Vulnerability index

Browse CVEs

10,000+ matching
Filters
Severity

Filters apply as you choose them.

Unclassified HIGH 7.6
CVE-2026-48415

Adobe Commerce is affected by an Incorrect Authorization vulnerability that could result in a Security feature bypass. A low-privileged attacker coul…

No fix yet
Fix from $4,900 2026-08-11
Unclassified HIGH 7.7
CVE-2026-48414

Adobe Commerce is affected by a stored Cross-Site Scripting (XSS) vulnerability that could be abused by a low-privileged attacker to inject malicious…

No fix yet
Fix from $4,900 2026-08-11
Unclassified HIGH 8.7
CVE-2026-48413

Adobe Commerce is affected by a stored Cross-Site Scripting (XSS) vulnerability that could be abused by a low-privileged attacker to inject malicious…

No fix yet
Fix from $4,900 2026-08-11
Unclassified MEDIUM 6.5
CVE-2026-48411

Adobe Commerce is affected by an Incorrect Authorization vulnerability that could result in a Security feature bypass. An attacker with high privileg…

No fix yet
Fix from $4,000 2026-08-11
Lightroom HIGH 7.8
CVE-2026-48410

Lightroom Classic is affected by an out-of-bounds write vulnerability that could result in arbitrary code execution in the context of the current use…

Fix: 15.5+
Fix from $4,900 2026-08-11
Lightroom HIGH 7.8
CVE-2026-48409

Lightroom Classic is affected by an out-of-bounds write vulnerability that could result in arbitrary code execution in the context of the current use…

Fix: 15.5+
Fix from $4,900 2026-08-11
Lightroom HIGH 7.8
CVE-2026-48408

Lightroom Classic is affected by an out-of-bounds write vulnerability that could result in arbitrary code execution in the context of the current use…

Fix: 15.5+
Fix from $4,900 2026-08-11
Lightroom HIGH 7.8
CVE-2026-48407

Lightroom Classic is affected by an out-of-bounds write vulnerability that could result in arbitrary code execution in the context of the current use…

Fix: 15.5+
Fix from $4,900 2026-08-11
Lightroom HIGH 7.8
CVE-2026-48406

Lightroom Classic is affected by an out-of-bounds write vulnerability that could result in arbitrary code execution in the context of the current use…

Fix: 15.5+
Fix from $4,900 2026-08-11
Lightroom HIGH 7.8
CVE-2026-48405

Lightroom Classic is affected by an out-of-bounds write vulnerability that could result in arbitrary code execution in the context of the current use…

Fix: 15.5+
Fix from $4,900 2026-08-11
Lightroom HIGH 7.8
CVE-2026-48404

Lightroom Classic is affected by an out-of-bounds write vulnerability that could result in arbitrary code execution in the context of the current use…

Fix: 15.5+
Fix from $4,900 2026-08-11
Lightroom HIGH 8.6
CVE-2026-48397

Lightroom Classic is affected by a Deserialization of Untrusted Data vulnerability that could result in arbitrary code execution in the context of th…

Fix: 15.5+
Fix from $4,900 2026-08-11
Unclassified CRITICAL 9.0
CVE-2026-48381

Adobe Campaign Classic (ACC) is affected by an Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability tha…

No fix yet
Fix from $5,750 2026-08-11
Lightroom HIGH 7.8
CVE-2026-47940

Lightroom Classic is affected by an Integer Overflow or Wraparound vulnerability that could result in arbitrary code execution in the context of the …

Fix: 15.5+
Fix from $4,900 2026-08-11
Unclassified CRITICAL 9.6
CVE-2026-47705

TypeBot is a chatbot builder tool. Version 3.16.1 has a CSV injection vulnerability in the result export functionality. The application does not sani…

Patch available
Fix from $5,750 2026-08-11
Unclassified CRITICAL 10.0
CVE-2026-27302

Adobe Campaign Classic (ACC) is affected by an Incorrect Authorization vulnerability that could result in arbitrary code execution in the context of …

No fix yet
Fix from $5,750 2026-08-11
Unclassified MEDIUM 5.6
CVE-2026-0465

A Use‑After‑Free (UAF) vulnerability in the AMD Ryzen™ Master Utility Driver could allow a local attacker to access kernel memory, potentially result…

No fix yet
Fix from $4,000 2026-08-11
Unclassified HIGH 7.0
CVE-2025-54512

A DLL hijacking vulnerability within the AMD Ryzen Master installation could allow a local user-privileged attacker to escalate privileges, potential…

No fix yet
Fix from $4,900 2026-08-11
Unclassified HIGH 7.0
CVE-2025-0046

Incorrect directory permissions could allow a local user to escalate their privileges, potentially resulting in arbitrary code execution.

No fix yet
Fix from $4,900 2026-08-11
Unclassified HIGH 7.5
CVE-2022-50997

Weaver (Fanwei) E-cology 8.0 and 9.0 contains a SQL injection vulnerability in the HrmCareerApplyPerView.jsp endpoint that allows unauthenticated rem…

No fix yet
Fix from $4,900 2026-08-11
Unclassified HIGH 7.5
CVE-2016-20097

Weaver (Fanwei) E-cology 8.0 contains a SQL injection vulnerability in the SignatureDownLoad servlet that allows unauthenticated remote attackers to …

No fix yet
Fix from $4,900 2026-08-11
Unclassified HIGH 7.5
CVE-2026-73089

Browserslist is a configuration tool for sharing target browsers and Node.js versions between front-end tools. Prior to 4.28.7, index.js retains ever…

Patch available
Fix from $4,900 2026-08-11
Unclassified HIGH 7.5
CVE-2026-73088

Browserslist is a configuration tool for sharing target browsers and Node.js versions between front-end tools. Prior to 4.28.7, normalizeStats() in n…

Patch available
Fix from $4,900 2026-08-11
Unclassified HIGH 7.4
CVE-2026-73086

nanoid is a secure, URL-friendly, unique string ID generator for JavaScript. Prior to versions 3.3.12 and 5.1.11, the nanoid(size) function in index.…

Patch available
Fix from $4,900 2026-08-11
Unclassified MEDIUM 5.3
CVE-2026-73085

Audiobookshelf is a self-hosted audiobook and podcast server. Prior to 2.36.0, the jwtAuthCheck function in server/auth/TokenManager.js treats JWTs w…

Patch available
Fix from $4,000 2026-08-11
Unclassified MEDIUM 6.1
CVE-2026-73084

Activepieces is an open source AI workflow automation platform. Prior to 0.83.0, the /api/redirect OAuth callback endpoint embeds the user-supplied c…

Patch available
Fix from $4,000 2026-08-11
Unclassified HIGH 7.6
CVE-2026-73083

Activepieces is an open source AI workflow automation platform. Prior to 0.80.0, in SANDBOX_CODE_ONLY mode, the engine loads the compiled user module…

No fix yet
Fix from $4,900 2026-08-11
Unclassified MEDIUM 5.3
CVE-2026-73082

Activepieces is an open source AI workflow automation platform. Prior to 0.82.0, the POST /api/v1/projects/:projectId/mcp-server/validate-agent-mcp-t…

Patch available
Fix from $4,000 2026-08-11
Unclassified HIGH 8.7
CVE-2026-73081

Activepieces is an open source AI workflow automation platform. Prior to 0.80.0, the worker's code-compilation pipeline builds the on-disk path for a…

No fix yet
Fix from $4,900 2026-08-11
Windows 11 26h1 MEDIUM 5.5
CVE-2026-72971

Improper link resolution before file access ('link following') in Windows Container Isolation FS Filter Driver (unionfs.sys) allows an authorized att…

Fix: 10.0.28000.2704+
Fix from $4,000 2026-08-11