Vulnerability index

Browse CVEs

10,000+ matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Unclassified CRITICAL 9.6
CVE-2026-25130

Cybersecurity AI (CAI) is a framework for AI Security. In versions up to and including 0.5.10, the CAI (Cybersecurity AI) framework contains multiple…

Patch available
Fix from $2,300 2026-01-30
Unclassified CRITICAL 9.2
CVE-2026-1723

Improper Neutralization of Special Elements used in an OS Command ('OS Command Injection') vulnerability in TOTOLINK X6000R allows OS Command Injecti…

Mitigation only
Fix from $2,300 2026-01-30
Runcommand CRITICAL 9.8
CVE-2025-51958

aelsantex runcommand 2014-04-01, a plugin for DokuWiki, allows unauthenticated attackers to execute arbitrary system commands via lib/plugins/runcomm…

Mitigation only
Fix from $2,300 2026-01-30
School Management System CRITICAL 9.8
CVE-2026-1701

A security vulnerability has been detected in itsourcecode School Management System 1.0. This issue affects some unknown processing of the file /enro…

Mitigation only
Fix from $2,300 2026-01-30
Directory Management System CRITICAL 9.8
CVE-2026-1688

A security vulnerability has been detected in itsourcecode Directory Management System 1.0. The affected element is an unknown function of the file /…

Mitigation only
Fix from $2,300 2026-01-30
Unclassified CRITICAL 9.2
CVE-2025-7964

After receiving a malformed 802.15.4 MAC Data Request the Zigbee Coordinator sends a ‘network leave’ request to Zigbee router resulting in the Zi…

Mitigation only
Fix from $2,300 2026-01-30
Unclassified CRITICAL 9.5
CVE-2025-26385

Johnson Controls Metasys component listed below have Improper Neutralization of Special Elements used in a Command (Command Injection) Vulnerability…

Mitigation only
Fix from $2,300 2026-01-30
Unclassified CRITICAL 10.0
CVE-2026-24729

An unrestricted upload of file with dangerous type vulnerability in the file upload function of Interinfo DreamMaker versions before 2025/10/22 allow…

Mitigation only
Fix from $2,300 2026-01-30
Unclassified CRITICAL 9.3
CVE-2026-24728

A missing authentication for critical function vulnerability in the /servlet/baServer3 endpoint of Interinfo DreamMaker versions before 2025/10/22 al…

Mitigation only
Fix from $2,300 2026-01-30
Endpoint Manager Mobile CRITICAL 9.8
CVE-2026-1340 KEVEPSS 86%

A code injection in Ivanti Endpoint Manager Mobile allowing attackers to achieve unauthenticated remote code execution.

Fix: after 12.7.0.0
Fix from $2,300 2026-01-29
Endpoint Manager Mobile CRITICAL 9.8
CVE-2026-1281 KEVEPSS 82%

A code injection in Ivanti Endpoint Manager Mobile allowing attackers to achieve unauthenticated remote code execution.

Fix: after 12.5.0.0
Fix from $2,300 2026-01-29
Unclassified CRITICAL 9.1
CVE-2026-22806

vCluster Platform provides a Kubernetes platform for managing virtual clusters, multi-tenancy, and cluster sharing. Prior to versions 4.6.0, 4.5.4, 4…

Mitigation only
Fix from $2,300 2026-01-29
Web User Interface CRITICAL 9.8
CVE-2025-69929

An issue in N3uron Web User Interface v.1.21.7-240207.1047 allows a remote attacker to escalate privileges via the password hashing on the client sid…

Mitigation only
Fix from $2,300 2026-01-29
Unclassified CRITICAL 9.8
CVE-2026-1453

A missing authentication for critical function vulnerability in KiloView Encoder Series could allow an unauthenticated attacker to create or delete a…

Mitigation only
Fix from $2,300 2026-01-29
Kata Containers CRITICAL 10.0
CVE-2026-24054

Kata Containers is an open source project focusing on a standard implementation of lightweight Virtual Machines (VMs) that perform like containers. I…

Fix: 3.26.0+
Fix from $2,300 2026-01-29
Society Management System CRITICAL 9.8
CVE-2026-1595

A vulnerability was detected in itsourcecode Society Management System 1.0. This affects an unknown part of the file /admin/edit_student_query.php. T…

Mitigation only
Fix from $2,300 2026-01-29
Society Management System CRITICAL 9.8
CVE-2026-1594

A security vulnerability has been detected in itsourcecode Society Management System 1.0. Affected by this issue is some unknown functionality of the…

Mitigation only
Fix from $2,300 2026-01-29
Society Management System CRITICAL 9.8
CVE-2026-1593

A weakness has been identified in itsourcecode Society Management System 1.0. Affected by this vulnerability is an unknown functionality of the file …

Mitigation only
Fix from $2,300 2026-01-29
School Management System CRITICAL 9.8
CVE-2026-1590

A vulnerability was identified in itsourcecode School Management System 1.0. This impacts an unknown function of the file /ramonsys/faculty/index.php…

Mitigation only
Fix from $2,300 2026-01-29
School Management System CRITICAL 9.8
CVE-2026-1589

A vulnerability was determined in itsourcecode School Management System 1.0. This affects an unknown function of the file /ramonsys/inquiry/index.php…

Mitigation only
Fix from $2,300 2026-01-29
Content Management System CRITICAL 9.8
CVE-2025-7714

Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in Global Interactive Design Media Software Inc. C…

Fix: after 2025-07-21
Fix from $2,300 2026-01-29
Unclassified CRITICAL 9.8
CVE-2020-37012

Tea LaTex 1.0 contains a remote code execution vulnerability that allows unauthenticated attackers to execute arbitrary shell commands through the /a…

Mitigation only
Fix from $2,300 2026-01-29
Unclassified CRITICAL 9.8
CVE-2020-37010

BearShare Lite 5.2.5 contains a buffer overflow vulnerability in the Advanced Search keywords input that allows attackers to execute arbitrary code. …

Mitigation only
Fix from $2,300 2026-01-29
Unclassified CRITICAL 9.8
CVE-2020-37002

Ajenti 2.1.36 contains a post-authenticated remote command execution vulnerability that allows remote attackers to execute arbitrary commands after s…

Mitigation only
Fix from $2,300 2026-01-29
Unclassified CRITICAL 9.8
CVE-2020-37000

Free MP3 CD Ripper 2.8 contains a stack buffer overflow vulnerability that allows remote attackers to execute arbitrary code by crafting a malicious …

Mitigation only
Fix from $2,300 2026-01-29
Unclassified CRITICAL 9.8
CVE-2020-36997

BacklinkSpeed 2.4 contains a buffer overflow vulnerability that allows attackers to corrupt the Structured Exception Handler (SEH) chain through mali…

Mitigation only
Fix from $2,300 2026-01-29
Menu Panel CRITICAL 9.8
CVE-2025-7013

Authorization Bypass Through User-Controlled Key vulnerability in QR Menu Pro Smart Menu Systems Menu Panel allows Exploitation of Trusted Identifier…

Fix: after 29012026
Fix from $2,300 2026-01-29
Qr Menu CRITICAL 9.8
CVE-2025-7016

Improper Access Control vulnerability in Akın Software Computer Import Export Industry and Trade Ltd. QR Menu allows Authentication Abuse. This issu…

Mitigation only
Fix from $2,300 2026-01-29
Qr Menu CRITICAL 9.8
CVE-2025-7015

Session Fixation vulnerability in Akın Software Computer Import Export Industry and Trade Ltd. QR Menu allows Session Fixation. This issue affects Q…

Mitigation only
Fix from $2,300 2026-01-29
Omr CRITICAL 9.8
CVE-2026-1188

In the Eclipse OMR port library component since release 0.2.0, an API function to return the textual names of all supported processor features was no…

Fix: 0.8.0+
Fix from $2,300 2026-01-29