Vulnerability index

Browse CVEs

2,061 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Unclassified HIGH 8.7
CVE-2026-55193

FreeRDP is a free implementation of the Remote Desktop Protocol. Prior to 3.27.0, FreeRDP clients using TS Gateway accept a server-controlled max_xmi…

Patch available
Fix from $4,900 2026-08-19
Unclassified HIGH 7.2
CVE-2026-55192

FreeRDP is a free implementation of the Remote Desktop Protocol. Prior to 3.27.0, FreeRDP H.264 decoder backends can return YUV planes sized from the…

Patch available
Fix from $4,900 2026-08-19
Unclassified HIGH 8.7
CVE-2026-55191

FreeRDP is a free implementation of the Remote Desktop Protocol. Prior to 3.27.0, FreeRDP clients that negotiate RDPGFX AVC444 with an H.264 decoder …

Patch available
Fix from $4,900 2026-08-19
Unclassified CRITICAL 9.0
CVE-2026-32475

Unrestricted Upload of File with Dangerous Type vulnerability in Elementor Elementor Pro allows Using Malicious Files. This issue affects Elementor …

No fix yet
Fix from $5,750 2026-08-19
Unclassified HIGH 7.5
CVE-2026-19875

IBM Langflow OSS 1.0.0 through 1.10.0 could allow a remote attacker to overwrite administrator email information and abuse the server as an outbound …

No fix yet
Fix from $4,900 2026-08-19
Vios MEDIUM 5.5
CVE-2026-19653

IBM AIX 7.2, and 7.3 and IBM PowerVM VIOS 4.1 could allow a local attacker to cause a denial of service due to improper handling of memory page table…

Fix: 4.1.0.50 / 4.1.1.30+
Fix from $4,000 2026-08-19
Unclassified HIGH 8.2
CVE-2026-19234

Power Systems Firmware FW1120.00, FW1110.00 through FW1110.30, and FW1060.00 through FW1060.80 is affected by a vulnerability in the host firmware bo…

No fix yet
Fix from $4,900 2026-08-19
Unclassified MEDIUM 6.2
CVE-2026-18874

A flaw was found in volsync-addon-controller. This vulnerability allows an attacker to inject malicious YAML (Yet Another Markup Language) code into …

No fix yet
Fix from $4,000 2026-08-19
Unclassified HIGH 7.1
CVE-2026-17183

An authenticated user with permission to create or edit alert rules can bypass datasource query authorization by marking an alert rule query as a ser…

No fix yet
Fix from $4,900 2026-08-19
Unclassified HIGH 8.8
CVE-2025-14603

The application component processes user-supplied parameters insecurely, passing them into SQL queries. This can enable blind SQL injection, potentia…

No fix yet
Fix from $4,900 2026-08-19
Unclassified CRITICAL 9.3
CVE-2025-14600

An insecure deserialization vulnerability in vsDesk allows a remote attacker to gain unauthorized administrative access. By manipulating application …

No fix yet
Fix from $5,750 2026-08-19
Unclassified HIGH 7.1
CVE-2026-75147

FFmpeg before commit 983dae9 contains an out-of-bounds read in the AV1 RTP packetizer (libavformat/rtpenc_av1.c). The keyframe detection loop that se…

No fix yet
Fix from $4,900 2026-08-19
Unclassified HIGH 8.1
CVE-2026-75146

FFmpeg before commit 65b0dab contains an out-of-bounds read in the DASH demuxer (libavformat/dashdec.c). When a live DASH manifest is refreshed with …

No fix yet
Fix from $4,900 2026-08-19
Unclassified MEDIUM 5.8
CVE-2026-75145

FFmpeg before commit b4c199c contains an incorrect integer narrowing conversion in the AV1 RTP packetizer (libavformat/rtpenc_av1.c). The OBU size is…

No fix yet
Fix from $4,000 2026-08-19
Unclassified HIGH 7.8
CVE-2026-75144

FFmpeg before commit 1cdeb3c contains a heap buffer overflow vulnerability in the VC-2/Dirac RTP packetizer (libavformat/rtpenc_vc2hq.c) that allows …

No fix yet
Fix from $4,900 2026-08-19
Unclassified CRITICAL 9.8
CVE-2026-75143

FFmpeg before commit 1c10bcc contains a heap buffer overflow in the RIST protocol reader (libavformat/librist.c). librist_read() ignored its size arg…

No fix yet
Fix from $5,750 2026-08-19
Unclassified HIGH 7.8
CVE-2026-75142

FFmpeg before commit 9d786e4 contains a stack buffer overflow in the MPEG-PS muxer (libavformat/mpegenc.c). When muxing input with more streams than …

No fix yet
Fix from $4,900 2026-08-19
Unclassified HIGH 7.8
CVE-2026-75141

FFmpeg before commit acf5d7c contains a heap buffer overflow in the hvcC box writer. When writing an HEVC configuration record with more NAL units of…

No fix yet
Fix from $4,900 2026-08-19
Trueconf Server CRITICAL 9.0
CVE-2026-72530 KEV

A remote unauthorized attacker with network access via port 4307/TCP to the TrueConf server versions 5.3.X to 5.3.9, 5.4.X to 5.4.9, 5.5.X to 5.5.5, …

Fix: 5.3.9.10013 / 5.3.9.10015+
Fix from $5,750 2026-08-19
Trueconf Server CRITICAL 9.8
CVE-2026-72529 KEV

A remote unauthorized attacker with network access via port 4307/TCP to the TrueConf server versions 5.3.X to 5.3.9, 5.4.X to 5.4.9, 5.5.X to 5.5.5, …

Fix: 5.3.9.10013 / 5.3.9.10015+
Fix from $5,750 2026-08-19
Unclassified CRITICAL 9.1
CVE-2026-71470

A flaw was found in the search-v2-operator. This vulnerability allows a privileged user, specifically a Custom Resource (CR) editor, to manipulate Se…

No fix yet
Fix from $5,750 2026-08-19
Unclassified HIGH 7.2
CVE-2026-50173

Flow-Like is a platform for building end-to-end use cases. Prior to version 1.0.4, `GET /api/v1/apps/{app_id}/invoke/presign` grants Azure Blob Stora…

No fix yet
Fix from $4,900 2026-08-19
Unclassified CRITICAL 9.1
CVE-2026-49441

Wazuh is a free and open source platform used for threat prevention, detection, and response. From 4.3.0 until 4.14.6 and 5.0.0-beta3, the non-merged…

Patch available
Fix from $5,750 2026-08-19
Unclassified MEDIUM 5.3
CVE-2026-49392

Wazuh is a free and open source platform used for threat prevention, detection, and response. From 4.6.0 until 4.14.6 and 5.0.0-beta3, DB::getFile() …

Patch available
Fix from $4,000 2026-08-19
Unclassified CRITICAL 9.1
CVE-2026-48162

Wazuh is a free and open source platform used for threat prevention, detection, and response. From 4.0.0 until 4.14.6 and 5.0.0-beta3, DistributedAPI…

Patch available
Fix from $5,750 2026-08-19
Unclassified CRITICAL 9.1
CVE-2026-48024

Wazuh is a free and open source platform used for threat prevention, detection, and response. From 4.0.0 until 4.14.6 and 5.0.0-beta3, cluster.unmerg…

Patch available
Fix from $5,750 2026-08-19
Unclassified HIGH 7.5
CVE-2026-45798

Wazuh is a free and open source platform used for threat prevention, detection, and response. From 4.5.0 until 4.14.6 and 5.0.0-beta2, compare_wazuh_…

Patch available
Fix from $4,900 2026-08-19
Unclassified HIGH 8.4
CVE-2026-44901

Wazuh is a free and open source platform used for threat prevention, detection, and response. From 4.0.0 until 4.14.6 and 5.0.0-beta2, AffectedItemsW…

Patch available
Fix from $4,900 2026-08-19
Unclassified MEDIUM 5.3
CVE-2026-44256

Wazuh is a free and open source platform used for threat prevention, detection, and response. From 4.4.0 until 4.14.6 and 5.0.0-beta2, api/api/middle…

Patch available
Fix from $4,000 2026-08-19
Unclassified MEDIUM 5.3
CVE-2026-44255

Wazuh is a free and open source platform used for threat prevention, detection, and response. From 4.0.0 until 4.14.6 and 5.0.0-beta2, Authentication…

Patch available
Fix from $4,000 2026-08-19