Top technology
Linux 13140
Google 12525
Microsoft 12378
Apple 6692
Oracle 6649
Adobe 6383
Ibm 6266
Cisco 5746
Debian 3919
Apache 2864
Mozilla 2857
Redhat 2581
CRITICAL 9.8
CVE-2026-28323
SolarWinds Web Help Desk is found to be affected by a SAML authentication bypass vulnerability. This requires the SAML 2.0 authentication method to b…
Web Help Desk
No fix yet
CRITICAL 9.1
CVE-2026-28317
SolarWinds Serv-U is affected by an insecure direct object reference (IDOR) vulnerability that can lead to privilege escalation. This issue requires …
Serv U
2026.3+
CRITICAL 9.1
CVE-2026-28321
SolarWinds Serv-U is affected by a broken access control vulnerability that could allow arbitrary file read and write, which can then be used to esca…
Serv U
2026.3+
CRITICAL 9.1
CVE-2026-28312
SolarWinds Serv-U is affected by a privilege escalation vulnerability. This would elevate a group’s access to system administrator and allow code exe…
Serv U
2026.3+
CRITICAL 9.1
CVE-2026-28313
SolarWinds Serv-U is affected by an insecure direct object reference (IDOR) vulnerability that can lead to SMTP hijacking leading to arbitrary accoun…
Serv U
2026.3+
CRITICAL 9.1
CVE-2026-28314
SolarWinds Serv-U is affected by an insecure direct object reference vulnerability that leads to an account takeover. User authentication is required…
Serv U
2026.3+
CRITICAL 9.1
CVE-2026-28316
SolarWinds Serv-U is affected by an insecure direct object reference (IDOR) vulnerability that can lead to privilege escalation to a system administr…
Serv U
2026.3+
MEDIUM 6.2
CVE-2026-28315
SolarWinds Serv-U was found to be affected by a stored cross-site scripting vulnerability that could lead to session hijacking or information disclos…
Serv U
2026.3+
CRITICAL 9.1
CVE-2026-28304
SolarWinds Serv-U is affected by a remote code execution vulnerability that, when exploited, can allow the arbitrary execution of code remotely as ro…
Serv U
2026.3+
CRITICAL 9.1
CVE-2026-28305
SolarWinds Serv-U is affected by an insecure direct object reference (IDOR) vulnerability that can lead to remote code execution as root. A domain ac…
Serv U
2026.3+
CRITICAL 9.1
CVE-2026-28306
SolarWinds Serv-U is affected by a privilege escalation vulnerability that allows a domain administrator to elevate their privileges to a system admi…
Serv U
2026.3+
CRITICAL 9.1
CVE-2026-28307
SolarWinds Serv-U is affected by a privilege escalation vulnerability that allows a domain user group to be elevated into an administrator group. The…
Serv U
2026.3+
CRITICAL 9.1
CVE-2026-28308
SolarWinds Serv-U is affected by an insecure direct object reference (IDOR) vulnerability that can lead to remote code execution. Domain administrato…
Serv U
2026.3+
CRITICAL 9.1
CVE-2026-28309
SolarWinds Serv-U is affected by a broken access control vulnerability that allows a domain administrator to create system administrator accounts. Th…
Serv U
2026.3+
CRITICAL 9.1
CVE-2026-28310
SolarWinds Serv-U is affected by a privilege escalation vulnerability that allows a domain administrator to escalate their user type to that of a sys…
Serv U
2026.3+
CRITICAL 9.1
CVE-2026-28302
SolarWinds Serv-U is affected by an insecure direct object reference (IDOR) vulnerability that can lead to privilege escalation and remote code execu…
Serv U
2026.3+
HIGH 7.5
CVE-2026-28318 KEVEPSS 8%
SolarWinds Serv-U is susceptible to specially crafted POST requests that crash the Serv-U service without authentication using Content-Encoding: defl…
Serv U
15.5.4+
HIGH 7.5
CVE-2026-28299
SolarWinds Web Help Desk is found to be affected by a denial-of-service vulnerability, which when exploited, could cause the Web Help Desk server to …
Web Help Desk
2026.2+
MEDIUM 5.5
CVE-2018-25252
FTP Voyager 16.2.0 contains a denial of service vulnerability that allows local attackers to crash the application by injecting oversized buffer data…
Ftp Voyager
after 16.2.0
HIGH 8.7
CVE-2026-28297
SolarWinds Observability Self-Hosted was found to be affected by a stored cross-site scripting vulnerability, which when exploited, can lead to unint…
Observability Self Hosted
2026.1.1+
HIGH 8.1
CVE-2026-28298
SolarWinds Observability Self-Hosted was found to be affected by a stored cross-site scripting vulnerability, which when exploited, can lead to unint…
Observability Self Hosted
2026.1.1+
HIGH 7.2
CVE-2025-40540
A type confusion vulnerability exists in Serv-U which when exploited, gives a malicious actor the ability to execute arbitrary native code as privile…
Serv U
15.5.4+
HIGH 7.2
CVE-2025-40541
An Insecure Direct Object Reference (IDOR) vulnerability exists in Serv-U, which when exploited, gives a malicious actor the ability to execute nativ…
Serv U
15.5.4+
HIGH 7.2
CVE-2025-40538
A broken access control vulnerability exists in Serv-U which when exploited, gives a malicious actor the ability to create a system admin user and ex…
Serv U
15.5.4+
HIGH 7.2
CVE-2025-40539
A type confusion vulnerability exists in Serv-U which when exploited, gives a malicious actor the ability to execute arbitrary native code as privile…
Serv U
15.5.4+
CRITICAL 9.8
CVE-2025-40551 KEVEPSS 84%
SolarWinds Web Help Desk was found to be susceptible to an untrusted data deserialization vulnerability that could lead to remote code execution, whi…
Web Help Desk
2026.1+
CRITICAL 9.8
CVE-2025-40552EPSS 50%
SolarWinds Web Help Desk was found to be susceptible to an authentication bypass vulnerability that if exploited, would allow a malicious actor to ex…
Web Help Desk
2026.1+
CRITICAL 9.8
CVE-2025-40553EPSS 60%
SolarWinds Web Help Desk was found to be susceptible to an untrusted data deserialization vulnerability that could lead to remote code execution, whi…
Web Help Desk
2026.1+
CRITICAL 9.8
CVE-2025-40554EPSS 57%
SolarWinds Web Help Desk was found to be susceptible to an authentication bypass vulnerability that, if exploited, could allow an attacker to invoke …
Web Help Desk
2026.1+
HIGH 7.5
CVE-2025-40537
SolarWinds Web Help Desk was found to be susceptible to a hardcoded credentials vulnerability that, under certain situations, could allow access to a…
Web Help Desk
2026.1+