Vulnerability index

Browse CVEs

10,000+ matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Platform Security For Java CRITICAL 9.8
CVE-2026-60367

Vulnerability in the Oracle Platform Security for Java product of Oracle Fusion Middleware (component: Centralized Thirdparty Jars). Supported versi…

No fix yet
Fix from $2,300 2026-07-22
Platform Security For Java CRITICAL 10.0
CVE-2026-60366

Vulnerability in the Oracle Platform Security for Java product of Oracle Fusion Middleware (component: Centralized Thirdparty Jars). Supported versi…

No fix yet
Fix from $2,300 2026-07-22
Unclassified CRITICAL 9.1
CVE-2026-64798

Joomla Extension - regularlabs.com - Insecure login URL keys in IP login extension - Persistent URL login keys were also generated using a non-crypto…

No fix yet
Fix from $2,300 2026-07-22
Unclassified CRITICAL 9.8
CVE-2026-64796

Joomla Extension - regularlabs.com - various code injection vectors in Sourcerer extension - Free did not require both the article creator and last m…

No fix yet
Fix from $2,300 2026-07-22
Unclassified CRITICAL 9.1
CVE-2026-64793

Joomla Extension - regularlabs.com - Content access and publication bypass in Articles Anywhere and Modules Anywhere extensions - Content tags could …

No fix yet
Fix from $2,300 2026-07-22
Unclassified CRITICAL 9.8
CVE-2025-50329

An issue in ConeXware, Inc Power Archiver v.22.00.11 and before allows a remote attacker to escalate privileges and execute arbitrary code via the po…

Patch available
Fix from $2,300 2026-07-22
Unclassified CRITICAL 9.6
CVE-2026-16624

Cal.com OSS ships lacks authorization on webhook teamId creation, allowing any authenticated user to create a webhook on any team via unvalidated tea…

No fix yet
Fix from $2,300 2026-07-22
Unclassified CRITICAL 9.8
CVE-2026-16606

A vulnerability in Fujitsu Software Linux openFT and Fujitsu Software Oracle Solaris openFT before version 12.1D00 allows for unauthenticated remote …

No fix yet
Fix from $2,300 2026-07-22
Unclassified CRITICAL 9.8
CVE-2026-2395

Improper neutralization of special elements used in an SQL command ('SQL injection') vulnerability in Xpoda Türkiye Informatics Technology Inc. No Co…

No fix yet
Fix from $2,300 2026-07-22
Unclassified CRITICAL 9.1
CVE-2026-62144EPSS 21%

An authentication bypass vulnerability in Check Point Security Management and Multi-Domain Security Management allows an unauthenticated remote attac…

No fix yet
Fix from $2,300 2026-07-22
Unbound CRITICAL 9.3
CVE-2026-50252

In NLnet Labs Unbound 1.4.22 up to and including 1.25.1, UDP source port is randomized and intended to serve as a secret value that increases the ent…

Fix: 1.25.2+
Fix from $2,300 2026-07-22
Multi Domain Security Management CRITICAL 9.8
CVE-2026-16232 KEVEPSS 73%

An authentication bypass vulnerability in the Check Point SmartConsole login process allows an unauthenticated remote attacker to obtain an applicati…

Patch available
Fix from $2,300 2026-07-22
Unclassified CRITICAL 9.3
CVE-2026-8152

Unblu Spark contains an open redirect vulnerability that can be escalated to a DOM-based cross-site scripting (XSS) attack. When Unblu Spark is dep…

No fix yet
Fix from $2,300 2026-07-22
N8n CRITICAL 9.8
CVE-2026-65590

n8n before 2.29.8 and 2.30.x before 2.30.1 does not enforce shell sandbox restrictions on Linux and Windows in the @n8n/computer-use package (sandbox…

Fix: 2.29.8+
Fix from $2,300 2026-07-22
Unclassified CRITICAL 9.4
CVE-2026-63048

Joomla Extension - joomlack.fr - Improper access control in Page Builder CK < 3.6.2 - The Joomla extension Page Builder CK is vulnerable to an authen…

No fix yet
Fix from $2,300 2026-07-22
Netty CRITICAL 9.1
CVE-2026-56820

Netty is a network application framework for development of protocol servers and clients. In versions 4.2.0.Final through 4.2.15.Final and prior to 4…

Fix: 4.1.136 / 4.2.16+
Fix from $2,300 2026-07-21
Netty CRITICAL 9.8
CVE-2026-56817

Netty is a network application framework for development of protocol servers and clients. In versions 4.2.0.Final through 4.2.15.Final and 4.1.0.Fina…

Fix: 4.1.136 / 4.2.16+
Fix from $2,300 2026-07-21
Chrome CRITICAL 9.6
CVE-2026-16424

Use after free in GPU in Google Chrome on Android prior to 150.0.7871.182 allowed a remote attacker who had compromised the renderer process to poten…

Fix: 150.0.7871.182+
Fix from $2,300 2026-07-21
Chrome CRITICAL 9.6
CVE-2026-16419

Out of bounds read and write in ANGLE in Google Chrome on Android prior to 150.0.7871.182 allowed a remote attacker to potentially perform a sandbox …

Fix: 150.0.7871.182+
Fix from $2,300 2026-07-21
Chrome CRITICAL 9.3
CVE-2026-16416

Integer overflow in Chromecast in Google Chrome prior to 150.0.7871.182 allowed a local attacker to potentially perform a sandbox escape via maliciou…

Fix: 150.0.7871.182+
Fix from $2,300 2026-07-21
Maxicharger Single Charger Firmware CRITICAL 9.8
CVE-2026-8986

Autel Maxi Charger Single firmware through V1.03.51 is vulnerable to OS command injection when processing OCPP GetDiagnostics requests. A malicious o…

Fix: after 1.03.51
Fix from $2,300 2026-07-21
Maxicharger Single Charger Firmware CRITICAL 9.8
CVE-2026-8985EPSS 7%

Autel Maxi Charger Single firmware through V1.03.51 is vulnerable to OS command injection in the /test endpoint exposed on TCP port 9002. An unauthen…

Fix: after 1.03.51
Fix from $2,300 2026-07-21
Maxicharger Single Charger Firmware CRITICAL 9.8
CVE-2026-8984

Autel Maxi Charger Single firmware through V1.03.51 allows unauthenticated remote code execution via the service listening on TCP port 9002. A crafte…

Fix: after 1.03.51
Fix from $2,300 2026-07-21
Human Resources Management System CRITICAL 9.6
CVE-2026-62549

Vulnerability in the Oracle HRMS (UK) product of Oracle E-Business Suite (component: UK Payroll). Supported versions that are affected are 12.2.3-12…

Fix: after 12.2.15
Fix from $2,300 2026-07-21
Applications Framework CRITICAL 9.1
CVE-2026-62546

Vulnerability in the Oracle Applications Framework product of Oracle E-Business Suite (component: Web Utilities). Supported versions that are affect…

Fix: after 12.2.15
Fix from $2,300 2026-07-21
Peoplesoft Enterprise Fin Manufacturing Brazil CRITICAL 9.8
CVE-2026-61245

Vulnerability in the PeopleSoft Enterprise FIN Manufacturing Brazil product of Oracle PeopleSoft (component: Integration). The supported version th…

No fix yet
Fix from $2,300 2026-07-21
Peoplesoft Enterprise Fin Manufacturing Argentina CRITICAL 9.1
CVE-2026-61244

Vulnerability in the PeopleSoft Enterprise FIN Manufacturing Argentina product of Oracle PeopleSoft (component: Manufacturing). The supported versi…

Mitigation only
Fix from $2,300 2026-07-21
Peoplesoft Enterprise Fin Common Objects CRITICAL 9.9
CVE-2026-61242

Vulnerability in the PeopleSoft Enterprise FIN Common Objects Argentina product of Oracle PeopleSoft (component: Staffing). The supported version t…

No fix yet
Fix from $2,300 2026-07-21
Peoplesoft Enterprise Fin Common Objects CRITICAL 9.9
CVE-2026-61239

Vulnerability in the PeopleSoft Enterprise FIN Common Objects Argentina product of Oracle PeopleSoft (component: eProcurement). The supported versi…

Mitigation only
Fix from $2,300 2026-07-21
Peoplesoft Enterprise Fin Common Objects CRITICAL 9.1
CVE-2026-61238

Vulnerability in the PeopleSoft Enterprise FIN Common Objects Argentina product of Oracle PeopleSoft (component: eProcurement). The supported versi…

No fix yet
Fix from $2,300 2026-07-21