7871.46+
Fix from $2,300 2026-07-01
Unclassified HIGH 7.5
CVE-2026-38891

An improper input validation in the gazebo_ros_diff_drive.cpp component of gazebo_plugins v3.9.0 allows attackers to cause a Denial of Service (DoS) …

Mitigation only
Fix from $1,950 2026-07-01
Containerd CRITICAL 9.6
CVE-2026-53492

containerd is an open-source container runtime. In Versions prior to 2.3.2, 2.2.5 and 2.1.9, the CRI implementation improperly trusts Container Devic…

Fix: 2.1.9 / 2.2.5+
Fix from $2,300 2026-07-01
Kibana MEDIUM 6.5
CVE-2026-56151

Improper Input Validation (CWE-20) in Kibana can lead to a denial of service via Input Data Manipulation (CAPEC-153). An authenticated user can submi…

Fix: 8.19.17 / 9.3.6+
Fix from $1,600 2026-07-01
Mediawiki HIGH 8.8
CVE-2026-13706

Improper input validation vulnerability in Wikimedia Foundation UrlShortener. This vulnerability is associated with program files includes/UrlShort…

Fix: 1.43.9 / 1.44.6+
Fix from $1,950 2026-07-01
Unclassified HIGH 7.7
CVE-2026-13602

We found a chain of combining multiple weaknesses in the product that could allow an attacker to become any user in the backend and access any data: …

Mitigation only
Fix from $1,950 2026-07-01
Unclassified CRITICAL 9.0
CVE-2026-13603

The payment integration pretix-oppwa provides support for the payment providers VR Payment, Hobex, and potentially others based on Oppwa's technolo…

Mitigation only
Fix from $2,300 2026-07-01
Containerd HIGH 8.8
CVE-2026-53488

containerd is an open-source container runtime. In versions prior to 1.7.33, 2.3.2, 2.2.5, 2.1.9, and 2.0.10 the CRI plugin propagates labels from an…

Fix: 1.7.33 / 2.0.10+
Fix from $1,950 2026-07-01
Chrome MEDIUM 5.4
CVE-2026-14150

Insufficient validation of untrusted input in Speech in Google Chrome prior to 150.0.7871.47 allowed a remote attacker who had compromised the render…

Fix: 150.0.7871.47+
Fix from $1,600 2026-06-30
Unclassified MEDIUM 5.6
CVE-2026-28322

SolarWinds Database Performance Analyzer was found to be affected by a stored cross-site scripting vulnerability, which when exploited, can lead to u…

Mitigation only
Fix from $1,600 2026-06-30
Chrome MEDIUM 5.4
CVE-2026-14135

Insufficient validation of untrusted input in Network in Google Chrome prior to 150.0.7871.47 allowed a remote attacker who had compromised the rende…

Fix: 150.0.7871.47+
Fix from $1,600 2026-06-30
Chrome MEDIUM 5.4
CVE-2026-14131

Insufficient validation of untrusted input in WebAppInstalls in Google Chrome prior to 150.0.7871.47 allowed a remote attacker who had compromised th…

Fix: 150.0.7871.47+
Fix from $1,600 2026-06-30
Chrome HIGH 7.5
CVE-2026-14115

Insufficient validation of untrusted input in Cast in Google Chrome prior to 150.0.7871.47 allowed a remote attacker who had compromised the renderer…

Fix: 150.0.7871.46+
Fix from $1,950 2026-06-30
Chrome MEDIUM 5.3
CVE-2026-14117

Insufficient validation of untrusted input in DevTools in Google Chrome on Windows prior to 150.0.7871.47 allowed a remote attacker who convinced a u…

Fix: 150.0.7871.47+
Fix from $1,600 2026-06-30
Chrome MEDIUM 6.5
CVE-2026-14118

Insufficient data validation in DevTools in Google Chrome prior to 150.0.7871.47 allowed a remote attacker who convinced a user to engage in specific…

Fix: 150.0.7871.47+
Fix from $1,600 2026-06-30
Chrome CRITICAL 9.6
CVE-2026-14120

Inappropriate implementation in DevTools in Google Chrome prior to 150.0.7871.47 allowed a remote attacker who had compromised the renderer process t…

Fix: 150.0.7871.47+
Fix from $2,300 2026-06-30
Chrome HIGH 8.1
CVE-2026-14122

Insufficient validation of untrusted input in WebAppInstalls in Google Chrome on Windows prior to 150.0.7871.47 allowed a remote attacker to perform …

Fix: 150.0.7871.47+
Fix from $1,950 2026-06-30
Chrome CRITICAL 9.8
CVE-2026-14104

Insufficient validation of untrusted input in WebAppInstalls in Google Chrome prior to 150.0.7871.47 allowed a remote attacker to execute arbitrary c…

Fix: 150.0.7871.47+
Fix from $2,300 2026-06-30
Chrome CRITICAL 9.6
CVE-2026-14106

Insufficient validation of untrusted input in Text in Google Chrome on Android prior to 150.0.7871.47 allowed a remote attacker who had compromised t…

Fix: 150.0.7871.47+
Fix from $2,300 2026-06-30
Chrome CRITICAL 9.6
CVE-2026-14109

Insufficient policy enforcement in Mojo in Google Chrome prior to 150.0.7871.47 allowed a remote attacker who had compromised the renderer process to…

Fix: 150.0.7871.47+
Fix from $2,300 2026-06-30
Chrome CRITICAL 9.6
CVE-2026-14095

Insufficient policy enforcement in Browser in Google Chrome prior to 150.0.7871.47 allowed a remote attacker who had compromised the renderer process…

Fix: 150.0.7871.46+
Fix from $2,300 2026-06-30
Chrome MEDIUM 6.5
CVE-2026-14100

Insufficient data validation in NetworkCache in Google Chrome prior to 150.0.7871.47 allowed a remote attacker to leak cross-origin data via a crafte…

Fix: 150.0.7871.46+
Fix from $1,600 2026-06-30
Chrome MEDIUM 6.1
CVE-2026-14083

Insufficient validation of untrusted input in HTML in Google Chrome prior to 150.0.7871.47 allowed a remote attacker to inject arbitrary scripts or H…

Fix: 150.0.7871.47+
Fix from $1,600 2026-06-30
Chrome HIGH 8.8
CVE-2026-14084

Insufficient validation of untrusted input in Chromoting in Google Chrome prior to 150.0.7871.47 allowed a remote attacker to potentially exploit hea…

Fix: 150.0.7871.47+
Fix from $1,950 2026-06-30
Chrome HIGH 8.8
CVE-2026-14087

Heap buffer overflow in WebNN in Google Chrome on Windows prior to 150.0.7871.47 allowed a remote attacker who had compromised the renderer process t…

Fix: 150.0.7871.47+
Fix from $1,950 2026-06-30
Chrome HIGH 8.8
CVE-2026-14078

Insufficient validation of untrusted input in WebRTC in Google Chrome prior to 150.0.7871.47 allowed a remote attacker to perform privilege escalatio…

Fix: 150.0.7871.47+
Fix from $1,950 2026-06-30
Chrome HIGH 7.8
CVE-2026-14060

Insufficient validation of untrusted input in Chromoting in Google Chrome on Windows prior to 150.0.7871.47 allowed a local attacker to perform privi…

Fix: 150.0.7871.47+
Fix from $1,950 2026-06-30
Chrome MEDIUM 6.5
CVE-2026-14065

Insufficient validation of untrusted input in PageInfo in Google Chrome prior to 150.0.7871.47 allowed a remote attacker who had compromised the rend…

Fix: 150.0.7871.47+
Fix from $1,600 2026-06-30