Vulnerability index

Browse CVEs

6,363 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Filtering by weakness OS Command InjectionCWE-78 × clear
Amazon Ecs Container Agent HIGH 7.2
CVE-2026-7461

Improper neutralization of inputs used in an OS command in the FSx Windows File Server volume mounting component in Amazon ECS Agent on Windows befor…

Fix: 1.103.0+
Fix from $1,950 2026-04-30
Smg Gateway Management Software CRITICAL 9.8
CVE-2025-71284EPSS 6%

Synway SMG Gateway Management Software contains an OS command injection vulnerability in the RADIUS configuration endpoint at /en/9-2radius.php where…

Mitigation only
Fix from $2,300 2026-04-30
Click HIGH 7.2
CVE-2026-7246

This CVE record was assigned not following CNA/CVE rules and is not considered a valid vulnerability by the Pallets Click project. The original CVE r…

Fix: 8.3.3+
Fix from $1,950 2026-04-30
Unclassified HIGH 7.3
CVE-2026-7446

A vulnerability was detected in VetCoders mcp-server-semgrep 1.0.0. This affects the function analyze_results/filter_results/export_results/compare_r…

Patch available
Fix from $1,950 2026-04-30
Unclassified HIGH 7.3
CVE-2026-7443

A weakness has been identified in BurtTheCoder mcp-dnstwist up to 1.0.4. Affected by this vulnerability is the function fuzz_domain of the file src/i…

Mitigation only
Fix from $1,950 2026-04-29
Unclassified HIGH 7.3
CVE-2026-7416

A vulnerability was found in PolarVista xcode-mcp-server 1.0.0. This issue affects the function build_project/run_tests of the file src/index.ts of t…

Mitigation only
Fix from $1,950 2026-04-29
Unclassified HIGH 8.8
CVE-2026-6849

Improper neutralization of special elements used in an OS command ('OS command injection') vulnerability in TUBITAK BILGEM Software Technologies Rese…

Mitigation only
Fix from $1,950 2026-04-29
Unclassified CRITICAL 9.8
CVE-2026-7241

A vulnerability was found in Totolink A8000RU 7.1cu.643_b20200521. This issue affects the function setWiFiBasicCfg of the file /cgi-bin/cstecgi.cgi o…

Mitigation only
Fix from $2,300 2026-04-28
Unclassified CRITICAL 9.8
CVE-2026-7242

A vulnerability was determined in Totolink A8000RU 7.1cu.643_b20200521. Impacted is the function setOpenVpnClientCfg of the file /cgi-bin/cstecgi.cgi…

Mitigation only
Fix from $2,300 2026-04-28
Unclassified CRITICAL 9.8
CVE-2026-7243

A vulnerability was identified in Totolink A8000RU 7.1cu.643_b20200521. The affected element is the function setRadvdCfg of the file /cgi-bin/cstecgi…

Mitigation only
Fix from $2,300 2026-04-28
Unclassified CRITICAL 9.8
CVE-2026-7244

A security flaw has been discovered in Totolink A8000RU 7.1cu.643_b20200521. The impacted element is the function setWiFiEasyGuestCfg of the file /cg…

Mitigation only
Fix from $2,300 2026-04-28
Unclassified CRITICAL 9.8
CVE-2026-7240

A vulnerability has been found in Totolink A8000RU 7.1cu.643_b20200521. This vulnerability affects the function setVpnAccountCfg of the file /cgi-bin…

Mitigation only
Fix from $2,300 2026-04-28
Knb 2000 Firmware MEDIUM 5.3
CVE-2024-54012

Penetration Testing engineers at Amazon discovered a vulnerability where the camera system failed to properly validate input, allowing specially craf…

Fix: 2.23.01+
Fix from $1,600 2026-04-28
Unclassified HIGH 7.3
CVE-2026-7220

A vulnerability has been found in jackwrichards FastlyMCP up to 6f3d0b0e654fc51076badc7fa16c03c461f95620. This impacts an unknown function of the fil…

Mitigation only
Fix from $1,950 2026-04-28
Nr5307 Firmware MEDIUM 6.8
CVE-2026-0711

A post-authentication command injection vulnerability in the EasyMesh-related APIs of Zyxel DX3300-T0 firmware versions through 5.50(ABVY.7.1)C0 coul…

Fix: 1.60 / 2.00+
Fix from $1,600 2026-04-28
Nebula Fwa70 Firmware HIGH 7.2
CVE-2026-1460

A post-authentication command injection vulnerability in the “DomainName” parameter of the DHCP configuration file in Zyxel DX3301-T0 and EX3301-T0 f…

Fix: 1.15 / 1.16+
Fix from $1,950 2026-04-28
Unclassified CRITICAL 9.8
CVE-2026-7202

A vulnerability has been found in Totolink A8000RU 7.1cu.643_b20200521. This affects the function setWiFiWpsStart of the file /cgi-bin/cstecgi.cgi of…

Mitigation only
Fix from $2,300 2026-04-28
Unclassified CRITICAL 9.8
CVE-2026-7203

A vulnerability was found in Totolink A8000RU 7.1cu.643_b20200521. This vulnerability affects the function setUrlFilterRules of the file /cgi-bin/cst…

Mitigation only
Fix from $2,300 2026-04-28
Unclassified CRITICAL 9.8
CVE-2026-7204

A vulnerability was determined in Totolink A8000RU 7.1cu.643_b20200521. This issue affects the function setPptpServerCfg of the file /cgi-bin/cstecgi…

Mitigation only
Fix from $2,300 2026-04-28
Unclassified MEDIUM 6.8
CVE-2026-32649

A command injection vulnerability exists in the web server of specific firmware versions of Milesight cameras.

No fix yet
Fix from $1,600 2026-04-28
Unclassified CRITICAL 9.8
CVE-2026-7156

A vulnerability was detected in Totolink A8000RU 7.1cu.643_b20200521. Affected is the function CsteSystem of the file /cgi-bin/cstecgi.cgi of the com…

Mitigation only
Fix from $2,300 2026-04-27
Unclassified CRITICAL 9.8
CVE-2026-7154

A weakness has been identified in Totolink A8000RU 7.1cu.643_b20200521. This affects the function setAdvancedInfoShow of the file /cgi-bin/cstecgi.cg…

Mitigation only
Fix from $2,300 2026-04-27
Unclassified CRITICAL 9.8
CVE-2026-7155

A security vulnerability has been detected in Totolink A8000RU 7.1cu.643_b20200521. This impacts the function setLoginPasswordCfg of the file /cgi-bi…

Mitigation only
Fix from $2,300 2026-04-27
Unclassified CRITICAL 9.8
CVE-2026-7152

A vulnerability was identified in Totolink A8000RU 7.1cu.643_b20200521. The affected element is the function setTelnetCfg of the file /cgi-bin/cstecg…

Mitigation only
Fix from $2,300 2026-04-27
Unclassified CRITICAL 9.8
CVE-2026-7153

A security flaw has been discovered in Totolink A8000RU 7.1cu.643_b20200521. The impacted element is the function setMiniuiHomeInfoShow of the file /…

Mitigation only
Fix from $2,300 2026-04-27
Unclassified CRITICAL 9.8
CVE-2026-7139

A flaw has been found in Totolink A8000RU 7.1cu.643_b20200521. This issue affects the function setWiFiAclRules of the file /cgi-bin/cstecgi.cgi of th…

Mitigation only
Fix from $2,300 2026-04-27
Unclassified CRITICAL 9.8
CVE-2026-7140

A vulnerability has been found in Totolink A8000RU 7.1cu.643_b20200521. Impacted is the function CsteSystem of the file /cgi-bin/cstecgi.cgi of the c…

Mitigation only
Fix from $2,300 2026-04-27
Unclassified CRITICAL 9.8
CVE-2026-7137

A security vulnerability has been detected in Totolink A8000RU 7.1cu.643_b20200521. This affects the function setStorageCfg of the file /cgi-bin/cste…

Mitigation only
Fix from $2,300 2026-04-27
Unclassified CRITICAL 9.8
CVE-2026-7138

A vulnerability was detected in Totolink A8000RU 7.1cu.643_b20200521. This vulnerability affects the function setNtpCfg of the file /cgi-bin/cstecgi.…

Mitigation only
Fix from $2,300 2026-04-27
Unclassified CRITICAL 9.8
CVE-2026-7136

A weakness has been identified in Totolink A8000RU 7.1cu.643_b20200521. Affected by this issue is the function setDmzCfg of the file /cgi-bin/cstecgi…

Mitigation only
Fix from $2,300 2026-04-27