Vulnerability index

Browse CVEs

10,000+ matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Unclassified CRITICAL 9.8
CVE-2025-69902

A command injection vulnerability in the minimal_wrapper.py component of kubectl-mcp-server v1.2.0 allows attackers to execute arbitrary commands via…

Mitigation only
Fix from $2,300 2026-03-16
Craft Cms CRITICAL 9.8
CVE-2026-32267EPSS 8%

Craft CMS is a content management system (CMS). From version 4.0.0-RC1 to before version 4.17.6 and from version 5.0.0-RC1 to before version 5.9.12, …

Fix: 4.17.6 / 5.9.12+
Fix from $2,300 2026-03-16
Chamilo Lms CRITICAL 9.8
CVE-2026-28430

Chamilo LMS is a learning management system. Prior to version 1.11.34, there is an unauthenticated SQL injection vulnerability which allows remote at…

Fix: 1.11.34+
Fix from $2,300 2026-03-16
Bareiron CRITICAL 9.8
CVE-2025-69809

A write-what-where condition in p2r3 Bareiron commit 8e4d40 allows unauthenticated attackers to write arbitrary values to memory, enabling arbitrary …

Mitigation only
Fix from $2,300 2026-03-16
Bareiron CRITICAL 9.1
CVE-2025-69808

An out-of-bounds memory access (OOB) in p2r3 Bareiron commit 8e4d40 allows unauthenticated attackers to access sensitive information and cause a Deni…

Mitigation only
Fix from $2,300 2026-03-16
Ac8 Firmware CRITICAL 9.8
CVE-2026-4254

A weakness has been identified in Tenda AC8 up to 16.03.50.11. This vulnerability affects the function doSystemCmd of the file /goform/SysToolChangeP…

Fix: after 16.03.50.11
Fix from $2,300 2026-03-16
Authlib CRITICAL 9.1
CVE-2026-27962

Authlib is a Python library which builds OAuth and OpenID Connect servers. Prior to version 1.6.9, a JWK Header Injection vulnerability in authlib's …

Fix: 1.6.9+
Fix from $2,300 2026-03-16
Fields CRITICAL 9.1
CVE-2026-23489

Fields is a GLPI plugin that allows users to add custom fields on GLPI items forms. Prior to version 1.23.3, it is possible to execute arbitrary PHP …

Fix: 1.23.3+
Fix from $2,300 2026-03-16
Ac8 Firmware CRITICAL 9.8
CVE-2026-4252

A vulnerability was identified in Tenda AC8 16.03.50.11. Affected by this issue is the function check_is_ipv6 of the component IPv6 Handler. The mani…

Mitigation only
Fix from $2,300 2026-03-16
Unica CRITICAL 9.8
CVE-2025-62319

Boolean-Based SQL Injection is a type of blind SQL injection where an attacker manipulates SQL queries by injecting Boolean conditions (TRUE or FALSE…

Fix: 25.1.1.0.1+
Fix from $2,300 2026-03-16
Bl Wr9000 Firmware CRITICAL 9.8
CVE-2026-4228EPSS 12%

A vulnerability was detected in LB-LINK BL-WR9000 2.4.9. This affects the function sub_458754 of the file /goform/set_wifi. The manipulation results …

Mitigation only
Fix from $2,300 2026-03-16
Bl Wr9000 Firmware CRITICAL 9.8
CVE-2026-4226

A weakness has been identified in LB-LINK BL-WR9000 2.4.9. The affected element is the function sub_44E8D0 of the file /goform/get_virtual_cfg. Execu…

Mitigation only
Fix from $2,300 2026-03-16
Payroll Management System CRITICAL 9.8
CVE-2026-4223

A vulnerability was identified in itsourcecode Payroll Management System 1.0. This issue affects some unknown processing of the file /manage_employee…

Mitigation only
Fix from $2,300 2026-03-16
Dnr 202l Firmware CRITICAL 9.8
CVE-2026-4214

A flaw has been found in D-Link DNS-120, DNR-202L, DNS-315L, DNS-320, DNS-320L, DNS-320LW, DNS-321, DNR-322L, DNS-323, DNS-325, DNS-326, DNS-327L, DN…

Fix: after 2026-02-05
Fix from $2,300 2026-03-16
Dnr 202l Firmware CRITICAL 9.8
CVE-2026-4213

A vulnerability was detected in D-Link DNS-120, DNR-202L, DNS-315L, DNS-320, DNS-320L, DNS-320LW, DNS-321, DNR-322L, DNS-323, DNS-325, DNS-326, DNS-3…

Fix: after 2026-02-05
Fix from $2,300 2026-03-16
Dnr 202l Firmware CRITICAL 9.8
CVE-2026-4212

A security vulnerability has been detected in D-Link DNS-120, DNR-202L, DNS-315L, DNS-320, DNS-320L, DNS-320LW, DNS-321, DNR-322L, DNS-323, DNS-325, …

Fix: after 2026-02-05
Fix from $2,300 2026-03-16
Dnr 202l Firmware CRITICAL 9.8
CVE-2026-4211

A weakness has been identified in D-Link DNS-120, DNR-202L, DNS-315L, DNS-320, DNS-320L, DNS-320LW, DNS-321, DNR-322L, DNS-323, DNS-325, DNS-326, DNS…

Fix: after 2026-02-05
Fix from $2,300 2026-03-16
Dnr 202l Firmware CRITICAL 9.8
CVE-2026-4210

A security flaw has been discovered in D-Link DNS-120, DNR-202L, DNS-315L, DNS-320, DNS-320L, DNS-320LW, DNS-321, DNR-322L, DNS-323, DNS-325, DNS-326…

Fix: after 2026-02-05
Fix from $2,300 2026-03-16
Dnr 202l Firmware CRITICAL 9.8
CVE-2026-4209

A vulnerability was identified in D-Link DNS-120, DNR-202L, DNS-315L, DNS-320, DNS-320L, DNS-320LW, DNS-321, DNR-322L, DNS-323, DNS-325, DNS-326, DNS…

Fix: after 2026-02-05
Fix from $2,300 2026-03-16
Dnr 202l Firmware CRITICAL 9.8
CVE-2026-4207

A vulnerability was determined in D-Link DNS-120, DNR-202L, DNS-315L, DNS-320, DNS-320L, DNS-320LW, DNS-321, DNR-322L, DNS-323, DNS-325, DNS-326, DNS…

Fix: after 2026-02-05
Fix from $2,300 2026-03-16
Dnr 202l Firmware CRITICAL 9.8
CVE-2026-4206

A vulnerability was found in D-Link DNS-120, DNR-202L, DNS-315L, DNS-320, DNS-320L, DNS-320LW, DNS-321, DNR-322L, DNS-323, DNS-325, DNS-326, DNS-327L…

Fix: after 2026-02-05
Fix from $2,300 2026-03-16
Dnr 202l Firmware CRITICAL 9.8
CVE-2026-4205

A vulnerability has been found in D-Link DNS-120, DNR-202L, DNS-315L, DNS-320, DNS-320L, DNS-320LW, DNS-321, DNR-322L, DNS-323, DNS-325, DNS-326, DNS…

Fix: after 2026-02-05
Fix from $2,300 2026-03-16
Dnr 202l Firmware CRITICAL 9.8
CVE-2026-4204

A flaw has been found in D-Link DNS-120, DNR-202L, DNS-315L, DNS-320, DNS-320L, DNS-320LW, DNS-321, DNR-322L, DNS-323, DNS-325, DNS-326, DNS-327L, DN…

Fix: after 2026-02-05
Fix from $2,300 2026-03-16
Dnr 202l Firmware CRITICAL 9.8
CVE-2026-4203

A vulnerability was detected in D-Link DNS-120, DNR-202L, DNS-315L, DNS-320, DNS-320L, DNS-320LW, DNS-321, DNR-322L, DNS-323, DNS-325, DNS-326, DNS-3…

Fix: after 2026-02-05
Fix from $2,300 2026-03-16
Dnr 202l Firmware CRITICAL 9.8
CVE-2026-4197EPSS 18%

A vulnerability was found in D-Link DNS-120, DNR-202L, DNS-315L, DNS-320, DNS-320L, DNS-320LW, DNS-321, DNR-322L, DNS-323, DNS-325, DNS-326, DNS-327L…

Fix: after 2026-02-05
Fix from $2,300 2026-03-16
Dns 1550 04 Firmware CRITICAL 9.8
CVE-2026-4196

A vulnerability has been found in D-Link DNS-120, DNR-202L, DNS-315L, DNS-320, DNS-320L, DNS-320LW, DNS-321, DNR-322L, DNS-323, DNS-325, DNS-326, DNS…

Fix: after 2026-02-05
Fix from $2,300 2026-03-16
Dnr 202l Firmware CRITICAL 9.8
CVE-2026-4195

A flaw has been found in D-Link DNS-120, DNR-202L, DNS-315L, DNS-320, DNS-320L, DNS-320LW, DNS-321, DNR-322L, DNS-323, DNS-325, DNS-326, DNS-327L, DN…

Fix: after 2026-02-05
Fix from $2,300 2026-03-16
Dnr 202l Firmware CRITICAL 9.8
CVE-2026-4194

A vulnerability was detected in D-Link DNS-120, DNR-202L, DNS-315L, DNS-320, DNS-320L, DNS-320LW, DNS-321, DNR-322L, DNS-323, DNS-325, DNS-326, DNS-3…

Fix: after 2026-02-05
Fix from $2,300 2026-03-16
Dir 816 Firmware CRITICAL 9.8
CVE-2026-4184

A vulnerability was detected in D-Link DIR-816 1.10CNB05. Affected by this vulnerability is an unknown functionality of the file /goform/form2Wl5Basi…

Mitigation only
Fix from $2,300 2026-03-16
Dir 816 Firmware CRITICAL 9.8
CVE-2026-4183

A security vulnerability has been detected in D-Link DIR-816 1.10CNB05. Affected is an unknown function of the file /goform/form2WlanBasicSetup.cgi o…

Mitigation only
Fix from $2,300 2026-03-16