Vulnerability index

Browse CVEs

10,000+ matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

MEDIUM 6.8 CVE-2026-65939 In WhatsUp Gold versions released before 2026.0.2, a privileged attacker can create a LogToFile action specifying an arbitrary file extension within … No fix yet Fix from $4,0002026-08-12 HIGH 8.0 CVE-2026-65937 In WhatsUp Gold versions released before 2026.0.2, an authenticated attacker can bypass frontend controls and inject persistent script content. No fix yet Fix from $4,9002026-08-12 CRITICAL 9.3 CVE-2026-64639 Incorrect database cloning process in Plesk from 18.0.52 before 18.0.79.6 and 18.0.80.2 allows a low-privileged user (customer, reseller) to execute … No fix yet Fix from $5,7502026-08-12 MEDIUM 5.5 CVE-2026-19548 Multiple Use-After-Free vulnerabilities were found in the add_archive_element function in ld/ldmain.c of the GNU linker (ld), a component of binutils… No fix yet Fix from $4,0002026-08-12 HIGH 8.7 CVE-2026-15803 In Eclipse RDF4J, several XML parser entry points do not fully restrict XML External Entity (XXE) processing when parsing untrusted XML-based RDF dat… No fix yet Fix from $4,9002026-08-12 MEDIUM 5.3 CVE-2026-68760 An unauthenticated user may bypass authentication under specific cache conditions. No fix yet Fix from $4,0002026-08-12 HIGH 7.5 CVE-2026-68757 A user with access to a valid SAML response may impersonate another user under specific conditions. No fix yet Fix from $4,9002026-08-12 MEDIUM 6.6 CVE-2026-68756 A party with write access to stored session data may affect JFrog Artifactory under specific conditions. No fix yet Fix from $4,0002026-08-12 MEDIUM 6.5 CVE-2026-68754 A repository publisher without delete permission may modify protected package content under specific conditions. No fix yet Fix from $4,0002026-08-12 MEDIUM 5.3 CVE-2026-68753 An unauthenticated user may access restricted Artifactory content when a credentialed remote repository is configured in a specific way. No fix yet Fix from $4,0002026-08-12 HIGH 7.2 CVE-2026-68752 A Project Resource Manager may gain broader administrative privileges under specific conditions. No fix yet Fix from $4,9002026-08-12 MEDIUM 6.3 CVE-2026-67287 Joomla Extension - joomshaper.com - Unauthenticated comment creation in SP Page Builder < 6.8.0 - An unauthenticated attacker can create comments on … No fix yet Fix from $4,0002026-08-12 MEDIUM 6.3 CVE-2026-67286 Joomla Extension - joomshaper.com - Unauthenticated arbitrary directory creation and file write in SP Page Builder < 6.8.0 - An unauthenticated attac… No fix yet Fix from $4,0002026-08-12 MEDIUM 5.3 CVE-2026-66381 A repository reader with cache-deploy permission may access content outside a configured upstream path under specific conditions. No fix yet Fix from $4,0002026-08-12 MEDIUM 5.3 CVE-2026-66377 An unauthenticated user may access restricted repository information under specific conditions. No fix yet Fix from $4,0002026-08-12 HIGH 8.1 CVE-2026-66375 A low-privilege authenticated user may permanently remove protected internal metadata across repositories under specific conditions. No fix yet Fix from $4,9002026-08-12 MEDIUM 6.8 CVE-2026-49349 regclient is a Docker and OCI Registry Client in Go. Prior to version 0.11.5, credentials for a registry may be inadvertently leaked to external serv… No fix yet Fix from $4,0002026-08-12 MEDIUM 5.7 CVE-2026-18171 Docker Sandboxes (sbx) applies the read-only intent of a runtime host mount to the in-guest container bind only: the underlying virtio-fs host-edge g… No fix yet Fix from $4,0002026-08-12 CRITICAL 9.1 CVE-2025-59324 CPSD CryptoPro Secure Disk for Bitlocker before v7.7.4 fails to properly validate LUKS encryption and, if encryption is present, all CryptoPro file i… No fix yet Fix from $5,7502026-08-12 MEDIUM 5.5 CVE-2026-14479 A maliciously crafted input, when processed by the Autodesk Installer IPC frame parser, may trigger improper validation of an input-specified positio… No fix yet Fix from $4,0002026-08-12 HIGH 7.8 CVE-2026-14478 A maliciously created executable, when executed on the victim's machine, may allow a local low-privileged attacker to inject unauthenticated IPC mess… No fix yet Fix from $4,9002026-08-12 HIGH 8.4 CVE-2025-59323 CPSD CryptoPro Secure Disk for Bitlocker before v7.7.4 fails to validate the integrity of the DataStore, a non-partitioned filesystem, responsible fo… No fix yet Fix from $4,9002026-08-12 HIGH 7.5 CVE-2025-59322 CPSD CryptoPro Secure Disk for Bitlocker before v7.7.4 fails to properly handle decryption errors and allows encrypted volumes to be mounted as plain… No fix yet Fix from $4,9002026-08-12 CRITICAL 9.8 CVE-2025-59321 CPSD CryptoPro Secure Disk for Bitlocker before v7.7.4 contains a default TPM PCR policy that fails to consider the system boot state. This allows th… No fix yet Fix from $5,7502026-08-12 HIGH 7.2 CVE-2025-59319 CPSD CryptoPro Secure Disk for Bitlocker before v7.7.4 fails to certify the integrity of the intended boot partition and selects the first partition … No fix yet Fix from $4,9002026-08-12 CRITICAL 9.2 CVE-2026-67285 Joomla Extension - joomshaper.com - Unauthenticated arbitrary local PHP file inclusion in SP Page Builder < 6.8.0 - An unauthenticated attacker can p… No fix yet Fix from $5,7502026-08-12 HIGH 8.1 CVE-2026-47231 Admidio is an open-source user management solution. Prior to version 5.0.10, `modules/documents-files.php` gates state-changing modes by checking tha… No fix yet Fix from $4,9002026-08-12 MEDIUM 6.5 CVE-2026-47230 Admidio is an open-source user management solution. Prior to version 5.0.10, `modules/documents-files.php` mode `file_rename_save` shares the same ro… No fix yet Fix from $4,0002026-08-12 MEDIUM 5.4 CVE-2026-47229 Admidio is an open-source user management solution. Prior to version 5.0.10, `modules/sso/clients.php` validates an `adm_csrf_token` on every state-c… No fix yet Fix from $4,0002026-08-12 MEDIUM 5.2 CVE-2026-47228 Admidio is an open-source user management solution. `modules/registration.php` mode `send_login` regenerates a random password for `user_uuid_assigne… No fix yet Fix from $4,0002026-08-12