CVE Search

Cari CVE dari dbcve.org — keyword, vendor, severity, KEV, dan rentang waktu.

Advanced Filter
Reset
Active filters: Severity: High
10,000 result(s) · page 450 of 500
CVE-2026-71576
HIGH

A flaw was found in multicluster-global-hub. The manager component improperly validates the source identity of incoming CloudEvents on Kafka status topics. A remote attacker, after...

CVSS 8.5 2026-08-10
CVE-2026-72718
HIGH

goose is general-purpose AI agent that runs on your machine. Prior to 1.44.0, the `goose review` command runs the system `git` executable to gather the diff for review without stri...

CVSS 7 2026-08-10
CVE-2026-66738
HIGH

SPIP before 4.4.18 contains a code injection vulnerability in SQLite-backed installations. The navigation menu endpoint improperly handles array-typed user input, which bypasses in...

CVSS 8.8 2026-08-10
CVE-2026-48048
HIGH

XWiki Platform is a generic wiki platform. XWiki discovered that the patch for GHSA-5cf8-vrr8-8hjm was insufficient. Starting with version 6.2.1 and prior to versions 18.0.0RC1, 17...

CVSS 7.5 2026-08-10
CVE-2026-19433
HIGH

Authorization Bypass Through User-Controlled Key in the contact management component in Roskus Prospero Flow CRM before 5.4.8 allows authenticated users of any company to blindly o...

CVSS 8.6 2026-08-10
CVE-2026-72692
HIGH

A missing authorization vulnerability in OpenSignLabs opensignserver through 2.37.0 allows an unauthenticated remote attacker to irreversibly decline any in-flight document and for...

CVSS 7.5 2026-08-10
CVE-2026-72691
HIGH

An authentication bypass vulnerability in OpenSignLabs opensignserver through 2.37.0 allows an unauthenticated remote attacker to mint MASTER_KEY-signed file access tokens for arbi...

CVSS 7.5 2026-08-10
CVE-2026-72690
HIGH

An improper authorization vulnerability in Attendize through commit 9289acb allows an authenticated remote attacker to inject persistent mandatory survey questions into another org...

CVSS 7.1 2026-08-10
CVE-2026-72689
HIGH

A broken object-level authorization vulnerability in OpenSignLabs opensignserver through 2.37.0 allows an unauthenticated remote attacker to read complete contract records via the ...

CVSS 7.5 2026-08-10
CVE-2026-72688
HIGH

A missing authentication vulnerability in OpenSignLabs opensignserver through 2.37.0 allows an unauthenticated remote attacker to read arbitrary stored documents via the fileupload...

CVSS 7.5 2026-08-10
CVE-2026-6374
HIGH

Use of Hard-coded Credentials vulnerability in Zyxel Networks WAH7601 allows Read Sensitive Constants Within an Executable. This issue affects WAH7601: through 20.07.2026.

CVSS 7.3 2026-08-10
CVE-2026-68427
HIGH

In the Linux kernel, the following vulnerability has been resolved: gpu: host1x: Fix use-after-free in host1x_bo_clear_cached_mappings __host1x_bo_unpin() drops the last referenc...

CVSS 7.8 2026-08-10
CVE-2026-68425
HIGH

In the Linux kernel, the following vulnerability has been resolved: IB/mad: Drop unmatched RMPP responses before reassembly Kernel-handled RMPP receive processing starts reassemb...

CVSS 7.1 2026-08-10
CVE-2026-68420
HIGH

In the Linux kernel, the following vulnerability has been resolved: xfrm: reject optional IPTFS templates in outbound policies syzbot reported a stack-out-of-bounds read in xfrm_...

CVSS 7.1 2026-08-10
CVE-2026-68419
HIGH

In the Linux kernel, the following vulnerability has been resolved: RDMA/irdma: Prevent rereg_mr for non-mem regions When a QP/CQ/SRQ is created, a two step process is used where...

CVSS 7.8 2026-08-10
CVE-2026-68417
HIGH

In the Linux kernel, the following vulnerability has been resolved: RDMA/siw: publish QP after initialization siw_create_qp() currently calls siw_qp_add() before the queues, CQ p...

CVSS 7.8 2026-08-10
CVE-2026-68415
HIGH

In the Linux kernel, the following vulnerability has been resolved: xfrm: clear mode callbacks after failed mode setup xfrm_state_gc_task can run long after a failed IPTFS state ...

CVSS 7.8 2026-08-10
CVE-2026-68414
HIGH

In the Linux kernel, the following vulnerability has been resolved: wifi: cfg80211: cancel sched scan results work on unregister cfg80211_sched_scan_results() can queue rdev->sch...

CVSS 7.5 2026-08-10
CVE-2026-68409
HIGH

In the Linux kernel, the following vulnerability has been resolved: wifi: mac80211: defer link RX stats percpu free to RCU sta_remove_link() frees a removed MLO link's RX stats p...

CVSS 8.8 2026-08-10
CVE-2026-68404
HIGH

In the Linux kernel, the following vulnerability has been resolved: wifi: cfg80211: use wiphy work for socket owner autodisconnect nl80211_netlink_notify() walks the cfg80211 wir...

CVSS 7.8 2026-08-10
1 448 449 450 451 452 500
Base CVE data derived from NVD (public domain). Enrichment by dbcve.org (CC-BY-4.0). Fetched via API.