Vulnerability index

Browse CVEs

4,950 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Filtering by weakness InjectionCWE-74 × clear
MEDIUM 6.3 CVE-2026-9379 A weakness has been identified in Edimax BR-6675nD 1.12. This impacts the function formWpsStart of the file /goform/formWpsStart of the component POS… Mitigation only Fix from $1,6002026-05-24 HIGH 7.3 CVE-2026-9364 A flaw has been found in projectworlds Online Art Gallery Shop 1.0. Impacted is an unknown function of the file /admin/adminHome.php. Executing a man… Mitigation only Fix from $1,9502026-05-24 HIGH 7.3 CVE-2026-9366 A vulnerability was found in NousResearch hermes-agent 2026.4.23. The impacted element is the function _scan_context_content of the file agent/prompt… Mitigation only Fix from $1,9502026-05-24 MEDIUM 6.3 CVE-2026-9362 A security vulnerability has been detected in Edimax EW-7438RPn 1.12. This vulnerability affects the function formConnectionSetting of the file /gofo… Mitigation only Fix from $1,6002026-05-24 MEDIUM 6.3 CVE-2026-9363 A vulnerability was detected in Edimax EW-7438RPn 1.12. This issue affects the function formEZCHNwlanSetup of the file /goform/formEZCHNwlanSetu of t… Mitigation only Fix from $1,6002026-05-24 MEDIUM 6.3 CVE-2026-9361 A weakness has been identified in Edimax EW-7438RPn 1.12. This affects the function formAccept of the file /goform/formAccep of the component POST Re… Mitigation only Fix from $1,6002026-05-24 MEDIUM 6.3 CVE-2026-9359 A vulnerability was identified in Edimax EW-7438RPn 1.28a. Affected by this vulnerability is the function formHwSet of the file /goform/formHwSet of … Mitigation only Fix from $1,6002026-05-24 HIGH 7.3 CVE-2026-9356 A vulnerability has been found in SourceCodester Hospitals Patient Records Management System 1.0. This affects an unknown function of the file /admin… Mitigation only Fix from $1,9502026-05-24 HIGH 7.3 CVE-2026-9353 A security vulnerability has been detected in NousResearch hermes-agent up to 2026.4.23. Impacted is an unknown function of the file agent/skills_gua… Mitigation only Fix from $1,9502026-05-24 MEDIUM 6.5 CVE-2026-9354 A vulnerability was detected in NousResearch hermes-agent up to 2026.4.16. The affected element is an unknown function of the component Slack Agent/M… Mitigation only Fix from $1,6002026-05-24 HIGH 7.3 CVE-2026-9355 A flaw has been found in SourceCodester Hospitals Patient Records Management System 1.0. The impacted element is an unknown function of the file /cla… Mitigation only Fix from $1,9502026-05-24 MEDIUM 6.3 CVE-2026-9342 A security flaw has been discovered in SourceCodester Hospitals Patient Records Management System 1.0. Impacted is an unknown function of the file /a… Mitigation only Fix from $1,6002026-05-23 MEDIUM 6.3 CVE-2026-9305 A weakness has been identified in QuantumNous new-api up to 0.12.1. The impacted element is the function SearchUserTopUps/SearchAllTopUps of the file… Mitigation only Fix from $1,6002026-05-23 MEDIUM 6.3 CVE-2026-9302 A vulnerability was determined in 546669204 vps-inventory-monitoring up to 98c00b370668c96ae75e91c15548d9ea113652d9. This issue affects the function … Mitigation only Fix from $1,6002026-05-23 MEDIUM 6.3 CVE-2026-9297 A security vulnerability has been detected in Edimax BR-6428NS 1.10. Affected is the function formWlbasic of the file /goform/formWlbasic of the comp… Mitigation only Fix from $1,6002026-05-23 MEDIUM 6.3 CVE-2026-9296 A weakness has been identified in Edimax BR-6428NS 1.10. This impacts the function system of the file /goform/formWlanM of the component POST Request… Mitigation only Fix from $1,6002026-05-23 CRITICAL 9.8 CVE-2026-6279 The Avada Builder (fusion-builder) plugin for WordPress is vulnerable to Unauthenticated Remote Code Execution via PHP Function Injection in versions… Mitigation only Fix from $2,3002026-05-21 HIGH 7.2 CVE-2026-20199 A vulnerability in the SSL certificate handling of Cisco ThousandEyes Virtual Appliance could allow an authenticated, remote attacker to execute comm… Thousandeyes Virtual Appliance 0.262.0+ Fix from $1,9502026-05-20 HIGH 7.3 CVE-2026-8785 A flaw has been found in projectworlds hospital-management-system-in-php 1.0. Affected by this vulnerability is the function getAllPatientDetail of t… Mitigation only Fix from $1,9502026-05-18 MEDIUM 6.3 CVE-2026-8774 A vulnerability was detected in Edimax BR-6228NC 1.22. Affected by this issue is the function mp of the file /goform/mp of the component POST Request… Mitigation only Fix from $1,6002026-05-18 MEDIUM 6.3 CVE-2026-8777 A vulnerability was found in Edimax BR-6428NS 1.10. This issue affects the function formStaDrvSetup of the file /goform/formStaDrvSetup of the compon… Mitigation only Fix from $1,6002026-05-18 HIGH 7.3 CVE-2026-8771 A security flaw has been discovered in linlinjava litemall up to 1.8.0. This impacts the function list of the file litemall-wx-api/src/main/java/org/… Mitigation only Fix from $1,9502026-05-18 MEDIUM 6.3 CVE-2026-8753 A security vulnerability has been detected in kalcaddle Kodbox up to 1.64. This issue affects the function parseVideoInfo of the file /workspace/sour… Mitigation only Fix from $1,6002026-05-17 HIGH 7.3 CVE-2026-8734 A vulnerability was determined in Oinone Pamirs up to 7.2.0. Affected by this issue is the function RSQLToSQLNodeConnector.makeVariable of the compon… Mitigation only Fix from $1,9502026-05-17 HIGH 7.2 CVE-2026-8724 A security flaw has been discovered in Dataease 2.10.20. Impacted is the function SqlparserUtils.transFilter of the file SqlparserUtils.java of the c… Dataease No fix yet Fix from $1,9502026-05-17 HIGH 7.5 CVE-2026-42334 Mongoose is a MongoDB object modeling tool designed to work in an asynchronous environment. Prior to 6.13.9, 7.8.9, 8.22.1, and 9.1.6, a vulnerabilit… Mongoose 6.13.9 / 7.8.9+ Fix from $1,9502026-05-14 MEDIUM 6.1 CVE-2026-44455 Hono is a Web application framework that provides support for any JavaScript runtime. Prior to 4.12.16, Improper handling of JSX element tag names in… Hono 4.12.16+ Fix from $1,6002026-05-13 HIGH 7.2 CVE-2026-44246 nnU-Net is a semantic segmentation framework that automatically adapts its pipeline to a dataset. Prior to 2.4.1, the nnU-Net Issue Triage workflow i… Nnu Net 2.4.1+ Fix from $1,9502026-05-12 MEDIUM 5.4 CVE-2026-42838 Improper neutralization of special elements in output used by a downstream component ('injection') in Microsoft Edge (Chromium-based) allows an unaut… Edge Chromium 148.0.3967.55+ Fix from $1,6002026-05-12 HIGH 8.8 CVE-2026-41109 Improper neutralization of special elements in output used by a downstream component ('injection') in GitHub Copilot and Visual Studio allows an unau… Visual Studio Code 1.119.1+ Fix from $1,9502026-05-12