Vulnerability index

Browse CVEs

10,000+ matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

HIGH 8.7 CVE-2026-72767 n8n before 1.123.67, 2.x before 2.31.5, and 2.32.x before 2.32.1 contain a remote code execution vulnerability in the Git node. Authenticated users w… No fix yet Fix from $4,9002026-08-11 HIGH 8.2 CVE-2026-72766 n8n before 1.123.67, 2.x before 2.31.5, and 2.32.x before 2.32.1 contain a type confusion vulnerability in the Send Email node, which does not enforc… No fix yet Fix from $4,9002026-08-11 HIGH 8.7 CVE-2026-72765 n8n before 2.31.5 and before 2.32.1 contain a sandbox escape vulnerability in expression evaluation. An authenticated user with permission to create … No fix yet Fix from $4,9002026-08-11 MEDIUM 5.8 CVE-2026-72764 n8n's JavaScript task runner shared a single module cache across all users' Code-node executions. In affected versions (before 1.123.67, 2.31.5, and … No fix yet Fix from $4,0002026-08-11 HIGH 7.2 CVE-2026-72763 n8n before 1.123.67, 2.31.5, and 2.32.1 validates credential-access only for a node's top-level credentials and not for credentials referenced inside… No fix yet Fix from $4,9002026-08-11 HIGH 7.7 CVE-2026-72762 n8n versions before 1.123.67, 2.31.5, and 2.32.1 contain an arbitrary file write vulnerability in the Edit Image node, which passes its output format… No fix yet Fix from $4,9002026-08-11 MEDIUM 5.3 CVE-2026-72750 n8n before 1.123.67, 2.31.5, and 2.32.1 contains a SQL injection vulnerability in the Snowflake node's Execute Query operation, which interpolates ex… No fix yet Fix from $4,0002026-08-11 HIGH 7.1 CVE-2026-72749 n8n before 1.123.67, 2.31.5, and 2.32.1 contains a prototype pollution vulnerability in the Edit Fields (Set) node. The node assigns output fields vi… No fix yet Fix from $4,9002026-08-11 HIGH 7.5 CVE-2026-72745 FreeRDP before 3.30.0 contains an out-of-bounds vulnerability in kerberos_DecryptMessage() (winpr/libwinpr/sspi/Kerberos/kerberos.c). The 16-bit EC (… No fix yet Fix from $4,9002026-08-11 MEDIUM 6.2 CVE-2026-72744 Nuxt versions >= 4.4.7 and < 4.5.1, and >= 3.21.7 and < 3.21.10, contain an information disclosure vulnerability in the development server's Chrome D… No fix yet Fix from $4,0002026-08-11 HIGH 7.5 CVE-2026-69109 A vulnerability has been identified in Siemens License Server (SLS) (All versions < V5.3). The affected application is vulnerable to a path traversal… No fix yet Fix from $4,9002026-08-11 MEDIUM 6.0 CVE-2026-69108 A vulnerability has been identified in Siemens License Server (SLS) (All versions < V5.1). The affected application is vulnerable to a local privileg… No fix yet Fix from $4,0002026-08-11 HIGH 7.8 CVE-2026-64629 A vulnerability has been identified in Parasolid V38.0 (All versions < V38.0.235), Parasolid V38.1 (All versions < V38.1.230). The affected applicati… No fix yet Fix from $4,9002026-08-11 HIGH 7.8 CVE-2026-59701 A vulnerability has been identified in Simcenter Femap (All versions < V2606.0001). The affected applications contains an out of bounds read vulnerab… No fix yet Fix from $4,9002026-08-11 HIGH 7.8 CVE-2026-59700 A vulnerability has been identified in Simcenter Femap (All versions < V2606.0001). The affected applications contains an out of bounds read vulnerab… No fix yet Fix from $4,9002026-08-11 HIGH 7.8 CVE-2026-59086 A vulnerability has been identified in Simcenter Femap (All versions < V2606), Simcenter Nastran (All versions < V2606). The affected applications co… No fix yet Fix from $4,9002026-08-11 CRITICAL 10.0 CVE-2026-58115 A vulnerability has been identified in SIMATIC IoT2050 Advanced (6ES7647-0BA00-1YA2) (All versions < V4.3.4.1 running Industrial OS with Node-RED ins… No fix yet Fix from $5,7502026-08-11 MEDIUM 6.8 CVE-2026-57263 A vulnerability has been identified in LOGO! Soft Comfort (All versions < V9). The project password feature in the affected products stores the passw… No fix yet Fix from $4,0002026-08-11 MEDIUM 6.8 CVE-2026-57262 A vulnerability has been identified in LOGO! Soft Comfort (All versions < V9). Affected products use a static, hardcoded AES master key to encrypt pr… No fix yet Fix from $4,0002026-08-11 HIGH 7.8 CVE-2026-50064 A vulnerability has been identified in Solid Edge SE2025 (All versions < V225.0 Update 15), Solid Edge SE2026 (All versions < V226.0 Update 7). The a… No fix yet Fix from $4,9002026-08-11 HIGH 7.8 CVE-2026-50063 A vulnerability has been identified in Solid Edge SE2025 (All versions < V225.0 Update 15), Solid Edge SE2026 (All versions < V226.0 Update 7). The a… No fix yet Fix from $4,9002026-08-11 HIGH 7.8 CVE-2026-50062 A vulnerability has been identified in Solid Edge SE2025 (All versions < V225.0 Update 15), Solid Edge SE2026 (All versions < V226.0 Update 7). The a… No fix yet Fix from $4,9002026-08-11 HIGH 7.8 CVE-2026-50061 A vulnerability has been identified in Solid Edge SE2025 (All versions < V225.0 Update 15), Solid Edge SE2026 (All versions < V226.0 Update 7). The a… No fix yet Fix from $4,9002026-08-11 HIGH 7.8 CVE-2026-50060 A vulnerability has been identified in Solid Edge SE2025 (All versions < V225.0 Update 15), Solid Edge SE2026 (All versions < V226.0 Update 7). The a… No fix yet Fix from $4,9002026-08-11 HIGH 7.8 CVE-2026-50059 A vulnerability has been identified in Solid Edge SE2025 (All versions < V225.0 Update 15), Solid Edge SE2026 (All versions < V226.0 Update 7). The a… No fix yet Fix from $4,9002026-08-11 HIGH 7.8 CVE-2026-50058 A vulnerability has been identified in Solid Edge SE2025 (All versions < V225.0 Update 15), Solid Edge SE2026 (All versions < V226.0 Update 7). The a… No fix yet Fix from $4,9002026-08-11 CRITICAL 9.6 CVE-2026-18972 An authenticated attacker can spoof another GUI user's identity by sending their request with the custom header \"Grpc-Metadata-USER\". This can lead… No fix yet Fix from $5,7502026-08-11 HIGH 7.1 CVE-2026-72609 An SQL injection vulnerability in Koha through 24.11.17, 25.05.12, 25.11.06, and 26.05.01 allows authenticated staff with the acquisition => order_re… No fix yet Fix from $4,9002026-08-11 MEDIUM 6.5 CVE-2026-72608 A stored SQL injection vulnerability in Koha through 24.11.17, 25.05.12, 25.11.06, and 26.05.01 allows authenticated staff with the tools => label_cr… No fix yet Fix from $4,0002026-08-11 HIGH 7.1 CVE-2026-72607 A stored SQL injection vulnerability in Koha through 24.11.17, 25.05.12, 25.11.06, and 26.05.01 allows authenticated staff with the tools => items_ba… No fix yet Fix from $4,9002026-08-11