Top technology
Linux 13140
Google 12525
Microsoft 12378
Apple 6692
Oracle 6649
Adobe 6383
Ibm 6266
Cisco 5746
Debian 3919
Apache 2864
Mozilla 2857
Redhat 2581
HIGH 8.1
CVE-2026-48440
ColdFusion is affected by a Heap-based Buffer Overflow vulnerability that could result in arbitrary code execution in the context of the current user…
Coldfusion
No fix yet
HIGH 7.7
CVE-2026-48385
ColdFusion is affected by an Improper Neutralization of Special Elements used in an OS Command ('OS Command Injection') vulnerability that could resu…
Coldfusion
No fix yet
HIGH 7.5
CVE-2026-48386
ColdFusion is affected by a Use of a Broken or Risky Cryptographic Algorithm vulnerability that could lead to disclosure of sensitive memory. An atta…
Coldfusion
No fix yet
CRITICAL 10.0
CVE-2026-48362
ColdFusion is affected by an Improper Neutralization of Special Elements used in an OS Command ('OS Command Injection') vulnerability that could resu…
Coldfusion
No fix yet
MEDIUM 6.5
CVE-2026-48375
ColdFusion is affected by an Incorrect Authorization vulnerability that could result in an application denial-of-service. A low-privileged attacker c…
Coldfusion
No fix yet
MEDIUM 5.4
CVE-2026-48376
is affected by an Improper Encoding or Escaping of Output vulnerability that could result in a Security feature bypass. A low-privileged attacker cou…
Coldfusion
No fix yet
HIGH 8.4
CVE-2026-34635
is affected by a Use of Hard-coded Cryptographic Key vulnerability that could result in a Security feature bypass. A low-privileged attacker could le…
Coldfusion
No fix yet
HIGH 7.8
CVE-2026-25652
is affected by an Incorrect Authorization vulnerability that could result in privilege escalation. A low-privileged attacker could exploit this vulne…
Coldfusion
No fix yet
HIGH 8.7
CVE-2026-21273
is affected by an Improper Input Validation vulnerability that could result in privilege escalation. A low-privileged attacker could exploit this vul…
Coldfusion
No fix yet
HIGH 8.2
CVE-2026-21279
is affected by an Improper Input Validation vulnerability that could result in a Security feature bypass. An attacker could leverage this vulnerabili…
Coldfusion
No fix yet
MEDIUM 5.4
CVE-2026-21269
is affected by a stored Cross-Site Scripting (XSS) vulnerability that could be abused by a low-privileged attacker to inject malicious scripts into v…
Coldfusion
No fix yet
HIGH 8.6
CVE-2026-48388
Adobe Photoshop Installer was affected by an Uncontrolled Search Path Element vulnerability that could have resulted in arbitrary code execution in t…
Photoshop Installer
No fix yet
CRITICAL 9.3
CVE-2026-48325
ColdFusion is affected by a Missing Authentication for Critical Function vulnerability that could result in arbitrary code execution in the context o…
Coldfusion
Mitigation only
CRITICAL 9.1
CVE-2026-48324
ColdFusion is affected by an Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability that could result in …
Coldfusion
Mitigation only
CRITICAL 9.0
CVE-2026-48327
ColdFusion is affected by an Incorrect Authorization vulnerability that could result in arbitrary code execution in the context of the current user. …
Coldfusion
Mitigation only
HIGH 7.7
CVE-2026-48328
ColdFusion is affected by an Improper Input Validation vulnerability that could result in a Security feature bypass. A low-privileged attacker could …
Coldfusion
Mitigation only
HIGH 7.7
CVE-2026-48332EPSS 11%
ColdFusion is affected by a Server-Side Request Forgery (SSRF) vulnerability that could result in a Security feature bypass. A low-privileged attacke…
Coldfusion
Mitigation only
MEDIUM 6.8
CVE-2026-48338
ColdFusion is affected by an Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') vulnerability that could lead to arbitrar…
Coldfusion
Mitigation only
CRITICAL 9.9
CVE-2026-48318EPSS 23%
ColdFusion is affected by an Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') vulnerability that could lead to arbitrar…
Coldfusion
Mitigation only
CRITICAL 9.9
CVE-2026-48322
ColdFusion is affected by an Improper Control of Generation of Code ('Code Injection') vulnerability that could result in arbitrary code execution in…
Coldfusion
Mitigation only
CRITICAL 9.6
CVE-2026-48284
ColdFusion is affected by an Improper Input Validation vulnerability that could result in arbitrary code execution in the context of the current user…
Coldfusion
Mitigation only
CRITICAL 9.3
CVE-2026-48321
ColdFusion is affected by an Incorrect Authorization vulnerability that could result in privilege escalation. An attacker could leverage this vulnera…
Coldfusion
Mitigation only
CRITICAL 9.1
CVE-2026-48319EPSS 32%
ColdFusion is affected by an Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') vulnerability that could result in arbitr…
Coldfusion
Mitigation only
HIGH 8.5
CVE-2026-48320EPSS 5%
ColdFusion is affected by a reflected Cross-Site Scripting (XSS) vulnerability. An attacker could exploit this vulnerability to inject malicious scri…
Coldfusion
Mitigation only
HIGH 8.2
CVE-2026-48364
ColdFusion versions 2025.9, 2023.20 and earlier are affected by an Uncontrolled Search Path Element vulnerability that could result in arbitrary code…
Coldfusion
Mitigation only
HIGH 8.2
CVE-2026-48363
ColdFusion versions 2025.9, 2023.20 and earlier are affected by an Uncontrolled Search Path Element vulnerability that could result in arbitrary code…
Coldfusion
Mitigation only
CRITICAL 10.0
CVE-2026-48316
ColdFusion versions 2025.9, 2023.20 and earlier are affected by an Improper Input Validation vulnerability that could result in arbitrary code execut…
Coldfusion
Mitigation only
CRITICAL 9.3
CVE-2026-48313
ColdFusion versions 2025.9, 2023.20 and earlier are affected by an Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') vul…
Coldfusion
Mitigation only
CRITICAL 9.3
CVE-2026-48315
ColdFusion versions 2025.9, 2023.20 and earlier are affected by an Improper Input Validation vulnerability that could result in arbitrary code execut…
Coldfusion
Mitigation only
MEDIUM 6.5
CVE-2026-48314
ColdFusion versions 2025.9, 2023.20 and earlier are affected by an Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') vul…
Coldfusion
Mitigation only