Vulnerability index

Browse CVEs

10,000+ matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Filtering by weakness Improper Input ValidationCWE-20 × clear
CRITICAL 9.6 CVE-2026-17713 Insufficient validation of untrusted input in Accessibility in Google Chrome on Android prior to 151.0.7922.72 allowed a remote attacker who had comp… No fix yet Fix from $2,3002026-07-30 HIGH 7.5 CVE-2026-17698 Insufficient validation of untrusted input in UI in Google Chrome on Android prior to 151.0.7922.72 allowed a local attacker to leak cross-origin dat… Chrome 151.0.7922.72+ Fix from $1,9502026-07-30 MEDIUM 6.5 CVE-2026-17690 Insufficient validation of untrusted input in PDF in Google Chrome on Android prior to 151.0.7922.72 allowed a local attacker to leak cross-origin da… Chrome 151.0.7922.72+ Fix from $1,6002026-07-30 MEDIUM 6.5 CVE-2026-17679 Insufficient validation of untrusted input in Print Preview in Google Chrome prior to 151.0.7922.72 allowed a remote attacker who had compromised the… Chrome 151.0.7922.72+ Fix from $1,6002026-07-30 CRITICAL 9.6 CVE-2026-17681 Insufficient validation of untrusted input in Web Authentication in Google Chrome on Android prior to 151.0.7922.72 allowed a remote attacker who had… Chrome 151.0.7922.72+ Fix from $2,3002026-07-30 CRITICAL 9.6 CVE-2026-17684 Insufficient validation of untrusted input in Chrome for iOS in Google Chrome on iOS prior to 151.0.7922.72 allowed a remote attacker who had comprom… Chrome 151.0.7922.72+ Fix from $2,3002026-07-30 HIGH 8.1 CVE-2026-17686 Insufficient validation of untrusted input in Passwords in Google Chrome prior to 151.0.7922.72 allowed a remote attacker who had compromised the ren… Chrome 151.0.7922.72+ Fix from $1,9502026-07-30 CRITICAL 9.6 CVE-2026-17671 Insufficient validation of untrusted input in ANGLE in Google Chrome prior to 151.0.7922.72 allowed a remote attacker who had compromised the rendere… Chrome 151.0.7922.72+ Fix from $2,3002026-07-30 CRITICAL 9.6 CVE-2026-17672 Insufficient validation of untrusted input in Chromecast in Google Chrome prior to 151.0.7922.72 allowed a remote attacker who had compromised the re… Chrome 151.0.7922.72+ Fix from $2,3002026-07-30 HIGH 8.3 CVE-2026-17663 Insufficient validation of untrusted input in GPU in Google Chrome on Android prior to 151.0.7922.72 allowed a remote attacker who had compromised th… Chrome 151.0.7922.72+ Fix from $1,9502026-07-30 MEDIUM 6.5 CVE-2026-17664 Insufficient validation of untrusted input in Loader in Google Chrome prior to 151.0.7922.72 allowed a remote attacker who had compromised the render… Chrome 151.0.7922.72+ Fix from $1,6002026-07-30 CRITICAL 9.6 CVE-2026-17655 Insufficient validation of untrusted input in ANGLE in Google Chrome prior to 151.0.7922.72 allowed a remote attacker to potentially perform a sandbo… Chrome 151.0.7922.72+ Fix from $2,3002026-07-30 HIGH 8.3 CVE-2026-17660 Insufficient validation of untrusted input in Network in Google Chrome prior to 151.0.7922.72 allowed a remote attacker who had compromised the rende… Chrome 151.0.7922.72+ Fix from $1,9502026-07-30 CRITICAL 9.6 CVE-2026-17651 Insufficient validation of untrusted input in Dawn in Google Chrome on Android prior to 151.0.7922.72 allowed a remote attacker to potentially perfor… Chrome 151.0.7922.72+ Fix from $2,3002026-07-30 HIGH 8.3 CVE-2026-67436 Linuxfabrik monitoring-plugins provides Python monitoring plugins for Icinga, Nagios, and related monitoring systems. In 6.0.0 and earlier, the redfi… No fix yet Fix from $1,9502026-07-29 MEDIUM 6.1 CVE-2026-54663 swagger-typescript-api generates API clients for Fetch or Axios from OpenAPI specifications. Prior to 13.12.2, src/resolved-swagger-schema.ts warmUpR… No fix yet Fix from $1,6002026-07-29 MEDIUM 5.3 CVE-2026-18174 @fastify/forwarded resolves client addresses from the X-Forwarded-For header. In versions before 3.0.2, when the header contains two or more comma se… Fastify\/forwarded 3.0.2+ Fix from $1,6002026-07-29 MEDIUM 6.5 CVE-2026-65891 Joomla Extension - joomlacontenteditor.net - Creation of hidden files and unintended file overwrite via rename function in Joomla Content Editor (JCE… Jce 2.20.2+ Fix from $1,6002026-07-29 HIGH 7.5 CVE-2026-58183 The Apache Traffic Server prefetch plugin can crash when processing attacker-influenced input. This issue affects Apache Traffic Server: from 8.0.0 … Traffic Server 9.2.15 / 10.1.4+ Fix from $1,9502026-07-29 HIGH 7.5 CVE-2026-58186 The Apache Traffic Server webp_transform plugin can decode unsafely and serve mislabeled, cacheable responses. This issue affects Apache Traffic Ser… Traffic Server 9.2.15 / 10.1.4+ Fix from $1,9502026-07-29 CRITICAL 9.1 CVE-2026-33267 Improper Input Validation vulnerability in Apache Traffic Server. This issue affects Apache Traffic Server: from 9.2.0 through 9.2.14, from 10.1.0 t… Traffic Server 9.2.15 / 10.1.4+ Fix from $2,3002026-07-29 HIGH 7.5 CVE-2026-47219 find-my-way is a framework-independent HTTP router that internally uses a Radix Tree and supports route parameters and wildcards. Versions prior to 9… No fix yet Fix from $1,9502026-07-28 MEDIUM 5.3 CVE-2026-56722 Dompdf is an HTML to PDF converter for PHP. In versions 3.15 and prior, aAn attacker who controls the HTML input can bypass this restriction by embed… Dompdf 3.1.6+ Fix from $1,6002026-07-28 HIGH 7.5 CVE-2026-55554 Dompdf is an HTML to PDF converter for PHP. In versions 3.15 and prior, the validateLocalUri() method enforces chroot boundaries with a strpos() pref… Dompdf 3.1.6+ Fix from $1,9502026-07-28 MEDIUM 5.4 CVE-2026-62828 Improper input validation in Microsoft Edge for Android allows an unauthorized attacker to perform tampering over a network. Edge No fix yet Fix from $1,6002026-07-28 HIGH 7.5 CVE-2026-59878 Improper Input Validation vulnerability in Apache ActiveMQ AMQP, Apache ActiveMQ, Apache ActiveMQ All. A remote unauthenticated peer that can reach … Activemq 5.19.9 / 6.2.8+ Fix from $1,9502026-07-28 MEDIUM 5.5 CVE-2026-62425 [This CNA information record relates to multiple CVEs; the text explains which aspects/vulnerabilities correspond to which CVE.] The directory and R… No fix yet Fix from $1,6002026-07-28 HIGH 7.1 CVE-2026-43813 A validation issue was addressed with improved input sanitization. This issue is fixed in iOS 26.6 and iPadOS 26.6, macOS Tahoe 26.6, tvOS 26.6, visi… Ipados 26.6+ Fix from $1,9502026-07-27 HIGH 7.5 CVE-2026-43777 This issue was addressed with improved input validation. This issue is fixed in macOS Sequoia 15.7.8, macOS Sonoma 14.8.8, macOS Tahoe 26.6. A remote… macOS 14.8.8 / 15.7.8+ Fix from $1,9502026-07-27 CRITICAL 9.8 CVE-2026-43793 An issue existed in the handling of environment variables. This issue was addressed with improved validation. This issue is fixed in macOS Sequoia 15… macOS 14.8.8 / 15.7.8+ Fix from $2,3002026-07-27