Vulnerability index

Browse CVEs

10,000+ matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Vios CRITICAL 9.8
CVE-2026-16913

IBM AIX 7.2, and 7.3 and IBM PowerVM VIOS 4.1 could allow a remote attacker to execute arbitrary code due to a stack buffer overflow.

Fix: 4.1.0.50 / 4.1.1.30+
Fix from $5,750 2026-08-19
Vios CRITICAL 9.6
CVE-2026-16903

IBM AIX 7.2, and 7.3 and IBM PowerVM VIOS 4.1 could allow a remote attacker to execute arbitrary code or cause a denial of service due to an out-of-b…

Fix: 4.1.0.50 / 4.1.1.30+
Fix from $5,750 2026-08-19
Vios CRITICAL 9.8
CVE-2026-16894

IBM AIX 7.2, and 7.3 and IBM PowerVM VIOS 4.1 could allow a remote attacker to execute arbitrary code due to a stack buffer overflow.

Fix: 4.1.0.50 / 4.1.1.30+
Fix from $5,750 2026-08-19
Vios CRITICAL 9.8
CVE-2026-16885

IBM AIX 7.2, and 7.3 and IBM PowerVM VIOS 4.1 could allow a remote attacker to execute arbitrary code due to a stack buffer overflow.

Fix: 4.1.0.50 / 4.1.1.30+
Fix from $5,750 2026-08-19
Vios CRITICAL 9.8
CVE-2026-16882

IBM AIX 7.2, and 7.3 and IBM PowerVM VIOS 4.1 could allow a remote attacker to execute arbitrary commands due to improper neutralization of special e…

Fix: 4.1.0.50 / 4.1.1.30+
Fix from $5,750 2026-08-19
Vios CRITICAL 9.8
CVE-2026-16872

IBM AIX 7.2, and 7.3 and IBM PowerVM VIOS 4.1 could allow a remote attacker to execute arbitrary code due to a stack-based buffer overflow.

Fix: 4.1.0.50 / 4.1.1.30+
Fix from $5,750 2026-08-19
Unclassified CRITICAL 9.8
CVE-2026-16864

IBM AIX 7.2, and 7.3 and IBM PowerVM VIOS 4.1 could allow a remote attacker to execute arbitrary code due to a stack buffer overflow.

No fix yet
Fix from $5,750 2026-08-19
Unclassified CRITICAL 9.8
CVE-2026-16862

IBM AIX 7.2, and 7.3 and IBM PowerVM VIOS 4.1 could allow a remote attacker to execute arbitrary code due to a stack buffer overflow.

No fix yet
Fix from $5,750 2026-08-19
Unclassified CRITICAL 9.8
CVE-2026-16845

IBM AIX 7.2, and 7.3 and IBM PowerVM VIOS 4.1 could allow a remote attacker to execute arbitrary code due to a heap buffer overflow.

No fix yet
Fix from $5,750 2026-08-19
Unclassified CRITICAL 9.8
CVE-2026-16840

IBM AIX 7.2, and 7.3 and IBM PowerVM VIOS 4.1 could allow a remote attacker to execute arbitrary code due to an out-of-bounds write.

No fix yet
Fix from $5,750 2026-08-19
Unclassified CRITICAL 9.4
CVE-2026-16839

IBM AIX 7.2, and 7.3 and IBM PowerVM VIOS 4.1 could allow a remote attacker to obtain sensitive information due to an integer underflow in the IPv4 I…

No fix yet
Fix from $5,750 2026-08-19
Unclassified CRITICAL 9.8
CVE-2026-16834

IBM AIX 7.2, and 7.3 and IBM PowerVM VIOS 4.1 could allow a remote attacker to cause a denial of service due to an integer underflow.

No fix yet
Fix from $5,750 2026-08-19
Unclassified CRITICAL 9.3
CVE-2026-16822

IBM AIX 7.2, and 7.3 and IBM PowerVM VIOS 4.1 could allow a remote attacker to impersonate the TNC policy server and modify traffic due to improper c…

No fix yet
Fix from $5,750 2026-08-19
Unclassified CRITICAL 9.9
CVE-2026-70496

A flaw was found in search-v2-operator. The operator's ClusterRole has permissions equivalent to a cluster administrator, allowing it to impersonate …

No fix yet
Fix from $5,750 2026-08-19
Unclassified CRITICAL 9.8
CVE-2026-18315

The TrueBooker – Appointment Booking and Scheduler System plugin for WordPress is vulnerable to Authorization Bypass Through User-Controlled Key lead…

No fix yet
Fix from $5,750 2026-08-19
Unclassified CRITICAL 9.6
CVE-2026-16835

IBM Power Systems Firmware FW1120.00, FW1110.00 through FW1110.30, FW1060.00 through FW1060.80, and FW950.00 through FW950.H2 is affected by a vulner…

No fix yet
Fix from $5,750 2026-08-19
Unclassified CRITICAL 9.6
CVE-2026-16687

IBM Power Systems Firmware FW1120.00, FW1110.00 through FW1110.30, FW1060.00 through FW1060.80, and FW950.00 through FW950.H2 is affected by a vulne…

No fix yet
Fix from $5,750 2026-08-19
Unclassified CRITICAL 9.3
CVE-2026-72717

Orval generates type-safe JavaScript clients in TypeScript from OpenAPI v3 and Swagger v2 specifications. Prior to 8.21.0, a ${...} expression or bac…

Patch available
Fix from $5,750 2026-08-19
Unclassified CRITICAL 9.3
CVE-2026-72716

Orval generates type-safe JavaScript clients in TypeScript from OpenAPI v3 and Swagger v2 specifications. Prior to 8.21.0, a ${...} expression or bac…

Patch available
Fix from $5,750 2026-08-19
Unclassified CRITICAL 9.3
CVE-2026-71871

Orval generates type-safe JavaScript clients in TypeScript from OpenAPI v3 and Swagger v2 specifications. Prior to 8.21.0, a ${...} expression or bac…

Patch available
Fix from $5,750 2026-08-19
Unclassified CRITICAL 9.3
CVE-2026-71869

Orval generates type-safe JavaScript clients in TypeScript from OpenAPI v3 and Swagger v2 specifications. Prior to 8.21.0, a ${...} expression or bac…

Patch available
Fix from $5,750 2026-08-19
Unclassified CRITICAL 9.3
CVE-2026-71868

Orval generates type-safe JavaScript clients in TypeScript from OpenAPI v3 and Swagger v2 specifications. Prior to 8.21.0, a ${...} expression or bac…

Patch available
Fix from $5,750 2026-08-19
Unclassified CRITICAL 9.3
CVE-2026-71867

Orval generates type-safe JavaScript clients in TypeScript from OpenAPI v3 and Swagger v2 specifications. Prior to 8.21.0, a single quote in a schema…

Patch available
Fix from $5,750 2026-08-19
Unclassified CRITICAL 9.3
CVE-2026-71866

Orval generates type-safe JavaScript clients in TypeScript from OpenAPI v3 and Swagger v2 specifications. From version 8.19.0 until 8.21.0, a double …

Patch available
Fix from $5,750 2026-08-19
Unclassified CRITICAL 9.3
CVE-2026-71865

Orval generates type-safe JavaScript clients in TypeScript from OpenAPI v3 and Swagger v2 specifications. Prior to 8.21.0, a double quote in a query …

Patch available
Fix from $5,750 2026-08-19
Unclassified CRITICAL 9.3
CVE-2026-71864

Orval generates type-safe JavaScript clients in TypeScript from OpenAPI v3 and Swagger v2 specifications. Prior to 8.21.0, a double quote in a header…

Patch available
Fix from $5,750 2026-08-19
Unclassified CRITICAL 9.3
CVE-2026-66794

A flaw was found in the `cluster-proxy-addon` component of Multicluster Engine for Kubernetes. This vulnerability allows an unauthenticated attacker,…

No fix yet
Fix from $5,750 2026-08-19
Unclassified CRITICAL 9.3
CVE-2026-62682

Orval generates type-safe JavaScript clients in TypeScript from OpenAPI v3 and Swagger v2 specifications. Prior to 8.21.0, an unescaped backtick in s…

Patch available
Fix from $5,750 2026-08-19
Unclassified CRITICAL 9.3
CVE-2026-62681

Orval generates type-safe JavaScript clients in TypeScript from OpenAPI v3 and Swagger v2 specifications. Prior to 8.21.0, an unescaped backtick in a…

Patch available
Fix from $5,750 2026-08-19
Unclassified CRITICAL 9.0
CVE-2026-32475

Unrestricted Upload of File with Dangerous Type vulnerability in Elementor Elementor Pro allows Using Malicious Files. This issue affects Elementor …

No fix yet
Fix from $5,750 2026-08-19