Vulnerability index

Browse CVEs

4,950 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Filtering by weakness InjectionCWE-74 × clear
Unclassified MEDIUM 5.3
CVE-2026-4199

A vulnerability was identified in bazinga012 mcp_code_executor up to 0.3.0. Affected by this issue is the function installDependencies of the file sr…

Patch available
Fix from $1,600 2026-03-16
Dnr 202l Firmware CRITICAL 9.8
CVE-2026-4195

A flaw has been found in D-Link DNS-120, DNR-202L, DNS-315L, DNS-320, DNS-320L, DNS-320LW, DNS-321, DNR-322L, DNS-323, DNS-325, DNS-326, DNS-327L, DN…

Fix: after 2026-02-05
Fix from $2,300 2026-03-16
Dns 1550 04 Firmware CRITICAL 9.8
CVE-2026-4196

A vulnerability has been found in D-Link DNS-120, DNR-202L, DNS-315L, DNS-320, DNS-320L, DNS-320LW, DNS-321, DNR-322L, DNS-323, DNS-325, DNS-326, DNS…

Fix: after 2026-02-05
Fix from $2,300 2026-03-16
Unclassified HIGH 7.3
CVE-2026-4190

A vulnerability was detected in JawherKl node-api-postgres up to 2.5. This impacts the function User.getAll of the file models/user.js. The manipulat…

Mitigation only
Fix from $1,950 2026-03-16
Unclassified MEDIUM 6.3
CVE-2026-4192

A vulnerability has been found in AvinashBole quip-mcp-server 1.0.0. Affected by this vulnerability is the function setupToolHandlers of the file src…

Mitigation only
Fix from $1,600 2026-03-16
Unclassified MEDIUM 6.3
CVE-2026-4173

A flaw has been found in CodePhiliaX Chat2DB up to 0.3.7. This vulnerability affects the function exportTable/exportTableColumnComment/exportView/exp…

Mitigation only
Fix from $1,600 2026-03-16
Unclassified CRITICAL 9.8
CVE-2026-4163

A vulnerability was detected in Wavlink WL-WN579A3 220323. This issue affects the function SetName/GuestWifi of the file /cgi-bin/wireless.cgi of the…

Mitigation only
Fix from $2,300 2026-03-16
Unclassified CRITICAL 9.8
CVE-2026-4164

A flaw has been found in Wavlink WL-WN578W2 221110. Impacted is the function Delete_Mac_list/SetName/GuestWifi of the file /cgi-bin/wireless.cgi of t…

Mitigation only
Fix from $2,300 2026-03-16
Unclassified HIGH 8.2
CVE-2026-32616

Pigeon is a message board/notepad/social system/blog. Prior to 1.0.201, the application uses $_SERVER['HTTP_HOST'] without validation to construct em…

Mitigation only
Fix from $1,950 2026-03-16
Openclaw HIGH 8.8
CVE-2026-4039

A vulnerability was determined in OpenClaw 2026.2.19-2. This vulnerability affects the function applySkillConfigenvOverrides of the component Skill E…

Fix: 2026.2.21+
Fix from $1,950 2026-03-12
Cafe Reservation System CRITICAL 9.8
CVE-2026-4014

A security flaw has been discovered in itsourcecode Cafe Reservation System 1.0. This impacts an unknown function of the file /curvus2/signup.php of …

Mitigation only
Fix from $2,300 2026-03-12
Unclassified MEDIUM 6.3
CVE-2026-3992

A weakness has been identified in CodeGenieApp serverless-express up to 4.17.1. This affects an unknown part of the file utils/dynamodb.ts of the com…

Mitigation only
Fix from $1,600 2026-03-12
Online Doctor Appointment System CRITICAL 9.8
CVE-2026-3981

A vulnerability was found in itsourcecode Online Doctor Appointment System 1.0. Affected is an unknown function of the file /admin/doctor_action.php.…

Mitigation only
Fix from $2,300 2026-03-12
Online Doctor Appointment System CRITICAL 9.8
CVE-2026-3980

A vulnerability has been found in itsourcecode Online Doctor Appointment System 1.0. This impacts an unknown function of the file /admin/patient_acti…

Mitigation only
Fix from $2,300 2026-03-12
Unclassified HIGH 7.3
CVE-2026-3969

A vulnerability was detected in FeMiner wms up to 1.0. This impacts an unknown function of the file /wms-master/src/basic/depart/depart_add_bg.php of…

Mitigation only
Fix from $1,950 2026-03-12
Unclassified MEDIUM 6.3
CVE-2026-3968

A vulnerability has been found in AutohomeCorp frostmourne up to 1.0. This affects the function scriptEngine.eval of the file ExpressionRule.java of …

Mitigation only
Fix from $1,600 2026-03-12
Unclassified MEDIUM 6.3
CVE-2026-3955

A security vulnerability has been detected in elecV2P up to 3.8.3. Affected by this issue is the function runJSFile of the file source-code/elecV2P-m…

Mitigation only
Fix from $1,600 2026-03-11
Traefik MEDIUM 6.5
CVE-2026-29777

Traefik is an HTTP reverse proxy and load balancer. Prior to 3.6.10, A tenant with write access to an HTTPRoute resource can inject backtick-delimite…

Fix: 3.6.10+
Fix from $1,600 2026-03-11
University Management System CRITICAL 9.8
CVE-2026-3944

A vulnerability was determined in itsourcecode University Management System 1.0. This vulnerability affects unknown code of the file /att_add.php. Th…

Mitigation only
Fix from $2,300 2026-03-11
Unclassified HIGH 7.3
CVE-2026-3943EPSS 39%

A vulnerability was found in H3C ACG1000-AK230 up to 20260227. This affects an unknown part of the file /webui/?aaa_portal_auth_local_submit. The man…

Mitigation only
Fix from $1,950 2026-03-11
Budibase CRITICAL 9.1
CVE-2026-31816EPSS 15%

Budibase is a low code platform for creating internal tools, workflows, and admin panels. In 3.31.4 and earlier, the Budibase server's authorized() m…

Fix: after 3.31.4
Fix from $2,300 2026-03-09
Easy7 Cms CRITICAL 9.8
CVE-2026-3818

A flaw has been found in Tiandy Easy7 CMS Windows 7.17.0. Impacted is an unknown function of the file /Easy7/apps/WebService/GetDBData.jsp. This mani…

Mitigation only
Fix from $2,300 2026-03-09
Jflow CRITICAL 9.8
CVE-2026-3813

A vulnerability was identified in opencc JFlow up to 5badc00db382d7cb82dad231e6a866b18e0addfe. Affected by this vulnerability is the function Calcula…

Mitigation only
Fix from $2,300 2026-03-09
Resort Reservation System HIGH 8.8
CVE-2026-3806

A weakness has been identified in SourceCodester/janobe Resort Reservation System 1.0. This issue affects some unknown processing of the file /room_r…

No fix yet
Fix from $1,950 2026-03-09
Cf Ac100 Firmware HIGH 7.2
CVE-2026-3798EPSS 15%

A vulnerability was detected in Comfast CF-AC100 2.6.0.8. This affects the function sub_44AC14 of the file /cgi-bin/mbox-config?method=SET&section=pi…

No fix yet
Fix from $1,950 2026-03-09
Sales And Inventory System HIGH 8.8
CVE-2026-3793

A vulnerability was determined in SourceCodester Sales and Inventory System 1.0. This vulnerability affects unknown code of the file sales_invoice1.p…

No fix yet
Fix from $1,950 2026-03-09
Sales And Inventory System HIGH 8.8
CVE-2026-3792

A vulnerability was found in SourceCodester Sales and Inventory System 1.0. This affects an unknown part of the file purchase_invoice.php of the comp…

No fix yet
Fix from $1,950 2026-03-09
Sales And Inventory System HIGH 8.8
CVE-2026-3791

A vulnerability has been found in SourceCodester Sales and Inventory System 1.0. Affected by this issue is some unknown functionality of the file das…

No fix yet
Fix from $1,950 2026-03-09
Sales And Inventory System HIGH 8.8
CVE-2026-3790

A flaw has been found in SourceCodester Sales and Inventory System 1.0. Affected by this vulnerability is an unknown functionality of the file check_…

No fix yet
Fix from $1,950 2026-03-09
Easycms HIGH 8.8
CVE-2026-3785

A vulnerability was identified in EasyCMS up to 1.6. The affected element is an unknown function of the file /RbacnodeAction.class.php of the compone…

Fix: after 1.6
Fix from $1,950 2026-03-08