CVE Search

Cari CVE dari dbcve.org — keyword, vendor, severity, KEV, dan rentang waktu.

Advanced Filter
Reset
Active filters: Last 7 days
3,576 result(s) · page 8 of 179
CVE-2026-92927
MEDIUM

A vulnerability was found in SourceCodester Drug Recommendation System 1.0. This issue affects some unknown processing of the file /db/drug_recommendor.sql. Performing a manipulati...

CVSS 5.3 2026-09-17
CVE-2026-92926
HIGH

A vulnerability has been found in code-projects Matrimonial System 1.0. This vulnerability affects the function writepartnerprefs of the file /partner_preference.php. Such manipula...

CVSS 7.3 2026-09-17
CVE-2026-89038
MEDIUM

Verizon Cloud for Android (com.vcast.mediamanager) before 26.7.10 contains a path traversal vulnerability that allows co-resident malicious applications to write attacker-controlle...

CVSS 6.2 2026-09-17
CVE-2026-54677
MEDIUM

Scoold is a Q&A and a knowledge sharing platform for teams. Prior to 1.69.0, authenticated users who are not members of a private space can create content in questions belonging to...

CVSS 6.5 2026-09-17
CVE-2026-54676
MEDIUM

Scoold is a Q&A and a knowledge sharing platform for teams. Prior to 1.69.0, users with personal API tokens can retrieve replies from questions in private spaces they cannot access...

CVSS 6.5 2026-09-17
CVE-2026-54546
MEDIUM

CloudTAK is a browser-based Common Operating Picture and situational awareness tool compatible with TAK. Prior to 13.22.1, the authenticated PUT /api/basemap endpoint passes an att...

CVSS 5 2026-09-17
CVE-2026-54446
HIGH

NetLicensing MCP Server is a natural-language interface that enables agentic applications to manage the software-licensing lifecycle in Labs64 NetLicensing. Prior to 0.1.6, network...

CVSS 8.1 2026-09-17
CVE-2026-54053
CRITICAL

Many Notes is a Markdown note-taking web application designed for simplicity. Prior to 0.16.0, the ZIP vault import implemented in app/Actions/ProcessImportedVault.php accepts arch...

CVSS 9.6 2026-09-17
CVE-2026-52836
HIGH

OpenDDS is an open source C++ implementation of the Object Management Group (OMG) Data Distribution Service (DDS). Prior to 3.34.0, a network attacker can crash a reachable OpenDDS...

CVSS 8.7 2026-09-17
CVE-2026-44236
HIGH

rabbitmq-c is a C-language AMQP client library for RabbitMQ. Prior to 0.16.0, a malicious AMQP server can send an undersized connection.tune.frame_max value during amqp_login(), an...

CVSS 7.1 2026-09-17
CVE-2026-44235
MEDIUM

rabbitmq-c is a C-language AMQP client library for RabbitMQ. Prior to 0.16.0, a malicious AMQP server can send an undersized HEADER or METHOD frame during client login and cause un...

CVSS 6.5 2026-09-17
CVE-2026-93296
MEDIUM

MISP contains a stored cross-site scripting (XSS) vulnerability in the Overmind theme's statistics views. The event General card (event_general.ctp) and the server/feed preview car...

CVSS 5.1 2026-09-17
CVE-2026-93295
MEDIUM

MISP contains a vulnerability in its background job dispatch mechanism that allows remote code execution as the web user. Background job arguments are passed directly as the argv o...

CVSS 5.1 2026-09-17
CVE-2026-93292
HIGH

SigNoz versions from 0.88.0 before 0.142.1 contain a SQL injection vulnerability in trace-funnel analytics endpoints that interpolate service_name and span_name fields into ClickHo...

CVSS 8.5 2026-09-17
CVE-2026-92980
HIGH

HortusFox-Web prior to version 6.1 contains a remote code execution vulnerability that allows authenticated administrators to execute arbitrary OS commands as the web server user b...

CVSS 7.2 2026-09-17
CVE-2026-8674
MEDIUM

Initializing the DNS stub resolver from an /etc/resolv.conf file, or a LOCALDOMAIN environment variable, whose search list contains a domain of roughly 200 characters or more in th...

CVSS 5.3 2026-09-17
CVE-2026-85720
MEDIUM

The AsyncHttpClient (AHC) library allows Java applications to easily execute HTTP requests and asynchronously process HTTP responses. From 2.0.0 until 2.16.1 and 3.0.12, a request ...

CVSS 5.9 2026-09-17
CVE-2026-54587
MEDIUM

mport is the MidnightBSD Package Manager. Prior to 2.7.8, directory assets handled as ASSET_DIR or ASSET_DIR_OWNER_MODE in libmport/bundle_read_install_pkg.c used path-based mport_...

CVSS 5.8 2026-09-17
CVE-2026-54586
MEDIUM

mport is the MidnightBSD Package Manager. Prior to 2.7.8, the mport_fetch_index(), mport_fetch_bootstrap_index(), and mport_fetch_bundle() paths in libmport/fetch.c accepted non-HT...

CVSS 6 2026-09-17
CVE-2026-54585
MEDIUM

mport is the MidnightBSD Package Manager. Prior to 2.7.8, create_sample_file() in libmport/bundle_read_install_pkg.c did not constrain absolute source and destination paths from th...

CVSS 6 2026-09-17
1 6 7 8 9 10 179
Base CVE data derived from NVD (public domain). Enrichment by dbcve.org (CC-BY-4.0). Fetched via API.