Vulnerability index

Browse CVEs

10,000+ matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Unclassified MEDIUM 6.5
CVE-2026-48411

Adobe Commerce is affected by an Incorrect Authorization vulnerability that could result in a Security feature bypass. An attacker with high privileg…

No fix yet
Fix from $4,000 2026-08-11
Unclassified CRITICAL 9.0
CVE-2026-48381

Adobe Campaign Classic (ACC) is affected by an Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability tha…

No fix yet
Fix from $5,750 2026-08-11
Unclassified CRITICAL 10.0
CVE-2026-27302

Adobe Campaign Classic (ACC) is affected by an Incorrect Authorization vulnerability that could result in arbitrary code execution in the context of …

No fix yet
Fix from $5,750 2026-08-11
Unclassified MEDIUM 5.6
CVE-2026-0465

A Use‑After‑Free (UAF) vulnerability in the AMD Ryzen™ Master Utility Driver could allow a local attacker to access kernel memory, potentially result…

No fix yet
Fix from $4,000 2026-08-11
Unclassified HIGH 7.0
CVE-2025-54512

A DLL hijacking vulnerability within the AMD Ryzen Master installation could allow a local user-privileged attacker to escalate privileges, potential…

No fix yet
Fix from $4,900 2026-08-11
Unclassified HIGH 7.0
CVE-2025-0046

Incorrect directory permissions could allow a local user to escalate their privileges, potentially resulting in arbitrary code execution.

No fix yet
Fix from $4,900 2026-08-11
Unclassified HIGH 7.5
CVE-2022-50997

Weaver (Fanwei) E-cology 8.0 and 9.0 contains a SQL injection vulnerability in the HrmCareerApplyPerView.jsp endpoint that allows unauthenticated rem…

No fix yet
Fix from $4,900 2026-08-11
Unclassified HIGH 7.5
CVE-2016-20097

Weaver (Fanwei) E-cology 8.0 contains a SQL injection vulnerability in the SignatureDownLoad servlet that allows unauthenticated remote attackers to …

No fix yet
Fix from $4,900 2026-08-11
Unclassified HIGH 7.6
CVE-2026-73083

Activepieces is an open source AI workflow automation platform. Prior to 0.80.0, in SANDBOX_CODE_ONLY mode, the engine loads the compiled user module…

No fix yet
Fix from $4,900 2026-08-11
Unclassified HIGH 8.7
CVE-2026-73081

Activepieces is an open source AI workflow automation platform. Prior to 0.80.0, the worker's code-compilation pipeline builds the on-disk path for a…

No fix yet
Fix from $4,900 2026-08-11
Coldfusion HIGH 8.8
CVE-2026-71387

ColdFusion is affected by an Incorrect Authorization vulnerability that could result in arbitrary code execution in the context of the current user. …

No fix yet
Fix from $4,900 2026-08-11
Coldfusion HIGH 8.8
CVE-2026-71386

is affected by a Cross-site Scripting (XSS) vulnerability that could result in arbitrary code execution in the context of the current user. An attack…

No fix yet
Fix from $4,900 2026-08-11
Coldfusion CRITICAL 9.6
CVE-2026-71384

is affected by an Incorrect Authorization vulnerability that could result in a Security feature bypass. An attacker could leverage this vulnerability…

No fix yet
Fix from $5,750 2026-08-11
Coldfusion HIGH 7.3
CVE-2026-71383

is affected by an Incorrect Authorization vulnerability that could result in a Security feature bypass. An attacker could leverage this vulnerability…

No fix yet
Fix from $4,900 2026-08-11
365 Apps MEDIUM 5.5
CVE-2026-70325

Improper input validation in Microsoft Office PowerPoint allows an unauthorized attacker to disclose information locally.

No fix yet
Fix from $4,000 2026-08-11
365 Apps MEDIUM 5.5
CVE-2026-70323

Improper input validation in Microsoft Office allows an unauthorized attacker to disclose information locally.

No fix yet
Fix from $4,000 2026-08-11
365 Apps MEDIUM 5.5
CVE-2026-70322

Improper input validation in Microsoft Office PowerPoint allows an unauthorized attacker to disclose information locally.

No fix yet
Fix from $4,000 2026-08-11
365 Apps MEDIUM 5.5
CVE-2026-70320

Improper input validation in Microsoft Office PowerPoint allows an unauthorized attacker to disclose information locally.

No fix yet
Fix from $4,000 2026-08-11
365 Apps MEDIUM 5.5
CVE-2026-70319

Improper input validation in Microsoft Office Word allows an unauthorized attacker to disclose information locally.

No fix yet
Fix from $4,000 2026-08-11
365 Apps MEDIUM 5.5
CVE-2026-70317

Use of uninitialized resource in Microsoft Office allows an unauthorized attacker to disclose information locally.

No fix yet
Fix from $4,000 2026-08-11
365 Apps MEDIUM 5.5
CVE-2026-70316

Improper input validation in Microsoft Office PowerPoint allows an unauthorized attacker to disclose information locally.

No fix yet
Fix from $4,000 2026-08-11
365 Apps MEDIUM 5.5
CVE-2026-70315

Out-of-bounds read in Microsoft Office allows an unauthorized attacker to disclose information locally.

No fix yet
Fix from $4,000 2026-08-11
365 Apps MEDIUM 5.5
CVE-2026-70314

Improper input validation in Microsoft Office allows an unauthorized attacker to disclose information locally.

No fix yet
Fix from $4,000 2026-08-11
365 Apps HIGH 7.8
CVE-2026-70313

Improper input validation in Microsoft Office PowerPoint allows an unauthorized attacker to disclose information locally.

No fix yet
Fix from $4,900 2026-08-11
365 Apps MEDIUM 5.5
CVE-2026-70312

Improper input validation in Microsoft Office PowerPoint allows an unauthorized attacker to disclose information locally.

No fix yet
Fix from $4,000 2026-08-11
365 Apps HIGH 7.8
CVE-2026-70311

Use after free in Microsoft Office Word allows an unauthorized attacker to execute code locally.

No fix yet
Fix from $4,900 2026-08-11
365 Apps MEDIUM 5.5
CVE-2026-70310

Out-of-bounds read in Microsoft Office Word allows an unauthorized attacker to disclose information locally.

No fix yet
Fix from $4,000 2026-08-11
365 Apps HIGH 7.8
CVE-2026-70130

Heap-based buffer overflow in Microsoft Office allows an unauthorized attacker to execute code locally.

No fix yet
Fix from $4,900 2026-08-11
365 Apps MEDIUM 5.5
CVE-2026-68809

Incomplete cleanup in Microsoft Office PowerPoint allows an unauthorized attacker to disclose information locally.

No fix yet
Fix from $4,000 2026-08-11
365 Apps HIGH 7.8
CVE-2026-68792

Improper neutralization of special elements used in a command ('command injection') in Microsoft Office allows an authorized attacker to elevate priv…

No fix yet
Fix from $4,900 2026-08-11