Vulnerability index

Browse CVEs

10,000+ matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Di 8100 Firmware CRITICAL 9.4
CVE-2026-7248

A vulnerability was found in D-Link DI-8100 16.07.26A1. This affects the function tgfile_htm of the file tgfile.htm of the component CGI Endpoint. Th…

No fix yet
Fix from $2,300 2026-04-28
Unclassified CRITICAL 9.8
CVE-2026-7244

A security flaw has been discovered in Totolink A8000RU 7.1cu.643_b20200521. The impacted element is the function setWiFiEasyGuestCfg of the file /cg…

Mitigation only
Fix from $2,300 2026-04-28
Unclassified CRITICAL 9.8
CVE-2026-7243

A vulnerability was identified in Totolink A8000RU 7.1cu.643_b20200521. The affected element is the function setRadvdCfg of the file /cgi-bin/cstecgi…

Mitigation only
Fix from $2,300 2026-04-28
Unclassified CRITICAL 9.8
CVE-2026-7242

A vulnerability was determined in Totolink A8000RU 7.1cu.643_b20200521. Impacted is the function setOpenVpnClientCfg of the file /cgi-bin/cstecgi.cgi…

Mitigation only
Fix from $2,300 2026-04-28
Unclassified CRITICAL 9.8
CVE-2026-7241

A vulnerability was found in Totolink A8000RU 7.1cu.643_b20200521. This issue affects the function setWiFiBasicCfg of the file /cgi-bin/cstecgi.cgi o…

Mitigation only
Fix from $2,300 2026-04-28
Unclassified CRITICAL 9.8
CVE-2026-7240

A vulnerability has been found in Totolink A8000RU 7.1cu.643_b20200521. This vulnerability affects the function setVpnAccountCfg of the file /cgi-bin…

Mitigation only
Fix from $2,300 2026-04-28
Unclassified CRITICAL 9.8
CVE-2026-7204

A vulnerability was determined in Totolink A8000RU 7.1cu.643_b20200521. This issue affects the function setPptpServerCfg of the file /cgi-bin/cstecgi…

Mitigation only
Fix from $2,300 2026-04-28
Unclassified CRITICAL 9.8
CVE-2026-7203

A vulnerability was found in Totolink A8000RU 7.1cu.643_b20200521. This vulnerability affects the function setUrlFilterRules of the file /cgi-bin/cst…

Mitigation only
Fix from $2,300 2026-04-28
Unclassified CRITICAL 9.8
CVE-2026-7202

A vulnerability has been found in Totolink A8000RU 7.1cu.643_b20200521. This affects the function setWiFiWpsStart of the file /cgi-bin/cstecgi.cgi of…

Mitigation only
Fix from $2,300 2026-04-28
Unclassified CRITICAL 9.8
CVE-2026-32644

Specific firmware versions of Milesight AIOT cameras use SSL certificates with default private keys.

Mitigation only
Fix from $2,300 2026-04-28
Spring Boot CRITICAL 9.1
CVE-2026-40976

In certain circumstances, Spring Boot's default web security is ineffective allowing unauthorized access to all endpoints. For an application to be v…

Fix: 4.0.6+
Fix from $2,300 2026-04-28
Spring Boot CRITICAL 9.8
CVE-2026-40974

Spring Boot's Cassandra auto-configuration does not perform hostname verification when establishing an SSL connection to Cassandra. Affected: Spring…

Fix: 2.7.33 / 3.3.19+
Fix from $2,300 2026-04-28
Spring Boot CRITICAL 9.1
CVE-2026-40971

When configured to use an SSL bundle, Spring Boot's RabbitMQ auto-configuration does not perform hostname verification when connecting to the RabbitM…

Fix: 3.5.14 / 4.0.6+
Fix from $2,300 2026-04-27
Unclassified CRITICAL 9.8
CVE-2026-7156

A vulnerability was detected in Totolink A8000RU 7.1cu.643_b20200521. Affected is the function CsteSystem of the file /cgi-bin/cstecgi.cgi of the com…

Mitigation only
Fix from $2,300 2026-04-27
Unclassified CRITICAL 9.8
CVE-2026-7155

A security vulnerability has been detected in Totolink A8000RU 7.1cu.643_b20200521. This impacts the function setLoginPasswordCfg of the file /cgi-bi…

Mitigation only
Fix from $2,300 2026-04-27
Unclassified CRITICAL 9.8
CVE-2026-7154

A weakness has been identified in Totolink A8000RU 7.1cu.643_b20200521. This affects the function setAdvancedInfoShow of the file /cgi-bin/cstecgi.cg…

Mitigation only
Fix from $2,300 2026-04-27
Unclassified CRITICAL 9.4
CVE-2024-46636

NASA Earth Observing System Data and Information System (EOSDIS) MODAPS v8.1 was discovered to contain a SQL injection vulnerability in the category …

Mitigation only
Fix from $2,300 2026-04-27
Unclassified CRITICAL 9.8
CVE-2026-7153

A security flaw has been discovered in Totolink A8000RU 7.1cu.643_b20200521. The impacted element is the function setMiniuiHomeInfoShow of the file /…

Mitigation only
Fix from $2,300 2026-04-27
Unclassified CRITICAL 9.8
CVE-2026-7152

A vulnerability was identified in Totolink A8000RU 7.1cu.643_b20200521. The affected element is the function setTelnetCfg of the file /cgi-bin/cstecg…

Mitigation only
Fix from $2,300 2026-04-27
Mipc252w Firmware CRITICAL 9.8
CVE-2026-35903

MERCURY MIPC252W IP camera 1.0.5 Build 230306 Rel.79931n contains an improper authentication vulnerability in the RTSP service. After successful Dige…

Mitigation only
Fix from $2,300 2026-04-27
Ac18 Firmware CRITICAL 9.8
CVE-2026-31255

A command injection vulnerability exists in Tenda AC18 V15.03.05.05_multi. The vulnerability is located in the /goform/SetSambaCfg interface, where i…

Mitigation only
Fix from $2,300 2026-04-27
Unclassified CRITICAL 9.8
CVE-2026-7140

A vulnerability has been found in Totolink A8000RU 7.1cu.643_b20200521. Impacted is the function CsteSystem of the file /cgi-bin/cstecgi.cgi of the c…

Mitigation only
Fix from $2,300 2026-04-27
Unclassified CRITICAL 9.8
CVE-2026-7139

A flaw has been found in Totolink A8000RU 7.1cu.643_b20200521. This issue affects the function setWiFiAclRules of the file /cgi-bin/cstecgi.cgi of th…

Mitigation only
Fix from $2,300 2026-04-27
Unclassified CRITICAL 9.8
CVE-2026-7138

A vulnerability was detected in Totolink A8000RU 7.1cu.643_b20200521. This vulnerability affects the function setNtpCfg of the file /cgi-bin/cstecgi.…

Mitigation only
Fix from $2,300 2026-04-27
Unclassified CRITICAL 9.8
CVE-2026-7137

A security vulnerability has been detected in Totolink A8000RU 7.1cu.643_b20200521. This affects the function setStorageCfg of the file /cgi-bin/cste…

Mitigation only
Fix from $2,300 2026-04-27
Unclassified CRITICAL 9.8
CVE-2026-7136

A weakness has been identified in Totolink A8000RU 7.1cu.643_b20200521. Affected by this issue is the function setDmzCfg of the file /cgi-bin/cstecgi…

Mitigation only
Fix from $2,300 2026-04-27
Unclassified CRITICAL 9.8
CVE-2026-41462

ProjeQtor versions 7.0 through 12.4.3 contain an unauthenticated SQL injection vulnerability in the login functionality where the login variable is d…

Mitigation only
Fix from $2,300 2026-04-27
Unclassified CRITICAL 9.8
CVE-2026-30352

A remote code execution (RCE) vulnerability in the /devserver/start endpoint of leonvanzyl autocoder commit 79d02a allows attackers to execute arbitr…

Mitigation only
Fix from $2,300 2026-04-27
Smartermail CRITICAL 9.1
CVE-2026-40514

SmarterTools SmarterMail builds prior to 9610 contain a cryptographic weakness in the file and email sharing endpoints that use DES-CBC encryption wi…

Fix: 100.0.9610+
Fix from $2,300 2026-04-27
Unclassified CRITICAL 9.8
CVE-2026-7125

A vulnerability was identified in Totolink A8000RU 7.1cu.643_b20200521. Affected by this issue is the function setWiFiEasyCfg of the file /cgi-bin/cs…

Mitigation only
Fix from $2,300 2026-04-27