Vulnerability index

Browse CVEs

3,666 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Filtering by weakness Command InjectionCWE-77 × clear
HIGH 8.8 CVE-2026-5355 A vulnerability has been found in Trendnet TEW-657BRM 1.00.1. Affected by this issue is the function vpn_drop of the file /setup.cgi. The manipulatio… Tew 657brm Firmware No fix yet Fix from $1,9502026-04-02 HIGH 8.8 CVE-2026-5352 A security vulnerability has been detected in Trendnet TEW-657BRM 1.00.1. This impacts the function Edit of the file /setup.cgi. Such manipulation of… Tew 657brm Firmware No fix yet Fix from $1,9502026-04-02 HIGH 8.8 CVE-2026-5351 A weakness has been identified in Trendnet TEW-657BRM 1.00.1. This affects the function add_wps_client of the file /setup.cgi. This manipulation of t… Tew 657brm Firmware No fix yet Fix from $1,9502026-04-02 HIGH 8.8 CVE-2026-5339EPSS 6% A vulnerability was detected in Tenda G103 1.0.0.5. The impacted element is the function action_set_net_settings of the file gpon.lua of the componen… G103 Firmware No fix yet Fix from $1,9502026-04-02 HIGH 7.2 CVE-2026-5338 A security vulnerability has been detected in Tenda G103 1.0.0.5. The affected element is the function action_set_system_settings of the file system.… G103 Firmware No fix yet Fix from $1,9502026-04-02 CRITICAL 9.8 CVE-2026-5333 A security flaw has been discovered in DefaultFuction Content-Management-System 1.0. This issue affects some unknown processing of the file /admin/to… Content Management System Mitigation only Fix from $2,3002026-04-02 MEDIUM 6.3 CVE-2026-5327 A security flaw has been discovered in efforthye fast-filesystem-mcp up to 3.5.1. The affected element is the function handleGetDiskUsage of the file… Mitigation only Fix from $1,6002026-04-02 MEDIUM 6.5 CVE-2026-20096 A vulnerability in the web-based management interface of Cisco IMC could allow an authenticated, remote attacker with admin-level privileges to perfo… Mitigation only Fix from $1,6002026-04-01 HIGH 8.8 CVE-2026-20094 A vulnerability in the web-based management interface of Cisco IMC could allow an authenticated, remote attacker with read-only privileges to perform… Mitigation only Fix from $1,9502026-04-01 MEDIUM 6.5 CVE-2026-20095 A vulnerability in the web-based management interface of Cisco IMC could allow an authenticated, remote attacker with admin-level privileges to perfo… Mitigation only Fix from $1,6002026-04-01 CRITICAL 9.8 CVE-2024-43028 A command injection vulnerability in the component /jmreport/show of jeecg boot v3.0.0 to v3.5.3 allows attackers to execute arbitrary code via a cra… Jeecg Boot after 3.5.3 Fix from $2,3002026-04-01 CRITICAL 9.8 CVE-2026-34243 wenxian is a tool to generate BIBTEX files from given identifiers (DOI, PMID, arXiv ID, or paper title). In versions 0.3.1 and prior, a GitHub Action… Wenxian after 0.3.1 Fix from $2,3002026-03-31 CRITICAL 9.8 CVE-2026-30310 In its design for automatic terminal command execution, Sixth offers two options: Execute safe commands and Execute all commands. The description for… Mitigation only Fix from $2,3002026-03-31 HIGH 7.5 CVE-2026-4399 Prompt injection vulnerability in 1millionbot Millie chatbot that occurs when a user manages to evade chat restrictions using Boolean prompt injectio… Millie Chatbot 3.6.0+ Fix from $1,9502026-03-31 HIGH 8.8 CVE-2026-5184EPSS 8% A vulnerability was identified in TRENDnet TEW-713RE up to 1.02. The impacted element is an unknown function of the file /goform/setSysAdm. The manip… Tew 713re Firmware No fix yet Fix from $1,9502026-03-31 CRITICAL 9.8 CVE-2026-5183EPSS 7% A vulnerability was determined in TRENDnet TEW-713RE up to 1.02. The affected element is the function sub_421494 of the file /goform/addRouting. Exec… Tew 713re Firmware Mitigation only Fix from $2,3002026-03-31 HIGH 8.8 CVE-2026-5178 A security vulnerability has been detected in Totolink A3300R 17.0.0cu.557_b20221024. Affected by this issue is the function setIptvCfg of the file /… A3300r Firmware No fix yet Fix from $1,9502026-03-31 HIGH 8.8 CVE-2026-5177 A weakness has been identified in Totolink A3300R 17.0.0cu.557_b20221024. Affected by this vulnerability is the function setWiFiBasicCfg of the file … A3300r Firmware No fix yet Fix from $1,9502026-03-31 CRITICAL 9.8 CVE-2026-5176 A security flaw has been discovered in Totolink A3300R 17.0.0cu.557_b20221024. Affected is the function setSyslogCfg of the file /cgi-bin/cstecgi.cgi… A3300r Firmware Mitigation only Fix from $2,3002026-03-31 HIGH 8.8 CVE-2026-5153 A flaw has been found in Tenda CH22 1.0.0.1. The affected element is the function FormWriteFacMac of the file /goform/WriteFacMac. Executing a manipu… Ch22 Firmware No fix yet Fix from $1,9502026-03-30 MEDIUM 5.3 CVE-2026-5125 A vulnerability was detected in raine consult-llm-mcp up to 2.5.3. Affected by this vulnerability is the function child_process.execSync of the file … Patch available Fix from $1,6002026-03-30 CRITICAL 9.8 CVE-2025-15379 A command injection vulnerability exists in MLflow's model serving container initialization code, specifically in the `_install_model_dependencies_to… Mlflow after 3.8.1 Fix from $2,3002026-03-30 HIGH 8.8 CVE-2026-5105 A vulnerability was detected in Totolink A3300R 17.0.0cu.557_b20221024. The affected element is the function setVpnPassCfg of the file /cgi-bin/cstec… A3300r Firmware No fix yet Fix from $1,9502026-03-30 HIGH 8.8 CVE-2026-5104 A security vulnerability has been detected in Totolink A3300R 17.0.0cu.557_b20221024. Impacted is the function setStaticRoute of the file /cgi-bin/cs… A3300r Firmware No fix yet Fix from $1,9502026-03-30 HIGH 8.8 CVE-2026-5103 A weakness has been identified in Totolink A3300R 17.0.0cu.557_b20221024. This issue affects the function setUPnPCfg of the file /cgi-bin/cstecgi.cgi… A3300r Firmware No fix yet Fix from $1,9502026-03-30 HIGH 8.8 CVE-2026-5102 A security flaw has been discovered in Totolink A3300R 17.0.0cu.557_b20221024. This vulnerability affects the function setSmartQosCfg of the file /cg… A3300r Firmware No fix yet Fix from $1,9502026-03-30 HIGH 8.8 CVE-2026-5101 A vulnerability was identified in Totolink A3300R 17.0.0cu.557_b20221024. This affects the function setLanCfg of the file /cgi-bin/cstecgi.cgi of the… A3300r Firmware No fix yet Fix from $1,9502026-03-29 CRITICAL 9.8 CVE-2026-5030 A vulnerability has been found in Totolink NR1800X 9.1.0u.6279_B20210910. This issue affects the function NTPSyncWithHost of the file /cgi-bin/cstecg… Nr1800x Firmware Mitigation only Fix from $2,3002026-03-29 MEDIUM 5.3 CVE-2026-5023 A vulnerability has been found in DeDeveloper23 codebase-mcp up to 3ec749d237dd8eabbeef48657cf917275792fde6. This vulnerability affects the function … Mitigation only Fix from $1,6002026-03-29 CRITICAL 9.8 CVE-2026-5020 A vulnerability was detected in Totolink A3600R 4.1.2cu.5182_B20201102. Affected by this issue is the function setNoticeCfg of the file /cgi-bin/cste… A3600r Firmware Mitigation only Fix from $2,3002026-03-29