Vulnerability index

Browse CVEs

10,000+ matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

CRITICAL 9.6 CVE-2026-25130 Cybersecurity AI (CAI) is a framework for AI Security. In versions up to and including 0.5.10, the CAI (Cybersecurity AI) framework contains multiple… Patch available Fix from $2,3002026-01-30 CRITICAL 9.2 CVE-2026-1723 Improper Neutralization of Special Elements used in an OS Command ('OS Command Injection') vulnerability in TOTOLINK X6000R allows OS Command Injecti… Mitigation only Fix from $2,3002026-01-30 CRITICAL 9.8 CVE-2025-51958 aelsantex runcommand 2014-04-01, a plugin for DokuWiki, allows unauthenticated attackers to execute arbitrary system commands via lib/plugins/runcomm… Runcommand Mitigation only Fix from $2,3002026-01-30 CRITICAL 9.8 CVE-2026-1701 A security vulnerability has been detected in itsourcecode School Management System 1.0. This issue affects some unknown processing of the file /enro… School Management System Mitigation only Fix from $2,3002026-01-30 CRITICAL 9.8 CVE-2026-1688 A security vulnerability has been detected in itsourcecode Directory Management System 1.0. The affected element is an unknown function of the file /… Directory Management System Mitigation only Fix from $2,3002026-01-30 CRITICAL 9.2 CVE-2025-7964 After receiving a malformed 802.15.4 MAC Data Request the Zigbee Coordinator sends a ‘network leave’ request to Zigbee router resulting in the Zi… Mitigation only Fix from $2,3002026-01-30 CRITICAL 9.5 CVE-2025-26385 Johnson Controls Metasys component listed below have Improper Neutralization of Special Elements used in a Command (Command Injection) Vulnerability… Mitigation only Fix from $2,3002026-01-30 CRITICAL 10.0 CVE-2026-24729 An unrestricted upload of file with dangerous type vulnerability in the file upload function of Interinfo DreamMaker versions before 2025/10/22 allow… Mitigation only Fix from $2,3002026-01-30 CRITICAL 9.3 CVE-2026-24728 A missing authentication for critical function vulnerability in the /servlet/baServer3 endpoint of Interinfo DreamMaker versions before 2025/10/22 al… Mitigation only Fix from $2,3002026-01-30 CRITICAL 9.8 CVE-2026-1340 KEVEPSS 86% A code injection in Ivanti Endpoint Manager Mobile allowing attackers to achieve unauthenticated remote code execution. Endpoint Manager Mobile after 12.7.0.0 Fix from $2,3002026-01-29 CRITICAL 9.8 CVE-2026-1281 KEVEPSS 82% A code injection in Ivanti Endpoint Manager Mobile allowing attackers to achieve unauthenticated remote code execution. Endpoint Manager Mobile after 12.5.0.0 Fix from $2,3002026-01-29 CRITICAL 9.1 CVE-2026-22806 vCluster Platform provides a Kubernetes platform for managing virtual clusters, multi-tenancy, and cluster sharing. Prior to versions 4.6.0, 4.5.4, 4… Mitigation only Fix from $2,3002026-01-29 CRITICAL 9.8 CVE-2025-69929 An issue in N3uron Web User Interface v.1.21.7-240207.1047 allows a remote attacker to escalate privileges via the password hashing on the client sid… Web User Interface Mitigation only Fix from $2,3002026-01-29 CRITICAL 9.8 CVE-2026-1453 A missing authentication for critical function vulnerability in KiloView Encoder Series could allow an unauthenticated attacker to create or delete a… Mitigation only Fix from $2,3002026-01-29 CRITICAL 10.0 CVE-2026-24054 Kata Containers is an open source project focusing on a standard implementation of lightweight Virtual Machines (VMs) that perform like containers. I… Kata Containers 3.26.0+ Fix from $2,3002026-01-29 CRITICAL 9.8 CVE-2026-1595 A vulnerability was detected in itsourcecode Society Management System 1.0. This affects an unknown part of the file /admin/edit_student_query.php. T… Society Management System Mitigation only Fix from $2,3002026-01-29 CRITICAL 9.8 CVE-2026-1594 A security vulnerability has been detected in itsourcecode Society Management System 1.0. Affected by this issue is some unknown functionality of the… Society Management System Mitigation only Fix from $2,3002026-01-29 CRITICAL 9.8 CVE-2026-1593 A weakness has been identified in itsourcecode Society Management System 1.0. Affected by this vulnerability is an unknown functionality of the file … Society Management System Mitigation only Fix from $2,3002026-01-29 CRITICAL 9.8 CVE-2026-1590 A vulnerability was identified in itsourcecode School Management System 1.0. This impacts an unknown function of the file /ramonsys/faculty/index.php… School Management System Mitigation only Fix from $2,3002026-01-29 CRITICAL 9.8 CVE-2026-1589 A vulnerability was determined in itsourcecode School Management System 1.0. This affects an unknown function of the file /ramonsys/inquiry/index.php… School Management System Mitigation only Fix from $2,3002026-01-29 CRITICAL 9.8 CVE-2025-7714 Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in Global Interactive Design Media Software Inc. C… Content Management System after 2025-07-21 Fix from $2,3002026-01-29 CRITICAL 9.8 CVE-2020-37012 Tea LaTex 1.0 contains a remote code execution vulnerability that allows unauthenticated attackers to execute arbitrary shell commands through the /a… Mitigation only Fix from $2,3002026-01-29 CRITICAL 9.8 CVE-2020-37010 BearShare Lite 5.2.5 contains a buffer overflow vulnerability in the Advanced Search keywords input that allows attackers to execute arbitrary code. … Mitigation only Fix from $2,3002026-01-29 CRITICAL 9.8 CVE-2020-37002 Ajenti 2.1.36 contains a post-authenticated remote command execution vulnerability that allows remote attackers to execute arbitrary commands after s… Mitigation only Fix from $2,3002026-01-29 CRITICAL 9.8 CVE-2020-37000 Free MP3 CD Ripper 2.8 contains a stack buffer overflow vulnerability that allows remote attackers to execute arbitrary code by crafting a malicious … Mitigation only Fix from $2,3002026-01-29 CRITICAL 9.8 CVE-2020-36997 BacklinkSpeed 2.4 contains a buffer overflow vulnerability that allows attackers to corrupt the Structured Exception Handler (SEH) chain through mali… Mitigation only Fix from $2,3002026-01-29 CRITICAL 9.8 CVE-2025-7013 Authorization Bypass Through User-Controlled Key vulnerability in QR Menu Pro Smart Menu Systems Menu Panel allows Exploitation of Trusted Identifier… Menu Panel after 29012026 Fix from $2,3002026-01-29 CRITICAL 9.8 CVE-2025-7016 Improper Access Control vulnerability in Akın Software Computer Import Export Industry and Trade Ltd. QR Menu allows Authentication Abuse. This issu… Qr Menu Mitigation only Fix from $2,3002026-01-29 CRITICAL 9.8 CVE-2025-7015 Session Fixation vulnerability in Akın Software Computer Import Export Industry and Trade Ltd. QR Menu allows Session Fixation. This issue affects Q… Qr Menu Mitigation only Fix from $2,3002026-01-29 CRITICAL 9.8 CVE-2026-1188 In the Eclipse OMR port library component since release 0.2.0, an API function to return the textual names of all supported processor features was no… Omr 0.8.0+ Fix from $2,3002026-01-29