Vulnerability index

Browse CVEs

10,000+ matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

CRITICAL 9.8 CVE-2026-16913 IBM AIX 7.2, and 7.3 and IBM PowerVM VIOS 4.1 could allow a remote attacker to execute arbitrary code due to a stack buffer overflow. Vios 4.1.0.50 / 4.1.1.30+ Fix from $5,7502026-08-19 CRITICAL 9.6 CVE-2026-16903 IBM AIX 7.2, and 7.3 and IBM PowerVM VIOS 4.1 could allow a remote attacker to execute arbitrary code or cause a denial of service due to an out-of-b… Vios 4.1.0.50 / 4.1.1.30+ Fix from $5,7502026-08-19 CRITICAL 9.8 CVE-2026-16894 IBM AIX 7.2, and 7.3 and IBM PowerVM VIOS 4.1 could allow a remote attacker to execute arbitrary code due to a stack buffer overflow. Vios 4.1.0.50 / 4.1.1.30+ Fix from $5,7502026-08-19 CRITICAL 9.8 CVE-2026-16885 IBM AIX 7.2, and 7.3 and IBM PowerVM VIOS 4.1 could allow a remote attacker to execute arbitrary code due to a stack buffer overflow. Vios 4.1.0.50 / 4.1.1.30+ Fix from $5,7502026-08-19 CRITICAL 9.8 CVE-2026-16882 IBM AIX 7.2, and 7.3 and IBM PowerVM VIOS 4.1 could allow a remote attacker to execute arbitrary commands due to improper neutralization of special e… Vios 4.1.0.50 / 4.1.1.30+ Fix from $5,7502026-08-19 CRITICAL 9.8 CVE-2026-16872 IBM AIX 7.2, and 7.3 and IBM PowerVM VIOS 4.1 could allow a remote attacker to execute arbitrary code due to a stack-based buffer overflow. Vios 4.1.0.50 / 4.1.1.30+ Fix from $5,7502026-08-19 CRITICAL 9.8 CVE-2026-16864 IBM AIX 7.2, and 7.3 and IBM PowerVM VIOS 4.1 could allow a remote attacker to execute arbitrary code due to a stack buffer overflow. No fix yet Fix from $5,7502026-08-19 CRITICAL 9.8 CVE-2026-16862 IBM AIX 7.2, and 7.3 and IBM PowerVM VIOS 4.1 could allow a remote attacker to execute arbitrary code due to a stack buffer overflow. No fix yet Fix from $5,7502026-08-19 CRITICAL 9.8 CVE-2026-16845 IBM AIX 7.2, and 7.3 and IBM PowerVM VIOS 4.1 could allow a remote attacker to execute arbitrary code due to a heap buffer overflow. No fix yet Fix from $5,7502026-08-19 CRITICAL 9.8 CVE-2026-16840 IBM AIX 7.2, and 7.3 and IBM PowerVM VIOS 4.1 could allow a remote attacker to execute arbitrary code due to an out-of-bounds write. No fix yet Fix from $5,7502026-08-19 CRITICAL 9.4 CVE-2026-16839 IBM AIX 7.2, and 7.3 and IBM PowerVM VIOS 4.1 could allow a remote attacker to obtain sensitive information due to an integer underflow in the IPv4 I… No fix yet Fix from $5,7502026-08-19 CRITICAL 9.8 CVE-2026-16834 IBM AIX 7.2, and 7.3 and IBM PowerVM VIOS 4.1 could allow a remote attacker to cause a denial of service due to an integer underflow. No fix yet Fix from $5,7502026-08-19 CRITICAL 9.3 CVE-2026-16822 IBM AIX 7.2, and 7.3 and IBM PowerVM VIOS 4.1 could allow a remote attacker to impersonate the TNC policy server and modify traffic due to improper c… No fix yet Fix from $5,7502026-08-19 CRITICAL 9.9 CVE-2026-70496 A flaw was found in search-v2-operator. The operator's ClusterRole has permissions equivalent to a cluster administrator, allowing it to impersonate … No fix yet Fix from $5,7502026-08-19 CRITICAL 9.8 CVE-2026-18315 The TrueBooker – Appointment Booking and Scheduler System plugin for WordPress is vulnerable to Authorization Bypass Through User-Controlled Key lead… No fix yet Fix from $5,7502026-08-19 CRITICAL 9.6 CVE-2026-16835 IBM Power Systems Firmware FW1120.00, FW1110.00 through FW1110.30, FW1060.00 through FW1060.80, and FW950.00 through FW950.H2 is affected by a vulner… No fix yet Fix from $5,7502026-08-19 CRITICAL 9.6 CVE-2026-16687 IBM Power Systems Firmware FW1120.00, FW1110.00 through FW1110.30, FW1060.00 through FW1060.80, and FW950.00 through FW950.H2 is affected by a vulne… No fix yet Fix from $5,7502026-08-19 CRITICAL 9.3 CVE-2026-72717 Orval generates type-safe JavaScript clients in TypeScript from OpenAPI v3 and Swagger v2 specifications. Prior to 8.21.0, a ${...} expression or bac… Patch available Fix from $5,7502026-08-19 CRITICAL 9.3 CVE-2026-72716 Orval generates type-safe JavaScript clients in TypeScript from OpenAPI v3 and Swagger v2 specifications. Prior to 8.21.0, a ${...} expression or bac… Patch available Fix from $5,7502026-08-19 CRITICAL 9.3 CVE-2026-71871 Orval generates type-safe JavaScript clients in TypeScript from OpenAPI v3 and Swagger v2 specifications. Prior to 8.21.0, a ${...} expression or bac… Patch available Fix from $5,7502026-08-19 CRITICAL 9.3 CVE-2026-71869 Orval generates type-safe JavaScript clients in TypeScript from OpenAPI v3 and Swagger v2 specifications. Prior to 8.21.0, a ${...} expression or bac… Patch available Fix from $5,7502026-08-19 CRITICAL 9.3 CVE-2026-71868 Orval generates type-safe JavaScript clients in TypeScript from OpenAPI v3 and Swagger v2 specifications. Prior to 8.21.0, a ${...} expression or bac… Patch available Fix from $5,7502026-08-19 CRITICAL 9.3 CVE-2026-71867 Orval generates type-safe JavaScript clients in TypeScript from OpenAPI v3 and Swagger v2 specifications. Prior to 8.21.0, a single quote in a schema… Patch available Fix from $5,7502026-08-19 CRITICAL 9.3 CVE-2026-71866 Orval generates type-safe JavaScript clients in TypeScript from OpenAPI v3 and Swagger v2 specifications. From version 8.19.0 until 8.21.0, a double … Patch available Fix from $5,7502026-08-19 CRITICAL 9.3 CVE-2026-71865 Orval generates type-safe JavaScript clients in TypeScript from OpenAPI v3 and Swagger v2 specifications. Prior to 8.21.0, a double quote in a query … Patch available Fix from $5,7502026-08-19 CRITICAL 9.3 CVE-2026-71864 Orval generates type-safe JavaScript clients in TypeScript from OpenAPI v3 and Swagger v2 specifications. Prior to 8.21.0, a double quote in a header… Patch available Fix from $5,7502026-08-19 CRITICAL 9.3 CVE-2026-66794 A flaw was found in the `cluster-proxy-addon` component of Multicluster Engine for Kubernetes. This vulnerability allows an unauthenticated attacker,… No fix yet Fix from $5,7502026-08-19 CRITICAL 9.3 CVE-2026-62682 Orval generates type-safe JavaScript clients in TypeScript from OpenAPI v3 and Swagger v2 specifications. Prior to 8.21.0, an unescaped backtick in s… Patch available Fix from $5,7502026-08-19 CRITICAL 9.3 CVE-2026-62681 Orval generates type-safe JavaScript clients in TypeScript from OpenAPI v3 and Swagger v2 specifications. Prior to 8.21.0, an unescaped backtick in a… Patch available Fix from $5,7502026-08-19 CRITICAL 9.0 CVE-2026-32475 Unrestricted Upload of File with Dangerous Type vulnerability in Elementor Elementor Pro allows Using Malicious Files. This issue affects Elementor … No fix yet Fix from $5,7502026-08-19