Vulnerability index

Browse CVEs

4,950 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Filtering by weakness InjectionCWE-74 × clear
Unclassified MEDIUM 6.3
CVE-2026-9379

A weakness has been identified in Edimax BR-6675nD 1.12. This impacts the function formWpsStart of the file /goform/formWpsStart of the component POS…

Mitigation only
Fix from $1,600 2026-05-24
Unclassified HIGH 7.3
CVE-2026-9364

A flaw has been found in projectworlds Online Art Gallery Shop 1.0. Impacted is an unknown function of the file /admin/adminHome.php. Executing a man…

Mitigation only
Fix from $1,950 2026-05-24
Unclassified HIGH 7.3
CVE-2026-9366

A vulnerability was found in NousResearch hermes-agent 2026.4.23. The impacted element is the function _scan_context_content of the file agent/prompt…

Mitigation only
Fix from $1,950 2026-05-24
Unclassified MEDIUM 6.3
CVE-2026-9362

A security vulnerability has been detected in Edimax EW-7438RPn 1.12. This vulnerability affects the function formConnectionSetting of the file /gofo…

Mitigation only
Fix from $1,600 2026-05-24
Unclassified MEDIUM 6.3
CVE-2026-9363

A vulnerability was detected in Edimax EW-7438RPn 1.12. This issue affects the function formEZCHNwlanSetup of the file /goform/formEZCHNwlanSetu of t…

Mitigation only
Fix from $1,600 2026-05-24
Unclassified MEDIUM 6.3
CVE-2026-9361

A weakness has been identified in Edimax EW-7438RPn 1.12. This affects the function formAccept of the file /goform/formAccep of the component POST Re…

Mitigation only
Fix from $1,600 2026-05-24
Unclassified MEDIUM 6.3
CVE-2026-9359

A vulnerability was identified in Edimax EW-7438RPn 1.28a. Affected by this vulnerability is the function formHwSet of the file /goform/formHwSet of …

Mitigation only
Fix from $1,600 2026-05-24
Unclassified HIGH 7.3
CVE-2026-9356

A vulnerability has been found in SourceCodester Hospitals Patient Records Management System 1.0. This affects an unknown function of the file /admin…

Mitigation only
Fix from $1,950 2026-05-24
Unclassified HIGH 7.3
CVE-2026-9353

A security vulnerability has been detected in NousResearch hermes-agent up to 2026.4.23. Impacted is an unknown function of the file agent/skills_gua…

Mitigation only
Fix from $1,950 2026-05-24
Unclassified MEDIUM 6.5
CVE-2026-9354

A vulnerability was detected in NousResearch hermes-agent up to 2026.4.16. The affected element is an unknown function of the component Slack Agent/M…

Mitigation only
Fix from $1,600 2026-05-24
Unclassified HIGH 7.3
CVE-2026-9355

A flaw has been found in SourceCodester Hospitals Patient Records Management System 1.0. The impacted element is an unknown function of the file /cla…

Mitigation only
Fix from $1,950 2026-05-24
Unclassified MEDIUM 6.3
CVE-2026-9342

A security flaw has been discovered in SourceCodester Hospitals Patient Records Management System 1.0. Impacted is an unknown function of the file /a…

Mitigation only
Fix from $1,600 2026-05-23
Unclassified MEDIUM 6.3
CVE-2026-9305

A weakness has been identified in QuantumNous new-api up to 0.12.1. The impacted element is the function SearchUserTopUps/SearchAllTopUps of the file…

Mitigation only
Fix from $1,600 2026-05-23
Unclassified MEDIUM 6.3
CVE-2026-9302

A vulnerability was determined in 546669204 vps-inventory-monitoring up to 98c00b370668c96ae75e91c15548d9ea113652d9. This issue affects the function …

Mitigation only
Fix from $1,600 2026-05-23
Unclassified MEDIUM 6.3
CVE-2026-9297

A security vulnerability has been detected in Edimax BR-6428NS 1.10. Affected is the function formWlbasic of the file /goform/formWlbasic of the comp…

Mitigation only
Fix from $1,600 2026-05-23
Unclassified MEDIUM 6.3
CVE-2026-9296

A weakness has been identified in Edimax BR-6428NS 1.10. This impacts the function system of the file /goform/formWlanM of the component POST Request…

Mitigation only
Fix from $1,600 2026-05-23
Unclassified CRITICAL 9.8
CVE-2026-6279

The Avada Builder (fusion-builder) plugin for WordPress is vulnerable to Unauthenticated Remote Code Execution via PHP Function Injection in versions…

Mitigation only
Fix from $2,300 2026-05-21
Thousandeyes Virtual Appliance HIGH 7.2
CVE-2026-20199

A vulnerability in the SSL certificate handling of Cisco ThousandEyes Virtual Appliance could allow an authenticated, remote attacker to execute comm…

Fix: 0.262.0+
Fix from $1,950 2026-05-20
Unclassified HIGH 7.3
CVE-2026-8785

A flaw has been found in projectworlds hospital-management-system-in-php 1.0. Affected by this vulnerability is the function getAllPatientDetail of t…

Mitigation only
Fix from $1,950 2026-05-18
Unclassified MEDIUM 6.3
CVE-2026-8774

A vulnerability was detected in Edimax BR-6228NC 1.22. Affected by this issue is the function mp of the file /goform/mp of the component POST Request…

Mitigation only
Fix from $1,600 2026-05-18
Unclassified MEDIUM 6.3
CVE-2026-8777

A vulnerability was found in Edimax BR-6428NS 1.10. This issue affects the function formStaDrvSetup of the file /goform/formStaDrvSetup of the compon…

Mitigation only
Fix from $1,600 2026-05-18
Unclassified HIGH 7.3
CVE-2026-8771

A security flaw has been discovered in linlinjava litemall up to 1.8.0. This impacts the function list of the file litemall-wx-api/src/main/java/org/…

Mitigation only
Fix from $1,950 2026-05-18
Unclassified MEDIUM 6.3
CVE-2026-8753

A security vulnerability has been detected in kalcaddle Kodbox up to 1.64. This issue affects the function parseVideoInfo of the file /workspace/sour…

Mitigation only
Fix from $1,600 2026-05-17
Unclassified HIGH 7.3
CVE-2026-8734

A vulnerability was determined in Oinone Pamirs up to 7.2.0. Affected by this issue is the function RSQLToSQLNodeConnector.makeVariable of the compon…

Mitigation only
Fix from $1,950 2026-05-17
Dataease HIGH 7.2
CVE-2026-8724

A security flaw has been discovered in Dataease 2.10.20. Impacted is the function SqlparserUtils.transFilter of the file SqlparserUtils.java of the c…

No fix yet
Fix from $1,950 2026-05-17
Mongoose HIGH 7.5
CVE-2026-42334

Mongoose is a MongoDB object modeling tool designed to work in an asynchronous environment. Prior to 6.13.9, 7.8.9, 8.22.1, and 9.1.6, a vulnerabilit…

Fix: 6.13.9 / 7.8.9+
Fix from $1,950 2026-05-14
Hono MEDIUM 6.1
CVE-2026-44455

Hono is a Web application framework that provides support for any JavaScript runtime. Prior to 4.12.16, Improper handling of JSX element tag names in…

Fix: 4.12.16+
Fix from $1,600 2026-05-13
Nnu Net HIGH 7.2
CVE-2026-44246

nnU-Net is a semantic segmentation framework that automatically adapts its pipeline to a dataset. Prior to 2.4.1, the nnU-Net Issue Triage workflow i…

Fix: 2.4.1+
Fix from $1,950 2026-05-12
Edge Chromium MEDIUM 5.4
CVE-2026-42838

Improper neutralization of special elements in output used by a downstream component ('injection') in Microsoft Edge (Chromium-based) allows an unaut…

Fix: 148.0.3967.55+
Fix from $1,600 2026-05-12
Visual Studio Code HIGH 8.8
CVE-2026-41109

Improper neutralization of special elements in output used by a downstream component ('injection') in GitHub Copilot and Visual Studio allows an unau…

Fix: 1.119.1+
Fix from $1,950 2026-05-12