Vulnerability index

Browse CVEs

10,000+ matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Filtering by weakness Improper Input ValidationCWE-20 × clear
MEDIUM 5.3 CVE-2026-14414 Insufficient validation of untrusted input in Skia in Google Chrome prior to 150.0.7871.46 allowed a remote attacker who had compromised the renderer… Chrome 150.0.7871.46+ Fix from $1,6002026-07-01 HIGH 8.3 CVE-2026-14401 Insufficient validation of untrusted input in ANGLE in Google Chrome on Android prior to 150.0.7871.46 allowed a remote attacker who had compromised … Chrome 150.0.7871.46+ Fix from $1,9502026-07-01 CRITICAL 9.6 CVE-2026-14382 Insufficient validation of untrusted input in ANGLE in Google Chrome prior to 150.0.7871.46 allowed a remote attacker to potentially perform a sandbo… Chrome 150.0.7871.46+ Fix from $2,3002026-07-01 HIGH 7.5 CVE-2026-38891 An improper input validation in the gazebo_ros_diff_drive.cpp component of gazebo_plugins v3.9.0 allows attackers to cause a Denial of Service (DoS) … Mitigation only Fix from $1,9502026-07-01 CRITICAL 9.6 CVE-2026-53492 containerd is an open-source container runtime. In Versions prior to 2.3.2, 2.2.5 and 2.1.9, the CRI implementation improperly trusts Container Devic… Containerd 2.1.9 / 2.2.5+ Fix from $2,3002026-07-01 MEDIUM 6.5 CVE-2026-56151 Improper Input Validation (CWE-20) in Kibana can lead to a denial of service via Input Data Manipulation (CAPEC-153). An authenticated user can submi… Kibana 8.19.17 / 9.3.6+ Fix from $1,6002026-07-01 HIGH 8.8 CVE-2026-13706 Improper input validation vulnerability in Wikimedia Foundation UrlShortener. This vulnerability is associated with program files includes/UrlShort… Mediawiki 1.43.9 / 1.44.6+ Fix from $1,9502026-07-01 HIGH 7.7 CVE-2026-13602 We found a chain of combining multiple weaknesses in the product that could allow an attacker to become any user in the backend and access any data: … Mitigation only Fix from $1,9502026-07-01 CRITICAL 9.0 CVE-2026-13603 The payment integration pretix-oppwa provides support for the payment providers VR Payment, Hobex, and potentially others based on Oppwa's technolo… Mitigation only Fix from $2,3002026-07-01 HIGH 8.8 CVE-2026-53488 containerd is an open-source container runtime. In versions prior to 1.7.33, 2.3.2, 2.2.5, 2.1.9, and 2.0.10 the CRI plugin propagates labels from an… Containerd 1.7.33 / 2.0.10+ Fix from $1,9502026-07-01 MEDIUM 5.4 CVE-2026-14150 Insufficient validation of untrusted input in Speech in Google Chrome prior to 150.0.7871.47 allowed a remote attacker who had compromised the render… Chrome 150.0.7871.47+ Fix from $1,6002026-06-30 MEDIUM 5.6 CVE-2026-28322 SolarWinds Database Performance Analyzer was found to be affected by a stored cross-site scripting vulnerability, which when exploited, can lead to u… Mitigation only Fix from $1,6002026-06-30 MEDIUM 5.4 CVE-2026-14135 Insufficient validation of untrusted input in Network in Google Chrome prior to 150.0.7871.47 allowed a remote attacker who had compromised the rende… Chrome 150.0.7871.47+ Fix from $1,6002026-06-30 MEDIUM 5.4 CVE-2026-14131 Insufficient validation of untrusted input in WebAppInstalls in Google Chrome prior to 150.0.7871.47 allowed a remote attacker who had compromised th… Chrome 150.0.7871.47+ Fix from $1,6002026-06-30 HIGH 7.5 CVE-2026-14115 Insufficient validation of untrusted input in Cast in Google Chrome prior to 150.0.7871.47 allowed a remote attacker who had compromised the renderer… Chrome 150.0.7871.46+ Fix from $1,9502026-06-30 MEDIUM 5.3 CVE-2026-14117 Insufficient validation of untrusted input in DevTools in Google Chrome on Windows prior to 150.0.7871.47 allowed a remote attacker who convinced a u… Chrome 150.0.7871.47+ Fix from $1,6002026-06-30 MEDIUM 6.5 CVE-2026-14118 Insufficient data validation in DevTools in Google Chrome prior to 150.0.7871.47 allowed a remote attacker who convinced a user to engage in specific… Chrome 150.0.7871.47+ Fix from $1,6002026-06-30 CRITICAL 9.6 CVE-2026-14120 Inappropriate implementation in DevTools in Google Chrome prior to 150.0.7871.47 allowed a remote attacker who had compromised the renderer process t… Chrome 150.0.7871.47+ Fix from $2,3002026-06-30 HIGH 8.1 CVE-2026-14122 Insufficient validation of untrusted input in WebAppInstalls in Google Chrome on Windows prior to 150.0.7871.47 allowed a remote attacker to perform … Chrome 150.0.7871.47+ Fix from $1,9502026-06-30 CRITICAL 9.8 CVE-2026-14104 Insufficient validation of untrusted input in WebAppInstalls in Google Chrome prior to 150.0.7871.47 allowed a remote attacker to execute arbitrary c… Chrome 150.0.7871.47+ Fix from $2,3002026-06-30 CRITICAL 9.6 CVE-2026-14106 Insufficient validation of untrusted input in Text in Google Chrome on Android prior to 150.0.7871.47 allowed a remote attacker who had compromised t… Chrome 150.0.7871.47+ Fix from $2,3002026-06-30 CRITICAL 9.6 CVE-2026-14109 Insufficient policy enforcement in Mojo in Google Chrome prior to 150.0.7871.47 allowed a remote attacker who had compromised the renderer process to… Chrome 150.0.7871.47+ Fix from $2,3002026-06-30 CRITICAL 9.6 CVE-2026-14095 Insufficient policy enforcement in Browser in Google Chrome prior to 150.0.7871.47 allowed a remote attacker who had compromised the renderer process… Chrome 150.0.7871.46+ Fix from $2,3002026-06-30 MEDIUM 6.5 CVE-2026-14100 Insufficient data validation in NetworkCache in Google Chrome prior to 150.0.7871.47 allowed a remote attacker to leak cross-origin data via a crafte… Chrome 150.0.7871.46+ Fix from $1,6002026-06-30 MEDIUM 6.1 CVE-2026-14083 Insufficient validation of untrusted input in HTML in Google Chrome prior to 150.0.7871.47 allowed a remote attacker to inject arbitrary scripts or H… Chrome 150.0.7871.47+ Fix from $1,6002026-06-30 HIGH 8.8 CVE-2026-14084 Insufficient validation of untrusted input in Chromoting in Google Chrome prior to 150.0.7871.47 allowed a remote attacker to potentially exploit hea… Chrome 150.0.7871.47+ Fix from $1,9502026-06-30 HIGH 8.8 CVE-2026-14087 Heap buffer overflow in WebNN in Google Chrome on Windows prior to 150.0.7871.47 allowed a remote attacker who had compromised the renderer process t… Chrome 150.0.7871.47+ Fix from $1,9502026-06-30 HIGH 8.8 CVE-2026-14078 Insufficient validation of untrusted input in WebRTC in Google Chrome prior to 150.0.7871.47 allowed a remote attacker to perform privilege escalatio… Chrome 150.0.7871.47+ Fix from $1,9502026-06-30 HIGH 7.8 CVE-2026-14060 Insufficient validation of untrusted input in Chromoting in Google Chrome on Windows prior to 150.0.7871.47 allowed a local attacker to perform privi… Chrome 150.0.7871.47+ Fix from $1,9502026-06-30 MEDIUM 6.5 CVE-2026-14065 Insufficient validation of untrusted input in PageInfo in Google Chrome prior to 150.0.7871.47 allowed a remote attacker who had compromised the rend… Chrome 150.0.7871.47+ Fix from $1,6002026-06-30