Vulnerability index

Browse CVEs

10,000+ matching
Filters
Severity

Filters apply as you choose them.

MEDIUM 5.3 CVE-2026-19331 A vulnerability was identified in bazylhorsey obsidian-mcp-server 1.0.0. This affects the function readCanvas/writeCanvas of the file src/services/Ca… No fix yet Fix from $1,6002026-08-09 MEDIUM 5.3 CVE-2026-19330 A vulnerability was determined in angrysky56 advanced-reasoning-mcp 1.0.0. The impacted element is the function create_system_json/create_library to … No fix yet Fix from $1,6002026-08-09 MEDIUM 5.3 CVE-2026-19329 A vulnerability was found in andreahaku codex_mcp up to 1ff521cc6cc57cfe56ddef946c644b8534771390. The affected element is an unknown function of the … No fix yet Fix from $1,6002026-08-09 HIGH 7.5 CVE-2026-10595 A path traversal vulnerability exists in parisneo/lollms version 2.1.0, specifically in the SPA catch-all route implemented in `backend/routers/ui.py… Patch available Fix from $1,9502026-08-09 MEDIUM 5.3 CVE-2026-19328 A vulnerability has been found in aktsmm skill-ninja-mcp-server 0.1.0. Impacted is the function getInstalledSkills/installSkill/updateAgentsMd/uninst… Patch available Fix from $1,6002026-08-09 MEDIUM 5.3 CVE-2026-19327 A flaw has been found in abracadabra50 claude-sesh 1.0.0. This issue affects the function getEnrichedData/enrichSession of the file src/services/enri… Patch available Fix from $1,6002026-08-09 MEDIUM 5.3 CVE-2026-19325 A security vulnerability has been detected in IncomeStreamSurfer roo-code-memory-bank-mcp-server up to 9dcb2fb5e6b65a35ac1983885a6d4e5621a0081e. This… No fix yet Fix from $1,6002026-08-09 HIGH 7.5 CVE-2026-17510 Crypt::OpenSSL::PKCS12 versions before 1.98 for Perl allow a NULL pointer dereference in print_attribute via a zero length BMPSTRING attribute. prin… Patch available Fix from $1,9502026-08-09 CRITICAL 9.8 CVE-2026-71993 MSI Radix AXE6600 router firmware version v781521 contains a command injection vulnerability in the openvpn function that allows remote attackers to … No fix yet Fix from $2,3002026-08-09 CRITICAL 9.8 CVE-2026-71992 MSI Radix AXE6600 router firmware version v781521 contains a command injection vulnerability in the macfilter function that allows remote attackers t… No fix yet Fix from $2,3002026-08-09 CRITICAL 9.8 CVE-2026-71991 MSI Radix AXE6600 router firmware version v781521 contains a command injection vulnerability in the TelnetSSH function used for Telnet configuration … No fix yet Fix from $2,3002026-08-09 CRITICAL 9.8 CVE-2026-71990 MSI Radix AXE6600 router firmware version v781521 contains a command injection vulnerability in the TelnetSSH function used for SSH configuration tha… No fix yet Fix from $2,3002026-08-09 CRITICAL 9.8 CVE-2026-71989 MSI Radix AXE6600 router firmware version v781521 contains a command injection vulnerability in the porTrigger function that allows remote attackers … No fix yet Fix from $2,3002026-08-09 CRITICAL 9.8 CVE-2026-71988 MSI Radix AXE6600 router firmware version v781521 contains a command injection vulnerability in the portFw function that allows remote attackers to e… No fix yet Fix from $2,3002026-08-09 CRITICAL 9.8 CVE-2026-71987 MSI Radix AXE6600 router firmware version v781521 contains a command injection vulnerability in the alg function that allows remote attackers to exec… No fix yet Fix from $2,3002026-08-09 CRITICAL 9.8 CVE-2026-71986 MSI Radix AXE6600 router firmware version v781521 contains a command injection vulnerability in the dmz function that allows remote attackers to exec… No fix yet Fix from $2,3002026-08-09 CRITICAL 9.8 CVE-2026-71985 MSI Radix AXE6600 router firmware version v781521 contains a command injection vulnerability in the accesscontrol function that allows remote attacke… No fix yet Fix from $2,3002026-08-09 CRITICAL 9.8 CVE-2026-71984 MSI Radix AXE6600 router firmware version v781521 contains a command injection vulnerability in the urlfilter function that allows remote attackers t… No fix yet Fix from $2,3002026-08-09 MEDIUM 5.3 CVE-2026-19323 A security flaw has been discovered in azer react-analyzer-mcp up to 335f2a3585f265e2e88352b59b10d3b478d678b0. Affected by this vulnerability is the … No fix yet Fix from $1,6002026-08-09 CRITICAL 9.8 CVE-2026-71983 MSI Radix AXE6600 router firmware version v781521 contains a command injection vulnerability in the wps.cgi interface that allows remote attackers to… No fix yet Fix from $2,3002026-08-08 MEDIUM 5.1 CVE-2026-71502 CTI-Transmute contains a stored cross-site scripting vulnerability caused by insufficient neutralization of Vue template expression delimiters in ser… Patch available Fix from $1,6002026-08-08 CRITICAL 9.8 CVE-2026-71958 D-Link DWR-M961 devices with hardware version C1 and software version 1.1.2_C1_202602110044 contain a buffer overflow vulnerability in the quicksetup… No fix yet Fix from $2,3002026-08-08 CRITICAL 9.8 CVE-2026-71957 D-Link DWR-M961 devices with hardware version C1 and software version 1.1.2_C1_202602110044 contain a buffer overflow vulnerability in the app.cgi in… No fix yet Fix from $2,3002026-08-08 CRITICAL 9.8 CVE-2026-71956 D-Link DWR-M961 devices with hardware version C1 and software version 1.1.2_C1_202602110044 contain a command injection vulnerability in the app.cgi … No fix yet Fix from $2,3002026-08-08 CRITICAL 9.8 CVE-2026-71955 D-Link DWR-M961 devices with hardware version C1 and software version 1.1.2_C1_202602110044 contain a command injection vulnerability in the /boafrm/… No fix yet Fix from $2,3002026-08-08 CRITICAL 9.8 CVE-2026-71954 D-Link DWR-M961 devices with hardware version C1 and firmware version before 1.1.5_C1_202607071108 contain a command injection vulnerability in the /… No fix yet Fix from $2,3002026-08-08 CRITICAL 9.8 CVE-2026-71953 D-Link DWR-M961 devices with hardware version C1 and firmware version before 1.1.5_C1_202607071108 contain a command injection vulnerability in the /… No fix yet Fix from $2,3002026-08-08 CRITICAL 9.8 CVE-2026-71952 D-Link DWR-M961 devices with hardware version C1 and firmware version before 1.1.5_C1_202607071108 contain a command injection vulnerability in the /… No fix yet Fix from $2,3002026-08-08 CRITICAL 9.8 CVE-2026-71951 D-Link DWR-M961 devices with hardware version C1 and firmware version before 1.1.5_C1_202607071108 contain a command injection vulnerability in the /… No fix yet Fix from $2,3002026-08-08 CRITICAL 9.8 CVE-2026-71950 D-Link DWR-M961 devices with hardware version C1 and firmware version before 1.1.5_C1_202607071108 contain a command injection vulnerability in the /… No fix yet Fix from $2,3002026-08-08