Vulnerability index

Browse CVEs

10,000+ matching
Filters
Severity

Filters apply as you choose them.

Connection Manager For Objectscale HIGH 8.4
CVE-2026-59688

An OS Command Injection vulnerability in Progress Software LoadMaster, ECS Connection Manager, Object Scale Connection Manager, and MOVEit WAF allows…

Fix: 7.2.54.19 / 7.2.63.3+
Fix from $1,950 2026-07-27
Connection Manager For Objectscale HIGH 8.4
CVE-2026-59687

An OS Command Injection vulnerability in Progress Software LoadMaster, ECS Connection Manager, Object Scale Connection Manager, and MOVEit WAF allows…

Fix: 7.2.54.19 / 7.2.63.3+
Fix from $1,950 2026-07-27
Connection Manager For Objectscale HIGH 8.4
CVE-2026-59686

An OS Command Injection vulnerability in Progress Software LoadMaster, ECS Connection Manager, Object Scale Connection Manager, and MOVEit WAF allows…

Fix: 7.2.54.19 / 7.2.63.3+
Fix from $1,950 2026-07-27
Unclassified HIGH 8.7
CVE-2026-12991

The lack of cryptographic mechanisms to ensure the integrity and authenticity of communications in Ghost Robotics' Vision 60 robot (APK v5.5.0) expos…

No fix yet
Fix from $1,950 2026-07-27
Unclassified HIGH 7.7
CVE-2026-12990

An access control vulnerability in the mobile app (APK v5.5.0) for Ghost Robotics' Vision 60 robot allows multiple simultaneous sessions to run witho…

No fix yet
Fix from $1,950 2026-07-27
Unclassified HIGH 8.7
CVE-2026-12989

A lack of authentication in the mobile app (APK v5.5.0) for Ghost Robotics' Vision 60 robot allows an unauthenticated attacker connected to the devic…

No fix yet
Fix from $1,950 2026-07-27
Thrift MEDIUM 5.9
CVE-2026-66053

Improper Validation of Certificate with Host Mismatch vulnerability in Apache Thrift Python bindings. This issue affects Apache Thrift: before 0.24.…

Fix: 0.24.0+
Fix from $1,600 2026-07-27
Thrift CRITICAL 9.1
CVE-2026-58662

Improper Validation of Specified Quantity in Input, Out-of-bounds Read vulnerability in Apache Thrift C++ bindings. This issue affects Apache Thrift…

Fix: 0.24.0+
Fix from $2,300 2026-07-27
Thrift HIGH 7.5
CVE-2026-58389

Allocation of Resources Without Limits or Throttling vulnerability in Apache Thrift Rust bindings. This issue affects Apache Thrift: before 0.24.0. …

Fix: 0.24.0+
Fix from $1,950 2026-07-27
Thrift CRITICAL 9.1
CVE-2026-58023

Out-of-bounds Read vulnerability in Apache Thrift c_glib bindings. This issue affects Apache Thrift: before 0.24.0. Users are recommended to upgrad…

Fix: 0.24.0+
Fix from $2,300 2026-07-27
Thrift CRITICAL 9.8
CVE-2026-55971

Heap-based Buffer Overflow vulnerability in Apache Thrift C++ bindings. This issue affects Apache Thrift: before 0.24.0. Users are recommended to u…

Fix: 0.24.0+
Fix from $2,300 2026-07-27
Thrift MEDIUM 6.5
CVE-2026-55970

Buffer Over-read vulnerability in Apache Thrift C++ bindings. This issue affects Apache Thrift: before 0.24.0. Users are recommended to upgrade to …

Fix: 0.24.0+
Fix from $1,600 2026-07-27
Thrift HIGH 7.5
CVE-2026-55969

Integer Overflow or Wraparound vulnerability in Apache Thrift C++, c_glib, Go, netstd, Delphi and Haxe bindings. This issue affects Apache Thrift: b…

Fix: 0.24.0+
Fix from $1,950 2026-07-27
Thrift HIGH 7.5
CVE-2026-55968

Inefficient Algorithmic Complexity, Allocation of Resources Without Limits or Throttling vulnerability in Apache Thrift Node.js bindings. This issue…

Fix: 0.24.0+
Fix from $1,950 2026-07-27
Thrift HIGH 7.5
CVE-2026-49158

Improper Handling of Highly Compressed Data (Data Amplification) vulnerability in Apache Thrift Ruby bindings. This issue affects Apache Thrift: bef…

Fix: 0.24.0+
Fix from $1,950 2026-07-27
Thrift HIGH 7.5
CVE-2026-48586

Improper Handling of Highly Compressed Data (Data Amplification) vulnerability in Apache Thrift C++, Java, Python, Go, D, C/GLib bindings. This issu…

Fix: 0.24.0+
Fix from $1,950 2026-07-27
Thrift HIGH 7.5
CVE-2026-48145

Improper Validation of Certificate with Host Mismatch vulnerability in Apache Thrift C++ bindings. This issue affects Apache Thrift: before 0.24.0. …

Fix: 0.24.0+
Fix from $1,950 2026-07-27
Thrift CRITICAL 9.1
CVE-2026-48144

Improper Validation of Certificate with Host Mismatch vulnerability in Apache Thrift c_glib bindings. This issue affects Apache Thrift: before 0.24.…

Fix: 0.24.0+
Fix from $2,300 2026-07-27
Thrift HIGH 7.5
CVE-2026-45112

Allocation of Resources Without Limits or Throttling vulnerability in Apache Thrift Java bindings. This issue affects Apache Thrift: from 0.19.0 bef…

Fix: 0.24.0+
Fix from $1,950 2026-07-27
Thrift HIGH 7.5
CVE-2026-43871

Loop with Unreachable Exit Condition ('Infinite Loop') vulnerability in Apache Thrift Python, Go, PHP and Java bindings.This issue affects Apache Thr…

Fix: 0.24.0+
Fix from $1,950 2026-07-27
Thrift HIGH 7.5
CVE-2026-41608

Improper Handling of Highly Compressed Data (Data Amplification) vulnerability in Apache Thrift Python bindings. This issue affects Apache Thrift: b…

Fix: 0.24.0+
Fix from $1,950 2026-07-27
Unclassified MEDIUM 6.3
CVE-2026-14856

A stored Cross-Site Scripting (XSS) vulnerability in the file upload functionality of the Media Manager in TastyIgniter v4.3.0, caused by insufficien…

No fix yet
Fix from $1,600 2026-07-27
Unclassified MEDIUM 5.3
CVE-2026-12495

Denial-of-service (DoS) vulnerability due to a stack buffer overflow in the http_gdpr_decrypt function of the Mercusys MB115-4G device's web interfac…

No fix yet
Fix from $1,600 2026-07-27
Unclassified MEDIUM 5.5
CVE-2026-17534

Kimi Code (@moonshot-ai/kimi-code) before 0.27.0 implements FetchURL SSRF hardening as a static hostname and IP-literal denylist in assertSafeFetchTa…

Patch available
Fix from $1,600 2026-07-27
Unclassified HIGH 7.7
CVE-2026-17527

In containerized-data-importer (CDI), the aggregated cdi.kubevirt.io:view ClusterRole, intended to provide read-only access to CDI resources, include…

No fix yet
Fix from $1,950 2026-07-27
Unclassified HIGH 7.8
CVE-2026-17523

A flaw was found in the Linux kernel in net/can/bcm.c in can: bcm, where an unprivileged local user can exploit this vulnerability to execute arbitra…

Patch available
Fix from $1,950 2026-07-27
Unclassified MEDIUM 6.9
CVE-2026-65765

Joomla Extension - phoca.cz - Path Traversal vulnerability in Phoca Commander 1.0.0-6.1.1 - Improper limitation of paths for save and download action…

No fix yet
Fix from $1,600 2026-07-27
Unclassified MEDIUM 5.1
CVE-2026-65764

Joomla Extension - phoca.cz - Reflected XSS vulnerability in Phoca Commander 5.0.0-6.1.1 - Improper validation of user inputs lead to a reflective XS…

No fix yet
Fix from $1,600 2026-07-27
Unclassified MEDIUM 5.1
CVE-2026-16554

cJSON library is vulnerable to an integer overflow in the print_string_ptr() function in cJSON.c on 32-bit platforms. The escape_characters counter, …

No fix yet
Fix from $1,600 2026-07-27
Unclassified HIGH 8.7
CVE-2026-65894

This vulnerability exists in CP PLUS EZ-P21 IP Camera due to improper authentication of HTTP endpoints. A remote attacker could exploit this vulnerab…

No fix yet
Fix from $1,950 2026-07-27