Vulnerability index

Browse CVEs

10,000+ matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Unclassified HIGH 8.2
CVE-2026-16686

IBM AIX 7.2, and 7.3 and IBM PowerVM VIOS 4.1 could allow a remote attacker to access NFS-exported filesystems due to improper authentication.

Fix unknown
Fix from $4,900 2026-08-19
Unclassified CRITICAL 9.8
CVE-2026-16656

IBM AIX 7.2, and 7.3 and IBM PowerVM VIOS 4.1 could allow a remote attacker to gain root privileges due to improper authentication.

Fix unknown
Fix from $5,750 2026-08-19
Unclassified MEDIUM 5.2
CVE-2026-15961

IBM PowerVM Hypervisor FW1120.00, FW1110.00 through FW1110.30, and FW1060.00 through FW1060.80 IBM PowerVM could allow a local attacker to obtain sen…

Fix unknown
Fix from $4,000 2026-08-19
Unclassified HIGH 8.1
CVE-2026-15078

IBM AIX 7.2, and 7.3 and IBM PowerVM VIOS 4.1 NIM could allow a remote attacker to gain unauthorized access to AIX systems due to improper validation…

Fix unknown
Fix from $4,900 2026-08-19
Unclassified CRITICAL 9.9
CVE-2026-15068

IBM AIX 7.2, and 7.3 and IBM PowerVM VIOS 4.1 NIM could allow a remote authenticated attacker to execute arbitrary commands due to improper neutraliz…

Fix unknown
Fix from $5,750 2026-08-19
Unclassified CRITICAL 9.1
CVE-2026-15065

IBM AIX 7.2, and 7.3 and IBM PowerVM VIOS 4.1 NIM could allow a remote attacker to bypass security restrictions due to the exposure of intermediate c…

Fix unknown
Fix from $5,750 2026-08-19
Unclassified HIGH 8.2
CVE-2026-15061

IBM AIX 7.2, and 7.3 and IBM PowerVM VIOS 4.1 's nimesis registration service could allow a remote attacker to overwrite files due to path traversal.

Fix unknown
Fix from $4,900 2026-08-19
Unclassified HIGH 7.5
CVE-2026-14970

IBM AIX 7.2, and 7.3 and IBM PowerVM VIOS 4.1 NIM server process is crashing during client registration due to buffer overflow.

Fix unknown
Fix from $4,900 2026-08-19
Unclassified HIGH 7.1
CVE-2026-76245

stigmem (pip package stigmem-node) version 0.9.0a1 contains a timestamp-handling mismatch in federation peer-token validation that can cause valid pe…

Fix unknown
Fix from $4,900 2026-08-19
Unclassified CRITICAL 9.1
CVE-2026-76244

stigmem-node contains an insecure default configuration vulnerability that allows federation traffic to traverse networks without mTLS protection whe…

Fix unknown
Fix from $5,750 2026-08-19
Unclassified CRITICAL 9.2
CVE-2026-76243

stigmem versions before 0.9.0a2 allow unauthenticated access when authentication is disabled on non-loopback deployments. Attackers can perform read,…

Fix unknown
Fix from $5,750 2026-08-19
Unclassified CRITICAL 9.1
CVE-2026-76242

stigmem-node 0.9.0a1 accepts federation peer key material during peer registration without a separate administrator out-of-band fingerprint approval …

Fix unknown
Fix from $5,750 2026-08-19
Unclassified HIGH 7.3
CVE-2026-76241

stigmem-node 0.9.0a1 allows plugin signature enforcement to be disabled via a single configuration flag without a second explicit acknowledgment. If …

Fix unknown
Fix from $4,900 2026-08-19
Unclassified HIGH 7.5
CVE-2026-76240

stigmem-node 0.9.0a1 interpolates Postgres backend schema identifiers into SQL strings without defensive quoting. In the affected code path the schem…

Fix unknown
Fix from $4,900 2026-08-19
Unclassified MEDIUM 6.3
CVE-2026-76239

Stigmem before 0.9.0a11 fails to validate the delivery_address parameter when creating webhook subscriptions, allowing authenticated users to specify…

Fix unknown
Fix from $4,000 2026-08-19
Unclassified HIGH 7.2
CVE-2026-76238

stigmem versions before 0.9.0a12 contain a broken object level authorization vulnerability in the decay sweep endpoint that allows authenticated atta…

Fix unknown
Fix from $4,900 2026-08-19
Unclassified HIGH 8.6
CVE-2026-76237

stigmem-node before 0.9.0a12 contains a broken object level authorization (cross-tenant BOLA) vulnerability in the quarantine review endpoints. On mu…

Fix unknown
Fix from $4,900 2026-08-19
Unclassified HIGH 7.2
CVE-2026-76236

stigmem-node before 0.9.0a12 contains a cross-tenant broken object level authorization (BOLA) flaw in the RTBF (right-to-be-forgotten) tombstone mech…

Fix unknown
Fix from $4,900 2026-08-19
Unclassified HIGH 7.5
CVE-2026-76234

libcrux-ecdh and libcrux-ed25519 before 0.0.6, and libcrux-psq before 0.0.7, contain cryptographic implementation bugs. libcrux-ecdh did not properly…

Fix unknown
Fix from $4,900 2026-08-19
Unclassified MEDIUM 6.7
CVE-2026-76228

Renovate versions >=32.124.0 and before 42.68.5 (and Mend renovate-ce/renovate-ee before 13.3.0) contain a command injection vulnerability in Gradle …

Fix unknown
Fix from $4,000 2026-08-19
Unclassified MEDIUM 5.5
CVE-2026-76227

Renovate versions from 42.68.1 before 42.96.3 (and from 42.68.1 before 43.4.4), including corresponding Docker images (renovate/renovate, mend/renova…

Fix unknown
Fix from $4,000 2026-08-19
Unclassified MEDIUM 6.3
CVE-2026-76226

Renovate versions from 43.65.0 before 43.102.11 contain a remote code execution vulnerability in bazel-module and bazelisk managers when using lockFi…

Fix unknown
Fix from $4,000 2026-08-19
Unclassified HIGH 7.7
CVE-2026-76225

ArcadeDB before 26.8.1 contains a server-side request forgery vulnerability in the OpenCypher LOAD CSV implementation that fails to validate HTTP/HTT…

Fix unknown
Fix from $4,900 2026-08-19
Unclassified HIGH 8.8
CVE-2026-76224

ArcadeDB before 26.8.1 (arcadedb-gremlin, affected <= 26.7.3) contains a remote code execution vulnerability in its Gremlin query engine. Although th…

Fix unknown
Fix from $4,900 2026-08-19
Unclassified HIGH 7.1
CVE-2026-76223

ArcadeDB (com.arcadedb) versions 26.7.3 and earlier fail to enforce the UPDATE_SCHEMA permission check when a DEFINE FUNCTION statement targets an al…

Fix unknown
Fix from $4,900 2026-08-19
Unclassified HIGH 8.2
CVE-2026-76222

GitPython before 3.1.58 fails to validate submodule names from .gitmodules files, allowing attackers to create Git repositories at arbitrary filesyst…

Fix unknown
Fix from $4,900 2026-08-19
Unclassified HIGH 8.8
CVE-2026-76221

GitPython before 3.1.58 contains a config-name injection vulnerability in the option-name validator that allows attackers to forge arbitrary git-conf…

Fix unknown
Fix from $4,900 2026-08-19
Unclassified HIGH 8.8
CVE-2026-76220

GitPython before 3.1.58 contains a command execution vulnerability in the check_unsafe_options guard that can be bypassed by combining a single-chara…

Fix unknown
Fix from $4,900 2026-08-19
Unclassified HIGH 8.1
CVE-2026-76219

GitPython versions before 3.1.58 contain an arbitrary file overwrite vulnerability in IndexFile.from_tree, IndexFile.reset, and IndexFile.merge_tree …

Fix unknown
Fix from $4,900 2026-08-19
Unclassified HIGH 7.5
CVE-2026-76218

GitPython before 3.1.58 contains a remote code execution vulnerability in Repo.init that forwards unsafe git options without validation. Attackers ca…

Fix unknown
Fix from $4,900 2026-08-19