Vulnerability index

Browse CVEs

10,000+ matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

MEDIUM 6.5 CVE-2026-48411 Adobe Commerce is affected by an Incorrect Authorization vulnerability that could result in a Security feature bypass. An attacker with high privileg… No fix yet Fix from $4,0002026-08-11 CRITICAL 9.0 CVE-2026-48381 Adobe Campaign Classic (ACC) is affected by an Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability tha… No fix yet Fix from $5,7502026-08-11 CRITICAL 10.0 CVE-2026-27302 Adobe Campaign Classic (ACC) is affected by an Incorrect Authorization vulnerability that could result in arbitrary code execution in the context of … No fix yet Fix from $5,7502026-08-11 MEDIUM 5.6 CVE-2026-0465 A Use‑After‑Free (UAF) vulnerability in the AMD Ryzen™ Master Utility Driver could allow a local attacker to access kernel memory, potentially result… No fix yet Fix from $4,0002026-08-11 HIGH 7.0 CVE-2025-54512 A DLL hijacking vulnerability within the AMD Ryzen Master installation could allow a local user-privileged attacker to escalate privileges, potential… No fix yet Fix from $4,9002026-08-11 HIGH 7.0 CVE-2025-0046 Incorrect directory permissions could allow a local user to escalate their privileges, potentially resulting in arbitrary code execution. No fix yet Fix from $4,9002026-08-11 HIGH 7.5 CVE-2022-50997 Weaver (Fanwei) E-cology 8.0 and 9.0 contains a SQL injection vulnerability in the HrmCareerApplyPerView.jsp endpoint that allows unauthenticated rem… No fix yet Fix from $4,9002026-08-11 HIGH 7.5 CVE-2016-20097 Weaver (Fanwei) E-cology 8.0 contains a SQL injection vulnerability in the SignatureDownLoad servlet that allows unauthenticated remote attackers to … No fix yet Fix from $4,9002026-08-11 HIGH 7.6 CVE-2026-73083 Activepieces is an open source AI workflow automation platform. Prior to 0.80.0, in SANDBOX_CODE_ONLY mode, the engine loads the compiled user module… No fix yet Fix from $4,9002026-08-11 HIGH 8.7 CVE-2026-73081 Activepieces is an open source AI workflow automation platform. Prior to 0.80.0, the worker's code-compilation pipeline builds the on-disk path for a… No fix yet Fix from $4,9002026-08-11 HIGH 8.8 CVE-2026-71387 ColdFusion is affected by an Incorrect Authorization vulnerability that could result in arbitrary code execution in the context of the current user. … Coldfusion No fix yet Fix from $4,9002026-08-11 HIGH 8.8 CVE-2026-71386 is affected by a Cross-site Scripting (XSS) vulnerability that could result in arbitrary code execution in the context of the current user. An attack… Coldfusion No fix yet Fix from $4,9002026-08-11 CRITICAL 9.6 CVE-2026-71384 is affected by an Incorrect Authorization vulnerability that could result in a Security feature bypass. An attacker could leverage this vulnerability… Coldfusion No fix yet Fix from $5,7502026-08-11 HIGH 7.3 CVE-2026-71383 is affected by an Incorrect Authorization vulnerability that could result in a Security feature bypass. An attacker could leverage this vulnerability… Coldfusion No fix yet Fix from $4,9002026-08-11 MEDIUM 5.5 CVE-2026-70325 Improper input validation in Microsoft Office PowerPoint allows an unauthorized attacker to disclose information locally. 365 Apps No fix yet Fix from $4,0002026-08-11 MEDIUM 5.5 CVE-2026-70323 Improper input validation in Microsoft Office allows an unauthorized attacker to disclose information locally. 365 Apps No fix yet Fix from $4,0002026-08-11 MEDIUM 5.5 CVE-2026-70322 Improper input validation in Microsoft Office PowerPoint allows an unauthorized attacker to disclose information locally. 365 Apps No fix yet Fix from $4,0002026-08-11 MEDIUM 5.5 CVE-2026-70320 Improper input validation in Microsoft Office PowerPoint allows an unauthorized attacker to disclose information locally. 365 Apps No fix yet Fix from $4,0002026-08-11 MEDIUM 5.5 CVE-2026-70319 Improper input validation in Microsoft Office Word allows an unauthorized attacker to disclose information locally. 365 Apps No fix yet Fix from $4,0002026-08-11 MEDIUM 5.5 CVE-2026-70317 Use of uninitialized resource in Microsoft Office allows an unauthorized attacker to disclose information locally. 365 Apps No fix yet Fix from $4,0002026-08-11 MEDIUM 5.5 CVE-2026-70316 Improper input validation in Microsoft Office PowerPoint allows an unauthorized attacker to disclose information locally. 365 Apps No fix yet Fix from $4,0002026-08-11 MEDIUM 5.5 CVE-2026-70315 Out-of-bounds read in Microsoft Office allows an unauthorized attacker to disclose information locally. 365 Apps No fix yet Fix from $4,0002026-08-11 MEDIUM 5.5 CVE-2026-70314 Improper input validation in Microsoft Office allows an unauthorized attacker to disclose information locally. 365 Apps No fix yet Fix from $4,0002026-08-11 HIGH 7.8 CVE-2026-70313 Improper input validation in Microsoft Office PowerPoint allows an unauthorized attacker to disclose information locally. 365 Apps No fix yet Fix from $4,9002026-08-11 MEDIUM 5.5 CVE-2026-70312 Improper input validation in Microsoft Office PowerPoint allows an unauthorized attacker to disclose information locally. 365 Apps No fix yet Fix from $4,0002026-08-11 HIGH 7.8 CVE-2026-70311 Use after free in Microsoft Office Word allows an unauthorized attacker to execute code locally. 365 Apps No fix yet Fix from $4,9002026-08-11 MEDIUM 5.5 CVE-2026-70310 Out-of-bounds read in Microsoft Office Word allows an unauthorized attacker to disclose information locally. 365 Apps No fix yet Fix from $4,0002026-08-11 HIGH 7.8 CVE-2026-70130 Heap-based buffer overflow in Microsoft Office allows an unauthorized attacker to execute code locally. 365 Apps No fix yet Fix from $4,9002026-08-11 MEDIUM 5.5 CVE-2026-68809 Incomplete cleanup in Microsoft Office PowerPoint allows an unauthorized attacker to disclose information locally. 365 Apps No fix yet Fix from $4,0002026-08-11 HIGH 7.8 CVE-2026-68792 Improper neutralization of special elements used in a command ('command injection') in Microsoft Office allows an authorized attacker to elevate priv… 365 Apps No fix yet Fix from $4,9002026-08-11