Vulnerability index

Browse CVEs

2,061 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Aix MEDIUM 5.3
CVE-2026-16833

IBM AIX 7.2, and 7.3 and IBM PowerVM VIOS 4.1 could allow a remote attacker to disclose kernel memory due to an out-of-bounds read.

Fix: 4.1.0.50 / 4.1.1.30+
Fix from $4,000 2026-08-19
Aix HIGH 7.5
CVE-2026-16831

IBM AIX 7.2, and 7.3 and IBM PowerVM VIOS 4.1 could allow a remote attacker to cause a denial of service due to uncontrolled resource consumption.

Fix: 4.1.0.50 / 4.1.1.30+
Fix from $4,900 2026-08-19
Aix MEDIUM 5.3
CVE-2026-16829

IBM AIX 7.2, and 7.3 and IBM PowerVM VIOS 4.1 could allow a remote attacker to cause a denial of service due to a NULL pointer dereference.

Fix: 4.1.0.50 / 4.1.1.30+
Fix from $4,000 2026-08-19
Aix MEDIUM 5.9
CVE-2026-16827

IBM AIX 7.2, and 7.3 and IBM PowerVM VIOS 4.1 could allow a remote attacker to cause a denial of service due to the use of an uninitialized stack poi…

Fix: 4.1.0.50 / 4.1.1.30+
Fix from $4,000 2026-08-19
Aix HIGH 7.5
CVE-2026-16824

IBM AIX 7.2, and 7.3 and IBM PowerVM VIOS 4.1 could allow a remote attacker to cause a denial of service due to unbounded recursion.

Fix: 4.1.0.50 / 4.1.1.30+
Fix from $4,900 2026-08-19
Aix CRITICAL 9.3
CVE-2026-16822

IBM AIX 7.2, and 7.3 and IBM PowerVM VIOS 4.1 could allow a remote attacker to impersonate the TNC policy server and modify traffic due to improper c…

Fix: 4.1.0.50 / 4.1.1.30+
Fix from $5,750 2026-08-19
Power System S1122 \(9824 22a\) Firmware HIGH 8.2
CVE-2026-16707

IBM PowerVM Hypervisor FW1120.00, FW1110.00 through FW1110.30, FW1060.00 through FW1060.80, and FW950.00 through FW950.H2 is affected by a vulnerabil…

No fix yet
Fix from $4,900 2026-08-19
Power System S1122 \(9824 22a\) Firmware HIGH 8.2
CVE-2026-16661

IBM PowerVM Hypervisor FW1120.00, FW1110.00 through FW1110.30, FW1060.00 through FW1060.80, and FW950.00 through FW950.H2 is affected by a vulnerabil…

No fix yet
Fix from $4,900 2026-08-19
Unclassified MEDIUM 6.9
CVE-2026-75619

Tapo C100/C101 V5 contains a heap-based buffer overflow vulnerability in the RTSP service. An authenticated attacker on the local network can send sp…

No fix yet
Fix from $4,000 2026-08-19
Unclassified HIGH 7.1
CVE-2026-75618

Tapo C100/C101 V5 contains a null pointer dereference vulnerability in the RTSP service. An attacker on the local network can send specially crafted …

No fix yet
Fix from $4,900 2026-08-19
Unclassified CRITICAL 9.9
CVE-2026-70496

A flaw was found in search-v2-operator. The operator's ClusterRole has permissions equivalent to a cluster administrator, allowing it to impersonate …

No fix yet
Fix from $5,750 2026-08-19
Unclassified MEDIUM 6.3
CVE-2026-61807

Snipe-IT is an IT asset/license management system. Prior to 8.6.2, a stored manufacturer or supplier name passed as the table component $name becomes…

Patch available
Fix from $4,000 2026-08-19
Unclassified HIGH 7.1
CVE-2026-55694

Snipe-IT is an IT asset/license management system. Prior to 8.6.3, a restricted user can request /api/v1/users/{target_id}/eulas to obtain another us…

Patch available
Fix from $4,900 2026-08-19
Unclassified HIGH 7.6
CVE-2026-55643

Snipe-IT is an IT asset/license management system. Prior to 8.6.3, a company-scoped user in FMCS floater mode can access users whose company_id is nu…

Patch available
Fix from $4,900 2026-08-19
Unclassified MEDIUM 5.4
CVE-2026-55519

Snipe-IT is an IT asset/license management system. Prior to 8.4.1, an authenticated user with generic asset edit permission can delete files attached…

Patch available
Fix from $4,000 2026-08-19
Unclassified MEDIUM 6.3
CVE-2026-55482

Snipe-IT is an IT asset/license management system. Prior to 8.4.1, a non-superadmin can use app/Http/Controllers/Assets/BulkAssetsController.php upda…

Patch available
Fix from $4,000 2026-08-19
Unclassified MEDIUM 5.8
CVE-2026-50550

Snipe-IT is an IT asset/license management system. Prior to 8.5.0, a user who can edit other users can reset a superadmin's two-factor authentication…

Patch available
Fix from $4,000 2026-08-19
Unclassified MEDIUM 6.5
CVE-2026-49976

Snipe-IT is an IT asset/license management system. Prior to 8.6.1, a user with the import permission can use CSV update mode to overwrite the email a…

Patch available
Fix from $4,000 2026-08-19
Unclassified MEDIUM 5.9
CVE-2026-49870

Snipe-IT is an IT asset/license management system. Prior to 8.6.1, POST /two-factor has no rate limiting, lockout, or attempt counter, allowing an at…

Patch available
Fix from $4,000 2026-08-19
Power System S1122 \(9824 22a\) Firmware MEDIUM 6.7
CVE-2026-19321

Power Systems Firmware FW1120.00, FW1110.00 through FW1110.30, and FW1060.00 through FW1060.80 is affected by a vulnerability in the host firmware. A…

No fix yet
Fix from $4,000 2026-08-19
Unclassified HIGH 8.7
CVE-2026-19198

Akaunting 3.1.21 contains an authenticated improper authorization vulnerability in the common BulkActions dispatcher.This issue affects Akaunting: 3.…

No fix yet
Fix from $4,900 2026-08-19
Power System E1080 \(9080 Hex\) Firmware HIGH 8.3
CVE-2026-18848

IBM Power Systems Firmware FW1120.00, FW1110.00 through FW1110.30, FW1060.00 through FW1060.80, and FW950.00 through FW950.H2 is affected by a vulner…

No fix yet
Fix from $4,900 2026-08-19
Power System S922 \(9009 22g\) Firmware MEDIUM 6.8
CVE-2026-18681

IBM Server Firmware FW1120.00, FW1110.00 through FW1110.30, FW1060.00 through FW1060.80, and FW950.00 through FW950.H2 is affected by a vulnerability…

No fix yet
Fix from $4,000 2026-08-19
Unclassified CRITICAL 9.8
CVE-2026-18315

The TrueBooker – Appointment Booking and Scheduler System plugin for WordPress is vulnerable to Authorization Bypass Through User-Controlled Key lead…

No fix yet
Fix from $5,750 2026-08-19
Power System S1122 \(9824 22a\) Firmware HIGH 8.2
CVE-2026-17494

IBM Power Systems Firmware FW1120.00, and FW1110.00 through FW1110.30 is affected by a vulnerability in the interface between the BMC and the host sy…

No fix yet
Fix from $4,900 2026-08-19
Power System S1122 \(9824 22a\) Firmware HIGH 8.1
CVE-2026-17429

IBM Power Systems Firmware FW1120.00, FW1110.00 through FW1110.30, FW1060.00 through FW1060.80, FW950.00 through FW950.H2, OP940.00 through OP940.a1 …

No fix yet
Fix from $4,900 2026-08-19
Power System S1122 \(9824 22a\) Firmware HIGH 8.2
CVE-2026-17100

Power Systems Firmware FW1120.00, FW1110.00 through FW1110.30, FW1060.00 through FW1060.80, FW950.00 through FW950.H2, OP940.00 through OP940.a1, and…

No fix yet
Fix from $4,900 2026-08-19
Power System S1122 \(9824 22a\) Firmware HIGH 8.2
CVE-2026-17093

IBM Power Systems Firmware FW1120.00, FW1110.00 through FW1110.30, FW1060.00 through FW1060.80, FW950.00 through FW950.H2, OP940.00 through OP940.a1 …

No fix yet
Fix from $4,900 2026-08-19
Power System E1080 \(9080 Hex\) Firmware MEDIUM 6.9
CVE-2026-16938

IBM Power Systems Firmware FW1120.00, FW1110.00 through FW1110.30, FW1060.00 through FW1060.80, and FW950.00 through FW950.H2 is affected by a vulner…

No fix yet
Fix from $4,000 2026-08-19
Power System E1180 \(9080 Heu\) Firmware HIGH 8.2
CVE-2026-16930

IBM Power Systems Firmware FW1120.00, FW1110.00 through FW1110.30, and FW1060.00 through FW1060.80 is affected by a vulnerability in the interface be…

No fix yet
Fix from $4,900 2026-08-19