Vulnerability index

Browse CVEs

10,000+ matching
Filters
Severity

Filters apply as you choose them.

Unclassified MEDIUM 6.3
CVE-2026-67286

Joomla Extension - joomshaper.com - Unauthenticated arbitrary directory creation and file write in SP Page Builder < 6.8.0 - An unauthenticated attac…

No fix yet
Fix from $4,000 2026-08-12
Unclassified MEDIUM 5.3
CVE-2026-66381

A repository reader with cache-deploy permission may access content outside a configured upstream path under specific conditions.

No fix yet
Fix from $4,000 2026-08-12
Unclassified MEDIUM 5.3
CVE-2026-66377

An unauthenticated user may access restricted repository information under specific conditions.

No fix yet
Fix from $4,000 2026-08-12
Unclassified HIGH 8.1
CVE-2026-66375

A low-privilege authenticated user may permanently remove protected internal metadata across repositories under specific conditions.

No fix yet
Fix from $4,900 2026-08-12
Unclassified CRITICAL 9.4
CVE-2026-50561

Yuxi is a large-model-based intelligent knowledge base and knowledge graph agent development platform. Prior to version 0.6.2, the project's authenti…

Patch available
Fix from $5,750 2026-08-12
Unclassified MEDIUM 6.8
CVE-2026-49349

regclient is a Docker and OCI Registry Client in Go. Prior to version 0.11.5, credentials for a registry may be inadvertently leaked to external serv…

No fix yet
Fix from $4,000 2026-08-12
Unclassified MEDIUM 6.5
CVE-2026-47233

Admidio is an open-source user management solution. Version 5.0.9 added a missing `isAdministratorInventory()` gate to `case 'item_delete':` in `modu…

Patch available
Fix from $4,000 2026-08-12
Unclassified MEDIUM 5.7
CVE-2026-18171

Docker Sandboxes (sbx) applies the read-only intent of a runtime host mount to the in-guest container bind only: the underlying virtio-fs host-edge g…

No fix yet
Fix from $4,000 2026-08-12
Unclassified CRITICAL 9.1
CVE-2025-59324

CPSD CryptoPro Secure Disk for Bitlocker before v7.7.4 fails to properly validate LUKS encryption and, if encryption is present, all CryptoPro file i…

No fix yet
Fix from $5,750 2026-08-12
Unclassified MEDIUM 5.5
CVE-2026-14479

A maliciously crafted input, when processed by the Autodesk Installer IPC frame parser, may trigger improper validation of an input-specified positio…

No fix yet
Fix from $4,000 2026-08-12
Unclassified HIGH 7.8
CVE-2026-14478

A maliciously created executable, when executed on the victim's machine, may allow a local low-privileged attacker to inject unauthenticated IPC mess…

No fix yet
Fix from $4,900 2026-08-12
Unclassified HIGH 8.4
CVE-2025-59323

CPSD CryptoPro Secure Disk for Bitlocker before v7.7.4 fails to validate the integrity of the DataStore, a non-partitioned filesystem, responsible fo…

No fix yet
Fix from $4,900 2026-08-12
Unclassified HIGH 7.5
CVE-2025-59322

CPSD CryptoPro Secure Disk for Bitlocker before v7.7.4 fails to properly handle decryption errors and allows encrypted volumes to be mounted as plain…

No fix yet
Fix from $4,900 2026-08-12
Unclassified CRITICAL 9.8
CVE-2025-59321

CPSD CryptoPro Secure Disk for Bitlocker before v7.7.4 contains a default TPM PCR policy that fails to consider the system boot state. This allows th…

No fix yet
Fix from $5,750 2026-08-12
Unclassified HIGH 7.2
CVE-2025-59319

CPSD CryptoPro Secure Disk for Bitlocker before v7.7.4 fails to certify the integrity of the intended boot partition and selects the first partition …

No fix yet
Fix from $4,900 2026-08-12
Unclassified CRITICAL 9.2
CVE-2026-67285

Joomla Extension - joomshaper.com - Unauthenticated arbitrary local PHP file inclusion in SP Page Builder < 6.8.0 - An unauthenticated attacker can p…

No fix yet
Fix from $5,750 2026-08-12
Unclassified HIGH 8.1
CVE-2026-47231

Admidio is an open-source user management solution. Prior to version 5.0.10, `modules/documents-files.php` gates state-changing modes by checking tha…

No fix yet
Fix from $4,900 2026-08-12
Unclassified MEDIUM 6.5
CVE-2026-47230

Admidio is an open-source user management solution. Prior to version 5.0.10, `modules/documents-files.php` mode `file_rename_save` shares the same ro…

No fix yet
Fix from $4,000 2026-08-12
Unclassified MEDIUM 5.4
CVE-2026-47229

Admidio is an open-source user management solution. Prior to version 5.0.10, `modules/sso/clients.php` validates an `adm_csrf_token` on every state-c…

No fix yet
Fix from $4,000 2026-08-12
Unclassified MEDIUM 5.2
CVE-2026-47228

Admidio is an open-source user management solution. `modules/registration.php` mode `send_login` regenerates a random password for `user_uuid_assigne…

No fix yet
Fix from $4,000 2026-08-12
Unclassified MEDIUM 6.5
CVE-2026-47227

Admidio is an open-source user management solution. `modules/categories.php` checks that the supplied `type` parameter (`ANN`, `EVT`, `ROL`, `USF`, ……

No fix yet
Fix from $4,000 2026-08-12
Unclassified MEDIUM 6.3
CVE-2026-16999

Improper restriction of XML external entity reference vulnerability in Ministry of Justice UYAP Document Editor allows Serialized Data External Linki…

No fix yet
Fix from $4,000 2026-08-12
Unclassified HIGH 7.5
CVE-2025-59325

CPSD CryptoPro Secure Disk for Bitlocker before v7.7.4 fails to encrypt the initramfs contents, allowing for the offline recovery of secrets and cryp…

No fix yet
Fix from $4,900 2026-08-12
Unclassified HIGH 7.5
CVE-2025-59327

In CPSD CryptoPro Secure Disk for Bitlocker before v7.7.4, bootxsa.efi fails to properly validate LUKS encryption and, if encryption is present, all …

No fix yet
Fix from $4,900 2026-08-12
Unclassified CRITICAL 9.8
CVE-2025-59326

CPSD CryptoPro Secure Disk for Bitlocker before v7.7.4 fails to enforce IMA policy protections across temporary file systems, allowing for unsigned c…

No fix yet
Fix from $5,750 2026-08-12
Unclassified MEDIUM 5.3
CVE-2026-71408

A allocation of resources without limits or throttling vulnerability in Fortinet FortiOS 7.6.0 through 7.6.6, FortiOS 7.4 all versions, FortiOS 7.2 a…

No fix yet
Fix from $4,000 2026-08-12
Unclassified MEDIUM 5.6
CVE-2026-71407

A Stack-based Buffer Overflow vulnerability [CWE-121] vulnerability in Fortinet FortiOS 7.6.1 through 7.6.6 may allow an unauthenticated attacker who…

No fix yet
Fix from $4,000 2026-08-12
Unclassified HIGH 8.1
CVE-2026-70468

A authentication bypass using an alternate path or channel vulnerability in Fortinet FortiManager 7.6.1, FortiManager 7.4.3 through 7.4.5, FortiManag…

No fix yet
Fix from $4,900 2026-08-12
Unclassified MEDIUM 5.3
CVE-2026-70466

A incomplete list of disallowed inputs vulnerability in Fortinet FortiWeb 8.0.0 through 8.0.2, FortiWeb 7.6.0 through 7.6.5, FortiWeb 7.4 all version…

No fix yet
Fix from $4,000 2026-08-12
Unclassified HIGH 8.9
CVE-2026-57858

Cal.com Cal.diy versions 2.1.1 through 6.2.0 contain a stored cross-site scripting vulnerability in the BookingPageTagManager component that allows a…

No fix yet
Fix from $4,900 2026-08-12