Vulnerability index

Browse CVEs

10,000+ matching
Filters
Severity

Filters apply as you choose them.

HIGH 8.4 CVE-2026-59688 An OS Command Injection vulnerability in Progress Software LoadMaster, ECS Connection Manager, Object Scale Connection Manager, and MOVEit WAF allows… Connection Manager For Objectscale 7.2.54.19 / 7.2.63.3+ Fix from $1,9502026-07-27 HIGH 8.4 CVE-2026-59687 An OS Command Injection vulnerability in Progress Software LoadMaster, ECS Connection Manager, Object Scale Connection Manager, and MOVEit WAF allows… Connection Manager For Objectscale 7.2.54.19 / 7.2.63.3+ Fix from $1,9502026-07-27 HIGH 8.4 CVE-2026-59686 An OS Command Injection vulnerability in Progress Software LoadMaster, ECS Connection Manager, Object Scale Connection Manager, and MOVEit WAF allows… Connection Manager For Objectscale 7.2.54.19 / 7.2.63.3+ Fix from $1,9502026-07-27 HIGH 8.7 CVE-2026-12991 The lack of cryptographic mechanisms to ensure the integrity and authenticity of communications in Ghost Robotics' Vision 60 robot (APK v5.5.0) expos… No fix yet Fix from $1,9502026-07-27 HIGH 7.7 CVE-2026-12990 An access control vulnerability in the mobile app (APK v5.5.0) for Ghost Robotics' Vision 60 robot allows multiple simultaneous sessions to run witho… No fix yet Fix from $1,9502026-07-27 HIGH 8.7 CVE-2026-12989 A lack of authentication in the mobile app (APK v5.5.0) for Ghost Robotics' Vision 60 robot allows an unauthenticated attacker connected to the devic… No fix yet Fix from $1,9502026-07-27 MEDIUM 5.9 CVE-2026-66053 Improper Validation of Certificate with Host Mismatch vulnerability in Apache Thrift Python bindings. This issue affects Apache Thrift: before 0.24.… Thrift 0.24.0+ Fix from $1,6002026-07-27 CRITICAL 9.1 CVE-2026-58662 Improper Validation of Specified Quantity in Input, Out-of-bounds Read vulnerability in Apache Thrift C++ bindings. This issue affects Apache Thrift… Thrift 0.24.0+ Fix from $2,3002026-07-27 HIGH 7.5 CVE-2026-58389 Allocation of Resources Without Limits or Throttling vulnerability in Apache Thrift Rust bindings. This issue affects Apache Thrift: before 0.24.0. … Thrift 0.24.0+ Fix from $1,9502026-07-27 CRITICAL 9.1 CVE-2026-58023 Out-of-bounds Read vulnerability in Apache Thrift c_glib bindings. This issue affects Apache Thrift: before 0.24.0. Users are recommended to upgrad… Thrift 0.24.0+ Fix from $2,3002026-07-27 CRITICAL 9.8 CVE-2026-55971 Heap-based Buffer Overflow vulnerability in Apache Thrift C++ bindings. This issue affects Apache Thrift: before 0.24.0. Users are recommended to u… Thrift 0.24.0+ Fix from $2,3002026-07-27 MEDIUM 6.5 CVE-2026-55970 Buffer Over-read vulnerability in Apache Thrift C++ bindings. This issue affects Apache Thrift: before 0.24.0. Users are recommended to upgrade to … Thrift 0.24.0+ Fix from $1,6002026-07-27 HIGH 7.5 CVE-2026-55969 Integer Overflow or Wraparound vulnerability in Apache Thrift C++, c_glib, Go, netstd, Delphi and Haxe bindings. This issue affects Apache Thrift: b… Thrift 0.24.0+ Fix from $1,9502026-07-27 HIGH 7.5 CVE-2026-55968 Inefficient Algorithmic Complexity, Allocation of Resources Without Limits or Throttling vulnerability in Apache Thrift Node.js bindings. This issue… Thrift 0.24.0+ Fix from $1,9502026-07-27 HIGH 7.5 CVE-2026-49158 Improper Handling of Highly Compressed Data (Data Amplification) vulnerability in Apache Thrift Ruby bindings. This issue affects Apache Thrift: bef… Thrift 0.24.0+ Fix from $1,9502026-07-27 HIGH 7.5 CVE-2026-48586 Improper Handling of Highly Compressed Data (Data Amplification) vulnerability in Apache Thrift C++, Java, Python, Go, D, C/GLib bindings. This issu… Thrift 0.24.0+ Fix from $1,9502026-07-27 HIGH 7.5 CVE-2026-48145 Improper Validation of Certificate with Host Mismatch vulnerability in Apache Thrift C++ bindings. This issue affects Apache Thrift: before 0.24.0. … Thrift 0.24.0+ Fix from $1,9502026-07-27 CRITICAL 9.1 CVE-2026-48144 Improper Validation of Certificate with Host Mismatch vulnerability in Apache Thrift c_glib bindings. This issue affects Apache Thrift: before 0.24.… Thrift 0.24.0+ Fix from $2,3002026-07-27 HIGH 7.5 CVE-2026-45112 Allocation of Resources Without Limits or Throttling vulnerability in Apache Thrift Java bindings. This issue affects Apache Thrift: from 0.19.0 bef… Thrift 0.24.0+ Fix from $1,9502026-07-27 HIGH 7.5 CVE-2026-43871 Loop with Unreachable Exit Condition ('Infinite Loop') vulnerability in Apache Thrift Python, Go, PHP and Java bindings.This issue affects Apache Thr… Thrift 0.24.0+ Fix from $1,9502026-07-27 HIGH 7.5 CVE-2026-41608 Improper Handling of Highly Compressed Data (Data Amplification) vulnerability in Apache Thrift Python bindings. This issue affects Apache Thrift: b… Thrift 0.24.0+ Fix from $1,9502026-07-27 MEDIUM 6.3 CVE-2026-14856 A stored Cross-Site Scripting (XSS) vulnerability in the file upload functionality of the Media Manager in TastyIgniter v4.3.0, caused by insufficien… No fix yet Fix from $1,6002026-07-27 MEDIUM 5.3 CVE-2026-12495 Denial-of-service (DoS) vulnerability due to a stack buffer overflow in the http_gdpr_decrypt function of the Mercusys MB115-4G device's web interfac… No fix yet Fix from $1,6002026-07-27 MEDIUM 5.5 CVE-2026-17534 Kimi Code (@moonshot-ai/kimi-code) before 0.27.0 implements FetchURL SSRF hardening as a static hostname and IP-literal denylist in assertSafeFetchTa… Patch available Fix from $1,6002026-07-27 HIGH 7.7 CVE-2026-17527 In containerized-data-importer (CDI), the aggregated cdi.kubevirt.io:view ClusterRole, intended to provide read-only access to CDI resources, include… No fix yet Fix from $1,9502026-07-27 HIGH 7.8 CVE-2026-17523 A flaw was found in the Linux kernel in net/can/bcm.c in can: bcm, where an unprivileged local user can exploit this vulnerability to execute arbitra… Patch available Fix from $1,9502026-07-27 MEDIUM 6.9 CVE-2026-65765 Joomla Extension - phoca.cz - Path Traversal vulnerability in Phoca Commander 1.0.0-6.1.1 - Improper limitation of paths for save and download action… No fix yet Fix from $1,6002026-07-27 MEDIUM 5.1 CVE-2026-65764 Joomla Extension - phoca.cz - Reflected XSS vulnerability in Phoca Commander 5.0.0-6.1.1 - Improper validation of user inputs lead to a reflective XS… No fix yet Fix from $1,6002026-07-27 MEDIUM 5.1 CVE-2026-16554 cJSON library is vulnerable to an integer overflow in the print_string_ptr() function in cJSON.c on 32-bit platforms. The escape_characters counter, … No fix yet Fix from $1,6002026-07-27 HIGH 8.7 CVE-2026-65894 This vulnerability exists in CP PLUS EZ-P21 IP Camera due to improper authentication of HTTP endpoints. A remote attacker could exploit this vulnerab… No fix yet Fix from $1,9502026-07-27