Vulnerability index

Browse CVEs

10,000+ matching
Filters
Severity

Filters apply as you choose them.

MEDIUM 6.8 CVE-2026-9030 A denial-of-service vulnerability exists in httpd service on Archer A6 v4 where the asynchronous systool instruction handlng path in httpd does not p… No fix yet Fix from $1,6002026-08-07 MEDIUM 5.3 CVE-2026-69207 Hono is a Web application framework that provides support for any JavaScript runtime. Prior to 4.12.34, the built-in CORS middleware, hono/cors, is v… Patch available Fix from $1,6002026-08-07 HIGH 7.1 CVE-2026-66061 Home Assistant is open source home automation software focused on local control and privacy. Prior to 2026.5.0, the iOS Companion app treats tag lin… Patch available Fix from $1,9502026-08-07 HIGH 7.1 CVE-2026-66060 Home Assistant is open source home automation software focused on local control and privacy. Prior to 2026.5.3, the Companion app treats tag links … Patch available Fix from $1,9502026-08-07 MEDIUM 5.3 CVE-2026-54338 JupyterHub is software that allows users to create a multi-user server for Jupyter notebooks. Prior to 5.5.0, invalid input to form-based login authe… Patch available Fix from $1,6002026-08-07 CRITICAL 9.6 CVE-2026-50540 Kata Containers is an open source project focusing on a standard implementation of lightweight Virtual Machines (VMs) that perform like containers. P… Patch available Fix from $2,3002026-08-07 HIGH 8.6 CVE-2026-47664 Pathling is a set of tools that make it easier to use FHIR and clinical terminology within health data analytics. Prior to version 2.0.0 of Pathling … No fix yet Fix from $1,9502026-08-07 HIGH 8.7 CVE-2026-47663 Pathling is a set of tools that make it easier to use FHIR and clinical terminology within health data analytics. Prior to version 2.0.0 of Pathling … No fix yet Fix from $1,9502026-08-07 HIGH 8.7 CVE-2026-47662 Pathling is a set of tools that make it easier to use FHIR and clinical terminology within health data analytics. Prior to version 2.0.0 of Pathling … No fix yet Fix from $1,9502026-08-07 MEDIUM 5.4 CVE-2026-46358 OpenBao is an open source identity-based secrets management system. Prior to version 2.5.4, OpenBao's inline auth functionality incorrectly redacted … Patch available Fix from $1,6002026-08-07 MEDIUM 6.3 CVE-2026-19246 A vulnerability has been found in HKUDS nanobot up to 0.2.1. This affects the function _download_image_data_url of the file nanobot/providers/image_g… Patch available Fix from $1,6002026-08-07 MEDIUM 5.5 CVE-2026-66151 SonicWall Global VPN Client version 4.10.8.1108 and earlier is vulnerable to an out-of-bounds kernel memory read in the SWIPsec.sys driver, which cou… No fix yet Fix from $1,6002026-08-07 HIGH 7.5 CVE-2026-65819 gopacket provides packet processing capabilities for Go. Through version 1.7.0, multiple layer decoders use attacker-controlled lengths, counts, or o… Patch available Fix from $1,9502026-08-07 HIGH 7.5 CVE-2026-62296 HAPI FHIR is a complete implementation of the HL7 FHIR standard for healthcare interoperability in Java. Prior to 6.9.11, XhtmlParser.java imposes no… Patch available Fix from $1,9502026-08-07 HIGH 7.5 CVE-2026-62295 HAPI FHIR is a complete implementation of the HL7 FHIR standard for healthcare interoperability in Java. Prior to 6.9.11, the JSON utility parser in … Patch available Fix from $1,9502026-08-07 MEDIUM 5.0 CVE-2026-62293 HAPI FHIR is a complete implementation of the HL7 FHIR standard for healthcare interoperability in Java. Prior to 6.9.11, the hidden scan command con… Patch available Fix from $1,6002026-08-07 CRITICAL 9.8 CVE-2026-61808 LightRAG provides simple and fast retrieval-augmented generation. Through version 1.5.4, the LightRAG API server binds to all network interfaces with… Patch available Fix from $2,3002026-08-07 CRITICAL 9.1 CVE-2026-48039 Meta Ads MCP is a Model Context Protocol (MCP) server that lets AI assistants run Meta Ads. Prior to version 1.0.109, `AuthInjectionMiddleware.dispat… No fix yet Fix from $2,3002026-08-07 HIGH 8.6 CVE-2026-48007 Element Call is a native Matrix video conferencing application. Versions 0.5.17 through 0.19.3 report analytics data to a PostHog server, when config… No fix yet Fix from $1,9502026-08-07 HIGH 8.7 CVE-2026-47661 Pathling is a set of tools that make it easier to use FHIR and clinical terminology within health data analytics. Prior to version 2.0.0 of Pathling … No fix yet Fix from $1,9502026-08-07 HIGH 8.7 CVE-2026-47660 Pathling is a set of tools that make it easier to use FHIR and clinical terminology within health data analytics. Prior to version 2.0.0 of Pathling … No fix yet Fix from $1,9502026-08-07 HIGH 8.7 CVE-2026-47659 Pathling is a set of tools that make it easier to use FHIR and clinical terminology within health data analytics. Prior to version 2.0.0 of Pathling … No fix yet Fix from $1,9502026-08-07 MEDIUM 6.3 CVE-2026-19243 A security vulnerability has been detected in HKUDS nanobot up to 0.2.1. Impacted is the function ExecTool._guard_command/ExecTool._spawn of the file… Patch available Fix from $1,6002026-08-07 MEDIUM 5.3 CVE-2026-19113 Consul Community Edition and Consul Enterprise 1.3.0 through 2.0.2 are vulnerable to an unauthenticated denial of service in several agent HTTP API e… No fix yet Fix from $1,6002026-08-07 MEDIUM 6.8 CVE-2026-19017 Consul Community Edition and Consul Enterprise 1.18.21 through 2.0.2 are vulnerable to a partial arbitrary file read when configured to use the Vault… No fix yet Fix from $1,6002026-08-07 MEDIUM 5.3 CVE-2026-19015 Consul Community Edition and Consul Enterprise 1.2.0 through 2.0.2 are vulnerable to an uncontrolled resource consumption issue in the Connect CA roo… No fix yet Fix from $1,6002026-08-07 MEDIUM 5.3 CVE-2026-19012 Consul Community Edition and Consul Enterprise 1.18.0 through 2.0.2 are vulnerable to an authenticated denial of service in the Enterprise-to-Communi… No fix yet Fix from $1,6002026-08-07 HIGH 7.5 CVE-2026-15972 Consul Community Edition and Consul Enterprise 1.13.0 through 2.0.2 are vulnerable to an unauthenticated denial of service through unbounded connecti… No fix yet Fix from $1,9502026-08-07 CRITICAL 9.0 CVE-2026-71851 crypto-js is a JavaScript library of crypto standards. Versions of crypto-js prior to 4.0.0 generate randomness in CryptoJS.lib.WordArray.random() us… Patch available Fix from $2,3002026-08-07 MEDIUM 5.3 CVE-2026-71848 Hono is a Web application framework that provides support for any JavaScript runtime. From 4.12.0 to 4.12.33, the languageDetector middleware is vuln… Patch available Fix from $1,6002026-08-07