Vulnerability index

Browse CVEs

4,950 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Filtering by weakness InjectionCWE-74 × clear
HIGH 8.2 CVE-2026-33833 Improper neutralization of special elements in output used by a downstream component ('injection') in Azure Machine Learning allows an unauthorized a… Azure Machine Learning Mitigation only Fix from $1,9502026-05-12 HIGH 8.8 CVE-2026-8346 A vulnerability was detected in D-Link DIR-816 1.10CNB05_R1B011D88210. This affects the function portForward. Performing a manipulation of the argume… Dir 816 Firmware No fix yet Fix from $1,9502026-05-12 HIGH 8.8 CVE-2026-8345 A security vulnerability has been detected in D-Link DIR-816 1.10CNB05_R1B011D88210. Affected by this issue is the function sub_445E7C of the file /g… Dir 816 Firmware No fix yet Fix from $1,9502026-05-11 HIGH 8.8 CVE-2026-8344 A weakness has been identified in D-Link DIR-816 1.10CNB05_R1B011D88210. Affected by this vulnerability is the function sub_445E7C of the file /gofor… Dir 816 Firmware No fix yet Fix from $1,9502026-05-11 HIGH 7.5 CVE-2025-8154 In Webhook API invocations, the component accepts user-supplied input for HTTP request headers without sufficient validation or sanitization, allowin… Api Control Plane 4.1.0.218 / 4.2.0.164+ Fix from $1,9502026-05-11 MEDIUM 6.3 CVE-2026-8231 A vulnerability has been found in CodeAstro Online Catering Ordering System 1.0. This affects an unknown function of the file /deleteorder.php. The m… Mitigation only Fix from $1,6002026-05-10 MEDIUM 5.3 CVE-2026-8210 A security vulnerability has been detected in aandrew-me tgpt up to 2.11.1 on Linux/macOS. Affected by this vulnerability is the function helper.Upda… Mitigation only Fix from $1,6002026-05-09 MEDIUM 6.5 CVE-2026-41885 i18next-locize-backend is a simple i18next backend for locize.com which can be used in Node.js, in the browser and for Deno. Prior to version 9.0.2, … Mitigation only Fix from $1,6002026-05-08 HIGH 7.2 CVE-2025-67486 Dolibarr is an enterprise resource planning (ERP) and customer relationship management (CRM) software package. Versions 22.0.2 and earlier contains a… Dolibarr Erp\/crm after 22.0.2 Fix from $1,9502026-05-08 HIGH 7.3 CVE-2026-8133 A security vulnerability has been detected in zyx0814 FilePress up to 2.2.0. Affected by this vulnerability is an unknown functionality of the file d… Patch available Fix from $1,9502026-05-08 HIGH 7.3 CVE-2026-8132 A weakness has been identified in CodeAstro Leave Management System 1.0. Affected is an unknown function of the file /login.php. This manipulation of… Mitigation only Fix from $1,9502026-05-08 HIGH 7.3 CVE-2026-8129 A vulnerability was determined in SourceCodester SUP Online Shopping 1.0. The impacted element is an unknown function of the file wishlist.php. Execu… Mitigation only Fix from $1,9502026-05-08 HIGH 7.3 CVE-2026-8130 A vulnerability was identified in SourceCodester SUP Online Shopping 1.0. This affects an unknown function of the file /admin/message.php. The manipu… Mitigation only Fix from $1,9502026-05-08 HIGH 7.3 CVE-2026-8131 A security flaw has been discovered in SourceCodester SUP Online Shopping 1.0. This impacts an unknown function of the file /admin/replymsg.php. The … Mitigation only Fix from $1,9502026-05-08 HIGH 7.3 CVE-2026-8126 A flaw has been found in SourceCodester Comment System 1.0. This issue affects some unknown processing of the file post_comment.php. This manipulatio… Mitigation only Fix from $1,9502026-05-08 HIGH 7.3 CVE-2026-8128 A vulnerability was found in SourceCodester SUP Online Shopping 1.0. The affected element is an unknown function of the file /admin/viewmsg.php. Perf… Mitigation only Fix from $1,9502026-05-08 MEDIUM 6.3 CVE-2026-8125 A vulnerability was detected in code-projects Simple Chat System 1.0. This vulnerability affects unknown code of the file sendMessage.php. The manipu… Mitigation only Fix from $1,6002026-05-08 MEDIUM 6.3 CVE-2026-8114 A vulnerability was identified in JeecgBoot up to 3.9.1. Affected by this issue is some unknown functionality of the file /sys/dict/loadTreeData of t… Mitigation only Fix from $1,6002026-05-07 HIGH 7.5 CVE-2026-26164 Improper neutralization of special elements used in a command ('command injection') in M365 Copilot allows an unauthorized attacker to disclose infor… 365 Copilot Chat No fix yet Fix from $1,9502026-05-07 MEDIUM 6.3 CVE-2026-8097 A security flaw has been discovered in CodeAstro Online Classroom 1.0. This vulnerability affects unknown code of the file /askquery.php. The manipul… Mitigation only Fix from $1,6002026-05-07 HIGH 7.3 CVE-2026-8098 A security vulnerability has been detected in code-projects Feedback System 1.0. Impacted is an unknown function of the file /admin/checklogin.php. S… Mitigation only Fix from $1,9502026-05-07 CRITICAL 9.1 CVE-2026-41691 Copilot said: i18nextify is a JavaScript library that adds i18nextify is a JavaScript library that adds website internationalization via a script tag… I18next Http Backend 3.0.5+ Fix from $2,3002026-05-07 HIGH 7.3 CVE-2026-8083 A vulnerability was found in SourceCodester Pharmacy Sales and Inventory System 1.0. This affects an unknown part of the file /ajax.php?action=save_u… Mitigation only Fix from $1,9502026-05-07 HIGH 7.2 CVE-2026-7833 A weakness has been identified in EFM ipTIME C200 up to 1.092. This vulnerability affects the function sub_408F90 of the file /cgi/iux_set.cgi of the… Mitigation only Fix from $1,9502026-05-05 HIGH 7.3 CVE-2026-7812 A vulnerability was found in 54yyyu code-mcp up to 4cfc4643541a110c906d93635b391bf7e357f4a8. The impacted element is the function git_operation of th… Mitigation only Fix from $1,9502026-05-05 MEDIUM 6.3 CVE-2026-7822 A vulnerability was identified in itsourcecode Courier Management System 1.0. This impacts an unknown function of the file /print_pdets.php. The mani… Mitigation only Fix from $1,6002026-05-05 MEDIUM 6.3 CVE-2026-7783 A flaw has been found in CodeCanyon Perfex CRM up to 3.4.1. This vulnerability affects the function AbstractKanban::applySortQuery of the file applic… Mitigation only Fix from $1,6002026-05-05 MEDIUM 6.3 CVE-2026-7745 A vulnerability was determined in CodeAstro Online Classroom 1.0. This impacts an unknown function of the file /OnlineClassroom/facultydetails. This … Mitigation only Fix from $1,6002026-05-04 MEDIUM 6.3 CVE-2026-7746 A vulnerability was identified in SourceCodester Web-based Pharmacy Product Management System 1.0. Affected is an unknown function of the file /produ… Mitigation only Fix from $1,6002026-05-04 MEDIUM 6.3 CVE-2026-7744 A vulnerability was found in CodeAstro Online Classroom 1.0. This affects an unknown function of the file /OnlineClassroom/addnewstudent. The manipul… Mitigation only Fix from $1,6002026-05-04