Vulnerability index

Browse CVEs

10,000+ matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

CRITICAL 9.8 CVE-2026-60367 Vulnerability in the Oracle Platform Security for Java product of Oracle Fusion Middleware (component: Centralized Thirdparty Jars). Supported versi… Platform Security For Java No fix yet Fix from $2,3002026-07-22 CRITICAL 10.0 CVE-2026-60366 Vulnerability in the Oracle Platform Security for Java product of Oracle Fusion Middleware (component: Centralized Thirdparty Jars). Supported versi… Platform Security For Java No fix yet Fix from $2,3002026-07-22 CRITICAL 9.1 CVE-2026-64798 Joomla Extension - regularlabs.com - Insecure login URL keys in IP login extension - Persistent URL login keys were also generated using a non-crypto… No fix yet Fix from $2,3002026-07-22 CRITICAL 9.8 CVE-2026-64796 Joomla Extension - regularlabs.com - various code injection vectors in Sourcerer extension - Free did not require both the article creator and last m… No fix yet Fix from $2,3002026-07-22 CRITICAL 9.1 CVE-2026-64793 Joomla Extension - regularlabs.com - Content access and publication bypass in Articles Anywhere and Modules Anywhere extensions - Content tags could … No fix yet Fix from $2,3002026-07-22 CRITICAL 9.8 CVE-2025-50329 An issue in ConeXware, Inc Power Archiver v.22.00.11 and before allows a remote attacker to escalate privileges and execute arbitrary code via the po… Patch available Fix from $2,3002026-07-22 CRITICAL 9.6 CVE-2026-16624 Cal.com OSS ships lacks authorization on webhook teamId creation, allowing any authenticated user to create a webhook on any team via unvalidated tea… No fix yet Fix from $2,3002026-07-22 CRITICAL 9.8 CVE-2026-16606 A vulnerability in Fujitsu Software Linux openFT and Fujitsu Software Oracle Solaris openFT before version 12.1D00 allows for unauthenticated remote … No fix yet Fix from $2,3002026-07-22 CRITICAL 9.8 CVE-2026-2395 Improper neutralization of special elements used in an SQL command ('SQL injection') vulnerability in Xpoda Türkiye Informatics Technology Inc. No Co… No fix yet Fix from $2,3002026-07-22 CRITICAL 9.1 CVE-2026-62144EPSS 21% An authentication bypass vulnerability in Check Point Security Management and Multi-Domain Security Management allows an unauthenticated remote attac… No fix yet Fix from $2,3002026-07-22 CRITICAL 9.3 CVE-2026-50252 In NLnet Labs Unbound 1.4.22 up to and including 1.25.1, UDP source port is randomized and intended to serve as a secret value that increases the ent… Unbound 1.25.2+ Fix from $2,3002026-07-22 CRITICAL 9.8 CVE-2026-16232 KEVEPSS 73% An authentication bypass vulnerability in the Check Point SmartConsole login process allows an unauthenticated remote attacker to obtain an applicati… Multi Domain Security Management Patch available Fix from $2,3002026-07-22 CRITICAL 9.3 CVE-2026-8152 Unblu Spark contains an open redirect vulnerability that can be escalated to a DOM-based cross-site scripting (XSS) attack. When Unblu Spark is dep… No fix yet Fix from $2,3002026-07-22 CRITICAL 9.8 CVE-2026-65590 n8n before 2.29.8 and 2.30.x before 2.30.1 does not enforce shell sandbox restrictions on Linux and Windows in the @n8n/computer-use package (sandbox… N8n 2.29.8+ Fix from $2,3002026-07-22 CRITICAL 9.4 CVE-2026-63048 Joomla Extension - joomlack.fr - Improper access control in Page Builder CK < 3.6.2 - The Joomla extension Page Builder CK is vulnerable to an authen… No fix yet Fix from $2,3002026-07-22 CRITICAL 9.1 CVE-2026-56820 Netty is a network application framework for development of protocol servers and clients. In versions 4.2.0.Final through 4.2.15.Final and prior to 4… Netty 4.1.136 / 4.2.16+ Fix from $2,3002026-07-21 CRITICAL 9.8 CVE-2026-56817 Netty is a network application framework for development of protocol servers and clients. In versions 4.2.0.Final through 4.2.15.Final and 4.1.0.Fina… Netty 4.1.136 / 4.2.16+ Fix from $2,3002026-07-21 CRITICAL 9.6 CVE-2026-16424 Use after free in GPU in Google Chrome on Android prior to 150.0.7871.182 allowed a remote attacker who had compromised the renderer process to poten… Chrome 150.0.7871.182+ Fix from $2,3002026-07-21 CRITICAL 9.6 CVE-2026-16419 Out of bounds read and write in ANGLE in Google Chrome on Android prior to 150.0.7871.182 allowed a remote attacker to potentially perform a sandbox … Chrome 150.0.7871.182+ Fix from $2,3002026-07-21 CRITICAL 9.3 CVE-2026-16416 Integer overflow in Chromecast in Google Chrome prior to 150.0.7871.182 allowed a local attacker to potentially perform a sandbox escape via maliciou… Chrome 150.0.7871.182+ Fix from $2,3002026-07-21 CRITICAL 9.8 CVE-2026-8986 Autel Maxi Charger Single firmware through V1.03.51 is vulnerable to OS command injection when processing OCPP GetDiagnostics requests. A malicious o… Maxicharger Single Charger Firmware after 1.03.51 Fix from $2,3002026-07-21 CRITICAL 9.8 CVE-2026-8985EPSS 7% Autel Maxi Charger Single firmware through V1.03.51 is vulnerable to OS command injection in the /test endpoint exposed on TCP port 9002. An unauthen… Maxicharger Single Charger Firmware after 1.03.51 Fix from $2,3002026-07-21 CRITICAL 9.8 CVE-2026-8984 Autel Maxi Charger Single firmware through V1.03.51 allows unauthenticated remote code execution via the service listening on TCP port 9002. A crafte… Maxicharger Single Charger Firmware after 1.03.51 Fix from $2,3002026-07-21 CRITICAL 9.6 CVE-2026-62549 Vulnerability in the Oracle HRMS (UK) product of Oracle E-Business Suite (component: UK Payroll). Supported versions that are affected are 12.2.3-12… Human Resources Management System after 12.2.15 Fix from $2,3002026-07-21 CRITICAL 9.1 CVE-2026-62546 Vulnerability in the Oracle Applications Framework product of Oracle E-Business Suite (component: Web Utilities). Supported versions that are affect… Applications Framework after 12.2.15 Fix from $2,3002026-07-21 CRITICAL 9.8 CVE-2026-61245 Vulnerability in the PeopleSoft Enterprise FIN Manufacturing Brazil product of Oracle PeopleSoft (component: Integration). The supported version th… Peoplesoft Enterprise Fin Manufacturing Brazil No fix yet Fix from $2,3002026-07-21 CRITICAL 9.1 CVE-2026-61244 Vulnerability in the PeopleSoft Enterprise FIN Manufacturing Argentina product of Oracle PeopleSoft (component: Manufacturing). The supported versi… Peoplesoft Enterprise Fin Manufacturing Argentina Mitigation only Fix from $2,3002026-07-21 CRITICAL 9.9 CVE-2026-61242 Vulnerability in the PeopleSoft Enterprise FIN Common Objects Argentina product of Oracle PeopleSoft (component: Staffing). The supported version t… Peoplesoft Enterprise Fin Common Objects No fix yet Fix from $2,3002026-07-21 CRITICAL 9.9 CVE-2026-61239 Vulnerability in the PeopleSoft Enterprise FIN Common Objects Argentina product of Oracle PeopleSoft (component: eProcurement). The supported versi… Peoplesoft Enterprise Fin Common Objects Mitigation only Fix from $2,3002026-07-21 CRITICAL 9.1 CVE-2026-61238 Vulnerability in the PeopleSoft Enterprise FIN Common Objects Argentina product of Oracle PeopleSoft (component: eProcurement). The supported versi… Peoplesoft Enterprise Fin Common Objects No fix yet Fix from $2,3002026-07-21