Vulnerability index

Browse CVEs

10,000+ matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Unclassified MEDIUM 6.7
CVE-2026-19321

Power Systems Firmware FW1120.00, FW1110.00 through FW1110.30, and FW1060.00 through FW1060.80 is affected by a vulnerability in the host firmware. A…

Fix unknown
Fix from $4,000 2026-08-19
Unclassified HIGH 8.7
CVE-2026-19198

Akaunting 3.1.21 contains an authenticated improper authorization vulnerability in the common BulkActions dispatcher.This issue affects Akaunting: 3.…

Fix unknown
Fix from $4,900 2026-08-19
Unclassified HIGH 8.3
CVE-2026-18848

IBM Power Systems Firmware FW1120.00, FW1110.00 through FW1110.30, FW1060.00 through FW1060.80, and FW950.00 through FW950.H2 is affected by a vulner…

Fix unknown
Fix from $4,900 2026-08-19
Unclassified MEDIUM 6.8
CVE-2026-18681

IBM Server Firmware FW1120.00, FW1110.00 through FW1110.30, FW1060.00 through FW1060.80, and FW950.00 through FW950.H2 is affected by a vulnerability…

Fix unknown
Fix from $4,000 2026-08-19
Unclassified CRITICAL 9.8
CVE-2026-18315

The TrueBooker – Appointment Booking and Scheduler System plugin for WordPress is vulnerable to Authorization Bypass Through User-Controlled Key lead…

Fix unknown
Fix from $5,750 2026-08-19
Unclassified HIGH 8.2
CVE-2026-17494

IBM Power Systems Firmware FW1120.00, and FW1110.00 through FW1110.30 is affected by a vulnerability in the interface between the BMC and the host sy…

Fix unknown
Fix from $4,900 2026-08-19
Unclassified HIGH 8.1
CVE-2026-17429

IBM Power Systems Firmware FW1120.00, FW1110.00 through FW1110.30, FW1060.00 through FW1060.80, FW950.00 through FW950.H2, OP940.00 through OP940.a1 …

Fix unknown
Fix from $4,900 2026-08-19
Unclassified HIGH 8.2
CVE-2026-17100

Power Systems Firmware FW1120.00, FW1110.00 through FW1110.30, FW1060.00 through FW1060.80, FW950.00 through FW950.H2, OP940.00 through OP940.a1, and…

Fix unknown
Fix from $4,900 2026-08-19
Unclassified HIGH 8.2
CVE-2026-17093

IBM Power Systems Firmware FW1120.00, FW1110.00 through FW1110.30, FW1060.00 through FW1060.80, FW950.00 through FW950.H2, OP940.00 through OP940.a1 …

Fix unknown
Fix from $4,900 2026-08-19
Unclassified MEDIUM 6.9
CVE-2026-16938

IBM Power Systems Firmware FW1120.00, FW1110.00 through FW1110.30, FW1060.00 through FW1060.80, and FW950.00 through FW950.H2 is affected by a vulner…

Fix unknown
Fix from $4,000 2026-08-19
Unclassified HIGH 8.2
CVE-2026-16930

IBM Power Systems Firmware FW1120.00, FW1110.00 through FW1110.30, and FW1060.00 through FW1060.80 is affected by a vulnerability in the interface be…

Fix unknown
Fix from $4,900 2026-08-19
Unclassified CRITICAL 9.6
CVE-2026-16835

IBM Power Systems Firmware FW1120.00, FW1110.00 through FW1110.30, FW1060.00 through FW1060.80, and FW950.00 through FW950.H2 is affected by a vulner…

Fix unknown
Fix from $5,750 2026-08-19
Unclassified HIGH 8.4
CVE-2026-16832

IBM Power Systems Firmware FW1120.00, FW1110.00 through FW1110.30, FW1060.00 through FW1060.80, and FW950.00 through FW950.H2 is affected by a vulner…

Fix unknown
Fix from $4,900 2026-08-19
Unclassified HIGH 7.6
CVE-2026-16828

IBM Power Systems Firmware FW1120.00, FW1110.00 through FW1110.30, FW1060.00 through FW1060.80, and FW950.00 through FW950.H2 is affected by a vulner…

Fix unknown
Fix from $4,900 2026-08-19
Unclassified CRITICAL 9.6
CVE-2026-16687

IBM Power Systems Firmware FW1120.00, FW1110.00 through FW1110.30, FW1060.00 through FW1060.80, and FW950.00 through FW950.H2 is affected by a vulne…

Fix unknown
Fix from $5,750 2026-08-19
Unclassified HIGH 8.8
CVE-2026-75149

marimo before 0.23.15 contains a code injection vulnerability in the notebook configuration handler that allows attackers to execute arbitrary comman…

Fix unknown
Fix from $4,900 2026-08-19
Unclassified MEDIUM 6.3
CVE-2026-73829

Time-of-check Time-of-use (TOCTOU) Race Condition in ZenHive mpp allows an unauthenticated remote client to redeem one confirmed on-chain payment for…

Fix unknown
Fix from $4,000 2026-08-19
Unclassified HIGH 8.3
CVE-2026-73541

Allocation of Resources Without Limits or Throttling in ZenHive mpp allows an unauthenticated remote client to drain the fee-payer wallet through con…

Fix unknown
Fix from $4,900 2026-08-19
Unclassified HIGH 8.2
CVE-2026-73136

Authentication Bypass by Capture-replay in ZenHive mpp allows an unauthenticated third party to obtain paid resources by replaying a transfer settled…

Fix unknown
Fix from $4,900 2026-08-19
Unclassified CRITICAL 9.3
CVE-2026-72717

Orval generates type-safe JavaScript clients in TypeScript from OpenAPI v3 and Swagger v2 specifications. Prior to 8.21.0, a ${...} expression or bac…

Fix unknown
Fix from $5,750 2026-08-19
Unclassified CRITICAL 9.3
CVE-2026-72716

Orval generates type-safe JavaScript clients in TypeScript from OpenAPI v3 and Swagger v2 specifications. Prior to 8.21.0, a ${...} expression or bac…

Fix unknown
Fix from $5,750 2026-08-19
Unclassified CRITICAL 9.3
CVE-2026-71871

Orval generates type-safe JavaScript clients in TypeScript from OpenAPI v3 and Swagger v2 specifications. Prior to 8.21.0, a ${...} expression or bac…

Fix unknown
Fix from $5,750 2026-08-19
Unclassified CRITICAL 9.3
CVE-2026-71869

Orval generates type-safe JavaScript clients in TypeScript from OpenAPI v3 and Swagger v2 specifications. Prior to 8.21.0, a ${...} expression or bac…

Fix unknown
Fix from $5,750 2026-08-19
Unclassified CRITICAL 9.3
CVE-2026-71868

Orval generates type-safe JavaScript clients in TypeScript from OpenAPI v3 and Swagger v2 specifications. Prior to 8.21.0, a ${...} expression or bac…

Fix unknown
Fix from $5,750 2026-08-19
Unclassified CRITICAL 9.3
CVE-2026-71867

Orval generates type-safe JavaScript clients in TypeScript from OpenAPI v3 and Swagger v2 specifications. Prior to 8.21.0, a single quote in a schema…

Fix unknown
Fix from $5,750 2026-08-19
Unclassified CRITICAL 9.3
CVE-2026-71866

Orval generates type-safe JavaScript clients in TypeScript from OpenAPI v3 and Swagger v2 specifications. From version 8.19.0 until 8.21.0, a double …

Fix unknown
Fix from $5,750 2026-08-19
Unclassified CRITICAL 9.3
CVE-2026-71865

Orval generates type-safe JavaScript clients in TypeScript from OpenAPI v3 and Swagger v2 specifications. Prior to 8.21.0, a double quote in a query …

Fix unknown
Fix from $5,750 2026-08-19
Unclassified CRITICAL 9.3
CVE-2026-71864

Orval generates type-safe JavaScript clients in TypeScript from OpenAPI v3 and Swagger v2 specifications. Prior to 8.21.0, a double quote in a header…

Fix unknown
Fix from $5,750 2026-08-19
Unclassified MEDIUM 5.4
CVE-2026-69159

FreeRDP is a free implementation of the Remote Desktop Protocol. Prior to 3.29.0, planar_decompress_plane_rle and planar_decompress_plane_rle_only in…

Fix unknown
Fix from $4,000 2026-08-19
Unclassified HIGH 8.7
CVE-2026-67581

Authentication Bypass by Capture-replay in ZenHive mpp allows an unauthenticated remote client to obtain paid resources by resubmitting one settled o…

Fix unknown
Fix from $4,900 2026-08-19