Vulnerability index

Browse CVEs

3,666 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Filtering by weakness Command InjectionCWE-77 × clear
Tew 657brm Firmware HIGH 8.8
CVE-2026-5355

A vulnerability has been found in Trendnet TEW-657BRM 1.00.1. Affected by this issue is the function vpn_drop of the file /setup.cgi. The manipulatio…

No fix yet
Fix from $1,950 2026-04-02
Tew 657brm Firmware HIGH 8.8
CVE-2026-5352

A security vulnerability has been detected in Trendnet TEW-657BRM 1.00.1. This impacts the function Edit of the file /setup.cgi. Such manipulation of…

No fix yet
Fix from $1,950 2026-04-02
Tew 657brm Firmware HIGH 8.8
CVE-2026-5351

A weakness has been identified in Trendnet TEW-657BRM 1.00.1. This affects the function add_wps_client of the file /setup.cgi. This manipulation of t…

No fix yet
Fix from $1,950 2026-04-02
G103 Firmware HIGH 8.8
CVE-2026-5339EPSS 6%

A vulnerability was detected in Tenda G103 1.0.0.5. The impacted element is the function action_set_net_settings of the file gpon.lua of the componen…

No fix yet
Fix from $1,950 2026-04-02
G103 Firmware HIGH 7.2
CVE-2026-5338

A security vulnerability has been detected in Tenda G103 1.0.0.5. The affected element is the function action_set_system_settings of the file system.…

No fix yet
Fix from $1,950 2026-04-02
Content Management System CRITICAL 9.8
CVE-2026-5333

A security flaw has been discovered in DefaultFuction Content-Management-System 1.0. This issue affects some unknown processing of the file /admin/to…

Mitigation only
Fix from $2,300 2026-04-02
Unclassified MEDIUM 6.3
CVE-2026-5327

A security flaw has been discovered in efforthye fast-filesystem-mcp up to 3.5.1. The affected element is the function handleGetDiskUsage of the file…

Mitigation only
Fix from $1,600 2026-04-02
Unclassified MEDIUM 6.5
CVE-2026-20096

A vulnerability in the web-based management interface of Cisco IMC could allow an authenticated, remote attacker with admin-level privileges to perfo…

Mitigation only
Fix from $1,600 2026-04-01
Unclassified HIGH 8.8
CVE-2026-20094

A vulnerability in the web-based management interface of Cisco IMC could allow an authenticated, remote attacker with read-only privileges to perform…

Mitigation only
Fix from $1,950 2026-04-01
Unclassified MEDIUM 6.5
CVE-2026-20095

A vulnerability in the web-based management interface of Cisco IMC could allow an authenticated, remote attacker with admin-level privileges to perfo…

Mitigation only
Fix from $1,600 2026-04-01
Jeecg Boot CRITICAL 9.8
CVE-2024-43028

A command injection vulnerability in the component /jmreport/show of jeecg boot v3.0.0 to v3.5.3 allows attackers to execute arbitrary code via a cra…

Fix: after 3.5.3
Fix from $2,300 2026-04-01
Wenxian CRITICAL 9.8
CVE-2026-34243

wenxian is a tool to generate BIBTEX files from given identifiers (DOI, PMID, arXiv ID, or paper title). In versions 0.3.1 and prior, a GitHub Action…

Fix: after 0.3.1
Fix from $2,300 2026-03-31
Unclassified CRITICAL 9.8
CVE-2026-30310

In its design for automatic terminal command execution, Sixth offers two options: Execute safe commands and Execute all commands. The description for…

Mitigation only
Fix from $2,300 2026-03-31
Millie Chatbot HIGH 7.5
CVE-2026-4399

Prompt injection vulnerability in 1millionbot Millie chatbot that occurs when a user manages to evade chat restrictions using Boolean prompt injectio…

Fix: 3.6.0+
Fix from $1,950 2026-03-31
Tew 713re Firmware HIGH 8.8
CVE-2026-5184EPSS 8%

A vulnerability was identified in TRENDnet TEW-713RE up to 1.02. The impacted element is an unknown function of the file /goform/setSysAdm. The manip…

No fix yet
Fix from $1,950 2026-03-31
Tew 713re Firmware CRITICAL 9.8
CVE-2026-5183EPSS 7%

A vulnerability was determined in TRENDnet TEW-713RE up to 1.02. The affected element is the function sub_421494 of the file /goform/addRouting. Exec…

Mitigation only
Fix from $2,300 2026-03-31
A3300r Firmware HIGH 8.8
CVE-2026-5178

A security vulnerability has been detected in Totolink A3300R 17.0.0cu.557_b20221024. Affected by this issue is the function setIptvCfg of the file /…

No fix yet
Fix from $1,950 2026-03-31
A3300r Firmware HIGH 8.8
CVE-2026-5177

A weakness has been identified in Totolink A3300R 17.0.0cu.557_b20221024. Affected by this vulnerability is the function setWiFiBasicCfg of the file …

No fix yet
Fix from $1,950 2026-03-31
A3300r Firmware CRITICAL 9.8
CVE-2026-5176

A security flaw has been discovered in Totolink A3300R 17.0.0cu.557_b20221024. Affected is the function setSyslogCfg of the file /cgi-bin/cstecgi.cgi…

Mitigation only
Fix from $2,300 2026-03-31
Ch22 Firmware HIGH 8.8
CVE-2026-5153

A flaw has been found in Tenda CH22 1.0.0.1. The affected element is the function FormWriteFacMac of the file /goform/WriteFacMac. Executing a manipu…

No fix yet
Fix from $1,950 2026-03-30
Unclassified MEDIUM 5.3
CVE-2026-5125

A vulnerability was detected in raine consult-llm-mcp up to 2.5.3. Affected by this vulnerability is the function child_process.execSync of the file …

Patch available
Fix from $1,600 2026-03-30
Mlflow CRITICAL 9.8
CVE-2025-15379

A command injection vulnerability exists in MLflow's model serving container initialization code, specifically in the `_install_model_dependencies_to…

Fix: after 3.8.1
Fix from $2,300 2026-03-30
A3300r Firmware HIGH 8.8
CVE-2026-5105

A vulnerability was detected in Totolink A3300R 17.0.0cu.557_b20221024. The affected element is the function setVpnPassCfg of the file /cgi-bin/cstec…

No fix yet
Fix from $1,950 2026-03-30
A3300r Firmware HIGH 8.8
CVE-2026-5104

A security vulnerability has been detected in Totolink A3300R 17.0.0cu.557_b20221024. Impacted is the function setStaticRoute of the file /cgi-bin/cs…

No fix yet
Fix from $1,950 2026-03-30
A3300r Firmware HIGH 8.8
CVE-2026-5103

A weakness has been identified in Totolink A3300R 17.0.0cu.557_b20221024. This issue affects the function setUPnPCfg of the file /cgi-bin/cstecgi.cgi…

No fix yet
Fix from $1,950 2026-03-30
A3300r Firmware HIGH 8.8
CVE-2026-5102

A security flaw has been discovered in Totolink A3300R 17.0.0cu.557_b20221024. This vulnerability affects the function setSmartQosCfg of the file /cg…

No fix yet
Fix from $1,950 2026-03-30
A3300r Firmware HIGH 8.8
CVE-2026-5101

A vulnerability was identified in Totolink A3300R 17.0.0cu.557_b20221024. This affects the function setLanCfg of the file /cgi-bin/cstecgi.cgi of the…

No fix yet
Fix from $1,950 2026-03-29
Nr1800x Firmware CRITICAL 9.8
CVE-2026-5030

A vulnerability has been found in Totolink NR1800X 9.1.0u.6279_B20210910. This issue affects the function NTPSyncWithHost of the file /cgi-bin/cstecg…

Mitigation only
Fix from $2,300 2026-03-29
Unclassified MEDIUM 5.3
CVE-2026-5023

A vulnerability has been found in DeDeveloper23 codebase-mcp up to 3ec749d237dd8eabbeef48657cf917275792fde6. This vulnerability affects the function …

Mitigation only
Fix from $1,600 2026-03-29
A3600r Firmware CRITICAL 9.8
CVE-2026-5020

A vulnerability was detected in Totolink A3600R 4.1.2cu.5182_B20201102. Affected by this issue is the function setNoticeCfg of the file /cgi-bin/cste…

Mitigation only
Fix from $2,300 2026-03-29