Vulnerability index

Browse CVEs

6,363 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Filtering by weakness OS Command InjectionCWE-78 × clear
HIGH 7.2 CVE-2026-7461 Improper neutralization of inputs used in an OS command in the FSx Windows File Server volume mounting component in Amazon ECS Agent on Windows befor… Amazon Ecs Container Agent 1.103.0+ Fix from $1,9502026-04-30 CRITICAL 9.8 CVE-2025-71284EPSS 6% Synway SMG Gateway Management Software contains an OS command injection vulnerability in the RADIUS configuration endpoint at /en/9-2radius.php where… Smg Gateway Management Software Mitigation only Fix from $2,3002026-04-30 HIGH 7.2 CVE-2026-7246 This CVE record was assigned not following CNA/CVE rules and is not considered a valid vulnerability by the Pallets Click project. The original CVE r… Click 8.3.3+ Fix from $1,9502026-04-30 HIGH 7.3 CVE-2026-7446 A vulnerability was detected in VetCoders mcp-server-semgrep 1.0.0. This affects the function analyze_results/filter_results/export_results/compare_r… Patch available Fix from $1,9502026-04-30 HIGH 7.3 CVE-2026-7443 A weakness has been identified in BurtTheCoder mcp-dnstwist up to 1.0.4. Affected by this vulnerability is the function fuzz_domain of the file src/i… Mitigation only Fix from $1,9502026-04-29 HIGH 7.3 CVE-2026-7416 A vulnerability was found in PolarVista xcode-mcp-server 1.0.0. This issue affects the function build_project/run_tests of the file src/index.ts of t… Mitigation only Fix from $1,9502026-04-29 HIGH 8.8 CVE-2026-6849 Improper neutralization of special elements used in an OS command ('OS command injection') vulnerability in TUBITAK BILGEM Software Technologies Rese… Mitigation only Fix from $1,9502026-04-29 CRITICAL 9.8 CVE-2026-7241 A vulnerability was found in Totolink A8000RU 7.1cu.643_b20200521. This issue affects the function setWiFiBasicCfg of the file /cgi-bin/cstecgi.cgi o… Mitigation only Fix from $2,3002026-04-28 CRITICAL 9.8 CVE-2026-7242 A vulnerability was determined in Totolink A8000RU 7.1cu.643_b20200521. Impacted is the function setOpenVpnClientCfg of the file /cgi-bin/cstecgi.cgi… Mitigation only Fix from $2,3002026-04-28 CRITICAL 9.8 CVE-2026-7243 A vulnerability was identified in Totolink A8000RU 7.1cu.643_b20200521. The affected element is the function setRadvdCfg of the file /cgi-bin/cstecgi… Mitigation only Fix from $2,3002026-04-28 CRITICAL 9.8 CVE-2026-7244 A security flaw has been discovered in Totolink A8000RU 7.1cu.643_b20200521. The impacted element is the function setWiFiEasyGuestCfg of the file /cg… Mitigation only Fix from $2,3002026-04-28 CRITICAL 9.8 CVE-2026-7240 A vulnerability has been found in Totolink A8000RU 7.1cu.643_b20200521. This vulnerability affects the function setVpnAccountCfg of the file /cgi-bin… Mitigation only Fix from $2,3002026-04-28 MEDIUM 5.3 CVE-2024-54012 Penetration Testing engineers at Amazon discovered a vulnerability where the camera system failed to properly validate input, allowing specially craf… Knb 2000 Firmware 2.23.01+ Fix from $1,6002026-04-28 HIGH 7.3 CVE-2026-7220 A vulnerability has been found in jackwrichards FastlyMCP up to 6f3d0b0e654fc51076badc7fa16c03c461f95620. This impacts an unknown function of the fil… Mitigation only Fix from $1,9502026-04-28 MEDIUM 6.8 CVE-2026-0711 A post-authentication command injection vulnerability in the EasyMesh-related APIs of Zyxel DX3300-T0 firmware versions through 5.50(ABVY.7.1)C0 coul… Nr5307 Firmware 1.60 / 2.00+ Fix from $1,6002026-04-28 HIGH 7.2 CVE-2026-1460 A post-authentication command injection vulnerability in the “DomainName” parameter of the DHCP configuration file in Zyxel DX3301-T0 and EX3301-T0 f… Nebula Fwa70 Firmware 1.15 / 1.16+ Fix from $1,9502026-04-28 CRITICAL 9.8 CVE-2026-7202 A vulnerability has been found in Totolink A8000RU 7.1cu.643_b20200521. This affects the function setWiFiWpsStart of the file /cgi-bin/cstecgi.cgi of… Mitigation only Fix from $2,3002026-04-28 CRITICAL 9.8 CVE-2026-7203 A vulnerability was found in Totolink A8000RU 7.1cu.643_b20200521. This vulnerability affects the function setUrlFilterRules of the file /cgi-bin/cst… Mitigation only Fix from $2,3002026-04-28 CRITICAL 9.8 CVE-2026-7204 A vulnerability was determined in Totolink A8000RU 7.1cu.643_b20200521. This issue affects the function setPptpServerCfg of the file /cgi-bin/cstecgi… Mitigation only Fix from $2,3002026-04-28 MEDIUM 6.8 CVE-2026-32649 A command injection vulnerability exists in the web server of specific firmware versions of Milesight cameras. No fix yet Fix from $1,6002026-04-28 CRITICAL 9.8 CVE-2026-7156 A vulnerability was detected in Totolink A8000RU 7.1cu.643_b20200521. Affected is the function CsteSystem of the file /cgi-bin/cstecgi.cgi of the com… Mitigation only Fix from $2,3002026-04-27 CRITICAL 9.8 CVE-2026-7154 A weakness has been identified in Totolink A8000RU 7.1cu.643_b20200521. This affects the function setAdvancedInfoShow of the file /cgi-bin/cstecgi.cg… Mitigation only Fix from $2,3002026-04-27 CRITICAL 9.8 CVE-2026-7155 A security vulnerability has been detected in Totolink A8000RU 7.1cu.643_b20200521. This impacts the function setLoginPasswordCfg of the file /cgi-bi… Mitigation only Fix from $2,3002026-04-27 CRITICAL 9.8 CVE-2026-7152 A vulnerability was identified in Totolink A8000RU 7.1cu.643_b20200521. The affected element is the function setTelnetCfg of the file /cgi-bin/cstecg… Mitigation only Fix from $2,3002026-04-27 CRITICAL 9.8 CVE-2026-7153 A security flaw has been discovered in Totolink A8000RU 7.1cu.643_b20200521. The impacted element is the function setMiniuiHomeInfoShow of the file /… Mitigation only Fix from $2,3002026-04-27 CRITICAL 9.8 CVE-2026-7139 A flaw has been found in Totolink A8000RU 7.1cu.643_b20200521. This issue affects the function setWiFiAclRules of the file /cgi-bin/cstecgi.cgi of th… Mitigation only Fix from $2,3002026-04-27 CRITICAL 9.8 CVE-2026-7140 A vulnerability has been found in Totolink A8000RU 7.1cu.643_b20200521. Impacted is the function CsteSystem of the file /cgi-bin/cstecgi.cgi of the c… Mitigation only Fix from $2,3002026-04-27 CRITICAL 9.8 CVE-2026-7137 A security vulnerability has been detected in Totolink A8000RU 7.1cu.643_b20200521. This affects the function setStorageCfg of the file /cgi-bin/cste… Mitigation only Fix from $2,3002026-04-27 CRITICAL 9.8 CVE-2026-7138 A vulnerability was detected in Totolink A8000RU 7.1cu.643_b20200521. This vulnerability affects the function setNtpCfg of the file /cgi-bin/cstecgi.… Mitigation only Fix from $2,3002026-04-27 CRITICAL 9.8 CVE-2026-7136 A weakness has been identified in Totolink A8000RU 7.1cu.643_b20200521. Affected by this issue is the function setDmzCfg of the file /cgi-bin/cstecgi… Mitigation only Fix from $2,3002026-04-27