Vulnerability index

Browse CVEs

10,000+ matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

HIGH 7.8 CVE-2026-9492 The MBStorage DRAM lighting control module within Gigabyte Control Center (GCC) developed by GIGABYTE Technology has an Improper Access Control vulne… Mitigation only Fix from $1,9502026-07-13 HIGH 7.8 CVE-2026-7162 Successful exploitation of the integer overflow vulnerability could allow an attacker to achieve system-level access to the affected software. No fix yet Fix from $1,9502026-07-13 MEDIUM 5.3 CVE-2026-15553 Enterprise Cloud Database developed by Ragic has a Arbitrary File Upload vulnerability, allowing unauthenticated remote attackers to upload malicious… Mitigation only Fix from $1,6002026-07-13 MEDIUM 6.1 CVE-2026-15552 Enterprise Cloud Database developed by Ragic has a Stored Cross-Site Scripting vulnerability, allowing unauthenticated remote attackers to inject per… Mitigation only Fix from $1,6002026-07-13 MEDIUM 5.3 CVE-2026-15527 A vulnerability has been found in better-auth better-icons up to 1.0.5. This vulnerability affects unknown code of the component scan_project_icons/s… Mitigation only Fix from $1,6002026-07-13 MEDIUM 6.3 CVE-2026-15523 A weakness has been identified in CodeAstro Simple Online Leave Management System 1.0. Affected by this issue is some unknown functionality of the fi… Mitigation only Fix from $1,6002026-07-13 MEDIUM 5.3 CVE-2026-15521 A vulnerability was identified in makafeli n8n-workflow-builder up to 0.11.0. Affected is an unknown function of the file build/server.cjs of the com… Mitigation only Fix from $1,6002026-07-13 MEDIUM 5.0 CVE-2026-15519 A vulnerability was found in usestrix strix up to 1.0.2. This affects an unknown function of the file system_prompt.jinja of the component PyPI Handl… Mitigation only Fix from $1,6002026-07-13 HIGH 7.3 CVE-2026-15517 A flaw has been found in Jinher OA 1.0. The affected element is an unknown function of the file /C6/JHSoft.Web.PlanSummarize/PlanGiveOut.aspx. This m… Mitigation only Fix from $1,9502026-07-13 MEDIUM 5.6 CVE-2026-15516 A vulnerability was detected in MacCMS Pro up to 2022.1000.3005. Impacted is the function step5 of the file application/install/controller/Index.php … Mitigation only Fix from $1,6002026-07-13 HIGH 7.0 CVE-2026-15515 A security vulnerability has been detected in Tencent PC Manager 18.1.30242.301. This issue affects some unknown processing in the library qmudisk64.… Mitigation only Fix from $1,9502026-07-13 HIGH 7.3 CVE-2026-15514 A weakness has been identified in Metasoft 美特软件 MetaCRM up to 6.4.0 Beta06. This vulnerability affects the function RPCService.query of the file … Mitigation only Fix from $1,9502026-07-13 MEDIUM 6.3 CVE-2026-15513 A security flaw has been discovered in Wavlink WL-NU516U1 260515. This affects the function wlink_uci_set_value of the file /cgi-bin/adm.cgi. Perform… Mitigation only Fix from $1,6002026-07-13 MEDIUM 6.3 CVE-2026-15512 A vulnerability was identified in pig-mesh Pig up to 3.9.2. Affected by this issue is some unknown functionality of the file \pig-master\pig-visual\p… Mitigation only Fix from $1,6002026-07-13 CRITICAL 9.8 CVE-2026-15511 A vulnerability was determined in Comfast CF-WR631AX V3 up to 2.7.0.8. Affected by this vulnerability is the function system_wl_upload_pic_file of th… Mitigation only Fix from $2,3002026-07-12 MEDIUM 6.3 CVE-2026-15510 A vulnerability was found in Leantime up to 3.8.0. Affected is the function Setting::saveSetting of the component API. The manipulation results in im… Mitigation only Fix from $1,6002026-07-12 MEDIUM 6.3 CVE-2026-15509 A vulnerability has been found in Leantime up to 3.8.0. This impacts the function editUser/addUser of the component JSON-RPC Endpoint. The manipulati… Mitigation only Fix from $1,6002026-07-12 MEDIUM 6.3 CVE-2026-15508 A flaw has been found in Helicone ai-gateway up to 0.2.0-beta.30. This affects the function build_target_url of the file ai-gateway/src/dispatcher/se… Mitigation only Fix from $1,6002026-07-12 MEDIUM 6.3 CVE-2026-15507 A vulnerability was detected in coollabsio Coolify up to 4.1.1. The impacted element is an unknown function of the file /app/Policies/ of the compone… Mitigation only Fix from $1,6002026-07-12 HIGH 7.8 CVE-2026-15506 A security vulnerability has been detected in SecureAge CatchPulse up to 10.9.3. The affected element is an unknown function in the library saappctl.… Mitigation only Fix from $1,9502026-07-12 MEDIUM 6.3 CVE-2026-15502 A vulnerability was detected in AojiaoZero Antaris 1.0. This affects the function _rewardPurchase of the file /ipn.php of the component PayPal IPN Pa… Mitigation only Fix from $1,6002026-07-12 MEDIUM 6.3 CVE-2026-15501 A security vulnerability has been detected in AstrBotDevs AstrBot up to 4.25.2. Affected by this issue is the function ToolsRoute.test_mcp_connection… Mitigation only Fix from $1,6002026-07-12 HIGH 8.8 CVE-2026-61876 LuCI versions fail to properly encode DHCPv6 lease hostnames before rendering in status tables, allowing adjacent network attackers to inject HTML ma… Mitigation only Fix from $1,9502026-07-12 HIGH 8.8 CVE-2026-61875 luci-app-upnp contains a stored cross-site scripting vulnerability that allows unauthenticated LAN clients to inject JavaScript via UPnP IGD AddPortM… Mitigation only Fix from $1,9502026-07-12 HIGH 8.8 CVE-2026-59260 OpenWrt luci-app-samba4 read ACL grants file.exec permission on /usr/sbin/smbd, allowing authenticated delegated users to execute the Samba daemon wi… Mitigation only Fix from $1,9502026-07-12 MEDIUM 5.3 CVE-2026-56336 Capgo before 12.128.2 contains an information disclosure vulnerability in the unauthenticated /private/sso/check-domain endpoint that returns interna… Mitigation only Fix from $1,6002026-07-12 HIGH 8.1 CVE-2026-56313 Capgo before 12.128.2 contains a cross-organization account disruption vulnerability in the SSO prelink endpoint that allows enterprise administrator… Mitigation only Fix from $1,9502026-07-12 HIGH 7.3 CVE-2026-56308 Capgo before 12.128.2 allows email address changes without requiring current password re-authentication or verification of the existing email address… Mitigation only Fix from $1,9502026-07-12 MEDIUM 5.4 CVE-2026-56252 Capgo before 12.128.2 contains a scope isolation vulnerability in the POST /webhooks/test endpoint that allows app-scoped API keys to invoke org-scop… Mitigation only Fix from $1,6002026-07-12 HIGH 8.3 CVE-2026-56241 Capgo before 12.128.2 contains a privilege escalation vulnerability where demoted super_admin users retain access to delete_non_compliant_bundles and… Mitigation only Fix from $1,9502026-07-12